Keine Infizierten Objekte.
Code:
Alles auswählen Aufklappen ATTFilter
00:04:27.0294 0x1c5c TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
00:04:27.0341 0x1c5c UEFI system
00:04:38.0992 0x1c5c ============================================================
00:04:38.0992 0x1c5c Current date / time: 2016/11/24 00:04:38.0992
00:04:38.0992 0x1c5c SystemInfo:
00:04:38.0992 0x1c5c
00:04:38.0992 0x1c5c OS Version: 10.0.14393 ServicePack: 0.0
00:04:38.0992 0x1c5c Product type: Workstation
00:04:38.0992 0x1c5c ComputerName: CARSTENLAPTOP
00:04:38.0992 0x1c5c UserName: Carsten
00:04:38.0992 0x1c5c Windows directory: C:\WINDOWS
00:04:38.0992 0x1c5c System windows directory: C:\WINDOWS
00:04:38.0992 0x1c5c Running under WOW64
00:04:38.0992 0x1c5c Processor architecture: Intel x64
00:04:38.0992 0x1c5c Number of processors: 4
00:04:38.0992 0x1c5c Page size: 0x1000
00:04:38.0992 0x1c5c Boot type: Normal boot
00:04:38.0992 0x1c5c CodeIntegrityOptions = 0x00000001
00:04:38.0992 0x1c5c ============================================================
00:04:39.0430 0x1c5c KLMD registered as C:\WINDOWS\system32\drivers\40327880.sys
00:04:39.0430 0x1c5c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.447, osProperties = 0x19
00:04:40.0242 0x1c5c System UUID: {7063EE47-B187-C97E-4C93-980BAE953A4B}
00:04:41.0070 0x1c5c Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
00:04:41.0086 0x1c5c ============================================================
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0:
00:04:41.0086 0x1c5c GPT partitions:
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A1A6-BFD50179D6AC}, UniqueGUID: {01C82312-9810-42BE-AAE3-7983C0C6AFC3}, Name: Basi, StartLBA 0x800, BlocksNum 0xF9800
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {94C47797-72B0-4DD2-B408-F0DBEBAD26D7}, Name: EFI , StartLBA 0xFA000, BlocksNum 0x96000
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {D448C8AD-4F82-47CF-B613-6F932C124DBC}, Name: Micr, StartLBA 0x190000, BlocksNum 0x40000
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {E10C2336-C604-4ED1-912B-E3F2239F3A77}, Name: , StartLBA 0x1D0000, BlocksNum 0xC7C459C
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {F0B9FC3A-8259-46F7-A7AA-C24349E074AF}, Name: , StartLBA 0xC994800, BlocksNum 0x18F000
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {47EF7035-2710-0000-ABFE-806E6F6E6963}, Name: , StartLBA 0xCB23857, BlocksNum 0x47A16FAA
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A1A6-BFD50179D6AC}, UniqueGUID: {6A8F80F1-E605-4AFD-B0CC-9D199F9A8752}, Name: Basi, StartLBA 0x5453A801, BlocksNum 0x2E0B800
00:04:41.0086 0x1c5c \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A1A6-BFD50179D6AC}, UniqueGUID: {6B1D6854-3988-46B4-4173-636C65706975}, Name: Basi, StartLBA 0x57346001, BlocksNum 0x200000
00:04:41.0086 0x1c5c MBR partitions:
00:04:41.0086 0x1c5c ============================================================
00:04:41.0148 0x1c5c C: <-> \Device\Harddisk0\DR0\Partition4
00:04:41.0180 0x1c5c D: <-> \Device\Harddisk0\DR0\Partition6
00:04:41.0180 0x1c5c ============================================================
00:04:41.0180 0x1c5c Initialize success
00:04:41.0180 0x1c5c ============================================================
00:06:58.0565 0x08f4 ============================================================
00:06:58.0565 0x08f4 Scan started
00:06:58.0565 0x08f4 Mode: Manual; SigCheck; TDLFS;
00:06:58.0565 0x08f4 ============================================================
00:06:58.0565 0x08f4 KSN ping started
00:06:59.0300 0x08f4 KSN ping finished: true
00:07:03.0050 0x08f4 ================ Scan system memory ========================
00:07:03.0050 0x08f4 System memory - ok
00:07:03.0050 0x08f4 ================ Scan services =============================
00:07:03.0706 0x08f4 1394ohci - ok
00:07:03.0722 0x08f4 3ware - ok
00:07:03.0769 0x08f4 ACPI - ok
00:07:03.0769 0x08f4 AcpiDev - ok
00:07:03.0784 0x08f4 acpiex - ok
00:07:03.0784 0x08f4 acpipagr - ok
00:07:03.0816 0x08f4 AcpiPmi - ok
00:07:03.0831 0x08f4 acpitime - ok
00:07:03.0847 0x08f4 ADP80XX - ok
00:07:03.0863 0x08f4 AFD - ok
00:07:03.0878 0x08f4 ahcache - ok
00:07:03.0909 0x08f4 AJRouter - ok
00:07:03.0941 0x08f4 ALG - ok
00:07:03.0972 0x08f4 AmdK8 - ok
00:07:03.0988 0x08f4 AmdPPM - ok
00:07:03.0988 0x08f4 amdsata - ok
00:07:04.0003 0x08f4 amdsbs - ok
00:07:04.0003 0x08f4 amdxata - ok
00:07:04.0019 0x08f4 AppID - ok
00:07:04.0035 0x08f4 AppIDSvc - ok
00:07:04.0066 0x08f4 Appinfo - ok
00:07:04.0081 0x08f4 applockerfltr - ok
00:07:04.0128 0x08f4 AppReadiness - ok
00:07:04.0191 0x08f4 AppXSvc - ok
00:07:04.0206 0x08f4 arcsas - ok
00:07:04.0253 0x08f4 [ 9B480B472D6826E7257C90E2D0EE2954, C52C198602D180011A9345AE6F108EC4B1FD91234AF2E6296B2E39C1888B0D4D ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
00:07:04.0394 0x08f4 aswHwid - ok
00:07:04.0456 0x08f4 [ 06362BBA1347CBA0996F4B39BB1D8353, 0C6B7B085F13FB7C71E2AF481CD216C6ACB63577DC7E2793182F734378C141DA ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
00:07:04.0503 0x08f4 aswKbd - ok
00:07:04.0535 0x08f4 [ 1BB00571CC2C78463ABD7E9C32970758, BF523468754CB1628D66F28B06FAF7C545C5724801B04888517A2FB4BF9582BF ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
00:07:04.0566 0x08f4 aswMonFlt - ok
00:07:04.0722 0x08f4 [ 75325BC6BE15471331FFCEEC14E1DA03, 68A9DC2C4518DBAD54E60B7C89F713DD9FD287D42CFC75700D44A5B8CA4AED0F ] aswNetSec C:\WINDOWS\system32\drivers\aswNetSec.sys
00:07:04.0753 0x08f4 aswNetSec - ok
00:07:04.0785 0x08f4 [ 7010B57D708DA5C9686A5923EE621776, 5A554B8941C156EC341C602F34679A7475802B19EE6A99AA29AE2628A123ECB1 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
00:07:04.0816 0x08f4 aswRdr - ok
00:07:04.0847 0x08f4 [ 937885085BFE5BD08EC1BC0245DD203B, 6DDD89245EEA3B8106C5F2EB6FA8CF525F3B42AA7032276DE78953E06FE7F4B4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
00:07:04.0878 0x08f4 aswRvrt - ok
00:07:05.0035 0x08f4 [ 0B6352251C5D84130DF4252D33D266C2, C6A2E0074A7FCFB5799949431F5660B9AF6441001EA9B609F7B3900F4007EBD0 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
00:07:05.0097 0x08f4 aswSnx - ok
00:07:05.0207 0x08f4 [ 28213B34725B18387CC1B8C3D73858A1, D86113D89C62F090B393B68B522581248AEF3568F8FD0FF86B3625F2E6DD4DB8 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
00:07:05.0300 0x08f4 aswSP - ok
00:07:05.0332 0x08f4 [ 9C58B6E9663D0A76D00D83E43C765BDF, 3F474932E77318CD450A3A9C89667D2B26A7E3FAB9AA95D97FF3B1979623A7F2 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
00:07:05.0363 0x08f4 aswStm - ok
00:07:05.0425 0x08f4 [ D60D9201739400F0FBDB9E36A3212D91, 01A17516AB7F4D2C72E2DC51F7B49D1C4F50F564992F78A71E73821D7F8220E7 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
00:07:05.0472 0x08f4 aswVmm - ok
00:07:05.0504 0x08f4 AsyncMac - ok
00:07:05.0550 0x08f4 atapi - ok
00:07:05.0738 0x08f4 [ A5D6B62DBD3F7E82091DF6D2CB13BB94, 48AABC25135448C549183D5257B563F21F158401420ED7DB45526D460DD65EA1 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
00:07:05.0754 0x08f4 AtherosSvc - ok
00:07:05.0816 0x08f4 athr - ok
00:07:05.0894 0x08f4 AudioEndpointBuilder - ok
00:07:05.0925 0x08f4 Audiosrv - ok
00:07:06.0113 0x08f4 [ F4E0580B5789474385E7ACB189C4AF2C, DB5BE2C852AC102AB8EB186362E582E250B843BA52B3B71AF08A5FDA8A6F91AF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
00:07:06.0129 0x08f4 avast! Antivirus - ok
00:07:06.0175 0x08f4 [ CAA9BB913356E9FD56761C9352B7054B, E810C6EE0673BEBCF9C74223D120589E8441CB1B74D25A7E10554B6EA96D6909 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
00:07:06.0191 0x08f4 avast! Firewall - ok
00:07:06.0207 0x08f4 AxInstSV - ok
00:07:06.0254 0x08f4 b06bdrv - ok
00:07:06.0269 0x08f4 BasicDisplay - ok
00:07:06.0300 0x08f4 BasicRender - ok
00:07:06.0300 0x08f4 bcmfn - ok
00:07:06.0316 0x08f4 bcmfn2 - ok
00:07:06.0347 0x08f4 BDESVC - ok
00:07:06.0394 0x08f4 Beep - ok
00:07:06.0425 0x08f4 BFE - ok
00:07:06.0457 0x08f4 BITS - ok
00:07:06.0488 0x08f4 bowser - ok
00:07:06.0519 0x08f4 BrokerInfrastructure - ok
00:07:06.0550 0x08f4 Browser - ok
00:07:06.0707 0x08f4 [ C8BF11D79B29BB23A461B65B58BA8593, 35AFAD5ED40304976287E6C982085DF7A91FF48F0320DAC32370FA039AA03C69 ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
00:07:06.0754 0x08f4 BtFilter - ok
00:07:06.0785 0x08f4 BthA2DP - ok
00:07:06.0816 0x08f4 BthAvrcpTg - ok
00:07:06.0894 0x08f4 BthEnum - ok
00:07:06.0941 0x08f4 BthHFAud - ok
00:07:06.0957 0x08f4 BthHFEnum - ok
00:07:06.0957 0x08f4 bthhfhid - ok
00:07:06.0972 0x08f4 BthHFSrv - ok
00:07:07.0035 0x08f4 BthLEEnum - ok
00:07:07.0050 0x08f4 BTHMODEM - ok
00:07:07.0082 0x08f4 BthPan - ok
00:07:07.0113 0x08f4 BTHPORT - ok
00:07:07.0160 0x08f4 bthserv - ok
00:07:07.0222 0x08f4 BTHUSB - ok
00:07:07.0300 0x08f4 buttonconverter - ok
00:07:07.0316 0x08f4 CapImg - ok
00:07:07.0316 0x08f4 cdfs - ok
00:07:07.0332 0x08f4 CDPSvc - ok
00:07:07.0379 0x08f4 CDPUserSvc - ok
00:07:07.0675 0x08f4 cdrom - ok
00:07:07.0707 0x08f4 CertPropSvc - ok
00:07:07.0722 0x08f4 cht4iscsi - ok
00:07:07.0738 0x08f4 cht4vbd - ok
00:07:07.0785 0x08f4 circlass - ok
00:07:07.0800 0x08f4 CLFS - ok
00:07:08.0051 0x08f4 [ 99C73D65BF6E6AE66D1B4337D8260C97, D13E9861125ABFA892F7FCED1E007FD5FBEE27954C9084286FFD186193157D3A ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
00:07:08.0129 0x08f4 ClickToRunSvc - ok
00:07:08.0238 0x08f4 ClipSVC - ok
00:07:08.0238 0x08f4 clreg - ok
00:07:08.0269 0x08f4 CmBatt - ok
00:07:08.0301 0x08f4 CNG - ok
00:07:08.0301 0x08f4 cnghwassist - ok
00:07:08.0363 0x08f4 CompositeBus - ok
00:07:08.0363 0x08f4 COMSysApp - ok
00:07:08.0379 0x08f4 condrv - ok
00:07:08.0394 0x08f4 CoreMessagingRegistrar - ok
00:07:08.0457 0x08f4 [ 7A3D122CB9A78370814156EBBD042C62, 7C88DC2C6F08A6C77D5CC9A398746AFF6F6161B5474BE9CA96AFADFD3B27F13E ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
00:07:08.0504 0x08f4 cphs - ok
00:07:08.0519 0x08f4 CryptSvc - ok
00:07:08.0535 0x08f4 dam - ok
00:07:08.0551 0x08f4 DcomLaunch - ok
00:07:08.0566 0x08f4 DcpSvc - ok
00:07:08.0582 0x08f4 defragsvc - ok
00:07:08.0582 0x08f4 DeviceAssociationService - ok
00:07:08.0597 0x08f4 DeviceInstall - ok
00:07:08.0613 0x08f4 DevQueryBroker - ok
00:07:08.0629 0x08f4 Dfsc - ok
00:07:08.0660 0x08f4 [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
00:07:08.0676 0x08f4 dg_ssudbus - ok
00:07:08.0691 0x08f4 Dhcp - ok
00:07:08.0754 0x08f4 diagnosticshub.standardcollector.service - ok
00:07:08.0785 0x08f4 DiagTrack - ok
00:07:08.0801 0x08f4 disk - ok
00:07:08.0816 0x08f4 DmEnrollmentSvc - ok
00:07:08.0816 0x08f4 dmvsc - ok
00:07:08.0832 0x08f4 dmwappushservice - ok
00:07:08.0847 0x08f4 Dnscache - ok
00:07:08.0847 0x08f4 dot3svc - ok
00:07:08.0863 0x08f4 DPS - ok
00:07:08.0863 0x08f4 drmkaud - ok
00:07:08.0894 0x08f4 DsmSvc - ok
00:07:08.0894 0x08f4 DsSvc - ok
00:07:08.0910 0x08f4 DXGKrnl - ok
00:07:08.0926 0x08f4 EapHost - ok
00:07:08.0941 0x08f4 ebdrv - ok
00:07:08.0957 0x08f4 EFS - ok
00:07:08.0957 0x08f4 EhStorClass - ok
00:07:08.0988 0x08f4 EhStorTcgDrv - ok
00:07:09.0004 0x08f4 embeddedmode - ok
00:07:09.0019 0x08f4 EntAppSvc - ok
00:07:09.0019 0x08f4 ErrDev - ok
00:07:09.0035 0x08f4 EventSystem - ok
00:07:09.0051 0x08f4 exfat - ok
00:07:09.0051 0x08f4 fastfat - ok
00:07:09.0066 0x08f4 Fax - ok
00:07:09.0066 0x08f4 fdc - ok
00:07:09.0082 0x08f4 fdPHost - ok
00:07:09.0082 0x08f4 FDResPub - ok
00:07:09.0097 0x08f4 fhsvc - ok
00:07:09.0113 0x08f4 FileCrypt - ok
00:07:09.0129 0x08f4 FileInfo - ok
00:07:09.0144 0x08f4 Filetrace - ok
00:07:09.0144 0x08f4 flpydisk - ok
00:07:09.0144 0x08f4 FltMgr - ok
00:07:09.0160 0x08f4 FontCache - ok
00:07:09.0191 0x08f4 FrameServer - ok
00:07:09.0191 0x08f4 FsDepends - ok
00:07:09.0207 0x08f4 Fs_Rec - ok
00:07:09.0207 0x08f4 fvevol - ok
00:07:09.0207 0x08f4 gencounter - ok
00:07:09.0222 0x08f4 genericusbfn - ok
00:07:09.0238 0x08f4 GPIOClx0101 - ok
00:07:09.0254 0x08f4 gpsvc - ok
00:07:09.0254 0x08f4 GpuEnergyDrv - ok
00:07:09.0316 0x08f4 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
00:07:09.0332 0x08f4 gupdate - ok
00:07:09.0332 0x08f4 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
00:07:09.0347 0x08f4 gupdatem - ok
00:07:09.0347 0x08f4 HDAudBus - ok
00:07:09.0347 0x08f4 HidBatt - ok
00:07:09.0363 0x08f4 HidBth - ok
00:07:09.0363 0x08f4 hidi2c - ok
00:07:09.0363 0x08f4 hidinterrupt - ok
00:07:09.0379 0x08f4 HidIr - ok
00:07:09.0394 0x08f4 hidserv - ok
00:07:09.0426 0x08f4 HidUsb - ok
00:07:09.0441 0x08f4 HomeGroupListener - ok
00:07:09.0457 0x08f4 HomeGroupProvider - ok
00:07:09.0472 0x08f4 HpSAMD - ok
00:07:09.0488 0x08f4 HTTP - ok
00:07:09.0519 0x08f4 HvHost - ok
00:07:09.0535 0x08f4 hvservice - ok
00:07:09.0535 0x08f4 hwpolicy - ok
00:07:09.0551 0x08f4 hyperkbd - ok
00:07:09.0566 0x08f4 i8042prt - ok
00:07:09.0566 0x08f4 iagpio - ok
00:07:09.0566 0x08f4 iai2c - ok
00:07:09.0566 0x08f4 iaLPSS2i_GPIO2 - ok
00:07:09.0582 0x08f4 iaLPSS2i_I2C - ok
00:07:09.0582 0x08f4 iaLPSSi_GPIO - ok
00:07:09.0597 0x08f4 iaLPSSi_I2C - ok
00:07:09.0629 0x08f4 [ 57CD95DEB3529181BCC931DD2DFB2341, 03ACF906E4C3CF954F503900F42C7A60FCD5624772B90A956F032484146E42B7 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
00:07:09.0660 0x08f4 iaStorA - ok
00:07:09.0660 0x08f4 iaStorAV - ok
00:07:09.0660 0x08f4 iaStorV - ok
00:07:09.0660 0x08f4 ibbus - ok
00:07:09.0707 0x08f4 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
00:07:09.0722 0x08f4 ICCS - ok
00:07:09.0754 0x08f4 icssvc - ok
00:07:09.0879 0x08f4 [ 37FD6F2AA7A3F695D514C4BABE795DD5, FFAFFBD5425EBFCCCD209BD55CA926D3EC69320C57458AF047930C3B192938FD ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
00:07:09.0988 0x08f4 igfx - ok
00:07:10.0019 0x08f4 [ E4F179AE2325E076337BD7B06FC606FA, 8817AC01B35A384DCBB573085A388D5097F1872F9687AF4346112250305C1DB5 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
00:07:10.0051 0x08f4 igfxCUIService1.0.0.0 - ok
00:07:10.0051 0x08f4 IKEEXT - ok
00:07:10.0082 0x08f4 IndirectKmd - ok
00:07:10.0113 0x08f4 [ B1F193AB8FB72E9FC34B3A39314ED872, 408E98D9C8ABB928090DD9E5D1BB227EFBC997BF168437BAEF0461EB0D1DAE3D ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
00:07:10.0129 0x08f4 intaud_WaveExtensible - ok
00:07:10.0269 0x08f4 [ 8DEDB08D32562867A3E83F0184F39ED4, 48D5A490C436386BA9BD0F9173E96346118C5E584099F2F31B0E931FF96BB4B9 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
00:07:10.0457 0x08f4 IntcAzAudAddService - ok
00:07:10.0582 0x08f4 [ 87871AB7AC797F922A6F3D4C874CED96, 2BCD89911E42827CD294DD7D1486A7845D1F98019E51958E0F488384401B2944 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
00:07:10.0613 0x08f4 IntcDAud - ok
00:07:11.0004 0x08f4 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
00:07:11.0051 0x08f4 Intel(R) Capability Licensing Service TCP IP Interface - ok
00:07:11.0144 0x08f4 intelide - ok
00:07:11.0144 0x08f4 intelpep - ok
00:07:11.0144 0x08f4 intelppm - ok
00:07:11.0176 0x08f4 iorate - ok
00:07:11.0191 0x08f4 IpFilterDriver - ok
00:07:11.0269 0x08f4 iphlpsvc - ok
00:07:11.0285 0x08f4 IPMIDRV - ok
00:07:11.0316 0x08f4 IPNAT - ok
00:07:11.0316 0x08f4 irda - ok
00:07:11.0316 0x08f4 IRENUM - ok
00:07:11.0363 0x08f4 irmon - ok
00:07:11.0379 0x08f4 isapnp - ok
00:07:11.0394 0x08f4 iScsiPrt - ok
00:07:11.0441 0x08f4 [ BD5BF20EC242E003A2F570B8754A56D1, B4B3492222E98BF8E6EC453E727187FF4AA50A508D1E88A0CBBD5C46355AE492 ] ivusb C:\WINDOWS\System32\drivers\ivusb.sys
00:07:11.0473 0x08f4 ivusb - ok
00:07:11.0504 0x08f4 [ DD1F43B86AD84E53203F92FD3EF3AEB6, 9DE2BA80B315E56DF2E74EAA65F4ECB8324DFC19E30EB56EDDF08340AB100E87 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
00:07:11.0551 0x08f4 iwdbus - ok
00:07:11.0801 0x08f4 [ 832F7C2747F04D1294AEF46A2CE5B63B, ABAECEFCAD9B526C3D98681A874966B924EB99AF61CDFAC6D5E767BE2FAF6CFA ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
00:07:11.0832 0x08f4 jhi_service - ok
00:07:11.0957 0x08f4 kbdclass - ok
00:07:12.0004 0x08f4 kbdhid - ok
00:07:12.0035 0x08f4 kdnic - ok
00:07:12.0035 0x08f4 KeyIso - ok
00:07:12.0082 0x08f4 KSecDD - ok
00:07:12.0113 0x08f4 KSecPkg - ok
00:07:12.0129 0x08f4 ksthunk - ok
00:07:12.0160 0x08f4 KtmRm - ok
00:07:12.0207 0x08f4 LanmanServer - ok
00:07:12.0332 0x08f4 LanmanWorkstation - ok
00:07:12.0379 0x08f4 lfsvc - ok
00:07:12.0426 0x08f4 LicenseManager - ok
00:07:12.0473 0x08f4 lltdio - ok
00:07:12.0551 0x08f4 lltdsvc - ok
00:07:12.0598 0x08f4 lmhosts - ok
00:07:12.0613 0x08f4 LSI_SAS - ok
00:07:12.0644 0x08f4 LSI_SAS2i - ok
00:07:12.0644 0x08f4 LSI_SAS3i - ok
00:07:12.0676 0x08f4 LSI_SSS - ok
00:07:12.0691 0x08f4 LSM - ok
00:07:12.0707 0x08f4 luafv - ok
00:07:12.0738 0x08f4 MapsBroker - ok
00:07:12.0801 0x08f4 megasas - ok
00:07:12.0863 0x08f4 megasas2i - ok
00:07:12.0879 0x08f4 megasr - ok
00:07:12.0973 0x08f4 [ 0CAEA11CEC2EEC7511385A467FD464D1, C84DD82374D551C90CCB274AB7F8CE4A503042CC8D1337A1F6498B2538E1793A ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
00:07:13.0035 0x08f4 MEIx64 - ok
00:07:13.0113 0x08f4 MessagingService - ok
00:07:13.0238 0x08f4 mlx4_bus - ok
00:07:13.0285 0x08f4 MMCSS - ok
00:07:13.0285 0x08f4 Modem - ok
00:07:13.0332 0x08f4 monitor - ok
00:07:13.0348 0x08f4 mouclass - ok
00:07:13.0363 0x08f4 mouhid - ok
00:07:13.0363 0x08f4 mountmgr - ok
00:07:13.0363 0x08f4 mpsdrv - ok
00:07:13.0395 0x08f4 MpsSvc - ok
00:07:13.0441 0x08f4 MRxDAV - ok
00:07:13.0473 0x08f4 mrxsmb - ok
00:07:13.0504 0x08f4 mrxsmb10 - ok
00:07:13.0551 0x08f4 mrxsmb20 - ok
00:07:13.0566 0x08f4 MsBridge - ok
00:07:13.0613 0x08f4 MSDTC - ok
00:07:13.0645 0x08f4 Msfs - ok
00:07:13.0660 0x08f4 msgpiowin32 - ok
00:07:13.0691 0x08f4 mshidkmdf - ok
00:07:13.0707 0x08f4 mshidumdf - ok
00:07:13.0707 0x08f4 msisadrv - ok
00:07:13.0770 0x08f4 MSiSCSI - ok
00:07:13.0770 0x08f4 msiserver - ok
00:07:13.0785 0x08f4 MSKSSRV - ok
00:07:13.0785 0x08f4 MsLldp - ok
00:07:13.0785 0x08f4 MSPCLOCK - ok
00:07:13.0801 0x08f4 MSPQM - ok
00:07:13.0801 0x08f4 MsRPC - ok
00:07:13.0816 0x08f4 mssmbios - ok
00:07:13.0832 0x08f4 MSTEE - ok
00:07:13.0832 0x08f4 MTConfig - ok
00:07:13.0832 0x08f4 Mup - ok
00:07:13.0832 0x08f4 mvumis - ok
00:07:13.0895 0x08f4 NativeWifiP - ok
00:07:13.0926 0x08f4 NcaSvc - ok
00:07:13.0973 0x08f4 NcbService - ok
00:07:13.0988 0x08f4 NcdAutoSetup - ok
00:07:13.0988 0x08f4 ndfltr - ok
00:07:14.0004 0x08f4 NDIS - ok
00:07:14.0035 0x08f4 NdisCap - ok
00:07:14.0067 0x08f4 NdisImPlatform - ok
00:07:14.0098 0x08f4 NdisTapi - ok
00:07:14.0098 0x08f4 Ndisuio - ok
00:07:14.0129 0x08f4 NdisVirtualBus - ok
00:07:14.0160 0x08f4 NdisWan - ok
00:07:14.0160 0x08f4 ndiswanlegacy - ok
00:07:14.0160 0x08f4 ndproxy - ok
00:07:14.0160 0x08f4 Ndu - ok
00:07:14.0192 0x08f4 NetAdapterCx - ok
00:07:14.0192 0x08f4 NetBIOS - ok
00:07:14.0192 0x08f4 NetBT - ok
00:07:14.0207 0x08f4 Netlogon - ok
00:07:14.0223 0x08f4 Netman - ok
00:07:14.0270 0x08f4 netprofm - ok
00:07:14.0317 0x08f4 NetSetupSvc - ok
00:07:14.0520 0x08f4 NetTcpPortSharing - ok
00:07:14.0551 0x08f4 NgcCtnrSvc - ok
00:07:14.0598 0x08f4 NgcSvc - ok
00:07:14.0629 0x08f4 NlaSvc - ok
00:07:14.0645 0x08f4 Npfs - ok
00:07:14.0645 0x08f4 npsvctrig - ok
00:07:14.0676 0x08f4 nsi - ok
00:07:14.0692 0x08f4 nsiproxy - ok
00:07:14.0723 0x08f4 NTFS - ok
00:07:14.0739 0x08f4 Null - ok
00:07:17.0543 0x08f4 [ 60328FA27CB565D708CACAC8206037FB, 6D3A4B1B593428CA9F6EB2607C3F5A60DFEB92F4F437956FD916DF6B3B8E27FD ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvsmwu.inf_amd64_be58e4780959fe55\nvlddmkm.sys
00:07:17.0949 0x08f4 nvlddmkm - ok
00:07:18.0012 0x08f4 [ 019557823197E07EE33C8E363AE648BB, B9D9E9A013FDEF0F37CD37D5C92F4B1CFE0ADC08FD4ED86966E9A02FF9D80183 ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
00:07:18.0027 0x08f4 nvpciflt - ok
00:07:18.0043 0x08f4 nvraid - ok
00:07:18.0059 0x08f4 nvstor - ok
00:07:18.0121 0x08f4 [ 85397430F424516BF8300FAAEF929366, 2EDF41407C7483AC8E4703BC0A13F764563E4B00D6923FD4678E6E361AC14D6B ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
00:07:18.0168 0x08f4 nvsvc - ok
00:07:18.0184 0x08f4 OneSyncSvc - ok
00:07:18.0262 0x08f4 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
00:07:18.0277 0x08f4 ose - ok
00:07:18.0324 0x08f4 p2pimsvc - ok
00:07:18.0340 0x08f4 p2psvc - ok
00:07:18.0355 0x08f4 Parport - ok
00:07:18.0355 0x08f4 partmgr - ok
00:07:18.0387 0x08f4 PcaSvc - ok
00:07:18.0402 0x08f4 pci - ok
00:07:18.0434 0x08f4 pciide - ok
00:07:18.0434 0x08f4 pcmcia - ok
00:07:18.0449 0x08f4 pcw - ok
00:07:18.0465 0x08f4 pdc - ok
00:07:18.0465 0x08f4 PEAUTH - ok
00:07:18.0481 0x08f4 percsas2i - ok
00:07:18.0481 0x08f4 percsas3i - ok
00:07:18.0527 0x08f4 PerfHost - ok
00:07:18.0543 0x08f4 PhoneSvc - ok
00:07:18.0574 0x08f4 PimIndexMaintenanceSvc - ok
00:07:18.0590 0x08f4 pla - ok
00:07:18.0606 0x08f4 PlugPlay - ok
00:07:18.0606 0x08f4 PNRPAutoReg - ok
00:07:18.0621 0x08f4 PNRPsvc - ok
00:07:18.0637 0x08f4 PolicyAgent - ok
00:07:18.0637 0x08f4 Power - ok
00:07:18.0637 0x08f4 PptpMiniport - ok
00:07:18.0793 0x08f4 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
00:07:18.0934 0x08f4 PrintNotify - ok
00:07:18.0965 0x08f4 Processor - ok
00:07:18.0981 0x08f4 ProfSvc - ok
00:07:18.0981 0x08f4 Psched - ok
00:07:18.0996 0x08f4 QWAVE - ok
00:07:19.0012 0x08f4 QWAVEdrv - ok
00:07:19.0027 0x08f4 [ 19F44843AD7AF9AEAF0046E2A3D18DDE, C245BBF757ECE014B503FC18CA26C9147F1FD9825203B7B226A099435A46E79F ] RadioHIDMini C:\WINDOWS\System32\drivers\RadioHIDMini.sys
00:07:19.0059 0x08f4 RadioHIDMini - ok
00:07:19.0059 0x08f4 RasAcd - ok
00:07:19.0074 0x08f4 RasAgileVpn - ok
00:07:19.0090 0x08f4 RasAuto - ok
00:07:19.0090 0x08f4 Rasl2tp - ok
00:07:19.0106 0x08f4 RasMan - ok
00:07:19.0106 0x08f4 RasPppoe - ok
00:07:19.0121 0x08f4 RasSstp - ok
00:07:19.0152 0x08f4 [ 35D082B474245476200B2AEAF987EBF2, E05517245B859A32E9919BB03B4F6C9B1023D8753F65AD7690E066F7DE9F209C ] RawDisk3 C:\WINDOWS\system32\drivers\rawdsk3.sys
00:07:19.0168 0x08f4 RawDisk3 - ok
00:07:19.0168 0x08f4 rdbss - ok
00:07:19.0199 0x08f4 rdpbus - ok
00:07:19.0199 0x08f4 RDPDR - ok
00:07:19.0231 0x08f4 RdpVideoMiniport - ok
00:07:19.0231 0x08f4 rdyboost - ok
00:07:19.0231 0x08f4 ReFSv1 - ok
00:07:19.0277 0x08f4 RemoteAccess - ok
00:07:19.0293 0x08f4 RemoteRegistry - ok
00:07:19.0309 0x08f4 RetailDemo - ok
00:07:19.0324 0x08f4 RFCOMM - ok
00:07:19.0356 0x08f4 RmSvc - ok
00:07:19.0371 0x08f4 RpcEptMapper - ok
00:07:19.0371 0x08f4 RpcLocator - ok
00:07:19.0371 0x08f4 RpcSs - ok
00:07:19.0387 0x08f4 rspndr - ok
00:07:19.0434 0x08f4 [ FA00B16D06217288AFD700223DA131BA, 90688C3A8403FEF2A90550781CBA932A522125B47D71F3F0AF73E21E43BC5564 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
00:07:19.0465 0x08f4 rt640x64 - ok
00:07:19.0496 0x08f4 s3cap - ok
00:07:19.0496 0x08f4 SamSs - ok
00:07:19.0512 0x08f4 sbp2port - ok
00:07:19.0527 0x08f4 SCardSvr - ok
00:07:19.0543 0x08f4 ScDeviceEnum - ok
00:07:19.0559 0x08f4 scfilter - ok
00:07:19.0559 0x08f4 Schedule - ok
00:07:19.0559 0x08f4 scmbus - ok
00:07:19.0574 0x08f4 scmdisk0101 - ok
00:07:19.0590 0x08f4 SCPolicySvc - ok
00:07:19.0606 0x08f4 sdbus - ok
00:07:19.0606 0x08f4 SDRSVC - ok
00:07:19.0606 0x08f4 sdstor - ok
00:07:19.0621 0x08f4 seclogon - ok
00:07:19.0637 0x08f4 SENS - ok
00:07:19.0637 0x08f4 SensorDataService - ok
00:07:19.0652 0x08f4 SensorService - ok
00:07:19.0652 0x08f4 SensrSvc - ok
00:07:19.0668 0x08f4 SerCx - ok
00:07:19.0668 0x08f4 SerCx2 - ok
00:07:19.0668 0x08f4 Serenum - ok
00:07:19.0684 0x08f4 Serial - ok
00:07:19.0684 0x08f4 sermouse - ok
00:07:19.0684 0x08f4 SessionEnv - ok
00:07:19.0793 0x08f4 [ E62DACE1C081A463B90BF8B76FA19514, 68C73A579B872988A75FFB42662C5D40D4BC343B34DE8178AA1EC5E0AB696217 ] Settings Launcher C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
00:07:19.0840 0x08f4 Settings Launcher - ok
00:07:19.0856 0x08f4 sfloppy - ok
00:07:19.0871 0x08f4 SharedAccess - ok
00:07:19.0902 0x08f4 ShellHWDetection - ok
00:07:19.0934 0x08f4 shpamsvc - ok
00:07:19.0934 0x08f4 SiSRaid2 - ok
00:07:19.0949 0x08f4 SiSRaid4 - ok
00:07:20.0012 0x08f4 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF195B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
00:07:20.0027 0x08f4 SkypeUpdate - ok
00:07:20.0059 0x08f4 smphost - ok
00:07:20.0074 0x08f4 SmsRouter - ok
00:07:20.0106 0x08f4 SNMPTRAP - ok
00:07:20.0137 0x08f4 spaceport - ok
00:07:20.0168 0x08f4 SpbCx - ok
00:07:20.0199 0x08f4 Spooler - ok
00:07:20.0277 0x08f4 sppsvc - ok
00:07:20.0309 0x08f4 srv - ok
00:07:20.0340 0x08f4 srv2 - ok
00:07:20.0387 0x08f4 srvnet - ok
00:07:20.0449 0x08f4 SSDPSRV - ok
00:07:20.0481 0x08f4 SstpSvc - ok
00:07:20.0528 0x08f4 [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
00:07:20.0559 0x08f4 ssudmdm - ok
00:07:20.0918 0x08f4 [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
00:07:20.0965 0x08f4 ss_conn_service - ok
00:07:21.0059 0x08f4 StateRepository - ok
00:07:21.0137 0x08f4 stexstor - ok
00:07:21.0184 0x08f4 stisvc - ok
00:07:21.0231 0x08f4 storahci - ok
00:07:21.0278 0x08f4 storflt - ok
00:07:21.0356 0x08f4 [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
00:07:21.0403 0x08f4 stornvme - ok
00:07:21.0418 0x08f4 storqosflt - ok
00:07:21.0481 0x08f4 StorSvc - ok
00:07:21.0496 0x08f4 storufs - ok
00:07:21.0496 0x08f4 storvsc - ok
00:07:21.0528 0x08f4 svsvc - ok
00:07:21.0543 0x08f4 swenum - ok
00:07:21.0543 0x08f4 swprv - ok
00:07:21.0668 0x08f4 SWUpdateService - ok
00:07:21.0731 0x08f4 Synth3dVsc - ok
00:07:21.0918 0x08f4 [ 55CCD15CA1BFC41A07A58DAD29341720, B675C6C8B4DD5856B1D6996A6605834433F3B5C0B6C0EB1D91BA29CA2D75946B ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
00:07:21.0949 0x08f4 SynTP - ok
00:07:22.0028 0x08f4 [ 1046691BF93D89342190DA54DF437238, A1C0EDF4F6CAAEE304960813005AF3F06ADBE0C85C9447669D8FCE7B0F049CA0 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
00:07:22.0075 0x08f4 SynTPEnhService - ok
00:07:22.0121 0x08f4 SysMain - ok
00:07:22.0184 0x08f4 SystemEventsBroker - ok
00:07:22.0231 0x08f4 TabletInputService - ok
00:07:22.0231 0x08f4 TapiSrv - ok
00:07:22.0278 0x08f4 Tcpip - ok
00:07:22.0278 0x08f4 Tcpip6 - ok
00:07:22.0278 0x08f4 tcpipreg - ok
00:07:22.0309 0x08f4 tdx - ok
00:07:22.0340 0x08f4 terminpt - ok
00:07:22.0387 0x08f4 TermService - ok
00:07:22.0418 0x08f4 Themes - ok
00:07:22.0450 0x08f4 TieringEngineService - ok
00:07:22.0481 0x08f4 tiledatamodelsvc - ok
00:07:22.0496 0x08f4 TimeBrokerSvc - ok
00:07:22.0528 0x08f4 TPM - ok
00:07:22.0559 0x08f4 TrkWks - ok
00:07:22.0668 0x08f4 TrustedInstaller - ok
00:07:22.0668 0x08f4 tsusbflt - ok
00:07:22.0762 0x08f4 TsUsbGD - ok
00:07:22.0793 0x08f4 tunnel - ok
00:07:22.0809 0x08f4 tzautoupdate - ok
00:07:22.0840 0x08f4 UASPStor - ok
00:07:22.0840 0x08f4 UcmCx0101 - ok
00:07:22.0856 0x08f4 UcmTcpciCx0101 - ok
00:07:22.0871 0x08f4 UcmUcsi - ok
00:07:22.0871 0x08f4 Ucx01000 - ok
00:07:22.0871 0x08f4 UdeCx - ok
00:07:22.0871 0x08f4 udfs - ok
00:07:22.0903 0x08f4 UEFI - ok
00:07:22.0918 0x08f4 Ufx01000 - ok
00:07:22.0918 0x08f4 UfxChipidea - ok
00:07:22.0918 0x08f4 ufxsynopsys - ok
00:07:22.0950 0x08f4 UI0Detect - ok
00:07:22.0965 0x08f4 umbus - ok
00:07:22.0965 0x08f4 UmPass - ok
00:07:22.0996 0x08f4 UmRdpService - ok
00:07:23.0012 0x08f4 UnistoreSvc - ok
00:07:23.0012 0x08f4 upnphost - ok
00:07:23.0028 0x08f4 UrsChipidea - ok
00:07:23.0028 0x08f4 UrsCx01000 - ok
00:07:23.0043 0x08f4 UrsSynopsys - ok
00:07:23.0043 0x08f4 usbccgp - ok
00:07:23.0059 0x08f4 usbcir - ok
00:07:23.0090 0x08f4 usbehci - ok
00:07:23.0090 0x08f4 usbhub - ok
00:07:23.0090 0x08f4 USBHUB3 - ok
00:07:23.0106 0x08f4 usbohci - ok
00:07:23.0106 0x08f4 usbprint - ok
00:07:23.0137 0x08f4 usbser - ok
00:07:23.0153 0x08f4 USBSTOR - ok
00:07:23.0153 0x08f4 usbuhci - ok
00:07:23.0184 0x08f4 usbvideo - ok
00:07:23.0200 0x08f4 USBXHCI - ok
00:07:23.0231 0x08f4 UserDataSvc - ok
00:07:23.0262 0x08f4 UserManager - ok
00:07:23.0293 0x08f4 UsoSvc - ok
00:07:23.0293 0x08f4 VaultSvc - ok
00:07:23.0293 0x08f4 vdrvroot - ok
00:07:23.0325 0x08f4 vds - ok
00:07:23.0340 0x08f4 VerifierExt - ok
00:07:23.0543 0x08f4 [ 46ADD0CD4473AAEF1C68266A803F704D, D521E46891253884CF8285E864FAE63F2E8E0974AD8D2EB4D910E8A35350844F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
00:07:23.0668 0x08f4 vhdmp - ok
00:07:23.0668 0x08f4 vhf - ok
00:07:23.0715 0x08f4 vmbus - ok
00:07:23.0715 0x08f4 VMBusHID - ok
00:07:23.0747 0x08f4 vmgid - ok
00:07:23.0778 0x08f4 vmicguestinterface - ok
00:07:23.0778 0x08f4 vmicheartbeat - ok
00:07:23.0793 0x08f4 vmickvpexchange - ok
00:07:23.0840 0x08f4 vmicrdv - ok
00:07:23.0856 0x08f4 vmicshutdown - ok
00:07:23.0856 0x08f4 vmictimesync - ok
00:07:23.0856 0x08f4 vmicvmsession - ok
00:07:23.0856 0x08f4 vmicvss - ok
00:07:23.0872 0x08f4 volmgr - ok
00:07:23.0872 0x08f4 volmgrx - ok
00:07:23.0887 0x08f4 volsnap - ok
00:07:23.0887 0x08f4 volume - ok
00:07:23.0887 0x08f4 vpci - ok
00:07:23.0918 0x08f4 vsmraid - ok
00:07:23.0934 0x08f4 VSS - ok
00:07:23.0934 0x08f4 VSTXRAID - ok
00:07:23.0965 0x08f4 vwifibus - ok
00:07:23.0965 0x08f4 vwififlt - ok
00:07:23.0965 0x08f4 vwifimp - ok
00:07:23.0981 0x08f4 W32Time - ok
00:07:24.0012 0x08f4 WacomPen - ok
00:07:24.0043 0x08f4 WalletService - ok
00:07:24.0043 0x08f4 wanarp - ok
00:07:24.0043 0x08f4 wanarpv6 - ok
00:07:24.0059 0x08f4 wbengine - ok
00:07:24.0153 0x08f4 WbioSrvc - ok
00:07:24.0184 0x08f4 wcifs - ok
00:07:24.0231 0x08f4 Wcmsvc - ok
00:07:24.0231 0x08f4 wcncsvc - ok
00:07:24.0247 0x08f4 wcnfs - ok
00:07:24.0247 0x08f4 WdBoot - ok
00:07:24.0278 0x08f4 [ A556768CC1FA4F36022BEE2F0EDE2566, 3A4BC9DE614F43CD94FA354A565C66B2E1E36C0608D84C6288010B97B9D811AA ] WDC_SAM C:\WINDOWS\System32\drivers\wdcsam64.sys
00:07:24.0325 0x08f4 WDC_SAM - ok
00:07:24.0325 0x08f4 Wdf01000 - ok
00:07:24.0340 0x08f4 WdFilter - ok
00:07:24.0340 0x08f4 WdiServiceHost - ok
00:07:24.0356 0x08f4 WdiSystemHost - ok
00:07:24.0387 0x08f4 wdiwifi - ok
00:07:24.0387 0x08f4 WdNisDrv - ok
00:07:24.0434 0x08f4 WdNisSvc - ok
00:07:24.0450 0x08f4 WebClient - ok
00:07:24.0465 0x08f4 Wecsvc - ok
00:07:24.0497 0x08f4 WEPHOSTSVC - ok
00:07:24.0512 0x08f4 wercplsupport - ok
00:07:24.0528 0x08f4 WerSvc - ok
00:07:24.0528 0x08f4 WFPLWFS - ok
00:07:24.0528 0x08f4 WiaRpc - ok
00:07:24.0559 0x08f4 WIMMount - ok
00:07:24.0559 0x08f4 WinDefend - ok
00:07:24.0590 0x08f4 WindowsTrustedRT - ok
00:07:24.0606 0x08f4 WindowsTrustedRTProxy - ok
00:07:24.0637 0x08f4 WinHttpAutoProxySvc - ok
00:07:24.0668 0x08f4 WinMad - ok
00:07:24.0809 0x08f4 Winmgmt - ok
00:07:24.0856 0x08f4 WinRM - ok
00:07:24.0872 0x08f4 WINUSB - ok
00:07:24.0887 0x08f4 WinVerbs - ok
00:07:24.0919 0x08f4 wisvc - ok
00:07:24.0965 0x08f4 WlanSvc - ok
00:07:24.0997 0x08f4 wlidsvc - ok
00:07:25.0012 0x08f4 WmiAcpi - ok
00:07:25.0044 0x08f4 wmiApSrv - ok
00:07:25.0090 0x08f4 WMPNetworkSvc - ok
00:07:25.0122 0x08f4 Wof - ok
00:07:25.0184 0x08f4 workfolderssvc - ok
00:07:25.0231 0x08f4 WPDBusEnum - ok
00:07:25.0231 0x08f4 WpdUpFltr - ok
00:07:25.0262 0x08f4 WpnService - ok
00:07:25.0262 0x08f4 WpnUserService - ok
00:07:25.0309 0x08f4 ws2ifsl - ok
00:07:25.0325 0x08f4 wscsvc - ok
00:07:25.0325 0x08f4 WSearch - ok
00:07:25.0372 0x08f4 wuauserv - ok
00:07:25.0387 0x08f4 WudfPf - ok
00:07:25.0387 0x08f4 WUDFRd - ok
00:07:25.0419 0x08f4 wudfsvc - ok
00:07:25.0419 0x08f4 WUDFWpdFs - ok
00:07:25.0419 0x08f4 WUDFWpdMtp - ok
00:07:25.0450 0x08f4 WwanSvc - ok
00:07:25.0528 0x08f4 XblAuthManager - ok
00:07:25.0591 0x08f4 XblGameSave - ok
00:07:25.0591 0x08f4 xboxgip - ok
00:07:25.0606 0x08f4 XboxNetApiSvc - ok
00:07:25.0622 0x08f4 xinputhid - ok
00:07:25.0622 0x08f4 ================ Scan global ===============================
00:07:25.0841 0x08f4 [ Global ] - ok
00:07:25.0841 0x08f4 ================ Scan MBR ==================================
00:07:25.0887 0x08f4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
00:07:26.0024 0x08f4 \Device\Harddisk0\DR0 - ok
00:07:26.0024 0x08f4 ================ Scan VBR ==================================
00:07:26.0070 0x08f4 [ B1EAFFC09718C708AC194FDFC73EA829 ] \Device\Harddisk0\DR0\Partition1
00:07:26.0070 0x08f4 \Device\Harddisk0\DR0\Partition1 - ok
00:07:26.0070 0x08f4 [ 8A286EB2C406C5F79552107F2F54BCD5 ] \Device\Harddisk0\DR0\Partition2
00:07:26.0070 0x08f4 \Device\Harddisk0\DR0\Partition2 - ok
00:07:26.0086 0x08f4 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
00:07:26.0102 0x08f4 \Device\Harddisk0\DR0\Partition3 - ok
00:07:26.0117 0x08f4 [ 8AEF2B4FA76FDC616AD136EAAFD3546E ] \Device\Harddisk0\DR0\Partition4
00:07:26.0149 0x08f4 \Device\Harddisk0\DR0\Partition4 - ok
00:07:26.0164 0x08f4 [ 1C69F2E81DDD0111072A48210999CE21 ] \Device\Harddisk0\DR0\Partition5
00:07:26.0164 0x08f4 \Device\Harddisk0\DR0\Partition5 - ok
00:07:26.0180 0x08f4 [ D9520062DE1C95FA9682B8C34BC5DDD8 ] \Device\Harddisk0\DR0\Partition6
00:07:26.0180 0x08f4 \Device\Harddisk0\DR0\Partition6 - ok
00:07:26.0211 0x08f4 [ 5E6FB7A840370494996C7AD9D547AA6F ] \Device\Harddisk0\DR0\Partition7
00:07:26.0211 0x08f4 \Device\Harddisk0\DR0\Partition7 - ok
00:07:26.0227 0x08f4 [ DD259A96D6A1BFAA9955D96A320B49DF ] \Device\Harddisk0\DR0\Partition8
00:07:26.0227 0x08f4 \Device\Harddisk0\DR0\Partition8 - ok
00:07:26.0227 0x08f4 ================ Scan generic autorun ======================
00:07:26.0633 0x08f4 [ C6992F5730886B6977313918583D13C7, 5D75DBF4D272BD4A8DDF40C7D9D8044621EFD12AB4303DBF90538AFBE2FEFD42 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
00:07:27.0055 0x08f4 RtHDVCpl - ok
00:07:27.0352 0x08f4 [ CE99AA11D0274BE5BDEF3991508852E9, C129B50010508603C6F2CDB4442ACA4E7FC6CD44DBDB6153D5E1D37E1BC32036 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
00:07:27.0508 0x08f4 AvastUI.exe - ok
00:07:27.0586 0x08f4 [ A381DE7A9E3EB7915242F91730F3B4D0, 93C82FD33120C3D856D5AEF80E03E668C2301827AA31DFED93ECE74CB618F620 ] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
00:07:27.0602 0x08f4 KiesTrayAgent - ok
00:07:27.0680 0x08f4 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
00:07:27.0696 0x08f4 SunJavaUpdateSched - ok
00:07:27.0742 0x08f4 OneDriveSetup - ok
00:07:27.0742 0x08f4 OneDriveSetup - ok
00:07:27.0914 0x08f4 [ 52EC51A901AA9F1F68C9278D1EE3CCA2, 50FF4192FB33DF1BCEA08A7BB4D606123CC7E0C89A181C2BC11F2A41FF92C2E1 ] C:\Users\Carsten\AppData\Roaming\Spotify\SpotifyWebHelper.exe
00:07:27.0946 0x08f4 Spotify Web Helper - ok
00:07:28.0008 0x08f4 [ D07D7BC13E6C433593EB476A3BEF99E8, 3935D9BEC05DF94B3A0E75532418DED6FAA3848AF51A06956123B5B6D0AE6BDA ] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
00:07:28.0039 0x08f4 GoogleChromeAutoLaunch_DDA28BE83B10695CA343BB975497B041 - ok
00:07:28.0133 0x08f4 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Carsten\AppData\Local\Microsoft\OneDrive\OneDrive.exe
00:07:28.0149 0x08f4 OneDrive - ok
00:07:28.0336 0x08f4 [ C5D947DFEF05F5826863E401EE8743B0, B7C54DF6DB0707C6C5F126FE95E3B04F1B07EC2E12307AE89EB4144898FEEDA6 ] C:\Users\Carsten\AppData\Roaming\Spotify\Spotify.exe
00:07:28.0539 0x08f4 Spotify - ok
00:07:28.0571 0x08f4 Uninstall C:\Users\Carsten\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64 - ok
00:07:28.0571 0x08f4 Waiting for KSN requests completion. In queue: 8
00:07:29.0758 0x08f4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
00:07:29.0758 0x08f4 AV detected via SS2: Avast Antivirus, C:\Program Files\AVAST Software\Avast\wsc_proxy.exe ( 12.3.3154.0 ), 0x41000 ( enabled : updated )
00:07:29.0758 0x08f4 FW detected via SS2: Avast Antivirus, C:\Program Files\AVAST Software\Avast\wsc_proxy.exe ( 12.3.3154.0 ), 0x41010 ( enabled )
00:07:29.0883 0x08f4 ============================================================
00:07:29.0883 0x08f4 Scan finished
00:07:29.0883 0x08f4 ============================================================
00:07:29.0883 0x0904 Detected object count: 0
00:07:29.0883 0x0904 Actual detected object count: 0