|
Plagegeister aller Art und deren Bekämpfung: Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
29.02.2016, 10:57 | #1 |
| Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. Hallo, schon zum dritten Mal verschicke ich Mails wie: Hello! New message, please read <hxxp://repeeps.com/hands.php?p39l> office@floschwaiger.at Die Mails gehen an meine Kontakte. Sie werden immer ein Mal verschickt, danach war wieder über ein paar Wochen Pause. Erstes Mal war zu Silverster. Letztes Mal am Donnerstag 25.2. Meine Domain habe ich bei world4you.com und einen Business Goolge Account über welchen ich die Mails verschicke. Habe nach dem Versand die Kennwörter immer sofort geändert. Ich verwende Win10 und ein Android Handy. Am Computer habe ich Avira Antivirus Pro und am Smartphone Antivirus Free. Vielen Dank schon vorab. Beste Grüße Florian |
08.03.2016, 12:36 | #2 |
/// TB-Ausbilder /// Anleitungs-Guru | Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweis: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst. Los geht's: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff Posten in CODE-Tags: So gehts... Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
10.03.2016, 08:21 | #3 |
| FRST Log FRST Logfile:
__________________Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 durchgeführt von FloSchwaiger (Administrator) auf FLOSCHWAIGER-PC (10-03-2016 08:17:35) Gestartet von C:\Users\FloSchwaiger\Desktop Geladene Profile: FloSchwaiger (Verfügbare Profile: FloSchwaiger) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe (Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE () C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe (Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe (Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe (Lenovo.) C:\Windows\System32\TpShocks.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (SunplusIT, Inc.) C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe () C:\Program Files (x86)\Integrated Camera\Monitor.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\tpknrres.exe (Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe () C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\cammute.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Spotify Ltd) C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\onenoteim.exe () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [402344 2015-12-19] () HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [382248 2013-06-20] (Lenovo.) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo) HKLM\...\Run: [LMCSSTART1] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,InitSubsystemProcesses HKLM\...\Run: [LMCSSTART2] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libstartstub2.dll,ProxyStart HKLM\...\Run: [LMCSSTART3] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,SetupCamplusDrop HKLM\...\Run: [SynLenovoHelper] => C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe [163960 2015-11-29] (Synaptics) HKLM\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe [1714912 2015-11-19] (SunplusIT, Inc.) HKLM-x32\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\Integrated Camera\monitor.exe [1720184 2013-06-18] () HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-07-26] (Intel Corporation) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-08] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [14952 2016-02-26] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Spotify Web Helper] => C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848 2016-03-04] (Spotify Ltd) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-02-16] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-08-18] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation) Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-23] ShortcutTarget: Dropbox.lnk -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{136ec5be-a60d-450a-8e2f-ec53d9ec0f64}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{666d7d2c-bdfc-4160-a435-88396e764284}: [DhcpNameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [NameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [DhcpNameServer] 192.168.10.110 192.168.10.111 Internet Explorer: ================== HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> DefaultScope {A26A42BA-C910-4482-AA40-4442C9A99143} URL = SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {038B6C94-4C77-4E73-93E5-570EAE788FC3} URL = hxxps://at.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {A26A42BA-C910-4482-AA40-4442C9A99143} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-02-26] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-03] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-03] (Oracle Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-28] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-03] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-03] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-06-17] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-images.xml [2014-09-22] FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-maps.xml [2014-09-22] FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\yahoo-ysp.xml [2015-12-01] FF Extension: Live HTTP headers - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-05-29] FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\admin@proxy-listen.de.xpi [2015-05-29] FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\artur.dubovoy@gmail.com [2015-09-27] FF Extension: Avira Browser Safety - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\Extensions\abs@avira.com [2016-01-13] Chrome: ======= CHR Profile: C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-25] CHR Extension: (Google Docs) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-25] CHR Extension: (Google Drive) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-25] CHR Extension: (YouTube) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-25] CHR Extension: (Google-Suche) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-25] CHR Extension: (Google Tabellen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-25] CHR Extension: (Google Wallet) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-25] CHR Extension: (Google Mail) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-25] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-686292772-3706268183-491554591-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [560584 2015-01-21] (Lenovo Corporation) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG) S4 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [283296 2013-07-26] (Intel Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2809072 2016-01-20] (Microsoft Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [155448 2013-08-19] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182760 2013-04-15] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2016472 2015-01-23] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584664 2015-12-14] (LENOVO INCORPORATED.) R3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [626120 2015-01-21] (Lenovo Corporation) R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited) S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo) R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [469720 2015-01-09] () S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272864 2015-12-10] (Lenovo) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe [293128 2016-02-05] (McAfee, Inc.) R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-07-16] (Nitro PDF Software) R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-07-16] () R2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [59384 2013-07-16] (Lenovo Group Limited) R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [138232 2013-07-16] (Lenovo Group Limited) R2 SpeedupService; C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [24224 2016-02-26] (Avira Operations GmbH & Co. KG) S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [21536 2016-01-13] () R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-11-29] (Synaptics Incorporated) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [77832 2015-12-03] (Synaptics Incorporated) R2 valWbioSyncSvc; C:\Windows\system32\valWbioSyncSvc.exe [48136 2015-12-03] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-08] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-08] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-08] (Avira Operations GmbH & Co. KG) R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-05] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21048 2013-04-15] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21048 2013-04-15] () R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [101976 2013-04-24] (Intel Corporation) R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-04-15] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation) S3 MiraDispKmd; C:\Windows\System32\drivers\MiraDispKmd.sys [23552 2015-10-30] (Microsoft Corporation) R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3485696 2015-10-30] (Intel Corporation) R1 OMNISMI; C:\WINDOWS\SysWOW64\drivers\omnismi.sys [14776 2013-07-22] () R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [761600 2015-06-15] (Realsil Semiconductor Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-11-29] (Synaptics Incorporated) R1 SMIDriver; C:\Windows\system32\DRIVERS\smi.sys [28400 2015-12-03] (Windows (R) Win 7 DDK provider) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [695776 2015-11-19] (Sunplus) R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [206744 2013-06-20] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-03-07] () ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-10 08:17 - 2016-03-10 08:17 - 00030969 _____ C:\Users\FloSchwaiger\Desktop\FRST.txt 2016-03-10 08:17 - 2016-03-10 08:17 - 00000000 ____D C:\FRST 2016-03-10 08:17 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Desktop\FRST64.exe 2016-03-10 08:16 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Downloads\FRST64.exe 2016-03-02 09:43 - 2016-03-02 09:43 - 00186548 _____ C:\Users\FloSchwaiger\Desktop\30625_KVA11707_260216.pdf 2016-03-02 07:26 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-03-02 07:26 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 07475040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-03-02 07:26 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-03-02 07:26 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-03-02 07:26 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-03-02 07:26 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-03-02 07:26 - 2016-02-23 12:23 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-03-02 07:26 - 2016-02-23 12:22 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-03-02 07:26 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-03-02 07:26 - 2016-02-23 12:15 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-03-02 07:26 - 2016-02-23 12:09 - 01614176 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-03-02 07:26 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-03-02 07:26 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-03-02 07:26 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-03-02 07:26 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-03-02 07:26 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-03-02 07:26 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll 2016-03-02 07:26 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-03-02 07:26 - 2016-02-23 11:21 - 06606568 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-03-02 07:26 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-03-02 07:26 - 2016-02-23 10:45 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-03-02 07:26 - 2016-02-23 10:45 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-03-02 07:26 - 2016-02-23 10:45 - 00259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll 2016-03-02 07:26 - 2016-02-23 10:44 - 00640984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-03-02 07:26 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2016-03-02 07:26 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-03-02 07:26 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-03-02 07:26 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-03-02 07:26 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-03-02 07:26 - 2016-02-23 10:26 - 05241984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-03-02 07:26 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2016-03-02 07:26 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys 2016-03-02 07:26 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-03-02 07:26 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2016-03-02 07:26 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-03-02 07:26 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-03-02 07:26 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-03-02 07:26 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2016-03-02 07:26 - 2016-02-23 09:55 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll 2016-03-02 07:26 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-03-02 07:26 - 2016-02-23 09:54 - 00539256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2016-03-02 07:26 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-03-02 07:26 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2016-03-02 07:26 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-03-02 07:26 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-03-02 07:26 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2016-03-02 07:26 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-03-02 07:26 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2016-03-02 07:26 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-03-02 07:26 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2016-03-02 07:26 - 2016-02-23 09:30 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2016-03-02 07:26 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-03-02 07:26 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-03-02 07:26 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-03-02 07:26 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-03-02 07:26 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-03-02 07:26 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-03-02 07:26 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-03-02 07:26 - 2016-02-23 09:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2016-03-02 07:26 - 2016-02-23 09:13 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-03-02 07:26 - 2016-02-23 09:13 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-03-02 07:26 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-03-02 07:26 - 2016-02-23 09:11 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2016-03-02 07:26 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-03-02 07:26 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2016-03-02 07:26 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-03-02 07:26 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 01848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-03-02 07:26 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-03-02 07:26 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-03-02 07:26 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-03-02 07:26 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-03-02 07:26 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-03-02 07:26 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-03-02 07:26 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-03-02 07:26 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll 2016-03-02 07:26 - 2016-02-23 08:54 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll 2016-03-02 07:26 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-03-02 07:26 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2016-03-02 07:26 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-03-02 07:26 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-03-02 07:26 - 2016-02-23 08:47 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-03-02 07:26 - 2016-02-23 08:41 - 03594240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-03-02 07:26 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-03-02 07:26 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-03-02 07:26 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2016-03-02 07:26 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-03-02 07:26 - 2016-02-23 08:31 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-03-02 07:26 - 2016-02-23 08:29 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2016-03-02 07:26 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-03-02 07:26 - 2016-02-23 08:26 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-03-02 07:26 - 2016-02-23 08:26 - 01498112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2016-03-02 07:26 - 2016-02-23 08:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-03-02 07:26 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-03-02 07:26 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2016-03-02 07:26 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-03-02 07:26 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-03-02 07:26 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-03-02 07:26 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-03-02 07:26 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-03-02 07:26 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-03-02 07:26 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-03-02 07:26 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-03-02 07:26 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-03-02 07:26 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-03-02 07:26 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-03-02 07:26 - 2016-02-23 07:50 - 22396416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-03-02 07:26 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-03-02 07:26 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-03-02 07:26 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-03-02 07:26 - 2016-02-23 07:40 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-03-02 07:26 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-03-02 07:26 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 19341312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 18680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-03-02 07:26 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-03-02 07:26 - 2016-02-23 07:33 - 14254080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-03-02 07:26 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-03-02 07:26 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-03-02 07:26 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-03-02 07:26 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-03-02 07:26 - 2016-02-23 07:26 - 12587520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-03-02 07:26 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-03-02 07:26 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-03-02 07:26 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-03-02 07:26 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2016-03-02 07:26 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2016-03-02 07:26 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-03-02 07:26 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-03-02 07:26 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-03-02 07:25 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2016-03-02 07:25 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-03-02 07:25 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-03-02 07:25 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2016-03-02 07:25 - 2016-02-23 10:49 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-03-02 07:25 - 2016-02-23 10:45 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-03-02 07:25 - 2016-02-23 10:44 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2016-03-02 07:25 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-03-02 07:25 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-03-02 07:25 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-03-02 07:25 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2016-03-02 07:25 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-03-02 07:25 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-03-02 07:25 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-03-02 07:25 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys 2016-03-02 07:25 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-03-02 07:25 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-03-02 07:25 - 2016-02-23 09:58 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-03-02 07:25 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2016-03-02 07:25 - 2016-02-23 09:54 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2016-03-02 07:25 - 2016-02-23 09:54 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2016-03-02 07:25 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2016-03-02 07:25 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-03-02 07:25 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-03-02 07:25 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll 2016-03-02 07:25 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2016-03-02 07:25 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-03-02 07:25 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-03-02 07:25 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-03-02 07:25 - 2016-02-23 09:28 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll 2016-03-02 07:25 - 2016-02-23 09:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2016-03-02 07:25 - 2016-02-23 09:25 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-03-02 07:25 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-03-02 07:25 - 2016-02-23 09:22 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2016-03-02 07:25 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-03-02 07:25 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-03-02 07:25 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-03-02 07:25 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-03-02 07:25 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2016-03-02 07:25 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll 2016-03-02 07:25 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll 2016-03-02 07:25 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-03-02 07:25 - 2016-02-23 08:37 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2016-03-02 07:25 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2016-03-02 07:25 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-03-02 07:25 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-03-02 07:25 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2016-03-02 07:25 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2016-03-02 07:25 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-03-01 23:04 - 2016-03-07 08:26 - 00000000 ____D C:\Users\Public\Speedup Sessions 2016-03-01 21:01 - 2016-03-01 21:01 - 00185710 _____ C:\Users\FloSchwaiger\Desktop\30626_KVA11699_020216.pdf 2016-02-29 10:09 - 2016-02-29 10:09 - 00418688 _____ C:\Users\FloSchwaiger\Desktop\interieur ticket.pdf 2016-02-29 09:59 - 2016-02-29 09:59 - 00001182 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-02-29 09:58 - 2016-02-29 09:59 - 22908888 _____ (Malwarebytes ) C:\Users\FloSchwaiger\Downloads\mbam-setup-2.2.0.1024.exe 2016-02-29 08:51 - 2016-02-29 09:10 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2016-02-29 08:51 - 2016-02-29 09:07 - 00000000 ____D C:\ProgramData\TEMP 2016-02-29 08:50 - 2016-02-29 08:50 - 01470472 _____ C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe 2016-02-23 08:22 - 2016-02-23 08:22 - 00114883 _____ C:\Users\FloSchwaiger\Desktop\Aufkleber für die Sendung.pdf 2016-02-23 08:21 - 2016-02-23 08:21 - 00000835 _____ C:\Users\FloSchwaiger\Desktop\Bilder - Verknüpfung (2).lnk 2016-02-17 13:43 - 2016-03-08 18:31 - 00011171 _____ C:\Users\FloSchwaiger\Desktop\Stunden Februar.xlsx 2016-02-16 07:08 - 2016-02-16 07:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2016-02-10 09:19 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-02-10 09:19 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-02-10 09:19 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-02-10 09:19 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-02-10 09:19 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-02-10 09:19 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-02-10 09:19 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-02-10 09:19 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe 2016-02-10 09:19 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-02-10 09:19 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-02-10 09:19 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-02-10 09:19 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-02-10 09:19 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2016-02-10 09:19 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-02-10 09:19 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll 2016-02-10 09:19 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll 2016-02-10 09:19 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll 2016-02-10 09:19 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll 2016-02-10 09:19 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-02-10 09:19 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll 2016-02-10 09:19 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll 2016-02-10 09:19 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-02-10 09:19 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll 2016-02-10 09:19 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-02-10 09:19 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll 2016-02-10 09:19 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-02-10 09:19 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-02-10 09:19 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-02-10 09:19 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-02-10 09:19 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll 2016-02-10 09:19 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-02-10 09:19 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-02-10 09:19 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-02-10 09:19 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll 2016-02-10 09:05 - 2016-02-10 09:08 - 222682609 _____ C:\Users\FloSchwaiger\Downloads\wetransfer-209b5d.zip 2016-02-09 11:25 - 2016-02-09 11:29 - 00056071 _____ C:\Users\FloSchwaiger\Desktop\Milka Material Lightcube_March 2016.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-10 08:08 - 2014-06-19 10:21 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Outlook-Dateien 2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-03-10 08:00 - 2014-06-20 16:37 - 00004182 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A93769FB-ED1F-4972-95FD-2144236F9649} 2016-03-10 07:58 - 2015-11-23 08:07 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-03-09 19:54 - 2014-07-01 13:38 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Spotify 2016-03-09 19:54 - 2014-07-01 13:36 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Spotify 2016-03-09 19:50 - 2014-06-17 20:58 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-03-09 19:46 - 2014-06-17 14:56 - 00001150 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-09 16:20 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Nitro PDF 2016-03-09 14:29 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-03-09 13:48 - 2014-06-17 21:20 - 00000000 ___RD C:\Users\FloSchwaiger\Google Drive 2016-03-09 12:46 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Packages 2016-03-09 12:32 - 2014-06-18 02:06 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-03-09 12:30 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-03-09 12:30 - 2014-06-18 02:06 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-03-09 08:26 - 2015-10-30 19:35 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat 2016-03-09 08:26 - 2015-10-30 19:35 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat 2016-03-09 08:26 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF 2016-03-09 08:26 - 2015-08-18 14:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-03-09 07:46 - 2014-06-17 14:56 - 00001146 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-08 11:55 - 2016-01-13 17:34 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-03-08 11:55 - 2016-01-13 17:34 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-03-08 11:55 - 2016-01-13 17:34 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-03-08 11:55 - 2016-01-13 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-03-07 13:23 - 2015-11-03 20:08 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Skype 2016-03-07 13:20 - 2013-09-29 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-03-07 13:11 - 2015-12-07 03:04 - 00000000 ____D C:\Users\FloSchwaiger 2016-03-07 13:11 - 2015-12-07 03:02 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-03-07 13:11 - 2014-06-19 00:27 - 00000000 __SHD C:\Users\FloSchwaiger\IntelGraphicsProfiles 2016-03-07 11:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache 2016-03-07 10:50 - 2016-01-26 07:32 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp 2016-03-07 10:50 - 2015-12-07 05:33 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-03-07 10:50 - 2015-04-03 07:53 - 00000000 ____D C:\ProgramData\Synaptics 2016-03-07 10:50 - 2013-10-30 19:40 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys 2016-03-07 08:25 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-03-03 20:53 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-03-03 10:41 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Oracle 2016-03-03 10:29 - 2015-10-28 16:40 - 00000000 ____D C:\Users\FloSchwaiger\.oracle_jre_usage 2016-03-03 10:29 - 2014-07-24 17:55 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\Program Files (x86)\Java 2016-03-03 08:47 - 2015-12-07 03:01 - 00231688 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-03-03 08:47 - 2013-10-30 19:37 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-03-03 08:46 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Portable Devices 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-03-01 23:04 - 2016-01-13 17:36 - 00003430 _____ C:\WINDOWS\System32\Tasks\Avira System Speedup Tray 2016-03-01 23:04 - 2016-01-13 17:36 - 00001299 _____ C:\Users\Public\Desktop\Avira System Speedup.lnk 2016-03-01 23:04 - 2016-01-13 17:21 - 00000000 ____D C:\Program Files (x86)\Avira 2016-03-01 22:59 - 2016-01-13 17:21 - 00001222 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2016-03-01 22:59 - 2013-09-29 17:15 - 00000000 ____D C:\ProgramData\Package Cache 2016-03-01 20:35 - 2014-06-18 15:51 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Flo Schwaiger 2016-02-29 10:00 - 2016-01-13 17:52 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-02-28 14:53 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-02-28 14:52 - 2014-06-17 12:16 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-02-20 23:50 - 2014-10-07 07:52 - 00000000 ____D C:\Users\FloSchwaiger\Desktop\Milka 2016-02-19 22:47 - 2015-02-25 18:17 - 00002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-02-19 22:47 - 2015-02-25 18:17 - 00002263 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-16 07:08 - 2015-11-23 07:47 - 00000000 ____D C:\Program Files\McAfee Security Scan 2016-02-16 07:08 - 2014-12-12 08:11 - 00002020 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2016-02-13 10:48 - 2015-08-18 16:39 - 00002461 _____ C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-02-13 10:48 - 2014-06-19 00:28 - 00000000 __RDO C:\Users\FloSchwaiger\OneDrive 2016-02-11 14:15 - 2015-06-04 12:41 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\ElevatedDiagnostics ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2014-06-17 11:57 - 2014-06-27 06:36 - 0003817 _____ () C:\Users\FloSchwaiger\AppData\Roaming\AbsoluteReminder.xml 2014-06-17 11:56 - 2014-06-21 12:56 - 0000379 _____ () C:\Users\FloSchwaiger\AppData\Local\RegisteredPackageInformation.xml 2015-04-25 17:16 - 2015-04-25 17:16 - 0353118 _____ () C:\Users\FloSchwaiger\AppData\Local\SquareClock.Production_HBMV1Icon.ico 2015-12-07 03:02 - 2015-12-07 03:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\FloSchwaiger\AppData\Local\Temp\avgnt.exe C:\Users\FloSchwaiger\AppData\Local\Temp\jre-8u73-windows-au.exe C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe C:\Users\FloSchwaiger\AppData\Local\Temp\photosync_setup_en_307.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-03-09 07:48 ==================== Ende von FRST.txt ============================ |
10.03.2016, 08:23 | #4 |
| FRST LogCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 durchgeführt von FloSchwaiger (Administrator) auf FLOSCHWAIGER-PC (10-03-2016 08:17:35) Gestartet von C:\Users\FloSchwaiger\Desktop Geladene Profile: FloSchwaiger (Verfügbare Profile: FloSchwaiger) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe (Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE () C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe (Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe (Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe (Lenovo.) C:\Windows\System32\TpShocks.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (SunplusIT, Inc.) C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe () C:\Program Files (x86)\Integrated Camera\Monitor.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\tpknrres.exe (Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe () C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\cammute.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Spotify Ltd) C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\onenoteim.exe () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [402344 2015-12-19] () HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [382248 2013-06-20] (Lenovo.) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo) HKLM\...\Run: [LMCSSTART1] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,InitSubsystemProcesses HKLM\...\Run: [LMCSSTART2] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libstartstub2.dll,ProxyStart HKLM\...\Run: [LMCSSTART3] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,SetupCamplusDrop HKLM\...\Run: [SynLenovoHelper] => C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe [163960 2015-11-29] (Synaptics) HKLM\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe [1714912 2015-11-19] (SunplusIT, Inc.) HKLM-x32\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\Integrated Camera\monitor.exe [1720184 2013-06-18] () HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-07-26] (Intel Corporation) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-08] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [14952 2016-02-26] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Spotify Web Helper] => C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848 2016-03-04] (Spotify Ltd) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-02-16] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-08-18] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation) Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-23] ShortcutTarget: Dropbox.lnk -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{136ec5be-a60d-450a-8e2f-ec53d9ec0f64}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{666d7d2c-bdfc-4160-a435-88396e764284}: [DhcpNameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [NameServer] 192.168.10.110 192.168.10.111 Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [DhcpNameServer] 192.168.10.110 192.168.10.111 Internet Explorer: ================== HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> DefaultScope {A26A42BA-C910-4482-AA40-4442C9A99143} URL = SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {038B6C94-4C77-4E73-93E5-570EAE788FC3} URL = hxxps://at.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {A26A42BA-C910-4482-AA40-4442C9A99143} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-02-26] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-03] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-03] (Oracle Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-28] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-03] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-03] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-06-17] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-images.xml [2014-09-22] FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-maps.xml [2014-09-22] FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\yahoo-ysp.xml [2015-12-01] FF Extension: Live HTTP headers - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-05-29] FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\admin@proxy-listen.de.xpi [2015-05-29] FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\artur.dubovoy@gmail.com [2015-09-27] FF Extension: Avira Browser Safety - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\Extensions\abs@avira.com [2016-01-13] Chrome: ======= CHR Profile: C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-25] CHR Extension: (Google Docs) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-25] CHR Extension: (Google Drive) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-25] CHR Extension: (YouTube) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-25] CHR Extension: (Google-Suche) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-25] CHR Extension: (Google Tabellen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-25] CHR Extension: (Google Wallet) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-25] CHR Extension: (Google Mail) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-25] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-686292772-3706268183-491554591-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-08] (Avira Operations GmbH & Co. KG) R2 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [560584 2015-01-21] (Lenovo Corporation) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG) S4 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [283296 2013-07-26] (Intel Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2809072 2016-01-20] (Microsoft Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [155448 2013-08-19] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182760 2013-04-15] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2016472 2015-01-23] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584664 2015-12-14] (LENOVO INCORPORATED.) R3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [626120 2015-01-21] (Lenovo Corporation) R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited) S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo) R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [469720 2015-01-09] () S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272864 2015-12-10] (Lenovo) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe [293128 2016-02-05] (McAfee, Inc.) R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-07-16] (Nitro PDF Software) R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-07-16] () R2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [59384 2013-07-16] (Lenovo Group Limited) R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [138232 2013-07-16] (Lenovo Group Limited) R2 SpeedupService; C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [24224 2016-02-26] (Avira Operations GmbH & Co. KG) S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [21536 2016-01-13] () R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-11-29] (Synaptics Incorporated) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [77832 2015-12-03] (Synaptics Incorporated) R2 valWbioSyncSvc; C:\Windows\system32\valWbioSyncSvc.exe [48136 2015-12-03] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-08] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-08] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-08] (Avira Operations GmbH & Co. KG) R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-05] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21048 2013-04-15] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21048 2013-04-15] () R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [101976 2013-04-24] (Intel Corporation) R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-04-15] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation) S3 MiraDispKmd; C:\Windows\System32\drivers\MiraDispKmd.sys [23552 2015-10-30] (Microsoft Corporation) R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3485696 2015-10-30] (Intel Corporation) R1 OMNISMI; C:\WINDOWS\SysWOW64\drivers\omnismi.sys [14776 2013-07-22] () R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [761600 2015-06-15] (Realsil Semiconductor Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-11-29] (Synaptics Incorporated) R1 SMIDriver; C:\Windows\system32\DRIVERS\smi.sys [28400 2015-12-03] (Windows (R) Win 7 DDK provider) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [695776 2015-11-19] (Sunplus) R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [206744 2013-06-20] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-03-07] () ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-10 08:17 - 2016-03-10 08:17 - 00030969 _____ C:\Users\FloSchwaiger\Desktop\FRST.txt 2016-03-10 08:17 - 2016-03-10 08:17 - 00000000 ____D C:\FRST 2016-03-10 08:17 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Desktop\FRST64.exe 2016-03-10 08:16 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Downloads\FRST64.exe 2016-03-02 09:43 - 2016-03-02 09:43 - 00186548 _____ C:\Users\FloSchwaiger\Desktop\30625_KVA11707_260216.pdf 2016-03-02 07:26 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-03-02 07:26 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 07475040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-03-02 07:26 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-03-02 07:26 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-03-02 07:26 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-03-02 07:26 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-03-02 07:26 - 2016-02-23 12:23 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-03-02 07:26 - 2016-02-23 12:22 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-03-02 07:26 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-03-02 07:26 - 2016-02-23 12:15 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-03-02 07:26 - 2016-02-23 12:09 - 01614176 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-03-02 07:26 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-03-02 07:26 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-03-02 07:26 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-03-02 07:26 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-03-02 07:26 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-03-02 07:26 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-03-02 07:26 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-03-02 07:26 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll 2016-03-02 07:26 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-03-02 07:26 - 2016-02-23 11:21 - 06606568 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-03-02 07:26 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-03-02 07:26 - 2016-02-23 10:45 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-03-02 07:26 - 2016-02-23 10:45 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-03-02 07:26 - 2016-02-23 10:45 - 00259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll 2016-03-02 07:26 - 2016-02-23 10:44 - 00640984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-03-02 07:26 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-03-02 07:26 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2016-03-02 07:26 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-03-02 07:26 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-03-02 07:26 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-03-02 07:26 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-03-02 07:26 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-03-02 07:26 - 2016-02-23 10:26 - 05241984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-03-02 07:26 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2016-03-02 07:26 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys 2016-03-02 07:26 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-03-02 07:26 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2016-03-02 07:26 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-03-02 07:26 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-03-02 07:26 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-03-02 07:26 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2016-03-02 07:26 - 2016-02-23 09:55 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll 2016-03-02 07:26 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-03-02 07:26 - 2016-02-23 09:54 - 00539256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2016-03-02 07:26 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-03-02 07:26 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2016-03-02 07:26 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-03-02 07:26 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-03-02 07:26 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2016-03-02 07:26 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-03-02 07:26 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-03-02 07:26 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2016-03-02 07:26 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-03-02 07:26 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2016-03-02 07:26 - 2016-02-23 09:30 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2016-03-02 07:26 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-03-02 07:26 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-03-02 07:26 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-03-02 07:26 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-03-02 07:26 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-03-02 07:26 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-03-02 07:26 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-03-02 07:26 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-03-02 07:26 - 2016-02-23 09:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2016-03-02 07:26 - 2016-02-23 09:13 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-03-02 07:26 - 2016-02-23 09:13 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-03-02 07:26 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-03-02 07:26 - 2016-02-23 09:11 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2016-03-02 07:26 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-03-02 07:26 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2016-03-02 07:26 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-03-02 07:26 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-03-02 07:26 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 01848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-03-02 07:26 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-03-02 07:26 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-03-02 07:26 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-03-02 07:26 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-03-02 07:26 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-03-02 07:26 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-03-02 07:26 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-03-02 07:26 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-03-02 07:26 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-03-02 07:26 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll 2016-03-02 07:26 - 2016-02-23 08:54 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll 2016-03-02 07:26 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-03-02 07:26 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2016-03-02 07:26 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-03-02 07:26 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-03-02 07:26 - 2016-02-23 08:47 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-03-02 07:26 - 2016-02-23 08:41 - 03594240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-03-02 07:26 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-03-02 07:26 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-03-02 07:26 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2016-03-02 07:26 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2016-03-02 07:26 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-03-02 07:26 - 2016-02-23 08:31 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-03-02 07:26 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-03-02 07:26 - 2016-02-23 08:29 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2016-03-02 07:26 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-03-02 07:26 - 2016-02-23 08:26 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-03-02 07:26 - 2016-02-23 08:26 - 01498112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2016-03-02 07:26 - 2016-02-23 08:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-03-02 07:26 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-03-02 07:26 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-03-02 07:26 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2016-03-02 07:26 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-03-02 07:26 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-03-02 07:26 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-03-02 07:26 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-03-02 07:26 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-03-02 07:26 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-03-02 07:26 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-03-02 07:26 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-03-02 07:26 - 2016-02-23 07:55 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-03-02 07:26 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-03-02 07:26 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-03-02 07:26 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-03-02 07:26 - 2016-02-23 07:50 - 22396416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-03-02 07:26 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-03-02 07:26 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-03-02 07:26 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-03-02 07:26 - 2016-02-23 07:40 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-03-02 07:26 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-03-02 07:26 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 19341312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 18680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-03-02 07:26 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-03-02 07:26 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-03-02 07:26 - 2016-02-23 07:33 - 14254080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-03-02 07:26 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-03-02 07:26 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-03-02 07:26 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-03-02 07:26 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-03-02 07:26 - 2016-02-23 07:26 - 12587520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-03-02 07:26 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-03-02 07:26 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-03-02 07:26 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-03-02 07:26 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2016-03-02 07:26 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2016-03-02 07:26 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-03-02 07:26 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-03-02 07:26 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-03-02 07:25 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2016-03-02 07:25 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-03-02 07:25 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-03-02 07:25 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2016-03-02 07:25 - 2016-02-23 10:49 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-03-02 07:25 - 2016-02-23 10:45 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-03-02 07:25 - 2016-02-23 10:44 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2016-03-02 07:25 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-03-02 07:25 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-03-02 07:25 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-03-02 07:25 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2016-03-02 07:25 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-03-02 07:25 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-03-02 07:25 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-03-02 07:25 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys 2016-03-02 07:25 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-03-02 07:25 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-03-02 07:25 - 2016-02-23 09:58 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-03-02 07:25 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2016-03-02 07:25 - 2016-02-23 09:54 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2016-03-02 07:25 - 2016-02-23 09:54 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2016-03-02 07:25 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2016-03-02 07:25 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-03-02 07:25 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-03-02 07:25 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll 2016-03-02 07:25 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2016-03-02 07:25 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-03-02 07:25 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-03-02 07:25 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-03-02 07:25 - 2016-02-23 09:28 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll 2016-03-02 07:25 - 2016-02-23 09:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2016-03-02 07:25 - 2016-02-23 09:25 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-03-02 07:25 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-03-02 07:25 - 2016-02-23 09:22 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2016-03-02 07:25 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-03-02 07:25 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-03-02 07:25 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-03-02 07:25 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-03-02 07:25 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2016-03-02 07:25 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll 2016-03-02 07:25 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll 2016-03-02 07:25 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-03-02 07:25 - 2016-02-23 08:37 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2016-03-02 07:25 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2016-03-02 07:25 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-03-02 07:25 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-03-02 07:25 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2016-03-02 07:25 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2016-03-02 07:25 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-03-01 23:04 - 2016-03-07 08:26 - 00000000 ____D C:\Users\Public\Speedup Sessions 2016-03-01 21:01 - 2016-03-01 21:01 - 00185710 _____ C:\Users\FloSchwaiger\Desktop\30626_KVA11699_020216.pdf 2016-02-29 10:09 - 2016-02-29 10:09 - 00418688 _____ C:\Users\FloSchwaiger\Desktop\interieur ticket.pdf 2016-02-29 09:59 - 2016-02-29 09:59 - 00001182 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-02-29 09:58 - 2016-02-29 09:59 - 22908888 _____ (Malwarebytes ) C:\Users\FloSchwaiger\Downloads\mbam-setup-2.2.0.1024.exe 2016-02-29 08:51 - 2016-02-29 09:10 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2016-02-29 08:51 - 2016-02-29 09:07 - 00000000 ____D C:\ProgramData\TEMP 2016-02-29 08:50 - 2016-02-29 08:50 - 01470472 _____ C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe 2016-02-23 08:22 - 2016-02-23 08:22 - 00114883 _____ C:\Users\FloSchwaiger\Desktop\Aufkleber für die Sendung.pdf 2016-02-23 08:21 - 2016-02-23 08:21 - 00000835 _____ C:\Users\FloSchwaiger\Desktop\Bilder - Verknüpfung (2).lnk 2016-02-17 13:43 - 2016-03-08 18:31 - 00011171 _____ C:\Users\FloSchwaiger\Desktop\Stunden Februar.xlsx 2016-02-16 07:08 - 2016-02-16 07:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2016-02-10 09:19 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-02-10 09:19 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-02-10 09:19 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-02-10 09:19 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-02-10 09:19 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-02-10 09:19 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-02-10 09:19 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-02-10 09:19 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe 2016-02-10 09:19 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-02-10 09:19 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-02-10 09:19 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-02-10 09:19 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-02-10 09:19 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2016-02-10 09:19 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-02-10 09:19 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll 2016-02-10 09:19 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll 2016-02-10 09:19 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll 2016-02-10 09:19 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll 2016-02-10 09:19 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-02-10 09:19 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll 2016-02-10 09:19 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll 2016-02-10 09:19 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-02-10 09:19 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll 2016-02-10 09:19 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-02-10 09:19 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll 2016-02-10 09:19 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-02-10 09:19 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-02-10 09:19 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-02-10 09:19 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-02-10 09:19 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll 2016-02-10 09:19 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-02-10 09:19 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-02-10 09:19 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-02-10 09:19 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll 2016-02-10 09:05 - 2016-02-10 09:08 - 222682609 _____ C:\Users\FloSchwaiger\Downloads\wetransfer-209b5d.zip 2016-02-09 11:25 - 2016-02-09 11:29 - 00056071 _____ C:\Users\FloSchwaiger\Desktop\Milka Material Lightcube_March 2016.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-10 08:08 - 2014-06-19 10:21 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Outlook-Dateien 2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-03-10 08:00 - 2014-06-20 16:37 - 00004182 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A93769FB-ED1F-4972-95FD-2144236F9649} 2016-03-10 07:58 - 2015-11-23 08:07 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-03-09 19:54 - 2014-07-01 13:38 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Spotify 2016-03-09 19:54 - 2014-07-01 13:36 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Spotify 2016-03-09 19:50 - 2014-06-17 20:58 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-03-09 19:46 - 2014-06-17 14:56 - 00001150 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-09 16:20 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Nitro PDF 2016-03-09 14:29 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-03-09 13:48 - 2014-06-17 21:20 - 00000000 ___RD C:\Users\FloSchwaiger\Google Drive 2016-03-09 12:46 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Packages 2016-03-09 12:32 - 2014-06-18 02:06 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-03-09 12:30 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-03-09 12:30 - 2014-06-18 02:06 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-03-09 08:26 - 2015-10-30 19:35 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat 2016-03-09 08:26 - 2015-10-30 19:35 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat 2016-03-09 08:26 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF 2016-03-09 08:26 - 2015-08-18 14:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-03-09 07:46 - 2014-06-17 14:56 - 00001146 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-08 11:55 - 2016-01-13 17:34 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-03-08 11:55 - 2016-01-13 17:34 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-03-08 11:55 - 2016-01-13 17:34 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-03-08 11:55 - 2016-01-13 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-03-07 13:23 - 2015-11-03 20:08 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Skype 2016-03-07 13:20 - 2013-09-29 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-03-07 13:11 - 2015-12-07 03:04 - 00000000 ____D C:\Users\FloSchwaiger 2016-03-07 13:11 - 2015-12-07 03:02 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-03-07 13:11 - 2014-06-19 00:27 - 00000000 __SHD C:\Users\FloSchwaiger\IntelGraphicsProfiles 2016-03-07 11:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache 2016-03-07 10:50 - 2016-01-26 07:32 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp 2016-03-07 10:50 - 2015-12-07 05:33 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-03-07 10:50 - 2015-04-03 07:53 - 00000000 ____D C:\ProgramData\Synaptics 2016-03-07 10:50 - 2013-10-30 19:40 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys 2016-03-07 08:25 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-03-03 20:53 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-03-03 10:41 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Oracle 2016-03-03 10:29 - 2015-10-28 16:40 - 00000000 ____D C:\Users\FloSchwaiger\.oracle_jre_usage 2016-03-03 10:29 - 2014-07-24 17:55 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\Program Files (x86)\Java 2016-03-03 08:47 - 2015-12-07 03:01 - 00231688 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-03-03 08:47 - 2013-10-30 19:37 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-03-03 08:46 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Portable Devices 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-03-01 23:04 - 2016-01-13 17:36 - 00003430 _____ C:\WINDOWS\System32\Tasks\Avira System Speedup Tray 2016-03-01 23:04 - 2016-01-13 17:36 - 00001299 _____ C:\Users\Public\Desktop\Avira System Speedup.lnk 2016-03-01 23:04 - 2016-01-13 17:21 - 00000000 ____D C:\Program Files (x86)\Avira 2016-03-01 22:59 - 2016-01-13 17:21 - 00001222 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2016-03-01 22:59 - 2013-09-29 17:15 - 00000000 ____D C:\ProgramData\Package Cache 2016-03-01 20:35 - 2014-06-18 15:51 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Flo Schwaiger 2016-02-29 10:00 - 2016-01-13 17:52 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-02-28 14:53 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-02-28 14:52 - 2014-06-17 12:16 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-02-20 23:50 - 2014-10-07 07:52 - 00000000 ____D C:\Users\FloSchwaiger\Desktop\Milka 2016-02-19 22:47 - 2015-02-25 18:17 - 00002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-02-19 22:47 - 2015-02-25 18:17 - 00002263 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-16 07:08 - 2015-11-23 07:47 - 00000000 ____D C:\Program Files\McAfee Security Scan 2016-02-16 07:08 - 2014-12-12 08:11 - 00002020 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2016-02-13 10:48 - 2015-08-18 16:39 - 00002461 _____ C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-02-13 10:48 - 2014-06-19 00:28 - 00000000 __RDO C:\Users\FloSchwaiger\OneDrive 2016-02-11 14:15 - 2015-06-04 12:41 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\ElevatedDiagnostics ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2014-06-17 11:57 - 2014-06-27 06:36 - 0003817 _____ () C:\Users\FloSchwaiger\AppData\Roaming\AbsoluteReminder.xml 2014-06-17 11:56 - 2014-06-21 12:56 - 0000379 _____ () C:\Users\FloSchwaiger\AppData\Local\RegisteredPackageInformation.xml 2015-04-25 17:16 - 2015-04-25 17:16 - 0353118 _____ () C:\Users\FloSchwaiger\AppData\Local\SquareClock.Production_HBMV1Icon.ico 2015-12-07 03:02 - 2015-12-07 03:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\FloSchwaiger\AppData\Local\Temp\avgnt.exe C:\Users\FloSchwaiger\AppData\Local\Temp\jre-8u73-windows-au.exe C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe C:\Users\FloSchwaiger\AppData\Local\Temp\photosync_setup_en_307.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-03-09 07:48 ==================== Ende von FRST.txt ============================ |
10.03.2016, 08:25 | #5 |
| Addition.txtCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 durchgeführt von FloSchwaiger (2016-03-10 08:18:00) Gestartet von C:\Users\FloSchwaiger\Desktop Windows 10 Pro Version 1511 (X64) (2015-12-07 04:56:48) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-686292772-3706268183-491554591-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-686292772-3706268183-491554591-503 - Limited - Disabled) FloSchwaiger (S-1-5-21-686292772-3706268183-491554591-1001 - Administrator - Enabled) => C:\Users\FloSchwaiger Gast (S-1-5-21-686292772-3706268183-491554591-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-686292772-3706268183-491554591-1005 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.33 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0933-000001000000}) (Version: 9.33.00.0 - Igor Pavlov) Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.3.0.1 - Absolute Software) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) ArielVision (HKLM-x32\...\{21C53CDC-871C-49CE-800E-C6F21ECBA4E4}) (Version: 2.00.0000 - ) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{3b87484e-d70b-4b4f-ad59-2ae89571e2cf}) (Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Hidden Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 2.1.13.1163 - Avira Operations GmbH & Co. KG) AZURO office 5.3 Version 5.3 (HKLM-x32\...\{614E1B7B-554C-4F51-9932-D529F56DC548}_is1) (Version: 5.3 - tgmedia) bob internet (HKLM-x32\...\bob internet) (Version: 1.16.1.0 - A1 Telekom Austria AG) bob internet (x32 Version: 1.16.1.0 - A1 Telekom Austria AG) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Brighter3D (HKLM-x32\...\Brighter3D) (Version: 2.5.0 - Brighter3D Software Development Ltd.) Cliqz (HKLM-x32\...\{5A0C0737-6AFE-4DC6-A8B4-6DFE509ACD75}_is1) (Version: 0.5.22 - Cliqz.com) Content Manager (HKLM-x32\...\Content Manager) (Version: 3.18.4.510611 - NNG Llc.) Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden Dependency Package Update (Version: 1.6.38.00 - Lenovo Inc.) Hidden Dependency Package Update (x32 Version: 1.6.32.00 - Lenovo Group Limited) Hidden Dependency Package Update (x32 Version: 1.6.38.00 - Lenovo Group Limited) Hidden Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7/8 (HKLM\...\DisableAMTPopup) (Version: 1.00 - ) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Dropbox (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.) Eurofibu EA 2015 Standard [Vista/W7/W8/W10] (HKLM-x32\...\{0383CC25-67FD-4D07-8AD5-4B6F6AFA23EA}) (Version: 20.15.3 - Multimedia EDV-Software und Verlag GmbH) Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) FileMaker Pro 11 (HKLM-x32\...\{EACCC991-8E8C-4397-8854-349506741FC9}_FileMaker) (Version: 11.0.3.0 - FileMaker, Inc.) FileMaker Pro 11 (x32 Version: 11.0.3.0 - FileMaker, Inc.) Hidden Free YouTube Download version 3.2.42.716 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.42.716 - DVDVideoSoft Ltd.) FTP Commander Pro 8.03 (HKLM-x32\...\FTP Commander Pro_is1) (Version: - ) Google Apps Migration For Microsoft Outlook® 4.0.27.0 (HKLM-x32\...\{8806AF1D-5161-489E-9E17-086CCC518931}) (Version: 4.0.27.0 - Google, Inc.) Google Apps Sync™ for Microsoft Outlook® 3.8.440.1250 (HKLM-x32\...\{091C294E-F243-432C-93E1-DEC4C2B9635B}) (Version: 3.8.440.1250 - Google, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Image Resizer for Windows (64 bit) (Version: 3.0.4802.35565 - Brice Lambson) Hidden Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson) Inst5676 (Version: 8.01.42 - Softex Inc.) Hidden Integrated Camera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.5.7.13 - SunplusIT) Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1011 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.12.1688 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 19.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1332.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0366 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) Smart Connect Technology 4.1 x64 (HKLM\...\{6555226B-7295-4CFD-9D5B-9C8F394BE03A}) (Version: 4.1.41.2234 - Intel) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel(R) WiDi (HKLM\...\{201B03D6-FDDA-4C70-8A15-887F5B3CE365}) (Version: 4.2.19.0 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation) Java 8 Update 73 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation) Laplink PCmover Express for Windows XP (HKLM-x32\...\{01C41C3F-EA8F-4F84-9C21-9564ED195131}) (Version: 8.20.635 - Laplink Software, Inc.) Lenovo Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 8.72.10 - Lenovo) Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.01 - ) Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.38.00 - Lenovo Group Limited) Lenovo Fingerprint Manager Pro (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.42(x64) - Lenovo) Lenovo Fingerprint Manager Pro (Version: 8.01.42(x64) - Lenovo) Hidden Lenovo Multimedia and Communications Core Runtime (HKLM\...\{033DC0E0-DA89-4C33-B66C-89B64D312CD1}_is1) (Version: 5.0.13.94 - Lenovo Corporation) Lenovo Patch Utility (x32 Version: 1.3.2.6 - Lenovo Group Limited) Hidden Lenovo Patch Utility 64 bit (Version: 1.3.2.6 - Lenovo Group Limited) Hidden Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.15 - Lenovo) Lenovo QuickControl (HKLM-x32\...\{4855C42F-5197-4AAD-A50D-5066D2CC4647}) (Version: 1.10 - Lenovo Group Limited) Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.3.19.209 - Lenovo Corporation) Lenovo Settings - Location Awareness (HKLM-x32\...\{C79D4402-E622-4922-9C02-89F9080BF081}_is1) (Version: 1.4.0.5 - Lenovo Group Limited) Lenovo Settings - Power (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 7.49.4 - Lenovo Group Limited) Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.3.3.33 - Lenovo Group Limited) Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 2.3.0.84 - Lenovo) Lenovo Settings Service (HKLM\...\{8C6F1EBA-17F1-4481-B688-9777E63E985F}_is1) (Version: 2.3.3.7 - Lenovo Group Limited) Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.2.0.7 - Lenovo Group Limited) Lenovo Solution Center (HKLM\...\{4386A5EF-BD23-49F4-9DAD-CD76B4F6A8BF}) (Version: 2.8.006.00 - Lenovo Group Limited) Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0022 - Lenovo) Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0012.00 - Lenovo Group Limited) Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0011.00 - Lenovo) Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Maxwell for SketchUp 2015 (HKLM-x32\...\{DEC405C1-CB23-4C20-948D-BF8631B7E8EE}) (Version: 3.1.0 - Next Limit Technologies) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.292.3 - McAfee, Inc.) Metric Collection SDK (x32 Version: 1.1.0005.00 - Lenovo Group Limited) Hidden Microsoft Office Home and Business 2013 - de-de (HKLM\...\HomeBusinessRetail - de-de) (Version: 15.0.4797.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 41.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 de)) (Version: 41.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.0.5738 - Mozilla) Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.) Nitro Pro 9 (HKLM\...\{46BC2EAC-C080-499E-B9B1-A93FAFBE8578}) (Version: 9.5.2.29 - Nitro) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4797.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden PhotoSync (HKLM\...\{CECDB976-FC3E-49E1-8A47-DF447D8B4DBC}) (Version: 3.0.7 - touchbyte GmbH) Plan4You Easy (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\2387559020.plan4youeasy.haude.at) (Version: - plan4youeasy.haude.at) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21236 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) SketchUp 2016 (HKLM\...\{F40C8253-11C9-4D11-A392-B335E22D1C52}) (Version: 16.0.19912 - Trimble Navigation Limited) Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.) SmartTools Publishing • Excel Projektplan 2014 (HKLM-x32\...\SmartToolsProjektplan 2014v4.00) (Version: v4.00 - SmartTools Publishing) Spotify (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Spotify) (Version: 1.0.24.104.g92a22684 - Spotify AB) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.80.99066 - SugarSync, Inc.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.27 - Synaptics Incorporated) Synaptics WBF DDK 5011 (Advanced) (HKLM\...\{87E2D28A-EEE2-4C3C-B0C1-CDA986B3C42E}) (Version: 4.5.503.0 - Synaptics) ThinkVantage System für aktiven Festplattenschutz (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.26 - Lenovo) Visualizer for SketchUp (HKLM\...\{3758A735-50FD-4033-B3F5-77F30ED63F87}) (Version: 1.3.13.0 - Imagination) VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN) Windows-Treiberpaket - Intel (e1dexpress) Net (05/06/2013 12.6.51.9427) (HKLM\...\EE65D5FC2879A33F6215CCBA14A4E08712271C7E) (Version: 05/06/2013 12.6.51.9427 - Intel) Windows-Treiberpaket - Intel Corporation (iaStorA) HDC (07/10/2013 12.7.1.1000) (HKLM\...\46401F4452DAF88AC0AE17DCC13122D50FA7A51A) (Version: 07/10/2013 12.7.1.1000 - Intel Corporation) Windows-Treiberpaket - Lenovo 1.67.00.02 (04/17/2013 1.67.00.02) (HKLM\...\907DA143458FE258EFEB416B946DE8DF2B87A0BA) (Version: 04/17/2013 1.67.00.02 - Lenovo) Windows-Treiberpaket - Synaptics (SmbDrv) System (08/08/2013 16.6.4.38) (HKLM\...\B8B0FB49BE368EB005D7A392C3F3F6EAE44D4895) (Version: 08/08/2013 16.6.4.38 - Synaptics) Windows-Treiberpaket - Synaptics (SynTP) Mouse (08/08/2013 16.6.4.38) (HKLM\...\18D3C88E5856BD23EE44DECE8557176A5BD3FBED) (Version: 08/08/2013 16.6.4.38 - Synaptics) XING Outlook Connector (HKLM\...\{3B8AF990-AE63-481C-BC4B-8BB8D7A93B80}) (Version: 2.2.0 - XING) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0114E360-2026-4A5E-A2E6-225EAC3FF15B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {0548E98E-886C-492A-ABE6-C97E3B8D907F} - System32\Tasks\PMTask => C:\PROGRA~2\ThinkPad\UTILIT~1\PwmIdTsv.exe Task: {055544F3-3656-4D32-BDDD-76BC021B2F2F} - System32\Tasks\xingoscupdate => C:\Program Files\XING\XING Outlook Connector\xingoscupdate.exe [2014-01-08] (XING) Task: {08375F23-4DDE-4A20-A90A-75A9CB4387C5} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo) Task: {155E190F-A525-4F82-BA77-86D1797AEBB9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-01-12] (Microsoft Corporation) Task: {1AAED4E4-EACB-4F33-B43F-A1E7A304B570} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {20FE82F6-8C14-41B1-88E8-81400CBB1BE8} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-01-13] () Task: {2F10048B-100E-4F47-99C1-FFC6854FEA69} - System32\Tasks\Lenovo\LSC\Time72Task => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2015-12-10] (Lenovo) Task: {336547F6-0CB7-4061-9829-5340B4751BDB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {37CFAF25-C3DA-45E4-BB71-EDBCFD270561} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo) Task: {4AD894F6-5D0A-4A89-876C-74B4072CA924} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {516DF337-6C6C-48F9-BD2E-33E65BF28FD8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {532DA594-E5E7-4EA8-8C8C-28E7C5EAA5B7} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-12-10] (Lenovo) Task: {5CD81AF7-4C6D-451C-A632-6C3109607AA4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {610E5188-643E-4B9B-B6BB-63729835BBDA} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {6A360865-2676-40D2-8152-2F3A0CD64970} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {6B37C975-3D4B-4167-87A8-B0C9636DC535} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {6E4125ED-5986-4C8A-9215-5166C68E5636} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {7B05DF95-BED5-4EFD-A78B-B06AF9E6BBFA} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor Task: {7BAB6C22-2BC2-40FA-A0E4-470E1E7A8AE6} - System32\Tasks\Lenovo\LSC\RebootCountTask => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2015-12-10] (Lenovo) Task: {86F04FE5-5F54-454A-B2F3-129C50F072AC} - System32\Tasks\Avira System Speedup Tray => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe [2016-02-26] (Avira Operations GmbH & Co. KG) Task: {8A3B9948-91C0-4C3A-853A-7960FD35AD5E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {90309549-9ADA-4649-9BC6-00135BC6A58F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-01-12] (Microsoft Corporation) Task: {92432AD1-39F9-46F1-B8E4-D4048888B0E9} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-12-10] (Lenovo) Task: {96C4E12F-F00E-4503-BF26-1C9419E69145} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {9A4E8712-3452-4C7F-902E-7ACC07D07424} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-09] (Microsoft Corporation) Task: {A5D62ABE-8115-4E78-B8A3-6356CA6D9AAC} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe Task: {A9DDA89D-165E-4FD5-A9E5-465B57313BD8} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-06-24] (Realtek Semiconductor) Task: {AB4504FD-DE0E-4811-BE66-7F149BF7D791} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo) Task: {B4162773-C07E-4F8D-B632-EB32C23DEA5F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {B41F69DA-6F5D-4B22-805F-20694201D1A7} - System32\Tasks\Xing Social Recommendations => C:\Program Files\XING\XING Outlook Connector\32-bit\XingSocial.exe [2014-01-08] (XING AG) Task: {B42C37BF-A62B-49A8-9502-8199C732663B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10] (Adobe Systems Incorporated) Task: {C17DE579-3A02-465D-A08E-36C24BCD94B7} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2015-12-10] (Lenovo) Task: {D152EEED-CDBC-4569-8239-67906E98C043} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {E9A1511E-3C50-4341-8180-455A71DBEDA0} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2015-12-14] () Task: {F1A82B7C-C8FC-4D66-84AE-06CBC075FB30} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {FA7D5DE0-CCBE-4031-9860-30FCF5CC4C5C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {FB12AF61-CAED-4143-B629-85541C99C16D} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-06-24] (Realtek Semiconductor) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2014-06-17 22:55 - 2015-01-16 07:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.dll 2014-06-17 12:36 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-04-15 14:45 - 2013-04-15 14:45 - 00182760 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2013-04-15 14:45 - 2013-04-15 14:45 - 00060392 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-07-16 14:50 - 2014-07-16 14:50 - 00417800 _____ () C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe 2013-06-21 14:42 - 2015-01-09 15:40 - 00469720 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2013-06-21 14:42 - 2015-01-09 15:40 - 00013528 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe 2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-01-22 08:20 - 2016-01-22 08:21 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-07-17 23:35 - 2015-12-19 01:08 - 00402344 _____ () C:\WINDOWS\system32\igfxTray.exe 2015-12-18 10:56 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-03-02 07:26 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2014-06-17 22:55 - 2015-01-16 07:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL 2013-06-18 10:04 - 2013-06-18 10:04 - 01720184 _____ () C:\Program Files (x86)\Integrated Camera\Monitor.exe 2014-08-21 16:59 - 2014-08-21 16:59 - 00462592 _____ () C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe 2016-01-28 08:12 - 2016-01-28 08:14 - 00618688 _____ () C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2016-03-08 10:59 - 2016-03-08 10:59 - 00136392 _____ () C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\textinputdriver.dll 2016-03-08 10:57 - 2016-03-08 10:57 - 00013824 _____ () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe 2016-03-08 10:57 - 2016-03-08 10:57 - 06197760 _____ () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.dll 2016-01-13 13:50 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-01-13 13:50 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-01-28 08:23 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-01-28 08:23 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-03-04 08:42 - 2016-03-04 08:44 - 00016384 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-03-04 08:42 - 2016-03-04 08:44 - 16062976 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-03-04 08:42 - 2016-03-04 08:44 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2013-09-29 17:13 - 2013-07-26 03:24 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-12-21 09:30 - 2015-12-21 09:30 - 03154432 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Devices\52e2255e6fbd7b1a8a153dcb8ab573a5\Windows.Devices.ni.dll 2016-01-22 08:20 - 2016-01-22 08:21 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-01-22 08:20 - 2016-01-22 08:21 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2016-03-07 13:12 - 2016-03-07 13:12 - 00098816 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32api.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00110080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pywintypes27.dll 2016-03-07 13:12 - 2016-03-07 13:12 - 00364544 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pythoncom27.dll 2016-03-07 13:12 - 2016-03-07 13:12 - 00320512 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32com.shell.shell.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00776704 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_hashlib.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 01176576 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._core_.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00806400 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._gdi_.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00816128 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._windows_.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 01067008 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._controls_.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00733184 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._misc_.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00682496 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pysqlite2._sqlite.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00088064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_ctypes.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00119808 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32file.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00108544 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32security.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00007168 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\hashobjs_ext.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00017920 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\thumbnails_ext.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00088064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\usb_ext.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00167936 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32gui.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00018432 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32event.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00046080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_socket.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 01208320 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_ssl.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00128512 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_elementtree.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00127488 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pyexpat.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00013824 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\common.time34.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00036864 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_psutil_windows.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00038912 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32inet.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00525240 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\windows._lib_cacheinvalidation.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00011264 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32crypt.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00077312 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._html2.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00027136 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_multiprocessing.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00020480 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_yappi.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00035840 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32process.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00686080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\unicodedata.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00078848 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._animate.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00123392 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._wizard.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00024064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32pipe.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00010240 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\select.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00025600 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32pdh.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00017408 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32profile.pyd 2016-03-07 13:12 - 2016-03-07 13:12 - 00022528 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32ts.pyd 2016-02-26 07:45 - 2016-02-26 07:45 - 00325824 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll 2013-09-29 17:25 - 2015-01-07 09:29 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll 2013-09-29 17:25 - 2015-01-07 09:29 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll 2016-02-26 07:46 - 2016-02-26 07:48 - 01032360 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\ADDINS\UmOutlookAddin.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Windows:nlsPreferences [386] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 [144] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 14:25 - 2015-12-18 15:01 - 00000854 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-686292772-3706268183-491554591-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\FloSchwaiger\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\thinkdesktop.png DNS Servers: 192.168.10.110 - 192.168.10.111 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "safe_url__2" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{8D9DE358-298E-426C-BB5F-158B49D77164}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{F0D9451F-8399-475F-9035-C0617E02B709}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe FirewallRules: [TCP Query User{431D9BE9-4126-4446-99BC-790278B9E60C}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe FirewallRules: [UDP Query User{5A267942-3D21-462E-8366-8DDB0CF1522B}C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{1A8EFA13-1245-42BA-8652-9280C5FD6D9C}C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{28DFAE2A-060A-476E-A144-890D7F019C42}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7AA58609-839F-4D25-8D7C-2F9F1AEE94CA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{0B275EE4-9074-48CB-BCE3-989FDC16D570}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C54623F2-67E7-4D69-AB17-594C287A39DC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E2EE18ED-A12B-4B4A-BDD9-67860D828534}] => (Allow) C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{2470CCBC-1545-45DE-ADF0-A619F55AC1E5}] => (Allow) C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{26C6C494-C3C5-4462-9D03-B7BC2407F18B}] => (Allow) C:\Program Files (x86)\Laplink\PCmover\pcmover.exe FirewallRules: [{A8F8DE4B-F94B-44F5-B731-D05F95E0B8B0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{7964A1DA-9757-46E0-8AD1-CFC373B4A1D0}] => (Allow) C:\Users\FloSchwaiger\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{3B519FBD-9871-47AD-85CA-B616BEE47BC9}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [{2EC403C9-7F15-457F-8470-586219B0CBBB}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe FirewallRules: [{1C1F239F-0AD6-4B4B-8C63-84351B80C96A}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe FirewallRules: [TCP Query User{65FDB4B9-4F93-43A9-9AFC-97C6DB9D5ED3}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{FA4CB688-E90C-4C14-8AA9-0FD317264D5A}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{457E8E3F-913F-43DF-9A2A-B6F4D9996D13}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{B4D8DFC7-D462-4972-BB6C-D2DF8D80AF1B}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe FirewallRules: [{8FC10FD9-CE1E-4F56-9C6D-9813A0101BCD}] => (Allow) LPort=35722 FirewallRules: [TCP Query User{F6795146-277C-4FE1-A7DE-4350DB913FB7}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe FirewallRules: [UDP Query User{4A8B759E-4091-4520-8EB4-E9F0ED1297CF}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe FirewallRules: [{0E4B178D-5199-44D0-B963-565508C45E31}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E03DC71F-9E56-476D-BB5A-6BCB7A2EB33E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{61442B47-4C3A-4B29-992E-5A78C05F0C8A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{6CFFA57F-247A-455A-84FC-7B62BAFCDCBB}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{2C56F2A3-5038-4BA9-94CF-B365F566D0DF}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{6C718AE5-D00E-4B3C-8A68-4C2A99A6D743}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{8969766E-F20F-4C2A-AD5C-2A02A868354D}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{801BBCCB-45E2-47FB-953C-F874FAEF9A27}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= 25-02-2016 06:14:13 Windows Update 29-02-2016 08:57:31 Windows Update 01-03-2016 23:04:47 Avira System Speedup 2.1.13 05-03-2016 12:07:49 Windows Update 09-03-2016 12:29:24 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: IWD Bus Enumerator Description: IWD Bus Enumerator Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: (Standard system devices) Service: iwdbus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (03/10/2016 07:58:40 AM) (Source: MsiInstaller) (EventID: 1024) (User: FLOSCHWAIGER-PC) Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5C00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127 Error: (03/09/2016 12:29:26 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2266 Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2266 Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/08/2016 04:41:11 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoID={56193B1C-381C-40D8-AFAB-39A1A2083B37}: Der Benutzer "SYSTEM" hat eine Verbindung mit dem Namen "VPN-Dundk" gewählt, die Verbindung konnte jedoch nicht hergestellt werden. Der durch den Fehler zurückgegebene Ursachencode lautet: 0. Error: (03/08/2016 03:00:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: outlook.exe, Version: 15.0.4797.1003, Zeitstempel: 0x56bf0198 Name des fehlerhaften Moduls: outlook.exe, Version: 15.0.4797.1003, Zeitstempel: 0x56bf0198 Ausnahmecode: 0xc0000005 Fehleroffset: 0x004c263e ID des fehlerhaften Prozesses: 0xd84 Startzeit der fehlerhaften Anwendung: 0xoutlook.exe0 Pfad der fehlerhaften Anwendung: outlook.exe1 Pfad des fehlerhaften Moduls: outlook.exe2 Berichtskennung: outlook.exe3 Vollständiger Name des fehlerhaften Pakets: outlook.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: outlook.exe5 Error: (03/07/2016 03:06:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm firefox.exe, Version 41.0.0.5738 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 618 Startzeit: 01d17875040bf38a Beendigungszeit: 78 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: c4e3d7d6-e46d-11e5-bef8-5c514f55a626 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (03/07/2016 03:06:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 41.0.0.5738, Zeitstempel: 0x55fb7072 Name des fehlerhaften Moduls: mozglue.dll, Version: 41.0.0.5738, Zeitstempel: 0x55fb5afb Ausnahmecode: 0x80000003 Fehleroffset: 0x0000ec7e ID des fehlerhaften Prozesses: 0x18dc Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5 Error: (03/07/2016 01:45:44 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Systemfehler: ============= Error: (03/10/2016 08:17:36 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} Error: (03/10/2016 08:02:44 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80073cf3 fehlgeschlagen: miraCal - A better calendar for Google Error: (03/09/2016 07:54:07 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/09/2016 07:28:43 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/09/2016 06:39:31 PM) (Source: Server) (EventID: 2505) (User: ) Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden. Error: (03/09/2016 03:53:13 PM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} Error: (03/09/2016 01:50:59 PM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} Error: (03/09/2016 11:11:00 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} Error: (03/09/2016 11:10:30 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} Error: (03/09/2016 11:10:00 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC) Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C} CodeIntegrity: =================================== Date: 2016-03-03 08:47:33.713 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-02 10:14:29.656 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-16 12:30:16.943 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-16 07:07:00.970 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-10 09:43:35.639 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-31 10:34:55.711 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-14 11:15:26.822 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-12 08:11:14.121 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-12 08:11:14.112 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-12 08:11:14.103 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4600U CPU @ 2.10GHz Prozentuale Nutzung des RAM: 46% Installierter physikalischer RAM: 8071.84 MB Verfügbarer physikalischer RAM: 4356.45 MB Summe virtueller Speicher: 9351.84 MB Verfügbarer virtueller Speicher: 4704.23 MB ==================== Laufwerke ================================ Drive c: (Windows8_OS) (Fixed) (Total:217.45 GB) (Free:85.48 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive d: (Seagate Backup Plus Drive) (Fixed) (Total:931.51 GB) (Free:536.81 GB) NTFS Drive e: () (Removable) (Total:7.39 GB) (Free:5.66 GB) FAT32 ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 1 (Size: 7.4 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (Size: 931.5 GB) (Disk ID: 99D133B6) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
10.03.2016, 09:44 | #6 |
/// TB-Ausbilder /// Anleitungs-Guru | Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. Schritt 1 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ --> Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. |
10.03.2016, 10:00 | #7 |
| TDSSKiller Report Teil 1Code:
ATTFilter 09:50:40.0770 0x1048 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12 09:50:40.0773 0x1048 UEFI system 09:50:49.0609 0x1048 ============================================================ 09:50:49.0609 0x1048 Current date / time: 2016/03/10 09:50:49.0609 09:50:49.0609 0x1048 SystemInfo: 09:50:49.0613 0x1048 09:50:49.0613 0x1048 OS Version: 10.0.10586 ServicePack: 0.0 09:50:49.0613 0x1048 Product type: Workstation 09:50:49.0613 0x1048 ComputerName: FLOSCHWAIGER-PC 09:50:49.0613 0x1048 UserName: FloSchwaiger 09:50:49.0613 0x1048 Windows directory: C:\WINDOWS 09:50:49.0613 0x1048 System windows directory: C:\WINDOWS 09:50:49.0613 0x1048 Running under WOW64 09:50:49.0613 0x1048 Processor architecture: Intel x64 09:50:49.0613 0x1048 Number of processors: 4 09:50:49.0613 0x1048 Page size: 0x1000 09:50:49.0613 0x1048 Boot type: Normal boot 09:50:49.0613 0x1048 ============================================================ 09:50:49.0904 0x1048 KLMD registered as C:\WINDOWS\system32\drivers\82376011.sys 09:50:49.0972 0x1048 System UUID: {64636FEE-1AC5-D94F-2DF1-0CE00301AE99} 09:50:52.0644 0x1048 Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 09:50:52.0645 0x1048 Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 09:50:52.0653 0x1048 Drive \Device\Harddisk1\DR4 - Size: 0x1D9C00000 ( 7.40 Gb ), SectorSize: 0x200, Cylinders: 0x3C6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 09:50:52.0666 0x1048 Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 09:50:52.0670 0x1048 ============================================================ 09:50:52.0670 0x1048 \Device\Harddisk2\DR7: 09:50:52.0671 0x1048 MBR partitions: 09:50:52.0671 0x1048 \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF 09:50:52.0671 0x1048 \Device\Harddisk0\DR0: 09:50:52.0671 0x1048 GPT partitions: 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {742A5203-8965-41BE-BEA7-67D2A8E54068}, Name: , StartLBA 0x800, BlocksNum 0x1F4000 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {AA2895CE-1EC9-4C2F-9888-BC310EED052C}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {547C710A-96B7-421B-B4A1-FD90F528EDAC}, Name: Microsoft reserved partition, StartLBA 0x276800, BlocksNum 0x40000 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C58DDAF5-20AA-4E0F-89D8-5A3C019C7809}, Name: Basic data partition, StartLBA 0x2B6800, BlocksNum 0x1B2E7B14 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {1CB8E3D8-37DC-45E2-A40A-97057AFB05E5}, Name: , StartLBA 0x1B59E800, BlocksNum 0xFB000 09:50:52.0672 0x1048 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {01398853-C4D6-4B88-A82D-7EBCE3F12716}, Name: , StartLBA 0x1B699800, BlocksNum 0x1859800 09:50:52.0673 0x1048 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {DFEBFDC9-B393-4D67-8744-4D13DDBF0B74}, Name: Basic data partition, StartLBA 0x1CEF3000, BlocksNum 0xE00000 09:50:52.0673 0x1048 MBR partitions: 09:50:52.0673 0x1048 \Device\Harddisk1\DR4: 09:50:52.0674 0x1048 MBR partitions: 09:50:52.0674 0x1048 \Device\Harddisk1\DR4\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xECC000 09:50:52.0674 0x1048 \Device\Harddisk2\DR7: 09:50:52.0674 0x1048 MBR partitions: 09:50:52.0674 0x1048 \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF 09:50:52.0674 0x1048 ============================================================ 09:50:52.0678 0x1048 C: <-> \Device\Harddisk0\DR0\Partition4 09:50:52.0690 0x1048 D: <-> \Device\Harddisk2\DR7\Partition1 09:50:52.0690 0x1048 ============================================================ 09:50:52.0690 0x1048 Initialize success 09:50:52.0690 0x1048 ============================================================ 09:50:54.0824 0x03d4 ============================================================ 09:50:54.0824 0x03d4 Scan started 09:50:54.0824 0x03d4 Mode: Manual; 09:50:54.0824 0x03d4 ============================================================ 09:50:54.0824 0x03d4 KSN ping started 09:50:57.0754 0x03d4 KSN ping finished: true 09:50:58.0206 0x03d4 ================ Scan system memory ======================== 09:50:58.0206 0x03d4 System memory - ok 09:50:58.0206 0x03d4 ================ Scan services ============================= 09:50:58.0242 0x03d4 [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 09:50:58.0246 0x03d4 1394ohci - ok 09:50:58.0254 0x03d4 [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 09:50:58.0256 0x03d4 3ware - ok 09:50:58.0269 0x03d4 [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 09:50:58.0276 0x03d4 ACPI - ok 09:50:58.0281 0x03d4 [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 09:50:58.0283 0x03d4 acpiex - ok 09:50:58.0286 0x03d4 [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 09:50:58.0286 0x03d4 acpipagr - ok 09:50:58.0290 0x03d4 [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 09:50:58.0290 0x03d4 AcpiPmi - ok 09:50:58.0294 0x03d4 [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 09:50:58.0294 0x03d4 acpitime - ok 09:50:58.0302 0x03d4 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 09:50:58.0303 0x03d4 AdobeARMservice - ok 09:50:58.0324 0x03d4 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 09:50:58.0328 0x03d4 AdobeFlashPlayerUpdateSvc - ok 09:50:58.0351 0x03d4 [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 09:50:58.0366 0x03d4 ADP80XX - ok 09:50:58.0380 0x03d4 [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD C:\WINDOWS\system32\drivers\afd.sys 09:50:58.0387 0x03d4 AFD - ok 09:50:58.0393 0x03d4 [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 09:50:58.0394 0x03d4 agp440 - ok 09:50:58.0401 0x03d4 [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 09:50:58.0404 0x03d4 ahcache - ok 09:50:58.0408 0x03d4 [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 09:50:58.0408 0x03d4 AJRouter - ok 09:50:58.0412 0x03d4 [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG C:\WINDOWS\System32\alg.exe 09:50:58.0414 0x03d4 ALG - ok 09:50:58.0420 0x03d4 [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 09:50:58.0422 0x03d4 AmdK8 - ok 09:50:58.0427 0x03d4 [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 09:50:58.0428 0x03d4 AmdPPM - ok 09:50:58.0432 0x03d4 [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 09:50:58.0434 0x03d4 amdsata - ok 09:50:58.0441 0x03d4 [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 09:50:58.0444 0x03d4 amdsbs - ok 09:50:58.0447 0x03d4 [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 09:50:58.0448 0x03d4 amdxata - ok 09:50:58.0471 0x03d4 [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 09:50:58.0484 0x03d4 AntiVirMailService - ok 09:50:58.0495 0x03d4 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 09:50:58.0501 0x03d4 AntiVirSchedulerService - ok 09:50:58.0511 0x03d4 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 09:50:58.0517 0x03d4 AntiVirService - ok 09:50:58.0543 0x03d4 [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 09:50:58.0561 0x03d4 AntiVirWebService - ok 09:50:58.0568 0x03d4 [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID C:\WINDOWS\system32\drivers\appid.sys 09:50:58.0570 0x03d4 AppID - ok 09:50:58.0573 0x03d4 [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 09:50:58.0574 0x03d4 AppIDSvc - ok 09:50:58.0579 0x03d4 [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo C:\WINDOWS\System32\appinfo.dll 09:50:58.0580 0x03d4 Appinfo - ok 09:50:58.0586 0x03d4 [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 09:50:58.0590 0x03d4 AppMgmt - ok 09:50:58.0602 0x03d4 [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 09:50:58.0609 0x03d4 AppReadiness - ok 09:50:58.0647 0x03d4 [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 09:50:58.0674 0x03d4 AppXSvc - ok 09:50:58.0681 0x03d4 [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 09:50:58.0684 0x03d4 arcsas - ok 09:50:58.0687 0x03d4 [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys 09:50:58.0688 0x03d4 AsyncMac - ok 09:50:58.0691 0x03d4 [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 09:50:58.0692 0x03d4 atapi - ok 09:50:58.0699 0x03d4 [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 09:50:58.0703 0x03d4 AudioEndpointBuilder - ok 09:50:58.0724 0x03d4 [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 09:50:58.0737 0x03d4 Audiosrv - ok 09:50:58.0755 0x03d4 [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe 09:50:58.0762 0x03d4 AVControlCenter - ok 09:50:58.0766 0x03d4 [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 09:50:58.0768 0x03d4 avgntflt - ok 09:50:58.0773 0x03d4 [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 09:50:58.0776 0x03d4 avipbb - ok 09:50:58.0784 0x03d4 [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 09:50:58.0787 0x03d4 Avira.ServiceHost - ok 09:50:58.0791 0x03d4 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 09:50:58.0792 0x03d4 avkmgr - ok 09:50:58.0796 0x03d4 [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 09:50:58.0797 0x03d4 avnetflt - ok 09:50:58.0802 0x03d4 [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 09:50:58.0804 0x03d4 AxInstSV - ok 09:50:58.0815 0x03d4 [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 09:50:58.0822 0x03d4 b06bdrv - ok 09:50:58.0826 0x03d4 [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 09:50:58.0827 0x03d4 BasicDisplay - ok 09:50:58.0831 0x03d4 [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 09:50:58.0831 0x03d4 BasicRender - ok 09:50:58.0835 0x03d4 [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn C:\WINDOWS\System32\drivers\bcmfn.sys 09:50:58.0836 0x03d4 bcmfn - ok 09:50:58.0839 0x03d4 [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 09:50:58.0840 0x03d4 bcmfn2 - ok 09:50:58.0849 0x03d4 [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 09:50:58.0854 0x03d4 BDESVC - ok 09:50:58.0857 0x03d4 [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 09:50:58.0858 0x03d4 Beep - ok 09:50:58.0875 0x03d4 [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE C:\WINDOWS\System32\bfe.dll 09:50:58.0885 0x03d4 BFE - ok 09:50:58.0907 0x03d4 [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS C:\WINDOWS\System32\qmgr.dll 09:50:58.0923 0x03d4 BITS - ok 09:50:58.0935 0x03d4 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 09:50:58.0941 0x03d4 Bonjour Service - ok 09:50:58.0945 0x03d4 [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 09:50:58.0947 0x03d4 bowser - ok 09:50:58.0956 0x03d4 [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe 09:50:58.0960 0x03d4 BrcmSetSecurity - ok 09:50:58.0973 0x03d4 [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 09:50:58.0980 0x03d4 BrokerInfrastructure - ok 09:50:58.0985 0x03d4 [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser C:\WINDOWS\System32\browser.dll 09:50:58.0987 0x03d4 Browser - ok 09:50:58.0993 0x03d4 [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 09:50:58.0993 0x03d4 BthAvrcpTg - ok 09:50:58.0998 0x03d4 [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 09:50:58.0999 0x03d4 BthEnum - ok 09:50:59.0003 0x03d4 [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 09:50:59.0004 0x03d4 BthHFEnum - ok 09:50:59.0008 0x03d4 [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 09:50:59.0009 0x03d4 bthhfhid - ok 09:50:59.0018 0x03d4 [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 09:50:59.0023 0x03d4 BthHFSrv - ok 09:50:59.0031 0x03d4 [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys 09:50:59.0034 0x03d4 BthLEEnum - ok 09:50:59.0038 0x03d4 [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 09:50:59.0040 0x03d4 BTHMODEM - ok 09:50:59.0044 0x03d4 [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 09:50:59.0046 0x03d4 BthPan - ok 09:50:59.0064 0x03d4 [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT C:\WINDOWS\System32\drivers\BTHport.sys 09:50:59.0077 0x03d4 BTHPORT - ok 09:50:59.0082 0x03d4 [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv C:\WINDOWS\system32\bthserv.dll 09:50:59.0083 0x03d4 bthserv - ok 09:50:59.0088 0x03d4 [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB C:\WINDOWS\System32\drivers\BTHUSB.sys 09:50:59.0090 0x03d4 BTHUSB - ok 09:50:59.0093 0x03d4 [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys 09:50:59.0094 0x03d4 buttonconverter - ok 09:50:59.0099 0x03d4 [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg C:\WINDOWS\System32\drivers\capimg.sys 09:50:59.0100 0x03d4 CapImg - ok 09:50:59.0104 0x03d4 [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 09:50:59.0106 0x03d4 cdfs - ok 09:50:59.0114 0x03d4 [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 09:50:59.0118 0x03d4 CDPSvc - ok 09:50:59.0124 0x03d4 [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 09:50:59.0126 0x03d4 cdrom - ok 09:50:59.0132 0x03d4 [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc C:\WINDOWS\System32\certprop.dll 09:50:59.0135 0x03d4 CertPropSvc - ok 09:50:59.0139 0x03d4 [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass C:\WINDOWS\System32\drivers\circlass.sys 09:50:59.0140 0x03d4 circlass - ok 09:50:59.0150 0x03d4 [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 09:50:59.0155 0x03d4 CLFS - ok 09:50:59.0206 0x03d4 [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe 09:50:59.0243 0x03d4 ClickToRunSvc - ok 09:50:59.0259 0x03d4 [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 09:50:59.0267 0x03d4 ClipSVC - ok 09:50:59.0276 0x03d4 [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 09:50:59.0277 0x03d4 CmBatt - ok 09:50:59.0290 0x03d4 [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG C:\WINDOWS\system32\Drivers\cng.sys 09:50:59.0298 0x03d4 CNG - ok 09:50:59.0301 0x03d4 [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 09:50:59.0302 0x03d4 cnghwassist - ok 09:50:59.0314 0x03d4 [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys 09:50:59.0315 0x03d4 CompositeBus - ok 09:50:59.0318 0x03d4 COMSysApp - ok 09:50:59.0321 0x03d4 [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv C:\WINDOWS\system32\drivers\condrv.sys 09:50:59.0322 0x03d4 condrv - ok 09:50:59.0338 0x03d4 [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll 09:50:59.0349 0x03d4 CoreMessagingRegistrar - ok 09:50:59.0372 0x03d4 [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 09:50:59.0377 0x03d4 cphs - ok 09:50:59.0382 0x03d4 [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 09:50:59.0384 0x03d4 CryptSvc - ok 09:50:59.0396 0x03d4 [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC C:\WINDOWS\system32\drivers\csc.sys 09:50:59.0403 0x03d4 CSC - ok 09:50:59.0418 0x03d4 [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService C:\WINDOWS\System32\cscsvc.dll 09:50:59.0428 0x03d4 CscService - ok 09:50:59.0433 0x03d4 [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam C:\WINDOWS\system32\drivers\dam.sys 09:50:59.0434 0x03d4 dam - ok 09:50:59.0453 0x03d4 [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 09:50:59.0465 0x03d4 DcomLaunch - ok 09:50:59.0471 0x03d4 [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll 09:50:59.0475 0x03d4 DcpSvc - ok 09:50:59.0486 0x03d4 [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc C:\WINDOWS\System32\defragsvc.dll 09:50:59.0494 0x03d4 defragsvc - ok 09:50:59.0505 0x03d4 [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 09:50:59.0511 0x03d4 DeviceAssociationService - ok 09:50:59.0515 0x03d4 [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 09:50:59.0518 0x03d4 DeviceInstall - ok 09:50:59.0521 0x03d4 [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 09:50:59.0523 0x03d4 DevQueryBroker - ok 09:50:59.0528 0x03d4 [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 09:50:59.0530 0x03d4 Dfsc - ok 09:50:59.0539 0x03d4 [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 09:50:59.0544 0x03d4 Dhcp - ok 09:50:59.0548 0x03d4 [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe 09:50:59.0549 0x03d4 diagnosticshub.standardcollector.service - ok 09:50:59.0578 0x03d4 [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 09:50:59.0599 0x03d4 DiagTrack - ok 09:50:59.0604 0x03d4 [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk C:\WINDOWS\system32\drivers\disk.sys 09:50:59.0606 0x03d4 disk - ok 09:50:59.0614 0x03d4 [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 09:50:59.0619 0x03d4 DmEnrollmentSvc - ok 09:50:59.0623 0x03d4 [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 09:50:59.0624 0x03d4 dmvsc - ok 09:50:59.0627 0x03d4 [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 09:50:59.0629 0x03d4 dmwappushservice - ok 09:50:59.0636 0x03d4 [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 09:50:59.0641 0x03d4 Dnscache - ok 09:50:59.0649 0x03d4 [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc C:\WINDOWS\System32\dot3svc.dll 09:50:59.0653 0x03d4 dot3svc - ok 09:50:59.0659 0x03d4 [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS C:\WINDOWS\system32\dps.dll 09:50:59.0661 0x03d4 DPS - ok 09:50:59.0665 0x03d4 [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud C:\WINDOWS\System32\drivers\drmkaud.sys 09:50:59.0665 0x03d4 drmkaud - ok 09:50:59.0671 0x03d4 [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 09:50:59.0674 0x03d4 DsmSvc - ok 09:50:59.0680 0x03d4 [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc C:\WINDOWS\System32\DsSvc.dll 09:50:59.0682 0x03d4 DsSvc - ok 09:50:59.0719 0x03d4 [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 09:50:59.0744 0x03d4 DXGKrnl - ok 09:50:59.0757 0x03d4 [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress C:\WINDOWS\system32\DRIVERS\e1d64x64.sys 09:50:59.0763 0x03d4 e1dexpress - ok 09:50:59.0769 0x03d4 [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost C:\WINDOWS\System32\eapsvc.dll 09:50:59.0771 0x03d4 Eaphost - ok 09:50:59.0830 0x03d4 [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 09:50:59.0873 0x03d4 ebdrv - ok 09:50:59.0883 0x03d4 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS C:\WINDOWS\System32\lsass.exe 09:50:59.0885 0x03d4 EFS - ok 09:50:59.0889 0x03d4 [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 09:50:59.0891 0x03d4 EhStorClass - ok 09:50:59.0895 0x03d4 [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 09:50:59.0897 0x03d4 EhStorTcgDrv - ok 09:50:59.0901 0x03d4 [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 09:50:59.0903 0x03d4 embeddedmode - ok 09:50:59.0911 0x03d4 [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 09:50:59.0916 0x03d4 EntAppSvc - ok 09:50:59.0918 0x03d4 [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 09:50:59.0919 0x03d4 ErrDev - ok 09:50:59.0933 0x03d4 [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem C:\WINDOWS\system32\es.dll 09:50:59.0940 0x03d4 EventSystem - ok 09:50:59.0948 0x03d4 [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 09:50:59.0952 0x03d4 exfat - ok 09:50:59.0960 0x03d4 [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 09:50:59.0964 0x03d4 fastfat - ok 09:50:59.0978 0x03d4 [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax C:\WINDOWS\system32\fxssvc.exe 09:50:59.0986 0x03d4 Fax - ok 09:50:59.0991 0x03d4 [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 09:50:59.0992 0x03d4 fdc - ok 09:50:59.0994 0x03d4 [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 09:50:59.0995 0x03d4 fdPHost - ok 09:50:59.0998 0x03d4 [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub C:\WINDOWS\system32\fdrespub.dll 09:51:00.0000 0x03d4 FDResPub - ok 09:51:00.0005 0x03d4 [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc C:\WINDOWS\system32\fhsvc.dll 09:51:00.0008 0x03d4 fhsvc - ok 09:51:00.0013 0x03d4 [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 09:51:00.0015 0x03d4 FileCrypt - ok 09:51:00.0018 0x03d4 [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 09:51:00.0020 0x03d4 FileInfo - ok 09:51:00.0022 0x03d4 [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 09:51:00.0024 0x03d4 Filetrace - ok 09:51:00.0028 0x03d4 [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 09:51:00.0029 0x03d4 flpydisk - ok 09:51:00.0037 0x03d4 [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 09:51:00.0043 0x03d4 FltMgr - ok 09:51:00.0074 0x03d4 [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache C:\WINDOWS\system32\FntCache.dll 09:51:00.0095 0x03d4 FontCache - ok 09:51:00.0100 0x03d4 [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 09:51:00.0101 0x03d4 FontCache3.0.0.0 - ok 09:51:00.0105 0x03d4 [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 09:51:00.0106 0x03d4 FsDepends - ok 09:51:00.0110 0x03d4 [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 09:51:00.0111 0x03d4 Fs_Rec - ok 09:51:00.0125 0x03d4 [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 09:51:00.0133 0x03d4 fvevol - ok 09:51:00.0138 0x03d4 [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 09:51:00.0139 0x03d4 gagp30kx - ok 09:51:00.0143 0x03d4 [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 09:51:00.0144 0x03d4 gencounter - ok 09:51:00.0147 0x03d4 [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys 09:51:00.0147 0x03d4 genericusbfn - ok 09:51:00.0152 0x03d4 [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 09:51:00.0155 0x03d4 GPIOClx0101 - ok 09:51:00.0188 0x03d4 [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 09:51:00.0206 0x03d4 gpsvc - ok 09:51:00.0210 0x03d4 [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 09:51:00.0210 0x03d4 GpuEnergyDrv - ok 09:51:00.0217 0x03d4 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:51:00.0219 0x03d4 gupdate - ok 09:51:00.0224 0x03d4 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:51:00.0226 0x03d4 gupdatem - ok 09:51:00.0230 0x03d4 [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 09:51:00.0231 0x03d4 HDAudBus - ok 09:51:00.0234 0x03d4 [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 09:51:00.0235 0x03d4 HidBatt - ok 09:51:00.0239 0x03d4 [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 09:51:00.0241 0x03d4 HidBth - ok 09:51:00.0245 0x03d4 [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 09:51:00.0246 0x03d4 hidi2c - ok 09:51:00.0249 0x03d4 [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys 09:51:00.0250 0x03d4 hidinterrupt - ok 09:51:00.0254 0x03d4 [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 09:51:00.0254 0x03d4 HidIr - ok 09:51:00.0258 0x03d4 [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv C:\WINDOWS\system32\hidserv.dll 09:51:00.0259 0x03d4 hidserv - ok 09:51:00.0263 0x03d4 [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 09:51:00.0263 0x03d4 HidUsb - ok 09:51:00.0271 0x03d4 [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 09:51:00.0276 0x03d4 HomeGroupListener - ok 09:51:00.0286 0x03d4 [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 09:51:00.0294 0x03d4 HomeGroupProvider - ok 09:51:00.0297 0x03d4 [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 09:51:00.0298 0x03d4 HpSAMD - ok 09:51:00.0320 0x03d4 [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 09:51:00.0334 0x03d4 HTTP - ok 09:51:00.0338 0x03d4 [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys 09:51:00.0340 0x03d4 huawei_enumerator - ok 09:51:00.0343 0x03d4 [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 09:51:00.0344 0x03d4 hwpolicy - ok 09:51:00.0347 0x03d4 [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 09:51:00.0347 0x03d4 hyperkbd - ok 09:51:00.0352 0x03d4 [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 09:51:00.0354 0x03d4 i8042prt - ok 09:51:00.0358 0x03d4 [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys 09:51:00.0359 0x03d4 iai2c - ok 09:51:00.0365 0x03d4 [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 09:51:00.0368 0x03d4 iaLPSS2i_I2C - ok 09:51:00.0371 0x03d4 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 09:51:00.0372 0x03d4 iaLPSSi_GPIO - ok 09:51:00.0377 0x03d4 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 09:51:00.0379 0x03d4 iaLPSSi_I2C - ok 09:51:00.0393 0x03d4 [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 09:51:00.0401 0x03d4 iaStorA - ok 09:51:00.0416 0x03d4 [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 09:51:00.0425 0x03d4 iaStorAV - ok 09:51:00.0435 0x03d4 [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 09:51:00.0441 0x03d4 iaStorV - ok 09:51:00.0451 0x03d4 [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys 09:51:00.0457 0x03d4 ibbus - ok 09:51:00.0461 0x03d4 [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys 09:51:00.0462 0x03d4 IBMPMDRV - ok 09:51:00.0467 0x03d4 [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC C:\WINDOWS\system32\ibmpmsvc.exe 09:51:00.0469 0x03d4 IBMPMSVC - ok 09:51:00.0476 0x03d4 [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys 09:51:00.0480 0x03d4 ibtusb - ok 09:51:00.0485 0x03d4 [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc C:\WINDOWS\System32\tetheringservice.dll 09:51:00.0488 0x03d4 icssvc - ok 09:51:00.0492 0x03d4 IEEtwCollectorService - ok 09:51:00.0643 0x03d4 [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 09:51:00.0755 0x03d4 igfx - ok 09:51:00.0775 0x03d4 [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 09:51:00.0780 0x03d4 igfxCUIService2.0.0.0 - ok 09:51:00.0784 0x03d4 [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent C:\WINDOWS\system32\DRIVERS\ikbevent.sys 09:51:00.0784 0x03d4 ikbevent - ok 09:51:00.0803 0x03d4 [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT C:\WINDOWS\System32\ikeext.dll 09:51:00.0817 0x03d4 IKEEXT - ok 09:51:00.0821 0x03d4 [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent C:\WINDOWS\system32\DRIVERS\imsevent.sys 09:51:00.0821 0x03d4 imsevent - ok 09:51:00.0827 0x03d4 [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 09:51:00.0828 0x03d4 intaud_WaveExtensible - ok 09:51:00.0902 0x03d4 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 09:51:00.0959 0x03d4 IntcAzAudAddService - ok 09:51:00.0988 0x03d4 [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 09:51:00.0994 0x03d4 IntcDAud - ok 09:51:01.0011 0x03d4 [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 09:51:01.0020 0x03d4 Intel(R) Capability Licensing Service Interface - ok 09:51:01.0036 0x03d4 [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 09:51:01.0047 0x03d4 Intel(R) Capability Licensing Service TCP IP Interface - ok 09:51:01.0053 0x03d4 [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe 09:51:01.0055 0x03d4 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok 09:51:01.0059 0x03d4 [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc C:\WINDOWS\system32\drivers\IntelPcc.sys 09:51:01.0061 0x03d4 IntelHSWPcc - ok 09:51:01.0064 0x03d4 [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide C:\WINDOWS\system32\drivers\intelide.sys 09:51:01.0065 0x03d4 intelide - ok 09:51:01.0068 0x03d4 [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 09:51:01.0069 0x03d4 intelpep - ok 09:51:01.0074 0x03d4 [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 09:51:01.0076 0x03d4 intelppm - ok 09:51:01.0079 0x03d4 [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys 09:51:01.0080 0x03d4 IoQos - ok 09:51:01.0083 0x03d4 [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 09:51:01.0085 0x03d4 IpFilterDriver - ok 09:51:01.0102 0x03d4 [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 09:51:01.0115 0x03d4 iphlpsvc - ok 09:51:01.0119 0x03d4 [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 09:51:01.0121 0x03d4 IPMIDRV - ok 09:51:01.0126 0x03d4 [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 09:51:01.0128 0x03d4 IPNAT - ok 09:51:01.0132 0x03d4 [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 09:51:01.0132 0x03d4 IRENUM - ok 09:51:01.0135 0x03d4 [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 09:51:01.0136 0x03d4 isapnp - ok 09:51:01.0143 0x03d4 [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 09:51:01.0147 0x03d4 iScsiPrt - ok 09:51:01.0150 0x03d4 [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT C:\WINDOWS\System32\drivers\ISCTD64.sys 09:51:01.0151 0x03d4 ISCT - ok 09:51:01.0158 0x03d4 [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 09:51:01.0161 0x03d4 ISCTAgent - ok 09:51:01.0168 0x03d4 [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe 09:51:01.0172 0x03d4 iumsvc - ok 09:51:01.0176 0x03d4 [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 09:51:01.0177 0x03d4 iwdbus - ok 09:51:01.0183 0x03d4 [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 09:51:01.0185 0x03d4 jhi_service - ok 09:51:01.0189 0x03d4 [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 09:51:01.0190 0x03d4 kbdclass - ok 09:51:01.0194 0x03d4 [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 09:51:01.0195 0x03d4 kbdhid - ok 09:51:01.0196 0x2538 Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService 09:51:01.0199 0x03d4 [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys 09:51:01.0200 0x03d4 kdnic - ok 09:51:01.0204 0x03d4 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso C:\WINDOWS\system32\lsass.exe 09:51:01.0206 0x03d4 KeyIso - ok 09:51:01.0211 0x03d4 [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 09:51:01.0212 0x03d4 KSecDD - ok 09:51:01.0218 0x03d4 [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 09:51:01.0220 0x03d4 KSecPkg - ok 09:51:01.0223 0x03d4 [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 09:51:01.0224 0x03d4 ksthunk - ok 09:51:01.0233 0x03d4 [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 09:51:01.0238 0x03d4 KtmRm - ok 09:51:01.0247 0x03d4 [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 09:51:01.0252 0x03d4 LanmanServer - ok 09:51:01.0260 0x03d4 [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 09:51:01.0265 0x03d4 LanmanWorkstation - ok 09:51:01.0302 0x03d4 [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe 09:51:01.0326 0x03d4 Lenovo Settings Service - ok 09:51:01.0342 0x03d4 [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe 09:51:01.0349 0x03d4 Lenovo System Agent Service - ok 09:51:01.0361 0x03d4 [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\cammute.exe 09:51:01.0367 0x03d4 LENOVO.CAMMUTE - ok 09:51:01.0372 0x03d4 [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe 09:51:01.0374 0x03d4 LENOVO.MICMUTE - ok 09:51:01.0384 0x03d4 [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe 09:51:01.0390 0x03d4 LENOVO.TPKNRSVC - ok 09:51:01.0403 0x03d4 [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe 09:51:01.0412 0x03d4 LENOVO.TVTVCAM - ok 09:51:01.0416 0x03d4 [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe 09:51:01.0418 0x03d4 Lenovo.VIRTSCRLSVC - ok 09:51:01.0421 0x03d4 [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 09:51:01.0423 0x03d4 lfsvc - ok 09:51:01.0426 0x03d4 [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 09:51:01.0427 0x03d4 LicenseManager - ok 09:51:01.0431 0x03d4 [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 09:51:01.0432 0x03d4 lltdio - ok 09:51:01.0440 0x03d4 [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 09:51:01.0444 0x03d4 lltdsvc - ok 09:51:01.0447 0x03d4 [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 09:51:01.0449 0x03d4 lmhosts - ok 09:51:01.0458 0x03d4 [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 09:51:01.0463 0x03d4 LMS - ok 09:51:01.0474 0x03d4 [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe 09:51:01.0480 0x03d4 LnvHotSpotSvc - ok 09:51:01.0492 0x03d4 [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe 09:51:01.0498 0x03d4 LocationTaskManager - ok 09:51:01.0508 0x03d4 [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe 09:51:01.0512 0x03d4 LSCWinService - ok 09:51:01.0516 0x03d4 [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 09:51:01.0517 0x03d4 LSI_SAS - ok 09:51:01.0522 0x03d4 [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys 09:51:01.0524 0x03d4 LSI_SAS2i - ok 09:51:01.0528 0x03d4 [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys 09:51:01.0529 0x03d4 LSI_SAS3i - ok 09:51:01.0533 0x03d4 [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 09:51:01.0534 0x03d4 LSI_SSS - ok 09:51:01.0549 0x03d4 [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM C:\WINDOWS\System32\lsm.dll 09:51:01.0560 0x03d4 LSM - ok 09:51:01.0565 0x03d4 [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv C:\WINDOWS\system32\drivers\luafv.sys 09:51:01.0567 0x03d4 luafv - ok 09:51:01.0568 0x0768 Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt 09:51:01.0572 0x03d4 [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker C:\WINDOWS\System32\moshost.dll 09:51:01.0574 0x03d4 MapsBroker - ok 09:51:01.0578 0x03d4 [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter C:\WINDOWS\system32\drivers\massfilter.sys 09:51:01.0578 0x03d4 massfilter - ok 09:51:01.0581 0x03d4 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 09:51:01.0582 0x03d4 MBAMProtector - ok 09:51:01.0605 0x03d4 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 09:51:01.0619 0x03d4 MBAMService - ok 09:51:01.0624 0x03d4 [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 09:51:01.0625 0x03d4 MBAMWebAccessControl - ok 09:51:01.0633 0x03d4 [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe 09:51:01.0637 0x03d4 McComponentHostService - ok 09:51:01.0642 0x03d4 [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas C:\WINDOWS\system32\drivers\megasas.sys 09:51:01.0643 0x03d4 megasas - ok 09:51:01.0655 0x03d4 [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr C:\WINDOWS\system32\drivers\megasr.sys 09:51:01.0663 0x03d4 megasr - ok 09:51:01.0667 0x03d4 [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys 09:51:01.0669 0x03d4 MEIx64 - ok 09:51:01.0672 0x03d4 [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll 09:51:01.0674 0x03d4 MessagingService - ok 09:51:01.0682 0x03d4 [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd C:\WINDOWS\System32\drivers\MiraDispKmd.sys 09:51:01.0683 0x03d4 MiraDispKmd - ok 09:51:01.0698 0x03d4 [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys 09:51:01.0707 0x03d4 mlx4_bus - ok 09:51:01.0711 0x03d4 [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys 09:51:01.0712 0x03d4 MMCSS - ok 09:51:01.0715 0x03d4 [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem C:\WINDOWS\system32\drivers\modem.sys 09:51:01.0716 0x03d4 Modem - ok 09:51:01.0718 0x03d4 [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor C:\WINDOWS\System32\drivers\monitor.sys 09:51:01.0719 0x03d4 monitor - ok 09:51:01.0724 0x03d4 [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 09:51:01.0726 0x03d4 mouclass - ok 09:51:01.0729 0x03d4 [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 09:51:01.0729 0x03d4 mouhid - ok 09:51:01.0734 0x03d4 [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 09:51:01.0735 0x03d4 mountmgr - ok 09:51:01.0740 0x03d4 [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 09:51:01.0742 0x03d4 MozillaMaintenance - ok 09:51:01.0746 0x03d4 [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 09:51:01.0747 0x03d4 mpsdrv - ok 09:51:01.0765 0x03d4 [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 09:51:01.0777 0x03d4 MpsSvc - ok 09:51:01.0783 0x03d4 [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 09:51:01.0785 0x03d4 MRxDAV - ok 09:51:01.0795 0x03d4 [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 09:51:01.0800 0x03d4 mrxsmb - ok 09:51:01.0808 0x03d4 [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 09:51:01.0811 0x03d4 mrxsmb10 - ok 09:51:01.0818 0x03d4 [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 09:51:01.0820 0x03d4 mrxsmb20 - ok 09:51:01.0826 0x03d4 [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 09:51:01.0827 0x03d4 MsBridge - ok 09:51:01.0832 0x03d4 [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe 09:51:01.0835 0x03d4 MSDTC - ok 09:51:01.0841 0x03d4 [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 09:51:01.0842 0x03d4 Msfs - ok 09:51:01.0846 0x03d4 [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 09:51:01.0847 0x03d4 msgpiowin32 - ok 09:51:01.0851 0x03d4 [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 09:51:01.0851 0x03d4 mshidkmdf - ok 09:51:01.0855 0x03d4 [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 09:51:01.0855 0x03d4 mshidumdf - ok 09:51:01.0859 0x03d4 [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 09:51:01.0860 0x03d4 msisadrv - ok 09:51:01.0865 0x03d4 [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 09:51:01.0867 0x03d4 MSiSCSI - ok 09:51:01.0870 0x03d4 msiserver - ok 09:51:01.0873 0x03d4 [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys 09:51:01.0874 0x03d4 MSKSSRV - ok 09:51:01.0877 0x03d4 [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 09:51:01.0878 0x03d4 MsLldp - ok 09:51:01.0882 0x03d4 [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys 09:51:01.0882 0x03d4 MSPCLOCK - ok 09:51:01.0885 0x03d4 [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM C:\WINDOWS\system32\DRIVERS\MSPQM.sys 09:51:01.0885 0x03d4 MSPQM - ok 09:51:01.0893 0x03d4 [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 09:51:01.0900 0x03d4 MsRPC - ok 09:51:01.0904 0x03d4 [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 09:51:01.0905 0x03d4 mssmbios - ok 09:51:01.0908 0x03d4 [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE C:\WINDOWS\system32\DRIVERS\MSTEE.sys 09:51:01.0909 0x03d4 MSTEE - ok 09:51:01.0912 0x03d4 [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 09:51:01.0912 0x03d4 MTConfig - ok 09:51:01.0917 0x03d4 [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup C:\WINDOWS\system32\Drivers\mup.sys 09:51:01.0919 0x03d4 Mup - ok 09:51:01.0923 0x03d4 [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 09:51:01.0924 0x03d4 mvumis - ok 09:51:01.0939 0x03d4 [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 09:51:01.0946 0x03d4 NativeWifiP - ok 09:51:01.0952 0x03d4 [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 09:51:01.0955 0x03d4 NcaSvc - ok 09:51:01.0963 0x03d4 [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService C:\WINDOWS\System32\ncbservice.dll 09:51:01.0968 0x03d4 NcbService - ok 09:51:01.0972 0x03d4 [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 09:51:01.0975 0x03d4 NcdAutoSetup - ok 09:51:01.0978 0x03d4 [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys 09:51:01.0980 0x03d4 ndfltr - ok 09:51:02.0002 0x03d4 [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 09:51:02.0016 0x03d4 NDIS - ok 09:51:02.0021 0x03d4 [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 09:51:02.0022 0x03d4 NdisCap - ok 09:51:02.0029 0x03d4 [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 09:51:02.0031 0x03d4 NdisImPlatform - ok 09:51:02.0034 0x03d4 [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 09:51:02.0034 0x03d4 NdisTapi - ok 09:51:02.0038 0x03d4 [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys 09:51:02.0039 0x03d4 Ndisuio - ok 09:51:02.0042 0x03d4 [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 09:51:02.0043 0x03d4 NdisVirtualBus - ok 09:51:02.0049 0x03d4 [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys 09:51:02.0051 0x03d4 NdisWan - ok 09:51:02.0057 0x03d4 [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 09:51:02.0059 0x03d4 ndiswanlegacy - ok 09:51:02.0063 0x03d4 [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys 09:51:02.0064 0x03d4 ndproxy - ok 09:51:02.0069 0x03d4 [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 09:51:02.0070 0x03d4 Ndu - ok 09:51:02.0075 0x03d4 [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys 09:51:02.0076 0x03d4 NetBIOS - ok 09:51:02.0084 0x03d4 [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 09:51:02.0088 0x03d4 NetBT - ok 09:51:02.0092 0x03d4 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon C:\WINDOWS\system32\lsass.exe 09:51:02.0093 0x03d4 Netlogon - ok 09:51:02.0100 0x03d4 [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman C:\WINDOWS\System32\netman.dll 09:51:02.0105 0x03d4 Netman - ok 09:51:02.0117 0x03d4 [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 09:51:02.0125 0x03d4 netprofm - ok 09:51:02.0131 0x03d4 [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll 09:51:02.0135 0x03d4 NetSetupSvc - ok 09:51:02.0141 0x03d4 [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 09:51:02.0143 0x03d4 NetTcpPortSharing - ok 09:51:02.0202 0x03d4 [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys 09:51:02.0246 0x03d4 NETwNb64 - ok 09:51:02.0260 0x03d4 [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 09:51:02.0264 0x03d4 NgcCtnrSvc - ok 09:51:02.0278 0x03d4 [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll 09:51:02.0287 0x03d4 NgcSvc - ok 09:51:02.0296 0x03d4 [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe 09:51:02.0300 0x03d4 NitroDriverReadSpool9 - ok 09:51:02.0309 0x03d4 [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe 09:51:02.0314 0x03d4 NitroUpdateService - ok 09:51:02.0324 0x03d4 [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 09:51:02.0329 0x03d4 NlaSvc - ok 09:51:02.0347 0x03d4 [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc C:\WINDOWS\SysWOW64\NLSSRV32.EXE 09:51:02.0348 0x03d4 nlsX86cc - ok 09:51:02.0352 0x03d4 [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 09:51:02.0353 0x03d4 Npfs - ok 09:51:02.0356 0x03d4 [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 09:51:02.0357 0x03d4 npsvctrig - ok 09:51:02.0360 0x03d4 [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi C:\WINDOWS\system32\nsisvc.dll 09:51:02.0362 0x03d4 nsi - ok 09:51:02.0365 0x03d4 [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 09:51:02.0366 0x03d4 nsiproxy - ok 09:51:02.0407 0x03d4 [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys 09:51:02.0437 0x03d4 NTFS - ok 09:51:02.0442 0x03d4 [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null C:\WINDOWS\system32\drivers\Null.sys 09:51:02.0443 0x03d4 Null - ok 09:51:02.0448 0x03d4 [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 09:51:02.0450 0x03d4 nvraid - ok 09:51:02.0455 0x03d4 [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 09:51:02.0458 0x03d4 nvstor - ok 09:51:02.0460 0x1bf8 Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam 09:51:02.0463 0x03d4 [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 09:51:02.0465 0x03d4 nv_agp - ok 09:51:02.0468 0x03d4 [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI C:\WINDOWS\SysWOW64\drivers\omnismi.sys 09:51:02.0469 0x03d4 OMNISMI - ok 09:51:02.0477 0x03d4 [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 09:51:02.0482 0x03d4 OneSyncSvc - ok 09:51:02.0494 0x03d4 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:51:02.0496 0x03d4 ose - ok 09:51:02.0505 0x03d4 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 09:51:02.0511 0x03d4 p2pimsvc - ok 09:51:02.0521 0x03d4 [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc C:\WINDOWS\system32\p2psvc.dll 09:51:02.0528 0x03d4 p2psvc - ok 09:51:02.0533 0x03d4 [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport C:\WINDOWS\System32\drivers\parport.sys 09:51:02.0535 0x03d4 Parport - ok 09:51:02.0539 0x03d4 [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 09:51:02.0541 0x03d4 partmgr - ok 09:51:02.0553 0x03d4 [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 09:51:02.0561 0x03d4 PcaSvc - ok 09:51:02.0570 0x03d4 [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci C:\WINDOWS\system32\drivers\pci.sys 09:51:02.0574 0x03d4 pci - ok 09:51:02.0577 0x03d4 [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 09:51:02.0578 0x03d4 pciide - ok |
10.03.2016, 10:01 | #8 |
| TDSSKiller Report Teil 2Code:
ATTFilter 09:51:02.0582 0x03d4 [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 09:51:02.0584 0x03d4 pcmcia - ok 09:51:02.0587 0x03d4 [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 09:51:02.0588 0x03d4 pcw - ok 09:51:02.0593 0x03d4 [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc C:\WINDOWS\system32\drivers\pdc.sys 09:51:02.0595 0x03d4 pdc - ok 09:51:02.0610 0x03d4 [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 09:51:02.0619 0x03d4 PEAUTH - ok 09:51:02.0657 0x03d4 [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll 09:51:02.0683 0x03d4 PeerDistSvc - ok 09:51:02.0689 0x03d4 [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys 09:51:02.0690 0x03d4 percsas2i - ok 09:51:02.0694 0x03d4 [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys 09:51:02.0695 0x03d4 percsas3i - ok 09:51:02.0699 0x03d4 [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 09:51:02.0700 0x03d4 PerfHost - ok 09:51:02.0720 0x03d4 [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll 09:51:02.0730 0x03d4 PhoneSvc - ok 09:51:02.0740 0x03d4 [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 09:51:02.0745 0x03d4 PimIndexMaintenanceSvc - ok 09:51:02.0778 0x03d4 [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla C:\WINDOWS\system32\pla.dll 09:51:02.0799 0x03d4 pla - ok 09:51:02.0804 0x03d4 [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 09:51:02.0807 0x03d4 PlugPlay - ok 09:51:02.0811 0x03d4 [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 09:51:02.0812 0x03d4 PNRPAutoReg - ok 09:51:02.0820 0x03d4 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 09:51:02.0825 0x03d4 PNRPsvc - ok 09:51:02.0835 0x03d4 [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 09:51:02.0840 0x03d4 PolicyAgent - ok 09:51:02.0846 0x03d4 [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power C:\WINDOWS\system32\umpo.dll 09:51:02.0849 0x03d4 Power - ok 09:51:02.0879 0x03d4 [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE 09:51:02.0902 0x03d4 Power Manager DBC Service - ok 09:51:02.0908 0x03d4 [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys 09:51:02.0909 0x03d4 PptpMiniport - ok 09:51:02.0972 0x03d4 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 09:51:02.0989 0x25dc Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c 09:51:03.0014 0x03d4 PrintNotify - ok 09:51:03.0021 0x03d4 [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor C:\WINDOWS\System32\drivers\processr.sys 09:51:03.0024 0x03d4 Processor - ok 09:51:03.0032 0x03d4 [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc C:\WINDOWS\system32\profsvc.dll 09:51:03.0037 0x03d4 ProfSvc - ok 09:51:03.0043 0x03d4 [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched C:\WINDOWS\system32\drivers\pacer.sys 09:51:03.0045 0x03d4 Psched - ok 09:51:03.0049 0x03d4 [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe 09:51:03.0050 0x03d4 QuickControlMasterSvc - ok 09:51:03.0055 0x03d4 [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe 09:51:03.0057 0x03d4 QuickControlService - ok 09:51:03.0065 0x03d4 [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE C:\WINDOWS\system32\qwave.dll 09:51:03.0069 0x03d4 QWAVE - ok 09:51:03.0073 0x03d4 [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 09:51:03.0074 0x03d4 QWAVEdrv - ok 09:51:03.0077 0x03d4 [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 09:51:03.0078 0x03d4 RasAcd - ok 09:51:03.0083 0x03d4 [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys 09:51:03.0084 0x03d4 RasAgileVpn - ok 09:51:03.0089 0x03d4 [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto C:\WINDOWS\System32\rasauto.dll 09:51:03.0092 0x03d4 RasAuto - ok 09:51:03.0096 0x03d4 [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys 09:51:03.0098 0x03d4 Rasl2tp - ok 09:51:03.0112 0x03d4 [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan C:\WINDOWS\System32\rasmans.dll 09:51:03.0121 0x03d4 RasMan - ok 09:51:03.0126 0x03d4 [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 09:51:03.0128 0x03d4 RasPppoe - ok 09:51:03.0131 0x03d4 [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys 09:51:03.0133 0x03d4 RasSstp - ok 09:51:03.0142 0x03d4 [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 09:51:03.0148 0x03d4 rdbss - ok 09:51:03.0152 0x03d4 [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 09:51:03.0153 0x03d4 rdpbus - ok 09:51:03.0159 0x03d4 [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 09:51:03.0162 0x03d4 RDPDR - ok 09:51:03.0167 0x03d4 [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 09:51:03.0168 0x03d4 RdpVideoMiniport - ok 09:51:03.0176 0x03d4 [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 09:51:03.0179 0x03d4 rdyboost - ok 09:51:03.0198 0x03d4 [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys 09:51:03.0214 0x03d4 ReFSv1 - ok 09:51:03.0227 0x03d4 [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 09:51:03.0234 0x03d4 RemoteAccess - ok 09:51:03.0240 0x03d4 [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 09:51:03.0243 0x03d4 RemoteRegistry - ok 09:51:03.0264 0x03d4 [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 09:51:03.0279 0x03d4 RetailDemo - ok 09:51:03.0285 0x03d4 [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 09:51:03.0287 0x03d4 RFCOMM - ok 09:51:03.0292 0x03d4 [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 09:51:03.0294 0x03d4 RpcEptMapper - ok 09:51:03.0297 0x03d4 [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator C:\WINDOWS\system32\locator.exe 09:51:03.0298 0x03d4 RpcLocator - ok 09:51:03.0316 0x03d4 [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs C:\WINDOWS\system32\rpcss.dll 09:51:03.0328 0x03d4 RpcSs - ok 09:51:03.0333 0x03d4 [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 09:51:03.0334 0x03d4 rspndr - ok 09:51:03.0349 0x03d4 [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER C:\WINDOWS\system32\DRIVERS\RtsPer.sys 09:51:03.0359 0x03d4 RTSPER - ok 09:51:03.0362 0x03d4 [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 09:51:03.0363 0x03d4 s3cap - ok 09:51:03.0366 0x03d4 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs C:\WINDOWS\system32\lsass.exe 09:51:03.0368 0x03d4 SamSs - ok 09:51:03.0373 0x03d4 [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 09:51:03.0374 0x03d4 sbp2port - ok 09:51:03.0381 0x03d4 [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 09:51:03.0387 0x03d4 SCardSvr - ok 09:51:03.0394 0x03d4 [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 09:51:03.0397 0x03d4 ScDeviceEnum - ok 09:51:03.0400 0x03d4 [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 09:51:03.0401 0x03d4 scfilter - ok 09:51:03.0420 0x03d4 [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule C:\WINDOWS\system32\schedsvc.dll 09:51:03.0434 0x03d4 Schedule - ok 09:51:03.0441 0x03d4 [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 09:51:03.0443 0x03d4 SCPolicySvc - ok 09:51:03.0450 0x03d4 [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 09:51:03.0456 0x03d4 sdbus - ok 09:51:03.0462 0x03d4 [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 09:51:03.0465 0x03d4 SDRSVC - ok 09:51:03.0469 0x03d4 [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 09:51:03.0471 0x03d4 sdstor - ok 09:51:03.0475 0x03d4 [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon C:\WINDOWS\system32\seclogon.dll 09:51:03.0476 0x03d4 seclogon - ok 09:51:03.0480 0x03d4 [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS C:\WINDOWS\System32\sens.dll 09:51:03.0482 0x03d4 SENS - ok 09:51:03.0508 0x03d4 [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 09:51:03.0526 0x03d4 SensorDataService - ok 09:51:03.0535 0x03d4 [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService C:\WINDOWS\system32\SensorService.dll 09:51:03.0541 0x03d4 SensorService - ok 09:51:03.0546 0x03d4 [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 09:51:03.0550 0x03d4 SensrSvc - ok 09:51:03.0554 0x03d4 [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 09:51:03.0555 0x03d4 SerCx - ok 09:51:03.0561 0x03d4 [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 09:51:03.0563 0x03d4 SerCx2 - ok 09:51:03.0566 0x03d4 [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 09:51:03.0567 0x03d4 Serenum - ok 09:51:03.0571 0x03d4 [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial C:\WINDOWS\System32\drivers\serial.sys 09:51:03.0572 0x03d4 Serial - ok 09:51:03.0576 0x03d4 [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 09:51:03.0576 0x03d4 sermouse - ok 09:51:03.0589 0x03d4 [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv C:\WINDOWS\system32\sessenv.dll 09:51:03.0595 0x03d4 SessionEnv - ok 09:51:03.0598 0x03d4 [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 09:51:03.0599 0x03d4 sfloppy - ok 09:51:03.0609 0x03d4 [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 09:51:03.0616 0x03d4 SharedAccess - ok 09:51:03.0629 0x03d4 [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 09:51:03.0638 0x03d4 ShellHWDetection - ok 09:51:03.0644 0x03d4 [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf C:\WINDOWS\system32\DRIVERS\Apsx64.sys 09:51:03.0646 0x03d4 Shockprf - ok 09:51:03.0649 0x03d4 [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 09:51:03.0650 0x03d4 SiSRaid2 - ok 09:51:03.0654 0x03d4 [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 09:51:03.0655 0x03d4 SiSRaid4 - ok 09:51:03.0664 0x03d4 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 09:51:03.0668 0x03d4 SkypeUpdate - ok 09:51:03.0672 0x03d4 [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys 09:51:03.0674 0x03d4 SmbDrvI - ok 09:51:03.0677 0x03d4 [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver C:\WINDOWS\system32\DRIVERS\smi.sys 09:51:03.0677 0x03d4 SMIDriver - ok 09:51:03.0681 0x03d4 [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost C:\WINDOWS\System32\smphost.dll 09:51:03.0682 0x03d4 smphost - ok 09:51:03.0698 0x03d4 [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 09:51:03.0707 0x03d4 SmsRouter - ok 09:51:03.0713 0x03d4 [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 09:51:03.0715 0x03d4 SNMPTRAP - ok 09:51:03.0727 0x03d4 [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 09:51:03.0733 0x03d4 spaceport - ok 09:51:03.0737 0x03d4 [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 09:51:03.0739 0x03d4 SpbCx - ok 09:51:03.0744 0x03d4 [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe 09:51:03.0745 0x03d4 SpeedupService - ok 09:51:03.0761 0x03d4 [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler C:\WINDOWS\System32\spoolsv.exe 09:51:03.0772 0x03d4 Spooler - ok 09:51:03.0879 0x03d4 [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc C:\WINDOWS\system32\sppsvc.exe 09:51:03.0960 0x03d4 sppsvc - ok 09:51:03.0984 0x03d4 [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys 09:51:03.0987 0x2538 Object send P2P result: true 09:51:03.0997 0x03d4 SPUVCbv - ok 09:51:04.0007 0x03d4 [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 09:51:04.0012 0x03d4 srv - ok 09:51:04.0027 0x03d4 [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 09:51:04.0035 0x03d4 srv2 - ok 09:51:04.0042 0x03d4 [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 09:51:04.0045 0x03d4 srvnet - ok 09:51:04.0053 0x03d4 [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 09:51:04.0057 0x03d4 SSDPSRV - ok 09:51:04.0063 0x03d4 [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 09:51:04.0067 0x03d4 SstpSvc - ok 09:51:04.0115 0x03d4 [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll 09:51:04.0150 0x03d4 StateRepository - ok 09:51:04.0159 0x03d4 [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 09:51:04.0160 0x03d4 stexstor - ok 09:51:04.0174 0x03d4 [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc C:\WINDOWS\System32\wiaservc.dll 09:51:04.0183 0x03d4 stisvc - ok 09:51:04.0188 0x03d4 [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 09:51:04.0191 0x03d4 storahci - ok 09:51:04.0195 0x03d4 [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 09:51:04.0196 0x03d4 storflt - ok 09:51:04.0199 0x03d4 [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 09:51:04.0201 0x03d4 stornvme - ok 09:51:04.0205 0x03d4 [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys 09:51:04.0206 0x03d4 storqosflt - ok 09:51:04.0207 0x0768 Object send P2P result: true 09:51:04.0207 0x0768 Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost 09:51:04.0221 0x03d4 [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc C:\WINDOWS\system32\storsvc.dll 09:51:04.0229 0x03d4 StorSvc - ok 09:51:04.0233 0x03d4 [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs C:\WINDOWS\system32\drivers\storufs.sys 09:51:04.0234 0x03d4 storufs - ok 09:51:04.0237 0x03d4 [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 09:51:04.0238 0x03d4 storvsc - ok 09:51:04.0243 0x03d4 [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService C:\Program Files (x86)\Lenovo\System Update\SUService.exe 09:51:04.0243 0x03d4 SUService - ok 09:51:04.0246 0x03d4 [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc C:\WINDOWS\system32\svsvc.dll 09:51:04.0247 0x03d4 svsvc - ok 09:51:04.0250 0x03d4 [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum C:\WINDOWS\System32\drivers\swenum.sys 09:51:04.0251 0x03d4 swenum - ok 09:51:04.0262 0x03d4 [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv C:\WINDOWS\System32\swprv.dll 09:51:04.0269 0x03d4 swprv - ok 09:51:04.0274 0x03d4 [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 09:51:04.0275 0x03d4 Synth3dVsc - ok 09:51:04.0289 0x03d4 [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 09:51:04.0298 0x03d4 SynTP - ok 09:51:04.0309 0x03d4 [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe 09:51:04.0312 0x03d4 SynTPEnhService - ok 09:51:04.0333 0x03d4 [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain C:\WINDOWS\system32\sysmain.dll 09:51:04.0348 0x03d4 SysMain - ok 09:51:04.0358 0x03d4 [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 09:51:04.0364 0x03d4 SystemEventsBroker - ok 09:51:04.0369 0x03d4 [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 09:51:04.0373 0x03d4 TabletInputService - ok 09:51:04.0382 0x03d4 [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 09:51:04.0387 0x03d4 TapiSrv - ok 09:51:04.0469 0x03d4 [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 09:51:04.0499 0x03d4 Tcpip - ok 09:51:04.0545 0x03d4 [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys 09:51:04.0575 0x03d4 Tcpip6 - ok 09:51:04.0585 0x03d4 [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 09:51:04.0586 0x03d4 tcpipreg - ok 09:51:04.0593 0x03d4 [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 09:51:04.0595 0x03d4 tdx - ok 09:51:04.0598 0x03d4 [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 09:51:04.0599 0x03d4 terminpt - ok 09:51:04.0618 0x03d4 [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService C:\WINDOWS\System32\termsrv.dll 09:51:04.0633 0x03d4 TermService - ok 09:51:04.0637 0x03d4 [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes C:\WINDOWS\system32\themeservice.dll 09:51:04.0639 0x03d4 Themes - ok 09:51:04.0647 0x03d4 [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe 09:51:04.0651 0x03d4 TieringEngineService - ok 09:51:04.0662 0x03d4 [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll 09:51:04.0670 0x03d4 tiledatamodelsvc - ok 09:51:04.0675 0x03d4 [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 09:51:04.0679 0x03d4 TimeBroker - ok 09:51:04.0682 0x03d4 [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN C:\WINDOWS\system32\DRIVERS\ApsHM64.sys 09:51:04.0683 0x03d4 TPDIGIMN - ok 09:51:04.0686 0x03d4 [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC C:\WINDOWS\system32\TPHDEXLG64.exe 09:51:04.0688 0x03d4 TPHDEXLGSVC - ok 09:51:04.0695 0x03d4 [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe 09:51:04.0697 0x03d4 TPHKLOAD - ok 09:51:04.0703 0x03d4 [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM C:\WINDOWS\System32\drivers\tpm.sys 09:51:04.0706 0x03d4 TPM - ok 09:51:04.0709 0x03d4 [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF C:\WINDOWS\system32\drivers\Tppwr64v.sys 09:51:04.0710 0x03d4 TPPWRIF - ok 09:51:04.0714 0x03d4 [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks C:\WINDOWS\System32\trkwks.dll 09:51:04.0717 0x03d4 TrkWks - ok 09:51:04.0721 0x03d4 [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 09:51:04.0723 0x03d4 TrustedInstaller - ok 09:51:04.0728 0x03d4 [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys 09:51:04.0729 0x03d4 tsusbflt - ok 09:51:04.0732 0x03d4 [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 09:51:04.0733 0x03d4 TsUsbGD - ok 09:51:04.0738 0x03d4 [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys 09:51:04.0740 0x03d4 tunnel - ok 09:51:04.0745 0x03d4 [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll 09:51:04.0747 0x03d4 tzautoupdate - ok 09:51:04.0751 0x03d4 [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 09:51:04.0752 0x03d4 uagp35 - ok 09:51:04.0756 0x03d4 [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 09:51:04.0758 0x03d4 UASPStor - ok 09:51:04.0761 0x03d4 [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 09:51:04.0762 0x03d4 UcmCx0101 - ok 09:51:04.0766 0x03d4 [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 09:51:04.0767 0x03d4 UcmUcsi - ok 09:51:04.0773 0x03d4 [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys 09:51:04.0776 0x03d4 Ucx01000 - ok 09:51:04.0779 0x03d4 [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys 09:51:04.0780 0x03d4 UdeCx - ok 09:51:04.0788 0x03d4 [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 09:51:04.0792 0x03d4 udfs - ok 09:51:04.0796 0x03d4 [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 09:51:04.0797 0x03d4 UEFI - ok 09:51:04.0803 0x03d4 [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 09:51:04.0807 0x03d4 Ufx01000 - ok 09:51:04.0811 0x03d4 [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys 09:51:04.0812 0x03d4 UfxChipidea - ok 09:51:04.0817 0x03d4 [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys 09:51:04.0820 0x03d4 ufxsynopsys - ok 09:51:04.0826 0x03d4 [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 09:51:04.0828 0x03d4 UI0Detect - ok 09:51:04.0832 0x03d4 [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 09:51:04.0833 0x03d4 uliagpkx - ok 09:51:04.0837 0x03d4 [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 09:51:04.0838 0x03d4 umbus - ok 09:51:04.0841 0x03d4 [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 09:51:04.0842 0x03d4 UmPass - ok 09:51:04.0851 0x03d4 [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 09:51:04.0856 0x03d4 UmRdpService - ok 09:51:04.0880 0x03d4 [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 09:51:04.0897 0x03d4 UnistoreSvc - ok 09:51:04.0914 0x03d4 [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost C:\WINDOWS\System32\upnphost.dll 09:51:04.0921 0x03d4 upnphost - ok 09:51:04.0925 0x03d4 [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 09:51:04.0926 0x03d4 UrsChipidea - ok 09:51:04.0929 0x03d4 [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 09:51:04.0930 0x03d4 UrsCx01000 - ok 09:51:04.0933 0x03d4 [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 09:51:04.0934 0x03d4 UrsSynopsys - ok 09:51:04.0942 0x03d4 [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub C:\WINDOWS\System32\drivers\usb3Hub.sys 09:51:04.0945 0x03d4 usb3Hub - ok 09:51:04.0950 0x03d4 [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 09:51:04.0952 0x03d4 usbccgp - ok 09:51:04.0957 0x03d4 [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 09:51:04.0959 0x03d4 usbcir - ok 09:51:04.0963 0x03d4 [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 09:51:04.0964 0x03d4 usbehci - ok 09:51:04.0976 0x03d4 [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 09:51:04.0982 0x03d4 usbhub - ok 09:51:04.0995 0x03d4 [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 09:51:05.0002 0x03d4 USBHUB3 - ok 09:51:05.0006 0x03d4 [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 09:51:05.0007 0x03d4 usbohci - ok 09:51:05.0009 0x03d4 [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 09:51:05.0010 0x03d4 usbprint - ok 09:51:05.0013 0x03d4 [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 09:51:05.0014 0x03d4 usbscan - ok 09:51:05.0018 0x03d4 [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser C:\WINDOWS\System32\drivers\usbser.sys 09:51:05.0019 0x03d4 usbser - ok 09:51:05.0025 0x03d4 [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 09:51:05.0026 0x03d4 USBSTOR - ok 09:51:05.0030 0x03d4 [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 09:51:05.0031 0x03d4 usbuhci - ok 09:51:05.0037 0x03d4 [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 09:51:05.0040 0x03d4 usbvideo - ok 09:51:05.0050 0x03d4 [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 09:51:05.0054 0x03d4 USBXHCI - ok 09:51:05.0084 0x03d4 [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 09:51:05.0104 0x03d4 UserDataSvc - ok 09:51:05.0129 0x03d4 [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager C:\WINDOWS\System32\usermgr.dll 09:51:05.0143 0x03d4 UserManager - ok 09:51:05.0151 0x03d4 [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc C:\WINDOWS\system32\usocore.dll 09:51:05.0157 0x03d4 UsoSvc - ok 09:51:05.0161 0x03d4 [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe 09:51:05.0163 0x03d4 valWBFPolicyService - ok 09:51:05.0168 0x03d4 [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc C:\WINDOWS\system32\valWbioSyncSvc.exe 09:51:05.0170 0x03d4 valWbioSyncSvc - ok 09:51:05.0173 0x03d4 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc C:\WINDOWS\system32\lsass.exe 09:51:05.0175 0x03d4 VaultSvc - ok 09:51:05.0179 0x03d4 [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 09:51:05.0180 0x03d4 vdrvroot - ok 09:51:05.0194 0x03d4 [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds C:\WINDOWS\System32\vds.exe 09:51:05.0204 0x03d4 vds - ok 09:51:05.0211 0x03d4 [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 09:51:05.0214 0x03d4 VerifierExt - ok 09:51:05.0227 0x03d4 [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 09:51:05.0237 0x03d4 vhdmp - ok 09:51:05.0241 0x03d4 [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf C:\WINDOWS\System32\drivers\vhf.sys 09:51:05.0242 0x03d4 vhf - ok 09:51:05.0246 0x03d4 [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 09:51:05.0248 0x03d4 vmbus - ok 09:51:05.0251 0x03d4 [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 09:51:05.0251 0x03d4 VMBusHID - ok 09:51:05.0262 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 09:51:05.0269 0x03d4 vmicguestinterface - ok 09:51:05.0280 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 09:51:05.0286 0x03d4 vmicheartbeat - ok 09:51:05.0297 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 09:51:05.0304 0x03d4 vmickvpexchange - ok 09:51:05.0313 0x2b18 Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC 09:51:05.0315 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 09:51:05.0323 0x03d4 vmicrdv - ok 09:51:05.0334 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 09:51:05.0341 0x03d4 vmicshutdown - ok 09:51:05.0353 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 09:51:05.0361 0x03d4 vmictimesync - ok 09:51:05.0371 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll 09:51:05.0378 0x03d4 vmicvmsession - ok 09:51:05.0389 0x03d4 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss C:\WINDOWS\System32\ICSvc.dll 09:51:05.0397 0x03d4 vmicvss - ok 09:51:05.0401 0x03d4 [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 09:51:05.0402 0x03d4 volmgr - ok 09:51:05.0411 0x03d4 [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 09:51:05.0415 0x03d4 volmgrx - ok 09:51:05.0425 0x03d4 [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 09:51:05.0431 0x03d4 volsnap - ok 09:51:05.0437 0x03d4 [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 09:51:05.0438 0x03d4 vpci - ok 09:51:05.0444 0x03d4 [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 09:51:05.0446 0x03d4 vsmraid - ok 09:51:05.0474 0x03d4 [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS C:\WINDOWS\system32\vssvc.exe 09:51:05.0494 0x03d4 VSS - ok 09:51:05.0503 0x03d4 [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 09:51:05.0507 0x03d4 VSTXRAID - ok 09:51:05.0509 0x03d4 [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 09:51:05.0511 0x03d4 vwifibus - ok 09:51:05.0515 0x03d4 [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys 09:51:05.0516 0x03d4 vwififlt - ok 09:51:05.0519 0x03d4 [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys 09:51:05.0520 0x03d4 vwifimp - ok 09:51:05.0533 0x03d4 [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time C:\WINDOWS\system32\w32time.dll 09:51:05.0542 0x03d4 W32Time - ok 09:51:05.0547 0x03d4 [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 09:51:05.0548 0x03d4 WacomPen - ok 09:51:05.0560 0x03d4 [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService C:\WINDOWS\system32\WalletService.dll 09:51:05.0567 0x03d4 WalletService - ok 09:51:05.0571 0x03d4 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 09:51:05.0573 0x03d4 wanarp - ok 09:51:05.0576 0x03d4 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 09:51:05.0577 0x03d4 wanarpv6 - ok 09:51:05.0605 0x03d4 [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine C:\WINDOWS\system32\wbengine.exe 09:51:05.0626 0x03d4 wbengine - ok 09:51:05.0640 0x03d4 [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 09:51:05.0649 0x03d4 WbioSrvc - ok 09:51:05.0664 0x03d4 [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 09:51:05.0673 0x03d4 Wcmsvc - ok 09:51:05.0685 0x03d4 [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 09:51:05.0692 0x03d4 wcncsvc - ok 09:51:05.0696 0x03d4 [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 09:51:05.0698 0x03d4 WcsPlugInService - ok 09:51:05.0702 0x03d4 [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 09:51:05.0703 0x03d4 WdBoot - ok 09:51:05.0718 0x03d4 [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 09:51:05.0729 0x03d4 Wdf01000 - ok 09:51:05.0738 0x03d4 [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 09:51:05.0743 0x03d4 WdFilter - ok 09:51:05.0749 0x03d4 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 09:51:05.0753 0x03d4 WdiServiceHost - ok 09:51:05.0758 0x03d4 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 09:51:05.0760 0x03d4 WdiSystemHost - ok 09:51:05.0776 0x03d4 [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys 09:51:05.0785 0x03d4 wdiwifi - ok 09:51:05.0790 0x03d4 [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 09:51:05.0792 0x03d4 WdNisDrv - ok 09:51:05.0794 0x03d4 WdNisSvc - ok 09:51:05.0801 0x03d4 [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient C:\WINDOWS\System32\webclnt.dll 09:51:05.0805 0x03d4 WebClient - ok 09:51:05.0813 0x03d4 [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 09:51:05.0817 0x03d4 Wecsvc - ok 09:51:05.0820 0x03d4 [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 09:51:05.0823 0x03d4 WEPHOSTSVC - ok 09:51:05.0827 0x03d4 [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 09:51:05.0830 0x03d4 wercplsupport - ok 09:51:05.0835 0x03d4 [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc C:\WINDOWS\System32\WerSvc.dll 09:51:05.0838 0x03d4 WerSvc - ok 09:51:05.0844 0x03d4 [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys 09:51:05.0846 0x03d4 WFPLWFS - ok 09:51:05.0850 0x03d4 [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 09:51:05.0853 0x03d4 WiaRpc - ok 09:51:05.0857 0x03d4 [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 09:51:05.0858 0x03d4 WIMMount - ok 09:51:05.0859 0x03d4 WinDefend - ok 09:51:05.0866 0x03d4 [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 09:51:05.0868 0x03d4 WindowsTrustedRT - ok 09:51:05.0871 0x03d4 [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 09:51:05.0871 0x03d4 WindowsTrustedRTProxy - ok 09:51:05.0888 0x03d4 [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 09:51:05.0900 0x03d4 WinHttpAutoProxySvc - ok 09:51:05.0903 0x03d4 [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys 09:51:05.0904 0x03d4 WinMad - ok 09:51:05.0915 0x03d4 [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 09:51:05.0918 0x03d4 Winmgmt - ok 09:51:05.0965 0x03d4 [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM C:\WINDOWS\system32\WsmSvc.dll 09:51:06.0000 0x03d4 WinRM - ok 09:51:06.0013 0x03d4 [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 09:51:06.0014 0x03d4 WINUSB - ok 09:51:06.0018 0x03d4 [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys 09:51:06.0019 0x03d4 WinVerbs - ok 09:51:06.0076 0x03d4 [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 09:51:06.0107 0x03d4 WlanSvc - ok 09:51:06.0147 0x03d4 [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 09:51:06.0173 0x03d4 wlidsvc - ok 09:51:06.0178 0x03d4 [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 09:51:06.0179 0x03d4 WmiAcpi - ok 09:51:06.0186 0x03d4 [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 09:51:06.0190 0x03d4 wmiApSrv - ok 09:51:06.0192 0x03d4 WMPNetworkSvc - ok 09:51:06.0199 0x03d4 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys 09:51:06.0202 0x03d4 Wof - ok 09:51:06.0237 0x03d4 [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 09:51:06.0262 0x03d4 workfolderssvc - ok 09:51:06.0268 0x03d4 [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 09:51:06.0269 0x03d4 wpcfltr - ok 09:51:06.0273 0x03d4 [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 09:51:06.0276 0x03d4 WPDBusEnum - ok 09:51:06.0279 0x03d4 [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 09:51:06.0279 0x03d4 WpdUpFltr - ok 09:51:06.0284 0x03d4 [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService C:\WINDOWS\system32\WpnService.dll 09:51:06.0286 0x03d4 WpnService - ok 09:51:06.0292 0x03d4 [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001 C:\WINDOWS\system32\drivers\WPRO_41_2001.sys 09:51:06.0293 0x03d4 WPRO_41_2001 - ok 09:51:06.0296 0x03d4 [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 09:51:06.0297 0x03d4 ws2ifsl - ok 09:51:06.0303 0x03d4 [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 09:51:06.0307 0x03d4 wscsvc - ok 09:51:06.0310 0x03d4 [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 09:51:06.0311 0x03d4 WSDPrintDevice - ok 09:51:06.0314 0x03d4 [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys 09:51:06.0314 0x03d4 WSDScan - ok 09:51:06.0317 0x03d4 WSearch - ok 09:51:06.0326 0x1bf8 Object send P2P result: true 09:51:06.0379 0x03d4 [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService C:\WINDOWS\System32\WSService.dll 09:51:06.0424 0x03d4 WSService - ok 09:51:06.0470 0x03d4 [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv C:\WINDOWS\system32\wuaueng.dll 09:51:06.0500 0x03d4 wuauserv - ok 09:51:06.0509 0x03d4 [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 09:51:06.0511 0x03d4 WudfPf - ok 09:51:06.0518 0x03d4 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 09:51:06.0521 0x03d4 WUDFRd - ok 09:51:06.0526 0x03d4 [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 09:51:06.0529 0x03d4 wudfsvc - ok 09:51:06.0535 0x03d4 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:51:06.0539 0x03d4 WUDFWpdFs - ok 09:51:06.0545 0x03d4 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:51:06.0548 0x03d4 WUDFWpdMtp - ok 09:51:06.0572 0x03d4 [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 09:51:06.0588 0x03d4 WwanSvc - ok 09:51:06.0608 0x03d4 [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 09:51:06.0614 0x25dc Object send P2P result: true 09:51:06.0614 0x25dc Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C 09:51:06.0623 0x03d4 XblAuthManager - ok 09:51:06.0644 0x03d4 [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 09:51:06.0660 0x03d4 XblGameSave - ok 09:51:06.0667 0x03d4 [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 09:51:06.0671 0x03d4 xboxgip - ok 09:51:06.0691 0x03d4 [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 09:51:06.0707 0x03d4 XboxNetApiSvc - ok 09:51:06.0710 0x03d4 [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 09:51:06.0711 0x03d4 xinputhid - ok 09:51:06.0716 0x03d4 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys 09:51:06.0718 0x03d4 ZTEusbmdm6k - ok 09:51:06.0723 0x03d4 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys 09:51:06.0725 0x03d4 ZTEusbnmea - ok 09:51:06.0730 0x03d4 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys 09:51:06.0732 0x03d4 ZTEusbser6k - ok 09:51:06.0733 0x03d4 ================ Scan global =============================== 09:51:06.0738 0x03d4 [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll 09:51:06.0744 0x03d4 [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll 09:51:06.0752 0x03d4 [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll 09:51:06.0763 0x03d4 [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe 09:51:06.0771 0x03d4 [ Global ] - ok 09:51:06.0771 0x03d4 ================ Scan MBR ================================== 09:51:06.0774 0x03d4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 09:51:06.0782 0x03d4 \Device\Harddisk2\DR7 - ok 09:51:06.0784 0x03d4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 09:51:06.0789 0x03d4 \Device\Harddisk0\DR0 - ok 09:51:06.0804 0x03d4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4 09:51:06.0808 0x03d4 \Device\Harddisk1\DR4 - ok 09:51:06.0811 0x03d4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 09:51:06.0816 0x03d4 \Device\Harddisk2\DR7 - ok 09:51:06.0817 0x03d4 ================ Scan VBR ================================== 09:51:06.0818 0x03d4 [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 09:51:06.0838 0x0768 Object send P2P result: true 09:51:07.0166 0x03d4 \Device\Harddisk2\DR7\Partition1 - ok 09:51:07.0176 0x03d4 [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1 09:51:07.0181 0x03d4 \Device\Harddisk0\DR0\Partition1 - ok 09:51:07.0189 0x03d4 [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2 09:51:07.0193 0x03d4 \Device\Harddisk0\DR0\Partition2 - ok 09:51:07.0202 0x03d4 [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3 09:51:07.0202 0x03d4 \Device\Harddisk0\DR0\Partition3 - ok 09:51:07.0211 0x03d4 [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4 09:51:07.0213 0x03d4 \Device\Harddisk0\DR0\Partition4 - ok 09:51:07.0224 0x03d4 [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5 09:51:07.0227 0x03d4 \Device\Harddisk0\DR0\Partition5 - ok 09:51:07.0230 0x03d4 [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6 09:51:07.0233 0x03d4 \Device\Harddisk0\DR0\Partition6 - ok 09:51:07.0237 0x03d4 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7 09:51:07.0237 0x03d4 \Device\Harddisk0\DR0\Partition7 - ok 09:51:07.0242 0x03d4 [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1 09:51:07.0242 0x03d4 \Device\Harddisk1\DR4\Partition1 - ok 09:51:07.0244 0x03d4 [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 09:51:07.0247 0x03d4 \Device\Harddisk2\DR7\Partition1 - ok 09:51:07.0248 0x03d4 ================ Scan generic autorun ====================== 09:51:07.0252 0x03d4 [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe 09:51:07.0253 0x03d4 Logitech Download Assistant - ok 09:51:07.0264 0x03d4 [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe 09:51:07.0269 0x03d4 IgfxTray - ok 09:51:07.0278 0x03d4 [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe 09:51:07.0287 0x03d4 TpShocks - ok 09:51:07.0306 0x03d4 [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe 09:51:07.0321 0x03d4 LnvMobHotspotClient - ok 09:51:07.0336 0x03d4 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:51:07.0338 0x03d4 LMCSSTART1 - ok 09:51:07.0342 0x03d4 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:51:07.0343 0x03d4 LMCSSTART2 - ok 09:51:07.0347 0x03d4 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:51:07.0348 0x03d4 LMCSSTART3 - ok 09:51:07.0349 0x03d4 SynLenovoHelper - ok 09:51:07.0379 0x03d4 [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 09:51:07.0404 0x03d4 Integrated Camera_Monitor - ok 09:51:07.0437 0x03d4 [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe 09:51:07.0461 0x03d4 Integrated Camera_Monitor - ok 09:51:07.0467 0x03d4 [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe 09:51:07.0471 0x03d4 IMSS - ok 09:51:07.0475 0x03d4 [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe 09:51:07.0477 0x03d4 Avira SystrayStartTrigger - ok 09:51:07.0495 0x03d4 [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe 09:51:07.0505 0x03d4 avgnt - ok 09:51:07.0510 0x03d4 [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe 09:51:07.0510 0x03d4 Avira System Speedup User Starter - ok 09:51:07.0523 0x03d4 [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 09:51:07.0532 0x03d4 SunJavaUpdateSched - ok 09:51:07.0658 0x03d4 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 09:51:07.0768 0x03d4 OneDriveSetup - ok 09:51:07.0903 0x03d4 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 09:51:07.0997 0x03d4 OneDriveSetup - ok 09:51:08.0008 0x03d4 GoogleDriveSync - ok 09:51:08.0025 0x03d4 [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe 09:51:08.0032 0x03d4 OneDrive - ok 09:51:08.0064 0x03d4 [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe 09:51:08.0086 0x03d4 Spotify Web Helper - ok 09:51:08.0090 0x03d4 Skype - ok 09:51:08.0100 0x03d4 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:51:08.0103 0x03d4 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok 09:51:08.0114 0x03d4 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:51:08.0117 0x03d4 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok 09:51:08.0122 0x2b18 Object send P2P result: true 09:51:08.0126 0x03d4 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:51:08.0129 0x03d4 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok 09:51:08.0129 0x03d4 Waiting for KSN requests completion. In queue: 333 09:51:09.0129 0x03d4 Waiting for KSN requests completion. In queue: 333 09:51:09.0263 0x25dc Object send P2P result: true 09:51:10.0130 0x03d4 Waiting for KSN requests completion. In queue: 330 09:51:10.0220 0x0960 Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo 09:51:10.0719 0x2b18 Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 09:51:11.0131 0x03d4 Waiting for KSN requests completion. In queue: 241 09:51:12.0131 0x03d4 Waiting for KSN requests completion. In queue: 241 09:51:12.0869 0x0960 Object send P2P result: true 09:51:12.0877 0x0960 Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc 09:51:13.0132 0x03d4 Waiting for KSN requests completion. In queue: 199 09:51:13.0385 0x2b18 Object send P2P result: true 09:51:13.0386 0x2b18 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:51:14.0132 0x03d4 Waiting for KSN requests completion. In queue: 188 09:51:15.0132 0x03d4 Waiting for KSN requests completion. In queue: 188 09:51:15.0559 0x0960 Object send P2P result: true 09:51:15.0563 0x0960 Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv 09:51:16.0041 0x2b18 Object send P2P result: true 09:51:16.0041 0x2b18 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:51:16.0132 0x03d4 Waiting for KSN requests completion. In queue: 186 09:51:17.0132 0x03d4 Waiting for KSN requests completion. In queue: 186 09:51:18.0133 0x03d4 Waiting for KSN requests completion. In queue: 186 09:51:18.0231 0x0960 Object send P2P result: true 09:51:18.0238 0x0960 Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain 09:51:18.0692 0x2b18 Object send P2P result: true 09:51:18.0692 0x2b18 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:51:19.0135 0x03d4 Waiting for KSN requests completion. In queue: 162 09:51:20.0136 0x03d4 Waiting for KSN requests completion. In queue: 162 09:51:20.0894 0x0960 Object send P2P result: true 09:51:20.0914 0x0960 Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS 09:51:21.0136 0x03d4 Waiting for KSN requests completion. In queue: 77 09:51:21.0326 0x2b18 Object send P2P result: true 09:51:22.0137 0x03d4 Waiting for KSN requests completion. In queue: 76 09:51:23.0138 0x03d4 Waiting for KSN requests completion. In queue: 76 09:51:23.0562 0x0960 Object send P2P result: true 09:51:24.0167 0x03d4 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated ) 09:51:24.0175 0x03d4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated ) 09:51:24.0182 0x03d4 Win FW state via NFP2: enabled ( trusted ) 09:51:26.0896 0x03d4 ============================================================ 09:51:26.0896 0x03d4 Scan finished 09:51:26.0896 0x03d4 ============================================================ 09:51:26.0918 0x2b88 Detected object count: 0 09:51:26.0918 0x2b88 Actual detected object count: 0 09:52:08.0850 0x3278 ============================================================ 09:52:08.0850 0x3278 Scan started 09:52:08.0850 0x3278 Mode: Manual; SigCheck; TDLFS; 09:52:08.0850 0x3278 ============================================================ 09:52:08.0850 0x3278 KSN ping started 09:52:11.0350 0x3278 KSN ping finished: true 09:52:11.0717 0x3278 ================ Scan system memory ======================== 09:52:11.0717 0x3278 System memory - ok 09:52:11.0718 0x3278 ================ Scan services ============================= 09:52:11.0750 0x3278 [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 09:52:11.0783 0x3278 1394ohci - ok 09:52:11.0788 0x3278 [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 09:52:11.0800 0x3278 3ware - ok 09:52:11.0815 0x3278 [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 09:52:11.0838 0x3278 ACPI - ok 09:52:11.0846 0x3278 [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 09:52:11.0860 0x3278 acpiex - ok 09:52:11.0864 0x3278 [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 09:52:11.0877 0x3278 acpipagr - ok 09:52:11.0881 0x3278 [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 09:52:11.0893 0x3278 AcpiPmi - ok 09:52:11.0897 0x3278 [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 09:52:11.0909 0x3278 acpitime - ok 09:52:11.0915 0x3278 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 09:52:11.0924 0x3278 AdobeARMservice - ok 09:52:11.0946 0x3278 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 09:52:11.0954 0x3278 AdobeFlashPlayerUpdateSvc - ok 09:52:11.0978 0x3278 [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 09:52:12.0009 0x3278 ADP80XX - ok 09:52:12.0025 0x3278 [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD C:\WINDOWS\system32\drivers\afd.sys 09:52:12.0043 0x3278 AFD - ok 09:52:12.0047 0x3278 [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 09:52:12.0057 0x3278 agp440 - ok 09:52:12.0063 0x3278 [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 09:52:12.0077 0x3278 ahcache - ok 09:52:12.0081 0x3278 [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 09:52:12.0090 0x3278 AJRouter - ok 09:52:12.0094 0x3278 [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG C:\WINDOWS\System32\alg.exe 09:52:12.0105 0x3278 ALG - ok 09:52:12.0110 0x3278 [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 09:52:12.0122 0x3278 AmdK8 - ok 09:52:12.0127 0x3278 [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 09:52:12.0138 0x3278 AmdPPM - ok 09:52:12.0143 0x3278 [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 09:52:12.0151 0x3278 amdsata - ok 09:52:12.0158 0x3278 [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 09:52:12.0171 0x3278 amdsbs - ok 09:52:12.0175 0x3278 [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 09:52:12.0182 0x3278 amdxata - ok 09:52:12.0205 0x3278 [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 09:52:12.0230 0x3278 AntiVirMailService - ok 09:52:12.0231 0x3278 Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService 09:52:14.0874 0x3278 Object send P2P result: true 09:52:14.0911 0x3278 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 09:52:14.0934 0x3278 AntiVirSchedulerService - ok 09:52:14.0950 0x3278 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 09:52:14.0962 0x3278 AntiVirService - ok 09:52:14.0988 0x3278 [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 09:52:15.0015 0x3278 AntiVirWebService - ok 09:52:15.0021 0x3278 [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID C:\WINDOWS\system32\drivers\appid.sys 09:52:15.0031 0x3278 AppID - ok 09:52:15.0035 0x3278 [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 09:52:15.0049 0x3278 AppIDSvc - ok 09:52:15.0054 0x3278 [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo C:\WINDOWS\System32\appinfo.dll 09:52:15.0067 0x3278 Appinfo - ok 09:52:15.0073 0x3278 [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 09:52:15.0086 0x3278 AppMgmt - ok 09:52:15.0097 0x3278 [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 09:52:15.0118 0x3278 AppReadiness - ok 09:52:15.0156 0x3278 [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 09:52:15.0220 0x3278 AppXSvc - ok 09:52:15.0227 0x3278 [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 09:52:15.0236 0x3278 arcsas - ok 09:52:15.0240 0x3278 [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys 09:52:15.0250 0x3278 AsyncMac - ok 09:52:15.0253 0x3278 [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 09:52:15.0261 0x3278 atapi - ok 09:52:15.0268 0x3278 [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 09:52:15.0283 0x3278 AudioEndpointBuilder - ok 09:52:15.0304 0x3278 [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 09:52:15.0337 0x3278 Audiosrv - ok 09:52:15.0353 0x3278 [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe 09:52:15.0367 0x3278 AVControlCenter - ok 09:52:15.0372 0x3278 [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 09:52:15.0379 0x3278 avgntflt - ok 09:52:15.0379 0x3278 Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt 09:52:18.0023 0x3278 Object send P2P result: true 09:52:18.0042 0x3278 [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 09:52:18.0066 0x3278 avipbb - ok 09:52:18.0077 0x3278 [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 09:52:18.0091 0x3278 Avira.ServiceHost - ok 09:52:18.0091 0x3278 Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost 09:52:20.0750 0x3278 Object send P2P result: true 09:52:20.0765 0x3278 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 09:52:20.0787 0x3278 avkmgr - ok 09:52:20.0798 0x3278 [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 09:52:20.0807 0x3278 avnetflt - ok 09:52:20.0814 0x3278 [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 09:52:20.0834 0x3278 AxInstSV - ok 09:52:20.0846 0x3278 [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 09:52:20.0863 0x3278 b06bdrv - ok 09:52:20.0868 0x3278 [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 09:52:20.0877 0x3278 BasicDisplay - ok 09:52:20.0881 0x3278 [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 09:52:20.0889 0x3278 BasicRender - ok 09:52:20.0893 0x3278 [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn C:\WINDOWS\System32\drivers\bcmfn.sys 09:52:20.0902 0x3278 bcmfn - ok 09:52:20.0905 0x3278 [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 09:52:20.0914 0x3278 bcmfn2 - ok 09:52:20.0923 0x3278 [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 09:52:20.0940 0x3278 BDESVC - ok 09:52:20.0943 0x3278 [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 09:52:20.0954 0x3278 Beep - ok 09:52:20.0970 0x3278 [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE C:\WINDOWS\System32\bfe.dll 09:52:20.0998 0x3278 BFE - ok 09:52:21.0021 0x3278 [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS C:\WINDOWS\System32\qmgr.dll 09:52:21.0057 0x3278 BITS - ok 09:52:21.0069 0x3278 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 09:52:21.0080 0x3278 Bonjour Service - ok 09:52:21.0085 0x3278 [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 09:52:21.0096 0x3278 bowser - ok 09:52:21.0104 0x3278 [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe 09:52:21.0113 0x3278 BrcmSetSecurity - ok 09:52:21.0126 0x3278 [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 09:52:21.0149 0x3278 BrokerInfrastructure - ok 09:52:21.0154 0x3278 [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser C:\WINDOWS\System32\browser.dll 09:52:21.0167 0x3278 Browser - ok 09:52:21.0171 0x3278 [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 09:52:21.0180 0x3278 BthAvrcpTg - ok 09:52:21.0184 0x3278 [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 09:52:21.0195 0x3278 BthEnum - ok 09:52:21.0199 0x3278 [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 09:52:21.0209 0x3278 BthHFEnum - ok 09:52:21.0213 0x3278 [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 09:52:21.0221 0x3278 bthhfhid - ok 09:52:21.0230 0x3278 [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 09:52:21.0247 0x3278 BthHFSrv - ok 09:52:21.0255 0x3278 [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys 09:52:21.0269 0x3278 BthLEEnum - ok 09:52:21.0273 0x3278 [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 09:52:21.0283 0x3278 BTHMODEM - ok 09:52:21.0288 0x3278 [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 09:52:21.0299 0x3278 BthPan - ok 09:52:21.0317 0x3278 [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT C:\WINDOWS\System32\drivers\BTHport.sys 09:52:21.0348 0x3278 BTHPORT - ok 09:52:21.0353 0x3278 [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv C:\WINDOWS\system32\bthserv.dll 09:52:21.0363 0x3278 bthserv - ok 09:52:21.0367 0x3278 [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB C:\WINDOWS\System32\drivers\BTHUSB.sys 09:52:21.0378 0x3278 BTHUSB - ok 09:52:21.0382 0x3278 [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys 09:52:21.0391 0x3278 buttonconverter - ok 09:52:21.0396 0x3278 [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg C:\WINDOWS\System32\drivers\capimg.sys 09:52:21.0409 0x3278 CapImg - ok 09:52:21.0412 0x3278 [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 09:52:21.0423 0x3278 cdfs - ok 09:52:21.0431 0x3278 [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 09:52:21.0449 0x3278 CDPSvc - ok 09:52:21.0456 0x3278 [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 09:52:21.0468 0x3278 cdrom - ok 09:52:21.0474 0x3278 [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc C:\WINDOWS\System32\certprop.dll 09:52:21.0489 0x3278 CertPropSvc - ok 09:52:21.0493 0x3278 [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass C:\WINDOWS\System32\drivers\circlass.sys 09:52:21.0502 0x3278 circlass - ok 09:52:21.0511 0x3278 [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 09:52:21.0525 0x3278 CLFS - ok 09:52:21.0574 0x3278 [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe 09:52:21.0626 0x3278 ClickToRunSvc - ok 09:52:21.0642 0x3278 [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 09:52:21.0662 0x3278 ClipSVC - ok 09:52:21.0669 0x3278 [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 09:52:21.0678 0x3278 CmBatt - ok 09:52:21.0691 0x3278 [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG C:\WINDOWS\system32\Drivers\cng.sys 09:52:21.0710 0x3278 CNG - ok 09:52:21.0714 0x3278 [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 09:52:21.0721 0x3278 cnghwassist - ok 09:52:21.0735 0x3278 [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys 09:52:21.0746 0x3278 CompositeBus - ok 09:52:21.0749 0x3278 COMSysApp - ok 09:52:21.0752 0x3278 [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv C:\WINDOWS\system32\drivers\condrv.sys 09:52:21.0760 0x3278 condrv - ok 09:52:21.0776 0x3278 [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll 09:52:21.0797 0x3278 CoreMessagingRegistrar - ok 09:52:21.0820 0x3278 [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 09:52:21.0831 0x3278 cphs - ok 09:52:21.0836 0x3278 [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 09:52:21.0847 0x3278 CryptSvc - ok 09:52:21.0860 0x3278 [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC C:\WINDOWS\system32\drivers\csc.sys 09:52:21.0881 0x3278 CSC - ok 09:52:21.0898 0x3278 [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService C:\WINDOWS\System32\cscsvc.dll 09:52:21.0925 0x3278 CscService - ok 09:52:21.0929 0x3278 [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam C:\WINDOWS\system32\drivers\dam.sys 09:52:21.0937 0x3278 dam - ok 09:52:21.0937 0x3278 Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam 09:52:24.0588 0x3278 Object send P2P result: true 09:52:24.0642 0x3278 [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 09:52:24.0674 0x3278 DcomLaunch - ok 09:52:24.0680 0x3278 [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll 09:52:24.0697 0x3278 DcpSvc - ok 09:52:24.0709 0x3278 [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc C:\WINDOWS\System32\defragsvc.dll 09:52:24.0734 0x3278 defragsvc - ok 09:52:24.0744 0x3278 [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 09:52:24.0764 0x3278 DeviceAssociationService - ok 09:52:24.0768 0x3278 [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 09:52:24.0784 0x3278 DeviceInstall - ok 09:52:24.0788 0x3278 [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 09:52:24.0797 0x3278 DevQueryBroker - ok 09:52:24.0801 0x3278 [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 09:52:24.0813 0x3278 Dfsc - ok 09:52:24.0823 0x3278 [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 09:52:24.0840 0x3278 Dhcp - ok 09:52:24.0844 0x3278 [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe 09:52:24.0853 0x3278 diagnosticshub.standardcollector.service - ok 09:52:24.0882 0x3278 [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 09:52:24.0919 0x3278 DiagTrack - ok 09:52:24.0927 0x3278 [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk C:\WINDOWS\system32\drivers\disk.sys 09:52:24.0936 0x3278 disk - ok 09:52:24.0944 0x3278 [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 09:52:24.0962 0x3278 DmEnrollmentSvc - ok 09:52:24.0966 0x3278 [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 09:52:24.0974 0x3278 dmvsc - ok 09:52:24.0978 0x3278 [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 09:52:24.0989 0x3278 dmwappushservice - ok 09:52:24.0997 0x3278 [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 09:52:25.0013 0x3278 Dnscache - ok 09:52:25.0021 0x3278 [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc C:\WINDOWS\System32\dot3svc.dll 09:52:25.0038 0x3278 dot3svc - ok 09:52:25.0044 0x3278 [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS C:\WINDOWS\system32\dps.dll 09:52:25.0058 0x3278 DPS - ok 09:52:25.0061 0x3278 [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud C:\WINDOWS\System32\drivers\drmkaud.sys 09:52:25.0068 0x3278 drmkaud - ok 09:52:25.0074 0x3278 [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 09:52:25.0087 0x3278 DsmSvc - ok 09:52:25.0093 0x3278 [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc C:\WINDOWS\System32\DsSvc.dll 09:52:25.0104 0x3278 DsSvc - ok 09:52:25.0141 0x3278 [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 09:52:25.0184 0x3278 DXGKrnl - ok 09:52:25.0200 0x3278 [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress C:\WINDOWS\system32\DRIVERS\e1d64x64.sys 09:52:25.0212 0x3278 e1dexpress - ok 09:52:25.0217 0x3278 [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost C:\WINDOWS\System32\eapsvc.dll 09:52:25.0231 0x3278 Eaphost - ok 09:52:25.0290 0x3278 [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 09:52:25.0359 0x3278 ebdrv - ok 09:52:25.0370 0x3278 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS C:\WINDOWS\System32\lsass.exe 09:52:25.0379 0x3278 EFS - ok 09:52:25.0383 0x3278 [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 09:52:25.0393 0x3278 EhStorClass - ok 09:52:25.0397 0x3278 [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 09:52:25.0406 0x3278 EhStorTcgDrv - ok 09:52:25.0411 0x3278 [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 09:52:25.0423 0x3278 embeddedmode - ok 09:52:25.0430 0x3278 [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 09:52:25.0447 0x3278 EntAppSvc - ok 09:52:25.0450 0x3278 [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 09:52:25.0459 0x3278 ErrDev - ok 09:52:25.0471 0x3278 [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem C:\WINDOWS\system32\es.dll 09:52:25.0491 0x3278 EventSystem - ok 09:52:25.0500 0x3278 [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 09:52:25.0516 0x3278 exfat - ok 09:52:25.0525 0x3278 [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 09:52:25.0538 0x3278 fastfat - ok 09:52:25.0552 0x3278 [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax C:\WINDOWS\system32\fxssvc.exe 09:52:25.0577 0x3278 Fax - ok 09:52:25.0581 0x3278 [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 09:52:25.0590 0x3278 fdc - ok 09:52:25.0593 0x3278 [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 09:52:25.0605 0x3278 fdPHost - ok 09:52:25.0608 0x3278 [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub C:\WINDOWS\system32\fdrespub.dll 09:52:25.0621 0x3278 FDResPub - ok 09:52:25.0626 0x3278 [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc C:\WINDOWS\system32\fhsvc.dll 09:52:25.0641 0x3278 fhsvc - ok 09:52:25.0645 0x3278 [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 09:52:25.0655 0x3278 FileCrypt - ok 09:52:25.0659 0x3278 [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 09:52:25.0668 0x3278 FileInfo - ok 09:52:25.0671 0x3278 [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 09:52:25.0683 0x3278 Filetrace - ok 09:52:25.0687 0x3278 [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 09:52:25.0696 0x3278 flpydisk - ok 09:52:25.0704 0x3278 [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 09:52:25.0718 0x3278 FltMgr - ok 09:52:25.0749 0x3278 [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache C:\WINDOWS\system32\FntCache.dll 09:52:25.0802 0x3278 FontCache - ok 09:52:25.0808 0x3278 [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 09:52:25.0815 0x3278 FontCache3.0.0.0 - ok 09:52:25.0818 0x3278 [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 09:52:25.0826 0x3278 FsDepends - ok 09:52:25.0830 0x3278 [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 09:52:25.0837 0x3278 Fs_Rec - ok 09:52:25.0852 0x3278 [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 09:52:25.0872 0x3278 fvevol - ok |
10.03.2016, 10:01 | #9 |
| TDSSKiller Report Teil 3Code:
ATTFilter 09:52:25.0872 0x3278 fvevol - ok 09:52:25.0876 0x3278 [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 09:52:25.0884 0x3278 gagp30kx - ok 09:52:25.0887 0x3278 [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 09:52:25.0895 0x3278 gencounter - ok 09:52:25.0898 0x3278 [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys 09:52:25.0907 0x3278 genericusbfn - ok 09:52:25.0913 0x3278 [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 09:52:25.0924 0x3278 GPIOClx0101 - ok 09:52:25.0950 0x3278 [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 09:52:25.0993 0x3278 gpsvc - ok 09:52:26.0001 0x3278 [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 09:52:26.0012 0x3278 GpuEnergyDrv - ok 09:52:26.0019 0x3278 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:52:26.0026 0x3278 gupdate - ok 09:52:26.0031 0x3278 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:52:26.0036 0x3278 gupdatem - ok 09:52:26.0041 0x3278 [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 09:52:26.0051 0x3278 HDAudBus - ok 09:52:26.0054 0x3278 [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 09:52:26.0063 0x3278 HidBatt - ok 09:52:26.0067 0x3278 [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 09:52:26.0078 0x3278 HidBth - ok 09:52:26.0081 0x3278 [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 09:52:26.0091 0x3278 hidi2c - ok 09:52:26.0095 0x3278 [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys 09:52:26.0103 0x3278 hidinterrupt - ok 09:52:26.0107 0x3278 [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 09:52:26.0117 0x3278 HidIr - ok 09:52:26.0120 0x3278 [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv C:\WINDOWS\system32\hidserv.dll 09:52:26.0131 0x3278 hidserv - ok 09:52:26.0134 0x3278 [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 09:52:26.0143 0x3278 HidUsb - ok 09:52:26.0150 0x3278 [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 09:52:26.0166 0x3278 HomeGroupListener - ok 09:52:26.0177 0x3278 [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 09:52:26.0203 0x3278 HomeGroupProvider - ok 09:52:26.0207 0x3278 [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 09:52:26.0215 0x3278 HpSAMD - ok 09:52:26.0235 0x3278 [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 09:52:26.0263 0x3278 HTTP - ok 09:52:26.0268 0x3278 [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys 09:52:26.0278 0x3278 huawei_enumerator - ok 09:52:26.0282 0x3278 [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 09:52:26.0290 0x3278 hwpolicy - ok 09:52:26.0293 0x3278 [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 09:52:26.0301 0x3278 hyperkbd - ok 09:52:26.0306 0x3278 [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 09:52:26.0317 0x3278 i8042prt - ok 09:52:26.0320 0x3278 [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys 09:52:26.0331 0x3278 iai2c - ok 09:52:26.0331 0x3278 Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c 09:52:28.0975 0x3278 Object send P2P result: true 09:52:28.0998 0x3278 [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 09:52:29.0030 0x3278 iaLPSS2i_I2C - ok 09:52:29.0031 0x3278 Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C 09:52:31.0674 0x3278 Object send P2P result: true 09:52:31.0689 0x3278 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 09:52:31.0710 0x3278 iaLPSSi_GPIO - ok 09:52:31.0720 0x3278 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 09:52:31.0738 0x3278 iaLPSSi_I2C - ok 09:52:31.0754 0x3278 [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 09:52:31.0770 0x3278 iaStorA - ok 09:52:31.0785 0x3278 [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 09:52:31.0805 0x3278 iaStorAV - ok 09:52:31.0815 0x3278 [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 09:52:31.0830 0x3278 iaStorV - ok 09:52:31.0840 0x3278 [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys 09:52:31.0854 0x3278 ibbus - ok 09:52:31.0859 0x3278 [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys 09:52:31.0864 0x3278 IBMPMDRV - ok 09:52:31.0869 0x3278 [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC C:\WINDOWS\system32\ibmpmsvc.exe 09:52:31.0876 0x3278 IBMPMSVC - ok 09:52:31.0884 0x3278 [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys 09:52:31.0894 0x3278 ibtusb - ok 09:52:31.0900 0x3278 [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc C:\WINDOWS\System32\tetheringservice.dll 09:52:31.0914 0x3278 icssvc - ok 09:52:31.0917 0x3278 IEEtwCollectorService - ok 09:52:32.0041 0x3278 [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 09:52:32.0206 0x3278 igfx - ok 09:52:32.0228 0x3278 [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 09:52:32.0243 0x3278 igfxCUIService2.0.0.0 - ok 09:52:32.0247 0x3278 [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent C:\WINDOWS\system32\DRIVERS\ikbevent.sys 09:52:32.0253 0x3278 ikbevent - ok 09:52:32.0273 0x3278 [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT C:\WINDOWS\System32\ikeext.dll 09:52:32.0305 0x3278 IKEEXT - ok 09:52:32.0308 0x3278 [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent C:\WINDOWS\system32\DRIVERS\imsevent.sys 09:52:32.0313 0x3278 imsevent - ok 09:52:32.0317 0x3278 [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 09:52:32.0322 0x3278 intaud_WaveExtensible - ok 09:52:32.0395 0x3278 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 09:52:32.0471 0x3278 IntcAzAudAddService - ok 09:52:32.0491 0x3278 [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 09:52:32.0504 0x3278 IntcDAud - ok 09:52:32.0521 0x3278 [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 09:52:32.0542 0x3278 Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 ) 09:52:32.0542 0x3278 Detect skipped due to KSN trusted 09:52:32.0542 0x3278 Intel(R) Capability Licensing Service Interface - ok 09:52:32.0558 0x3278 [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 09:52:32.0577 0x3278 Intel(R) Capability Licensing Service TCP IP Interface - ok 09:52:32.0582 0x3278 [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe 09:52:32.0590 0x3278 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok 09:52:32.0594 0x3278 [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc C:\WINDOWS\system32\drivers\IntelPcc.sys 09:52:32.0601 0x3278 IntelHSWPcc - ok 09:52:32.0604 0x3278 [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide C:\WINDOWS\system32\drivers\intelide.sys 09:52:32.0612 0x3278 intelide - ok 09:52:32.0615 0x3278 [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 09:52:32.0623 0x3278 intelpep - ok 09:52:32.0627 0x3278 [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 09:52:32.0639 0x3278 intelppm - ok 09:52:32.0642 0x3278 [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys 09:52:32.0651 0x3278 IoQos - ok 09:52:32.0654 0x3278 [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 09:52:32.0666 0x3278 IpFilterDriver - ok 09:52:32.0684 0x3278 [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 09:52:32.0718 0x3278 iphlpsvc - ok 09:52:32.0723 0x3278 [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 09:52:32.0733 0x3278 IPMIDRV - ok 09:52:32.0738 0x3278 [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 09:52:32.0749 0x3278 IPNAT - ok 09:52:32.0752 0x3278 [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 09:52:32.0763 0x3278 IRENUM - ok 09:52:32.0766 0x3278 [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 09:52:32.0774 0x3278 isapnp - ok 09:52:32.0781 0x3278 [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 09:52:32.0793 0x3278 iScsiPrt - ok 09:52:32.0797 0x3278 [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT C:\WINDOWS\System32\drivers\ISCTD64.sys 09:52:32.0802 0x3278 ISCT - ok 09:52:32.0808 0x3278 [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 09:52:32.0815 0x3278 ISCTAgent - ok 09:52:32.0822 0x3278 [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe 09:52:32.0832 0x3278 iumsvc - ok 09:52:32.0835 0x3278 [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 09:52:32.0840 0x3278 iwdbus - ok 09:52:32.0846 0x3278 [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 09:52:32.0853 0x3278 jhi_service - ok 09:52:32.0858 0x3278 [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 09:52:32.0866 0x3278 kbdclass - ok 09:52:32.0869 0x3278 [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 09:52:32.0878 0x3278 kbdhid - ok 09:52:32.0881 0x3278 [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys 09:52:32.0890 0x3278 kdnic - ok 09:52:32.0894 0x3278 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso C:\WINDOWS\system32\lsass.exe 09:52:32.0902 0x3278 KeyIso - ok 09:52:32.0907 0x3278 [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 09:52:32.0917 0x3278 KSecDD - ok 09:52:32.0923 0x3278 [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 09:52:32.0933 0x3278 KSecPkg - ok 09:52:32.0936 0x3278 [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 09:52:32.0946 0x3278 ksthunk - ok 09:52:32.0955 0x3278 [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 09:52:32.0974 0x3278 KtmRm - ok 09:52:32.0981 0x3278 [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 09:52:32.0998 0x3278 LanmanServer - ok 09:52:33.0005 0x3278 [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 09:52:33.0021 0x3278 LanmanWorkstation - ok 09:52:33.0059 0x3278 [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe 09:52:33.0095 0x3278 Lenovo Settings Service - ok 09:52:33.0113 0x3278 [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe 09:52:33.0129 0x3278 Lenovo System Agent Service - ok 09:52:33.0142 0x3278 [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\cammute.exe 09:52:33.0153 0x3278 LENOVO.CAMMUTE - ok 09:52:33.0158 0x3278 [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe 09:52:33.0164 0x3278 LENOVO.MICMUTE - ok 09:52:33.0174 0x3278 [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe 09:52:33.0185 0x3278 LENOVO.TPKNRSVC - ok 09:52:33.0198 0x3278 [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe 09:52:33.0212 0x3278 LENOVO.TVTVCAM - ok 09:52:33.0217 0x3278 [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe 09:52:33.0223 0x3278 Lenovo.VIRTSCRLSVC - ok 09:52:33.0227 0x3278 [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 09:52:33.0236 0x3278 lfsvc - ok 09:52:33.0240 0x3278 [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 09:52:33.0249 0x3278 LicenseManager - ok 09:52:33.0253 0x3278 [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 09:52:33.0265 0x3278 lltdio - ok 09:52:33.0273 0x3278 [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 09:52:33.0290 0x3278 lltdsvc - ok 09:52:33.0294 0x3278 [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 09:52:33.0303 0x3278 lmhosts - ok 09:52:33.0311 0x3278 [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 09:52:33.0322 0x3278 LMS - ok 09:52:33.0332 0x3278 [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe 09:52:33.0344 0x3278 LnvHotSpotSvc - ok 09:52:33.0357 0x3278 [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe 09:52:33.0368 0x3278 LocationTaskManager - ok 09:52:33.0377 0x3278 [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe 09:52:33.0386 0x3278 LSCWinService - ok 09:52:33.0392 0x3278 [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 09:52:33.0401 0x3278 LSI_SAS - ok 09:52:33.0405 0x3278 [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys 09:52:33.0414 0x3278 LSI_SAS2i - ok 09:52:33.0418 0x3278 [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys 09:52:33.0428 0x3278 LSI_SAS3i - ok 09:52:33.0432 0x3278 [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 09:52:33.0440 0x3278 LSI_SSS - ok 09:52:33.0455 0x3278 [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM C:\WINDOWS\System32\lsm.dll 09:52:33.0482 0x3278 LSM - ok 09:52:33.0487 0x3278 [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv C:\WINDOWS\system32\drivers\luafv.sys 09:52:33.0502 0x3278 luafv - ok 09:52:33.0505 0x3278 [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker C:\WINDOWS\System32\moshost.dll 09:52:33.0516 0x3278 MapsBroker - ok 09:52:33.0518 0x3278 [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter C:\WINDOWS\system32\drivers\massfilter.sys 09:52:33.0526 0x3278 massfilter - ok 09:52:33.0529 0x3278 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 09:52:33.0534 0x3278 MBAMProtector - ok 09:52:33.0554 0x3278 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 09:52:33.0577 0x3278 MBAMService - ok 09:52:33.0581 0x3278 [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 09:52:33.0586 0x3278 MBAMWebAccessControl - ok 09:52:33.0594 0x3278 [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe 09:52:33.0604 0x3278 McComponentHostService - ok 09:52:33.0607 0x3278 [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas C:\WINDOWS\system32\drivers\megasas.sys 09:52:33.0616 0x3278 megasas - ok 09:52:33.0628 0x3278 [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr C:\WINDOWS\system32\drivers\megasr.sys 09:52:33.0646 0x3278 megasr - ok 09:52:33.0650 0x3278 [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys 09:52:33.0656 0x3278 MEIx64 - ok 09:52:33.0660 0x3278 [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll 09:52:33.0672 0x3278 MessagingService - ok 09:52:33.0680 0x3278 [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd C:\WINDOWS\System32\drivers\MiraDispKmd.sys 09:52:33.0688 0x3278 MiraDispKmd - ok 09:52:33.0703 0x3278 [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys 09:52:33.0723 0x3278 mlx4_bus - ok 09:52:33.0727 0x3278 [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys 09:52:33.0736 0x3278 MMCSS - ok 09:52:33.0740 0x3278 [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem C:\WINDOWS\system32\drivers\modem.sys 09:52:33.0750 0x3278 Modem - ok 09:52:33.0753 0x3278 [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor C:\WINDOWS\System32\drivers\monitor.sys 09:52:33.0763 0x3278 monitor - ok 09:52:33.0767 0x3278 [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 09:52:33.0776 0x3278 mouclass - ok 09:52:33.0779 0x3278 [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 09:52:33.0787 0x3278 mouhid - ok 09:52:33.0792 0x3278 [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 09:52:33.0801 0x3278 mountmgr - ok 09:52:33.0805 0x3278 [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 09:52:33.0813 0x3278 MozillaMaintenance - ok 09:52:33.0817 0x3278 [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 09:52:33.0828 0x3278 mpsdrv - ok 09:52:33.0845 0x3278 [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 09:52:33.0874 0x3278 MpsSvc - ok 09:52:33.0880 0x3278 [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 09:52:33.0892 0x3278 MRxDAV - ok 09:52:33.0903 0x3278 [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 09:52:33.0918 0x3278 mrxsmb - ok 09:52:33.0926 0x3278 [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 09:52:33.0940 0x3278 mrxsmb10 - ok 09:52:33.0947 0x3278 [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 09:52:33.0958 0x3278 mrxsmb20 - ok 09:52:33.0963 0x3278 [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 09:52:33.0974 0x3278 MsBridge - ok 09:52:33.0979 0x3278 [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe 09:52:33.0992 0x3278 MSDTC - ok 09:52:33.0992 0x3278 Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC 09:52:36.0626 0x3278 Object send P2P result: true 09:52:36.0647 0x3278 [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 09:52:36.0676 0x3278 Msfs - ok 09:52:36.0683 0x3278 [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 09:52:36.0700 0x3278 msgpiowin32 - ok 09:52:36.0702 0x3278 [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 09:52:36.0712 0x3278 mshidkmdf - ok 09:52:36.0714 0x3278 [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 09:52:36.0723 0x3278 mshidumdf - ok 09:52:36.0726 0x3278 [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 09:52:36.0733 0x3278 msisadrv - ok 09:52:36.0738 0x3278 [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 09:52:36.0750 0x3278 MSiSCSI - ok 09:52:36.0753 0x3278 msiserver - ok 09:52:36.0756 0x3278 [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys 09:52:36.0765 0x3278 MSKSSRV - ok 09:52:36.0768 0x3278 [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 09:52:36.0780 0x3278 MsLldp - ok 09:52:36.0783 0x3278 [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys 09:52:36.0792 0x3278 MSPCLOCK - ok 09:52:36.0795 0x3278 [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM C:\WINDOWS\system32\DRIVERS\MSPQM.sys 09:52:36.0803 0x3278 MSPQM - ok 09:52:36.0813 0x3278 [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 09:52:36.0827 0x3278 MsRPC - ok 09:52:36.0832 0x3278 [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 09:52:36.0839 0x3278 mssmbios - ok 09:52:36.0842 0x3278 [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE C:\WINDOWS\system32\DRIVERS\MSTEE.sys 09:52:36.0850 0x3278 MSTEE - ok 09:52:36.0853 0x3278 [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 09:52:36.0863 0x3278 MTConfig - ok 09:52:36.0867 0x3278 [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup C:\WINDOWS\system32\Drivers\mup.sys 09:52:36.0876 0x3278 Mup - ok 09:52:36.0881 0x3278 [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 09:52:36.0889 0x3278 mvumis - ok 09:52:36.0901 0x3278 [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 09:52:36.0925 0x3278 NativeWifiP - ok 09:52:36.0930 0x3278 [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 09:52:36.0943 0x3278 NcaSvc - ok 09:52:36.0951 0x3278 [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService C:\WINDOWS\System32\ncbservice.dll 09:52:36.0969 0x3278 NcbService - ok 09:52:36.0973 0x3278 [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 09:52:36.0995 0x3278 NcdAutoSetup - ok 09:52:36.0999 0x3278 [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys 09:52:37.0008 0x3278 ndfltr - ok 09:52:37.0029 0x3278 [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 09:52:37.0057 0x3278 NDIS - ok 09:52:37.0062 0x3278 [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 09:52:37.0071 0x3278 NdisCap - ok 09:52:37.0076 0x3278 [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 09:52:37.0089 0x3278 NdisImPlatform - ok 09:52:37.0092 0x3278 [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 09:52:37.0102 0x3278 NdisTapi - ok 09:52:37.0106 0x3278 [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys 09:52:37.0115 0x3278 Ndisuio - ok 09:52:37.0119 0x3278 [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 09:52:37.0129 0x3278 NdisVirtualBus - ok 09:52:37.0135 0x3278 [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys 09:52:37.0149 0x3278 NdisWan - ok 09:52:37.0155 0x3278 [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 09:52:37.0169 0x3278 ndiswanlegacy - ok 09:52:37.0173 0x3278 [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys 09:52:37.0184 0x3278 ndproxy - ok 09:52:37.0189 0x3278 [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 09:52:37.0200 0x3278 Ndu - ok 09:52:37.0204 0x3278 [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys 09:52:37.0212 0x3278 NetBIOS - ok 09:52:37.0221 0x3278 [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 09:52:37.0236 0x3278 NetBT - ok 09:52:37.0240 0x3278 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon C:\WINDOWS\system32\lsass.exe 09:52:37.0248 0x3278 Netlogon - ok 09:52:37.0255 0x3278 [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman C:\WINDOWS\System32\netman.dll 09:52:37.0273 0x3278 Netman - ok 09:52:37.0285 0x3278 [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 09:52:37.0309 0x3278 netprofm - ok 09:52:37.0316 0x3278 [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll 09:52:37.0329 0x3278 NetSetupSvc - ok 09:52:37.0337 0x3278 [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 09:52:37.0347 0x3278 NetTcpPortSharing - ok 09:52:37.0406 0x3278 [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys 09:52:37.0498 0x3278 NETwNb64 - ok 09:52:37.0513 0x3278 [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 09:52:37.0529 0x3278 NgcCtnrSvc - ok 09:52:37.0543 0x3278 [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll 09:52:37.0568 0x3278 NgcSvc - ok 09:52:37.0576 0x3278 [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe 09:52:37.0583 0x3278 NitroDriverReadSpool9 - ok 09:52:37.0593 0x3278 [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe 09:52:37.0603 0x3278 NitroUpdateService - ok 09:52:37.0613 0x3278 [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 09:52:37.0633 0x3278 NlaSvc - ok 09:52:37.0651 0x3278 [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc C:\WINDOWS\SysWOW64\NLSSRV32.EXE 09:52:37.0657 0x3278 nlsX86cc - ok 09:52:37.0660 0x3278 [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 09:52:37.0670 0x3278 Npfs - ok 09:52:37.0673 0x3278 [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 09:52:37.0681 0x3278 npsvctrig - ok 09:52:37.0685 0x3278 [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi C:\WINDOWS\system32\nsisvc.dll 09:52:37.0695 0x3278 nsi - ok 09:52:37.0698 0x3278 [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 09:52:37.0708 0x3278 nsiproxy - ok 09:52:37.0745 0x3278 [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys 09:52:37.0792 0x3278 NTFS - ok 09:52:37.0801 0x3278 [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null C:\WINDOWS\system32\drivers\Null.sys 09:52:37.0810 0x3278 Null - ok 09:52:37.0815 0x3278 [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 09:52:37.0825 0x3278 nvraid - ok 09:52:37.0830 0x3278 [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 09:52:37.0840 0x3278 nvstor - ok 09:52:37.0845 0x3278 [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 09:52:37.0854 0x3278 nv_agp - ok 09:52:37.0858 0x3278 [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI C:\WINDOWS\SysWOW64\drivers\omnismi.sys 09:52:37.0863 0x3278 OMNISMI - ok 09:52:37.0872 0x3278 [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 09:52:37.0891 0x3278 OneSyncSvc - ok 09:52:37.0902 0x3278 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:52:37.0911 0x3278 ose - ok 09:52:37.0920 0x3278 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 09:52:37.0937 0x3278 p2pimsvc - ok 09:52:37.0948 0x3278 [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc C:\WINDOWS\system32\p2psvc.dll 09:52:37.0967 0x3278 p2psvc - ok 09:52:37.0973 0x3278 [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport C:\WINDOWS\System32\drivers\parport.sys 09:52:37.0984 0x3278 Parport - ok 09:52:37.0988 0x3278 [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 09:52:37.0997 0x3278 partmgr - ok 09:52:38.0010 0x3278 [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 09:52:38.0029 0x3278 PcaSvc - ok 09:52:38.0037 0x3278 [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci C:\WINDOWS\system32\drivers\pci.sys 09:52:38.0050 0x3278 pci - ok 09:52:38.0053 0x3278 [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 09:52:38.0061 0x3278 pciide - ok 09:52:38.0065 0x3278 [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 09:52:38.0076 0x3278 pcmcia - ok 09:52:38.0079 0x3278 [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 09:52:38.0087 0x3278 pcw - ok 09:52:38.0091 0x3278 [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc C:\WINDOWS\system32\drivers\pdc.sys 09:52:38.0100 0x3278 pdc - ok 09:52:38.0115 0x3278 [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 09:52:38.0144 0x3278 PEAUTH - ok 09:52:38.0179 0x3278 [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll 09:52:38.0237 0x3278 PeerDistSvc - ok 09:52:38.0247 0x3278 [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys 09:52:38.0255 0x3278 percsas2i - ok 09:52:38.0259 0x3278 [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys 09:52:38.0267 0x3278 percsas3i - ok 09:52:38.0271 0x3278 [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 09:52:38.0282 0x3278 PerfHost - ok 09:52:38.0300 0x3278 [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll 09:52:38.0327 0x3278 PhoneSvc - ok 09:52:38.0334 0x3278 [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 09:52:38.0349 0x3278 PimIndexMaintenanceSvc - ok 09:52:38.0386 0x3278 [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla C:\WINDOWS\system32\pla.dll 09:52:38.0434 0x3278 pla - ok 09:52:38.0443 0x3278 [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 09:52:38.0458 0x3278 PlugPlay - ok 09:52:38.0461 0x3278 [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 09:52:38.0470 0x3278 PNRPAutoReg - ok 09:52:38.0480 0x3278 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 09:52:38.0497 0x3278 PNRPsvc - ok 09:52:38.0507 0x3278 [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 09:52:38.0527 0x3278 PolicyAgent - ok 09:52:38.0532 0x3278 [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power C:\WINDOWS\system32\umpo.dll 09:52:38.0545 0x3278 Power - ok 09:52:38.0574 0x3278 [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE 09:52:38.0604 0x3278 Power Manager DBC Service - ok 09:52:38.0610 0x3278 [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys 09:52:38.0622 0x3278 PptpMiniport - ok 09:52:38.0686 0x3278 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 09:52:38.0775 0x3278 PrintNotify - ok 09:52:38.0787 0x3278 [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor C:\WINDOWS\System32\drivers\processr.sys 09:52:38.0798 0x3278 Processor - ok 09:52:38.0807 0x3278 [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc C:\WINDOWS\system32\profsvc.dll 09:52:38.0824 0x3278 ProfSvc - ok 09:52:38.0829 0x3278 [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched C:\WINDOWS\system32\drivers\pacer.sys 09:52:38.0839 0x3278 Psched - ok 09:52:38.0844 0x3278 [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe 09:52:38.0849 0x3278 QuickControlMasterSvc - ok 09:52:38.0854 0x3278 [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe 09:52:38.0861 0x3278 QuickControlService - ok 09:52:38.0868 0x3278 [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE C:\WINDOWS\system32\qwave.dll 09:52:38.0884 0x3278 QWAVE - ok 09:52:38.0888 0x3278 [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 09:52:38.0897 0x3278 QWAVEdrv - ok 09:52:38.0900 0x3278 [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 09:52:38.0909 0x3278 RasAcd - ok 09:52:38.0913 0x3278 [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys 09:52:38.0926 0x3278 RasAgileVpn - ok 09:52:38.0930 0x3278 [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto C:\WINDOWS\System32\rasauto.dll 09:52:38.0941 0x3278 RasAuto - ok 09:52:38.0946 0x3278 [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys 09:52:38.0956 0x3278 Rasl2tp - ok 09:52:38.0971 0x3278 [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan C:\WINDOWS\System32\rasmans.dll 09:52:38.0998 0x3278 RasMan - ok 09:52:39.0003 0x3278 [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 09:52:39.0015 0x3278 RasPppoe - ok 09:52:39.0019 0x3278 [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys 09:52:39.0031 0x3278 RasSstp - ok 09:52:39.0041 0x3278 [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 09:52:39.0055 0x3278 rdbss - ok 09:52:39.0060 0x3278 [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 09:52:39.0068 0x3278 rdpbus - ok 09:52:39.0074 0x3278 [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 09:52:39.0086 0x3278 RDPDR - ok 09:52:39.0092 0x3278 [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 09:52:39.0100 0x3278 RdpVideoMiniport - ok 09:52:39.0107 0x3278 [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 09:52:39.0118 0x3278 rdyboost - ok 09:52:39.0137 0x3278 [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys 09:52:39.0161 0x3278 ReFSv1 - ok 09:52:39.0174 0x3278 [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 09:52:39.0197 0x3278 RemoteAccess - ok 09:52:39.0203 0x3278 [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 09:52:39.0219 0x3278 RemoteRegistry - ok 09:52:39.0240 0x3278 [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 09:52:39.0281 0x3278 RetailDemo - ok 09:52:39.0282 0x3278 Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo 09:52:41.0929 0x3278 Object send P2P result: true 09:52:41.0951 0x3278 [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 09:52:41.0979 0x3278 RFCOMM - ok 09:52:41.0984 0x3278 [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 09:52:42.0001 0x3278 RpcEptMapper - ok 09:52:42.0004 0x3278 [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator C:\WINDOWS\system32\locator.exe 09:52:42.0014 0x3278 RpcLocator - ok 09:52:42.0033 0x3278 [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs C:\WINDOWS\system32\rpcss.dll 09:52:42.0063 0x3278 RpcSs - ok 09:52:42.0068 0x3278 [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 09:52:42.0080 0x3278 rspndr - ok 09:52:42.0096 0x3278 [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER C:\WINDOWS\system32\DRIVERS\RtsPer.sys 09:52:42.0113 0x3278 RTSPER - ok 09:52:42.0116 0x3278 [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 09:52:42.0124 0x3278 s3cap - ok 09:52:42.0128 0x3278 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs C:\WINDOWS\system32\lsass.exe 09:52:42.0137 0x3278 SamSs - ok 09:52:42.0142 0x3278 [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 09:52:42.0151 0x3278 sbp2port - ok 09:52:42.0157 0x3278 [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 09:52:42.0175 0x3278 SCardSvr - ok 09:52:42.0181 0x3278 [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 09:52:42.0198 0x3278 ScDeviceEnum - ok 09:52:42.0201 0x3278 [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 09:52:42.0213 0x3278 scfilter - ok 09:52:42.0232 0x3278 [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule C:\WINDOWS\system32\schedsvc.dll 09:52:42.0271 0x3278 Schedule - ok 09:52:42.0280 0x3278 [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 09:52:42.0304 0x3278 SCPolicySvc - ok 09:52:42.0314 0x3278 [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 09:52:42.0329 0x3278 sdbus - ok 09:52:42.0336 0x3278 [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 09:52:42.0352 0x3278 SDRSVC - ok 09:52:42.0358 0x3278 [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 09:52:42.0370 0x3278 sdstor - ok 09:52:42.0375 0x3278 [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon C:\WINDOWS\system32\seclogon.dll 09:52:42.0388 0x3278 seclogon - ok 09:52:42.0393 0x3278 [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS C:\WINDOWS\System32\sens.dll 09:52:42.0416 0x3278 SENS - ok 09:52:42.0440 0x3278 [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 09:52:42.0484 0x3278 SensorDataService - ok 09:52:42.0493 0x3278 [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService C:\WINDOWS\system32\SensorService.dll 09:52:42.0512 0x3278 SensorService - ok 09:52:42.0518 0x3278 [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 09:52:42.0531 0x3278 SensrSvc - ok 09:52:42.0535 0x3278 [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 09:52:42.0544 0x3278 SerCx - ok 09:52:42.0548 0x3278 [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 09:52:42.0559 0x3278 SerCx2 - ok 09:52:42.0562 0x3278 [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 09:52:42.0571 0x3278 Serenum - ok 09:52:42.0575 0x3278 [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial C:\WINDOWS\System32\drivers\serial.sys 09:52:42.0586 0x3278 Serial - ok 09:52:42.0589 0x3278 [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 09:52:42.0598 0x3278 sermouse - ok 09:52:42.0610 0x3278 [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv C:\WINDOWS\system32\sessenv.dll 09:52:42.0628 0x3278 SessionEnv - ok 09:52:42.0631 0x3278 [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 09:52:42.0641 0x3278 sfloppy - ok 09:52:42.0651 0x3278 [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 09:52:42.0670 0x3278 SharedAccess - ok 09:52:42.0684 0x3278 [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 09:52:42.0714 0x3278 ShellHWDetection - ok 09:52:42.0720 0x3278 [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf C:\WINDOWS\system32\DRIVERS\Apsx64.sys 09:52:42.0726 0x3278 Shockprf - ok 09:52:42.0729 0x3278 [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 09:52:42.0738 0x3278 SiSRaid2 - ok 09:52:42.0742 0x3278 [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 09:52:42.0750 0x3278 SiSRaid4 - ok 09:52:42.0758 0x3278 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 09:52:42.0770 0x3278 SkypeUpdate - ok 09:52:42.0774 0x3278 [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys 09:52:42.0780 0x3278 SmbDrvI - ok 09:52:42.0783 0x3278 [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver C:\WINDOWS\system32\DRIVERS\smi.sys 09:52:42.0788 0x3278 SMIDriver - ok 09:52:42.0792 0x3278 [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost C:\WINDOWS\System32\smphost.dll 09:52:42.0806 0x3278 smphost - ok 09:52:42.0819 0x3278 [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 09:52:42.0843 0x3278 SmsRouter - ok 09:52:42.0850 0x3278 [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 09:52:42.0861 0x3278 SNMPTRAP - ok 09:52:42.0874 0x3278 [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 09:52:42.0891 0x3278 spaceport - ok 09:52:42.0895 0x3278 [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 09:52:42.0903 0x3278 SpbCx - ok 09:52:42.0907 0x3278 [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe 09:52:42.0912 0x3278 SpeedupService - ok 09:52:42.0928 0x3278 [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler C:\WINDOWS\System32\spoolsv.exe 09:52:42.0957 0x3278 Spooler - ok 09:52:43.0060 0x3278 [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc C:\WINDOWS\system32\sppsvc.exe 09:52:43.0188 0x3278 sppsvc - ok 09:52:43.0192 0x3278 Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc 09:52:45.0848 0x3278 Object send P2P result: true 09:52:45.0892 0x3278 [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys 09:52:45.0916 0x3278 SPUVCbv - ok 09:52:45.0916 0x3278 Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv 09:52:48.0562 0x3278 Object send P2P result: true 09:52:48.0578 0x3278 [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 09:52:48.0596 0x3278 srv - ok 09:52:48.0610 0x3278 [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 09:52:48.0636 0x3278 srv2 - ok 09:52:48.0643 0x3278 [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 09:52:48.0658 0x3278 srvnet - ok 09:52:48.0665 0x3278 [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 09:52:48.0684 0x3278 SSDPSRV - ok 09:52:48.0691 0x3278 [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 09:52:48.0709 0x3278 SstpSvc - ok 09:52:48.0762 0x3278 [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll 09:52:48.0859 0x3278 StateRepository - ok 09:52:48.0865 0x3278 [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 09:52:48.0873 0x3278 stexstor - ok 09:52:48.0886 0x3278 [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc C:\WINDOWS\System32\wiaservc.dll 09:52:48.0913 0x3278 stisvc - ok 09:52:48.0918 0x3278 [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 09:52:48.0929 0x3278 storahci - ok 09:52:48.0932 0x3278 [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 09:52:48.0941 0x3278 storflt - ok 09:52:48.0945 0x3278 [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 09:52:48.0953 0x3278 stornvme - ok 09:52:48.0958 0x3278 [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys 09:52:48.0969 0x3278 storqosflt - ok 09:52:48.0982 0x3278 [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc C:\WINDOWS\system32\storsvc.dll 09:52:49.0006 0x3278 StorSvc - ok 09:52:49.0010 0x3278 [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs C:\WINDOWS\system32\drivers\storufs.sys 09:52:49.0018 0x3278 storufs - ok 09:52:49.0021 0x3278 [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 09:52:49.0029 0x3278 storvsc - ok 09:52:49.0033 0x3278 [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService C:\Program Files (x86)\Lenovo\System Update\SUService.exe 09:52:49.0037 0x3278 SUService - ok 09:52:49.0041 0x3278 [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc C:\WINDOWS\system32\svsvc.dll 09:52:49.0054 0x3278 svsvc - ok 09:52:49.0057 0x3278 [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum C:\WINDOWS\System32\drivers\swenum.sys 09:52:49.0065 0x3278 swenum - ok 09:52:49.0076 0x3278 [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv C:\WINDOWS\System32\swprv.dll 09:52:49.0099 0x3278 swprv - ok 09:52:49.0104 0x3278 [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 09:52:49.0114 0x3278 Synth3dVsc - ok 09:52:49.0135 0x3278 [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 09:52:49.0152 0x3278 SynTP - ok 09:52:49.0164 0x3278 [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe 09:52:49.0178 0x3278 SynTPEnhService - ok 09:52:49.0203 0x3278 [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain C:\WINDOWS\system32\sysmain.dll 09:52:49.0245 0x3278 SysMain - ok 09:52:49.0246 0x3278 Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain 09:52:51.0898 0x3278 Object send P2P result: true 09:52:51.0932 0x3278 [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 09:52:51.0974 0x3278 SystemEventsBroker - ok 09:52:51.0985 0x3278 [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 09:52:52.0005 0x3278 TabletInputService - ok 09:52:52.0016 0x3278 [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 09:52:52.0037 0x3278 TapiSrv - ok 09:52:52.0079 0x3278 [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 09:52:52.0137 0x3278 Tcpip - ok 09:52:52.0182 0x3278 [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys 09:52:52.0235 0x3278 Tcpip6 - ok 09:52:52.0247 0x3278 [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 09:52:52.0258 0x3278 tcpipreg - ok 09:52:52.0263 0x3278 [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 09:52:52.0272 0x3278 tdx - ok 09:52:52.0275 0x3278 [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 09:52:52.0284 0x3278 terminpt - ok 09:52:52.0304 0x3278 [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService C:\WINDOWS\System32\termsrv.dll 09:52:52.0339 0x3278 TermService - ok 09:52:52.0344 0x3278 [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes C:\WINDOWS\system32\themeservice.dll 09:52:52.0361 0x3278 Themes - ok 09:52:52.0369 0x3278 [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe 09:52:52.0388 0x3278 TieringEngineService - ok 09:52:52.0399 0x3278 [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll 09:52:52.0420 0x3278 tiledatamodelsvc - ok 09:52:52.0427 0x3278 [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 09:52:52.0446 0x3278 TimeBroker - ok 09:52:52.0449 0x3278 [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN C:\WINDOWS\system32\DRIVERS\ApsHM64.sys 09:52:52.0454 0x3278 TPDIGIMN - ok 09:52:52.0459 0x3278 [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC C:\WINDOWS\system32\TPHDEXLG64.exe 09:52:52.0467 0x3278 TPHDEXLGSVC - ok 09:52:52.0473 0x3278 [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe 09:52:52.0481 0x3278 TPHKLOAD - ok 09:52:52.0489 0x3278 [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM C:\WINDOWS\System32\drivers\tpm.sys 09:52:52.0504 0x3278 TPM - ok 09:52:52.0509 0x3278 [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF C:\WINDOWS\system32\drivers\Tppwr64v.sys 09:52:52.0515 0x3278 TPPWRIF - ok 09:52:52.0521 0x3278 [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks C:\WINDOWS\System32\trkwks.dll 09:52:52.0537 0x3278 TrkWks - ok 09:52:52.0543 0x3278 [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 09:52:52.0561 0x3278 TrustedInstaller - ok 09:52:52.0568 0x3278 [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys 09:52:52.0581 0x3278 tsusbflt - ok 09:52:52.0584 0x3278 [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 09:52:52.0593 0x3278 TsUsbGD - ok 09:52:52.0599 0x3278 [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys 09:52:52.0613 0x3278 tunnel - ok 09:52:52.0617 0x3278 [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll 09:52:52.0629 0x3278 tzautoupdate - ok 09:52:52.0633 0x3278 [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 09:52:52.0643 0x3278 uagp35 - ok 09:52:52.0647 0x3278 [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 09:52:52.0657 0x3278 UASPStor - ok 09:52:52.0661 0x3278 [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 09:52:52.0670 0x3278 UcmCx0101 - ok 09:52:52.0674 0x3278 [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 09:52:52.0683 0x3278 UcmUcsi - ok 09:52:52.0689 0x3278 [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys 09:52:52.0700 0x3278 Ucx01000 - ok 09:52:52.0703 0x3278 [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys 09:52:52.0713 0x3278 UdeCx - ok 09:52:52.0721 0x3278 [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 09:52:52.0742 0x3278 udfs - ok 09:52:52.0746 0x3278 [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 09:52:52.0754 0x3278 UEFI - ok 09:52:52.0762 0x3278 [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 09:52:52.0774 0x3278 Ufx01000 - ok 09:52:52.0779 0x3278 [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys 09:52:52.0787 0x3278 UfxChipidea - ok 09:52:52.0794 0x3278 [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys 09:52:52.0803 0x3278 ufxsynopsys - ok 09:52:52.0809 0x3278 [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 09:52:52.0822 0x3278 UI0Detect - ok 09:52:52.0826 0x3278 [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 09:52:52.0835 0x3278 uliagpkx - ok 09:52:52.0839 0x3278 [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 09:52:52.0850 0x3278 umbus - ok 09:52:52.0853 0x3278 [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 09:52:52.0864 0x3278 UmPass - ok 09:52:52.0872 0x3278 [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 09:52:52.0888 0x3278 UmRdpService - ok 09:52:52.0912 0x3278 [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 09:52:52.0950 0x3278 UnistoreSvc - ok 09:52:52.0980 0x3278 [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost C:\WINDOWS\System32\upnphost.dll 09:52:53.0003 0x3278 upnphost - ok 09:52:53.0006 0x3278 [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 09:52:53.0014 0x3278 UrsChipidea - ok 09:52:53.0017 0x3278 [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 09:52:53.0026 0x3278 UrsCx01000 - ok 09:52:53.0029 0x3278 [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 09:52:53.0037 0x3278 UrsSynopsys - ok 09:52:53.0043 0x3278 [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub C:\WINDOWS\System32\drivers\usb3Hub.sys 09:52:53.0051 0x3278 usb3Hub - ok 09:52:53.0057 0x3278 [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 09:52:53.0067 0x3278 usbccgp - ok 09:52:53.0071 0x3278 [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 09:52:53.0082 0x3278 usbcir - ok 09:52:53.0086 0x3278 [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 09:52:53.0096 0x3278 usbehci - ok 09:52:53.0107 0x3278 [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 09:52:53.0124 0x3278 usbhub - ok 09:52:53.0136 0x3278 [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 09:52:53.0157 0x3278 USBHUB3 - ok 09:52:53.0161 0x3278 [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 09:52:53.0169 0x3278 usbohci - ok 09:52:53.0173 0x3278 [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 09:52:53.0182 0x3278 usbprint - ok 09:52:53.0185 0x3278 [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 09:52:53.0195 0x3278 usbscan - ok 09:52:53.0198 0x3278 [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser C:\WINDOWS\System32\drivers\usbser.sys 09:52:53.0209 0x3278 usbser - ok 09:52:53.0213 0x3278 [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 09:52:53.0223 0x3278 USBSTOR - ok 09:52:53.0226 0x3278 [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 09:52:53.0235 0x3278 usbuhci - ok 09:52:53.0241 0x3278 [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 09:52:53.0255 0x3278 usbvideo - ok 09:52:53.0265 0x3278 [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 09:52:53.0279 0x3278 USBXHCI - ok 09:52:53.0307 0x3278 [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 09:52:53.0352 0x3278 UserDataSvc - ok 09:52:53.0380 0x3278 [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager C:\WINDOWS\System32\usermgr.dll 09:52:53.0413 0x3278 UserManager - ok 09:52:53.0422 0x3278 [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc C:\WINDOWS\system32\usocore.dll 09:52:53.0441 0x3278 UsoSvc - ok 09:52:53.0446 0x3278 [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe 09:52:53.0455 0x3278 valWBFPolicyService - ok 09:52:53.0459 0x3278 [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc C:\WINDOWS\system32\valWbioSyncSvc.exe 09:52:53.0468 0x3278 valWbioSyncSvc - ok 09:52:53.0472 0x3278 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc C:\WINDOWS\system32\lsass.exe 09:52:53.0481 0x3278 VaultSvc - ok 09:52:53.0484 0x3278 [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 09:52:53.0492 0x3278 vdrvroot - ok 09:52:53.0506 0x3278 [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds C:\WINDOWS\System32\vds.exe 09:52:53.0535 0x3278 vds - ok 09:52:53.0542 0x3278 [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 09:52:53.0553 0x3278 VerifierExt - ok 09:52:53.0568 0x3278 [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 09:52:53.0588 0x3278 vhdmp - ok 09:52:53.0592 0x3278 [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf C:\WINDOWS\System32\drivers\vhf.sys 09:52:53.0601 0x3278 vhf - ok 09:52:53.0605 0x3278 [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 09:52:53.0614 0x3278 vmbus - ok 09:52:53.0616 0x3278 [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 09:52:53.0626 0x3278 VMBusHID - ok 09:52:53.0637 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 09:52:53.0660 0x3278 vmicguestinterface - ok 09:52:53.0671 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 09:52:53.0693 0x3278 vmicheartbeat - ok 09:52:53.0704 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 09:52:53.0726 0x3278 vmickvpexchange - ok 09:52:53.0737 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 09:52:53.0760 0x3278 vmicrdv - ok 09:52:53.0770 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 09:52:53.0793 0x3278 vmicshutdown - ok 09:52:53.0803 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 09:52:53.0825 0x3278 vmictimesync - ok 09:52:53.0836 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll 09:52:53.0857 0x3278 vmicvmsession - ok 09:52:53.0868 0x3278 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss C:\WINDOWS\System32\ICSvc.dll 09:52:53.0891 0x3278 vmicvss - ok 09:52:53.0896 0x3278 [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 09:52:53.0904 0x3278 volmgr - ok 09:52:53.0913 0x3278 [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 09:52:53.0927 0x3278 volmgrx - ok 09:52:53.0937 0x3278 [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 09:52:53.0952 0x3278 volsnap - ok 09:52:53.0957 0x3278 [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 09:52:53.0966 0x3278 vpci - ok 09:52:53.0972 0x3278 [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 09:52:53.0982 0x3278 vsmraid - ok 09:52:54.0010 0x3278 [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS C:\WINDOWS\system32\vssvc.exe 09:52:54.0064 0x3278 VSS - ok 09:52:54.0065 0x3278 Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS 09:52:56.0708 0x3278 Object send P2P result: true 09:52:56.0738 0x3278 [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 09:52:56.0763 0x3278 VSTXRAID - ok 09:52:56.0768 0x3278 [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 09:52:56.0779 0x3278 vwifibus - ok 09:52:56.0783 0x3278 [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys 09:52:56.0795 0x3278 vwififlt - ok 09:52:56.0798 0x3278 [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys 09:52:56.0810 0x3278 vwifimp - ok 09:52:56.0823 0x3278 [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time C:\WINDOWS\system32\w32time.dll 09:52:56.0849 0x3278 W32Time - ok 09:52:56.0853 0x3278 [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 09:52:56.0863 0x3278 WacomPen - ok 09:52:56.0874 0x3278 [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService C:\WINDOWS\system32\WalletService.dll 09:52:56.0895 0x3278 WalletService - ok 09:52:56.0899 0x3278 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 09:52:56.0911 0x3278 wanarp - ok 09:52:56.0914 0x3278 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 09:52:56.0926 0x3278 wanarpv6 - ok 09:52:56.0956 0x3278 [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine C:\WINDOWS\system32\wbengine.exe 09:52:57.0004 0x3278 wbengine - ok 09:52:57.0024 0x3278 [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 09:52:57.0049 0x3278 WbioSrvc - ok 09:52:57.0063 0x3278 [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 09:52:57.0087 0x3278 Wcmsvc - ok 09:52:57.0098 0x3278 [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 09:52:57.0121 0x3278 wcncsvc - ok 09:52:57.0125 0x3278 [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 09:52:57.0135 0x3278 WcsPlugInService - ok 09:52:57.0138 0x3278 [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 09:52:57.0147 0x3278 WdBoot - ok 09:52:57.0163 0x3278 [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 09:52:57.0184 0x3278 Wdf01000 - ok 09:52:57.0192 0x3278 [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 09:52:57.0205 0x3278 WdFilter - ok 09:52:57.0210 0x3278 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 09:52:57.0225 0x3278 WdiServiceHost - ok 09:52:57.0229 0x3278 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 09:52:57.0245 0x3278 WdiSystemHost - ok 09:52:57.0260 0x3278 [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys 09:52:57.0287 0x3278 wdiwifi - ok 09:52:57.0293 0x3278 [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 09:52:57.0304 0x3278 WdNisDrv - ok 09:52:57.0307 0x3278 WdNisSvc - ok 09:52:57.0313 0x3278 [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient C:\WINDOWS\System32\webclnt.dll 09:52:57.0333 0x3278 WebClient - ok 09:52:57.0339 0x3278 [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 09:52:57.0361 0x3278 Wecsvc - ok 09:52:57.0365 0x3278 [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 09:52:57.0380 0x3278 WEPHOSTSVC - ok 09:52:57.0385 0x3278 [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 09:52:57.0403 0x3278 wercplsupport - ok 09:52:57.0408 0x3278 [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc C:\WINDOWS\System32\WerSvc.dll 09:52:57.0427 0x3278 WerSvc - ok 09:52:57.0433 0x3278 [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys 09:52:57.0444 0x3278 WFPLWFS - ok 09:52:57.0449 0x3278 [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 09:52:57.0462 0x3278 WiaRpc - ok 09:52:57.0465 0x3278 [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 09:52:57.0475 0x3278 WIMMount - ok 09:52:57.0479 0x3278 WinDefend - ok 09:52:57.0486 0x3278 [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 09:52:57.0496 0x3278 WindowsTrustedRT - ok 09:52:57.0499 0x3278 [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 09:52:57.0509 0x3278 WindowsTrustedRTProxy - ok 09:52:57.0526 0x3278 [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 09:52:57.0555 0x3278 WinHttpAutoProxySvc - ok 09:52:57.0562 0x3278 [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys 09:52:57.0570 0x3278 WinMad - ok 09:52:57.0581 0x3278 [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 09:52:57.0594 0x3278 Winmgmt - ok 09:52:57.0642 0x3278 [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM C:\WINDOWS\system32\WsmSvc.dll 09:52:57.0716 0x3278 WinRM - ok 09:52:57.0765 0x3278 [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 09:52:57.0779 0x3278 WINUSB - ok 09:52:57.0785 0x3278 [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys 09:52:57.0796 0x3278 WinVerbs - ok 09:52:57.0838 0x3278 [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 09:52:57.0905 0x3278 WlanSvc - ok 09:52:57.0952 0x3278 [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 09:52:58.0015 0x3278 wlidsvc - ok 09:52:58.0025 0x3278 [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 09:52:58.0034 0x3278 WmiAcpi - ok 09:52:58.0043 0x3278 [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 09:52:58.0057 0x3278 wmiApSrv - ok 09:52:58.0061 0x3278 WMPNetworkSvc - ok 09:52:58.0067 0x3278 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys 09:52:58.0079 0x3278 Wof - ok 09:52:58.0116 0x3278 [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 09:52:58.0179 0x3278 workfolderssvc - ok 09:52:58.0185 0x3278 [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 09:52:58.0194 0x3278 wpcfltr - ok 09:52:58.0199 0x3278 [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 09:52:58.0210 0x3278 WPDBusEnum - ok 09:52:58.0215 0x3278 [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 09:52:58.0223 0x3278 WpdUpFltr - ok 09:52:58.0227 0x3278 [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService C:\WINDOWS\system32\WpnService.dll 09:52:58.0238 0x3278 WpnService - ok 09:52:58.0242 0x3278 [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001 C:\WINDOWS\system32\drivers\WPRO_41_2001.sys 09:52:58.0247 0x3278 WPRO_41_2001 - ok 09:52:58.0251 0x3278 [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 09:52:58.0262 0x3278 ws2ifsl - ok 09:52:58.0268 0x3278 [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 09:52:58.0283 0x3278 wscsvc - ok 09:52:58.0292 0x3278 [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 09:52:58.0303 0x3278 WSDPrintDevice - ok 09:52:58.0307 0x3278 [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys 09:52:58.0316 0x3278 WSDScan - ok 09:52:58.0320 0x3278 WSearch - ok 09:52:58.0388 0x3278 [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService C:\WINDOWS\System32\WSService.dll 09:52:58.0467 0x3278 WSService - ok 09:52:58.0516 0x3278 [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv C:\WINDOWS\system32\wuaueng.dll 09:52:58.0589 0x3278 wuauserv - ok 09:52:58.0597 0x3278 [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 09:52:58.0609 0x3278 WudfPf - ok 09:52:58.0615 0x3278 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 09:52:58.0632 0x3278 WUDFRd - ok 09:52:58.0636 0x3278 [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 09:52:58.0650 0x3278 wudfsvc - ok 09:52:58.0657 0x3278 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:52:58.0671 0x3278 WUDFWpdFs - ok 09:52:58.0678 0x3278 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:52:58.0693 0x3278 WUDFWpdMtp - ok 09:52:58.0718 0x3278 [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 09:52:58.0761 0x3278 WwanSvc - ok 09:52:58.0785 0x3278 [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 09:52:58.0819 0x3278 XblAuthManager - ok 09:52:58.0844 0x3278 [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 09:52:58.0884 0x3278 XblGameSave - ok 09:52:58.0893 0x3278 [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 09:52:58.0909 0x3278 xboxgip - ok 09:52:58.0930 0x3278 [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 09:52:58.0966 0x3278 XboxNetApiSvc - ok 09:52:58.0970 0x3278 [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 09:52:58.0980 0x3278 xinputhid - ok 09:52:58.0986 0x3278 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys 09:52:58.0998 0x3278 ZTEusbmdm6k - ok 09:52:59.0003 0x3278 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys 09:52:59.0014 0x3278 ZTEusbnmea - ok 09:52:59.0019 0x3278 [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys 09:52:59.0029 0x3278 ZTEusbser6k - ok 09:52:59.0030 0x3278 ================ Scan global =============================== 09:52:59.0033 0x3278 [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll 09:52:59.0040 0x3278 [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll 09:52:59.0046 0x3278 [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll 09:52:59.0056 0x3278 [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe 09:52:59.0063 0x3278 [ Global ] - ok 09:52:59.0063 0x3278 ================ Scan MBR ================================== 09:52:59.0066 0x3278 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 09:52:59.0437 0x3278 \Device\Harddisk2\DR7 - ok 09:52:59.0446 0x3278 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 09:52:59.0490 0x3278 \Device\Harddisk0\DR0 - ok 09:52:59.0506 0x3278 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4 09:52:59.0605 0x3278 \Device\Harddisk1\DR4 - ok 09:52:59.0609 0x3278 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 09:52:59.0652 0x3278 \Device\Harddisk2\DR7 - ok 09:52:59.0653 0x3278 ================ Scan VBR ================================== 09:52:59.0655 0x3278 [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 09:52:59.0658 0x3278 \Device\Harddisk2\DR7\Partition1 - ok 09:52:59.0664 0x3278 [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1 09:52:59.0667 0x3278 \Device\Harddisk0\DR0\Partition1 - ok 09:52:59.0671 0x3278 [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2 09:52:59.0673 0x3278 \Device\Harddisk0\DR0\Partition2 - ok 09:52:59.0676 0x3278 [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3 09:52:59.0676 0x3278 \Device\Harddisk0\DR0\Partition3 - ok 09:52:59.0679 0x3278 [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4 09:52:59.0681 0x3278 \Device\Harddisk0\DR0\Partition4 - ok 09:52:59.0684 0x3278 [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5 09:52:59.0686 0x3278 \Device\Harddisk0\DR0\Partition5 - ok 09:52:59.0689 0x3278 [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6 09:52:59.0692 0x3278 \Device\Harddisk0\DR0\Partition6 - ok 09:52:59.0694 0x3278 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7 09:52:59.0694 0x3278 \Device\Harddisk0\DR0\Partition7 - ok 09:52:59.0698 0x3278 [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1 09:52:59.0699 0x3278 \Device\Harddisk1\DR4\Partition1 - ok 09:52:59.0704 0x3278 [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 09:52:59.0707 0x3278 \Device\Harddisk2\DR7\Partition1 - ok 09:52:59.0707 0x3278 ================ Scan generic autorun ====================== 09:52:59.0713 0x3278 [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe 09:52:59.0741 0x3278 Logitech Download Assistant - ok 09:52:59.0753 0x3278 [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe 09:52:59.0781 0x3278 IgfxTray - ok 09:52:59.0829 0x3278 [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe 09:52:59.0850 0x3278 TpShocks - ok 09:52:59.0869 0x3278 [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe 09:52:59.0892 0x3278 LnvMobHotspotClient - ok 09:52:59.0908 0x3278 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:52:59.0913 0x3278 LMCSSTART1 - ok 09:52:59.0917 0x3278 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:52:59.0922 0x3278 LMCSSTART2 - ok 09:52:59.0925 0x3278 [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 09:52:59.0931 0x3278 LMCSSTART3 - ok 09:52:59.0931 0x3278 SynLenovoHelper - ok 09:52:59.0962 0x3278 [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 09:52:59.0992 0x3278 Integrated Camera_Monitor - ok 09:52:59.0994 0x3278 Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 09:53:02.0644 0x3278 Object send P2P result: true 09:53:02.0689 0x3278 [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe 09:53:02.0767 0x3278 Integrated Camera_Monitor - detected UnsignedFile.Multi.Generic ( 1 ) 09:53:02.0767 0x3278 Detect skipped due to KSN trusted 09:53:02.0767 0x3278 Integrated Camera_Monitor - ok 09:53:02.0772 0x3278 [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe 09:53:02.0781 0x3278 IMSS - ok 09:53:02.0785 0x3278 [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe 09:53:02.0792 0x3278 Avira SystrayStartTrigger - ok 09:53:02.0811 0x3278 [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe 09:53:02.0830 0x3278 avgnt - ok 09:53:02.0834 0x3278 [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe 09:53:02.0839 0x3278 Avira System Speedup User Starter - ok 09:53:02.0851 0x3278 [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 09:53:02.0865 0x3278 SunJavaUpdateSched - ok 09:53:02.0988 0x3278 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 09:53:03.0142 0x3278 OneDriveSetup - ok 09:53:03.0280 0x3278 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 09:53:03.0409 0x3278 OneDriveSetup - ok 09:53:03.0419 0x3278 GoogleDriveSync - ok 09:53:03.0435 0x3278 [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe 09:53:03.0450 0x3278 OneDrive - ok 09:53:03.0482 0x3278 [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe 09:53:03.0520 0x3278 Spotify Web Helper - ok 09:53:03.0526 0x3278 Skype - ok 09:53:03.0541 0x3278 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:53:03.0560 0x3278 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok 09:53:03.0560 0x3278 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:53:06.0219 0x3278 Object send P2P result: true 09:53:06.0249 0x3278 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:53:06.0287 0x3278 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok 09:53:06.0287 0x3278 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:53:08.0938 0x3278 Object send P2P result: true 09:53:08.0981 0x3278 [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 09:53:09.0014 0x3278 Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok 09:53:09.0014 0x3278 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 09:53:11.0663 0x3278 Object send P2P result: true 09:53:11.0668 0x3278 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated ) 09:53:11.0669 0x3278 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated ) 09:53:11.0671 0x3278 Win FW state via NFP2: enabled ( trusted ) 09:53:14.0209 0x3278 ============================================================ 09:53:14.0209 0x3278 Scan finished 09:53:14.0209 0x3278 ============================================================ 09:53:14.0234 0x330c Detected object count: 0 09:53:14.0234 0x330c Actual detected object count: 0 |
10.03.2016, 10:07 | #10 |
/// TB-Ausbilder /// Anleitungs-Guru | Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. Scan wurde nicht nach Anweisung ausgeführt. Bitte wiederholen und Log posten falls was gefunden wurde. Jetzt bitte Suchscan durchführen: Schritt 1 ESET Online Scanner
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
10.03.2016, 10:19 | #11 |
| TDSSKiller Report Teil 1Code:
ATTFilter 10:15:49.0685 0x2180 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12 10:15:49.0685 0x2180 UEFI system 10:15:51.0462 0x2180 ============================================================ 10:15:51.0462 0x2180 Current date / time: 2016/03/10 10:15:51.0462 10:15:51.0462 0x2180 SystemInfo: 10:15:51.0466 0x2180 10:15:51.0466 0x2180 OS Version: 10.0.10586 ServicePack: 0.0 10:15:51.0466 0x2180 Product type: Workstation 10:15:51.0466 0x2180 ComputerName: FLOSCHWAIGER-PC 10:15:51.0466 0x2180 UserName: FloSchwaiger 10:15:51.0466 0x2180 Windows directory: C:\WINDOWS 10:15:51.0466 0x2180 System windows directory: C:\WINDOWS 10:15:51.0466 0x2180 Running under WOW64 10:15:51.0466 0x2180 Processor architecture: Intel x64 10:15:51.0466 0x2180 Number of processors: 4 10:15:51.0466 0x2180 Page size: 0x1000 10:15:51.0466 0x2180 Boot type: Normal boot 10:15:51.0466 0x2180 ============================================================ 10:15:52.0649 0x2180 KLMD registered as C:\WINDOWS\system32\drivers\03251342.sys 10:15:52.0713 0x2180 System UUID: {64636FEE-1AC5-D94F-2DF1-0CE00301AE99} 10:15:52.0965 0x2180 Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 10:15:52.0965 0x2180 Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 10:15:52.0968 0x2180 Drive \Device\Harddisk1\DR4 - Size: 0x1D9C00000 ( 7.40 Gb ), SectorSize: 0x200, Cylinders: 0x3C6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:15:52.0981 0x2180 Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:15:52.0982 0x2180 ============================================================ 10:15:52.0982 0x2180 \Device\Harddisk2\DR7: 10:15:52.0982 0x2180 MBR partitions: 10:15:52.0982 0x2180 \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF 10:15:52.0982 0x2180 \Device\Harddisk0\DR0: 10:15:52.0983 0x2180 GPT partitions: 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {742A5203-8965-41BE-BEA7-67D2A8E54068}, Name: , StartLBA 0x800, BlocksNum 0x1F4000 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {AA2895CE-1EC9-4C2F-9888-BC310EED052C}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {547C710A-96B7-421B-B4A1-FD90F528EDAC}, Name: Microsoft reserved partition, StartLBA 0x276800, BlocksNum 0x40000 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C58DDAF5-20AA-4E0F-89D8-5A3C019C7809}, Name: Basic data partition, StartLBA 0x2B6800, BlocksNum 0x1B2E7B14 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {1CB8E3D8-37DC-45E2-A40A-97057AFB05E5}, Name: , StartLBA 0x1B59E800, BlocksNum 0xFB000 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {01398853-C4D6-4B88-A82D-7EBCE3F12716}, Name: , StartLBA 0x1B699800, BlocksNum 0x1859800 10:15:52.0984 0x2180 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {DFEBFDC9-B393-4D67-8744-4D13DDBF0B74}, Name: Basic data partition, StartLBA 0x1CEF3000, BlocksNum 0xE00000 10:15:52.0984 0x2180 MBR partitions: 10:15:52.0984 0x2180 \Device\Harddisk1\DR4: 10:15:52.0984 0x2180 MBR partitions: 10:15:52.0984 0x2180 \Device\Harddisk1\DR4\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xECC000 10:15:52.0984 0x2180 \Device\Harddisk2\DR7: 10:15:52.0985 0x2180 MBR partitions: 10:15:52.0985 0x2180 \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF 10:15:52.0985 0x2180 ============================================================ 10:15:52.0987 0x2180 C: <-> \Device\Harddisk0\DR0\Partition4 10:15:52.0989 0x2180 D: <-> \Device\Harddisk2\DR7\Partition1 10:15:52.0989 0x2180 ============================================================ 10:15:52.0989 0x2180 Initialize success 10:15:52.0989 0x2180 ============================================================ 10:16:47.0679 0x031c ============================================================ 10:16:47.0679 0x031c Scan started 10:16:47.0679 0x031c Mode: Manual; SigCheck; TDLFS; 10:16:47.0679 0x031c ============================================================ 10:16:47.0679 0x031c KSN ping started 10:16:50.0228 0x031c KSN ping finished: true 10:16:51.0482 0x031c ================ Scan system memory ======================== 10:16:51.0482 0x031c System memory - ok 10:16:51.0482 0x031c ================ Scan services ============================= 10:16:51.0514 0x031c [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 10:16:51.0544 0x031c 1394ohci - ok 10:16:51.0551 0x031c [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 10:16:51.0565 0x031c 3ware - ok 10:16:51.0578 0x031c [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 10:16:51.0596 0x031c ACPI - ok 10:16:51.0601 0x031c [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 10:16:51.0611 0x031c acpiex - ok 10:16:51.0614 0x031c [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 10:16:51.0624 0x031c acpipagr - ok 10:16:51.0627 0x031c [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 10:16:51.0636 0x031c AcpiPmi - ok 10:16:51.0640 0x031c [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 10:16:51.0649 0x031c acpitime - ok 10:16:51.0655 0x031c [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 10:16:51.0667 0x031c AdobeARMservice - ok 10:16:51.0687 0x031c [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 10:16:51.0696 0x031c AdobeFlashPlayerUpdateSvc - ok 10:16:51.0719 0x031c [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 10:16:51.0752 0x031c ADP80XX - ok 10:16:51.0767 0x031c [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD C:\WINDOWS\system32\drivers\afd.sys 10:16:51.0785 0x031c AFD - ok 10:16:51.0789 0x031c [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 10:16:51.0798 0x031c agp440 - ok 10:16:51.0805 0x031c [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 10:16:51.0819 0x031c ahcache - ok 10:16:51.0822 0x031c [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 10:16:51.0832 0x031c AJRouter - ok 10:16:51.0836 0x031c [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG C:\WINDOWS\System32\alg.exe 10:16:51.0848 0x031c ALG - ok 10:16:51.0853 0x031c [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 10:16:51.0864 0x031c AmdK8 - ok 10:16:51.0868 0x031c [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 10:16:51.0880 0x031c AmdPPM - ok 10:16:51.0884 0x031c [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 10:16:51.0898 0x031c amdsata - ok 10:16:51.0904 0x031c [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 10:16:51.0921 0x031c amdsbs - ok 10:16:51.0924 0x031c [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 10:16:51.0935 0x031c amdxata - ok 10:16:51.0957 0x031c [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 10:16:51.0981 0x031c AntiVirMailService - ok 10:16:51.0992 0x031c [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 10:16:52.0010 0x031c AntiVirSchedulerService - ok 10:16:52.0020 0x031c [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 10:16:52.0033 0x031c AntiVirService - ok 10:16:52.0058 0x031c [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 10:16:52.0098 0x031c AntiVirWebService - ok 10:16:52.0103 0x031c [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID C:\WINDOWS\system32\drivers\appid.sys 10:16:52.0113 0x031c AppID - ok 10:16:52.0117 0x031c [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 10:16:52.0130 0x031c AppIDSvc - ok 10:16:52.0134 0x031c [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo C:\WINDOWS\System32\appinfo.dll 10:16:52.0147 0x031c Appinfo - ok 10:16:52.0154 0x031c [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 10:16:52.0167 0x031c AppMgmt - ok 10:16:52.0178 0x031c [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 10:16:52.0200 0x031c AppReadiness - ok 10:16:52.0239 0x031c [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 10:16:52.0299 0x031c AppXSvc - ok 10:16:52.0310 0x031c [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 10:16:52.0324 0x031c arcsas - ok 10:16:52.0327 0x031c [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys 10:16:52.0338 0x031c AsyncMac - ok 10:16:52.0341 0x031c [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 10:16:52.0348 0x031c atapi - ok 10:16:52.0356 0x031c [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 10:16:52.0371 0x031c AudioEndpointBuilder - ok 10:16:52.0392 0x031c [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 10:16:52.0426 0x031c Audiosrv - ok 10:16:52.0443 0x031c [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe 10:16:52.0464 0x031c AVControlCenter - ok 10:16:52.0469 0x031c [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 10:16:52.0475 0x031c avgntflt - ok 10:16:52.0481 0x031c [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 10:16:52.0494 0x031c avipbb - ok 10:16:52.0502 0x031c [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 10:16:52.0511 0x031c Avira.ServiceHost - ok 10:16:52.0515 0x031c [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 10:16:52.0525 0x031c avkmgr - ok 10:16:52.0529 0x031c [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 10:16:52.0539 0x031c avnetflt - ok 10:16:52.0543 0x031c [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 10:16:52.0558 0x031c AxInstSV - ok 10:16:52.0571 0x031c [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 10:16:52.0593 0x031c b06bdrv - ok 10:16:52.0597 0x031c [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 10:16:52.0606 0x031c BasicDisplay - ok 10:16:52.0609 0x031c [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 10:16:52.0619 0x031c BasicRender - ok 10:16:52.0623 0x031c [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn C:\WINDOWS\System32\drivers\bcmfn.sys 10:16:52.0635 0x031c bcmfn - ok 10:16:52.0637 0x031c [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 10:16:52.0649 0x031c bcmfn2 - ok 10:16:52.0658 0x031c [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 10:16:52.0677 0x031c BDESVC - ok 10:16:52.0679 0x031c [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 10:16:52.0690 0x031c Beep - ok 10:16:52.0707 0x031c [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE C:\WINDOWS\System32\bfe.dll 10:16:52.0735 0x031c BFE - ok 10:16:52.0757 0x031c [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS C:\WINDOWS\System32\qmgr.dll 10:16:52.0794 0x031c BITS - ok 10:16:52.0805 0x031c [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 10:16:52.0822 0x031c Bonjour Service - ok 10:16:52.0826 0x031c [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 10:16:52.0837 0x031c bowser - ok 10:16:52.0847 0x031c [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe 10:16:52.0862 0x031c BrcmSetSecurity - ok 10:16:52.0875 0x031c [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 10:16:52.0898 0x031c BrokerInfrastructure - ok 10:16:52.0903 0x031c [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser C:\WINDOWS\System32\browser.dll 10:16:52.0915 0x031c Browser - ok 10:16:52.0919 0x031c [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 10:16:52.0929 0x031c BthAvrcpTg - ok 10:16:52.0933 0x031c [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 10:16:52.0945 0x031c BthEnum - ok 10:16:52.0948 0x031c [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 10:16:52.0959 0x031c BthHFEnum - ok 10:16:52.0963 0x031c [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 10:16:52.0973 0x031c bthhfhid - ok 10:16:52.0981 0x031c [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 10:16:52.0998 0x031c BthHFSrv - ok 10:16:53.0006 0x031c [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys 10:16:53.0021 0x031c BthLEEnum - ok 10:16:53.0025 0x031c [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 10:16:53.0035 0x031c BTHMODEM - ok 10:16:53.0040 0x031c [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 10:16:53.0051 0x031c BthPan - ok 10:16:53.0070 0x031c [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT C:\WINDOWS\System32\drivers\BTHport.sys 10:16:53.0101 0x031c BTHPORT - ok 10:16:53.0107 0x031c [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv C:\WINDOWS\system32\bthserv.dll 10:16:53.0118 0x031c bthserv - ok 10:16:53.0122 0x031c [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB C:\WINDOWS\System32\drivers\BTHUSB.sys 10:16:53.0133 0x031c BTHUSB - ok 10:16:53.0136 0x031c [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys 10:16:53.0146 0x031c buttonconverter - ok 10:16:53.0150 0x031c [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg C:\WINDOWS\System32\drivers\capimg.sys 10:16:53.0167 0x031c CapImg - ok 10:16:53.0172 0x031c [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 10:16:53.0183 0x031c cdfs - ok 10:16:53.0191 0x031c [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 10:16:53.0208 0x031c CDPSvc - ok 10:16:53.0213 0x031c [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 10:16:53.0226 0x031c cdrom - ok 10:16:53.0233 0x031c [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc C:\WINDOWS\System32\certprop.dll 10:16:53.0249 0x031c CertPropSvc - ok 10:16:53.0252 0x031c [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass C:\WINDOWS\System32\drivers\circlass.sys 10:16:53.0262 0x031c circlass - ok 10:16:53.0273 0x031c [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 10:16:53.0286 0x031c CLFS - ok 10:16:53.0334 0x031c [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe 10:16:53.0386 0x031c ClickToRunSvc - ok 10:16:53.0406 0x031c [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 10:16:53.0425 0x031c ClipSVC - ok 10:16:53.0432 0x031c [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 10:16:53.0442 0x031c CmBatt - ok 10:16:53.0455 0x031c [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG C:\WINDOWS\system32\Drivers\cng.sys 10:16:53.0474 0x031c CNG - ok 10:16:53.0478 0x031c [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 10:16:53.0485 0x031c cnghwassist - ok 10:16:53.0496 0x031c [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys 10:16:53.0507 0x031c CompositeBus - ok 10:16:53.0510 0x031c COMSysApp - ok 10:16:53.0513 0x031c [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv C:\WINDOWS\system32\drivers\condrv.sys 10:16:53.0521 0x031c condrv - ok 10:16:53.0537 0x031c [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll 10:16:53.0559 0x031c CoreMessagingRegistrar - ok 10:16:53.0583 0x031c [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 10:16:53.0601 0x031c cphs - ok 10:16:53.0607 0x031c [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 10:16:53.0619 0x031c CryptSvc - ok 10:16:53.0632 0x031c [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC C:\WINDOWS\system32\drivers\csc.sys 10:16:53.0653 0x031c CSC - ok 10:16:53.0670 0x031c [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService C:\WINDOWS\System32\cscsvc.dll 10:16:53.0697 0x031c CscService - ok 10:16:53.0701 0x031c [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam C:\WINDOWS\system32\drivers\dam.sys 10:16:53.0710 0x031c dam - ok 10:16:53.0730 0x031c [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 10:16:53.0761 0x031c DcomLaunch - ok 10:16:53.0768 0x031c [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll 10:16:53.0784 0x031c DcpSvc - ok 10:16:53.0797 0x031c [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc C:\WINDOWS\System32\defragsvc.dll 10:16:53.0822 0x031c defragsvc - ok 10:16:53.0833 0x031c [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 10:16:53.0852 0x031c DeviceAssociationService - ok 10:16:53.0857 0x031c [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 10:16:53.0874 0x031c DeviceInstall - ok 10:16:53.0877 0x031c [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 10:16:53.0887 0x031c DevQueryBroker - ok 10:16:53.0892 0x031c [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 10:16:53.0904 0x031c Dfsc - ok 10:16:53.0913 0x031c [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 10:16:53.0931 0x031c Dhcp - ok 10:16:53.0935 0x031c [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe 10:16:53.0945 0x031c diagnosticshub.standardcollector.service - ok 10:16:53.0974 0x031c [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 10:16:54.0011 0x031c DiagTrack - ok 10:16:54.0020 0x031c [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk C:\WINDOWS\system32\drivers\disk.sys 10:16:54.0029 0x031c disk - ok 10:16:54.0037 0x031c [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 10:16:54.0055 0x031c DmEnrollmentSvc - ok 10:16:54.0059 0x031c [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 10:16:54.0068 0x031c dmvsc - ok 10:16:54.0072 0x031c [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 10:16:54.0084 0x031c dmwappushservice - ok 10:16:54.0091 0x031c [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 10:16:54.0107 0x031c Dnscache - ok 10:16:54.0115 0x031c [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc C:\WINDOWS\System32\dot3svc.dll 10:16:54.0133 0x031c dot3svc - ok 10:16:54.0138 0x031c [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS C:\WINDOWS\system32\dps.dll 10:16:54.0152 0x031c DPS - ok 10:16:54.0156 0x031c [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud C:\WINDOWS\System32\drivers\drmkaud.sys 10:16:54.0164 0x031c drmkaud - ok 10:16:54.0170 0x031c [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 10:16:54.0184 0x031c DsmSvc - ok 10:16:54.0189 0x031c [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc C:\WINDOWS\System32\DsSvc.dll 10:16:54.0203 0x031c DsSvc - ok 10:16:54.0240 0x031c [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 10:16:54.0283 0x031c DXGKrnl - ok 10:16:54.0299 0x031c [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress C:\WINDOWS\system32\DRIVERS\e1d64x64.sys 10:16:54.0317 0x031c e1dexpress - ok 10:16:54.0322 0x031c [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost C:\WINDOWS\System32\eapsvc.dll 10:16:54.0335 0x031c Eaphost - ok 10:16:54.0395 0x031c [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 10:16:54.0478 0x031c ebdrv - ok 10:16:54.0488 0x031c [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS C:\WINDOWS\System32\lsass.exe 10:16:54.0498 0x031c EFS - ok 10:16:54.0501 0x031c [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 10:16:54.0511 0x031c EhStorClass - ok 10:16:54.0515 0x031c [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 10:16:54.0525 0x031c EhStorTcgDrv - ok 10:16:54.0532 0x031c [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 10:16:54.0545 0x031c embeddedmode - ok 10:16:54.0553 0x031c [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 10:16:54.0570 0x031c EntAppSvc - ok 10:16:54.0573 0x031c [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 10:16:54.0583 0x031c ErrDev - ok 10:16:54.0595 0x031c [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem C:\WINDOWS\system32\es.dll 10:16:54.0617 0x031c EventSystem - ok 10:16:54.0627 0x031c [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 10:16:54.0644 0x031c exfat - ok 10:16:54.0654 0x031c [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 10:16:54.0675 0x031c fastfat - ok 10:16:54.0691 0x031c [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax C:\WINDOWS\system32\fxssvc.exe 10:16:54.0717 0x031c Fax - ok 10:16:54.0723 0x031c [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 10:16:54.0733 0x031c fdc - ok 10:16:54.0735 0x031c [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 10:16:54.0750 0x031c fdPHost - ok 10:16:54.0754 0x031c [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub C:\WINDOWS\system32\fdrespub.dll 10:16:54.0768 0x031c FDResPub - ok 10:16:54.0773 0x031c [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc C:\WINDOWS\system32\fhsvc.dll 10:16:54.0783 0x2c60 Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService 10:16:54.0791 0x031c fhsvc - ok 10:16:54.0795 0x031c [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 10:16:54.0805 0x031c FileCrypt - ok 10:16:54.0810 0x031c [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 10:16:54.0819 0x031c FileInfo - ok 10:16:54.0824 0x031c [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 10:16:54.0837 0x031c Filetrace - ok 10:16:54.0841 0x031c [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 10:16:54.0851 0x031c flpydisk - ok 10:16:54.0860 0x031c [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 10:16:54.0875 0x031c FltMgr - ok 10:16:54.0906 0x031c [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache C:\WINDOWS\system32\FntCache.dll 10:16:54.0958 0x031c FontCache - ok 10:16:54.0969 0x031c [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 10:16:54.0977 0x031c FontCache3.0.0.0 - ok 10:16:54.0979 0x031c [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 10:16:54.0989 0x031c FsDepends - ok 10:16:54.0994 0x031c [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 10:16:55.0002 0x031c Fs_Rec - ok 10:16:55.0016 0x031c [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 10:16:55.0035 0x031c fvevol - ok 10:16:55.0041 0x031c [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 10:16:55.0050 0x031c gagp30kx - ok 10:16:55.0054 0x031c [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 10:16:55.0064 0x031c gencounter - ok 10:16:55.0067 0x031c [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys 10:16:55.0077 0x031c genericusbfn - ok 10:16:55.0082 0x031c [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 10:16:55.0094 0x031c GPIOClx0101 - ok 10:16:55.0119 0x031c [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 10:16:55.0169 0x031c gpsvc - ok 10:16:55.0173 0x031c [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 10:16:55.0186 0x031c GpuEnergyDrv - ok 10:16:55.0194 0x031c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 10:16:55.0209 0x031c gupdate - ok 10:16:55.0215 0x031c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 10:16:55.0220 0x031c gupdatem - ok 10:16:55.0226 0x031c [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 10:16:55.0237 0x031c HDAudBus - ok 10:16:55.0241 0x031c [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 10:16:55.0252 0x031c HidBatt - ok 10:16:55.0256 0x031c [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 10:16:55.0268 0x031c HidBth - ok 10:16:55.0275 0x031c [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 10:16:55.0285 0x031c hidi2c - ok 10:16:55.0290 0x031c [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys 10:16:55.0298 0x031c hidinterrupt - ok 10:16:55.0302 0x031c [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 10:16:55.0313 0x031c HidIr - ok 10:16:55.0317 0x031c [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv C:\WINDOWS\system32\hidserv.dll 10:16:55.0328 0x031c hidserv - ok 10:16:55.0332 0x031c [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 10:16:55.0343 0x031c HidUsb - ok 10:16:55.0351 0x031c [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 10:16:55.0367 0x031c HomeGroupListener - ok 10:16:55.0378 0x031c [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 10:16:55.0399 0x031c HomeGroupProvider - ok 10:16:55.0404 0x031c [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 10:16:55.0417 0x031c HpSAMD - ok 10:16:55.0439 0x031c [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 10:16:55.0470 0x031c HTTP - ok 10:16:55.0476 0x031c [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys 10:16:55.0492 0x031c huawei_enumerator - ok 10:16:55.0495 0x031c [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 10:16:55.0500 0x33f4 Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt 10:16:55.0505 0x031c hwpolicy - ok 10:16:55.0509 0x031c [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 10:16:55.0517 0x031c hyperkbd - ok 10:16:55.0522 0x031c [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 10:16:55.0533 0x031c i8042prt - ok 10:16:55.0537 0x031c [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys 10:16:55.0554 0x031c iai2c - ok 10:16:55.0562 0x031c [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 10:16:55.0580 0x031c iaLPSS2i_I2C - ok 10:16:55.0582 0x031c [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 10:16:55.0592 0x031c iaLPSSi_GPIO - ok 10:16:55.0596 0x031c [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 10:16:55.0612 0x031c iaLPSSi_I2C - ok 10:16:55.0627 0x031c [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 10:16:55.0643 0x031c iaStorA - ok 10:16:55.0658 0x031c [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 10:16:55.0685 0x031c iaStorAV - ok 10:16:55.0695 0x031c [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 10:16:55.0715 0x031c iaStorV - ok 10:16:55.0726 0x031c [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys 10:16:55.0747 0x031c ibbus - ok 10:16:55.0752 0x031c [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys 10:16:55.0762 0x031c IBMPMDRV - ok 10:16:55.0767 0x031c [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC C:\WINDOWS\system32\ibmpmsvc.exe 10:16:55.0774 0x031c IBMPMSVC - ok 10:16:55.0781 0x031c [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys 10:16:55.0797 0x031c ibtusb - ok 10:16:55.0802 0x031c [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc C:\WINDOWS\System32\tetheringservice.dll 10:16:55.0819 0x031c icssvc - ok 10:16:55.0822 0x031c IEEtwCollectorService - ok 10:16:55.0951 0x031c [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 10:16:56.0095 0x031c igfx - ok 10:16:56.0116 0x031c [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 10:16:56.0136 0x031c igfxCUIService2.0.0.0 - ok 10:16:56.0140 0x031c [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent C:\WINDOWS\system32\DRIVERS\ikbevent.sys 10:16:56.0150 0x031c ikbevent - ok 10:16:56.0170 0x031c [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT C:\WINDOWS\System32\ikeext.dll 10:16:56.0203 0x031c IKEEXT - ok 10:16:56.0207 0x031c [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent C:\WINDOWS\system32\DRIVERS\imsevent.sys 10:16:56.0215 0x031c imsevent - ok 10:16:56.0221 0x031c [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 10:16:56.0230 0x031c intaud_WaveExtensible - ok 10:16:56.0304 0x031c [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 10:16:56.0388 0x031c IntcAzAudAddService - ok 10:16:56.0407 0x031c [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 10:16:56.0420 0x031c IntcDAud - ok 10:16:56.0438 0x031c [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 10:16:56.0467 0x031c Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 ) 10:16:56.0901 0x14a0 Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam 10:16:57.0462 0x2c60 Object send P2P result: true 10:16:58.0138 0x33f4 Object send P2P result: true 10:16:58.0138 0x33f4 Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost 10:16:58.0214 0x30ac Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c 10:16:59.0029 0x031c Detect skipped due to KSN trusted 10:16:59.0029 0x031c Intel(R) Capability Licensing Service Interface - ok 10:16:59.0049 0x031c [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 10:16:59.0079 0x031c Intel(R) Capability Licensing Service TCP IP Interface - ok 10:16:59.0086 0x031c [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe 10:16:59.0102 0x031c Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok 10:16:59.0109 0x031c [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc C:\WINDOWS\system32\drivers\IntelPcc.sys 10:16:59.0116 0x031c IntelHSWPcc - ok 10:16:59.0119 0x031c [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide C:\WINDOWS\system32\drivers\intelide.sys 10:16:59.0127 0x031c intelide - ok 10:16:59.0131 0x031c [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 10:16:59.0140 0x031c intelpep - ok 10:16:59.0144 0x031c [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 10:16:59.0156 0x031c intelppm - ok 10:16:59.0160 0x031c [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys 10:16:59.0169 0x031c IoQos - ok 10:16:59.0173 0x031c [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 10:16:59.0186 0x031c IpFilterDriver - ok 10:16:59.0206 0x031c [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 10:16:59.0242 0x031c iphlpsvc - ok 10:16:59.0246 0x031c [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 10:16:59.0257 0x031c IPMIDRV - ok 10:16:59.0261 0x031c [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 10:16:59.0273 0x031c IPNAT - ok 10:16:59.0277 0x031c [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 10:16:59.0287 0x031c IRENUM - ok 10:16:59.0290 0x031c [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 10:16:59.0298 0x031c isapnp - ok 10:16:59.0305 0x031c [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 10:16:59.0317 0x031c iScsiPrt - ok 10:16:59.0321 0x031c [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT C:\WINDOWS\System32\drivers\ISCTD64.sys 10:16:59.0329 0x031c ISCT - ok 10:16:59.0336 0x031c [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 10:16:59.0349 0x031c ISCTAgent - ok 10:16:59.0356 0x031c [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe 10:16:59.0372 0x031c iumsvc - ok 10:16:59.0375 0x031c [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 10:16:59.0384 0x031c iwdbus - ok 10:16:59.0389 0x031c [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 10:16:59.0403 0x031c jhi_service - ok 10:16:59.0407 0x031c [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 10:16:59.0415 0x031c kbdclass - ok 10:16:59.0418 0x031c [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 10:16:59.0428 0x031c kbdhid - ok 10:16:59.0431 0x031c [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys 10:16:59.0440 0x031c kdnic - ok 10:16:59.0444 0x031c [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso C:\WINDOWS\system32\lsass.exe 10:16:59.0452 0x031c KeyIso - ok 10:16:59.0457 0x031c [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 10:16:59.0467 0x031c KSecDD - ok 10:16:59.0472 0x031c [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 10:16:59.0482 0x031c KSecPkg - ok 10:16:59.0484 0x031c [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 10:16:59.0494 0x031c ksthunk - ok 10:16:59.0503 0x031c [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 10:16:59.0523 0x031c KtmRm - ok 10:16:59.0530 0x031c [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 10:16:59.0533 0x14a0 Object send P2P result: true 10:16:59.0548 0x031c LanmanServer - ok 10:16:59.0555 0x031c [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 10:16:59.0572 0x031c LanmanWorkstation - ok 10:16:59.0610 0x031c [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe 10:16:59.0654 0x031c Lenovo Settings Service - ok 10:16:59.0673 0x031c [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe 10:16:59.0696 0x031c Lenovo System Agent Service - ok 10:16:59.0708 0x031c [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\cammute.exe 10:16:59.0725 0x031c LENOVO.CAMMUTE - ok 10:16:59.0730 0x031c [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe 10:16:59.0742 0x031c LENOVO.MICMUTE - ok 10:16:59.0752 0x031c [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe 10:16:59.0767 0x031c LENOVO.TPKNRSVC - ok 10:16:59.0780 0x031c [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe 10:16:59.0802 0x031c LENOVO.TVTVCAM - ok 10:16:59.0807 0x031c [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe 10:16:59.0819 0x031c Lenovo.VIRTSCRLSVC - ok 10:16:59.0822 0x031c [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 10:16:59.0832 0x031c lfsvc - ok 10:16:59.0835 0x031c [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 10:16:59.0845 0x031c LicenseManager - ok 10:16:59.0848 0x031c [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 10:16:59.0860 0x031c lltdio - ok 10:16:59.0868 0x031c [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 10:16:59.0886 0x031c lltdsvc - ok 10:16:59.0890 0x031c [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 10:16:59.0899 0x031c lmhosts - ok 10:16:59.0908 0x031c [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 10:16:59.0919 0x031c LMS - ok 10:16:59.0930 0x031c [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe 10:16:59.0946 0x031c LnvHotSpotSvc - ok 10:16:59.0957 0x031c [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe 10:16:59.0974 0x031c LocationTaskManager - ok 10:16:59.0984 0x031c [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe 10:16:59.0994 0x031c LSCWinService - ok 10:16:59.0998 0x031c [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 10:17:00.0013 0x031c LSI_SAS - ok 10:17:00.0017 0x031c [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys 10:17:00.0031 0x031c LSI_SAS2i - ok 10:17:00.0035 0x031c [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys 10:17:00.0049 0x031c LSI_SAS3i - ok 10:17:00.0052 0x031c [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 10:17:00.0066 0x031c LSI_SSS - ok 10:17:00.0080 0x031c [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM C:\WINDOWS\System32\lsm.dll 10:17:00.0107 0x031c LSM - ok 10:17:00.0112 0x031c [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv C:\WINDOWS\system32\drivers\luafv.sys 10:17:00.0127 0x031c luafv - ok 10:17:00.0130 0x031c [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker C:\WINDOWS\System32\moshost.dll 10:17:00.0142 0x031c MapsBroker - ok 10:17:00.0144 0x031c [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter C:\WINDOWS\system32\drivers\massfilter.sys 10:17:00.0155 0x031c massfilter - ok 10:17:00.0158 0x031c [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 10:17:00.0166 0x031c MBAMProtector - ok 10:17:00.0280 0x031c [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 10:17:00.0311 0x031c MBAMService - ok 10:17:00.0318 0x031c [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 10:17:00.0327 0x031c MBAMWebAccessControl - ok 10:17:00.0336 0x031c [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe 10:17:00.0345 0x031c McComponentHostService - ok 10:17:00.0349 0x031c [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas C:\WINDOWS\system32\drivers\megasas.sys 10:17:00.0361 0x031c megasas - ok 10:17:00.0374 0x031c [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr C:\WINDOWS\system32\drivers\megasr.sys 10:17:00.0397 0x031c megasr - ok 10:17:00.0403 0x031c [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys 10:17:00.0413 0x031c MEIx64 - ok 10:17:00.0416 0x031c [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll 10:17:00.0428 0x031c MessagingService - ok 10:17:00.0437 0x031c [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd C:\WINDOWS\System32\drivers\MiraDispKmd.sys 10:17:00.0446 0x031c MiraDispKmd - ok 10:17:00.0461 0x031c [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys 10:17:00.0488 0x031c mlx4_bus - ok 10:17:00.0492 0x031c [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys 10:17:00.0501 0x031c MMCSS - ok 10:17:00.0504 0x031c [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem C:\WINDOWS\system32\drivers\modem.sys 10:17:00.0516 0x031c Modem - ok 10:17:00.0519 0x031c [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor C:\WINDOWS\System32\drivers\monitor.sys 10:17:00.0528 0x031c monitor - ok 10:17:00.0532 0x031c [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 10:17:00.0540 0x031c mouclass - ok 10:17:00.0543 0x031c [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 10:17:00.0553 0x031c mouhid - ok 10:17:00.0557 0x031c [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 10:17:00.0566 0x031c mountmgr - ok 10:17:00.0571 0x031c [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 10:17:00.0585 0x031c MozillaMaintenance - ok 10:17:00.0590 0x031c [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 10:17:00.0600 0x031c mpsdrv - ok 10:17:00.0617 0x031c [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 10:17:00.0647 0x031c MpsSvc - ok 10:17:00.0652 0x031c [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 10:17:00.0665 0x031c MRxDAV - ok 10:17:00.0676 0x031c [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 10:17:00.0691 0x031c mrxsmb - ok 10:17:00.0699 0x031c [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 10:17:00.0715 0x031c mrxsmb10 - ok 10:17:00.0721 0x031c [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 10:17:00.0732 0x031c mrxsmb20 - ok 10:17:00.0737 0x031c [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 10:17:00.0749 0x031c MsBridge - ok 10:17:00.0754 0x031c [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe 10:17:00.0767 0x031c MSDTC - ok 10:17:00.0772 0x031c [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 10:17:00.0774 0x33f4 Object send P2P result: true 10:17:00.0781 0x031c Msfs - ok 10:17:00.0785 0x031c [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 10:17:00.0794 0x031c msgpiowin32 - ok 10:17:00.0797 0x031c [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 10:17:00.0805 0x031c mshidkmdf - ok 10:17:00.0808 0x031c [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 10:17:00.0817 0x031c mshidumdf - ok 10:17:00.0819 0x031c [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 10:17:00.0827 0x031c msisadrv - ok 10:17:00.0832 0x031c [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 10:17:00.0844 0x30ac Object send P2P result: true 10:17:00.0844 0x30ac Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C 10:17:00.0846 0x031c MSiSCSI - ok 10:17:00.0849 0x031c msiserver - ok 10:17:00.0852 0x031c [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys 10:17:00.0861 0x031c MSKSSRV - ok 10:17:00.0864 0x031c [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 10:17:00.0876 0x031c MsLldp - ok 10:17:00.0879 0x031c [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys 10:17:00.0889 0x031c MSPCLOCK - ok 10:17:00.0892 0x031c [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM C:\WINDOWS\system32\DRIVERS\MSPQM.sys 10:17:00.0900 0x031c MSPQM - ok 10:17:00.0908 0x031c [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 10:17:00.0922 0x031c MsRPC - ok 10:17:00.0926 0x031c [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 10:17:00.0934 0x031c mssmbios - ok 10:17:00.0936 0x031c [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE C:\WINDOWS\system32\DRIVERS\MSTEE.sys 10:17:00.0946 0x031c MSTEE - ok 10:17:00.0948 0x031c [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 10:17:00.0957 0x031c MTConfig - ok 10:17:00.0962 0x031c [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup C:\WINDOWS\system32\Drivers\mup.sys 10:17:00.0971 0x031c Mup - ok Code:
ATTFilter 10:17:00.0976 0x031c [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 10:17:00.0990 0x031c mvumis - ok 10:17:01.0003 0x031c [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 10:17:01.0025 0x031c NativeWifiP - ok 10:17:01.0031 0x031c [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 10:17:01.0043 0x031c NcaSvc - ok 10:17:01.0052 0x031c [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService C:\WINDOWS\System32\ncbservice.dll 10:17:01.0068 0x031c NcbService - ok 10:17:01.0073 0x031c [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 10:17:01.0090 0x031c NcdAutoSetup - ok 10:17:01.0094 0x031c [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys 10:17:01.0106 0x031c ndfltr - ok 10:17:01.0129 0x031c [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 10:17:01.0157 0x031c NDIS - ok 10:17:01.0162 0x031c [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 10:17:01.0170 0x031c NdisCap - ok 10:17:01.0175 0x031c [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 10:17:01.0187 0x031c NdisImPlatform - ok 10:17:01.0190 0x031c [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 10:17:01.0201 0x031c NdisTapi - ok 10:17:01.0204 0x031c [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys 10:17:01.0213 0x031c Ndisuio - ok 10:17:01.0216 0x031c [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 10:17:01.0227 0x031c NdisVirtualBus - ok 10:17:01.0233 0x031c [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys 10:17:01.0247 0x031c NdisWan - ok 10:17:01.0253 0x031c [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 10:17:01.0268 0x031c ndiswanlegacy - ok 10:17:01.0271 0x031c [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys 10:17:01.0282 0x031c ndproxy - ok 10:17:01.0288 0x031c [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 10:17:01.0299 0x031c Ndu - ok 10:17:01.0302 0x031c [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys 10:17:01.0311 0x031c NetBIOS - ok 10:17:01.0318 0x031c [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 10:17:01.0333 0x031c NetBT - ok 10:17:01.0336 0x031c [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon C:\WINDOWS\system32\lsass.exe 10:17:01.0346 0x031c Netlogon - ok 10:17:01.0355 0x031c [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman C:\WINDOWS\System32\netman.dll 10:17:01.0372 0x031c Netman - ok 10:17:01.0383 0x031c [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 10:17:01.0408 0x031c netprofm - ok 10:17:01.0414 0x031c [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll 10:17:01.0428 0x031c NetSetupSvc - ok 10:17:01.0436 0x031c [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 10:17:01.0445 0x031c NetTcpPortSharing - ok 10:17:01.0504 0x031c [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys 10:17:01.0604 0x031c NETwNb64 - ok 10:17:01.0620 0x031c [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 10:17:01.0635 0x031c NgcCtnrSvc - ok 10:17:01.0650 0x031c [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll 10:17:01.0674 0x031c NgcSvc - ok 10:17:01.0682 0x031c [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe 10:17:01.0696 0x031c NitroDriverReadSpool9 - ok 10:17:01.0707 0x031c [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe 10:17:01.0726 0x031c NitroUpdateService - ok 10:17:01.0735 0x031c [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 10:17:01.0754 0x031c NlaSvc - ok 10:17:01.0772 0x031c [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc C:\WINDOWS\SysWOW64\NLSSRV32.EXE 10:17:01.0782 0x031c nlsX86cc - ok 10:17:01.0786 0x031c [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 10:17:01.0796 0x031c Npfs - ok 10:17:01.0799 0x031c [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 10:17:01.0808 0x031c npsvctrig - ok 10:17:01.0811 0x031c [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi C:\WINDOWS\system32\nsisvc.dll 10:17:01.0820 0x031c nsi - ok 10:17:01.0824 0x031c [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 10:17:01.0832 0x031c nsiproxy - ok 10:17:01.0871 0x031c [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys 10:17:01.0920 0x031c NTFS - ok 10:17:01.0930 0x031c [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null C:\WINDOWS\system32\drivers\Null.sys 10:17:01.0940 0x031c Null - ok 10:17:01.0946 0x031c [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 10:17:01.0964 0x031c nvraid - ok 10:17:01.0969 0x031c [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 10:17:01.0988 0x031c nvstor - ok 10:17:01.0996 0x031c [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 10:17:02.0006 0x031c nv_agp - ok 10:17:02.0011 0x031c [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI C:\WINDOWS\SysWOW64\drivers\omnismi.sys 10:17:02.0020 0x031c OMNISMI - ok 10:17:02.0032 0x031c [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 10:17:02.0053 0x031c OneSyncSvc - ok 10:17:02.0068 0x031c [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 10:17:02.0078 0x031c ose - ok 10:17:02.0088 0x031c [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 10:17:02.0107 0x031c p2pimsvc - ok 10:17:02.0119 0x031c [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc C:\WINDOWS\system32\p2psvc.dll 10:17:02.0141 0x031c p2psvc - ok 10:17:02.0148 0x031c [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport C:\WINDOWS\System32\drivers\parport.sys 10:17:02.0160 0x031c Parport - ok 10:17:02.0165 0x031c [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 10:17:02.0176 0x031c partmgr - ok 10:17:02.0189 0x031c [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 10:17:02.0208 0x031c PcaSvc - ok 10:17:02.0217 0x031c [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci C:\WINDOWS\system32\drivers\pci.sys 10:17:02.0232 0x031c pci - ok 10:17:02.0235 0x031c [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 10:17:02.0245 0x031c pciide - ok 10:17:02.0250 0x031c [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 10:17:02.0261 0x031c pcmcia - ok 10:17:02.0264 0x031c [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 10:17:02.0273 0x031c pcw - ok 10:17:02.0277 0x031c [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc C:\WINDOWS\system32\drivers\pdc.sys 10:17:02.0286 0x031c pdc - ok 10:17:02.0303 0x031c [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 10:17:02.0332 0x031c PEAUTH - ok 10:17:02.0368 0x031c [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll 10:17:02.0423 0x031c PeerDistSvc - ok 10:17:02.0432 0x031c [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys 10:17:02.0445 0x031c percsas2i - ok 10:17:02.0448 0x031c [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys 10:17:02.0460 0x031c percsas3i - ok 10:17:02.0464 0x031c [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 10:17:02.0473 0x031c PerfHost - ok 10:17:02.0493 0x031c [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll 10:17:02.0519 0x031c PhoneSvc - ok 10:17:02.0526 0x031c [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 10:17:02.0541 0x031c PimIndexMaintenanceSvc - ok 10:17:02.0574 0x031c [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla C:\WINDOWS\system32\pla.dll 10:17:02.0621 0x031c pla - ok 10:17:02.0631 0x031c [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 10:17:02.0646 0x031c PlugPlay - ok 10:17:02.0649 0x031c [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 10:17:02.0659 0x031c PNRPAutoReg - ok 10:17:02.0667 0x031c [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 10:17:02.0684 0x031c PNRPsvc - ok 10:17:02.0692 0x031c [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 10:17:02.0712 0x031c PolicyAgent - ok 10:17:02.0717 0x031c [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power C:\WINDOWS\system32\umpo.dll 10:17:02.0730 0x031c Power - ok 10:17:02.0760 0x031c [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE 10:17:02.0798 0x031c Power Manager DBC Service - ok 10:17:02.0807 0x031c [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys 10:17:02.0819 0x031c PptpMiniport - ok 10:17:02.0878 0x031c [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 10:17:02.0980 0x031c PrintNotify - ok 10:17:02.0991 0x031c [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor C:\WINDOWS\System32\drivers\processr.sys 10:17:03.0002 0x031c Processor - ok 10:17:03.0011 0x031c [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc C:\WINDOWS\system32\profsvc.dll 10:17:03.0027 0x031c ProfSvc - ok 10:17:03.0032 0x031c [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched C:\WINDOWS\system32\drivers\pacer.sys 10:17:03.0043 0x031c Psched - ok 10:17:03.0047 0x031c [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe 10:17:03.0058 0x031c QuickControlMasterSvc - ok 10:17:03.0062 0x031c [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe 10:17:03.0074 0x031c QuickControlService - ok 10:17:03.0081 0x031c [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE C:\WINDOWS\system32\qwave.dll 10:17:03.0097 0x031c QWAVE - ok 10:17:03.0101 0x031c [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 10:17:03.0111 0x031c QWAVEdrv - ok 10:17:03.0113 0x031c [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 10:17:03.0123 0x031c RasAcd - ok 10:17:03.0127 0x031c [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys 10:17:03.0140 0x031c RasAgileVpn - ok 10:17:03.0144 0x031c [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto C:\WINDOWS\System32\rasauto.dll 10:17:03.0157 0x031c RasAuto - ok 10:17:03.0162 0x031c [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys 10:17:03.0173 0x031c Rasl2tp - ok 10:17:03.0187 0x031c [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan C:\WINDOWS\System32\rasmans.dll 10:17:03.0217 0x031c RasMan - ok 10:17:03.0222 0x031c [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 10:17:03.0234 0x031c RasPppoe - ok 10:17:03.0237 0x031c [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys 10:17:03.0250 0x031c RasSstp - ok 10:17:03.0260 0x031c [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 10:17:03.0274 0x031c rdbss - ok 10:17:03.0278 0x031c [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 10:17:03.0287 0x031c rdpbus - ok 10:17:03.0293 0x031c [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 10:17:03.0306 0x031c RDPDR - ok 10:17:03.0311 0x031c [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 10:17:03.0318 0x031c RdpVideoMiniport - ok 10:17:03.0325 0x031c [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 10:17:03.0337 0x031c rdyboost - ok 10:17:03.0356 0x031c [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys 10:17:03.0381 0x031c ReFSv1 - ok 10:17:03.0394 0x031c [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 10:17:03.0417 0x031c RemoteAccess - ok 10:17:03.0423 0x031c [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 10:17:03.0440 0x031c RemoteRegistry - ok 10:17:03.0460 0x031c [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 10:17:03.0473 0x30ac Object send P2P result: true 10:17:03.0502 0x031c RetailDemo - ok 10:17:03.0509 0x031c [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 10:17:03.0522 0x031c RFCOMM - ok 10:17:03.0526 0x031c [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 10:17:03.0537 0x031c RpcEptMapper - ok 10:17:03.0540 0x031c [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator C:\WINDOWS\system32\locator.exe 10:17:03.0550 0x031c RpcLocator - ok 10:17:03.0567 0x031c [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs C:\WINDOWS\system32\rpcss.dll 10:17:03.0599 0x031c RpcSs - ok 10:17:03.0604 0x031c [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 10:17:03.0616 0x031c rspndr - ok 10:17:03.0631 0x031c [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER C:\WINDOWS\system32\DRIVERS\RtsPer.sys 10:17:03.0653 0x031c RTSPER - ok 10:17:03.0657 0x031c [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 10:17:03.0665 0x031c s3cap - ok 10:17:03.0669 0x031c [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs C:\WINDOWS\system32\lsass.exe 10:17:03.0677 0x031c SamSs - ok 10:17:03.0682 0x031c [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 10:17:03.0691 0x031c sbp2port - ok 10:17:03.0698 0x031c [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 10:17:03.0716 0x031c SCardSvr - ok 10:17:03.0721 0x031c [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 10:17:03.0739 0x031c ScDeviceEnum - ok 10:17:03.0743 0x031c [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 10:17:03.0755 0x031c scfilter - ok 10:17:03.0775 0x031c [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule C:\WINDOWS\system32\schedsvc.dll 10:17:03.0808 0x031c Schedule - ok 10:17:03.0815 0x031c [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 10:17:03.0830 0x031c SCPolicySvc - ok 10:17:03.0838 0x031c [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 10:17:03.0850 0x031c sdbus - ok 10:17:03.0855 0x031c [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 10:17:03.0868 0x031c SDRSVC - ok 10:17:03.0872 0x031c [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 10:17:03.0880 0x031c sdstor - ok 10:17:03.0885 0x031c [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon C:\WINDOWS\system32\seclogon.dll 10:17:03.0896 0x031c seclogon - ok 10:17:03.0900 0x031c [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS C:\WINDOWS\System32\sens.dll 10:17:03.0914 0x031c SENS - ok 10:17:03.0940 0x031c [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 10:17:03.0985 0x031c SensorDataService - ok 10:17:03.0999 0x031c [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService C:\WINDOWS\system32\SensorService.dll 10:17:04.0017 0x031c SensorService - ok 10:17:04.0022 0x031c [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 10:17:04.0037 0x031c SensrSvc - ok 10:17:04.0041 0x031c [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 10:17:04.0050 0x031c SerCx - ok 10:17:04.0055 0x031c [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 10:17:04.0064 0x031c SerCx2 - ok 10:17:04.0067 0x031c [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 10:17:04.0078 0x031c Serenum - ok 10:17:04.0081 0x031c [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial C:\WINDOWS\System32\drivers\serial.sys 10:17:04.0093 0x031c Serial - ok 10:17:04.0096 0x031c [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 10:17:04.0105 0x031c sermouse - ok 10:17:04.0117 0x031c [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv C:\WINDOWS\system32\sessenv.dll 10:17:04.0136 0x031c SessionEnv - ok 10:17:04.0140 0x031c [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 10:17:04.0150 0x031c sfloppy - ok 10:17:04.0160 0x031c [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 10:17:04.0181 0x031c SharedAccess - ok 10:17:04.0196 0x031c [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 10:17:04.0232 0x031c ShellHWDetection - ok 10:17:04.0237 0x031c [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf C:\WINDOWS\system32\DRIVERS\Apsx64.sys 10:17:04.0247 0x031c Shockprf - ok 10:17:04.0251 0x031c [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 10:17:04.0267 0x031c SiSRaid2 - ok 10:17:04.0271 0x031c [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 10:17:04.0286 0x031c SiSRaid4 - ok 10:17:04.0296 0x031c [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 10:17:04.0318 0x031c SkypeUpdate - ok 10:17:04.0323 0x031c [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys 10:17:04.0335 0x031c SmbDrvI - ok 10:17:04.0342 0x031c [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver C:\WINDOWS\system32\DRIVERS\smi.sys 10:17:04.0352 0x031c SMIDriver - ok 10:17:04.0358 0x031c [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost C:\WINDOWS\System32\smphost.dll 10:17:04.0377 0x031c smphost - ok 10:17:04.0391 0x031c [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 10:17:04.0416 0x031c SmsRouter - ok 10:17:04.0424 0x031c [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 10:17:04.0438 0x031c SNMPTRAP - ok 10:17:04.0454 0x031c [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 10:17:04.0473 0x031c spaceport - ok 10:17:04.0480 0x031c [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 10:17:04.0488 0x031c SpbCx - ok 10:17:04.0496 0x031c [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe 10:17:04.0501 0x031c SpeedupService - ok 10:17:04.0517 0x031c [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler C:\WINDOWS\System32\spoolsv.exe 10:17:04.0547 0x031c Spooler - ok 10:17:04.0650 0x031c [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc C:\WINDOWS\system32\sppsvc.exe 10:17:04.0787 0x031c sppsvc - ok 10:17:04.0810 0x031c [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys 10:17:04.0830 0x031c SPUVCbv - ok 10:17:04.0840 0x031c [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 10:17:04.0858 0x031c srv - ok 10:17:04.0872 0x031c [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 10:17:04.0899 0x031c srv2 - ok 10:17:04.0906 0x031c [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 10:17:04.0921 0x031c srvnet - ok 10:17:04.0928 0x031c [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 10:17:04.0945 0x031c SSDPSRV - ok 10:17:04.0951 0x031c [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 10:17:04.0967 0x031c SstpSvc - ok 10:17:05.0013 0x031c [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll 10:17:05.0087 0x031c StateRepository - ok 10:17:05.0096 0x031c [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 10:17:05.0108 0x031c stexstor - ok 10:17:05.0121 0x031c [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc C:\WINDOWS\System32\wiaservc.dll 10:17:05.0147 0x031c stisvc - ok 10:17:05.0152 0x031c [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 10:17:05.0162 0x031c storahci - ok 10:17:05.0165 0x031c [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 10:17:05.0174 0x031c storflt - ok 10:17:05.0177 0x031c [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 10:17:05.0186 0x031c stornvme - ok 10:17:05.0191 0x031c [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys 10:17:05.0201 0x031c storqosflt - ok 10:17:05.0215 0x031c [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc C:\WINDOWS\system32\storsvc.dll 10:17:05.0241 0x031c StorSvc - ok 10:17:05.0244 0x031c [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs C:\WINDOWS\system32\drivers\storufs.sys 10:17:05.0252 0x031c storufs - ok 10:17:05.0256 0x031c [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 10:17:05.0264 0x031c storvsc - ok 10:17:05.0267 0x031c [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService C:\Program Files (x86)\Lenovo\System Update\SUService.exe 10:17:05.0276 0x031c SUService - ok 10:17:05.0279 0x031c [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc C:\WINDOWS\system32\svsvc.dll 10:17:05.0292 0x031c svsvc - ok 10:17:05.0295 0x031c [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum C:\WINDOWS\System32\drivers\swenum.sys 10:17:05.0303 0x031c swenum - ok 10:17:05.0314 0x031c [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv C:\WINDOWS\System32\swprv.dll 10:17:05.0344 0x031c swprv - ok 10:17:05.0355 0x031c [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 10:17:05.0365 0x031c Synth3dVsc - ok 10:17:05.0378 0x031c [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 10:17:05.0399 0x031c SynTP - ok 10:17:05.0409 0x031c [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe 10:17:05.0425 0x031c SynTPEnhService - ok 10:17:05.0448 0x031c [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain C:\WINDOWS\system32\sysmain.dll 10:17:05.0488 0x031c SysMain - ok 10:17:05.0498 0x031c [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 10:17:05.0517 0x031c SystemEventsBroker - ok 10:17:05.0522 0x031c [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 10:17:05.0536 0x031c TabletInputService - ok 10:17:05.0543 0x031c [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 10:17:05.0561 0x031c TapiSrv - ok 10:17:05.0602 0x031c [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 10:17:05.0653 0x031c Tcpip - ok 10:17:05.0700 0x031c [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys 10:17:05.0754 0x031c Tcpip6 - ok 10:17:05.0789 0x031c [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 10:17:05.0801 0x031c tcpipreg - ok 10:17:05.0808 0x031c [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 10:17:05.0817 0x031c tdx - ok 10:17:05.0821 0x031c [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 10:17:05.0829 0x031c terminpt - ok 10:17:05.0849 0x031c [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService C:\WINDOWS\System32\termsrv.dll 10:17:05.0885 0x031c TermService - ok 10:17:05.0889 0x031c [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes C:\WINDOWS\system32\themeservice.dll 10:17:05.0906 0x031c Themes - ok 10:17:05.0914 0x031c [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe 10:17:05.0934 0x031c TieringEngineService - ok 10:17:05.0946 0x031c [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll 10:17:05.0967 0x031c tiledatamodelsvc - ok 10:17:05.0973 0x031c [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 10:17:05.0986 0x031c TimeBroker - ok 10:17:05.0989 0x031c [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN C:\WINDOWS\system32\DRIVERS\ApsHM64.sys 10:17:05.0994 0x031c TPDIGIMN - ok 10:17:05.0997 0x031c [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC C:\WINDOWS\system32\TPHDEXLG64.exe 10:17:06.0008 0x031c TPHDEXLGSVC - ok 10:17:06.0014 0x031c [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe 10:17:06.0026 0x031c TPHKLOAD - ok 10:17:06.0031 0x031c [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM C:\WINDOWS\System32\drivers\tpm.sys 10:17:06.0043 0x031c TPM - ok 10:17:06.0046 0x031c [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF C:\WINDOWS\system32\drivers\Tppwr64v.sys 10:17:06.0055 0x031c TPPWRIF - ok 10:17:06.0059 0x031c [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks C:\WINDOWS\System32\trkwks.dll 10:17:06.0073 0x031c TrkWks - ok 10:17:06.0077 0x031c [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 10:17:06.0088 0x031c TrustedInstaller - ok 10:17:06.0092 0x031c [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys 10:17:06.0102 0x031c tsusbflt - ok 10:17:06.0106 0x031c [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 10:17:06.0114 0x031c TsUsbGD - ok 10:17:06.0120 0x031c [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys 10:17:06.0134 0x031c tunnel - ok 10:17:06.0138 0x031c [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll 10:17:06.0151 0x031c tzautoupdate - ok 10:17:06.0155 0x031c [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 10:17:06.0164 0x031c uagp35 - ok 10:17:06.0167 0x031c [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 10:17:06.0175 0x031c UASPStor - ok 10:17:06.0179 0x031c [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 10:17:06.0189 0x031c UcmCx0101 - ok 10:17:06.0193 0x031c [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 10:17:06.0203 0x031c UcmUcsi - ok 10:17:06.0209 0x031c [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys 10:17:06.0220 0x031c Ucx01000 - ok 10:17:06.0224 0x031c [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys 10:17:06.0234 0x031c UdeCx - ok 10:17:06.0242 0x031c [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 10:17:06.0261 0x031c udfs - ok 10:17:06.0265 0x031c [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 10:17:06.0273 0x031c UEFI - ok |
10.03.2016, 11:29 | #12 |
| TDSSKiller Report Teil 3Code:
ATTFilter 10:17:06.0279 0x031c [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 10:17:06.0292 0x031c Ufx01000 - ok 10:17:06.0297 0x031c [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys 10:17:06.0306 0x031c UfxChipidea - ok 10:17:06.0311 0x031c [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys 10:17:06.0320 0x031c ufxsynopsys - ok 10:17:06.0326 0x031c [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 10:17:06.0338 0x031c UI0Detect - ok 10:17:06.0343 0x031c [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 10:17:06.0351 0x031c uliagpkx - ok 10:17:06.0354 0x031c [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 10:17:06.0364 0x031c umbus - ok 10:17:06.0368 0x031c [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 10:17:06.0378 0x031c UmPass - ok 10:17:06.0386 0x031c [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 10:17:06.0404 0x031c UmRdpService - ok 10:17:06.0428 0x031c [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 10:17:06.0466 0x031c UnistoreSvc - ok 10:17:06.0489 0x031c [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost C:\WINDOWS\System32\upnphost.dll 10:17:06.0512 0x031c upnphost - ok 10:17:06.0515 0x031c [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 10:17:06.0523 0x031c UrsChipidea - ok 10:17:06.0526 0x031c [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 10:17:06.0534 0x031c UrsCx01000 - ok 10:17:06.0537 0x031c [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 10:17:06.0546 0x031c UrsSynopsys - ok 10:17:06.0551 0x031c [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub C:\WINDOWS\System32\drivers\usb3Hub.sys 10:17:06.0565 0x031c usb3Hub - ok 10:17:06.0570 0x031c [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 10:17:06.0580 0x031c usbccgp - ok 10:17:06.0585 0x031c [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 10:17:06.0597 0x031c usbcir - ok 10:17:06.0601 0x031c [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 10:17:06.0610 0x031c usbehci - ok 10:17:06.0621 0x031c [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 10:17:06.0637 0x031c usbhub - ok 10:17:06.0650 0x031c [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 10:17:06.0668 0x031c USBHUB3 - ok 10:17:06.0671 0x031c [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 10:17:06.0680 0x031c usbohci - ok 10:17:06.0683 0x031c [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 10:17:06.0693 0x031c usbprint - ok 10:17:06.0696 0x031c [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 10:17:06.0710 0x031c usbscan - ok 10:17:06.0714 0x031c [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser C:\WINDOWS\System32\drivers\usbser.sys 10:17:06.0724 0x031c usbser - ok 10:17:06.0729 0x031c [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 10:17:06.0739 0x031c USBSTOR - ok 10:17:06.0743 0x031c [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 10:17:06.0752 0x031c usbuhci - ok 10:17:06.0759 0x031c [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 10:17:06.0774 0x031c usbvideo - ok 10:17:06.0783 0x031c [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 10:17:06.0797 0x031c USBXHCI - ok 10:17:06.0826 0x031c [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 10:17:06.0871 0x031c UserDataSvc - ok 10:17:06.0900 0x031c [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager C:\WINDOWS\System32\usermgr.dll 10:17:06.0932 0x031c UserManager - ok 10:17:06.0942 0x031c [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc C:\WINDOWS\system32\usocore.dll 10:17:06.0961 0x031c UsoSvc - ok 10:17:06.0965 0x031c [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe 10:17:06.0980 0x031c valWBFPolicyService - ok 10:17:06.0984 0x031c [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc C:\WINDOWS\system32\valWbioSyncSvc.exe 10:17:06.0993 0x031c valWbioSyncSvc - ok 10:17:06.0996 0x031c [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc C:\WINDOWS\system32\lsass.exe 10:17:07.0005 0x031c VaultSvc - ok 10:17:07.0009 0x031c [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 10:17:07.0017 0x031c vdrvroot - ok 10:17:07.0031 0x031c [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds C:\WINDOWS\System32\vds.exe 10:17:07.0060 0x031c vds - ok 10:17:07.0066 0x031c [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 10:17:07.0077 0x031c VerifierExt - ok 10:17:07.0092 0x031c [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 10:17:07.0112 0x031c vhdmp - ok 10:17:07.0115 0x031c [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf C:\WINDOWS\System32\drivers\vhf.sys 10:17:07.0125 0x031c vhf - ok 10:17:07.0130 0x031c [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 10:17:07.0139 0x031c vmbus - ok 10:17:07.0141 0x031c [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 10:17:07.0151 0x031c VMBusHID - ok 10:17:07.0162 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 10:17:07.0184 0x031c vmicguestinterface - ok 10:17:07.0196 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 10:17:07.0217 0x031c vmicheartbeat - ok 10:17:07.0228 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 10:17:07.0250 0x031c vmickvpexchange - ok 10:17:07.0261 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 10:17:07.0282 0x031c vmicrdv - ok 10:17:07.0292 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 10:17:07.0313 0x031c vmicshutdown - ok 10:17:07.0324 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 10:17:07.0345 0x031c vmictimesync - ok 10:17:07.0356 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll 10:17:07.0377 0x031c vmicvmsession - ok 10:17:07.0387 0x031c [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss C:\WINDOWS\System32\ICSvc.dll 10:17:07.0409 0x031c vmicvss - ok 10:17:07.0412 0x031c [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 10:17:07.0421 0x031c volmgr - ok 10:17:07.0429 0x031c [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 10:17:07.0443 0x031c volmgrx - ok 10:17:07.0453 0x031c [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 10:17:07.0468 0x031c volsnap - ok 10:17:07.0473 0x031c [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 10:17:07.0481 0x031c vpci - ok 10:17:07.0486 0x031c [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 10:17:07.0501 0x031c vsmraid - ok 10:17:07.0526 0x031c [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS C:\WINDOWS\system32\vssvc.exe 10:17:07.0574 0x031c VSS - ok 10:17:07.0587 0x031c [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 10:17:07.0605 0x031c VSTXRAID - ok 10:17:07.0609 0x031c [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 10:17:07.0619 0x031c vwifibus - ok 10:17:07.0623 0x031c [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys 10:17:07.0635 0x031c vwififlt - ok 10:17:07.0638 0x031c [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys 10:17:07.0650 0x031c vwifimp - ok 10:17:07.0662 0x031c [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time C:\WINDOWS\system32\w32time.dll 10:17:07.0687 0x031c W32Time - ok 10:17:07.0690 0x031c [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 10:17:07.0701 0x031c WacomPen - ok 10:17:07.0712 0x031c [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService C:\WINDOWS\system32\WalletService.dll 10:17:07.0734 0x031c WalletService - ok 10:17:07.0739 0x031c [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 10:17:07.0752 0x031c wanarp - ok 10:17:07.0755 0x031c [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 10:17:07.0768 0x031c wanarpv6 - ok 10:17:07.0795 0x031c [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine C:\WINDOWS\system32\wbengine.exe 10:17:07.0843 0x031c wbengine - ok 10:17:07.0860 0x031c [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 10:17:07.0885 0x031c WbioSrvc - ok 10:17:07.0899 0x031c [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 10:17:07.0924 0x031c Wcmsvc - ok 10:17:07.0935 0x031c [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 10:17:07.0957 0x031c wcncsvc - ok 10:17:07.0962 0x031c [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 10:17:07.0972 0x031c WcsPlugInService - ok 10:17:07.0976 0x031c [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 10:17:07.0984 0x031c WdBoot - ok 10:17:08.0000 0x031c [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 10:17:08.0020 0x031c Wdf01000 - ok 10:17:08.0029 0x031c [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 10:17:08.0041 0x031c WdFilter - ok 10:17:08.0046 0x031c [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 10:17:08.0062 0x031c WdiServiceHost - ok 10:17:08.0065 0x031c [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 10:17:08.0080 0x031c WdiSystemHost - ok 10:17:08.0096 0x031c [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys 10:17:08.0123 0x031c wdiwifi - ok 10:17:08.0128 0x031c [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 10:17:08.0136 0x031c WdNisDrv - ok 10:17:08.0138 0x031c WdNisSvc - ok 10:17:08.0145 0x031c [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient C:\WINDOWS\System32\webclnt.dll 10:17:08.0165 0x031c WebClient - ok 10:17:08.0171 0x031c [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 10:17:08.0188 0x031c Wecsvc - ok 10:17:08.0191 0x031c [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 10:17:08.0205 0x031c WEPHOSTSVC - ok 10:17:08.0209 0x031c [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 10:17:08.0226 0x031c wercplsupport - ok 10:17:08.0231 0x031c [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc C:\WINDOWS\System32\WerSvc.dll 10:17:08.0248 0x031c WerSvc - ok 10:17:08.0254 0x031c [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys 10:17:08.0264 0x031c WFPLWFS - ok 10:17:08.0268 0x031c [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 10:17:08.0279 0x031c WiaRpc - ok 10:17:08.0283 0x031c [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 10:17:08.0293 0x031c WIMMount - ok 10:17:08.0295 0x031c WinDefend - ok 10:17:08.0302 0x031c [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 10:17:08.0312 0x031c WindowsTrustedRT - ok 10:17:08.0315 0x031c [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 10:17:08.0323 0x031c WindowsTrustedRTProxy - ok 10:17:08.0340 0x031c [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 10:17:08.0369 0x031c WinHttpAutoProxySvc - ok 10:17:08.0373 0x031c [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys 10:17:08.0384 0x031c WinMad - ok 10:17:08.0395 0x031c [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 10:17:08.0410 0x031c Winmgmt - ok 10:17:08.0455 0x031c [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM C:\WINDOWS\system32\WsmSvc.dll 10:17:08.0528 0x031c WinRM - ok 10:17:08.0540 0x031c [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 10:17:08.0551 0x031c WINUSB - ok 10:17:08.0555 0x031c [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys 10:17:08.0567 0x031c WinVerbs - ok 10:17:08.0607 0x031c [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 10:17:08.0673 0x031c WlanSvc - ok 10:17:08.0715 0x031c [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 10:17:08.0774 0x031c wlidsvc - ok 10:17:08.0782 0x031c [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 10:17:08.0792 0x031c WmiAcpi - ok 10:17:08.0799 0x031c [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 10:17:08.0812 0x031c wmiApSrv - ok 10:17:08.0815 0x031c WMPNetworkSvc - ok 10:17:08.0821 0x031c [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys 10:17:08.0832 0x031c Wof - ok 10:17:08.0867 0x031c [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 10:17:08.0923 0x031c workfolderssvc - ok 10:17:08.0931 0x031c [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 10:17:08.0939 0x031c wpcfltr - ok 10:17:08.0943 0x031c [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 10:17:08.0956 0x031c WPDBusEnum - ok 10:17:08.0959 0x031c [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 10:17:08.0967 0x031c WpdUpFltr - ok 10:17:08.0970 0x031c [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService C:\WINDOWS\system32\WpnService.dll 10:17:08.0981 0x031c WpnService - ok 10:17:08.0984 0x031c [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001 C:\WINDOWS\system32\drivers\WPRO_41_2001.sys 10:17:08.0993 0x031c WPRO_41_2001 - ok 10:17:08.0997 0x031c [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 10:17:09.0009 0x031c ws2ifsl - ok 10:17:09.0016 0x031c [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 10:17:09.0034 0x031c wscsvc - ok 10:17:09.0038 0x031c [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 10:17:09.0051 0x031c WSDPrintDevice - ok 10:17:09.0055 0x031c [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys 10:17:09.0067 0x031c WSDScan - ok 10:17:09.0071 0x031c WSearch - ok 10:17:09.0120 0x2acc Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC 10:17:09.0152 0x031c [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService C:\WINDOWS\System32\WSService.dll 10:17:09.0229 0x031c WSService - ok 10:17:09.0273 0x031c [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv C:\WINDOWS\system32\wuaueng.dll 10:17:09.0337 0x031c wuauserv - ok 10:17:09.0346 0x031c [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 10:17:09.0357 0x031c WudfPf - ok 10:17:09.0363 0x031c [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 10:17:09.0377 0x031c WUDFRd - ok 10:17:09.0382 0x031c [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 10:17:09.0395 0x031c wudfsvc - ok 10:17:09.0400 0x031c [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 10:17:09.0414 0x031c WUDFWpdFs - ok 10:17:09.0420 0x031c [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 10:17:09.0435 0x031c WUDFWpdMtp - ok 10:17:09.0459 0x031c [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 10:17:09.0497 0x031c WwanSvc - ok 10:17:09.0516 0x031c [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 10:17:09.0549 0x031c XblAuthManager - ok 10:17:09.0572 0x031c [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 10:17:09.0608 0x031c XblGameSave - ok 10:17:09.0616 0x031c [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 10:17:09.0629 0x031c xboxgip - ok 10:17:09.0649 0x031c [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 10:17:09.0683 0x031c XboxNetApiSvc - ok 10:17:09.0687 0x031c [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 10:17:09.0696 0x031c xinputhid - ok 10:17:09.0701 0x031c [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys 10:17:09.0715 0x031c ZTEusbmdm6k - ok 10:17:09.0720 0x031c [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys 10:17:09.0733 0x031c ZTEusbnmea - ok 10:17:09.0738 0x031c [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys 10:17:09.0750 0x031c ZTEusbser6k - ok 10:17:09.0750 0x031c ================ Scan global =============================== 10:17:09.0755 0x031c [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll 10:17:09.0761 0x031c [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll 10:17:09.0767 0x031c [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll 10:17:09.0778 0x031c [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe 10:17:09.0784 0x031c [ Global ] - ok 10:17:09.0784 0x031c ================ Scan MBR ================================== 10:17:09.0787 0x031c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 10:17:09.0835 0x031c \Device\Harddisk2\DR7 - ok 10:17:09.0840 0x031c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 10:17:09.0877 0x031c \Device\Harddisk0\DR0 - ok 10:17:09.0892 0x031c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4 10:17:09.0996 0x031c \Device\Harddisk1\DR4 - ok 10:17:10.0001 0x031c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7 10:17:10.0044 0x031c \Device\Harddisk2\DR7 - ok 10:17:10.0044 0x031c ================ Scan VBR ================================== 10:17:10.0048 0x031c [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 10:17:10.0052 0x031c \Device\Harddisk2\DR7\Partition1 - ok 10:17:10.0058 0x031c [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1 10:17:10.0060 0x031c \Device\Harddisk0\DR0\Partition1 - ok 10:17:10.0063 0x031c [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2 10:17:10.0063 0x031c \Device\Harddisk0\DR0\Partition2 - ok 10:17:10.0065 0x031c [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3 10:17:10.0065 0x031c \Device\Harddisk0\DR0\Partition3 - ok 10:17:10.0067 0x031c [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4 10:17:10.0069 0x031c \Device\Harddisk0\DR0\Partition4 - ok 10:17:10.0070 0x031c [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5 10:17:10.0072 0x031c \Device\Harddisk0\DR0\Partition5 - ok 10:17:10.0074 0x031c [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6 10:17:10.0075 0x031c \Device\Harddisk0\DR0\Partition6 - ok 10:17:10.0077 0x031c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7 10:17:10.0077 0x031c \Device\Harddisk0\DR0\Partition7 - ok 10:17:10.0080 0x031c [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1 10:17:10.0081 0x031c \Device\Harddisk1\DR4\Partition1 - ok 10:17:10.0083 0x031c [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1 10:17:10.0085 0x031c \Device\Harddisk2\DR7\Partition1 - ok 10:17:10.0085 0x031c ================ Scan generic autorun ====================== 10:17:10.0089 0x031c [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe 10:17:10.0106 0x031c Logitech Download Assistant - ok 10:17:10.0115 0x031c [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe 10:17:10.0127 0x031c IgfxTray - ok 10:17:10.0136 0x031c [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe 10:17:10.0153 0x031c TpShocks - ok 10:17:10.0172 0x031c [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe 10:17:10.0196 0x031c LnvMobHotspotClient - ok 10:17:10.0213 0x031c [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 10:17:10.0223 0x031c LMCSSTART1 - ok 10:17:10.0226 0x031c [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 10:17:10.0231 0x031c LMCSSTART2 - ok 10:17:10.0234 0x031c [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe 10:17:10.0239 0x031c LMCSSTART3 - ok 10:17:10.0239 0x031c SynLenovoHelper - ok 10:17:10.0271 0x031c [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 10:17:10.0300 0x031c Integrated Camera_Monitor - ok 10:17:10.0334 0x031c [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe 10:17:10.0383 0x031c Integrated Camera_Monitor - detected UnsignedFile.Multi.Generic ( 1 ) 10:17:11.0768 0x2acc Object send P2P result: true 10:17:11.0790 0x2acc Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo 10:17:12.0984 0x031c Detect skipped due to KSN trusted 10:17:12.0984 0x031c Integrated Camera_Monitor - ok 10:17:13.0005 0x031c [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe 10:17:13.0040 0x031c IMSS - ok 10:17:13.0048 0x031c [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe 10:17:13.0064 0x031c Avira SystrayStartTrigger - ok 10:17:13.0083 0x031c [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe 10:17:13.0101 0x031c avgnt - ok 10:17:13.0105 0x031c [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe 10:17:13.0113 0x031c Avira System Speedup User Starter - ok 10:17:13.0125 0x031c [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 10:17:13.0149 0x031c SunJavaUpdateSched - ok 10:17:13.0280 0x031c [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 10:17:13.0416 0x031c OneDriveSetup - ok 10:17:13.0551 0x031c [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 10:17:13.0677 0x031c OneDriveSetup - ok 10:17:13.0689 0x031c GoogleDriveSync - ok 10:17:13.0703 0x031c [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe 10:17:13.0718 0x031c OneDrive - ok 10:17:13.0751 0x031c [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe 10:17:13.0786 0x031c Spotify Web Helper - ok 10:17:13.0790 0x031c Skype - ok 10:17:13.0799 0x031c [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 10:17:13.0816 0x031c Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok 10:17:13.0825 0x031c [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 10:17:13.0841 0x031c Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok 10:17:13.0850 0x031c [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe 10:17:13.0867 0x031c Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok 10:17:13.0868 0x031c Waiting for KSN requests completion. In queue: 240 10:17:14.0446 0x2acc Object send P2P result: true 10:17:14.0453 0x2acc Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc 10:17:14.0869 0x031c Waiting for KSN requests completion. In queue: 198 10:17:15.0869 0x031c Waiting for KSN requests completion. In queue: 198 10:17:16.0519 0x0810 Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS 10:17:16.0870 0x031c Waiting for KSN requests completion. In queue: 152 10:17:17.0130 0x2acc Object send P2P result: true 10:17:17.0133 0x2acc Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv 10:17:17.0871 0x031c Waiting for KSN requests completion. In queue: 151 10:17:18.0871 0x031c Waiting for KSN requests completion. In queue: 151 10:17:19.0169 0x0810 Object send P2P result: true 10:17:19.0190 0x0810 Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe 10:17:19.0779 0x2acc Object send P2P result: true 10:17:19.0785 0x2acc Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain 10:17:19.0872 0x031c Waiting for KSN requests completion. In queue: 52 10:17:20.0873 0x031c Waiting for KSN requests completion. In queue: 52 10:17:21.0873 0x031c Waiting for KSN requests completion. In queue: 52 10:17:21.0888 0x0810 Object send P2P result: true 10:17:21.0889 0x0810 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 10:17:22.0433 0x2acc Object send P2P result: true 10:17:22.0873 0x031c Waiting for KSN requests completion. In queue: 3 10:17:23.0873 0x031c Waiting for KSN requests completion. In queue: 3 10:17:24.0546 0x0810 Object send P2P result: true 10:17:24.0546 0x0810 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 10:17:24.0874 0x031c Waiting for KSN requests completion. In queue: 2 10:17:25.0875 0x031c Waiting for KSN requests completion. In queue: 2 10:17:26.0875 0x031c Waiting for KSN requests completion. In queue: 2 10:17:27.0194 0x0810 Object send P2P result: true 10:17:27.0194 0x0810 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe 10:17:27.0875 0x031c Waiting for KSN requests completion. In queue: 1 10:17:28.0875 0x031c Waiting for KSN requests completion. In queue: 1 10:17:29.0843 0x0810 Object send P2P result: true 10:17:29.0899 0x031c AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated ) 10:17:29.0900 0x031c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated ) 10:17:29.0905 0x031c Win FW state via NFP2: enabled ( trusted ) 10:17:32.0492 0x031c ============================================================ 10:17:32.0492 0x031c Scan finished 10:17:32.0492 0x031c ============================================================ 10:17:32.0512 0x2ac0 Detected object count: 0 10:17:32.0512 0x2ac0 Actual detected object count: 0 Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=1524f04b3c297e4daa05f62ca5293f0d # end=init # utc_time=2016-03-10 09:22:20 # local_time=2016-03-10 10:22:20 (+0100, Mitteleuropäische Zeit) # country="Austria" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 28509 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=1524f04b3c297e4daa05f62ca5293f0d # end=updated # utc_time=2016-03-10 09:29:13 # local_time=2016-03-10 10:29:13 (+0100, Mitteleuropäische Zeit) # country="Austria" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=1524f04b3c297e4daa05f62ca5293f0d # engine=28509 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-03-10 10:26:33 # local_time=2016-03-10 11:26:33 (+0100, Mitteleuropäische Zeit) # country="Austria" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 4920179 11419736 0 0 # scanned=335243 # found=3 # cleaned=0 # scan_time=3439 sh=25EFC5F0778A51028FF49B40816F17F841C166E7 ft=1 fh=b79ba7112d2a946c vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\AppData\Local\Temp\DMR\dmr_72.exe" sh=F292BE3EF1E7D4D81F764824FE4D2B23326B3B53 ft=1 fh=69c476e297d7e51e vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe" sh=EEEDBFBC9F0B6350913DEA236DEAD330582216D3 ft=1 fh=975e7330c41d96ce vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe" |
10.03.2016, 20:42 | #13 |
/// TB-Ausbilder /// Anleitungs-Guru | Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. PC ist für mich sauber. Nur weil Deine Email-Adresse dort steht, heißt es noch lange nicht, dass sie von Deinem Account versendet wurden. Man kann jeden Absender in einer Email fälschen.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. |
account, adresse, android, antivirus, avira, business, compu, computer, domain, goolge, hello, kennwörter, mails, message, ordner, phone, please, sofort, versand, verschicke, verschickt, win, woche, wochen, world |