Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Möglicherweise DHL-Trojaner eingefangen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 04.06.2015, 22:12   #1
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



Hallo,

heute habe ich mal wieder festgestellt, dass man Mails nicht nebenher bearbeiten sollte.
Ich bin auf eine DHL-Mail reingefallen. Es wurde ein späterer Zustellungstermin angekündigt und da ich auf ein Paket warte habe ich den Link angeklickt. Dieser führte zu einer fehlerhaften Seite. Es wurde nichts zum Download angeboten, noch gab es sonst eine erkennbare Reaktion. Ich habe die Seite dann geschlossen und die Mail genauer angesehen und meinen Fehler erkannt. Nun die große Preisfrage: "Habe ich mir was eingefangen?"

Als erste Schritte habe ich mir Defogger, FRST und GMER heruntergeladen und nach Anleitung ausgeführt. Hier die Ergebnisse (Der Log von GMER hat in diesen Thread nicht mehr gepasst):

Code:
ATTFilter
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 22:43 on 04/06/2015 (habewi)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


-=E.O.F=-
         
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:03-06-2015
Ran by habewi (administrator) on LAEPPI_2 on 04-06-2015 22:45:13
Running from E:\Install\Trojaner_Board\FRST64
Loaded Profiles: habewi (Available Profiles: habewi)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
() C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
() C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\ToolbarUpdater.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\loggingserver.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Pokki) C:\Users\habewi\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Spotify Ltd) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
(Dropbox, Inc.) C:\Users\habewi\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
() C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfimon.exe
() C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
(AVG Secure Search) C:\Program Files (x86)\AVG Web TuneUp\avgcefrend.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Pokki) C:\Users\habewi\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\habewi\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\habewi\AppData\Local\Pokki\Engine\StartMenuIndexer.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
() E:\Install\FRST64\FRST64.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2350880 2015-03-15] (NVIDIA Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [66304 2015-05-06] (Acer Incorporated)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3745744 2015-05-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2715536 2015-04-10] (Dominik Reichl)
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1163264 2012-09-25] ()
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [UIExec] => C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe [139088 2010-09-30] ()
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2015-04-28] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [3033112 2015-02-28] ()
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [92928 2015-05-06] ()
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2669568 2015-04-17] (Sony Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] (Atheros Communications)
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1566016 2015-04-28] (Samsung)
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1168896 2014-09-22] (Spotify Ltd)
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31087200 2015-01-23] (Skype Technologies S.A.)
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Run: [AcerPortal] => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2574080 2015-05-06] (Acer)
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MountPoints2: {57ebb439-fd95-11e4-828d-206a8ae16e6c} - "F:\autorun.exe" 
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MountPoints2: {57ebbd13-fd95-11e4-828d-206a8ae16e6c} - "F:\autorun.exe" 
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MountPoints2: {57ebbe13-fd95-11e4-828d-206a8ae16e6c} - "F:\autorun.exe" 
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MountPoints2: {6a4a958c-f5c0-11e4-828a-206a8ae16e6c} - "F:\autorun.exe" 
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MountPoints2: {6a4aa1b5-f5c0-11e4-828a-206a8ae16e6c} - "F:\autorun.exe" 
Startup: C:\Users\habewi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-07]
ShortcutTarget: Dropbox.lnk -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-03-12] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-03-12] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-03-12] (Acer Incorporated)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1123843910-364745413-3572566037-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://mysearch.avg.com/?cid={5684E7F1-62C6-4AE0-B127-741CEB0320CF}&mid=42b0fba450f947d2a1d9f123cc05879f-a743e9e9013260a56953af67192a03edc5c4567b&lang=de&ds=AVG&coid=avgtbavg&cmpid=0215tb&pr=fr&d=2014-12-10 13:25:40&v=4.1.0.411&pid=wtu&sg=&sap=hp
HKU\S-1-5-21-1123843910-364745413-3572566037-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1123843910-364745413-3572566037-1001 -> DefaultScope {9BFC5306-AAF9-11E4-8273-206A8AE16E6C} URL = hxxp://search.homepage-web.com/?src=omnibox&partner=acer&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1123843910-364745413-3572566037-1001 -> {7CB8A254-C536-4D8D-A87C-0AA257617C3A} URL = 
SearchScopes: HKU\S-1-5-21-1123843910-364745413-3572566037-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = https://mysearch.avg.com/search?cid={5684E7F1-62C6-4AE0-B127-741CEB0320CF}&mid=42b0fba450f947d2a1d9f123cc05879f-a743e9e9013260a56953af67192a03edc5c4567b&lang=de&ds=AVG&coid=avgtbavg&cmpid=0215tb&pr=fr&d=2014-12-10 13:25:40&v=4.1.0.411&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1123843910-364745413-3572566037-1001 -> {9BFC5306-AAF9-11E4-8273-206A8AE16E6C} URL = hxxp://search.homepage-web.com/?src=omnibox&partner=acer&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1123843910-364745413-3572566037-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Web TuneUp\4.1.0.411\AVG Web TuneUp.dll [2015-02-28] (AVG)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.1.0.411\AVG Web TuneUp.dll [2015-02-28] (AVG)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.2.0\ViProtocol.dll [2014-12-10] (AVG Secure Search)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\habewi\AppData\Roaming\Mozilla\Firefox\Profiles\vrelukaz.default
FF SelectedSearchEngine: Web Search
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-05-19] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-30] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-19] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.4.0\\npsitesafety.dll No File
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll [2015-02-09] ()
FF Plugin HKU\S-1-5-21-1123843910-364745413-3572566037-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\habewi\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF user.js: detected! => C:\Users\habewi\AppData\Roaming\Mozilla\Firefox\Profiles\vrelukaz.default\user.js [2013-08-05]
FF SearchPlugin: C:\Users\habewi\AppData\Roaming\Mozilla\Firefox\Profiles\vrelukaz.default\searchplugins\Web Search.xml [2015-05-19]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wtu-secure-search.xml [2015-02-28]
FF Extension: anonymoX - C:\Users\habewi\AppData\Roaming\Mozilla\Firefox\Profiles\vrelukaz.default\Extensions\client@anonymox.net.xpi [2014-10-31]

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [Not Found]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider) [File not signed]
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3438544 2015-05-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [311792 2015-05-18] (AVG Technologies CZ, s.r.o.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2839296 2015-05-06] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312 2015-04-17] (WildTangent)
R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [138544 2015-05-20] ()
R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [192304 2015-05-20] ()
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [93408 2015-03-17] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-06-09] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2015-03-15] (NVIDIA Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [494592 2015-04-17] (Sony Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-23] (acer)
R2 UI Assistant Service; C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe [253264 2010-09-30] ()
R2 vToolbarUpdater18.4.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\ToolbarUpdater.exe [1875480 2015-02-28] (AVG Secure Search)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [620056 2015-02-28] ()
S2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\siteadvisor\mcsacore.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-02] (Qualcomm Atheros Communications, Inc.)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21152 2015-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [284128 2015-04-27] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [253920 2015-05-07] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [256992 2015-04-15] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [220128 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [293856 2015-05-04] (AVG Technologies CZ, s.r.o.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 GigasetGenericUSB_x64; C:\Windows\system32\DRIVERS\GigasetGenericUSB_x64.sys [54272 2013-04-25] (Siemens Home and Office Communication Devices GmbH & Co. KG)
S3 HWHandSet; C:\Windows\system32\DRIVERS\hw_quusbmdm.sys [223232 2015-05-07] (Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2015-05-07] (Huawei Technologies Co., Ltd.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
R1 ndisrd; C:\Windows\system32\DRIVERS\ndisrfl.sys [41688 2014-10-30] (Intel Corporation)
R3 NetTap630; C:\Windows\system32\DRIVERS\nettap630.sys [67800 2014-10-30] (Intel Corporation)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-10-13] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-04 22:43 - 2015-06-04 22:43 - 00000000 _____ C:\Users\habewi\defogger_reenable
2015-06-04 22:34 - 2015-06-04 22:34 - 00018417 _____ C:\Users\habewi\Desktop\20150604_gmer.log
2015-06-04 21:00 - 2015-06-04 22:45 - 00000000 ____D C:\FRST
2015-06-04 19:21 - 2015-06-04 22:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-02 12:44 - 2015-06-02 12:44 - 00000000 ____D C:\Users\habewi\AppData\Local\GWX
2015-05-25 11:41 - 2015-05-25 11:41 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2015-05-25 10:54 - 2014-10-13 07:57 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll
2015-05-25 10:54 - 2014-10-13 07:57 - 00708168 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller.dll
2015-05-25 10:54 - 2014-10-13 07:57 - 00206080 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudserd.sys
2015-05-25 10:54 - 2014-10-13 07:57 - 00206080 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2015-05-25 10:54 - 2014-10-13 07:57 - 00110336 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2015-05-24 12:01 - 2015-05-24 12:01 - 00000000 ____D C:\Users\habewi\AppData\Local\Avg
2015-05-20 17:58 - 2015-05-20 17:58 - 00001007 _____ C:\Users\Public\Desktop\HiSuite.lnk
2015-05-20 17:58 - 2015-05-20 17:58 - 00000000 ____D C:\ProgramData\HiSuiteOuc
2015-05-20 17:58 - 2015-05-20 17:58 - 00000000 ____D C:\ProgramData\HandSetService
2015-05-20 17:36 - 2015-05-20 21:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2015-05-19 21:20 - 2015-05-19 21:20 - 00000000 ____D C:\Users\habewi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClockworkMod
2015-05-19 21:20 - 2015-05-19 21:20 - 00000000 ____D C:\Program Files (x86)\ClockworkMod
2015-05-14 13:04 - 2015-03-17 19:26 - 00467776 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-05-14 13:04 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-05-14 13:04 - 2014-11-14 08:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll
2015-05-14 13:03 - 2015-04-24 23:32 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-14 13:03 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-14 13:03 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-05-14 13:03 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2015-05-14 13:03 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2015-05-14 13:03 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-05-14 13:03 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-05-14 13:03 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-05-14 13:03 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-05-14 13:03 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-05-14 13:03 - 2015-03-13 06:03 - 00239424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-05-14 13:03 - 2015-03-13 06:03 - 00154432 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-05-14 13:03 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-05-14 13:03 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-05-14 13:03 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-05-14 13:03 - 2015-03-13 02:29 - 00410017 _____ C:\Windows\system32\ApnDatabase.xml
2015-05-14 13:03 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-14 13:03 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-05-14 13:03 - 2015-03-09 04:02 - 00057856 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-05-14 13:03 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-14 13:03 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-05-14 13:03 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-05-14 13:03 - 2015-03-05 01:09 - 01429504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-14 13:03 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-05-14 13:03 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-14 13:03 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-05-13 20:33 - 2015-04-30 22:35 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 20:33 - 2015-04-30 22:35 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 20:22 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 20:22 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-05-13 20:22 - 2015-04-21 19:14 - 24971776 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 20:22 - 2015-04-21 18:31 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 20:22 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-05-13 20:22 - 2015-04-21 17:40 - 14401536 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 20:22 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-05-13 20:22 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-05-13 20:21 - 2015-04-21 18:50 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 20:21 - 2015-04-21 18:50 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 20:21 - 2015-04-21 18:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 20:21 - 2015-04-21 18:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 20:21 - 2015-04-21 18:35 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 20:21 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-05-13 20:21 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-05-13 20:21 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-05-13 20:21 - 2015-04-21 18:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 20:21 - 2015-04-21 18:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-05-13 20:21 - 2015-04-21 18:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 20:21 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-05-13 20:21 - 2015-04-21 17:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-05-13 20:21 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-05-13 20:21 - 2015-04-21 17:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-05-13 20:21 - 2015-04-21 17:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 20:21 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 20:21 - 2015-04-21 17:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 20:21 - 2015-04-21 17:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 20:21 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-05-13 20:21 - 2015-04-21 17:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-05-13 20:21 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-05-13 20:21 - 2015-04-21 17:32 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-05-13 20:21 - 2015-04-21 17:28 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-05-13 20:21 - 2015-04-21 17:27 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 20:21 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-05-13 20:21 - 2015-04-21 17:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-05-13 20:21 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-05-13 20:21 - 2015-04-21 17:15 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 20:21 - 2015-04-21 17:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 20:21 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-05-13 20:21 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-05-13 20:21 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-05-13 20:21 - 2015-04-14 00:48 - 04180480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 20:21 - 2015-04-10 03:00 - 01996800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 20:21 - 2015-04-10 02:50 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 20:21 - 2015-04-10 02:26 - 01560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-05-13 20:21 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 20:21 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-05-13 20:21 - 2015-03-27 05:27 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 20:21 - 2015-03-27 04:50 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-05-13 20:21 - 2015-03-27 04:48 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 20:19 - 2015-05-13 20:19 - 00002001 _____ C:\Users\Public\Desktop\abMedia.lnk
2015-05-13 20:16 - 2015-05-13 20:16 - 00002005 _____ C:\Users\Public\Desktop\abPhoto.lnk
2015-05-12 18:31 - 2015-05-12 18:31 - 00003334 _____ C:\Windows\System32\Tasks\AcerCloud
2015-05-12 18:31 - 2015-05-12 18:31 - 00002028 _____ C:\Users\Public\Desktop\Acer Portal.lnk
2015-05-12 18:29 - 2015-05-12 18:29 - 00001969 _____ C:\Users\Public\Desktop\abDocs.lnk
2015-05-08 22:38 - 2015-05-22 19:15 - 00000000 ____D C:\Users\habewi\AppData\Local\HiSuite
2015-05-08 22:38 - 2015-05-20 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite
2015-05-08 22:38 - 2015-05-20 17:58 - 00000000 ____D C:\Program Files (x86)\HiSuite
2015-05-08 22:38 - 2015-05-08 23:17 - 00000000 ____D C:\Users\habewi\Documents\HiSuite
2015-05-08 22:38 - 2015-05-08 22:38 - 00000000 ____D C:\ProgramData\HiSuiteDataSvc
2015-05-08 22:38 - 2015-05-07 13:36 - 02152176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFUpdate_01009.dll
2015-05-08 22:38 - 2015-05-07 13:36 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01009.dll
2015-05-08 22:38 - 2015-05-07 13:36 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusbcoinstaller2.dll
2015-05-08 22:38 - 2015-05-07 13:36 - 00287232 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\hw_quusbnet.sys
2015-05-08 22:38 - 2015-05-07 13:36 - 00223232 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\hw_quusbmdm.sys
2015-05-08 22:38 - 2015-05-07 13:36 - 00116864 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\hw_usbdev.sys
2015-05-08 22:38 - 2015-05-07 13:36 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2015-05-07 21:54 - 2015-06-04 22:39 - 00000000 ___RD C:\Users\habewi\Dropbox
2015-05-07 21:54 - 2015-05-07 21:54 - 00001144 _____ C:\Users\habewi\Desktop\Dropbox.lnk
2015-05-07 21:53 - 2015-05-07 21:53 - 00000000 ____D C:\Users\habewi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-05-07 21:52 - 2015-06-04 22:39 - 00000000 ____D C:\Users\habewi\AppData\Roaming\Dropbox
2015-05-07 13:50 - 2015-05-07 13:50 - 00378336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys
2015-05-07 13:49 - 2015-05-07 13:49 - 00253920 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys
2015-05-07 13:49 - 2015-05-07 13:49 - 00220128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-04 22:43 - 2014-10-29 01:06 - 00000000 ____D C:\Users\habewi
2015-06-04 22:43 - 2014-09-23 06:38 - 00775588 _____ C:\Windows\system32\perfh007.dat
2015-06-04 22:43 - 2014-09-23 06:38 - 00163774 _____ C:\Windows\system32\perfc007.dat
2015-06-04 22:43 - 2014-03-18 12:03 - 01804156 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-04 22:42 - 2015-02-22 18:59 - 00000000 ____D C:\Users\habewi\OneDrive
2015-06-04 22:42 - 2015-01-05 18:13 - 00000000 ____D C:\Users\habewi\AppData\Roaming\TeraCopy
2015-06-04 22:42 - 2014-09-22 22:13 - 01520660 _____ C:\Windows\WindowsUpdate.log
2015-06-04 22:39 - 2014-10-29 01:06 - 00000000 ____D C:\Users\habewi\AppData\Local\Pokki
2015-06-04 22:39 - 2014-09-22 21:39 - 00006463 _____ C:\Windows\SysWOW64\Gms.log
2015-06-04 22:36 - 2014-10-28 20:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-06-04 22:36 - 2014-03-18 11:54 - 00051468 _____ C:\Windows\PFRO.log
2015-06-04 22:36 - 2013-08-22 16:46 - 00072305 _____ C:\Windows\setupact.log
2015-06-04 22:36 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-04 22:36 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-06-04 22:13 - 2014-10-31 23:24 - 00000000 ____D C:\Users\habewi\AppData\Roaming\KeePass
2015-06-04 22:06 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-06-04 20:55 - 2015-01-26 18:40 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-04 18:01 - 2014-10-28 23:40 - 00000000 ____D C:\ProgramData\MFAData
2015-06-04 17:59 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-05-31 13:56 - 2014-10-31 22:31 - 00000000 ____D C:\Users\habewi\AppData\Roaming\MyPhoneExplorer
2015-05-31 13:55 - 2014-10-30 22:40 - 00000000 ____D C:\Users\habewi\Documents\KeePass
2015-05-31 11:46 - 2014-10-29 01:12 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1123843910-364745413-3572566037-1001
2015-05-31 11:35 - 2014-10-30 22:40 - 00000000 ____D C:\Users\habewi\Documents\Handy
2015-05-30 15:31 - 2014-10-30 22:40 - 00000000 ____D C:\Users\habewi\Documents\Conrad
2015-05-30 15:00 - 2014-10-29 01:09 - 00002278 _____ C:\Users\habewi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-05-28 18:40 - 2014-11-04 22:49 - 00000000 ____D C:\Users\habewi\AppData\Roaming\vlc
2015-05-28 18:40 - 2014-10-28 19:21 - 00000000 ____D C:\Users\habewi\AppData\Local\CrashDumps
2015-05-28 17:56 - 2014-10-30 22:40 - 00000000 ____D C:\Users\habewi\Documents\1_und_1
2015-05-26 20:01 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-05-25 10:54 - 2014-11-01 13:45 - 00002022 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk
2015-05-24 12:03 - 2014-10-28 23:42 - 00001001 _____ C:\Users\Public\Desktop\AVG 2015.lnk
2015-05-24 12:03 - 2014-10-28 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-05-20 14:37 - 2015-04-05 20:03 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-05-20 14:37 - 2015-04-05 20:03 - 00000000 ___SD C:\Windows\system32\GWX
2015-05-20 14:37 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-05-20 14:28 - 2014-10-30 22:41 - 00000000 ____D C:\Users\habewi\Documents\Outlook-Dateien
2015-05-19 21:04 - 2014-12-20 19:03 - 00001972 _____ C:\Users\Public\Desktop\PlayMemories Home.lnk
2015-05-19 21:04 - 2014-12-20 19:03 - 00001858 _____ C:\Users\Public\Desktop\PlayMemories Home-Hilfe.lnk
2015-05-19 21:04 - 2014-12-20 19:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMemories Home
2015-05-19 20:49 - 2015-01-26 18:40 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-19 20:49 - 2014-11-11 18:22 - 00000000 ____D C:\Users\habewi\AppData\Local\Adobe
2015-05-17 08:58 - 2013-08-22 16:44 - 00492368 _____ C:\Windows\system32\FNTCACHE.DAT
2015-05-16 22:12 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-05-16 13:57 - 2014-10-28 21:26 - 00000000 ____D C:\Windows\system32\MRT
2015-05-16 13:57 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-05-16 13:53 - 2014-10-28 21:26 - 140425016 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-13 20:36 - 2014-10-31 18:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-05-13 20:36 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-05-13 20:34 - 2014-10-31 18:37 - 00000039 _____ C:\Windows\vbaddin.ini
2015-05-13 20:29 - 2014-03-18 11:45 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-13 20:19 - 2014-09-22 21:41 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-05-13 20:19 - 2014-09-22 21:41 - 00000000 ____D C:\Program Files (x86)\Acer
2015-05-13 20:17 - 2014-10-29 01:07 - 00000000 ____D C:\Users\habewi\AppData\Local\clear.fi
2015-05-12 18:31 - 2014-10-29 01:07 - 00000000 ____D C:\Users\habewi\AppData\Local\AOP SDK
2015-05-12 18:29 - 2014-07-14 20:33 - 00000000 ___HD C:\OEM
2015-05-08 22:43 - 2014-10-29 01:06 - 00000000 ____D C:\Users\habewi\AppData\Local\VirtualStore
2015-05-07 13:36 - 2014-05-07 00:45 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2015-05-05 19:59 - 2014-07-14 19:54 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-05 19:59 - 2014-07-14 19:54 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2015-02-20 15:04 - 2015-03-07 14:52 - 0003584 _____ () C:\Users\habewi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-01 20:25 - 2014-11-01 20:25 - 0000094 _____ () C:\Users\habewi\AppData\Local\fusioncache.dat
2015-03-15 14:12 - 2015-03-15 14:30 - 0018115 _____ () C:\Users\habewi\AppData\Local\HWVendorDetection.log
2015-03-07 13:51 - 2015-03-07 13:51 - 0007605 _____ () C:\Users\habewi\AppData\Local\Resmon.ResmonCfg
2014-09-22 21:35 - 2014-09-22 21:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\habewi\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpntloje.dll
C:\Users\habewi\AppData\Local\Temp\Foxit PhantomPDF Updater.exe
C:\Users\habewi\AppData\Local\Temp\Intel_Technology_Access_Software.exe
C:\Users\habewi\AppData\Local\Temp\oct12D2.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct2BFB.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct324F.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct4F52.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct5210.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct5E3B.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct6E72.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct7592.tmp.exe
C:\Users\habewi\AppData\Local\Temp\oct8DA5.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octB9B5.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octC491.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octC7B7.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octC9E8.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octCAB7.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octD12C.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octE7E5.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octF0F3.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octF2EC.tmp.exe
C:\Users\habewi\AppData\Local\Temp\octF9A9.tmp.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-06-04 18:07

==================== End of log ============================
         
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version:03-06-2015
Ran by habewi at 2015-06-04 22:45:34
Running from E:\Install\Trojaner_Board\FRST64
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1123843910-364745413-3572566037-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1123843910-364745413-3572566037-1002 - Limited - Enabled)
Gast (S-1-5-21-1123843910-364745413-3572566037-501 - Limited - Disabled)
habewi (S-1-5-21-1123843910-364745413-3572566037-1001 - Administrator - Enabled) => C:\Users\habewi

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1&1 Surf-Stick (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.2 - )
abDocs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.07.2004 - Acer Incorporated)
abDocs Office AddIn (HKLM-x32\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.02.2000 - Acer Incorporated)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.00.3002 - Acer Incorporated)
abMedia (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.08.2003.3 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.03.2004.4 - Acer Incorporated)
Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3013 - Acer Incorporated)
Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3000 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8115 - Acer Incorporated)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.06.2004 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3018 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated)
Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.02.3004 - Acer Incorporated)
Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.02.3004 - Acer Incorporated)
Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2005.0 - Acer Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Alcatel onetouch Manager (HKLM-x32\...\{D0DC8B2A-CD72-0200-0000-000000000000}) (Version: 13.04.2345 - Mobile Action)
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.07.2004.0 - Acer Incorporated)
Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ashampoo Burning Studio FREE v.1.14.5 (HKLM-x32\...\{91B33C97-91F8-FFB3-581B-BC952C901685}_is1) (Version: 1.14.5 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Commander 11 (HKLM-x32\...\{C92AB6F1-0F9C-8526-5DF1-0A2FD0FB33D9}_is1) (Version: 11.1.8 - Ashampoo GmbH & Co. KG)
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5961 - AVG Technologies)
AVG 2015 (Version: 15.0.4355 - AVG Technologies) Hidden
AVG 2015 (Version: 15.0.5961 - AVG Technologies) Hidden
AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.1.0.411 - AVG Technologies)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation)
Brother MFL-Pro Suite MFC-6890CDW (HKLM-x32\...\{F9626826-162E-4EFD-9440-3F3B8317C097}) (Version: 2.0.0.0 - Brother Industries, Ltd.)
CPUID HWMonitor 1.27 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.5524 - CyberLink Corp.)
CyberLink Power Media Player 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.4218 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4419 - CyberLink Corp.)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM)
Farm to Fork Collector's Edition (x32 Version: 3.0.2.59 - WildTangent) Hidden
Foxit PhantomPDF (HKLM-x32\...\{F74C595C-BEF2-4AF9-9C4E-68F3CD509C4D}) (Version: 6.0.122.807 - Foxit Corporation)
Game Explorer Categories - genres (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 11.0.0.7 - WildTangent, Inc.)
Game Explorer Categories - main (HKLM-x32\...\WildTangentGameProvider-acer-main) (Version: 11.0.0.7 - WildTangent, Inc.)
Gigaset QuickSync (HKLM\...\{b49e8cfb-f094-4467-925a-97c23972cb50}) (Version: 8.3.0868.3 - Gigaset Communications GmbH)
Governor of Poker 2 Premium Edition (x32 Version: 3.0.2.59 - WildTangent) Hidden
Helium (HKLM-x32\...\{9A781940-AC41-4D5E-8E1E-76A04B916FB9}) (Version: 1.0.0 - ClockworkMod)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 41.003.55.00.06 - Huawei Technologies Co.,Ltd)
Host App Service (HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Pokki) (Version: 0.269.7.660 - Pokki)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation)
Intel(R) Technology Access (HKLM-x32\...\{efc54997-dfa9-44b1-afac-3a7ac4f45730}) (Version: 1.3.6.1042 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{43FA4AC8-46F8-423F-96FD-9A7D67048F1C}) (Version: 2.5.1634 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Jewel Match 3 (x32 Version: 3.0.2.59 - WildTangent) Hidden
KeePass Password Safe 2.29 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.29 - Dominik Reichl)
King Oddball (x32 Version: 3.0.2.48 - WildTangent) Hidden
LUXOR Evolved (x32 Version: 2.2.0.98 - WildTangent) Hidden
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
MergeModule_x64 (Version: 9.0.02 - Sony Corporation) Hidden
MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visio Premium 2010 (HKLM-x32\...\Office14.VISIOR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 de)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.2.0 - Mozilla)
Mozilla Thunderbird 31.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 de)) (Version: 31.7.0 - Mozilla)
MyFreeCodec (HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\MyFreeCodec) (Version:  - )
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.6 - F.J. Wechselberger)
NVIDIA Grafiktreiber 333.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 333.17 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 3.0.2.59 - WildTangent) Hidden
PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.00.04171 - Sony Corporation)
PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden
PMB_ServiceUploader (x32 Version: 9.3.00 - Sony Corporation) Hidden
Pokki Start Menu (HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\Pokki_Start_Menu) (Version: 0.269.7.660 - Pokki)
Polar Bowler 1st Frame (x32 Version: 3.0.2.59 - WildTangent) Hidden
proWIN Office (HKLM-x32\...\{FE5531D5-7828-4463-907F-21B6DE9AADEA}) (Version: 1.1.0 - HALD)
Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer (HKLM-x32\...\{3241744A-BA36-41F0-B4AA-EF3946D00632}) (Version: 11.0.0.619A - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.322 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.33 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.14044_17 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.3.14044_17 - Samsung Electronics Co., Ltd.) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0057-0000-0000-0000000FF1CE}_Office14.VISIOR_{359ADBEC-068A-4CC9-9174-77AB8EDB867A}) (Version:  - Microsoft)
Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.)
SOHLib for PlayMemories Home (Version: 1.0.3.02170 - Sony Corporation) Hidden
Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB)
TeraCopy 2.12 (HKLM\...\TeraCopy_is1) (Version:  - Code Sector Inc.)
The Chronicles of Emerland Solitaire (x32 Version: 3.0.2.51 - WildTangent) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Trinklit Supreme (x32 Version: 2.2.0.98 - WildTangent) Hidden
Unity Web Player (HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.11.13 - WildTangent) Hidden
Your Software Deals 1.0.0 (HKLM-x32\...\Your Software Deals_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) <==== ATTENTION
Zuma's Revenge (x32 Version: 2.2.0.97 - WildTangent) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1123843910-364745413-3572566037-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\habewi\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Restore Points =========================

19-05-2015 21:04:19 DirectX wurde installiert
29-05-2015 10:48:21 Geplanter Prüfpunkt

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04183687-4F50-4AB3-94C2-3DA0E03C5E2F} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-12] (TODO: <Company name>)
Task: {26CC8E2C-E436-432C-BD34-03F4AB25D96D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {2EF1DAA4-1DD0-438E-8D1B-AD325CC35FA5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-19] (Adobe Systems Incorporated)
Task: {3D1A8976-2D47-45F2-B844-39FD393DAE08} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2014-08-29] ()
Task: {3D91ADE2-C26C-4E41-95C5-BCF6A107F239} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-06-09] ()
Task: {52637F36-B179-4979-902C-2C01909A4457} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2014-08-29] ()
Task: {558A09E0-10A4-460B-AF70-F2D177E3B035} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2015-05-06] (Acer)
Task: {58C1B211-6370-438B-80A8-318BACA8CAD7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-05-16] (Microsoft Corporation)
Task: {5DE884B5-0A4D-491E-B476-AFFB81305EAB} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate)
Task: {71AA954B-EEEC-4EFC-BCC5-3266D995D35B} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2014-06-09] (Acer Incorporated)
Task: {73C1B267-192A-4D0B-BB41-996D6FFA5195} - System32\Tasks\Sony Corporation\Sony Home Network Library\SOHLib SOHDms => C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16] (Sony Corporation)
Task: {82923531-8596-4224-8720-11AD6FE4C9A3} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-06-09] ()
Task: {853DFDF5-4427-41C0-9E7B-26E024F24EF3} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.)
Task: {8A89709D-963F-42F5-9C2E-6E5D7BC5209C} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {CEAADD60-6926-47A8-8FAF-D114C291EAA7} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated)
Task: {D3548174-201D-461D-825D-368A344A0F51} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate)
Task: {DAFC5010-045C-44B0-AAA2-D90481CE2C48} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {E3431CCD-A9A3-4BBA-9313-C564BEA38DB4} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-12-30] (Acer Incorporate)
Task: {F0CA917B-F232-4866-BC77-21B066B3F013} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {F10B1E8B-75AB-4339-B4D6-AB3AF3027312} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation)
Task: {FC2D3C65-07DF-4DEA-A02E-77FE31A45E83} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (Whitelisted) ==============

2015-02-28 11:45 - 2015-02-28 11:45 - 00620056 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
2015-03-15 14:57 - 2014-05-14 00:17 - 00118728 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-05-20 17:58 - 2015-05-20 12:40 - 00138544 _____ () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
2015-05-20 17:58 - 2015-05-20 12:40 - 00192304 _____ () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
2015-03-17 14:43 - 2015-03-17 14:43 - 00087552 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\libglog.dll
2015-02-08 12:20 - 2015-02-08 12:20 - 01793248 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\cpprest120_1_4.dll
2015-03-17 15:15 - 2015-03-17 15:15 - 00355040 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\JsonCpp.dll
2014-09-22 21:45 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2014-10-31 18:11 - 2005-04-22 14:36 - 00143360 ____N () C:\Windows\system32\BrSNMP64.dll
2014-10-31 21:45 - 2010-09-30 15:00 - 00253264 _____ () C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
2015-02-28 11:45 - 2015-02-28 11:45 - 00159768 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\loggingserver.exe
2014-09-22 21:53 - 2014-07-01 14:13 - 00111872 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2015-01-05 18:18 - 2009-06-22 04:27 - 00126464 _____ () C:\Program Files\TeraCopy\TeraCopy64.dll
2014-04-07 16:13 - 2014-04-07 16:13 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll
2014-04-29 02:38 - 2014-04-29 02:38 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-04-29 02:35 - 2014-04-29 02:35 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2014-04-29 02:42 - 2014-04-29 02:42 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2014-10-31 18:11 - 2012-09-25 12:26 - 01163264 ____N () C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
2014-10-31 21:45 - 2010-09-30 15:00 - 00139088 _____ () C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
2014-12-10 14:25 - 2015-02-28 11:45 - 03033112 _____ () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
2015-05-06 16:14 - 2015-05-06 16:14 - 00092928 _____ () C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
2015-05-06 16:14 - 2015-05-06 16:14 - 00090368 _____ () C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
2015-02-28 11:45 - 2015-02-28 11:45 - 00519704 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\log4cplusU.dll
2015-05-06 16:04 - 2015-05-06 16:04 - 00203008 _____ () C:\Program Files (x86)\Acer\Acer Portal\curllib.dll
2015-05-06 16:04 - 2015-05-06 16:04 - 00119552 _____ () C:\Program Files (x86)\Acer\Acer Portal\OpenLDAP.dll
2015-06-04 22:37 - 2015-06-04 22:37 - 00043008 _____ () c:\users\habewi\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpntloje.dll
2015-05-07 21:53 - 2015-03-04 23:45 - 00750080 _____ () C:\Users\habewi\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-05-07 21:53 - 2015-03-04 23:45 - 00047616 _____ () C:\Users\habewi\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-05-07 21:53 - 2015-03-04 23:45 - 00865280 _____ () C:\Users\habewi\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-05-07 21:53 - 2015-03-04 23:45 - 00200704 _____ () C:\Users\habewi\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2015-05-12 18:29 - 2015-05-12 18:29 - 00015616 _____ () C:\Windows\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll
2015-05-06 10:08 - 2015-05-06 10:08 - 00013568 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll
2015-05-08 10:41 - 2015-05-08 10:41 - 00203008 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll
2015-05-08 10:41 - 2015-05-08 10:41 - 00654552 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll
2015-05-08 10:41 - 2015-05-08 10:41 - 00641792 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll
2015-05-08 10:41 - 2015-05-08 10:41 - 00119552 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll
2015-05-06 10:06 - 2015-05-06 10:06 - 00277096 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll
2014-12-10 14:25 - 2014-12-10 14:25 - 01686552 ____N () C:\Program Files (x86)\AVG Web TuneUp\TBAPI.dll
2014-10-31 18:11 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2014-12-10 14:25 - 2015-02-28 11:45 - 40630296 _____ () C:\Program Files (x86)\AVG Web TuneUp\libcef.dll
2015-05-06 16:15 - 2015-05-06 16:15 - 00279296 _____ () C:\Program Files (x86)\Acer\abDocs\libcurl.dll
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2014-09-22 21:53 - 2014-07-01 14:13 - 00090368 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll
2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-04-28 22:15 - 2015-04-28 22:15 - 00569856 _____ () C:\Users\habewi\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll
2015-04-28 22:15 - 2015-04-28 22:15 - 01400846 _____ () C:\Users\habewi\AppData\Local\Pokki\Engine\avcodec-54.dll
2015-04-28 22:15 - 2015-04-28 22:15 - 00151054 _____ () C:\Users\habewi\AppData\Local\Pokki\Engine\avutil-51.dll
2015-04-28 22:15 - 2015-04-28 22:15 - 00222734 _____ () C:\Users\habewi\AppData\Local\Pokki\Engine\avformat-54.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\habewi\OneDrive:ms-properties

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1123843910-364745413-3572566037-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\habewi\Documents\_Desktophintergrund\DSC00183.JPG
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1123843910-364745413-3572566037-1001\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{2966FB4D-C583-476B-89B4-A4AFEAC95935}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{55D1DB7B-D233-4FE1-BC3A-F577037AA8D8}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{B88A2367-6937-4CC6-A570-5325C88AF9A6}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{81987E11-5279-4528-A5AE-04ACF5D3AFE7}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{15212FC9-BAB6-4AE1-8DDC-3F4FA153BE4F}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{8E7F7C0E-BE99-4983-838D-A2EEDC8E92AC}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{AC5DC087-6E6B-4B78-A2C3-D18BC05B930C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{87FC5DB6-E984-4FF7-A3AD-A7A54F08F3BC}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Play.exe
FirewallRules: [{ACD6804F-E7FE-462D-8826-401EC690ABF9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{8F248733-03AD-443A-94EF-1C7E808105EB}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{5C84FA12-294B-4D4A-B0A2-DF4468480641}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{9DB661E4-BD8B-41F6-85E8-66F07C011661}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{8B718AC0-4099-4E38-A888-EF874666821D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{EB2678FA-FB1A-4253-BC40-824E2497D5B5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{B2AEEE26-5E77-4B57-9D95-47691997C93C}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{43452EB2-61FD-4E7D-A07F-60247AC6AAE7}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{FCB345D4-7DFC-4D62-BB87-49EF1F7D9285}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{761F41A1-D5A5-4C69-B57D-0C09E1D00ADC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{D6395B6E-A0FF-4919-BF29-8FF60C4046AD}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{371608E0-F8C7-4940-A5EB-E92CB643CE02}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{0BEEB126-9FD0-4DFA-8B88-2E596C3C8A4B}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{5666440B-3A09-4145-995C-E79035C84F26}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{B3CD4A7B-7C08-4EFC-BE7B-2695F2E6D7BC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{0E03A479-6A26-4BC9-961C-02741060E45B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{4B5FDB52-D732-493C-8D42-2B1A41460B11}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{F771FB18-6FB8-4360-B7DA-B02F46284BA0}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{67981A55-316D-4AEE-9178-CAE8E394F35D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{DA5D83A2-F68A-4BD0-85AE-B60DBD75946B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{AB30BD6A-D47D-4F2C-ACFA-94D585D55284}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{FCA92334-6E0F-46C3-BE18-020EBB9AE303}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{A2ABCCD8-A719-4530-8849-8917903A7530}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{ADC56CB1-216E-4856-8905-FFD8E9E627F9}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{81A5E0F8-6905-414E-A74C-6DFFAADF5836}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{921B8B7D-3399-4BAA-A02C-B41673AA555D}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{D30A7995-6ACE-4BCA-8D6E-F6C4F30C269D}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{C90D7269-DE88-4CEF-BD63-3927C45C4D1A}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{38EEA1F6-844C-447C-BA78-8DB909E2FFAA}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{BC0B3616-F4A8-4E8E-8C45-E65C5FEBB8F4}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{419B4508-AC83-40BF-8937-E362BF6ADEAC}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{E8A3A222-DEC1-4C6A-BCEF-38844C2BC10D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{ED9BD921-D7BD-4C6D-BDC3-021DF03717B3}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{55DC2A4E-7668-465E-ACD8-D1AB46DAA5A8}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{1B7282F4-5B33-437A-B92F-E024F9FBC4EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B927F6F9-8214-4EE3-9536-429B44F15501}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{FEF5F77B-A93B-4CE0-8BCC-BEA7369A1D6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{676569A7-E7C0-4815-8955-EC7B51B43A3A}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{E5065115-EF90-42D4-B67A-3587E9407F9B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7C5562F0-565B-4BEA-9A65-C10A0DD0390E}] => (Allow) C:\Program Files (x86)\Brother\Brmfl08z\FAXRX.exe
FirewallRules: [{A7B1D3D7-7C78-4C7B-AC76-174144619926}] => (Allow) C:\Program Files (x86)\Brother\Brmfl08z\FAXRX.exe
FirewallRules: [{0A7F6663-18B6-40E7-9D25-0ECAF6992788}] => (Allow) LPort=54925
FirewallRules: [{A770A1A5-AED1-4B3A-8E9D-080AA4BC7D7F}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{4E735E40-9107-48A5-9AEF-0155C7561329}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{F2864CE2-5098-45D6-8CE9-E75CD42313E3}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{1B2FF1E6-DDC5-4577-AD46-1B22C8EB52ED}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{A77A3D14-5BC8-48B0-8CE4-C877BF619BEB}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{6E3A5561-7FF9-4974-936F-B7D99D778AA7}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{720247DE-F97D-400F-A5FA-353CD7D8D79F}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{19041D0B-9C61-4D6D-B279-F1DD5C68C82D}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{568CB4E1-3905-44DB-B250-2C47DB3D8160}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{22C6D17D-D883-488D-A4D2-7668252C8367}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{88F18C96-8D55-449C-A802-B2935482D6D5}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{BF88EF8F-45A6-4922-8521-AD11577C78FC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{DC791F5A-0885-4E7A-8A47-863F42899DFC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{C922FAE6-C3A2-433A-A46E-9049AC7D7774}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{B4399CB3-EFFD-4FFF-9C30-A5162086609F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7D282F91-DB77-4A4F-9364-E3DD25A713A5}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{660D0248-E6D4-439D-BCBF-BEC67AF189F8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{5456047C-7CE9-4A45-94B2-F5718BA60930}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A6AD8530-AA65-461F-ACE6-793795A26E19}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{9DF5AC02-4E07-4396-8DB6-45F28E8E9F7C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{6323DBCE-2F46-4046-A4BE-8F68A2CDF710}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{F0C6B634-5DF8-4A6C-9CF1-154198FDC12B}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{F1A05B82-513B-4838-A784-5F2425D82C7F}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{07B2E2FC-8CC1-456E-8072-3B2B8AAF29C7}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{6F6B2BFC-52D4-4013-886B-E5602A16CB6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{E1691619-DB47-478D-B757-42494C734B17}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{9C649EC0-2CD7-4CD2-82B0-B68B10B989D1}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{EADC812D-54FA-4E55-8E29-9469B5CA1A76}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{2EF2164A-AE84-4E74-98C2-65ACE6567FD4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{275E8E34-A08B-43E4-B813-E7E178DEFB4D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{7811C2F0-F743-4252-9C7B-E66446D4ED3B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7774E85B-ED04-4421-A1EF-3541004D6362}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{4B9D69B9-CD42-40A8-86C0-4284827B4F62}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{FFFEDDEE-1F7E-4CB0-8901-8E70CEC02A76}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{19890C90-4B80-46D6-BD3A-41F7B1327F2C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{F9CD71D0-6B60-499C-B850-26C71ABB7468}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{327CFD1E-B7F0-46D4-813C-A31360B222C3}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe
FirewallRules: [{18B05B73-8D6A-431D-9F16-2C1D73C02C70}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe
FirewallRules: [{0ABAEA3A-41D4-4513-B361-7EE06A678EE6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{ED118FF2-CD52-41C7-836C-B03C4A9EB906}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{430ABCE3-FC5A-47F9-BCDA-23939D44F9E7}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{C5E635B4-D68A-4ABE-8FE2-50D7B893DB58}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{1337F53F-8016-4136-AD84-EFE5A371D744}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\DMCDaemon.exe
FirewallRules: [{7ADCE57F-3318-40DD-AFCB-AD29D148AFB1}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\DMCDaemon.exe
FirewallRules: [{EDC2A7E0-A297-469C-BD5A-2C474458E6B2}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\WindowsUpnp.exe
FirewallRules: [{A7801B3B-DA48-4D02-9F5D-72BEEB36D2D8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\WindowsUpnp.exe
FirewallRules: [{3CF8347F-9937-4583-A30E-1B53C4FCB0E8}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{D4751B57-EA9C-42C5-AA0F-17AD596AF121}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{CBD9436D-FE27-4ACA-AF18-44DE7F335EAD}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{8BFD4718-FAD2-49FF-AF61-199491C2824A}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{4F703D0C-EFE0-4DEC-980C-A793DC18FA31}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{4031C89F-8789-4BB5-99E5-C7982011FB32}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{C63D95ED-EF1B-458A-BC12-F6B58E3E7347}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{30CEB4AE-B7AE-4338-B812-086068A69CEE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{E9E03CD8-5FDD-4771-AAC6-9B7A04F61998}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{C6E3A62F-CA47-4E90-9558-34716D598DF2}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{C268FAA0-5B13-403B-9C83-86B67AC46069}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{CFA97C41-A849-49A9-9384-5E1E54847D9B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{401E313C-0B00-433B-B802-4DAA7EC6A31F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{09AFAEAF-005A-45FF-9F28-A5AD033A78EC}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{A63B7135-11BD-40A0-85DA-587549477964}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{CA7E3404-6A5A-450D-8B1A-21466A6C452D}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{D8C739D5-83D0-40D6-969D-0AE589B2DD98}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{FDF876F1-D751-408E-9008-7B775F06B9AA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E4CC8BB5-3BF2-432F-85C7-11140660B77C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{D73D5EB9-601D-45FD-BE78-D46116BAD05D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{F596F7F1-A7F5-4ED2-B970-72F603F33650}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{408A6988-8D38-4194-84A0-55304ADA9CB7}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{3F64A141-92E7-40E4-9199-BFBADDC49746}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{07DE6AFF-D56E-4C27-A390-5058D25B795E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{8AE2B348-885C-40D2-9A28-2BF87AC99132}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{795681E5-7466-48BC-BE76-A23E9E930736}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{D29CF259-CE09-4F22-AC94-14F9E1401836}] => (Allow) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
FirewallRules: [{16C8B40E-FFED-4091-BD6C-188E20DF1927}] => (Allow) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
FirewallRules: [{543D5704-C820-4F4E-838F-1E239F6EBE34}] => (Allow) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
FirewallRules: [{DE2F524B-16FC-4098-8E2E-5F8CDE0A893F}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{441CCBF7-05F2-4005-AA9F-B4A8F25BCF0F}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{9D34AE60-12BB-49F4-A595-08C3A329FBF6}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{81948D61-7E37-4E5B-9233-6AB7733CB75A}] => (Allow) C:\Users\habewi\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{59C4625A-2EF6-4AC3-90CB-7DB77F3F7909}] => (Allow) C:\Users\habewi\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{C6B4A6D9-7F27-436D-9283-5CE1C2D471CD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{722A1D96-8317-435B-90C8-EF837BBF8EB4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{15FC8DED-9D19-4CE6-9045-F9F6BE15F4CC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{D8A315FC-4154-4515-B28B-BED8430F3046}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{CE5A48B4-67CB-45A1-B6F7-29F17910A854}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{7ECB90A3-DC30-41F3-958E-737B180D6124}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{8F332F6C-9DFA-458F-9BE0-B35394C73092}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{A6033434-6412-45FD-9E6C-B795656921F4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B240962A-0B08-4D5E-AD4C-3B27F201E324}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{7F10618D-84BA-4C64-B96B-BED21CC38EC7}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{E96AFDB7-56C8-4BD6-9CB8-8A3393C9E1C6}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{16D3A808-1810-4443-9808-43856FA6E322}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{636C529F-94B9-472B-B10C-25D44F21B078}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{3512B366-C504-458F-92C5-321EF9ABC3D0}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2547

Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2547

Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1266

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1266

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2469

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2469

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 08:07:40 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1250


System errors:
=============
Error: (06/04/2015 10:36:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (06/04/2015 10:35:33 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Der Dienst "AVGIDSAgent" wurde mit dem folgenden dienstspezifischen Fehler beendet: 
%%3758213661

Error: (06/04/2015 10:35:17 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Der Dienst "AVGIDSAgent" wurde mit dem folgenden dienstspezifischen Fehler beendet: 
%%3758213661

Error: (05/24/2015 00:11:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (05/20/2015 05:58:37 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "HiSuiteOuc64.exe" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (05/20/2015 05:58:04 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "HuaweiHiSuiteService64.exe" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (05/18/2015 09:38:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (05/17/2015 08:58:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (05/15/2015 03:21:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80240055 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3047276)

Error: (05/13/2015 08:38:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2


Microsoft Office:
=========================
Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2547

Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2547

Error: (06/04/2015 09:06:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1266

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1266

Error: (06/04/2015 09:06:04 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2469

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2469

Error: (06/04/2015 08:07:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/04/2015 08:07:40 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1250


CodeIntegrity Errors:
===================================
  Date: 2014-10-28 22:42:51.481
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\AVG\AVG2015\avghooka.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4210H CPU @ 2.90GHz
Percentage of memory in use: 30%
Total physical RAM: 8115.27 MB
Available physical RAM: 5643.54 MB
Total Pagefile: 12083.27 MB
Available Pagefile: 9343.5 MB
Total Virtual: 131072 MB
Available Virtual: 131071.83 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:459.59 GB) (Free:381.63 GB) NTFS
Drive e: (Data) (Fixed) (Total:454.74 GB) (Free:327.14 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: BEEC1227)

Partition: GPT Partition Type.

==================== End of log ============================
         


Ich hoffe ihr könnt mir helfen.
Danke.

mfg
gts1000

Alt 05.06.2015, 07:18   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



hi,


Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Your Software Deals 1.0.0


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 





Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________

__________________

Alt 05.06.2015, 17:34   #3
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

Malwarebytes-Anti-Rootkit ausgeführt



Hallo Schrauber,

danke für die schnelle Reaktion.

Hier die Ergebnisse:

Revo Uninstaller hat seine Arbeit getan.

Malwarebytes-Anti-Rootkit:
Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org

Database version:
  main:    v2015.06.05.03
  rootkit: v2015.06.02.01

Windows 8.1 x64 NTFS
Internet Explorer 11.0.9600.17801
habewi :: LAEPPI_2 [administrator]

05.06.2015 16:38:34
mbar-log-2015-06-05 (16-38-34).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 387060
Time elapsed: 11 minute(s), 7 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
TDSSKiller habe ich auch ausgeführt, aber die Log-Datei ist zu lang. Was tun?

Schönen Abend.

mfg
gts1000
__________________

Alt 06.06.2015, 16:03   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 06.06.2015, 22:31   #5
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

TDSSKiller_log Teil 1 von 3



Hi Schrauber,

ich habe den TDSSKiller log in 3 Teile zerlegt und poste diese jetzt nacheinander.

mfg
gts1000

Code:
ATTFilter
18:14:16.0786 0x296c  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
18:14:16.0786 0x296c  UEFI system
18:14:21.0986 0x296c  ============================================================
18:14:21.0986 0x296c  Current date / time: 2015/06/05 18:14:21.0986
18:14:21.0986 0x296c  SystemInfo:
18:14:21.0986 0x296c  
18:14:21.0986 0x296c  OS Version: 6.3.9600 ServicePack: 0.0
18:14:21.0986 0x296c  Product type: Workstation
18:14:21.0986 0x296c  ComputerName: LAEPPI_2
18:14:21.0986 0x296c  UserName: habewi
18:14:21.0986 0x296c  Windows directory: C:\Windows
18:14:21.0986 0x296c  System windows directory: C:\Windows
18:14:21.0986 0x296c  Running under WOW64
18:14:21.0987 0x296c  Processor architecture: Intel x64
18:14:21.0987 0x296c  Number of processors: 4
18:14:21.0987 0x296c  Page size: 0x1000
18:14:21.0987 0x296c  Boot type: Normal boot
18:14:21.0987 0x296c  ============================================================
18:14:22.0156 0x296c  KLMD registered as C:\Windows\system32\drivers\16863243.sys
18:14:22.0482 0x296c  System UUID: {49BE4E22-B84D-4B54-6983-98C532CCEC65}
18:14:22.0750 0x296c  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:14:22.0753 0x296c  ============================================================
18:14:22.0753 0x296c  \Device\Harddisk0\DR0:
18:14:22.0753 0x296c  GPT partitions:
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {59ED2459-29BF-4F1C-B42D-F7212337B71D}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x12C000
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {5E49AB5F-A540-4917-99B3-853AA45C45A4}, Name: EFI system partition, StartLBA 0x12C800, BlocksNum 0x96000
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {8F5BB561-409D-4E68-B6B3-9617E53390B3}, Name: Microsoft reserved partition, StartLBA 0x1C2800, BlocksNum 0x40000
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {09CB1CF6-618F-4D74-BDEB-C13C13818262}, Name: Basic data partition, StartLBA 0x202800, BlocksNum 0x3972D000
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {B826D895-452A-4D1C-9161-97A602D299AD}, Name: Basic data partition, StartLBA 0x3992F800, BlocksNum 0x38D79800
18:14:22.0754 0x296c  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {2747D544-DE76-46BF-B365-A67DD8D7A1B9}, Name: Basic data partition, StartLBA 0x726A9800, BlocksNum 0x205D000
18:14:22.0754 0x296c  MBR partitions:
18:14:22.0754 0x296c  ============================================================
18:14:22.0762 0x296c  C: <-> \Device\Harddisk0\DR0\Partition4
18:14:22.0795 0x296c  E: <-> \Device\Harddisk0\DR0\Partition5
18:14:22.0795 0x296c  ============================================================
18:14:22.0795 0x296c  Initialize success
18:14:22.0795 0x296c  ============================================================
18:14:35.0210 0x2abc  ============================================================
18:14:35.0210 0x2abc  Scan started
18:14:35.0210 0x2abc  Mode: Manual; 
18:14:35.0211 0x2abc  ============================================================
18:14:35.0211 0x2abc  KSN ping started
18:14:37.0543 0x2abc  KSN ping finished: true
18:14:39.0028 0x2abc  ================ Scan system memory ========================
18:14:39.0029 0x2abc  System memory - ok
18:14:39.0029 0x2abc  ================ Scan services =============================
18:14:39.0221 0x2abc  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
18:14:39.0231 0x2abc  1394ohci - ok
18:14:39.0251 0x2abc  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
18:14:39.0254 0x2abc  3ware - ok
18:14:39.0276 0x2abc  [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:14:39.0288 0x2abc  ACPI - ok
18:14:39.0293 0x2abc  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
18:14:39.0294 0x2abc  acpiex - ok
18:14:39.0323 0x2abc  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
18:14:39.0324 0x2abc  acpipagr - ok
18:14:39.0326 0x2abc  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
18:14:39.0327 0x2abc  AcpiPmi - ok
18:14:39.0334 0x2abc  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
18:14:39.0336 0x2abc  acpitime - ok
18:14:39.0400 0x2abc  [ 00CC35F515079F5F94FABC3AC5C7D363, 7CE8B1715009602059DEDD6CBCA9C18EF079EDA344E7809813D6C0A395622B82 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:14:39.0409 0x2abc  AdobeFlashPlayerUpdateSvc - ok
18:14:39.0437 0x2abc  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
18:14:39.0453 0x2abc  ADP80XX - ok
18:14:39.0472 0x2abc  [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:14:39.0488 0x2abc  AeLookupSvc - ok
18:14:39.0531 0x2abc  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
18:14:39.0549 0x2abc  AFD - ok
18:14:39.0558 0x2abc  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
18:14:39.0561 0x2abc  agp440 - ok
18:14:39.0569 0x2abc  [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
18:14:39.0572 0x2abc  ahcache - ok
18:14:39.0584 0x2abc  [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG             C:\Windows\System32\alg.exe
18:14:39.0586 0x2abc  ALG - ok
18:14:39.0593 0x2abc  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
18:14:39.0596 0x2abc  AmdK8 - ok
18:14:39.0618 0x2abc  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
18:14:39.0621 0x2abc  AmdPPM - ok
18:14:39.0627 0x2abc  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:14:39.0629 0x2abc  amdsata - ok
18:14:39.0639 0x2abc  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
18:14:39.0645 0x2abc  amdsbs - ok
18:14:39.0661 0x2abc  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:14:39.0662 0x2abc  amdxata - ok
18:14:39.0668 0x2abc  [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID           C:\Windows\system32\drivers\appid.sys
18:14:39.0670 0x2abc  AppID - ok
18:14:39.0689 0x2abc  [ 34B2E222F82D05398DAE7203B36B6A2B, AC04BC6B5A36A6807FFE302E9ACF073342B4D76B0BB386249251CB3CA1852CE8 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:14:39.0691 0x2abc  AppIDSvc - ok
18:14:39.0697 0x2abc  [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo         C:\Windows\System32\appinfo.dll
18:14:39.0700 0x2abc  Appinfo - ok
18:14:39.0734 0x2abc  [ 612CB66D93ED0F2F21BB109840C7D813, 75484123DA27B8942B13148FCF061C75A08A50386A095143736B593E9C772173 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:14:39.0736 0x2abc  Apple Mobile Device Service - ok
18:14:39.0759 0x2abc  [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
18:14:39.0771 0x2abc  AppReadiness - ok
18:14:39.0822 0x2abc  [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
18:14:39.0841 0x2abc  AppXSvc - ok
18:14:39.0860 0x2abc  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
18:14:39.0862 0x2abc  arcsas - ok
18:14:39.0867 0x2abc  [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:14:39.0869 0x2abc  AsyncMac - ok
18:14:39.0879 0x2abc  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:14:39.0881 0x2abc  atapi - ok
18:14:39.0886 0x2abc  [ 8302D313DCC5536FE6BFB85165D9BB1E, CD9101D9CFE34F0D6CF5A6AD5C997CC5D32CCF5135B78604D0C3CD7252117C2D ] AthBTPort       C:\Windows\system32\DRIVERS\btath_flt.sys
18:14:39.0888 0x2abc  AthBTPort - ok
18:14:39.0913 0x2abc  [ 23C3686D98C650878602066093BAFDCA, 8D5B6D5ADB7A8706D84A4F16915290B50FCF76330954387D0964CD67C3BD1727 ] AtherosSvc      C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
18:14:39.0917 0x2abc  AtherosSvc - ok
18:14:40.0010 0x2abc  [ 60EFDC0EE93A51C63C159C3BD06D25F3, 7108F32496E935FEB0C030A0BFCECC1A8D6BEF5BB8129E5B7D9309321E96C3EB ] athr            C:\Windows\system32\DRIVERS\athwbx.sys
18:14:40.0131 0x2abc  athr - ok
18:14:40.0142 0x2abc  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
18:14:40.0146 0x2abc  AudioEndpointBuilder - ok
18:14:40.0165 0x2abc  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
18:14:40.0180 0x2abc  Audiosrv - ok
18:14:40.0185 0x2abc  [ D5CC906EB32CD7E0E88472FA3B3F3CBE, C502DEA7E27549B0D37BA5894EF8CBEE0F11D94C818D4FA0F6BCEE82ECCC04D3 ] Avgboota        C:\Windows\system32\DRIVERS\avgboota.sys
18:14:40.0186 0x2abc  Avgboota - ok
18:14:40.0193 0x2abc  [ E7C8FBDCB1C079C332F962DD1C075E5E, 4931B016C14B8ABE3CA5C8C0A3AC27253F2C72486CF43C299183EB65F93C06D4 ] Avgdiska        C:\Windows\system32\DRIVERS\avgdiska.sys
18:14:40.0195 0x2abc  Avgdiska - ok
18:14:40.0311 0x2abc  [ B72FA18554341668FD979988A3EFE9A2, 23C495102EB97853DCF43A31F83E37F31BF0CBB52568B5A2D4869EC0E4C3C6AE ] AVGIDSAgent     C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
18:14:40.0352 0x2abc  AVGIDSAgent - ok
18:14:40.0363 0x2abc  [ D5735E2268D835B97F60D8508709B0D4, CB8796B6E72A44F089D44C81B2E0857B8A06EA479D702BA73348AD642F3B7511 ] AVGIDSDriver    C:\Windows\system32\DRIVERS\avgidsdrivera.sys
18:14:40.0369 0x2abc  AVGIDSDriver - ok
18:14:40.0376 0x2abc  [ 398FEC9A9146E31E84AFB29731F4CA17, A20ECDBBFFAF419B14924EF1BE5AA42D7CA212DEF50673E9C0A6F33E23F29221 ] AVGIDSHA        C:\Windows\system32\DRIVERS\avgidsha.sys
18:14:40.0381 0x2abc  AVGIDSHA - ok
18:14:40.0389 0x2abc  [ 4FB010DEA1028ED0A26F20D2F404210F, 7C163D1A461A7D00BBADC46807A35911A5B2BA4B001FAF63C6AF17F54D5201E0 ] Avgldx64        C:\Windows\system32\DRIVERS\avgldx64.sys
18:14:40.0393 0x2abc  Avgldx64 - ok
18:14:40.0412 0x2abc  [ 7EC2B7BBA7A30691D2E0D8478F219B90, EBB18E34D502E85F6450E944B3A1AD7B86692F2F0C9041B927F69CE40E7802A6 ] Avgloga         C:\Windows\system32\DRIVERS\avgloga.sys
18:14:40.0418 0x2abc  Avgloga - ok
18:14:40.0426 0x2abc  [ BA60ECC498585DA1A918D424D7D07A18, CD6E5B5DB3D618008877D4A99D963E9C0E820F502F833DDC4F3D5CB68984D4E7 ] Avgmfx64        C:\Windows\system32\DRIVERS\avgmfx64.sys
18:14:40.0429 0x2abc  Avgmfx64 - ok
18:14:40.0447 0x2abc  [ 719EF00B1C5BED9CF5675274A4F774B9, 3883B41AC13AC7B2E2D58AA3209B3D479C53469A3F423CAC151A3F25DA462E3D ] Avgrkx64        C:\Windows\system32\DRIVERS\avgrkx64.sys
18:14:40.0448 0x2abc  Avgrkx64 - ok
18:14:40.0456 0x2abc  [ FE8BF780BED8D892F67AA70550F51D2C, 5F6121D6FEF37B22DB1B9528D2B10EDB44FDFE6FC09C161710C731ED8FFD925E ] avgwd           C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
18:14:40.0460 0x2abc  avgwd - ok
18:14:40.0488 0x2abc  [ 5EBB839735C5089D255C521A8503F4C2, 99342AC1C50D538062D1E770D4D34445359C3864B21739C731193E2BD57C1B74 ] Avgwfpa         C:\Windows\system32\DRIVERS\avgwfpa.sys
18:14:40.0495 0x2abc  Avgwfpa - ok
18:14:40.0505 0x2abc  [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:14:40.0509 0x2abc  AxInstSV - ok
18:14:40.0538 0x2abc  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
18:14:40.0556 0x2abc  b06bdrv - ok
18:14:40.0566 0x2abc  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
18:14:40.0569 0x2abc  BasicDisplay - ok
18:14:40.0574 0x2abc  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
18:14:40.0575 0x2abc  BasicRender - ok
18:14:40.0755 0x2abc  [ 9A4EF701A4FC835F7DDD8956D930010F, 28A555B98098ECE47912C40A74CA92AFA76F51A711F2DEFF1A498FF212505F23 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl63a.sys
18:14:40.0892 0x2abc  BCM43XX - ok
18:14:40.0902 0x2abc  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
18:14:40.0903 0x2abc  bcmfn2 - ok
18:14:40.0912 0x2abc  [ 77D760E9B477C21487C171F561497F98, 2393D466CEC863C771C5BB4CD81B251635DC084386134B8E13F74F3E1C6D68DF ] BDESVC          C:\Windows\System32\bdesvc.dll
18:14:40.0917 0x2abc  BDESVC - ok
18:14:40.0921 0x2abc  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
18:14:40.0921 0x2abc  Beep - ok
18:14:40.0949 0x2abc  [ 7BCB00EA702F78EC74CD9699D85CE80B, 17241ADAA13051B560DB9FA9079CAE6321D5B49788B596C125DC912443B00421 ] BFE             C:\Windows\System32\bfe.dll
18:14:40.0963 0x2abc  BFE - ok
18:14:40.0991 0x2abc  [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS            C:\Windows\System32\qmgr.dll
18:14:41.0008 0x2abc  BITS - ok
18:14:41.0021 0x2abc  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:14:41.0026 0x2abc  Bonjour Service - ok
18:14:41.0032 0x2abc  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:14:41.0034 0x2abc  bowser - ok
18:14:41.0042 0x2abc  [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
18:14:41.0047 0x2abc  BrokerInfrastructure - ok
18:14:41.0059 0x2abc  [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser         C:\Windows\System32\browser.dll
18:14:41.0070 0x2abc  Browser - ok
18:14:41.0080 0x2abc  [ 15BE0FCECAE5BC00FB3D339D3D1CF4E4, 7F77C73404044270AA0A4C9D6BD838564B5356ACA935982390A6EA11FA653AE0 ] BTATH_A2DP      C:\Windows\system32\drivers\btath_a2dp.sys
18:14:41.0086 0x2abc  BTATH_A2DP - ok
18:14:41.0091 0x2abc  [ 1FFA5E05F2DE32D9E65CFDA4B33D50FD, 9EC578F563A90C60F893817548195781893405AC8ED7F87C3B5F94F9842161A5 ] btath_avdt      C:\Windows\system32\drivers\btath_avdt.sys
18:14:41.0093 0x2abc  btath_avdt - ok
18:14:41.0097 0x2abc  [ AF7DEA6A0E93AF8517A310D189B656BE, 008FE5102EE6B73A8D9AFC2B0E563C6A3567167380FCEDC538278240D2AE1FD4 ] BTATH_BUS       C:\Windows\system32\drivers\btath_bus.sys
18:14:41.0098 0x2abc  BTATH_BUS - ok
18:14:41.0102 0x2abc  [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT     C:\Windows\system32\DRIVERS\btath_lwflt.sys
18:14:41.0104 0x2abc  BTATH_LWFLT - ok
18:14:41.0117 0x2abc  [ 859A116D748FBA603AF94C251DC5CF97, D64061721BE01F86386C4B0168B166C6AD076630B2229036E1D368D877389D46 ] BTATH_RCP       C:\Windows\System32\drivers\btath_rcp.sys
18:14:41.0119 0x2abc  BTATH_RCP - ok
18:14:41.0144 0x2abc  [ 6BAA2BD613DB6440C8D2C864CA0EA5D7, 0B0C268BA443FFBB07A3ADC215669F911839A665F5DD3E4C7C21760B6365F5F2 ] BtFilter        C:\Windows\system32\DRIVERS\btfilter.sys
18:14:41.0154 0x2abc  BtFilter - ok
18:14:41.0162 0x2abc  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
18:14:41.0164 0x2abc  BthAvrcpTg - ok
18:14:41.0175 0x2abc  [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
18:14:41.0177 0x2abc  BthEnum - ok
18:14:41.0194 0x2abc  [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
18:14:41.0196 0x2abc  BthHFEnum - ok
18:14:41.0199 0x2abc  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
18:14:41.0200 0x2abc  bthhfhid - ok
18:14:41.0212 0x2abc  [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
18:14:41.0218 0x2abc  BthHFSrv - ok
18:14:41.0239 0x2abc  [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum       C:\Windows\system32\DRIVERS\BthLEEnum.sys
18:14:41.0243 0x2abc  BthLEEnum - ok
18:14:41.0247 0x2abc  [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
18:14:41.0249 0x2abc  BTHMODEM - ok
18:14:41.0263 0x2abc  [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan          C:\Windows\System32\drivers\bthpan.sys
18:14:41.0265 0x2abc  BthPan - ok
18:14:41.0303 0x2abc  [ C37F4930795B771400C63C3C87E7A6C2, 0D0F54184B2DAA45F646E4F69B85C4411E8DFA88EB4763BB0F386055A420F217 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
18:14:41.0324 0x2abc  BTHPORT - ok
18:14:41.0347 0x2abc  [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv         C:\Windows\system32\bthserv.dll
18:14:41.0349 0x2abc  bthserv - ok
18:14:41.0368 0x2abc  [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
18:14:41.0370 0x2abc  BTHUSB - ok
18:14:41.0435 0x2abc  [ 33D76C80BA71E8BA67DED7B5A9187895, D07C355C1285FD74671C58FD4A7CBF2FE7C4DD5564DEF6BEE84B758981EB664A ] CCDMonitorService C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
18:14:41.0470 0x2abc  CCDMonitorService - ok
18:14:41.0477 0x2abc  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:14:41.0478 0x2abc  cdfs - ok
18:14:41.0493 0x2abc  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
18:14:41.0495 0x2abc  cdrom - ok
18:14:41.0509 0x2abc  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:14:41.0512 0x2abc  CertPropSvc - ok
18:14:41.0531 0x2abc  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
18:14:41.0532 0x2abc  circlass - ok
18:14:41.0543 0x2abc  [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
18:14:41.0550 0x2abc  CLFS - ok
18:14:41.0558 0x2abc  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
18:14:41.0559 0x2abc  CmBatt - ok
18:14:41.0574 0x2abc  [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG             C:\Windows\system32\Drivers\cng.sys
18:14:41.0583 0x2abc  CNG - ok
18:14:41.0596 0x2abc  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
18:14:41.0597 0x2abc  CompositeBus - ok
18:14:41.0600 0x2abc  COMSysApp - ok
18:14:41.0604 0x2abc  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
18:14:41.0605 0x2abc  condrv - ok
18:14:41.0669 0x2abc  [ 306B31B977BC3477953B2A6277F4052B, 4DB1DEA0A782A85755347C1F42722336690C01E584E4E846FD2065F7DEBC9364 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
18:14:41.0681 0x2abc  cphs - ok
18:14:41.0696 0x2abc  [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:14:41.0702 0x2abc  CryptSvc - ok
18:14:41.0711 0x2abc  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
18:14:41.0713 0x2abc  dam - ok
18:14:41.0754 0x2abc  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:14:41.0772 0x2abc  DcomLaunch - ok
18:14:41.0791 0x2abc  [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc       C:\Windows\System32\defragsvc.dll
18:14:41.0799 0x2abc  defragsvc - ok
18:14:41.0810 0x2abc  [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\Windows\system32\das.dll
18:14:41.0817 0x2abc  DeviceAssociationService - ok
18:14:41.0832 0x2abc  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
18:14:41.0836 0x2abc  DeviceInstall - ok
18:14:41.0842 0x2abc  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
18:14:41.0844 0x2abc  Dfsc - ok
18:14:41.0850 0x2abc  [ 30710AEFCE721CEEE0F35EB6A01C263C, FB062EC86474D38BBC38E11E2618A9505001C287430B495C482977BBE58017C8 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
18:14:41.0852 0x2abc  dg_ssudbus - ok
18:14:41.0868 0x2abc  [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:14:41.0874 0x2abc  Dhcp - ok
18:14:41.0931 0x2abc  [ 9703EC57F5BBB94F89CA80A5D0C12221, 29639F73AA86AA42401A1DB0AF4E76012E617879EC03AD7591210164BA105EBF ] DiagTrack       C:\Windows\system32\diagtrack.dll
18:14:41.0958 0x2abc  DiagTrack - ok
18:14:41.0965 0x2abc  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
18:14:41.0968 0x2abc  disk - ok
18:14:41.0972 0x2abc  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
18:14:41.0973 0x2abc  dmvsc - ok
18:14:41.0995 0x2abc  [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:14:41.0999 0x2abc  Dnscache - ok
18:14:42.0011 0x2abc  [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc         C:\Windows\System32\dot3svc.dll
18:14:42.0015 0x2abc  dot3svc - ok
18:14:42.0022 0x2abc  [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS             C:\Windows\system32\dps.dll
18:14:42.0025 0x2abc  DPS - ok
18:14:42.0033 0x2abc  [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:14:42.0034 0x2abc  drmkaud - ok
18:14:42.0056 0x2abc  [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
18:14:42.0059 0x2abc  DsmSvc - ok
18:14:42.0125 0x2abc  [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:14:42.0154 0x2abc  DXGKrnl - ok
18:14:42.0161 0x2abc  [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost         C:\Windows\System32\eapsvc.dll
18:14:42.0164 0x2abc  Eaphost - ok
18:14:42.0245 0x2abc  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
18:14:42.0348 0x2abc  ebdrv - ok
18:14:42.0354 0x2abc  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS             C:\Windows\System32\lsass.exe
18:14:42.0355 0x2abc  EFS - ok
18:14:42.0360 0x2abc  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
18:14:42.0362 0x2abc  EhStorClass - ok
18:14:42.0373 0x2abc  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
18:14:42.0376 0x2abc  EhStorTcgDrv - ok
18:14:42.0451 0x2abc  [ 6066FDFF6E02A0F1F2584EBC9D4A1E63, 2CD1405C4664FBE2EB120EB9F56FCDC629F334AD6BA609A9B442FE594CB6A247 ] ePowerSvc       C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
18:14:42.0482 0x2abc  ePowerSvc - ok
18:14:42.0497 0x2abc  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
18:14:42.0498 0x2abc  ErrDev - ok
18:14:42.0519 0x2abc  [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem     C:\Windows\system32\es.dll
18:14:42.0526 0x2abc  EventSystem - ok
18:14:42.0534 0x2abc  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:14:42.0538 0x2abc  exfat - ok
18:14:42.0545 0x2abc  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:14:42.0548 0x2abc  fastfat - ok
18:14:42.0584 0x2abc  [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax             C:\Windows\system32\fxssvc.exe
18:14:42.0608 0x2abc  Fax - ok
18:14:42.0626 0x2abc  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
18:14:42.0628 0x2abc  fdc - ok
18:14:42.0640 0x2abc  [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost         C:\Windows\system32\fdPHost.dll
18:14:42.0642 0x2abc  fdPHost - ok
18:14:42.0649 0x2abc  [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub        C:\Windows\system32\fdrespub.dll
18:14:42.0651 0x2abc  FDResPub - ok
18:14:42.0663 0x2abc  [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc           C:\Windows\system32\fhsvc.dll
18:14:42.0666 0x2abc  fhsvc - ok
18:14:42.0672 0x2abc  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:14:42.0674 0x2abc  FileInfo - ok
18:14:42.0678 0x2abc  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:14:42.0679 0x2abc  Filetrace - ok
18:14:42.0683 0x2abc  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
18:14:42.0684 0x2abc  flpydisk - ok
18:14:42.0705 0x2abc  [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:14:42.0712 0x2abc  FltMgr - ok
18:14:42.0761 0x2abc  [ 6C068E7207F183FF3647E45D2599E80C, D65C9888522CA29596D5C8BEFF42356F0310E812117E72C1D612BA089C0940D9 ] FontCache       C:\Windows\system32\FntCache.dll
18:14:42.0782 0x2abc  FontCache - ok
18:14:42.0795 0x2abc  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:14:42.0796 0x2abc  FontCache3.0.0.0 - ok
18:14:42.0810 0x2abc  [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:14:42.0812 0x2abc  FsDepends - ok
18:14:42.0821 0x2abc  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:14:42.0832 0x2abc  Fs_Rec - ok
18:14:42.0846 0x2abc  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:14:42.0868 0x2abc  fvevol - ok
18:14:42.0884 0x2abc  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
18:14:42.0885 0x2abc  FxPPM - ok
18:14:42.0890 0x2abc  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
18:14:42.0892 0x2abc  gagp30kx - ok
18:14:42.0917 0x2abc  [ CF4F970FB35A645D8643F7C3F1506A7A, DD68DAB35AB8515163F138D93840AB36C6C565B462B78E52F9C1392B59589B70 ] GamesAppIntegrationService C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
18:14:42.0923 0x2abc  GamesAppIntegrationService - ok
18:14:42.0933 0x2abc  [ C23410A44ADDF0E1A9B4BA42A5DD5EA7, 384382D16D09A17E29D8348E1CF8DD7E377607DB3472AB8888EF8E83671B772C ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
18:14:42.0939 0x2abc  GamesAppService - ok
18:14:42.0944 0x2abc  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:14:42.0945 0x2abc  GEARAspiWDM - ok
18:14:42.0949 0x2abc  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
18:14:42.0950 0x2abc  gencounter - ok
18:14:42.0966 0x2abc  [ B93252C4C5A3733ECD5522CAF88DE02D, 382450F0FF238B6077A78F75AC5D4E53AD7D884706B90E7AC4D4DF467C9A2162 ] GigasetGenericUSB_x64 C:\Windows\system32\DRIVERS\GigasetGenericUSB_x64.sys
18:14:42.0968 0x2abc  GigasetGenericUSB_x64 - ok
18:14:42.0987 0x2abc  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
18:14:42.0991 0x2abc  GPIOClx0101 - ok
18:14:43.0038 0x2abc  [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:14:43.0070 0x2abc  gpsvc - ok
18:14:43.0096 0x2abc  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:14:43.0105 0x2abc  HdAudAddService - ok
18:14:43.0111 0x2abc  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
18:14:43.0113 0x2abc  HDAudBus - ok
18:14:43.0125 0x2abc  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
18:14:43.0127 0x2abc  HidBatt - ok
18:14:43.0143 0x2abc  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
18:14:43.0145 0x2abc  HidBth - ok
18:14:43.0161 0x2abc  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
18:14:43.0163 0x2abc  hidi2c - ok
18:14:43.0177 0x2abc  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
18:14:43.0179 0x2abc  HidIr - ok
18:14:43.0183 0x2abc  [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv         C:\Windows\system32\hidserv.dll
18:14:43.0184 0x2abc  hidserv - ok
18:14:43.0188 0x2abc  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
18:14:43.0189 0x2abc  HidUsb - ok
18:14:43.0230 0x2abc  [ D48353F089C95D5154ACA1305BC63491, 663942E2368BAE8F9E89E72CE9DC1B9E1B56387F9811C01E014161F9A4C3EAB1 ] HiSuiteOuc64.exe C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
18:14:43.0232 0x2abc  HiSuiteOuc64.exe - ok
18:14:43.0236 0x2abc  [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:14:43.0239 0x2abc  hkmsvc - ok
18:14:43.0260 0x2abc  [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:14:43.0264 0x2abc  HomeGroupListener - ok
18:14:43.0276 0x2abc  [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:14:43.0284 0x2abc  HomeGroupProvider - ok
18:14:43.0301 0x2abc  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:14:43.0303 0x2abc  HpSAMD - ok
18:14:43.0341 0x2abc  [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:14:43.0356 0x2abc  HTTP - ok
18:14:43.0364 0x2abc  [ FA779EF13C74BEA77A136FC69EEA0485, D6D03ACD7D61AE1159F65418794F336475A8F8C77145B8CD17C789437BA55FD6 ] HuaweiHiSuiteService64.exe C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
18:14:43.0366 0x2abc  HuaweiHiSuiteService64.exe - ok
18:14:43.0374 0x2abc  [ CB32F01890953A2FEE8FE01F289DF726, 77B3A619945F301CFC8B2E9E1D5D9355822EC3370928049247EA2BCB4E4D7E63 ] HWHandSet       C:\Windows\system32\DRIVERS\hw_quusbmdm.sys
18:14:43.0378 0x2abc  HWHandSet - ok
18:14:43.0389 0x2abc  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:14:43.0390 0x2abc  hwpolicy - ok
18:14:43.0403 0x2abc  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
18:14:43.0404 0x2abc  hyperkbd - ok
18:14:43.0407 0x2abc  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
18:14:43.0408 0x2abc  HyperVideo - ok
18:14:43.0414 0x2abc  [ D887446F3F6051C60C26F4FD1FC8D43F, A3235C64E9D5378E3409FA7CDD9DB0DD1B3CE6A6EB018F2C40558EB9C427A498 ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
18:14:43.0417 0x2abc  i8042prt - ok
18:14:43.0427 0x2abc  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
18:14:43.0429 0x2abc  iaLPSSi_GPIO - ok
18:14:43.0441 0x2abc  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
18:14:43.0444 0x2abc  iaLPSSi_I2C - ok
18:14:43.0459 0x2abc  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
18:14:43.0471 0x2abc  iaStorAV - ok
18:14:43.0482 0x2abc  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:14:43.0489 0x2abc  iaStorV - ok
18:14:43.0492 0x2abc  IEEtwCollectorService - ok
18:14:43.0607 0x2abc  [ 712B795D0920264F2B166D2313FFC43D, 3B9CE043D170B6CFA43573916D293F5E6EE8A8372C72F48F428702D5E36BF0CA ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:14:43.0717 0x2abc  igfx - ok
18:14:43.0730 0x2abc  [ 201700DCB9CF3D72B9CCA09532774DD2, 45E4489C1703D6A324E46C8314211B2FD2C76C6EB44E8CAD868FF2BC202E7122 ] igfxCUIService1.0.0.0 C:\Windows\system32\igfxCUIService.exe
18:14:43.0734 0x2abc  igfxCUIService1.0.0.0 - ok
18:14:43.0771 0x2abc  [ 3DBDBD9581C015F02651D6A89801FAD5, 81B6D302C9CD29AD8319515056CFBCD0BD25619B2B166937ACD5F1416B568837 ] IKEEXT          C:\Windows\System32\ikeext.dll
18:14:43.0798 0x2abc  IKEEXT - ok
18:14:43.0816 0x2abc  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
18:14:43.0818 0x2abc  intaud_WaveExtensible - ok
18:14:43.0933 0x2abc  [ C0A462BA7E9A07EFBD3571740F8D0145, 79AA2136EEBD07F5B66F177C64CA9B887A11DC777EDF5D1797C64611129FD32F ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
18:14:44.0027 0x2abc  IntcAzAudAddService - ok
18:14:44.0047 0x2abc  [ 890144FA6AB42F2B54EE633BF96A019A, 8741904C66170BA11C78D31681E3759537C0BF2338538678BC64234DB8FDE93F ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
18:14:44.0053 0x2abc  IntcDAud - ok
18:14:44.0102 0x2abc  [ 4C17F57E43645E75800E9E84787E34E5, 6A1531D97462BA3B3DBDAD472AF15B717C958AA8C5CE2373DE0B2A41C35BE33E ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
18:14:44.0115 0x2abc  Intel(R) Capability Licensing Service TCP IP Interface - ok
18:14:44.0140 0x2abc  [ 2390C395882F7773AB7D6CC2547B41DE, 220EBA14BC4A686ED9879D27900AD66ACD937899759A4319297E0F15DFAB247C ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
18:14:44.0142 0x2abc  Intel(R) ME Service - ok
18:14:44.0157 0x2abc  [ 50672DB7AF32CD9D5AB829731256642C, 5CE27D075C4C2E837A885A931B7000BC881FF3D93960A41013F2580D913C3F71 ] Intel(R) TechnologyAccessService C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
18:14:44.0158 0x2abc  Intel(R) TechnologyAccessService - ok
18:14:44.0173 0x2abc  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:14:44.0174 0x2abc  intelide - ok
18:14:44.0193 0x2abc  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
18:14:44.0194 0x2abc  intelpep - ok
18:14:44.0200 0x2abc  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
18:14:44.0202 0x2abc  intelppm - ok
18:14:44.0219 0x2abc  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:14:44.0221 0x2abc  IpFilterDriver - ok
18:14:44.0251 0x2abc  [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:14:44.0265 0x2abc  iphlpsvc - ok
18:14:44.0270 0x2abc  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
18:14:44.0272 0x2abc  IPMIDRV - ok
18:14:44.0289 0x2abc  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:14:44.0292 0x2abc  IPNAT - ok
18:14:44.0307 0x2abc  [ E61BB95A7CB49696D25A0C4EBD108156, 65D95A0DBC408AD18D5E344A5E875551E6CC044038DE438E4EA1102A234FC529 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
18:14:44.0315 0x2abc  iPod Service - ok
18:14:44.0318 0x2abc  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:14:44.0319 0x2abc  IRENUM - ok
18:14:44.0322 0x2abc  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:14:44.0323 0x2abc  isapnp - ok
18:14:44.0345 0x2abc  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
18:14:44.0351 0x2abc  iScsiPrt - ok
18:14:44.0375 0x2abc  [ 64700303BF6592C1D139F68C63EE597A, 1094057F109B322832F72E1C727F9717292750B0826AEDA7B940B78FCF3E0F17 ] iumsvc          C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
18:14:44.0379 0x2abc  iumsvc - ok
18:14:44.0382 0x2abc  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\Windows\System32\drivers\iwdbus.sys
18:14:44.0383 0x2abc  iwdbus - ok
18:14:44.0399 0x2abc  [ BDC9C7931DB723CB1AF9F7075EA06645, EEBD5DC9C4656F14F8F0A0A5E84657B6B2BA35283E0E571119DA82F131D5C21B ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:14:44.0401 0x2abc  jhi_service - ok
18:14:44.0426 0x2abc  [ 779010324CCB6B974C4D737DDAABB2D5, 3D8591069D02F0888517C54A4C52E3174771EE86D3DA272C14FCE1B27DCB8613 ] k57nd60a        C:\Windows\system32\DRIVERS\k57nd60a.sys
18:14:44.0433 0x2abc  k57nd60a - ok
18:14:44.0446 0x2abc  [ A1D4D34A56DF1D5122CDB265038A2E72, AE061BA1A65C98AF875FA18878B014B57E33594D4AC4C39B050AA532E2220F83 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
18:14:44.0449 0x2abc  kbdclass - ok
18:14:44.0460 0x2abc  [ 4A34D7084B862A92F3ABC4969166B3D3, 87B2635873DA4DD06D9E3B8E4313CBDBDC1488E4E340EC2101393EC65823771F ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
18:14:44.0462 0x2abc  kbdhid - ok
18:14:44.0480 0x2abc  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
18:14:44.0481 0x2abc  kdnic - ok
18:14:44.0484 0x2abc  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso          C:\Windows\system32\lsass.exe
18:14:44.0486 0x2abc  KeyIso - ok
18:14:44.0491 0x2abc  [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:14:44.0493 0x2abc  KSecDD - ok
18:14:44.0499 0x2abc  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:14:44.0503 0x2abc  KSecPkg - ok
18:14:44.0506 0x2abc  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:14:44.0508 0x2abc  ksthunk - ok
18:14:44.0531 0x2abc  [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:14:44.0537 0x2abc  KtmRm - ok
18:14:44.0577 0x2abc  [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer    C:\Windows\system32\srvsvc.dll
18:14:44.0584 0x2abc  LanmanServer - ok
18:14:44.0606 0x2abc  [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:14:44.0616 0x2abc  LanmanWorkstation - ok
18:14:44.0640 0x2abc  [ 2B7479EB47731A8ACBA28AF4C4BDA32D, 67AEB98E7B41337FEFD92CC81BFAD25FBB679998B318C110A4873B1AD8927A97 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
18:14:44.0648 0x2abc  lfsvc - ok
18:14:44.0664 0x2abc  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:14:44.0666 0x2abc  lltdio - ok
18:14:44.0674 0x2abc  [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:14:44.0679 0x2abc  lltdsvc - ok
18:14:44.0695 0x2abc  [ 4ACC60B4CBC911F3F34A1D66213BBBF5, C09A87ACAE0D41FD425BAF076FFE9B601DB89BB66199E5BD72FC59C6A8E449DB ] LMDriver        C:\Windows\System32\drivers\LMDriver.sys
18:14:44.0696 0x2abc  LMDriver - ok
18:14:44.0699 0x2abc  [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:14:44.0701 0x2abc  lmhosts - ok
18:14:44.0722 0x2abc  [ A7D2A96187E5C5F4F7650900A15788AA, F131C3E8206A89A9244ECF2507F4FC1A8550E594A58F75338939A54C973078AF ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:14:44.0727 0x2abc  LMS - ok
18:14:44.0765 0x2abc  [ 4C5177C5EA6A66C6CFAA49737C023ED1, 3FA54E51A7B8EF438A93E96B3067139B911D3128B6048C135CA39B8E7200D5F5 ] LMSvc           C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
18:14:44.0771 0x2abc  LMSvc - ok
18:14:44.0777 0x2abc  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
18:14:44.0779 0x2abc  LSI_SAS - ok
18:14:44.0797 0x2abc  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
18:14:44.0799 0x2abc  LSI_SAS2 - ok
18:14:44.0804 0x2abc  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
18:14:44.0805 0x2abc  LSI_SAS3 - ok
18:14:44.0811 0x2abc  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
18:14:44.0813 0x2abc  LSI_SSS - ok
18:14:44.0847 0x2abc  [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM             C:\Windows\System32\lsm.dll
18:14:44.0861 0x2abc  LSM - ok
18:14:44.0866 0x2abc  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:14:44.0868 0x2abc  luafv - ok
18:14:44.0884 0x2abc  [ 23488767CB18FC3FF39E3AF1DB3FB02C, F526B80EDA5309162239741CF1C77957E2F9EDEB223AB3DB6FF0DEA3D473590B ] massfilter      C:\Windows\system32\drivers\massfilter.sys
18:14:44.0886 0x2abc  massfilter - ok
18:14:44.0888 0x2abc  McAfee SiteAdvisor Service - ok
18:14:44.0902 0x2abc  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
18:14:44.0904 0x2abc  megasas - ok
18:14:44.0918 0x2abc  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
18:14:44.0928 0x2abc  megasr - ok
18:14:44.0934 0x2abc  [ AFEA4FAABCE6F0C299E9231FF4F466BE, BCF0C50F02C4AC2784139935F3756F5C4D24FCAF07ACD9567B87991A9D1F16DB ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
18:14:44.0936 0x2abc  MEIx64 - ok
18:14:44.0949 0x2abc  Microsoft SharePoint Workspace Audit Service - ok
18:14:44.0961 0x2abc  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS           C:\Windows\system32\mmcss.dll
18:14:44.0964 0x2abc  MMCSS - ok
18:14:44.0967 0x2abc  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
18:14:44.0968 0x2abc  Modem - ok
18:14:44.0972 0x2abc  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
18:14:44.0973 0x2abc  monitor - ok
18:14:44.0977 0x2abc  [ 2A2F8D5284E59815169A88F1FC9CEE28, 58EFBCF3C849FD088CFB7FE287FC7D9DD7E03D4E6AA98F0497C09E4596E42538 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
18:14:44.0978 0x2abc  mouclass - ok
18:14:44.0982 0x2abc  [ 91223A2AE2955B3E0DA3DB79C3A897A6, 32B59CF1586C2300D60AF8A1D819515033ACC7F7A1F3523FC4AC7725E29B5A90 ] mouhid          C:\Windows\System32\drivers\mouhid.sys
18:14:44.0983 0x2abc  mouhid - ok
18:14:44.0989 0x2abc  [ D1D82F007A079A4D623DBD1F36EF30A1, 7901F81B62C5A4196D75A10C05386B16831CB290EFB9A1611CECF281068C520F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:14:44.0991 0x2abc  mountmgr - ok
18:14:45.0004 0x2abc  [ 9FC679D10A7377BB04ECC3D0E2E26B53, 24ACD4EC1618A052C29E4463138B28F62C8B78D442DB82F4925E64FC5849A096 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:14:45.0006 0x2abc  MozillaMaintenance - ok
18:14:45.0011 0x2abc  [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:14:45.0013 0x2abc  mpsdrv - ok
18:14:45.0032 0x2abc  [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:14:45.0047 0x2abc  MpsSvc - ok
18:14:45.0059 0x2abc  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:14:45.0061 0x2abc  MRxDAV - ok
18:14:45.0073 0x2abc  [ 31233271EDE50D1BBB220F78AFA60486, 2122FAB5BD353DF63CF0FE9CEDBD5DFD1F26F2DE04303E1B3FFB03AA02AECED9 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:14:45.0080 0x2abc  mrxsmb - ok
18:14:45.0089 0x2abc  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:14:45.0094 0x2abc  mrxsmb10 - ok
18:14:45.0101 0x2abc  [ 6276AC2AA203CF47811F6EFBBD214FBF, AE55D87D863A626347B0074F4E962080F1989A94153DAF8475593249F616DA2F ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:14:45.0105 0x2abc  mrxsmb20 - ok
18:14:45.0117 0x2abc  [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
18:14:45.0119 0x2abc  MsBridge - ok
18:14:45.0130 0x2abc  [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC           C:\Windows\System32\msdtc.exe
18:14:45.0133 0x2abc  MSDTC - ok
18:14:45.0139 0x2abc  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:14:45.0140 0x2abc  Msfs - ok
18:14:45.0154 0x2abc  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
18:14:45.0156 0x2abc  msgpiowin32 - ok
18:14:45.0167 0x2abc  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:14:45.0169 0x2abc  mshidkmdf - ok
18:14:45.0184 0x2abc  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
18:14:45.0186 0x2abc  mshidumdf - ok
18:14:45.0190 0x2abc  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:14:45.0191 0x2abc  msisadrv - ok
18:14:45.0206 0x2abc  [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:14:45.0210 0x2abc  MSiSCSI - ok
18:14:45.0212 0x2abc  msiserver - ok
18:14:45.0222 0x2abc  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:14:45.0224 0x2abc  MSKSSRV - ok
18:14:45.0238 0x2abc  [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
18:14:45.0240 0x2abc  MsLldp - ok
18:14:45.0243 0x2abc  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:14:45.0244 0x2abc  MSPCLOCK - ok
18:14:45.0247 0x2abc  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:14:45.0247 0x2abc  MSPQM - ok
18:14:45.0262 0x2abc  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:14:45.0267 0x2abc  MsRPC - ok
18:14:45.0280 0x2abc  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
18:14:45.0283 0x2abc  mssmbios - ok
18:14:45.0302 0x2abc  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:14:45.0304 0x2abc  MSTEE - ok
18:14:45.0315 0x2abc  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
18:14:45.0316 0x2abc  MTConfig - ok
18:14:45.0324 0x2abc  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
18:14:45.0327 0x2abc  Mup - ok
18:14:45.0334 0x2abc  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
18:14:45.0337 0x2abc  mvumis - ok
18:14:45.0360 0x2abc  [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent        C:\Windows\system32\qagentRT.dll
18:14:45.0370 0x2abc  napagent - ok
18:14:45.0382 0x2abc  [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:14:45.0389 0x2abc  NativeWifiP - ok
18:14:45.0399 0x2abc  [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc          C:\Windows\System32\ncasvc.dll
18:14:45.0403 0x2abc  NcaSvc - ok
18:14:45.0409 0x2abc  [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService      C:\Windows\System32\ncbservice.dll
18:14:45.0413 0x2abc  NcbService - ok
18:14:45.0428 0x2abc  [ 9ACED0F5B458C9011F39143326494E93, 9DFFC7EE7DE6FD92545EC6A203213C498A01EEFB0BC55460D339BCE498E56A7F ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
18:14:45.0431 0x2abc  NcdAutoSetup - ok
18:14:45.0470 0x2abc  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:14:45.0487 0x2abc  NDIS - ok
18:14:45.0501 0x2abc  [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:14:45.0502 0x2abc  NdisCap - ok
18:14:45.0519 0x2abc  [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
18:14:45.0522 0x2abc  NdisImPlatform - ok
18:14:45.0537 0x2abc  [ 6AA7FB95A2E80428601438E83E2C2C70, 28FB4464FAA2371419FA38F484EFB9A05C28F99D554E321198BD4B9AD764B7F7 ] ndisrd          C:\Windows\system32\DRIVERS\ndisrfl.sys
18:14:45.0539 0x2abc  ndisrd - ok
18:14:45.0549 0x2abc  [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:14:45.0550 0x2abc  NdisTapi - ok
18:14:45.0554 0x2abc  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:14:45.0556 0x2abc  Ndisuio - ok
18:14:45.0564 0x2abc  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
18:14:45.0565 0x2abc  NdisVirtualBus - ok
18:14:45.0586 0x2abc  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:14:45.0590 0x2abc  NdisWan - ok
18:14:45.0595 0x2abc  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
18:14:45.0598 0x2abc  NdisWanLegacy - ok
18:14:45.0602 0x2abc  [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:14:45.0604 0x2abc  NDProxy - ok
18:14:45.0619 0x2abc  [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
18:14:45.0621 0x2abc  Ndu - ok
18:14:45.0633 0x2abc  [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:14:45.0634 0x2abc  NetBIOS - ok
18:14:45.0655 0x2abc  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:14:45.0660 0x2abc  NetBT - ok
18:14:45.0664 0x2abc  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon        C:\Windows\system32\lsass.exe
18:14:45.0666 0x2abc  Netlogon - ok
18:14:45.0674 0x2abc  [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman          C:\Windows\System32\netman.dll
18:14:45.0680 0x2abc  Netman - ok
18:14:45.0693 0x2abc  [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm        C:\Windows\System32\netprofmsvc.dll
18:14:45.0703 0x2abc  netprofm - ok
18:14:45.0718 0x2abc  [ 6D93008DAB18953F2BD3B7186385A511, 4AFD8126944F725C5D8AB93DCEA554515D944F5F34D5CADA6B22366DE55EA1FF ] NetTap630       C:\Windows\system32\DRIVERS\nettap630.sys
18:14:45.0720 0x2abc  NetTap630 - ok
18:14:45.0755 0x2abc  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:14:45.0758 0x2abc  NetTcpPortSharing - ok
18:14:45.0775 0x2abc  [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc          C:\Windows\System32\drivers\netvsc63.sys
18:14:45.0777 0x2abc  netvsc - ok
18:14:45.0788 0x2abc  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:14:45.0795 0x2abc  NlaSvc - ok
18:14:45.0800 0x2abc  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:14:45.0801 0x2abc  Npfs - ok
18:14:45.0819 0x2abc  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
18:14:45.0820 0x2abc  npsvctrig - ok
18:14:45.0824 0x2abc  [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi             C:\Windows\system32\nsisvc.dll
18:14:45.0826 0x2abc  nsi - ok
18:14:45.0839 0x2abc  [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:14:45.0840 0x2abc  nsiproxy - ok
18:14:45.0912 0x2abc  [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:14:45.0947 0x2abc  Ntfs - ok
18:14:45.0952 0x2abc  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
18:14:45.0953 0x2abc  Null - ok
18:14:46.0261 0x2abc  [ EEA11D0AED5C40A6C926B21CEC53EE65, 8BED3555C9CA4EBEA7F2FB326C2A2F488110C07C98FADE35D818B72C09CF005E ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:14:46.0564 0x2abc  nvlddmkm - ok
18:14:46.0616 0x2abc  [ E09C5339746C10596C1BA740956F3416, 58012873ED920EC42C7DE405745C290DB74A1CF7B6161EA9216B1EC515538002 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
18:14:46.0635 0x2abc  NvNetworkService - ok
18:14:46.0652 0x2abc  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:14:46.0655 0x2abc  nvraid - ok
18:14:46.0659 0x2abc  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:14:46.0662 0x2abc  nvstor - ok
18:14:46.0692 0x2abc  [ 79D473EA26DBD029DBF21DDB83F7552B, 7459D867DA39D4EC3135E8A7343865ADE383198153E3B41BB14EEDD38E5E36AA ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:14:46.0705 0x2abc  nvsvc - ok
18:14:46.0709 0x2abc  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:14:46.0712 0x2abc  nv_agp - ok
18:14:46.0739 0x2abc  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:14:46.0742 0x2abc  ose - ok
18:14:46.0905 0x2abc  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
18:14:46.0989 0x2abc  osppsvc - ok
18:14:47.0020 0x2abc  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:14:47.0027 0x2abc  p2pimsvc - ok
18:14:47.0046 0x2abc  [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc          C:\Windows\system32\p2psvc.dll
18:14:47.0054 0x2abc  p2psvc - ok
18:14:47.0074 0x2abc  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
18:14:47.0076 0x2abc  Parport - ok
18:14:47.0080 0x2abc  [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:14:47.0083 0x2abc  partmgr - ok
18:14:47.0095 0x2abc  [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:14:47.0103 0x2abc  PcaSvc - ok
18:14:47.0114 0x2abc  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
18:14:47.0120 0x2abc  pci - ok
18:14:47.0124 0x2abc  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:14:47.0125 0x2abc  pciide - ok
18:14:47.0143 0x2abc  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
18:14:47.0146 0x2abc  pcmcia - ok
18:14:47.0149 0x2abc  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:14:47.0151 0x2abc  pcw - ok
18:14:47.0155 0x2abc  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
18:14:47.0157 0x2abc  pdc - ok
18:14:47.0189 0x2abc  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:14:47.0199 0x2abc  PEAUTH - ok
18:14:47.0255 0x2abc  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:14:47.0258 0x2abc  PerfHost - ok
18:14:47.0329 0x2abc  [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla             C:\Windows\system32\pla.dll
18:14:47.0355 0x2abc  pla - ok
18:14:47.0368 0x2abc  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:14:47.0371 0x2abc  PlugPlay - ok
18:14:47.0390 0x2abc  [ 23DF6106A8EA6DA5D0583B0F8CFF984D, 065FF987AC47F4308093A34D8FF6780BD797445C606BF8D5CAF5FA8D953B821E ] PMBDeviceInfoProvider C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
18:14:47.0396 0x2abc  PMBDeviceInfoProvider - ok
18:14:47.0411 0x2abc  [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:14:47.0415 0x2abc  PNRPAutoReg - ok
18:14:47.0432 0x2abc  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:14:47.0445 0x2abc  PNRPsvc - ok
18:14:47.0466 0x2abc  [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:14:47.0473 0x2abc  PolicyAgent - ok
18:14:47.0487 0x2abc  [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power           C:\Windows\system32\umpo.dll
18:14:47.0490 0x2abc  Power - ok
18:14:47.0521 0x2abc  [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:14:47.0524 0x2abc  PptpMiniport - ok
18:14:47.0634 0x2abc  [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
18:14:47.0699 0x2abc  PrintNotify - ok
18:14:47.0715 0x2abc  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
18:14:47.0718 0x2abc  Processor - ok
18:14:47.0725 0x2abc  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:14:47.0730 0x2abc  ProfSvc - ok
18:14:47.0736 0x2abc  [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:14:47.0739 0x2abc  Psched - ok
18:14:47.0779 0x2abc  [ 992DBEEC25BC2535B03B564367A3B652, 68CA8A8C4B03A06BB71E5DBB3883B3605C4AA64322665BFACC410206362A7AD9 ] QASvc           C:\Program Files\Acer\Acer Quick Access\QASvc.exe
18:14:47.0785 0x2abc  QASvc - ok
18:14:47.0800 0x2abc  [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE           C:\Windows\system32\qwave.dll
18:14:47.0806 0x2abc  QWAVE - ok
18:14:47.0810 0x2abc  [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:14:47.0812 0x2abc  QWAVEdrv - ok
18:14:47.0823 0x2abc  [ 6A52182919E25FB56D253D389F92CE98, AE6497D5CF324CB813248ADECB0F53E5CB3D6C326774E2257319E4CE7782C591 ] RadioShim       C:\Windows\System32\drivers\RadioShim.sys
18:14:47.0825 0x2abc  RadioShim - ok
18:14:47.0840 0x2abc  [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:14:47.0841 0x2abc  RasAcd - ok
18:14:47.0859 0x2abc  [ E8FFD8BE3C50E7A71C5FBB87BDD1128E, 3E3EB906CC9A1CCA09580DA9F94DD0E1162CABD343874B76718DC4F2E9069C4E ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:14:47.0862 0x2abc  RasAgileVpn - ok
18:14:47.0878 0x2abc  [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto         C:\Windows\System32\rasauto.dll
18:14:47.0885 0x2abc  RasAuto - ok
18:14:47.0904 0x2abc  [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:14:47.0910 0x2abc  Rasl2tp - ok
18:14:47.0946 0x2abc  [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan          C:\Windows\System32\rasmans.dll
18:14:47.0956 0x2abc  RasMan - ok
18:14:47.0966 0x2abc  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:14:47.0968 0x2abc  RasPppoe - ok
18:14:47.0973 0x2abc  [ 41F631007A158FEBB67F0E2AD1601BBA, EB5EA7277F4178BC27E55BF850AEBCD84B6BED80B2383CFB29548824AAFED135 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:14:47.0975 0x2abc  RasSstp - ok
18:14:48.0001 0x2abc  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:14:48.0008 0x2abc  rdbss - ok
18:14:48.0013 0x2abc  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
18:14:48.0014 0x2abc  rdpbus - ok
18:14:48.0020 0x2abc  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
18:14:48.0024 0x2abc  RDPDR - ok
18:14:48.0038 0x2abc  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:14:48.0040 0x2abc  RdpVideoMiniport - ok
18:14:48.0047 0x2abc  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:14:48.0052 0x2abc  rdyboost - ok
18:14:48.0073 0x2abc  [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
18:14:48.0088 0x2abc  ReFS - ok
18:14:48.0118 0x2abc  [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:14:48.0123 0x2abc  RemoteAccess - ok
18:14:48.0141 0x2abc  [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:14:48.0145 0x2abc  RemoteRegistry - ok
18:14:48.0161 0x2abc  [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
18:14:48.0165 0x2abc  RFCOMM - ok
18:14:48.0183 0x2abc  [ 41DDCF1ADD1FB7DE23DCF671740DDBE6, 87ECB5C883CEFF76D126A5B4D92E069C9298FA5B62CC981870F9ECCA13C074F1 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
18:14:48.0186 0x2abc  RichVideo - ok
18:14:48.0198 0x2abc  [ F15FB6917435F714F31604FAE64BF254, DE917BCDA6DE8636A6652148647C9CCDC8D5EF31F222A9FD1CD1FAF5EDED3B0F ] RMSvc           C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
18:14:48.0203 0x2abc  RMSvc - ok
18:14:48.0208 0x2abc  [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:14:48.0211 0x2abc  RpcEptMapper - ok
18:14:48.0215 0x2abc  [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator      C:\Windows\system32\locator.exe
18:14:48.0216 0x2abc  RpcLocator - ok
18:14:48.0239 0x2abc  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs           C:\Windows\system32\rpcss.dll
18:14:48.0250 0x2abc  RpcSs - ok
18:14:48.0255 0x2abc  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:14:48.0257 0x2abc  rspndr - ok
18:14:48.0267 0x2abc  [ BCDE27DA663D2F1BE1EA262F2BFDA8D0, 07744F83C41503D8C948E8D8569628C7C9D283EBA3C20CB63BC81123812A0A25 ] RSUSBVSTOR      C:\Windows\System32\Drivers\RtsUVStor.sys
18:14:48.0274 0x2abc  RSUSBVSTOR - ok
18:14:48.0288 0x2abc  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
18:14:48.0298 0x2abc  RTL8168 - ok
18:14:48.0309 0x2abc  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
18:14:48.0310 0x2abc  s3cap - ok
18:14:48.0314 0x2abc  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs           C:\Windows\system32\lsass.exe
18:14:48.0315 0x2abc  SamSs - ok
18:14:48.0330 0x2abc  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:14:48.0333 0x2abc  sbp2port - ok
18:14:48.0347 0x2abc  [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:14:48.0352 0x2abc  SCardSvr - ok
18:14:48.0367 0x2abc  [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
18:14:48.0370 0x2abc  ScDeviceEnum - ok
18:14:48.0378 0x2abc  [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:14:48.0380 0x2abc  scfilter - ok
18:14:48.0408 0x2abc  [ A626F5E446860F22835E783142D7AE33, 3A786639E1FABCA512F4F91A10811DD3C4D9C9C9BB893362E4D019219D0BD8E2 ] Schedule        C:\Windows\system32\schedsvc.dll
18:14:48.0430 0x2abc  Schedule - ok
18:14:48.0444 0x2abc  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:14:48.0446 0x2abc  SCPolicySvc - ok
18:14:48.0493 0x2abc  [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus           C:\Windows\System32\drivers\sdbus.sys
18:14:48.0498 0x2abc  sdbus - ok
18:14:48.0509 0x2abc  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
18:14:48.0511 0x2abc  sdstor - ok
18:14:48.0514 0x2abc  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:14:48.0515 0x2abc  secdrv - ok
18:14:48.0520 0x2abc  [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon        C:\Windows\system32\seclogon.dll
18:14:48.0522 0x2abc  seclogon - ok
18:14:48.0539 0x2abc  [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS            C:\Windows\System32\sens.dll
18:14:48.0541 0x2abc  SENS - ok
18:14:48.0556 0x2abc  [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:14:48.0561 0x2abc  SensrSvc - ok
18:14:48.0577 0x2abc  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
18:14:48.0579 0x2abc  SerCx - ok
18:14:48.0592 0x2abc  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
18:14:48.0594 0x2abc  SerCx2 - ok
18:14:48.0598 0x2abc  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ]
         


Alt 06.06.2015, 22:32   #6
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

TDSSKiller_log Teil 2 von 3



Hier kommt Teil 2

Code:
ATTFilter
Serenum         C:\Windows\System32\drivers\serenum.sys
18:14:48.0599 0x2abc  Serenum - ok
18:14:48.0611 0x2abc  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
18:14:48.0613 0x2abc  Serial - ok
18:14:48.0632 0x2abc  [ 96B01F117057FB4DAE0FF919ACB55770, D0F58F1CAE4F81D60FCE60BB0065A34B4F897E8105DF17B6DAA334938CD25A56 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
18:14:48.0634 0x2abc  sermouse - ok
18:14:48.0662 0x2abc  [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv      C:\Windows\system32\sessenv.dll
18:14:48.0669 0x2abc  SessionEnv - ok
18:14:48.0673 0x2abc  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
18:14:48.0674 0x2abc  sfloppy - ok
18:14:48.0693 0x2abc  [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:14:48.0700 0x2abc  SharedAccess - ok
18:14:48.0718 0x2abc  [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:14:48.0730 0x2abc  ShellHWDetection - ok
18:14:48.0734 0x2abc  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
18:14:48.0735 0x2abc  SiSRaid2 - ok
18:14:48.0739 0x2abc  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
18:14:48.0741 0x2abc  SiSRaid4 - ok
18:14:48.0771 0x2abc  [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
18:14:48.0776 0x2abc  SkypeUpdate - ok
18:14:48.0789 0x2abc  [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost         C:\Windows\System32\smphost.dll
18:14:48.0791 0x2abc  smphost - ok
18:14:48.0797 0x2abc  [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:14:48.0798 0x2abc  SNMPTRAP - ok
18:14:48.0820 0x2abc  [ 3C1865D8E8C2DD9ADB29B1A21A8B1972, 4AA1E676545A52749325CB7EE3F24CAF550308804BE833F36A76A32E71BAC6CD ] SOHDms          C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
18:14:48.0826 0x2abc  SOHDms - ok
18:14:48.0835 0x2abc  [ FA4AC5624B245FA03D4CCBA9C48D385E, 3125359763D34EE51EB1125217050DB29045154E76673F7CFED25B6301C7EEBE ] SOHDs           C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
18:14:48.0837 0x2abc  SOHDs - ok
18:14:48.0851 0x2abc  [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport       C:\Windows\system32\drivers\spaceport.sys
18:14:48.0860 0x2abc  spaceport - ok
18:14:48.0864 0x2abc  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
18:14:48.0866 0x2abc  SpbCx - ok
18:14:48.0889 0x2abc  [ C03E480E63A80D73FABE28D24D3B6B47, F8C68DC63A5492587F9343158348ADD99A99AF34DC7ED29E5562EE90C0AB8F25 ] SpfService      C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
18:14:48.0892 0x2abc  SpfService - ok
18:14:48.0911 0x2abc  [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler         C:\Windows\System32\spoolsv.exe
18:14:48.0926 0x2abc  Spooler - ok
18:14:49.0080 0x2abc  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
18:14:49.0156 0x2abc  sppsvc - ok
18:14:49.0190 0x2abc  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:14:49.0196 0x2abc  srv - ok
18:14:49.0223 0x2abc  [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:14:49.0234 0x2abc  srv2 - ok
18:14:49.0241 0x2abc  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:14:49.0246 0x2abc  srvnet - ok
18:14:49.0264 0x2abc  [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:14:49.0269 0x2abc  SSDPSRV - ok
18:14:49.0284 0x2abc  [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:14:49.0288 0x2abc  SstpSvc - ok
18:14:49.0301 0x2abc  [ 91310683D7B6B292B746D60734B59322, 2C56C3E4AA7356FB544B52F80ABDA39A80473390CB2059C69BDCCAD40FE56325 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
18:14:49.0305 0x2abc  ssudmdm - ok
18:14:49.0335 0x2abc  [ F7093A27C4AF6D9EEA0ACAC1C4FF6828, 40E1A8FB08D3063711E87C15B24009B397CAD279905AA72FADBB4A8B611474CD ] ssudserd        C:\Windows\system32\DRIVERS\ssudserd.sys
18:14:49.0339 0x2abc  ssudserd - ok
18:14:49.0373 0x2abc  [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
18:14:49.0382 0x2abc  ss_conn_service - ok
18:14:49.0386 0x2abc  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
18:14:49.0387 0x2abc  stexstor - ok
18:14:49.0399 0x2abc  [ 8F3C0CCF27CFFE89424F30E9FB3381AB, 74E54541B4A16DC97098428E1715A27557BAB97E05AF346F88958580199C1541 ] StillCam        C:\Windows\System32\drivers\serscan.sys
18:14:49.0400 0x2abc  StillCam - ok
18:14:49.0420 0x2abc  [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc          C:\Windows\System32\wiaservc.dll
18:14:49.0431 0x2abc  stisvc - ok
18:14:49.0437 0x2abc  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
18:14:49.0439 0x2abc  storahci - ok
18:14:49.0453 0x2abc  [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
18:14:49.0455 0x2abc  storflt - ok
18:14:49.0468 0x2abc  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
18:14:49.0470 0x2abc  stornvme - ok
18:14:49.0483 0x2abc  [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc         C:\Windows\system32\storsvc.dll
18:14:49.0485 0x2abc  StorSvc - ok
18:14:49.0489 0x2abc  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
18:14:49.0490 0x2abc  storvsc - ok
18:14:49.0498 0x2abc  [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc           C:\Windows\system32\svsvc.dll
18:14:49.0499 0x2abc  svsvc - ok
18:14:49.0503 0x2abc  [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum          C:\Windows\System32\drivers\swenum.sys
18:14:49.0504 0x2abc  swenum - ok
18:14:49.0531 0x2abc  [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv           C:\Windows\System32\swprv.dll
18:14:49.0542 0x2abc  swprv - ok
18:14:49.0547 0x2abc  [ B5E2DD0C1EEB5A6089F846E714283610, C3135E4587BD17B8371C9DFF1803BA8774549C5F02C9399EC1D49BC1853BEED0 ] SynRMIHID       C:\Windows\system32\DRIVERS\SynRMIHID.sys
18:14:49.0548 0x2abc  SynRMIHID - ok
18:14:49.0590 0x2abc  [ 3114CB46C2853CA71525428CB0C7CB58, A9CC51506AABBC23BAB2B90E30AB13197A72268A3DE6D2F281C1C367ED7118AE ] SysMain         C:\Windows\system32\sysmain.dll
18:14:49.0609 0x2abc  SysMain - ok
18:14:49.0628 0x2abc  [ 23BECB70654B192A7E378DEE3DBD8D42, 7596174AE7508B62C40A429645198F6A420D0CD5B62A10AB78516113584E7EDB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
18:14:49.0634 0x2abc  SystemEventsBroker - ok
18:14:49.0653 0x2abc  [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:14:49.0657 0x2abc  TabletInputService - ok
18:14:49.0679 0x2abc  [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:14:49.0685 0x2abc  TapiSrv - ok
18:14:49.0766 0x2abc  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:14:49.0823 0x2abc  Tcpip - ok
18:14:49.0863 0x2abc  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:14:49.0893 0x2abc  TCPIP6 - ok
18:14:49.0900 0x2abc  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:14:49.0901 0x2abc  tcpipreg - ok
18:14:49.0906 0x2abc  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:14:49.0909 0x2abc  tdx - ok
18:14:49.0919 0x2abc  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
18:14:49.0920 0x2abc  terminpt - ok
18:14:49.0944 0x2abc  [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService     C:\Windows\System32\termsrv.dll
18:14:49.0959 0x2abc  TermService - ok
18:14:49.0973 0x2abc  [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes          C:\Windows\system32\themeservice.dll
18:14:49.0976 0x2abc  Themes - ok
18:14:49.0987 0x2abc  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER     C:\Windows\system32\mmcss.dll
18:14:49.0989 0x2abc  THREADORDER - ok
18:14:49.0997 0x2abc  [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
18:14:50.0003 0x2abc  TimeBroker - ok
18:14:50.0024 0x2abc  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
18:14:50.0027 0x2abc  TPM - ok
18:14:50.0033 0x2abc  [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks          C:\Windows\System32\trkwks.dll
18:14:50.0037 0x2abc  TrkWks - ok
18:14:50.0054 0x2abc  [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:14:50.0056 0x2abc  TrustedInstaller - ok
18:14:50.0067 0x2abc  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:14:50.0069 0x2abc  TsUsbFlt - ok
18:14:50.0082 0x2abc  [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
18:14:50.0084 0x2abc  TsUsbGD - ok
18:14:50.0090 0x2abc  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:14:50.0093 0x2abc  tunnel - ok
18:14:50.0103 0x2abc  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
18:14:50.0104 0x2abc  uagp35 - ok
18:14:50.0115 0x2abc  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
18:14:50.0117 0x2abc  UASPStor - ok
18:14:50.0125 0x2abc  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
18:14:50.0129 0x2abc  UCX01000 - ok
18:14:50.0149 0x2abc  [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:14:50.0154 0x2abc  udfs - ok
18:14:50.0171 0x2abc  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
18:14:50.0173 0x2abc  UEFI - ok
18:14:50.0189 0x2abc  [ EE33325429532937D51AC3F54DC93589, D861B541E42F41EDC69A2A3B44860E40164D797D11B4343495DE6281D33F718C ] UEIPSvc         C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
18:14:50.0192 0x2abc  UEIPSvc - ok
18:14:50.0210 0x2abc  [ 13BFF97E926BF8D9C1230CECC371A0C0, 2A15D85E41D3986401D74CBCA36E190E82A61F99EECE0AB85A1CF2A57C60FD85 ] UI Assistant Service C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
18:14:50.0214 0x2abc  UI Assistant Service - ok
18:14:50.0218 0x2abc  [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:14:50.0220 0x2abc  UI0Detect - ok
18:14:50.0230 0x2abc  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:14:50.0232 0x2abc  uliagpkx - ok
18:14:50.0248 0x2abc  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
18:14:50.0250 0x2abc  umbus - ok
18:14:50.0267 0x2abc  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
18:14:50.0268 0x2abc  UmPass - ok
18:14:50.0284 0x2abc  [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService    C:\Windows\System32\umrdp.dll
18:14:50.0290 0x2abc  UmRdpService - ok
18:14:50.0313 0x2abc  [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost        C:\Windows\System32\upnphost.dll
18:14:50.0322 0x2abc  upnphost - ok
18:14:50.0338 0x2abc  [ 5C3BE22E485B9BF11FCEFDC676C728D0, F55061066ECF6920D56518A677BB538C18B7F1BB150ED6DB3591408F44E8D53A ] USBAAPL64       C:\Windows\System32\Drivers\usbaapl64.sys
18:14:50.0340 0x2abc  USBAAPL64 - ok
18:14:50.0361 0x2abc  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
18:14:50.0364 0x2abc  usbccgp - ok
18:14:50.0383 0x2abc  [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
18:14:50.0387 0x2abc  usbcir - ok
18:14:50.0393 0x2abc  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
18:14:50.0395 0x2abc  usbehci - ok
18:14:50.0417 0x2abc  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
18:14:50.0425 0x2abc  usbhub - ok
18:14:50.0441 0x2abc  [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
18:14:50.0450 0x2abc  USBHUB3 - ok
18:14:50.0459 0x2abc  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
18:14:50.0461 0x2abc  usbohci - ok
18:14:50.0464 0x2abc  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
18:14:50.0465 0x2abc  usbprint - ok
18:14:50.0479 0x2abc  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
18:14:50.0482 0x2abc  USBSTOR - ok
18:14:50.0494 0x2abc  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
18:14:50.0496 0x2abc  usbuhci - ok
18:14:50.0505 0x2abc  [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:14:50.0509 0x2abc  usbvideo - ok
18:14:50.0533 0x2abc  [ 1A20F03700D2B2ED775E38D751EF2F63, 76F8BE9F412D4397437E60A7E6231C80EA9B4F5436C9A8FAB967C78604994AE9 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
18:14:50.0539 0x2abc  USBXHCI - ok
18:14:50.0558 0x2abc  [ 3CAAB947B1F247A570DE15983BEDEBCF, 81480D999F67A1755D5C21CE046FB439F0FBD743F73D23C19BC8C4DEB78A4F91 ] usb_rndisx      C:\Windows\system32\DRIVERS\usb8023x.sys
18:14:50.0560 0x2abc  usb_rndisx - ok
18:14:50.0563 0x2abc  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc        C:\Windows\system32\lsass.exe
18:14:50.0564 0x2abc  VaultSvc - ok
18:14:50.0569 0x2abc  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:14:50.0570 0x2abc  vdrvroot - ok
18:14:50.0613 0x2abc  [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds             C:\Windows\System32\vds.exe
18:14:50.0633 0x2abc  vds - ok
18:14:50.0641 0x2abc  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
18:14:50.0644 0x2abc  VerifierExt - ok
18:14:50.0674 0x2abc  [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
18:14:50.0686 0x2abc  vhdmp - ok
18:14:50.0702 0x2abc  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:14:50.0703 0x2abc  viaide - ok
18:14:50.0716 0x2abc  [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus           C:\Windows\system32\drivers\vmbus.sys
18:14:50.0718 0x2abc  vmbus - ok
18:14:50.0727 0x2abc  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
18:14:50.0728 0x2abc  VMBusHID - ok
18:14:50.0756 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
18:14:50.0764 0x2abc  vmicguestinterface - ok
18:14:50.0775 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
18:14:50.0782 0x2abc  vmicheartbeat - ok
18:14:50.0792 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
18:14:50.0800 0x2abc  vmickvpexchange - ok
18:14:50.0810 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv         C:\Windows\System32\ICSvc.dll
18:14:50.0817 0x2abc  vmicrdv - ok
18:14:50.0826 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
18:14:50.0834 0x2abc  vmicshutdown - ok
18:14:50.0843 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync    C:\Windows\System32\ICSvc.dll
18:14:50.0850 0x2abc  vmictimesync - ok
18:14:50.0861 0x2abc  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss         C:\Windows\System32\ICSvc.dll
18:14:50.0868 0x2abc  vmicvss - ok
18:14:50.0873 0x2abc  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:14:50.0876 0x2abc  volmgr - ok
18:14:50.0886 0x2abc  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:14:50.0892 0x2abc  volmgrx - ok
18:14:50.0905 0x2abc  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:14:50.0911 0x2abc  volsnap - ok
18:14:50.0923 0x2abc  [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci            C:\Windows\System32\drivers\vpci.sys
18:14:50.0925 0x2abc  vpci - ok
18:14:50.0938 0x2abc  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
18:14:50.0941 0x2abc  vsmraid - ok
18:14:50.0980 0x2abc  [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS             C:\Windows\system32\vssvc.exe
18:14:51.0006 0x2abc  VSS - ok
18:14:51.0016 0x2abc  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
18:14:51.0022 0x2abc  VSTXRAID - ok
18:14:51.0075 0x2abc  [ 47A543ECF4D8D1BA5E5DC8F7EF08BF91, 9831953754C7E4E980FAFEE652F6CC91589BE09DACE20EB2B1FBF5ECFFA89A28 ] vToolbarUpdater18.4.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\ToolbarUpdater.exe
18:14:51.0098 0x2abc  vToolbarUpdater18.4.0 - ok
18:14:51.0103 0x2abc  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
18:14:51.0104 0x2abc  vwifibus - ok
18:14:51.0108 0x2abc  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:14:51.0109 0x2abc  vwififlt - ok
18:14:51.0113 0x2abc  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:14:51.0114 0x2abc  vwifimp - ok
18:14:51.0139 0x2abc  [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time         C:\Windows\system32\w32time.dll
18:14:51.0150 0x2abc  W32Time - ok
18:14:51.0154 0x2abc  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
18:14:51.0155 0x2abc  WacomPen - ok
18:14:51.0159 0x2abc  [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
18:14:51.0161 0x2abc  Wanarp - ok
18:14:51.0164 0x2abc  [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:14:51.0166 0x2abc  Wanarpv6 - ok
18:14:51.0211 0x2abc  [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine        C:\Windows\system32\wbengine.exe
18:14:51.0235 0x2abc  wbengine - ok
18:14:51.0252 0x2abc  [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:14:51.0260 0x2abc  WbioSrvc - ok
18:14:51.0278 0x2abc  [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
18:14:51.0285 0x2abc  Wcmsvc - ok
18:14:51.0300 0x2abc  [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:14:51.0308 0x2abc  wcncsvc - ok
18:14:51.0317 0x2abc  [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:14:51.0320 0x2abc  WcsPlugInService - ok
18:14:51.0332 0x2abc  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
18:14:51.0334 0x2abc  WdBoot - ok
18:14:51.0353 0x2abc  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:14:51.0367 0x2abc  Wdf01000 - ok
18:14:51.0382 0x2abc  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
18:14:51.0386 0x2abc  WdFilter - ok
18:14:51.0391 0x2abc  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:14:51.0394 0x2abc  WdiServiceHost - ok
18:14:51.0397 0x2abc  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:14:51.0400 0x2abc  WdiSystemHost - ok
18:14:51.0415 0x2abc  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
18:14:51.0418 0x2abc  WdNisDrv - ok
18:14:51.0420 0x2abc  WdNisSvc - ok
18:14:51.0434 0x2abc  [ 185E4111627F7AA6799E1366B5E91D65, 7A02C816DFBCCF47EDB49E5E2005A3D0B80719FAC94F9298D2DBAC63950EDA05 ] WebClient       C:\Windows\System32\webclnt.dll
18:14:51.0439 0x2abc  WebClient - ok
18:14:51.0446 0x2abc  [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:14:51.0451 0x2abc  Wecsvc - ok
18:14:51.0459 0x2abc  [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
18:14:51.0462 0x2abc  WEPHOSTSVC - ok
18:14:51.0471 0x2abc  [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:14:51.0474 0x2abc  wercplsupport - ok
18:14:51.0480 0x2abc  [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc          C:\Windows\System32\WerSvc.dll
18:14:51.0483 0x2abc  WerSvc - ok
18:14:51.0489 0x2abc  [ BAB713B409258DB7B5D9F9693F802B0E, C0D0391EC4FDC07E0A07F4EEB2DC9CC5B2BE5D2E292E7D01929E8D39D6F73EA5 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
18:14:51.0492 0x2abc  WFPLWFS - ok
18:14:51.0500 0x2abc  [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc          C:\Windows\System32\wiarpc.dll
18:14:51.0504 0x2abc  WiaRpc - ok
18:14:51.0518 0x2abc  [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:14:51.0520 0x2abc  WIMMount - ok
18:14:51.0522 0x2abc  WinDefend - ok
18:14:51.0550 0x2abc  [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
18:14:51.0564 0x2abc  WinHttpAutoProxySvc - ok
18:14:51.0595 0x2abc  [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:14:51.0600 0x2abc  Winmgmt - ok
18:14:51.0663 0x2abc  [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:14:51.0765 0x2abc  WinRM - ok
18:14:51.0792 0x2abc  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUSB          C:\Windows\System32\drivers\WinUsb.sys
18:14:51.0793 0x2abc  WinUSB - ok
18:14:51.0839 0x2abc  [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc         C:\Windows\System32\wlansvc.dll
18:14:51.0863 0x2abc  WlanSvc - ok
18:14:51.0917 0x2abc  [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
18:14:51.0941 0x2abc  wlidsvc - ok
18:14:51.0946 0x2abc  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
18:14:51.0947 0x2abc  WmiAcpi - ok
18:14:51.0969 0x2abc  [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:14:51.0973 0x2abc  wmiApSrv - ok
18:14:51.0981 0x2abc  WMPNetworkSvc - ok
18:14:51.0988 0x2abc  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
18:14:51.0990 0x2abc  Wof - ok
18:14:52.0040 0x2abc  [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
18:14:52.0065 0x2abc  workfolderssvc - ok
18:14:52.0082 0x2abc  [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
18:14:52.0084 0x2abc  wpcfltr - ok
18:14:52.0102 0x2abc  [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:14:52.0104 0x2abc  WPCSvc - ok
18:14:52.0109 0x2abc  [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:14:52.0112 0x2abc  WPDBusEnum - ok
18:14:52.0121 0x2abc  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
18:14:52.0122 0x2abc  WpdUpFltr - ok
18:14:52.0134 0x2abc  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:14:52.0135 0x2abc  ws2ifsl - ok
18:14:52.0141 0x2abc  [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc          C:\Windows\System32\wscsvc.dll
18:14:52.0145 0x2abc  wscsvc - ok
18:14:52.0158 0x2abc  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\Windows\System32\drivers\WSDPrint.sys
18:14:52.0159 0x2abc  WSDPrintDevice - ok
18:14:52.0162 0x2abc  WSearch - ok
18:14:52.0257 0x2abc  [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService       C:\Windows\System32\WSService.dll
18:14:52.0311 0x2abc  WSService - ok
18:14:52.0335 0x2abc  [ FFD80DC0CDA145C3376A5076360162C8, 2DA34929DC416164A001B7C711D7CF1046FAE53F8B31697F3EC4AF75C45163E5 ] WtuSystemSupport C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
18:14:52.0343 0x2abc  WtuSystemSupport - ok
18:14:52.0429 0x2abc  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:14:52.0487 0x2abc  wuauserv - ok
18:14:52.0504 0x2abc  [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:14:52.0506 0x2abc  WudfPf - ok
18:14:52.0526 0x2abc  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
18:14:52.0530 0x2abc  WUDFRd - ok
18:14:52.0551 0x2abc  [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:14:52.0555 0x2abc  wudfsvc - ok
18:14:52.0561 0x2abc  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs       C:\Windows\System32\drivers\WUDFRd.sys
18:14:52.0564 0x2abc  WUDFWpdFs - ok
18:14:52.0569 0x2abc  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp      C:\Windows\System32\drivers\WUDFRd.sys
18:14:52.0572 0x2abc  WUDFWpdMtp - ok
18:14:52.0598 0x2abc  [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:14:52.0608 0x2abc  WwanSvc - ok
18:14:52.0621 0x2abc  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbmdm6k     C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys
18:14:52.0623 0x2abc  ZTEusbmdm6k - ok
18:14:52.0635 0x2abc  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbnmea      C:\Windows\system32\DRIVERS\ZTEusbnmea.sys
18:14:52.0637 0x2abc  ZTEusbnmea - ok
18:14:52.0656 0x2abc  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbser6k     C:\Windows\system32\DRIVERS\ZTEusbser6k.sys
18:14:52.0658 0x2abc  ZTEusbser6k - ok
18:14:52.0668 0x2abc  ================ Scan global ===============================
18:14:52.0679 0x2abc  [ 243F54DBA6EB48A369CA465E263ABA4A, 9D9F9DE783D000F3EA130EB68FD71319F21E4F1CD4232FB8B2F8A9A67E08F5F4 ] C:\Windows\system32\basesrv.dll
18:14:52.0686 0x2abc  [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\Windows\system32\winsrv.dll
18:14:52.0694 0x2abc  [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\Windows\system32\sxssrv.dll
18:14:52.0717 0x2abc  [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\Windows\system32\services.exe
18:14:52.0726 0x2abc  [ Global ] - ok
18:14:52.0727 0x2abc  ================ Scan MBR ==================================
18:14:52.0735 0x2abc  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
18:14:52.0742 0x2abc  \Device\Harddisk0\DR0 - ok
18:14:52.0743 0x2abc  ================ Scan VBR ==================================
18:14:52.0755 0x2abc  [ 7B24A42ED4B1D4C3DF4F3AE0439D3E80 ] \Device\Harddisk0\DR0\Partition1
18:14:52.0794 0x2abc  \Device\Harddisk0\DR0\Partition1 - ok
18:14:52.0803 0x2abc  [ 399448D96068CF7074E6E74594504614 ] \Device\Harddisk0\DR0\Partition2
18:14:52.0834 0x2abc  \Device\Harddisk0\DR0\Partition2 - ok
18:14:52.0847 0x2abc  [ 9DF6EE3B3D77B2C80E2646ADE55EB073 ] \Device\Harddisk0\DR0\Partition3
18:14:52.0848 0x2abc  \Device\Harddisk0\DR0\Partition3 - ok
18:14:52.0851 0x2abc  [ 63916AD5A6FAADD5971CA001609EB6F5 ] \Device\Harddisk0\DR0\Partition4
18:14:52.0888 0x2abc  \Device\Harddisk0\DR0\Partition4 - ok
18:14:52.0891 0x2abc  [ CB10BD3E36225AA46876333EBBEDA368 ] \Device\Harddisk0\DR0\Partition5
18:14:52.0911 0x2abc  \Device\Harddisk0\DR0\Partition5 - ok
18:14:52.0929 0x2abc  [ 4DABE6AB31E07BB918DEEA2A427755D5 ] \Device\Harddisk0\DR0\Partition6
18:14:52.0937 0x2abc  \Device\Harddisk0\DR0\Partition6 - ok
18:14:52.0938 0x2abc  ================ Scan generic autorun ======================
18:14:53.0270 0x2abc  [ 92894CE1B4DBBB9BB55EA0A1E6E7DF99, 06E575611BEF01D75789DD92AFE33A6CE9BA18831AD97E7C096BE6C2B0BFE64A ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
18:14:53.0422 0x2abc  RtHDVCpl - ok
18:14:53.0458 0x2abc  [ 01F0FC06366F80BF8964708042E0D9F5, 7DEA61576AC17C902B6041EE168BEF2AF2A43401829D2FF7E19747ED8D43B16D ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
18:14:53.0474 0x2abc  RtHDVBg_Dolby - ok
18:14:53.0535 0x2abc  [ 42663C9A625EA030F10746EBA60F8CCD, AF3BE4CC716526C2618E477437A298214804EADA7CB74A54BDEAF1759277CA5E ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
18:14:53.0561 0x2abc  NvBackend - ok
18:14:53.0568 0x2abc  [ 076B3EE149E01ADBAC2DC529554A3FD9, 4F65D9D2EE44829AA2264210112851E899165C2346489BEBE679C41420CF7D07 ] C:\Program Files\iTunes\iTunesHelper.exe
18:14:53.0570 0x2abc  iTunesHelper - ok
18:14:53.0584 0x2abc  [ 023DBDED84029A04B7A2AED160D262BA, E1D16468F3024439E145639A5D5A2656E9C43FD467963C4D29E6B5444FDE8F89 ] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
18:14:53.0585 0x2abc  BacKGround Agent - ok
18:14:53.0674 0x2abc  [ A1D2D4B24D82CBB5F089D8697DF6E07D, 7491D914EDD55143110E34A49353C575BFE604B5882DE3883EC6600496B7BA7B ] C:\Program Files (x86)\AVG\AVG2015\avgui.exe
18:14:53.0715 0x2abc  AVG_UI - ok
18:14:53.0780 0x2abc  [ E38338CC40DBFE16540EC767BF65E4A2, 8BA91F90E92F1F06129930ABB6A9280AF9C33B05D13BF91A3F1185A639D3DE78 ] C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe
18:14:53.0811 0x2abc  KeePass 2 PreLoad - ok
18:14:53.0859 0x2abc  [ 57C635C41750117D206C90DA9C599777, D5291ED79FC08217758FB526FC8CCC9D374B65B49446104D271C36B0C1298446 ] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
18:14:53.0876 0x2abc  BrMfcWnd - ok
18:14:53.0909 0x2abc  [ 4DE3EF07E0854547309C6B40235A9D44, F73D8E6D98583865D1C8DB728058D83C72A3908E21E04EF313FCB829C040A1EC ] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe
18:14:53.0911 0x2abc  ControlCenter3 - ok
18:14:53.0939 0x2abc  [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
18:14:53.0940 0x2abc  BCSSync - ok
18:14:53.0955 0x2abc  [ 79DE5E0997A94ED1D336B314005C4543, 8637F483CC2C1F181B23CC3A0BAB010D7B9F82661FFE6202BCECF1E6CA2F7EAA ] C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
18:14:53.0957 0x2abc  UIExec - ok
18:14:53.0974 0x2abc  [ 3A767D4CF95CAC1299554B89C4DE5920, E18D2BD562981A4BA54A677C8838ABE9056D1704EC2CC1A8B465390CAC9D1875 ] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
18:14:53.0978 0x2abc  KiesTrayAgent - ok
18:14:54.0074 0x2abc  [ 64093FC9034F0679D5E1F3875856FA7A, 32D8A5F55C02AEDE5A5EC51B96FAF4F71DA57D4FB8C48EB7AB3B2265D3B1AFA9 ] C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
18:14:54.0108 0x2abc  vProt - ok
18:14:54.0120 0x2abc  [ 7098B51BEEE94AFEF209C85E7CD1F0C2, 066B4BBC82DA9766A43B9E4A4E91BAB6F2A1697581190B1C94AEB08F0347706E ] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
18:14:54.0121 0x2abc  abDocsDllLoader - ok
18:14:54.0235 0x2abc  [ 276A125D428C4DAC2D71D0A1DCAE54FF, 2A29D0C221BBC4F383B58962EF78C2A88AA1246FBEE90BDF2E6FD211AD96CB20 ] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
18:14:54.0265 0x2abc  PMBVolumeWatcher - ok
18:14:54.0551 0x2abc  [ 503A50024A6BB16BFEE6C94C6F0EDB48, 5D13C01D1570853543D0F000D8A884033B672B8ADBB85A40DF5D4F6EE0E1DDBC ] C:\Users\habewi\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
18:14:54.0671 0x2abc  Pokki - ok
18:14:54.0731 0x2abc  [ 7EF9633A2409048FB40DBC2B83A42C0F, ADB04ED61B7626AD3696CCF8356AA26C251FCA35A1C7CB8A04F83401F04936D0 ] C:\Program Files (x86)\Samsung\Kies\Kies.exe
18:14:54.0749 0x2abc  KiesPreload - ok
18:14:54.0779 0x2abc  [ 4860117DA2E6E9B300144902629B09AC, B5C804C752FE18B2B10991AC93F75054C6D35540DF902D280006D45ADFA17391 ] C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
18:14:54.0793 0x2abc  Spotify Web Helper - ok
18:14:54.0802 0x2abc  Skype - ok
18:14:54.0867 0x2abc  [ E040BBE0E2802762071EAFF22CBF2DF5, BAAEB93E9C386DAF6835A55E86B82091CDF3A96D989AD4287953FC3DE4A5BCC3 ] C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
18:14:54.0896 0x2abc  AcerPortal - ok
18:14:54.0899 0x2abc  Waiting for KSN requests completion. In queue: 142
18:14:55.0900 0x2abc  Waiting for KSN requests completion. In queue: 142
18:14:56.0900 0x2abc  Waiting for KSN requests completion. In queue: 142
18:14:57.0933 0x2abc  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
18:14:57.0948 0x2abc  AV detected via SS2: AVG AntiVirus Free Edition 2015, C:\Program Files (x86)\AVG\AVG2015\avgwsc.exe ( 15.0.0.5961 ), 0x41000 ( enabled : updated )
18:14:57.0952 0x2abc  Win FW state via NFP2: enabled
18:15:00.0330 0x2abc  ============================================================
18:15:00.0330 0x2abc  Scan finished
18:15:00.0330 0x2abc  ============================================================
18:15:00.0339 0x2ab4  Detected object count: 0
18:15:00.0339 0x2ab4  Actual detected object count: 0
18:15:23.0937 0x2b44  ============================================================
18:15:23.0937 0x2b44  Scan started
18:15:23.0937 0x2b44  Mode: Manual; SigCheck; TDLFS; 
18:15:23.0937 0x2b44  ============================================================
18:15:23.0937 0x2b44  KSN ping started
18:15:26.0226 0x2b44  KSN ping finished: true
18:15:26.0590 0x2b44  ================ Scan system memory ========================
18:15:26.0590 0x2b44  System memory - ok
18:15:26.0590 0x2b44  ================ Scan services =============================
18:15:26.0725 0x2b44  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
18:15:26.0822 0x2b44  1394ohci - ok
18:15:26.0831 0x2b44  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
18:15:26.0839 0x2b44  3ware - ok
18:15:26.0857 0x2b44  [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:15:26.0873 0x2b44  ACPI - ok
18:15:26.0878 0x2b44  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
18:15:26.0886 0x2b44  acpiex - ok
18:15:26.0889 0x2b44  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
18:15:26.0917 0x2b44  acpipagr - ok
18:15:26.0920 0x2b44  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
18:15:26.0971 0x2b44  AcpiPmi - ok
18:15:26.0979 0x2b44  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
18:15:27.0010 0x2b44  acpitime - ok
18:15:27.0082 0x2b44  [ 00CC35F515079F5F94FABC3AC5C7D363, 7CE8B1715009602059DEDD6CBCA9C18EF079EDA344E7809813D6C0A395622B82 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:15:27.0108 0x2b44  AdobeFlashPlayerUpdateSvc - ok
18:15:27.0133 0x2b44  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
18:15:27.0153 0x2b44  ADP80XX - ok
18:15:27.0162 0x2b44  [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:15:27.0188 0x2b44  AeLookupSvc - ok
18:15:27.0203 0x2b44  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
18:15:27.0252 0x2b44  AFD - ok
18:15:27.0258 0x2b44  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
18:15:27.0271 0x2b44  agp440 - ok
18:15:27.0277 0x2b44  [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
18:15:27.0307 0x2b44  ahcache - ok
18:15:27.0314 0x2b44  [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG             C:\Windows\System32\alg.exe
18:15:27.0332 0x2b44  ALG - ok
18:15:27.0340 0x2b44  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
18:15:27.0360 0x2b44  AmdK8 - ok
18:15:27.0366 0x2b44  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
18:15:27.0380 0x2b44  AmdPPM - ok
18:15:27.0384 0x2b44  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:15:27.0392 0x2b44  amdsata - ok
18:15:27.0400 0x2b44  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
18:15:27.0411 0x2b44  amdsbs - ok
18:15:27.0415 0x2b44  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:15:27.0421 0x2b44  amdxata - ok
18:15:27.0426 0x2b44  [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID           C:\Windows\system32\drivers\appid.sys
18:15:27.0457 0x2b44  AppID - ok
18:15:27.0461 0x2b44  [ 34B2E222F82D05398DAE7203B36B6A2B, AC04BC6B5A36A6807FFE302E9ACF073342B4D76B0BB386249251CB3CA1852CE8 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:15:27.0469 0x2b44  AppIDSvc - ok
18:15:27.0475 0x2b44  [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo         C:\Windows\System32\appinfo.dll
18:15:27.0526 0x2b44  Appinfo - ok
18:15:27.0535 0x2b44  [ 612CB66D93ED0F2F21BB109840C7D813, 75484123DA27B8942B13148FCF061C75A08A50386A095143736B593E9C772173 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:15:27.0540 0x2b44  Apple Mobile Device Service - ok
18:15:27.0554 0x2b44  [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
18:15:27.0604 0x2b44  AppReadiness - ok
18:15:27.0634 0x2b44  [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
18:15:27.0669 0x2b44  AppXSvc - ok
18:15:27.0675 0x2b44  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
18:15:27.0683 0x2b44  arcsas - ok
18:15:27.0688 0x2b44  [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:15:27.0714 0x2b44  AsyncMac - ok
18:15:27.0717 0x2b44  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:15:27.0724 0x2b44  atapi - ok
18:15:27.0728 0x2b44  [ 8302D313DCC5536FE6BFB85165D9BB1E, CD9101D9CFE34F0D6CF5A6AD5C997CC5D32CCF5135B78604D0C3CD7252117C2D ] AthBTPort       C:\Windows\system32\DRIVERS\btath_flt.sys
18:15:27.0738 0x2b44  AthBTPort - ok
18:15:27.0754 0x2b44  [ 23C3686D98C650878602066093BAFDCA, 8D5B6D5ADB7A8706D84A4F16915290B50FCF76330954387D0964CD67C3BD1727 ] AtherosSvc      C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
18:15:27.0783 0x2b44  AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 )
18:15:27.0783 0x2b44  Detect skipped due to KSN trusted
18:15:27.0784 0x2b44  AtherosSvc - ok
18:15:27.0904 0x2b44  [ 60EFDC0EE93A51C63C159C3BD06D25F3, 7108F32496E935FEB0C030A0BFCECC1A8D6BEF5BB8129E5B7D9309321E96C3EB ] athr            C:\Windows\system32\DRIVERS\athwbx.sys
18:15:27.0979 0x2b44  athr - ok
18:15:27.0990 0x2b44  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
18:15:28.0047 0x2b44  AudioEndpointBuilder - ok
18:15:28.0079 0x2b44  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
18:15:28.0105 0x2b44  Audiosrv - ok
18:15:28.0110 0x2b44  [ D5CC906EB32CD7E0E88472FA3B3F3CBE, C502DEA7E27549B0D37BA5894EF8CBEE0F11D94C818D4FA0F6BCEE82ECCC04D3 ] Avgboota        C:\Windows\system32\DRIVERS\avgboota.sys
18:15:28.0118 0x2b44  Avgboota - ok
18:15:28.0124 0x2b44  [ E7C8FBDCB1C079C332F962DD1C075E5E, 4931B016C14B8ABE3CA5C8C0A3AC27253F2C72486CF43C299183EB65F93C06D4 ] Avgdiska        C:\Windows\system32\DRIVERS\avgdiska.sys
18:15:28.0132 0x2b44  Avgdiska - ok
18:15:28.0212 0x2b44  [ B72FA18554341668FD979988A3EFE9A2, 23C495102EB97853DCF43A31F83E37F31BF0CBB52568B5A2D4869EC0E4C3C6AE ] AVGIDSAgent     C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
18:15:28.0266 0x2b44  AVGIDSAgent - ok
18:15:28.0278 0x2b44  [ D5735E2268D835B97F60D8508709B0D4, CB8796B6E72A44F089D44C81B2E0857B8A06EA479D702BA73348AD642F3B7511 ] AVGIDSDriver    C:\Windows\system32\DRIVERS\avgidsdrivera.sys
18:15:28.0287 0x2b44  AVGIDSDriver - ok
18:15:28.0295 0x2b44  [ 398FEC9A9146E31E84AFB29731F4CA17, A20ECDBBFFAF419B14924EF1BE5AA42D7CA212DEF50673E9C0A6F33E23F29221 ] AVGIDSHA        C:\Windows\system32\DRIVERS\avgidsha.sys
18:15:28.0304 0x2b44  AVGIDSHA - ok
18:15:28.0313 0x2b44  [ 4FB010DEA1028ED0A26F20D2F404210F, 7C163D1A461A7D00BBADC46807A35911A5B2BA4B001FAF63C6AF17F54D5201E0 ] Avgldx64        C:\Windows\system32\DRIVERS\avgldx64.sys
18:15:28.0322 0x2b44  Avgldx64 - ok
18:15:28.0332 0x2b44  [ 7EC2B7BBA7A30691D2E0D8478F219B90, EBB18E34D502E85F6450E944B3A1AD7B86692F2F0C9041B927F69CE40E7802A6 ] Avgloga         C:\Windows\system32\DRIVERS\avgloga.sys
18:15:28.0343 0x2b44  Avgloga - ok
18:15:28.0350 0x2b44  [ BA60ECC498585DA1A918D424D7D07A18, CD6E5B5DB3D618008877D4A99D963E9C0E820F502F833DDC4F3D5CB68984D4E7 ] Avgmfx64        C:\Windows\system32\DRIVERS\avgmfx64.sys
18:15:28.0359 0x2b44  Avgmfx64 - ok
18:15:28.0363 0x2b44  [ 719EF00B1C5BED9CF5675274A4F774B9, 3883B41AC13AC7B2E2D58AA3209B3D479C53469A3F423CAC151A3F25DA462E3D ] Avgrkx64        C:\Windows\system32\DRIVERS\avgrkx64.sys
18:15:28.0368 0x2b44  Avgrkx64 - ok
18:15:28.0377 0x2b44  [ FE8BF780BED8D892F67AA70550F51D2C, 5F6121D6FEF37B22DB1B9528D2B10EDB44FDFE6FC09C161710C731ED8FFD925E ] avgwd           C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
18:15:28.0387 0x2b44  avgwd - ok
18:15:28.0396 0x2b44  [ 5EBB839735C5089D255C521A8503F4C2, 99342AC1C50D538062D1E770D4D34445359C3864B21739C731193E2BD57C1B74 ] Avgwfpa         C:\Windows\system32\DRIVERS\avgwfpa.sys
18:15:28.0406 0x2b44  Avgwfpa - ok
18:15:28.0411 0x2b44  [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:15:28.0425 0x2b44  AxInstSV - ok
18:15:28.0438 0x2b44  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
18:15:28.0455 0x2b44  b06bdrv - ok
18:15:28.0460 0x2b44  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
18:15:28.0507 0x2b44  BasicDisplay - ok
18:15:28.0510 0x2b44  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
18:15:28.0551 0x2b44  BasicRender - ok
18:15:28.0766 0x2b44  [ 9A4EF701A4FC835F7DDD8956D930010F, 28A555B98098ECE47912C40A74CA92AFA76F51A711F2DEFF1A498FF212505F23 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl63a.sys
18:15:28.0896 0x2b44  BCM43XX - ok
18:15:28.0907 0x2b44  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
18:15:28.0911 0x2b44  bcmfn2 - ok
18:15:28.0934 0x2b44  [ 77D760E9B477C21487C171F561497F98, 2393D466CEC863C771C5BB4CD81B251635DC084386134B8E13F74F3E1C6D68DF ] BDESVC          C:\Windows\System32\bdesvc.dll
18:15:28.0960 0x2b44  BDESVC - ok
18:15:28.0964 0x2b44  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
18:15:28.0996 0x2b44  Beep - ok
18:15:29.0025 0x2b44  [ 7BCB00EA702F78EC74CD9699D85CE80B, 17241ADAA13051B560DB9FA9079CAE6321D5B49788B596C125DC912443B00421 ] BFE             C:\Windows\System32\bfe.dll
18:15:29.0095 0x2b44  BFE - ok
18:15:29.0147 0x2b44  [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS            C:\Windows\System32\qmgr.dll
18:15:29.0201 0x2b44  BITS - ok
18:15:29.0228 0x2b44  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:15:29.0245 0x2b44  Bonjour Service - ok
18:15:29.0251 0x2b44  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:15:29.0274 0x2b44  bowser - ok
18:15:29.0282 0x2b44  [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
18:15:29.0341 0x2b44  BrokerInfrastructure - ok
18:15:29.0355 0x2b44  [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser         C:\Windows\System32\browser.dll
18:15:29.0410 0x2b44  Browser - ok
18:15:29.0427 0x2b44  [ 15BE0FCECAE5BC00FB3D339D3D1CF4E4, 7F77C73404044270AA0A4C9D6BD838564B5356ACA935982390A6EA11FA653AE0 ] BTATH_A2DP      C:\Windows\system32\drivers\btath_a2dp.sys
18:15:29.0445 0x2b44  BTATH_A2DP - ok
18:15:29.0451 0x2b44  [ 1FFA5E05F2DE32D9E65CFDA4B33D50FD, 9EC578F563A90C60F893817548195781893405AC8ED7F87C3B5F94F9842161A5 ] btath_avdt      C:\Windows\system32\drivers\btath_avdt.sys
18:15:29.0457 0x2b44  btath_avdt - ok
18:15:29.0461 0x2b44  [ AF7DEA6A0E93AF8517A310D189B656BE, 008FE5102EE6B73A8D9AFC2B0E563C6A3567167380FCEDC538278240D2AE1FD4 ] BTATH_BUS       C:\Windows\system32\drivers\btath_bus.sys
18:15:29.0465 0x2b44  BTATH_BUS - ok
18:15:29.0470 0x2b44  [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT     C:\Windows\system32\DRIVERS\btath_lwflt.sys
18:15:29.0475 0x2b44  BTATH_LWFLT - ok
18:15:29.0481 0x2b44  [ 859A116D748FBA603AF94C251DC5CF97, D64061721BE01F86386C4B0168B166C6AD076630B2229036E1D368D877389D46 ] BTATH_RCP       C:\Windows\System32\drivers\btath_rcp.sys
18:15:29.0488 0x2b44  BTATH_RCP - ok
18:15:29.0503 0x2b44  [ 6BAA2BD613DB6440C8D2C864CA0EA5D7, 0B0C268BA443FFBB07A3ADC215669F911839A665F5DD3E4C7C21760B6365F5F2 ] BtFilter        C:\Windows\system32\DRIVERS\btfilter.sys
18:15:29.0516 0x2b44  BtFilter - ok
18:15:29.0520 0x2b44  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
18:15:29.0562 0x2b44  BthAvrcpTg - ok
18:15:29.0566 0x2b44  [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
18:15:29.0617 0x2b44  BthEnum - ok
18:15:29.0624 0x2b44  [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
18:15:29.0687 0x2b44  BthHFEnum - ok
18:15:29.0703 0x2b44  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
18:15:29.0735 0x2b44  bthhfhid - ok
18:15:29.0753 0x2b44  [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
18:15:29.0784 0x2b44  BthHFSrv - ok
18:15:29.0794 0x2b44  [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum       C:\Windows\system32\DRIVERS\BthLEEnum.sys
18:15:29.0816 0x2b44  BthLEEnum - ok
18:15:29.0820 0x2b44  [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
18:15:29.0851 0x2b44  BTHMODEM - ok
18:15:29.0857 0x2b44  [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan          C:\Windows\System32\drivers\bthpan.sys
18:15:29.0888 0x2b44  BthPan - ok
18:15:29.0928 0x2b44  [ C37F4930795B771400C63C3C87E7A6C2, 0D0F54184B2DAA45F646E4F69B85C4411E8DFA88EB4763BB0F386055A420F217 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
18:15:29.0969 0x2b44  BTHPORT - ok
18:15:29.0975 0x2b44  [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv         C:\Windows\system32\bthserv.dll
18:15:29.0998 0x2b44  bthserv - ok
18:15:30.0004 0x2b44  [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
18:15:30.0030 0x2b44  BTHUSB - ok
18:15:30.0089 0x2b44  [ 33D76C80BA71E8BA67DED7B5A9187895, D07C355C1285FD74671C58FD4A7CBF2FE7C4DD5564DEF6BEE84B758981EB664A ] CCDMonitorService C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
18:15:30.0134 0x2b44  CCDMonitorService - ok
18:15:30.0141 0x2b44  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:15:30.0158 0x2b44  cdfs - ok
18:15:30.0165 0x2b44  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
18:15:30.0206 0x2b44  cdrom - ok
18:15:30.0218 0x2b44  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:15:30.0252 0x2b44  CertPropSvc - ok
18:15:30.0257 0x2b44  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
18:15:30.0289 0x2b44  circlass - ok
18:15:30.0309 0x2b44  [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
18:15:30.0327 0x2b44  CLFS - ok
18:15:30.0337 0x2b44  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
18:15:30.0362 0x2b44  CmBatt - ok
18:15:30.0376 0x2b44  [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG             C:\Windows\system32\Drivers\cng.sys
18:15:30.0394 0x2b44  CNG - ok
18:15:30.0399 0x2b44  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
18:15:30.0409 0x2b44  CompositeBus - ok
18:15:30.0411 0x2b44  COMSysApp - ok
18:15:30.0415 0x2b44  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
18:15:30.0425 0x2b44  condrv - ok
18:15:30.0474 0x2b44  [ 306B31B977BC3477953B2A6277F4052B, 4DB1DEA0A782A85755347C1F42722336690C01E584E4E846FD2065F7DEBC9364 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
18:15:30.0483 0x2b44  cphs - ok
18:15:30.0490 0x2b44  [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:15:30.0550 0x2b44  CryptSvc - ok
18:15:30.0557 0x2b44  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
18:15:30.0573 0x2b44  dam - ok
18:15:30.0597 0x2b44  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:15:30.0658 0x2b44  DcomLaunch - ok
18:15:30.0671 0x2b44  [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc       C:\Windows\System32\defragsvc.dll
18:15:30.0718 0x2b44  defragsvc - ok
18:15:30.0729 0x2b44  [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\Windows\system32\das.dll
18:15:30.0770 0x2b44  DeviceAssociationService - ok
18:15:30.0780 0x2b44  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
18:15:30.0818 0x2b44  DeviceInstall - ok
18:15:30.0828 0x2b44  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
18:15:30.0853 0x2b44  Dfsc - ok
18:15:30.0859 0x2b44  [ 30710AEFCE721CEEE0F35EB6A01C263C, FB062EC86474D38BBC38E11E2618A9505001C287430B495C482977BBE58017C8 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
18:15:30.0867 0x2b44  dg_ssudbus - ok
18:15:30.0879 0x2b44  [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:15:30.0898 0x2b44  Dhcp - ok
18:15:30.0937 0x2b44  [ 9703EC57F5BBB94F89CA80A5D0C12221, 29639F73AA86AA42401A1DB0AF4E76012E617879EC03AD7591210164BA105EBF ] DiagTrack       C:\Windows\system32\diagtrack.dll
18:15:30.0974 0x2b44  DiagTrack - ok
18:15:30.0981 0x2b44  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
18:15:30.0988 0x2b44  disk - ok
18:15:30.0992 0x2b44  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
18:15:31.0010 0x2b44  dmvsc - ok
18:15:31.0017 0x2b44  [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:15:31.0046 0x2b44  Dnscache - ok
18:15:31.0055 0x2b44  [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc         C:\Windows\System32\dot3svc.dll
18:15:31.0083 0x2b44  dot3svc - ok
18:15:31.0089 0x2b44  [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS             C:\Windows\system32\dps.dll
18:15:31.0101 0x2b44  DPS - ok
18:15:31.0105 0x2b44  [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:15:31.0111 0x2b44  drmkaud - ok
18:15:31.0119 0x2b44  [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
18:15:31.0131 0x2b44  DsmSvc - ok
18:15:31.0176 0x2b44  [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:15:31.0209 0x2b44  DXGKrnl - ok
18:15:31.0215 0x2b44  [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost         C:\Windows\System32\eapsvc.dll
18:15:31.0240 0x2b44  Eaphost - ok
18:15:31.0318 0x2b44  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
18:15:31.0381 0x2b44  ebdrv - ok
18:15:31.0388 0x2b44  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS             C:\Windows\System32\lsass.exe
18:15:31.0396 0x2b44  EFS - ok
18:15:31.0401 0x2b44  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
18:15:31.0409 0x2b44  EhStorClass - ok
18:15:31.0414 0x2b44  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
18:15:31.0422 0x2b44  EhStorTcgDrv - ok
18:15:31.0489 0x2b44  [ 6066FDFF6E02A0F1F2584EBC9D4A1E63, 2CD1405C4664FBE2EB120EB9F56FCDC629F334AD6BA609A9B442FE594CB6A247 ] ePowerSvc       C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
18:15:31.0531 0x2b44  ePowerSvc - ok
18:15:31.0537 0x2b44  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
18:15:31.0560 0x2b44  ErrDev - ok
18:15:31.0575 0x2b44  [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem     C:\Windows\system32\es.dll
18:15:31.0606 0x2b44  EventSystem - ok
18:15:31.0614 0x2b44  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:15:31.0702 0x2b44  exfat - ok
18:15:31.0718 0x2b44  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:15:31.0732 0x2b44  fastfat - ok
18:15:31.0751 0x2b44  [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax             C:\Windows\system32\fxssvc.exe
18:15:31.0776 0x2b44  Fax - ok
18:15:31.0780 0x2b44  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
18:15:31.0815 0x2b44  fdc - ok
18:15:31.0818 0x2b44  [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost         C:\Windows\system32\fdPHost.dll
18:15:31.0827 0x2b44  fdPHost - ok
18:15:31.0831 0x2b44  [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub        C:\Windows\system32\fdrespub.dll
18:15:31.0846 0x2b44  FDResPub - ok
18:15:31.0851 0x2b44  [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc           C:\Windows\system32\fhsvc.dll
18:15:31.0883 0x2b44  fhsvc - ok
18:15:31.0888 0x2b44  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:15:31.0895 0x2b44  FileInfo - ok
18:15:31.0899 0x2b44  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:15:31.0926 0x2b44  Filetrace - ok
18:15:31.0929 0x2b44  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
18:15:31.0948 0x2b44  flpydisk - ok
18:15:31.0957 0x2b44  [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:15:31.0969 0x2b44  FltMgr - ok
18:15:31.0999 0x2b44  [ 6C068E7207F183FF3647E45D2599E80C, D65C9888522CA29596D5C8BEFF42356F0310E812117E72C1D612BA089C0940D9 ] FontCache       C:\Windows\system32\FntCache.dll
18:15:32.0047 0x2b44  FontCache - ok
18:15:32.0055 0x2b44  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:15:32.0061 0x2b44  FontCache3.0.0.0 - ok
18:15:32.0065 0x2b44  [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:15:32.0072 0x2b44  FsDepends - ok
18:15:32.0076 0x2b44  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:15:32.0082 0x2b44  Fs_Rec - ok
18:15:32.0097 0x2b44  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:15:32.0113 0x2b44  fvevol - ok
18:15:32.0117 0x2b44  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
18:15:32.0142 0x2b44  FxPPM - ok
18:15:32.0146 0x2b44  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
18:15:32.0153 0x2b44  gagp30kx - ok
18:15:32.0167 0x2b44  [ CF4F970FB35A645D8643F7C3F1506A7A, DD68DAB35AB8515163F138D93840AB36C6C565B462B78E52F9C1392B59589B70 ] GamesAppIntegrationService C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
18:15:32.0177 0x2b44  GamesAppIntegrationService - ok
18:15:32.0185 0x2b44  [ C23410A44ADDF0E1A9B4BA42A5DD5EA7, 384382D16D09A17E29D8348E1CF8DD7E377607DB3472AB8888EF8E83671B772C ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
18:15:32.0193 0x2b44  GamesAppService - ok
18:15:32.0198 0x2b44  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:15:32.0203 0x2b44  GEARAspiWDM - ok
18:15:32.0206 0x2b44  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
18:15:32.0213 0x2b44  gencounter - ok
18:15:32.0217 0x2b44  [ B93252C4C5A3733ECD5522CAF88DE02D, 382450F0FF238B6077A78F75AC5D4E53AD7D884706B90E7AC4D4DF467C9A2162 ] GigasetGenericUSB_x64 C:\Windows\system32\DRIVERS\GigasetGenericUSB_x64.sys
18:15:32.0237 0x2b44  GigasetGenericUSB_x64 - ok
18:15:32.0243 0x2b44  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
18:15:32.0252 0x2b44  GPIOClx0101 - ok
18:15:32.0280 0x2b44  [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:15:32.0309 0x2b44  gpsvc - ok
18:15:32.0323 0x2b44  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:15:32.0353 0x2b44  HdAudAddService - ok
18:15:32.0358 0x2b44  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
18:15:32.0374 0x2b44  HDAudBus - ok
18:15:32.0378 0x2b44  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
18:15:32.0386 0x2b44  HidBatt - ok
18:15:32.0392 0x2b44  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
18:15:32.0415 0x2b44  HidBth - ok
18:15:32.0419 0x2b44  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
18:15:32.0429 0x2b44  hidi2c - ok
18:15:32.0433 0x2b44  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
18:15:32.0442 0x2b44  HidIr - ok
18:15:32.0445 0x2b44  [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv         C:\Windows\system32\hidserv.dll
18:15:32.0489 0x2b44  hidserv - ok
18:15:32.0495 0x2b44  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
18:15:32.0509 0x2b44  HidUsb - ok
18:15:32.0517 0x2b44  [ D48353F089C95D5154ACA1305BC63491, 663942E2368BAE8F9E89E72CE9DC1B9E1B56387F9811C01E014161F9A4C3EAB1 ] HiSuiteOuc64.exe C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
18:15:32.0528 0x2b44  HiSuiteOuc64.exe - ok
18:15:32.0533 0x2b44  [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:15:32.0553 0x2b44  hkmsvc - ok
18:15:32.0562 0x2b44  [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:15:32.0578 0x2b44  HomeGroupListener - ok
18:15:32.0590 0x2b44  [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:15:32.0621 0x2b44  HomeGroupProvider - ok
18:15:32.0626 0x2b44  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:15:32.0635 0x2b44  HpSAMD - ok
18:15:32.0668 0x2b44  [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:15:32.0692 0x2b44  HTTP - ok
18:15:32.0700 0x2b44  [ FA779EF13C74BEA77A136FC69EEA0485, D6D03ACD7D61AE1159F65418794F336475A8F8C77145B8CD17C789437BA55FD6 ] HuaweiHiSuiteService64.exe C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
18:15:32.0708 0x2b44  HuaweiHiSuiteService64.exe - ok
18:15:32.0716 0x2b44  [ CB32F01890953A2FEE8FE01F289DF726, 77B3A619945F301CFC8B2E9E1D5D9355822EC3370928049247EA2BCB4E4D7E63 ] HWHandSet       C:\Windows\system32\DRIVERS\hw_quusbmdm.sys
18:15:32.0736 0x2b44  HWHandSet - ok
18:15:32.0739 0x2b44  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:15:32.0746 0x2b44  hwpolicy - ok
18:15:32.0750 0x2b44  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
18:15:32.0772 0x2b44  hyperkbd - ok
18:15:32.0775 0x2b44  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
18:15:32.0786 0x2b44  HyperVideo - ok
18:15:32.0792 0x2b44  [ D887446F3F6051C60C26F4FD1FC8D43F, A3235C64E9D5378E3409FA7CDD9DB0DD1B3CE6A6EB018F2C40558EB9C427A498 ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
18:15:32.0826 0x2b44  i8042prt - ok
18:15:32.0830 0x2b44  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
18:15:32.0835 0x2b44  iaLPSSi_GPIO - ok
18:15:32.0840 0x2b44  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
18:15:32.0846 0x2b44  iaLPSSi_I2C - ok
18:15:32.0862 0x2b44  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
18:15:32.0876 0x2b44  iaStorAV - ok
18:15:32.0888 0x2b44  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:15:32.0901 0x2b44  iaStorV - ok
18:15:32.0904 0x2b44  IEEtwCollectorService - ok
18:15:33.0012 0x2b44  [ 712B795D0920264F2B166D2313FFC43D, 3B9CE043D170B6CFA43573916D293F5E6EE8A8372C72F48F428702D5E36BF0CA ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:15:33.0118 0x2b44  igfx - ok
18:15:33.0140 0x2b44  [ 201700DCB9CF3D72B9CCA09532774DD2, 45E4489C1703D6A324E46C8314211B2FD2C76C6EB44E8CAD868FF2BC202E7122 ] igfxCUIService1.0.0.0 C:\Windows\system32\igfxCUIService.exe
18:15:33.0153 0x2b44  igfxCUIService1.0.0.0 - ok
18:15:33.0178 0x2b44  [ 3DBDBD9581C015F02651D6A89801FAD5, 81B6D302C9CD29AD8319515056CFBCD0BD25619B2B166937ACD5F1416B568837 ] IKEEXT          C:\Windows\System32\ikeext.dll
18:15:33.0224 0x2b44  IKEEXT - ok
18:15:33.0230 0x2b44  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
18:15:33.0236 0x2b44  intaud_WaveExtensible - ok
18:15:33.0353 0x2b44  [ C0A462BA7E9A07EFBD3571740F8D0145, 79AA2136EEBD07F5B66F177C64CA9B887A11DC777EDF5D1797C64611129FD32F ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
18:15:33.0416 0x2b44  IntcAzAudAddService - ok
18:15:33.0431 0x2b44  [ 890144FA6AB42F2B54EE633BF96A019A, 8741904C66170BA11C78D31681E3759537C0BF2338538678BC64234DB8FDE93F ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
18:15:33.0443 0x2b44  IntcDAud - ok
18:15:33.0462 0x2b44  [ 4C17F57E43645E75800E9E84787E34E5, 6A1531D97462BA3B3DBDAD472AF15B717C958AA8C5CE2373DE0B2A41C35BE33E ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
18:15:33.0480 0x2b44  Intel(R) Capability Licensing Service TCP IP Interface - ok
18:15:33.0486 0x2b44  [ 2390C395882F7773AB7D6CC2547B41DE, 220EBA14BC4A686ED9879D27900AD66ACD937899759A4319297E0F15DFAB247C ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
18:15:33.0493 0x2b44  Intel(R) ME Service - ok
         

Alt 06.06.2015, 22:34   #7
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

TDSSKiller_log Teil 3 von 3



Und hier der letzte Teil!

Code:
ATTFilter
18:15:33.0498 0x2b44  [ 50672DB7AF32CD9D5AB829731256642C, 5CE27D075C4C2E837A885A931B7000BC881FF3D93960A41013F2580D913C3F71 ] Intel(R) TechnologyAccessService C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
18:15:33.0506 0x2b44  Intel(R) TechnologyAccessService - ok
18:15:33.0509 0x2b44  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:15:33.0516 0x2b44  intelide - ok
18:15:33.0520 0x2b44  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
18:15:33.0526 0x2b44  intelpep - ok
18:15:33.0532 0x2b44  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
18:15:33.0541 0x2b44  intelppm - ok
18:15:33.0545 0x2b44  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:15:33.0570 0x2b44  IpFilterDriver - ok
18:15:33.0590 0x2b44  [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:15:33.0613 0x2b44  iphlpsvc - ok
18:15:33.0618 0x2b44  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
18:15:33.0659 0x2b44  IPMIDRV - ok
18:15:33.0665 0x2b44  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:15:33.0701 0x2b44  IPNAT - ok
18:15:33.0716 0x2b44  [ E61BB95A7CB49696D25A0C4EBD108156, 65D95A0DBC408AD18D5E344A5E875551E6CC044038DE438E4EA1102A234FC529 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
18:15:33.0730 0x2b44  iPod Service - ok
18:15:33.0733 0x2b44  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:15:33.0765 0x2b44  IRENUM - ok
18:15:33.0768 0x2b44  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:15:33.0775 0x2b44  isapnp - ok
18:15:33.0785 0x2b44  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
18:15:33.0796 0x2b44  iScsiPrt - ok
18:15:33.0804 0x2b44  [ 64700303BF6592C1D139F68C63EE597A, 1094057F109B322832F72E1C727F9717292750B0826AEDA7B940B78FCF3E0F17 ] iumsvc          C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
18:15:33.0812 0x2b44  iumsvc - ok
18:15:33.0815 0x2b44  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\Windows\System32\drivers\iwdbus.sys
18:15:33.0821 0x2b44  iwdbus - ok
18:15:33.0827 0x2b44  [ BDC9C7931DB723CB1AF9F7075EA06645, EEBD5DC9C4656F14F8F0A0A5E84657B6B2BA35283E0E571119DA82F131D5C21B ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:15:33.0835 0x2b44  jhi_service - ok
18:15:33.0847 0x2b44  [ 779010324CCB6B974C4D737DDAABB2D5, 3D8591069D02F0888517C54A4C52E3174771EE86D3DA272C14FCE1B27DCB8613 ] k57nd60a        C:\Windows\system32\DRIVERS\k57nd60a.sys
18:15:33.0858 0x2b44  k57nd60a - ok
18:15:33.0863 0x2b44  [ A1D4D34A56DF1D5122CDB265038A2E72, AE061BA1A65C98AF875FA18878B014B57E33594D4AC4C39B050AA532E2220F83 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
18:15:33.0870 0x2b44  kbdclass - ok
18:15:33.0874 0x2b44  [ 4A34D7084B862A92F3ABC4969166B3D3, 87B2635873DA4DD06D9E3B8E4313CBDBDC1488E4E340EC2101393EC65823771F ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
18:15:33.0882 0x2b44  kbdhid - ok
18:15:33.0885 0x2b44  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
18:15:33.0916 0x2b44  kdnic - ok
18:15:33.0920 0x2b44  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso          C:\Windows\system32\lsass.exe
18:15:33.0928 0x2b44  KeyIso - ok
18:15:33.0933 0x2b44  [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:15:33.0943 0x2b44  KSecDD - ok
18:15:33.0949 0x2b44  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:15:33.0959 0x2b44  KSecPkg - ok
18:15:33.0962 0x2b44  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:15:33.0986 0x2b44  ksthunk - ok
18:15:33.0995 0x2b44  [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:15:34.0011 0x2b44  KtmRm - ok
18:15:34.0021 0x2b44  [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer    C:\Windows\system32\srvsvc.dll
18:15:34.0055 0x2b44  LanmanServer - ok
18:15:34.0063 0x2b44  [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:15:34.0098 0x2b44  LanmanWorkstation - ok
18:15:34.0112 0x2b44  [ 2B7479EB47731A8ACBA28AF4C4BDA32D, 67AEB98E7B41337FEFD92CC81BFAD25FBB679998B318C110A4873B1AD8927A97 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
18:15:34.0136 0x2b44  lfsvc - ok
18:15:34.0141 0x2b44  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:15:34.0156 0x2b44  lltdio - ok
18:15:34.0166 0x2b44  [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:15:34.0192 0x2b44  lltdsvc - ok
18:15:34.0196 0x2b44  [ 4ACC60B4CBC911F3F34A1D66213BBBF5, C09A87ACAE0D41FD425BAF076FFE9B601DB89BB66199E5BD72FC59C6A8E449DB ] LMDriver        C:\Windows\System32\drivers\LMDriver.sys
18:15:34.0201 0x2b44  LMDriver - ok
18:15:34.0205 0x2b44  [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:15:34.0225 0x2b44  lmhosts - ok
18:15:34.0237 0x2b44  [ A7D2A96187E5C5F4F7650900A15788AA, F131C3E8206A89A9244ECF2507F4FC1A8550E594A58F75338939A54C973078AF ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:15:34.0247 0x2b44  LMS - ok
18:15:34.0259 0x2b44  [ 4C5177C5EA6A66C6CFAA49737C023ED1, 3FA54E51A7B8EF438A93E96B3067139B911D3128B6048C135CA39B8E7200D5F5 ] LMSvc           C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
18:15:34.0270 0x2b44  LMSvc - ok
18:15:34.0276 0x2b44  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
18:15:34.0284 0x2b44  LSI_SAS - ok
18:15:34.0289 0x2b44  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
18:15:34.0296 0x2b44  LSI_SAS2 - ok
18:15:34.0300 0x2b44  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
18:15:34.0309 0x2b44  LSI_SAS3 - ok
18:15:34.0313 0x2b44  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
18:15:34.0321 0x2b44  LSI_SSS - ok
18:15:34.0338 0x2b44  [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM             C:\Windows\System32\lsm.dll
18:15:34.0364 0x2b44  LSM - ok
18:15:34.0370 0x2b44  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:15:34.0429 0x2b44  luafv - ok
18:15:34.0436 0x2b44  [ 23488767CB18FC3FF39E3AF1DB3FB02C, F526B80EDA5309162239741CF1C77957E2F9EDEB223AB3DB6FF0DEA3D473590B ] massfilter      C:\Windows\system32\drivers\massfilter.sys
18:15:34.0477 0x2b44  massfilter - ok
18:15:34.0479 0x2b44  McAfee SiteAdvisor Service - ok
18:15:34.0489 0x2b44  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
18:15:34.0507 0x2b44  megasas - ok
18:15:34.0525 0x2b44  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
18:15:34.0544 0x2b44  megasr - ok
18:15:34.0550 0x2b44  [ AFEA4FAABCE6F0C299E9231FF4F466BE, BCF0C50F02C4AC2784139935F3756F5C4D24FCAF07ACD9567B87991A9D1F16DB ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
18:15:34.0557 0x2b44  MEIx64 - ok
18:15:34.0576 0x2b44  Microsoft SharePoint Workspace Audit Service - ok
18:15:34.0580 0x2b44  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS           C:\Windows\system32\mmcss.dll
18:15:34.0603 0x2b44  MMCSS - ok
18:15:34.0607 0x2b44  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
18:15:34.0616 0x2b44  Modem - ok
18:15:34.0620 0x2b44  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
18:15:34.0636 0x2b44  monitor - ok
18:15:34.0640 0x2b44  [ 2A2F8D5284E59815169A88F1FC9CEE28, 58EFBCF3C849FD088CFB7FE287FC7D9DD7E03D4E6AA98F0497C09E4596E42538 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
18:15:34.0647 0x2b44  mouclass - ok
18:15:34.0651 0x2b44  [ 91223A2AE2955B3E0DA3DB79C3A897A6, 32B59CF1586C2300D60AF8A1D819515033ACC7F7A1F3523FC4AC7725E29B5A90 ] mouhid          C:\Windows\System32\drivers\mouhid.sys
18:15:34.0681 0x2b44  mouhid - ok
18:15:34.0686 0x2b44  [ D1D82F007A079A4D623DBD1F36EF30A1, 7901F81B62C5A4196D75A10C05386B16831CB290EFB9A1611CECF281068C520F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:15:34.0694 0x2b44  mountmgr - ok
18:15:34.0700 0x2b44  [ 9FC679D10A7377BB04ECC3D0E2E26B53, 24ACD4EC1618A052C29E4463138B28F62C8B78D442DB82F4925E64FC5849A096 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:15:34.0708 0x2b44  MozillaMaintenance - ok
18:15:34.0713 0x2b44  [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:15:34.0737 0x2b44  mpsdrv - ok
18:15:34.0756 0x2b44  [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:15:34.0794 0x2b44  MpsSvc - ok
18:15:34.0801 0x2b44  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:15:34.0836 0x2b44  MRxDAV - ok
18:15:34.0847 0x2b44  [ 31233271EDE50D1BBB220F78AFA60486, 2122FAB5BD353DF63CF0FE9CEDBD5DFD1F26F2DE04303E1B3FFB03AA02AECED9 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:15:34.0870 0x2b44  mrxsmb - ok
18:15:34.0879 0x2b44  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:15:34.0921 0x2b44  mrxsmb10 - ok
18:15:34.0928 0x2b44  [ 6276AC2AA203CF47811F6EFBBD214FBF, AE55D87D863A626347B0074F4E962080F1989A94153DAF8475593249F616DA2F ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:15:34.0958 0x2b44  mrxsmb20 - ok
18:15:34.0966 0x2b44  [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
18:15:34.0988 0x2b44  MsBridge - ok
18:15:34.0995 0x2b44  [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC           C:\Windows\System32\msdtc.exe
18:15:35.0006 0x2b44  MSDTC - ok
18:15:35.0012 0x2b44  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:15:35.0029 0x2b44  Msfs - ok
18:15:35.0034 0x2b44  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
18:15:35.0041 0x2b44  msgpiowin32 - ok
18:15:35.0044 0x2b44  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:15:35.0057 0x2b44  mshidkmdf - ok
18:15:35.0059 0x2b44  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
18:15:35.0074 0x2b44  mshidumdf - ok
18:15:35.0078 0x2b44  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:15:35.0085 0x2b44  msisadrv - ok
18:15:35.0091 0x2b44  [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:15:35.0111 0x2b44  MSiSCSI - ok
18:15:35.0113 0x2b44  msiserver - ok
18:15:35.0116 0x2b44  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:15:35.0125 0x2b44  MSKSSRV - ok
18:15:35.0130 0x2b44  [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
18:15:35.0146 0x2b44  MsLldp - ok
18:15:35.0148 0x2b44  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:15:35.0172 0x2b44  MSPCLOCK - ok
18:15:35.0175 0x2b44  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:15:35.0183 0x2b44  MSPQM - ok
18:15:35.0194 0x2b44  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:15:35.0207 0x2b44  MsRPC - ok
18:15:35.0212 0x2b44  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
18:15:35.0220 0x2b44  mssmbios - ok
18:15:35.0223 0x2b44  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:15:35.0231 0x2b44  MSTEE - ok
18:15:35.0235 0x2b44  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
18:15:35.0243 0x2b44  MTConfig - ok
18:15:35.0247 0x2b44  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
18:15:35.0255 0x2b44  Mup - ok
18:15:35.0260 0x2b44  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
18:15:35.0267 0x2b44  mvumis - ok
18:15:35.0279 0x2b44  [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent        C:\Windows\system32\qagentRT.dll
18:15:35.0306 0x2b44  napagent - ok
18:15:35.0317 0x2b44  [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:15:35.0349 0x2b44  NativeWifiP - ok
18:15:35.0356 0x2b44  [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc          C:\Windows\System32\ncasvc.dll
18:15:35.0407 0x2b44  NcaSvc - ok
18:15:35.0414 0x2b44  [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService      C:\Windows\System32\ncbservice.dll
18:15:35.0434 0x2b44  NcbService - ok
18:15:35.0438 0x2b44  [ 9ACED0F5B458C9011F39143326494E93, 9DFFC7EE7DE6FD92545EC6A203213C498A01EEFB0BC55460D339BCE498E56A7F ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
18:15:35.0452 0x2b44  NcdAutoSetup - ok
18:15:35.0476 0x2b44  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:15:35.0501 0x2b44  NDIS - ok
18:15:35.0506 0x2b44  [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:15:35.0515 0x2b44  NdisCap - ok
18:15:35.0520 0x2b44  [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
18:15:35.0556 0x2b44  NdisImPlatform - ok
18:15:35.0560 0x2b44  [ 6AA7FB95A2E80428601438E83E2C2C70, 28FB4464FAA2371419FA38F484EFB9A05C28F99D554E321198BD4B9AD764B7F7 ] ndisrd          C:\Windows\system32\DRIVERS\ndisrfl.sys
18:15:35.0565 0x2b44  ndisrd - ok
18:15:35.0569 0x2b44  [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:15:35.0585 0x2b44  NdisTapi - ok
18:15:35.0589 0x2b44  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:15:35.0633 0x2b44  Ndisuio - ok
18:15:35.0641 0x2b44  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
18:15:35.0660 0x2b44  NdisVirtualBus - ok
18:15:35.0669 0x2b44  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:15:35.0688 0x2b44  NdisWan - ok
18:15:35.0695 0x2b44  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
18:15:35.0714 0x2b44  NdisWanLegacy - ok
18:15:35.0719 0x2b44  [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:15:35.0731 0x2b44  NDProxy - ok
18:15:35.0737 0x2b44  [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
18:15:35.0761 0x2b44  Ndu - ok
18:15:35.0765 0x2b44  [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:15:35.0774 0x2b44  NetBIOS - ok
18:15:35.0782 0x2b44  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:15:35.0803 0x2b44  NetBT - ok
18:15:35.0807 0x2b44  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon        C:\Windows\system32\lsass.exe
18:15:35.0814 0x2b44  Netlogon - ok
18:15:35.0823 0x2b44  [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman          C:\Windows\System32\netman.dll
18:15:35.0854 0x2b44  Netman - ok
18:15:35.0867 0x2b44  [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm        C:\Windows\System32\netprofmsvc.dll
18:15:35.0884 0x2b44  netprofm - ok
18:15:35.0889 0x2b44  [ 6D93008DAB18953F2BD3B7186385A511, 4AFD8126944F725C5D8AB93DCEA554515D944F5F34D5CADA6B22366DE55EA1FF ] NetTap630       C:\Windows\system32\DRIVERS\nettap630.sys
18:15:35.0895 0x2b44  NetTap630 - ok
18:15:35.0920 0x2b44  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:15:35.0929 0x2b44  NetTcpPortSharing - ok
18:15:35.0934 0x2b44  [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc          C:\Windows\System32\drivers\netvsc63.sys
18:15:35.0966 0x2b44  netvsc - ok
18:15:35.0976 0x2b44  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:15:35.0995 0x2b44  NlaSvc - ok
18:15:36.0000 0x2b44  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:15:36.0010 0x2b44  Npfs - ok
18:15:36.0013 0x2b44  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
18:15:36.0029 0x2b44  npsvctrig - ok
18:15:36.0032 0x2b44  [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi             C:\Windows\system32\nsisvc.dll
18:15:36.0070 0x2b44  nsi - ok
18:15:36.0074 0x2b44  [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:15:36.0087 0x2b44  nsiproxy - ok
18:15:36.0129 0x2b44  [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:15:36.0172 0x2b44  Ntfs - ok
18:15:36.0178 0x2b44  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
18:15:36.0187 0x2b44  Null - ok
18:15:36.0479 0x2b44  [ EEA11D0AED5C40A6C926B21CEC53EE65, 8BED3555C9CA4EBEA7F2FB326C2A2F488110C07C98FADE35D818B72C09CF005E ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:15:36.0669 0x2b44  nvlddmkm - ok
18:15:36.0717 0x2b44  [ E09C5339746C10596C1BA740956F3416, 58012873ED920EC42C7DE405745C290DB74A1CF7B6161EA9216B1EC515538002 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
18:15:36.0746 0x2b44  NvNetworkService - ok
18:15:36.0753 0x2b44  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:15:36.0761 0x2b44  nvraid - ok
18:15:36.0767 0x2b44  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:15:36.0777 0x2b44  nvstor - ok
18:15:36.0796 0x2b44  [ 79D473EA26DBD029DBF21DDB83F7552B, 7459D867DA39D4EC3135E8A7343865ADE383198153E3B41BB14EEDD38E5E36AA ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:15:36.0815 0x2b44  nvsvc - ok
18:15:36.0827 0x2b44  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:15:36.0836 0x2b44  nv_agp - ok
18:15:36.0842 0x2b44  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:15:36.0850 0x2b44  ose - ok
18:15:36.0962 0x2b44  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
18:15:37.0038 0x2b44  osppsvc - ok
18:15:37.0053 0x2b44  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:15:37.0079 0x2b44  p2pimsvc - ok
18:15:37.0090 0x2b44  [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc          C:\Windows\system32\p2psvc.dll
18:15:37.0132 0x2b44  p2psvc - ok
18:15:37.0138 0x2b44  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
18:15:37.0147 0x2b44  Parport - ok
18:15:37.0151 0x2b44  [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:15:37.0159 0x2b44  partmgr - ok
18:15:37.0171 0x2b44  [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:15:37.0186 0x2b44  PcaSvc - ok
18:15:37.0197 0x2b44  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
18:15:37.0210 0x2b44  pci - ok
18:15:37.0213 0x2b44  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:15:37.0220 0x2b44  pciide - ok
18:15:37.0226 0x2b44  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
18:15:37.0234 0x2b44  pcmcia - ok
18:15:37.0238 0x2b44  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:15:37.0245 0x2b44  pcw - ok
18:15:37.0249 0x2b44  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
18:15:37.0257 0x2b44  pdc - ok
18:15:37.0273 0x2b44  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:15:37.0307 0x2b44  PEAUTH - ok
18:15:37.0359 0x2b44  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:15:37.0392 0x2b44  PerfHost - ok
18:15:37.0428 0x2b44  [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla             C:\Windows\system32\pla.dll
18:15:37.0473 0x2b44  pla - ok
18:15:37.0480 0x2b44  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:15:37.0489 0x2b44  PlugPlay - ok
18:15:37.0509 0x2b44  [ 23DF6106A8EA6DA5D0583B0F8CFF984D, 065FF987AC47F4308093A34D8FF6780BD797445C606BF8D5CAF5FA8D953B821E ] PMBDeviceInfoProvider C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
18:15:37.0521 0x2b44  PMBDeviceInfoProvider - ok
18:15:37.0525 0x2b44  [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:15:37.0541 0x2b44  PNRPAutoReg - ok
18:15:37.0549 0x2b44  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:15:37.0562 0x2b44  PNRPsvc - ok
18:15:37.0573 0x2b44  [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:15:37.0588 0x2b44  PolicyAgent - ok
18:15:37.0594 0x2b44  [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power           C:\Windows\system32\umpo.dll
18:15:37.0628 0x2b44  Power - ok
18:15:37.0639 0x2b44  [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:15:37.0649 0x2b44  PptpMiniport - ok
18:15:37.0755 0x2b44  [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
18:15:37.0828 0x2b44  PrintNotify - ok
18:15:37.0836 0x2b44  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
18:15:37.0863 0x2b44  Processor - ok
18:15:37.0872 0x2b44  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:15:37.0910 0x2b44  ProfSvc - ok
18:15:37.0918 0x2b44  [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:15:37.0950 0x2b44  Psched - ok
18:15:37.0974 0x2b44  [ 992DBEEC25BC2535B03B564367A3B652, 68CA8A8C4B03A06BB71E5DBB3883B3605C4AA64322665BFACC410206362A7AD9 ] QASvc           C:\Program Files\Acer\Acer Quick Access\QASvc.exe
18:15:37.0996 0x2b44  QASvc - ok
18:15:38.0005 0x2b44  [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE           C:\Windows\system32\qwave.dll
18:15:38.0043 0x2b44  QWAVE - ok
18:15:38.0047 0x2b44  [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:15:38.0055 0x2b44  QWAVEdrv - ok
18:15:38.0059 0x2b44  [ 6A52182919E25FB56D253D389F92CE98, AE6497D5CF324CB813248ADECB0F53E5CB3D6C326774E2257319E4CE7782C591 ] RadioShim       C:\Windows\System32\drivers\RadioShim.sys
18:15:38.0063 0x2b44  RadioShim - ok
18:15:38.0067 0x2b44  [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:15:38.0097 0x2b44  RasAcd - ok
18:15:38.0102 0x2b44  [ E8FFD8BE3C50E7A71C5FBB87BDD1128E, 3E3EB906CC9A1CCA09580DA9F94DD0E1162CABD343874B76718DC4F2E9069C4E ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:15:38.0115 0x2b44  RasAgileVpn - ok
18:15:38.0120 0x2b44  [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto         C:\Windows\System32\rasauto.dll
18:15:38.0139 0x2b44  RasAuto - ok
18:15:38.0144 0x2b44  [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:15:38.0155 0x2b44  Rasl2tp - ok
18:15:38.0169 0x2b44  [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan          C:\Windows\System32\rasmans.dll
18:15:38.0186 0x2b44  RasMan - ok
18:15:38.0191 0x2b44  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:15:38.0201 0x2b44  RasPppoe - ok
18:15:38.0206 0x2b44  [ 41F631007A158FEBB67F0E2AD1601BBA, EB5EA7277F4178BC27E55BF850AEBCD84B6BED80B2383CFB29548824AAFED135 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:15:38.0228 0x2b44  RasSstp - ok
18:15:38.0238 0x2b44  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:15:38.0275 0x2b44  rdbss - ok
18:15:38.0280 0x2b44  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
18:15:38.0317 0x2b44  rdpbus - ok
18:15:38.0324 0x2b44  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
18:15:38.0355 0x2b44  RDPDR - ok
18:15:38.0361 0x2b44  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:15:38.0369 0x2b44  RdpVideoMiniport - ok
18:15:38.0376 0x2b44  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:15:38.0387 0x2b44  rdyboost - ok
18:15:38.0408 0x2b44  [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
18:15:38.0432 0x2b44  ReFS - ok
18:15:38.0440 0x2b44  [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:15:38.0452 0x2b44  RemoteAccess - ok
18:15:38.0458 0x2b44  [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:15:38.0474 0x2b44  RemoteRegistry - ok
18:15:38.0481 0x2b44  [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
18:15:38.0491 0x2b44  RFCOMM - ok
18:15:38.0500 0x2b44  [ 41DDCF1ADD1FB7DE23DCF671740DDBE6, 87ECB5C883CEFF76D126A5B4D92E069C9298FA5B62CC981870F9ECCA13C074F1 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
18:15:38.0508 0x2b44  RichVideo - ok
18:15:38.0520 0x2b44  [ F15FB6917435F714F31604FAE64BF254, DE917BCDA6DE8636A6652148647C9CCDC8D5EF31F222A9FD1CD1FAF5EDED3B0F ] RMSvc           C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
18:15:38.0531 0x2b44  RMSvc - ok
18:15:38.0537 0x2b44  [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:15:38.0550 0x2b44  RpcEptMapper - ok
18:15:38.0554 0x2b44  [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator      C:\Windows\system32\locator.exe
18:15:38.0573 0x2b44  RpcLocator - ok
18:15:38.0591 0x2b44  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs           C:\Windows\system32\rpcss.dll
18:15:38.0612 0x2b44  RpcSs - ok
18:15:38.0616 0x2b44  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:15:38.0653 0x2b44  rspndr - ok
18:15:38.0663 0x2b44  [ BCDE27DA663D2F1BE1EA262F2BFDA8D0, 07744F83C41503D8C948E8D8569628C7C9D283EBA3C20CB63BC81123812A0A25 ] RSUSBVSTOR      C:\Windows\System32\Drivers\RtsUVStor.sys
18:15:38.0672 0x2b44  RSUSBVSTOR - ok
18:15:38.0687 0x2b44  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
18:15:38.0715 0x2b44  RTL8168 - ok
18:15:38.0719 0x2b44  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
18:15:38.0726 0x2b44  s3cap - ok
18:15:38.0730 0x2b44  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs           C:\Windows\system32\lsass.exe
18:15:38.0738 0x2b44  SamSs - ok
18:15:38.0744 0x2b44  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:15:38.0752 0x2b44  sbp2port - ok
18:15:38.0759 0x2b44  [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:15:38.0771 0x2b44  SCardSvr - ok
18:15:38.0776 0x2b44  [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
18:15:38.0795 0x2b44  ScDeviceEnum - ok
18:15:38.0799 0x2b44  [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:15:38.0813 0x2b44  scfilter - ok
18:15:38.0839 0x2b44  [ A626F5E446860F22835E783142D7AE33, 3A786639E1FABCA512F4F91A10811DD3C4D9C9C9BB893362E4D019219D0BD8E2 ] Schedule        C:\Windows\system32\schedsvc.dll
18:15:38.0867 0x2b44  Schedule - ok
18:15:38.0874 0x2b44  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:15:38.0884 0x2b44  SCPolicySvc - ok
18:15:38.0893 0x2b44  [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus           C:\Windows\System32\drivers\sdbus.sys
18:15:38.0904 0x2b44  sdbus - ok
18:15:38.0909 0x2b44  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
18:15:38.0916 0x2b44  sdstor - ok
18:15:38.0920 0x2b44  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:15:38.0928 0x2b44  secdrv - ok
18:15:38.0932 0x2b44  [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon        C:\Windows\system32\seclogon.dll
18:15:38.0941 0x2b44  seclogon - ok
18:15:38.0945 0x2b44  [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS            C:\Windows\System32\sens.dll
18:15:38.0957 0x2b44  SENS - ok
18:15:38.0965 0x2b44  [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:15:38.0995 0x2b44  SensrSvc - ok
18:15:39.0000 0x2b44  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
18:15:39.0008 0x2b44  SerCx - ok
18:15:39.0014 0x2b44  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
18:15:39.0023 0x2b44  SerCx2 - ok
18:15:39.0027 0x2b44  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\Windows\System32\drivers\serenum.sys
18:15:39.0044 0x2b44  Serenum - ok
18:15:39.0050 0x2b44  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
18:15:39.0058 0x2b44  Serial - ok
18:15:39.0062 0x2b44  [ 96B01F117057FB4DAE0FF919ACB55770, D0F58F1CAE4F81D60FCE60BB0065A34B4F897E8105DF17B6DAA334938CD25A56 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
18:15:39.0070 0x2b44  sermouse - ok
18:15:39.0081 0x2b44  [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv      C:\Windows\system32\sessenv.dll
18:15:39.0103 0x2b44  SessionEnv - ok
18:15:39.0107 0x2b44  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
18:15:39.0115 0x2b44  sfloppy - ok
18:15:39.0126 0x2b44  [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:15:39.0156 0x2b44  SharedAccess - ok
18:15:39.0172 0x2b44  [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:15:39.0204 0x2b44  ShellHWDetection - ok
18:15:39.0208 0x2b44  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
18:15:39.0215 0x2b44  SiSRaid2 - ok
18:15:39.0219 0x2b44  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
18:15:39.0227 0x2b44  SiSRaid4 - ok
18:15:39.0236 0x2b44  [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
18:15:39.0247 0x2b44  SkypeUpdate - ok
18:15:39.0251 0x2b44  [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost         C:\Windows\System32\smphost.dll
18:15:39.0259 0x2b44  smphost - ok
18:15:39.0265 0x2b44  [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:15:39.0273 0x2b44  SNMPTRAP - ok
18:15:39.0286 0x2b44  [ 3C1865D8E8C2DD9ADB29B1A21A8B1972, 4AA1E676545A52749325CB7EE3F24CAF550308804BE833F36A76A32E71BAC6CD ] SOHDms          C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
18:15:39.0300 0x2b44  SOHDms - ok
18:15:39.0304 0x2b44  [ FA4AC5624B245FA03D4CCBA9C48D385E, 3125359763D34EE51EB1125217050DB29045154E76673F7CFED25B6301C7EEBE ] SOHDs           C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
18:15:39.0311 0x2b44  SOHDs - ok
18:15:39.0325 0x2b44  [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport       C:\Windows\system32\drivers\spaceport.sys
18:15:39.0340 0x2b44  spaceport - ok
18:15:39.0346 0x2b44  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
18:15:39.0355 0x2b44  SpbCx - ok
18:15:39.0366 0x2b44  [ C03E480E63A80D73FABE28D24D3B6B47, F8C68DC63A5492587F9343158348ADD99A99AF34DC7ED29E5562EE90C0AB8F25 ] SpfService      C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
18:15:39.0377 0x2b44  SpfService - ok
18:15:39.0395 0x2b44  [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler         C:\Windows\System32\spoolsv.exe
18:15:39.0444 0x2b44  Spooler - ok
18:15:39.0617 0x2b44  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
18:15:39.0791 0x2b44  sppsvc - ok
18:15:39.0809 0x2b44  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:15:39.0847 0x2b44  srv - ok
18:15:39.0864 0x2b44  [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:15:39.0896 0x2b44  srv2 - ok
18:15:39.0904 0x2b44  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:15:39.0935 0x2b44  srvnet - ok
18:15:39.0943 0x2b44  [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:15:39.0972 0x2b44  SSDPSRV - ok
18:15:39.0978 0x2b44  [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:15:39.0989 0x2b44  SstpSvc - ok
18:15:39.0996 0x2b44  [ 91310683D7B6B292B746D60734B59322, 2C56C3E4AA7356FB544B52F80ABDA39A80473390CB2059C69BDCCAD40FE56325 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
18:15:40.0004 0x2b44  ssudmdm - ok
18:15:40.0011 0x2b44  [ F7093A27C4AF6D9EEA0ACAC1C4FF6828, 40E1A8FB08D3063711E87C15B24009B397CAD279905AA72FADBB4A8B611474CD ] ssudserd        C:\Windows\system32\DRIVERS\ssudserd.sys
18:15:40.0019 0x2b44  ssudserd - ok
18:15:40.0037 0x2b44  [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
18:15:40.0053 0x2b44  ss_conn_service - ok
18:15:40.0058 0x2b44  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
18:15:40.0065 0x2b44  stexstor - ok
18:15:40.0068 0x2b44  [ 8F3C0CCF27CFFE89424F30E9FB3381AB, 74E54541B4A16DC97098428E1715A27557BAB97E05AF346F88958580199C1541 ] StillCam        C:\Windows\System32\drivers\serscan.sys
18:15:40.0096 0x2b44  StillCam - ok
18:15:40.0112 0x2b44  [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc          C:\Windows\System32\wiaservc.dll
18:15:40.0146 0x2b44  stisvc - ok
18:15:40.0152 0x2b44  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
18:15:40.0162 0x2b44  storahci - ok
18:15:40.0166 0x2b44  [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
18:15:40.0173 0x2b44  storflt - ok
18:15:40.0177 0x2b44  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
18:15:40.0185 0x2b44  stornvme - ok
18:15:40.0189 0x2b44  [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc         C:\Windows\system32\storsvc.dll
18:15:40.0227 0x2b44  StorSvc - ok
18:15:40.0231 0x2b44  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
18:15:40.0239 0x2b44  storvsc - ok
18:15:40.0242 0x2b44  [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc           C:\Windows\system32\svsvc.dll
18:15:40.0278 0x2b44  svsvc - ok
18:15:40.0282 0x2b44  [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum          C:\Windows\System32\drivers\swenum.sys
18:15:40.0291 0x2b44  swenum - ok
18:15:40.0306 0x2b44  [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv           C:\Windows\System32\swprv.dll
18:15:40.0334 0x2b44  swprv - ok
18:15:40.0339 0x2b44  [ B5E2DD0C1EEB5A6089F846E714283610, C3135E4587BD17B8371C9DFF1803BA8774549C5F02C9399EC1D49BC1853BEED0 ] SynRMIHID       C:\Windows\system32\DRIVERS\SynRMIHID.sys
18:15:40.0345 0x2b44  SynRMIHID - ok
18:15:40.0370 0x2b44  [ 3114CB46C2853CA71525428CB0C7CB58, A9CC51506AABBC23BAB2B90E30AB13197A72268A3DE6D2F281C1C367ED7118AE ] SysMain         C:\Windows\system32\sysmain.dll
18:15:40.0418 0x2b44  SysMain - ok
18:15:40.0427 0x2b44  [ 23BECB70654B192A7E378DEE3DBD8D42, 7596174AE7508B62C40A429645198F6A420D0CD5B62A10AB78516113584E7EDB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
18:15:40.0455 0x2b44  SystemEventsBroker - ok
18:15:40.0461 0x2b44  [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:15:40.0485 0x2b44  TabletInputService - ok
18:15:40.0494 0x2b44  [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:15:40.0533 0x2b44  TapiSrv - ok
18:15:40.0594 0x2b44  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:15:40.0645 0x2b44  Tcpip - ok
18:15:40.0723 0x2b44  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:15:40.0788 0x2b44  TCPIP6 - ok
18:15:40.0796 0x2b44  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:15:40.0811 0x2b44  tcpipreg - ok
18:15:40.0819 0x2b44  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:15:40.0850 0x2b44  tdx - ok
18:15:40.0854 0x2b44  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
18:15:40.0861 0x2b44  terminpt - ok
18:15:40.0885 0x2b44  [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService     C:\Windows\System32\termsrv.dll
18:15:40.0911 0x2b44  TermService - ok
18:15:40.0917 0x2b44  [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes          C:\Windows\system32\themeservice.dll
18:15:40.0926 0x2b44  Themes - ok
18:15:40.0930 0x2b44  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER     C:\Windows\system32\mmcss.dll
18:15:40.0941 0x2b44  THREADORDER - ok
18:15:40.0950 0x2b44  [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
18:15:40.0975 0x2b44  TimeBroker - ok
18:15:40.0983 0x2b44  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
18:15:40.0994 0x2b44  TPM - ok
18:15:41.0000 0x2b44  [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks          C:\Windows\System32\trkwks.dll
18:15:41.0011 0x2b44  TrkWks - ok
18:15:41.0016 0x2b44  [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:15:41.0033 0x2b44  TrustedInstaller - ok
18:15:41.0038 0x2b44  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:15:41.0053 0x2b44  TsUsbFlt - ok
18:15:41.0057 0x2b44  [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
18:15:41.0095 0x2b44  TsUsbGD - ok
18:15:41.0101 0x2b44  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:15:41.0115 0x2b44  tunnel - ok
18:15:41.0120 0x2b44  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
18:15:41.0129 0x2b44  uagp35 - ok
18:15:41.0135 0x2b44  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
18:15:41.0144 0x2b44  UASPStor - ok
18:15:41.0152 0x2b44  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
18:15:41.0165 0x2b44  UCX01000 - ok
18:15:41.0175 0x2b44  [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:15:41.0201 0x2b44  udfs - ok
18:15:41.0205 0x2b44  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
18:15:41.0213 0x2b44  UEFI - ok
18:15:41.0222 0x2b44  [ EE33325429532937D51AC3F54DC93589, D861B541E42F41EDC69A2A3B44860E40164D797D11B4343495DE6281D33F718C ] UEIPSvc         C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
18:15:41.0233 0x2b44  UEIPSvc - ok
18:15:41.0245 0x2b44  [ 13BFF97E926BF8D9C1230CECC371A0C0, 2A15D85E41D3986401D74CBCA36E190E82A61F99EECE0AB85A1CF2A57C60FD85 ] UI Assistant Service C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
18:15:41.0253 0x2b44  UI Assistant Service - ok
18:15:41.0257 0x2b44  [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:15:41.0268 0x2b44  UI0Detect - ok
18:15:41.0272 0x2b44  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:15:41.0280 0x2b44  uliagpkx - ok
18:15:41.0285 0x2b44  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
18:15:41.0294 0x2b44  umbus - ok
18:15:41.0298 0x2b44  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
18:15:41.0334 0x2b44  UmPass - ok
18:15:41.0345 0x2b44  [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService    C:\Windows\System32\umrdp.dll
18:15:41.0376 0x2b44  UmRdpService - ok
18:15:41.0389 0x2b44  [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost        C:\Windows\System32\upnphost.dll
18:15:41.0429 0x2b44  upnphost - ok
18:15:41.0434 0x2b44  [ 5C3BE22E485B9BF11FCEFDC676C728D0, F55061066ECF6920D56518A677BB538C18B7F1BB150ED6DB3591408F44E8D53A ] USBAAPL64       C:\Windows\System32\Drivers\usbaapl64.sys
18:15:41.0456 0x2b44  USBAAPL64 - ok
18:15:41.0463 0x2b44  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
18:15:41.0472 0x2b44  usbccgp - ok
18:15:41.0477 0x2b44  [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
18:15:41.0496 0x2b44  usbcir - ok
18:15:41.0502 0x2b44  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
18:15:41.0512 0x2b44  usbehci - ok
18:15:41.0527 0x2b44  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
18:15:41.0542 0x2b44  usbhub - ok
18:15:41.0557 0x2b44  [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
18:15:41.0571 0x2b44  USBHUB3 - ok
18:15:41.0576 0x2b44  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
18:15:41.0606 0x2b44  usbohci - ok
18:15:41.0610 0x2b44  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
18:15:41.0659 0x2b44  usbprint - ok
18:15:41.0666 0x2b44  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
18:15:41.0678 0x2b44  USBSTOR - ok
18:15:41.0683 0x2b44  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
18:15:41.0728 0x2b44  usbuhci - ok
18:15:41.0737 0x2b44  [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:15:41.0758 0x2b44  usbvideo - ok
18:15:41.0769 0x2b44  [ 1A20F03700D2B2ED775E38D751EF2F63, 76F8BE9F412D4397437E60A7E6231C80EA9B4F5436C9A8FAB967C78604994AE9 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
18:15:41.0782 0x2b44  USBXHCI - ok
18:15:41.0786 0x2b44  [ 3CAAB947B1F247A570DE15983BEDEBCF, 81480D999F67A1755D5C21CE046FB439F0FBD743F73D23C19BC8C4DEB78A4F91 ] usb_rndisx      C:\Windows\system32\DRIVERS\usb8023x.sys
18:15:41.0828 0x2b44  usb_rndisx - ok
18:15:41.0832 0x2b44  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc        C:\Windows\system32\lsass.exe
18:15:41.0840 0x2b44  VaultSvc - ok
18:15:41.0844 0x2b44  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:15:41.0852 0x2b44  vdrvroot - ok
18:15:41.0880 0x2b44  [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds             C:\Windows\System32\vds.exe
18:15:41.0931 0x2b44  vds - ok
18:15:41.0939 0x2b44  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
18:15:41.0949 0x2b44  VerifierExt - ok
18:15:41.0965 0x2b44  [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
18:15:41.0984 0x2b44  vhdmp - ok
18:15:41.0988 0x2b44  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:15:41.0995 0x2b44  viaide - ok
18:15:42.0000 0x2b44  [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus           C:\Windows\system32\drivers\vmbus.sys
18:15:42.0009 0x2b44  vmbus - ok
18:15:42.0013 0x2b44  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
18:15:42.0030 0x2b44  VMBusHID - ok
18:15:42.0057 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
18:15:42.0076 0x2b44  vmicguestinterface - ok
18:15:42.0088 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
18:15:42.0109 0x2b44  vmicheartbeat - ok
18:15:42.0119 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
18:15:42.0134 0x2b44  vmickvpexchange - ok
18:15:42.0144 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv         C:\Windows\System32\ICSvc.dll
18:15:42.0161 0x2b44  vmicrdv - ok
18:15:42.0171 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
18:15:42.0190 0x2b44  vmicshutdown - ok
18:15:42.0203 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync    C:\Windows\System32\ICSvc.dll
18:15:42.0218 0x2b44  vmictimesync - ok
18:15:42.0231 0x2b44  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss         C:\Windows\System32\ICSvc.dll
18:15:42.0247 0x2b44  vmicvss - ok
18:15:42.0253 0x2b44  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:15:42.0261 0x2b44  volmgr - ok
18:15:42.0271 0x2b44  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:15:42.0285 0x2b44  volmgrx - ok
18:15:42.0296 0x2b44  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:15:42.0310 0x2b44  volsnap - ok
18:15:42.0314 0x2b44  [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci            C:\Windows\System32\drivers\vpci.sys
18:15:42.0322 0x2b44  vpci - ok
18:15:42.0328 0x2b44  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
18:15:42.0338 0x2b44  vsmraid - ok
18:15:42.0367 0x2b44  [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS             C:\Windows\system32\vssvc.exe
18:15:42.0398 0x2b44  VSS - ok
18:15:42.0409 0x2b44  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
18:15:42.0422 0x2b44  VSTXRAID - ok
18:15:42.0461 0x2b44  [ 47A543ECF4D8D1BA5E5DC8F7EF08BF91, 9831953754C7E4E980FAFEE652F6CC91589BE09DACE20EB2B1FBF5ECFFA89A28 ] vToolbarUpdater18.4.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.4.0\ToolbarUpdater.exe
18:15:42.0493 0x2b44  vToolbarUpdater18.4.0 - ok
18:15:42.0499 0x2b44  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
18:15:42.0528 0x2b44  vwifibus - ok
18:15:42.0533 0x2b44  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:15:42.0571 0x2b44  vwififlt - ok
18:15:42.0575 0x2b44  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:15:42.0584 0x2b44  vwifimp - ok
18:15:42.0595 0x2b44  [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time         C:\Windows\system32\w32time.dll
18:15:42.0625 0x2b44  W32Time - ok
18:15:42.0639 0x2b44  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
18:15:42.0647 0x2b44  WacomPen - ok
18:15:42.0652 0x2b44  [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
18:15:42.0673 0x2b44  Wanarp - ok
18:15:42.0676 0x2b44  [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:15:42.0685 0x2b44  Wanarpv6 - ok
18:15:42.0734 0x2b44  [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine        C:\Windows\system32\wbengine.exe
18:15:42.0787 0x2b44  wbengine - ok
18:15:42.0800 0x2b44  [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:15:42.0826 0x2b44  WbioSrvc - ok
18:15:42.0837 0x2b44  [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
18:15:42.0853 0x2b44  Wcmsvc - ok
18:15:42.0865 0x2b44  [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:15:42.0883 0x2b44  wcncsvc - ok
18:15:42.0888 0x2b44  [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:15:42.0929 0x2b44  WcsPlugInService - ok
18:15:42.0933 0x2b44  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
18:15:42.0940 0x2b44  WdBoot - ok
18:15:42.0959 0x2b44  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:15:42.0980 0x2b44  Wdf01000 - ok
18:15:42.0989 0x2b44  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
18:15:43.0001 0x2b44  WdFilter - ok
18:15:43.0006 0x2b44  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:15:43.0029 0x2b44  WdiServiceHost - ok
18:15:43.0032 0x2b44  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:15:43.0043 0x2b44  WdiSystemHost - ok
18:15:43.0048 0x2b44  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
18:15:43.0057 0x2b44  WdNisDrv - ok
18:15:43.0059 0x2b44  WdNisSvc - ok
18:15:43.0068 0x2b44  [ 185E4111627F7AA6799E1366B5E91D65, 7A02C816DFBCCF47EDB49E5E2005A3D0B80719FAC94F9298D2DBAC63950EDA05 ] WebClient       C:\Windows\System32\webclnt.dll
18:15:43.0092 0x2b44  WebClient - ok
18:15:43.0116 0x2b44  [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:15:43.0130 0x2b44  Wecsvc - ok
18:15:43.0134 0x2b44  [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
18:15:43.0143 0x2b44  WEPHOSTSVC - ok
18:15:43.0147 0x2b44  [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:15:43.0193 0x2b44  wercplsupport - ok
18:15:43.0198 0x2b44  [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc          C:\Windows\System32\WerSvc.dll
18:15:43.0222 0x2b44  WerSvc - ok
18:15:43.0228 0x2b44  [ BAB713B409258DB7B5D9F9693F802B0E, C0D0391EC4FDC07E0A07F4EEB2DC9CC5B2BE5D2E292E7D01929E8D39D6F73EA5 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
18:15:43.0237 0x2b44  WFPLWFS - ok
18:15:43.0241 0x2b44  [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc          C:\Windows\System32\wiarpc.dll
18:15:43.0250 0x2b44  WiaRpc - ok
18:15:43.0255 0x2b44  [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:15:43.0262 0x2b44  WIMMount - ok
18:15:43.0264 0x2b44  WinDefend - ok
18:15:43.0285 0x2b44  [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
18:15:43.0312 0x2b44  WinHttpAutoProxySvc - ok
18:15:43.0339 0x2b44  [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:15:43.0380 0x2b44  Winmgmt - ok
18:15:43.0459 0x2b44  [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:15:43.0519 0x2b44  WinRM - ok
18:15:43.0530 0x2b44  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUSB          C:\Windows\System32\drivers\WinUsb.sys
18:15:43.0542 0x2b44  WinUSB - ok
18:15:43.0580 0x2b44  [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc         C:\Windows\System32\wlansvc.dll
18:15:43.0623 0x2b44  WlanSvc - ok
18:15:43.0677 0x2b44  [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
18:15:43.0711 0x2b44  wlidsvc - ok
18:15:43.0716 0x2b44  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
18:15:43.0742 0x2b44  WmiAcpi - ok
18:15:43.0751 0x2b44  [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:15:43.0762 0x2b44  wmiApSrv - ok
18:15:43.0764 0x2b44  WMPNetworkSvc - ok
18:15:43.0771 0x2b44  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
18:15:43.0780 0x2b44  Wof - ok
18:15:43.0830 0x2b44  [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
18:15:43.0890 0x2b44  workfolderssvc - ok
18:15:43.0896 0x2b44  [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
18:15:43.0905 0x2b44  wpcfltr - ok
18:15:43.0909 0x2b44  [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:15:43.0940 0x2b44  WPCSvc - ok
18:15:43.0945 0x2b44  [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:15:43.0999 0x2b44  WPDBusEnum - ok
18:15:44.0003 0x2b44  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
18:15:44.0011 0x2b44  WpdUpFltr - ok
18:15:44.0015 0x2b44  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:15:44.0046 0x2b44  ws2ifsl - ok
18:15:44.0052 0x2b44  [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc          C:\Windows\System32\wscsvc.dll
18:15:44.0090 0x2b44  wscsvc - ok
18:15:44.0094 0x2b44  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\Windows\System32\drivers\WSDPrint.sys
18:15:44.0128 0x2b44  WSDPrintDevice - ok
18:15:44.0131 0x2b44  WSearch - ok
18:15:44.0198 0x2b44  [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService       C:\Windows\System32\WSService.dll
18:15:44.0277 0x2b44  WSService - ok
18:15:44.0295 0x2b44  [ FFD80DC0CDA145C3376A5076360162C8, 2DA34929DC416164A001B7C711D7CF1046FAE53F8B31697F3EC4AF75C45163E5 ] WtuSystemSupport C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
18:15:44.0312 0x2b44  WtuSystemSupport - ok
18:15:44.0409 0x2b44  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:15:44.0487 0x2b44  wuauserv - ok
18:15:44.0496 0x2b44  [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:15:44.0520 0x2b44  WudfPf - ok
18:15:44.0529 0x2b44  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
18:15:44.0540 0x2b44  WUDFRd - ok
18:15:44.0545 0x2b44  [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:15:44.0556 0x2b44  wudfsvc - ok
18:15:44.0562 0x2b44  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs       C:\Windows\System32\drivers\WUDFRd.sys
18:15:44.0573 0x2b44  WUDFWpdFs - ok
18:15:44.0579 0x2b44  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp      C:\Windows\System32\drivers\WUDFRd.sys
18:15:44.0591 0x2b44  WUDFWpdMtp - ok
18:15:44.0604 0x2b44  [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:15:44.0622 0x2b44  WwanSvc - ok
18:15:44.0629 0x2b44  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbmdm6k     C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys
18:15:44.0671 0x2b44  ZTEusbmdm6k - ok
18:15:44.0677 0x2b44  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbnmea      C:\Windows\system32\DRIVERS\ZTEusbnmea.sys
18:15:44.0685 0x2b44  ZTEusbnmea - ok
18:15:44.0691 0x2b44  [ FF5A03A65B68DB7E02A12880399D40D4, 9C530A1E7C0B7500C6965896B97CB9BA7BD210165EC0D0B7FE4D1CAEB747BFFF ] ZTEusbser6k     C:\Windows\system32\DRIVERS\ZTEusbser6k.sys
18:15:44.0698 0x2b44  ZTEusbser6k - ok
18:15:44.0711 0x2b44  ================ Scan global ===============================
18:15:44.0715 0x2b44  [ 243F54DBA6EB48A369CA465E263ABA4A, 9D9F9DE783D000F3EA130EB68FD71319F21E4F1CD4232FB8B2F8A9A67E08F5F4 ] C:\Windows\system32\basesrv.dll
18:15:44.0722 0x2b44  [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\Windows\system32\winsrv.dll
18:15:44.0731 0x2b44  [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\Windows\system32\sxssrv.dll
18:15:44.0743 0x2b44  [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\Windows\system32\services.exe
18:15:44.0749 0x2b44  [ Global ] - ok
18:15:44.0750 0x2b44  ================ Scan MBR ==================================
18:15:44.0751 0x2b44  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
18:15:44.0796 0x2b44  \Device\Harddisk0\DR0 - ok
18:15:44.0796 0x2b44  ================ Scan VBR ==================================
18:15:44.0813 0x2b44  [ 7B24A42ED4B1D4C3DF4F3AE0439D3E80 ] \Device\Harddisk0\DR0\Partition1
18:15:44.0815 0x2b44  \Device\Harddisk0\DR0\Partition1 - ok
18:15:44.0817 0x2b44  [ 399448D96068CF7074E6E74594504614 ] \Device\Harddisk0\DR0\Partition2
18:15:44.0818 0x2b44  \Device\Harddisk0\DR0\Partition2 - ok
18:15:44.0820 0x2b44  [ 9DF6EE3B3D77B2C80E2646ADE55EB073 ] \Device\Harddisk0\DR0\Partition3
18:15:44.0820 0x2b44  \Device\Harddisk0\DR0\Partition3 - ok
18:15:44.0822 0x2b44  [ 63916AD5A6FAADD5971CA001609EB6F5 ] \Device\Harddisk0\DR0\Partition4
18:15:44.0824 0x2b44  \Device\Harddisk0\DR0\Partition4 - ok
18:15:44.0825 0x2b44  [ CB10BD3E36225AA46876333EBBEDA368 ] \Device\Harddisk0\DR0\Partition5
18:15:44.0827 0x2b44  \Device\Harddisk0\DR0\Partition5 - ok
18:15:44.0829 0x2b44  [ 4DABE6AB31E07BB918DEEA2A427755D5 ] \Device\Harddisk0\DR0\Partition6
18:15:44.0830 0x2b44  \Device\Harddisk0\DR0\Partition6 - ok
18:15:44.0830 0x2b44  ================ Scan generic autorun ======================
18:15:45.0145 0x2b44  [ 92894CE1B4DBBB9BB55EA0A1E6E7DF99, 06E575611BEF01D75789DD92AFE33A6CE9BA18831AD97E7C096BE6C2B0BFE64A ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
18:15:45.0401 0x2b44  RtHDVCpl - ok
18:15:45.0463 0x2b44  [ 01F0FC06366F80BF8964708042E0D9F5, 7DEA61576AC17C902B6041EE168BEF2AF2A43401829D2FF7E19747ED8D43B16D ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
18:15:45.0497 0x2b44  RtHDVBg_Dolby - ok
18:15:45.0559 0x2b44  [ 42663C9A625EA030F10746EBA60F8CCD, AF3BE4CC716526C2618E477437A298214804EADA7CB74A54BDEAF1759277CA5E ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
18:15:45.0597 0x2b44  NvBackend - ok
18:15:45.0604 0x2b44  [ 076B3EE149E01ADBAC2DC529554A3FD9, 4F65D9D2EE44829AA2264210112851E899165C2346489BEBE679C41420CF7D07 ] C:\Program Files\iTunes\iTunesHelper.exe
18:15:45.0610 0x2b44  iTunesHelper - ok
18:15:45.0614 0x2b44  [ 023DBDED84029A04B7A2AED160D262BA, E1D16468F3024439E145639A5D5A2656E9C43FD467963C4D29E6B5444FDE8F89 ] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
18:15:45.0621 0x2b44  BacKGround Agent - ok
18:15:45.0725 0x2b44  [ A1D2D4B24D82CBB5F089D8697DF6E07D, 7491D914EDD55143110E34A49353C575BFE604B5882DE3883EC6600496B7BA7B ] C:\Program Files (x86)\AVG\AVG2015\avgui.exe
18:15:45.0795 0x2b44  AVG_UI - ok
18:15:45.0870 0x2b44  [ E38338CC40DBFE16540EC767BF65E4A2, 8BA91F90E92F1F06129930ABB6A9280AF9C33B05D13BF91A3F1185A639D3DE78 ] C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe
18:15:45.0914 0x2b44  KeePass 2 PreLoad - ok
18:15:45.0940 0x2b44  [ 57C635C41750117D206C90DA9C599777, D5291ED79FC08217758FB526FC8CCC9D374B65B49446104D271C36B0C1298446 ] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
18:15:45.0976 0x2b44  BrMfcWnd - detected UnsignedFile.Multi.Generic ( 1 )
18:15:45.0976 0x2b44  Detect skipped due to KSN trusted
18:15:45.0976 0x2b44  BrMfcWnd - ok
18:15:45.0980 0x2b44  [ 4DE3EF07E0854547309C6B40235A9D44, F73D8E6D98583865D1C8DB728058D83C72A3908E21E04EF313FCB829C040A1EC ] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe
18:15:45.0986 0x2b44  ControlCenter3 - detected UnsignedFile.Multi.Generic ( 1 )
18:15:45.0986 0x2b44  Detect skipped due to KSN trusted
18:15:45.0986 0x2b44  ControlCenter3 - ok
18:15:46.0004 0x2b44  [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
18:15:46.0014 0x2b44  BCSSync - ok
18:15:46.0019 0x2b44  [ 79DE5E0997A94ED1D336B314005C4543, 8637F483CC2C1F181B23CC3A0BAB010D7B9F82661FFE6202BCECF1E6CA2F7EAA ] C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
18:15:46.0026 0x2b44  UIExec - ok
18:15:46.0035 0x2b44  [ 3A767D4CF95CAC1299554B89C4DE5920, E18D2BD562981A4BA54A677C8838ABE9056D1704EC2CC1A8B465390CAC9D1875 ] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
18:15:46.0044 0x2b44  KiesTrayAgent - ok
18:15:46.0127 0x2b44  [ 64093FC9034F0679D5E1F3875856FA7A, 32D8A5F55C02AEDE5A5EC51B96FAF4F71DA57D4FB8C48EB7AB3B2265D3B1AFA9 ] C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
18:15:46.0195 0x2b44  vProt - ok
18:15:46.0203 0x2b44  [ 7098B51BEEE94AFEF209C85E7CD1F0C2, 066B4BBC82DA9766A43B9E4A4E91BAB6F2A1697581190B1C94AEB08F0347706E ] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
18:15:46.0210 0x2b44  abDocsDllLoader - ok
18:15:46.0270 0x2b44  [ 276A125D428C4DAC2D71D0A1DCAE54FF, 2A29D0C221BBC4F383B58962EF78C2A88AA1246FBEE90BDF2E6FD211AD96CB20 ] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
18:15:46.0313 0x2b44  PMBVolumeWatcher - ok
18:15:46.0548 0x2b44  [ 503A50024A6BB16BFEE6C94C6F0EDB48, 5D13C01D1570853543D0F000D8A884033B672B8ADBB85A40DF5D4F6EE0E1DDBC ] C:\Users\habewi\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
18:15:46.0714 0x2b44  Pokki - ok
18:15:46.0756 0x2b44  [ 7EF9633A2409048FB40DBC2B83A42C0F, ADB04ED61B7626AD3696CCF8356AA26C251FCA35A1C7CB8A04F83401F04936D0 ] C:\Program Files (x86)\Samsung\Kies\Kies.exe
18:15:46.0784 0x2b44  KiesPreload - ok
18:15:46.0822 0x2b44  [ 4860117DA2E6E9B300144902629B09AC, B5C804C752FE18B2B10991AC93F75054C6D35540DF902D280006D45ADFA17391 ] C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
18:15:46.0854 0x2b44  Spotify Web Helper - ok
18:15:46.0857 0x2b44  Skype - ok
18:15:46.0918 0x2b44  [ E040BBE0E2802762071EAFF22CBF2DF5, BAAEB93E9C386DAF6835A55E86B82091CDF3A96D989AD4287953FC3DE4A5BCC3 ] C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
18:15:46.0969 0x2b44  AcerPortal - ok
18:15:46.0974 0x2b44  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
18:15:46.0974 0x2b44  AV detected via SS2: AVG AntiVirus Free Edition 2015, C:\Program Files (x86)\AVG\AVG2015\avgwsc.exe ( 15.0.0.5961 ), 0x41000 ( enabled : updated )
18:15:46.0975 0x2b44  Win FW state via NFP2: enabled
18:15:49.0310 0x2b44  ============================================================
18:15:49.0310 0x2b44  Scan finished
18:15:49.0310 0x2b44  ============================================================
18:15:49.0314 0x2b3c  Detected object count: 0
18:15:49.0314 0x2b3c  Actual detected object count: 0
18:37:24.0322 0x2954  Deinitialize success
         

Alt 07.06.2015, 15:26   #8
schrauber
/// the machine
/// TB-Ausbilder
 

Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



Sieht soweit gut aus. Pokki läuft mit Absicht?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 07.06.2015, 21:20   #9
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

Vielen Dank!!



Hallo Schrauber,

vielen Dank für die Hilfe und die beruhigende Nachricht.
Jetzt kann ich wieder besser schlafen.

War eigentlich ein Trojaner erkennbar?
Kann ich die Programme, wie TDSSKiller usw. wieder löschen?

Von Pokki habe ich noch nie etwas gehört. Wie soll ich damit umgehen?

mfg
gts1000

Alt 08.06.2015, 16:05   #10
schrauber
/// the machine
/// TB-Ausbilder
 

Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



Trojaner ist da keiner, nur eben diese Pokki Startmenü-Erweiterung, die gerne mal Adware mitbringt.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 08.06.2015, 16:56   #11
gts1000
 
Möglicherweise DHL-Trojaner eingefangen - Standard

Noch eine Frage



Hallo Schrauber,

ich glaube ich habe mich missverständlich ausgedrückt.
Ich wollte wissen, ob bei der Aktion mit TDSSKiller usw. ein Trojaner erkennbar war.

mfg
gtspilot

P.S: Pokki habe ich deinstalliert

Alt 09.06.2015, 10:04   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Möglicherweise DHL-Trojaner eingefangen - Standard

Möglicherweise DHL-Trojaner eingefangen



Nö, war nicht missverständlich, vielleicht aber meine Antwort

In den Logs war gar nix zu sehen
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Möglicherweise DHL-Trojaner eingefangen
.dll, adware, antivirus, avg, bonjour, browser, cid, defender, explorer, firefox, firefox 38.0.5, flash player, home, installation, launch, mozilla, omnibox, realtek, registry, secure search, security, siteadvisor, software, svchost.exe, trojaner, udp, usb, vtoolbarupdater, windows, wlan




Ähnliche Themen: Möglicherweise DHL-Trojaner eingefangen


  1. Ich habe mir möglicherweise einen Trojaner eingefangen beim öffnen eines ZIP Files als Mail Anhang
    Log-Analyse und Auswertung - 22.09.2015 (5)
  2. Ich habe mir möglicherweise einen Trojaner eingefangen beim öffnen eines ZIP Files als Mail Anhang
    Log-Analyse und Auswertung - 16.09.2015 (6)
  3. SpyHunter 4 - Unbekannte Objektausführung - möglicherweise Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 07.07.2015 (9)
  4. Habe möglicherweise einen Virus / Trojaner
    Plagegeister aller Art und deren Bekämpfung - 04.06.2015 (3)
  5. Möglicherweise Trojaner eingefangen...?
    Plagegeister aller Art und deren Bekämpfung - 15.12.2014 (15)
  6. Falsche Telekomrechnung geöffnet - Trojaner möglicherweise eingefangen
    Plagegeister aller Art und deren Bekämpfung - 24.11.2014 (16)
  7. Falsche Telekomrechnung geöffnet - Trojaner möglicherweise eingefangen
    Log-Analyse und Auswertung - 20.11.2014 (3)
  8. SpamMail Telekom, möglicherweise Trojaner im System
    Mülltonne - 04.06.2014 (2)
  9. Win7 PC Systhem extrem langsam - möglicherweise Trojaner
    Log-Analyse und Auswertung - 15.01.2014 (12)
  10. Möglicherweise etwas eingefangen?
    Log-Analyse und Auswertung - 14.05.2013 (2)
  11. IBUpdaterService - möglicherweise ein Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 20.01.2013 (1)
  12. Möglicherweise Trojaner eingefangen
    Plagegeister aller Art und deren Bekämpfung - 01.07.2011 (1)
  13. Möglicherweise Trojaner? http://www.searchqu.com/406
    Plagegeister aller Art und deren Bekämpfung - 09.06.2011 (26)
  14. Möglicherweise Trojaner über Java-Update etc.?
    Log-Analyse und Auswertung - 21.09.2010 (7)
  15. Möglicherweise Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 16.04.2010 (4)
  16. Möglicherweise Trojaner?
    Log-Analyse und Auswertung - 21.03.2009 (1)
  17. Möglicherweise DNSChanger eingefangen?
    Plagegeister aller Art und deren Bekämpfung - 20.03.2009 (15)

Zum Thema Möglicherweise DHL-Trojaner eingefangen - Hallo, heute habe ich mal wieder festgestellt, dass man Mails nicht nebenher bearbeiten sollte. Ich bin auf eine DHL-Mail reingefallen. Es wurde ein späterer Zustellungstermin angekündigt und da ich auf - Möglicherweise DHL-Trojaner eingefangen...
Archiv
Du betrachtest: Möglicherweise DHL-Trojaner eingefangen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.