|
Plagegeister aller Art und deren Bekämpfung: unbekanntes ProgrammWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
01.12.2016, 14:15 | #1 |
| unbekanntes Programm Wenn ich bei google chrome unter einstellungen gehe steht da Chrome hat festgestellt, dass einige Ihrer Einstellungen von einem anderen Programm manipuliert wurden, und hat sie auf die ursprünglichen Standardwerte zurückgesetzt. Ich hab den adwarcleaner und malware bytes anti malware laufen und das problem ist immer noch da. Ich benutze Avast free antivirus Geändert von maplo (01.12.2016 um 14:41 Uhr) |
01.12.2016, 14:46 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes ProgrammZitat:
__________________ |
01.12.2016, 15:31 | #3 |
| die logs Ein mal der Adwarecleaner und der Rest ist von Malwarebytes- anti malware.
__________________ |
01.12.2016, 15:54 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes ProgrammLesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
01.12.2016, 18:18 | #5 |
| unbekanntes ProgrammCode:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 01/12/2016 um 15:03:02 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-12-01.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : maplo - MAPLO-PC # Gestartet von : C:\Users\maplo\Downloads\adwcleaner_6.030 (23).exe # Modus: Suchlauf # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** Keine schädlichen Dienste gefunden. ***** [ Ordner ] ***** Keine schädlichen Ordner gefunden. ***** [ Dateien ] ***** Keine schädlichen Dateien gefunden. ***** [ DLL ] ***** Keine infizierten DLLs gefunden. ***** [ WMI ] ***** Keine schädlichen Schlüssel gefunden. ***** [ Verknüpfungen ] ***** Keine infizierten Verknüpfungen gefunden. ***** [ Aufgabenplanung ] ***** Keine schädlichen Aufgaben gefunden. ***** [ Registrierungsdatenbank ] ***** Keine schädlichen Elemente in der Registrierungsdatenbank gefunden. ***** [ Internetbrowser ] ***** Keine schädlichen Elemente in Firefox basierten Browsern gefunden. Keine schädlichen Elemente in Chrome basierten Browsern gefunden. ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06] C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32] C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06] C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01] C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27] C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58] C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44] C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53] C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02] C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22] C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02] C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28] C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44] C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45] C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15] C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04] C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59] C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29] C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33] C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01] C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54] C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40] C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25] C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12] C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25] C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35] C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58] C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22] C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24] C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56] C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19] C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39] C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29] C:\AdwCleaner\AdwCleaner[S31].txt - [3645 Bytes] - [01/12/2016 15:03:02] C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42] C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57] C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51] C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44] C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47] C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29] C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14] ########## EOF - C:\AdwCleaner\AdwCleaner[S31].txt - [4230 Bytes] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 01.12.2016 Suchlaufzeit: 15:08 Protokolldatei: Malware.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.12.01.10 Rootkit-Datenbank: v2016.11.20.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: maplo Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 355980 Abgelaufene Zeit: 12 Min., 42 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 19.05.2014 Suchlaufzeit: 18:43 Protokolldatei: Malwarebytes.txt Administrator: Ja Version: 2.00.1.1004 Malware-Datenbank: Rootkit-Datenbank: Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: maplo Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 280018 Abgelaufene Zeit: 11 Min., 52 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: PUP: Warnen PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 24 PUP.Optional.SpeedAnalysis2.A, HKLM\SOFTWARE\CLASSES\CLSID\{EB93AADE-9884-47F0-AA9D-0920E1D1203F}, In Quarantäne, [b78d85ce5a2182b4bebeca9556aceb15], PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8DAA9564-C7BF-43E1-ADB9-17B44DA980A6}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{B47A69DE-9B38-4EC0-996E-99F90C0F8CA5}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{B47A69DE-9B38-4EC0-996E-99F90C0F8CA5}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{27488090-768A-4D20-A938-F223F71C344C}, In Quarantäne, [40044d06a7d41f178e1778ead131d42c], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{27488090-768A-4D20-A938-F223F71C344C}, In Quarantäne, [40044d06a7d41f178e1778ead131d42c], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3033124F-06BF-4829-873A-310A125B4D4C}, In Quarantäne, [92b260f3ed8e1e185058a9b96a984fb1], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3033124F-06BF-4829-873A-310A125B4D4C}, In Quarantäne, [92b260f3ed8e1e185058a9b96a984fb1], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{BD3EA7C2-3AF8-4463-9A9C-6EB8E136CB02}, In Quarantäne, [a79dc98aed8e94a2d0d70a589a68768a], PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{BD3EA7C2-3AF8-4463-9A9C-6EB8E136CB02}, In Quarantäne, [a79dc98aed8e94a2d0d70a589a68768a], PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, In Quarantäne, [61e366ed4239310559fa445b61a1a15f], PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [ab995cf72754a88e42ea0cb4e71c1fe1], PUP.Optional.MediaPlayerEnhance.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\MediaPlayerEnhance, In Quarantäne, [64e067ec81fa60d6422638613ac8fc04], PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-7.7, In Quarantäne, [cf752e25d6a51d19b4bab4dd9b679a66], PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-8.1, In Quarantäne, [e55fada64932ae8871fd79187a88df21], PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SimpleNewTab, In Quarantäne, [5fe5530064172e08c91ad0b440c2956b], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110411361128}, In Quarantäne, [76ce322181fa999d9d644d0436ce37c9], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110411361128}, In Quarantäne, [76ce322181fa999d9d644d0436ce37c9], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110411901112}, In Quarantäne, [350faea53b4089adbf4282cf7d87ce32], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110411901112}, In Quarantäne, [350faea53b4089adbf4282cf7d87ce32], Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 3 PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.awesomehp.com/web/?type=ds&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX&q={searchTerms}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/web/?type=ds&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX&q={searchTerms}),Ersetzt,[ce763b18bfbcf640d097c97bc53fd22e] PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX),Ersetzt,[3e06e271b4c7c0768fd3d1739a6afd03] PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX),Ersetzt,[e163cf84601b9e98ef7a6ed6000452ae] Ordner: 33 PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults\preferences, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale\en-US, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults\preferences, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale\en-US, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\images, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults\preferences, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\htmls, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Roaming\OfferMosquito, In Quarantäne, [1e26cd864635fb3b2ca3235ef70b51af], PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], Dateien: 160 PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\simple_new_tab.dll, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], PUP.Optional.Iminent.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\searchplugins\iminent.xml, In Quarantäne, [8abad97a1764023460570b883ac84cb4], PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, In Quarantäne, [62e2ce85344794a22e14a1f7dd2546ba], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome.manifest, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\install.rdf, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\api.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\background.html, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\baseObject.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\browser.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\dialog.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\main.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\options.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\options.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\platformVersion.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\search_dialog.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\console.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\consts.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\delegate.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\httpObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\installer.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\logFile.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\prefs.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\registry.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\reloadObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\reports.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\searchSettings.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\updateManager.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\xhr.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults\preferences\prefs.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\manifest.xml, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins.json, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\102_dealply_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\103_intext_5_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\104_jollywallet_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\13_CrossriderAppUtils.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\14_CrossriderUtils.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\16_FFAppAPIWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\177_crossriderDashboard.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\17_jQuery.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\182_openUrl.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\183_tabsWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\184_noproblemppc_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\1_base.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\207_dbWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\21_debug.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\229_revizer_recommended_content_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\22_resources.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\28_initializer.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\47_resources_background.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\4_jquery_1_7_1.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\64_appApiMessage.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\72_appApiValidation.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\78_CrossriderInfo.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\91_monetizationLoader.js.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\93_superfish_no_coupons_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\98_omniCommands.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode\background.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode\extension.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale\en-US\translations.dtd, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome.manifest, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\install.rdf, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\background.html, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\baseObject.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\browser.xul, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\dialog.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\main.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\options.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\options.xul, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\platformVersion.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\search_dialog.xul, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\asyncDB.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\background.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\browserAction.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\contextMenu.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\dbManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\dom_bg.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\fileManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefox.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefoxNotifications.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefoxOmnibox.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\message.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\pageAction.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\request.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\tabs.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\webRequest.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\windowsMessagingHandler.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\addressBarChangeObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\console.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\consts.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\delegate.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\extensionDataStore.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\httpObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\IDBWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\installer.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\logFile.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\prefs.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\registry.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\reloadObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\reports.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\requestObject.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\searchSettings.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\uninstallObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\updateManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\utils.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\xhr.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults\preferences\prefs.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\manifest.xml, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins.json, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\22_resources.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\13_CrossriderAppUtils.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\14_CrossriderUtils.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\16_FFAppAPIWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\177_crossriderDashboard.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\17_jQuery.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\182_openUrl.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\183_tabsWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\1_base.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\207_dbWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\21_debug.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\28_initializer.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\47_resources_background.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\4_jquery_1_7_1.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\64_appApiMessage.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\72_appApiValidation.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\78_CrossriderInfo.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\91_monetizationLoader.js.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\98_omniCommands.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode\background.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode\extension.js, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale\en-US\translations.dtd, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button1.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button2.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button3.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button4.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button5.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\crossrider_statusbar.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon128.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon16.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon24.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon48.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\panelarrow-up.png, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\popup.html, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\skin.css, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\update.css, In Quarantäne, [43016be864171620e92597e143bf8878], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\chrome.manifest, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\install.rdf, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\savesense.xul, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\images\icon32.png, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults\preferences\defaults.js, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\htmls\index.html, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito\atl100.dll, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito\msvcr100d.dll, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], PUP.Optional.Iminent.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\user.js, Gut: (), Schlecht: (user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q=");), Ersetzt,[91b33d16dc9fa492ff91b3c71de7f10f] Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 01.12.2016 Suchlaufzeit: 18:03 Protokolldatei: text.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.12.01.11 Rootkit-Datenbank: v2016.11.20.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: maplo Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 356345 Abgelaufene Zeit: 12 Min., 42 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
02.12.2016, 09:18 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes Programm+++ WICHTIGER HINWEIS +++ Während der Analyse und Bereinigung nimmst du KEINERLEI Änderungen auf eigene Faust vor, d.h. du installierst oder deinstallierst keine Software ohne Absprache. Auch veränderst du keine Systemeinstellungen, solange wir deinen Fall bearbeiten. Änderungen, Installationen oder Deinstallationen machst du AUSSCHLIESSLICH nur auf Anweisung! Es wird erforderlich sein, deinen Virenscanner zu deaktivieren und in bestimmten Fällen auch zu deinstallieren, damit vernünftig bereinigt werden kann. Dein System ist daher erst wenn wir hier fertig sind wieder für den alltäglichen Gebrauch wie surfen oder mailen von mir freigegeben. Gelesen und verstanden? Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ --> unbekanntes Programm |
02.12.2016, 12:05 | #7 |
| unbekanntes ProgrammCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 30-11-2016 durchgeführt von maplo (Administrator) auf MAPLO-PC (02-12-2016 11:55:52) Gestartet von C:\Users\maplo\Downloads Geladene Profile: maplo (Verfügbare Profile: maplo & UpdatusUser) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Digital Care Solutions) C:\Program Files\BDServices\BitDefenderCOM.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Akamai Technologies, Inc.) C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (© 2015 Microsoft Corporation) C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Akamai Technologies, Inc.) C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe (FK2) C:\Windows\SysWOW64\svchospt.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\maplo\Downloads\FRST64 (1).exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM-x32\...\Run: [svchospt] => C:\Windows\SysWOW64\svchospt.exe [913408 2014-05-03] (FK2) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9080768 2016-12-01] (AVAST Software) HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [Akamai NetSession Interface] => C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [BingSvc] => C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-25] (© 2015 Microsoft Corporation) HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [Chromium] => "c:\users\maplo\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-12-01] (AVAST Software) GroupPolicy: Beschränkung <======= ACHTUNG GroupPolicy\User: Beschränkung - Chrome <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{543668AB-CDFE-4437-BE86-F095CD616F42}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-7ac32119 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-7ac32119 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKLM-x32 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms} SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {B7A6409A-B6F1-4522-B15B-C42C95B3FDCD} URL = hxxps://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {BEC8914B-DE73-458B-B58E-15E89F6D7504} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-10-20] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-12-01] (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-20] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-20] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-12-01] (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-20] (Oracle Corporation) Toolbar: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> Kein Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Keine Datei StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default [2016-11-30] FF SelectedSearchEngine: Mozilla\Firefox\Profiles\3rwrhbvt.default -> Search FF DefaultSearchEngine: Mozilla\Firefox\Profiles\3rwrhbvt.default -> Search FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-12-01] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-12-01] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-20] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-20] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-11-05] (Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-20] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-11-05] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-30] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-30] (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-272398419-1830848293-3820193082-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR DefaultSearchURL: Profile 1 -> hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=orcl_default CHR DefaultSearchKeyword: Profile 1 -> Yahoo CHR DefaultSuggestURL: Profile 1 -> hxxps://de.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Default [2016-12-01] CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1 [2016-12-02] CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-29] CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-20] CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-20] CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-20] CHR Extension: (Google-Suche) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-08-20] CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-29] CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-20] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-20] CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-20] CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-01] CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2 [2016-11-30] CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-11-27] CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2016-11-27] CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-27] CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eedgghdcpmmmilkmfpnklknlenbiolec [2016-11-27] CHR Extension: (Avast SafePrice) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fabhkdeopjkcpkmofliimbjckmocfiom [2016-11-27] CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-11-27] CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-27] CHR Extension: (Avast Online Security) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2016-11-27] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-11-27] CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-27] CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-11-27] CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3 [2016-11-30] CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-11-27] CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2016-11-27] CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-27] CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eedgghdcpmmmilkmfpnklknlenbiolec [2016-11-27] CHR Extension: (Avast SafePrice) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fabhkdeopjkcpkmofliimbjckmocfiom [2016-11-27] CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-11-27] CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-27] CHR Extension: (Avast Online Security) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-11-27] CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2016-11-27] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-11-27] CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-27] CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-11-27] CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\System Profile [2016-11-30] CHR HKLM-x32\...\Chrome\Extension: [eedgghdcpmmmilkmfpnklknlenbiolec] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [moagefhdcbeeaognnhggogdiepahfpho] - C:\Program Files (x86)\best-markit\150.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-12-01] (AVAST Software) R2 BitDefenderCOM; C:\Program Files\BDServices\BitDefenderCom.exe [1028096 2016-11-21] (Digital Care Solutions) [Datei ist nicht signiert] S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4979992 2013-11-25] (INCA Internet Co., Ltd.) S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [575488 2008-09-08] (Nokia.) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-12-01] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-12-01] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-12-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-12-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-12-01] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-12-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-12-01] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-12-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-12-01] (AVAST Software) S3 e1kexpress; C:\Windows\System32\DRIVERS\e1k60x64.sys [220672 2009-06-10] (Intel Corporation) U5 terminpt; C:\Windows\System32\Drivers\terminpt.sys [29696 2013-03-11] (Microsoft Corporation) [Datei ist nicht signiert] S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-11-10] (BitDefender S.R.L.) S3 cpuz132; \??\C:\Users\maplo\AppData\Local\Temp\cpuz132\cpuz132_x64.sys [X] S1 dtmelqbg; \??\C:\Windows\system32\drivers\dtmelqbg.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S1 onotlzbb; \??\C:\Windows\system32\drivers\onotlzbb.sys [X] S1 oshnyfcv; \??\C:\Windows\system32\drivers\oshnyfcv.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-02 11:54 - 2016-12-02 11:54 - 02411520 _____ (Farbar) C:\Users\maplo\Downloads\FRST64 (1).exe 2016-12-02 11:40 - 2016-12-02 11:40 - 00016363 _____ C:\Users\maplo\Downloads\Anlage_303706798600_2016-12-02_0800.pdf 2016-12-01 19:12 - 2016-12-01 19:12 - 00019468 _____ C:\Users\maplo\Downloads\Kontoauszug_303706798600_2016-12-01_0707.pdf 2016-12-01 18:25 - 2016-12-02 11:53 - 00003912 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1480613134 2016-12-01 18:25 - 2016-12-01 18:25 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk 2016-12-01 18:25 - 2016-12-01 18:25 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2016-12-01 18:24 - 2016-12-01 18:24 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2016-12-01 18:17 - 2016-12-01 18:17 - 00001207 _____ C:\Users\maplo\Documents\text.txt 2016-12-01 18:02 - 2016-12-01 18:03 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-12-01 18:02 - 2016-12-01 18:02 - 00000618 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-12-01 18:02 - 2016-12-01 18:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-12-01 18:02 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-12-01 18:02 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-12-01 18:02 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-12-01 17:56 - 2016-12-01 17:56 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer (2).exe 2016-12-01 17:51 - 2016-12-01 17:51 - 00057750 _____ C:\Users\maplo\Downloads\Malwarebytes.txt 2016-12-01 17:47 - 2016-12-01 17:47 - 00001210 _____ C:\Users\maplo\Downloads\Malware.txt 2016-12-01 17:38 - 2016-12-01 17:38 - 00004313 _____ C:\Users\maplo\Downloads\AdwCleaner[S31] (1).txt 2016-12-01 17:37 - 2016-12-01 17:37 - 00004313 _____ C:\Users\maplo\Downloads\AdwCleaner[S31].txt 2016-12-01 17:25 - 2016-12-01 17:25 - 00000000 ____D C:\Users\maplo\AppData\Roaming\AVAST Software 2016-12-01 17:23 - 2016-12-01 17:23 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2016-12-01 17:23 - 2016-12-01 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2016-12-01 17:20 - 2016-12-01 17:20 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-12-01 17:19 - 2016-12-01 17:21 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2016-12-01 17:19 - 2016-12-01 17:21 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2016-12-01 17:19 - 2016-12-01 17:21 - 00293352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2016-12-01 17:19 - 2016-12-01 17:17 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-12-01 17:19 - 2016-12-01 17:17 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-12-01 17:19 - 2016-12-01 17:17 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-12-01 17:19 - 2016-12-01 17:17 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-12-01 17:19 - 2016-12-01 17:17 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-12-01 17:17 - 2016-12-01 17:17 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-12-01 17:16 - 2016-12-01 17:16 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-12-01 17:13 - 2016-12-01 18:24 - 00000000 ___DC C:\Program Files\AVAST Software 2016-12-01 17:12 - 2016-12-01 17:13 - 06253640 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (3).exe 2016-12-01 15:23 - 2016-12-01 15:23 - 00057750 _____ C:\Users\maplo\Documents\Malwarebytes.txt 2016-12-01 15:22 - 2016-12-01 15:22 - 00001210 _____ C:\Users\maplo\Documents\Malware.txt 2016-12-01 15:04 - 2016-12-01 15:04 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer (1).exe 2016-12-01 15:03 - 2016-12-01 15:03 - 00004313 _____ C:\Users\maplo\Documents\AdwCleaner[S31].txt 2016-12-01 15:00 - 2016-12-01 15:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (24).exe 2016-12-01 15:00 - 2016-12-01 15:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (23).exe 2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ___DC C:\ProgramData\www.rene-zeidler.de 2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ____D C:\Users\maplo\AppData\Roaming\www.rene-zeidler.de 2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ____D C:\Users\maplo\AppData\Local\www.rene-zeidler.de 2016-12-01 14:30 - 2016-12-01 14:30 - 01496584 _____ C:\Users\maplo\Downloads\Snipping Tool Plus - CHIP-Installer.exe 2016-12-01 13:37 - 2016-12-01 13:38 - 06334848 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (2).exe 2016-12-01 13:33 - 2016-12-01 13:33 - 06334848 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (1).exe 2016-12-01 12:11 - 2016-12-01 12:13 - 02956792 _____ (Google) C:\Users\maplo\Downloads\chrome_cleanup_tool.exe 2016-12-01 12:08 - 2016-12-01 12:09 - 22851472 _____ (Malwarebytes ) C:\Users\maplo\Downloads\mbam-setup-2.2.1.1043 (1).exe 2016-12-01 12:01 - 2016-12-01 12:01 - 01631928 _____ (Malwarebytes) C:\Users\maplo\Downloads\JRT.exe 2016-12-01 11:41 - 2016-12-01 11:41 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (22).exe 2016-12-01 11:40 - 2016-12-01 11:40 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 669169.crdownload 2016-12-01 10:33 - 2016-12-01 10:33 - 00000000 ____D C:\Users\maplo\AppData\Local\ElevatedDiagnostics 2016-12-01 10:19 - 2016-12-01 10:19 - 00298232 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-30 20:44 - 2016-11-30 20:44 - 00002054 _____ C:\Users\Public\Desktop\SLOW-PCfighter 2.lnk 2016-11-30 20:44 - 2016-11-30 20:44 - 00000000 ____D C:\Windows\System32\Tasks\Fighters 2016-11-30 20:44 - 2016-11-30 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters 2016-11-30 20:43 - 2016-11-30 20:44 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Fighters 2016-11-30 20:43 - 2016-11-30 20:43 - 00000000 ___DC C:\Program Files (x86)\Fighters 2016-11-30 20:42 - 2016-11-30 20:43 - 00000000 ___DC C:\ProgramData\Fighters 2016-11-30 20:41 - 2016-11-30 20:42 - 04509624 _____ (SPAMfighter ApS.) C:\Users\maplo\Downloads\slow-pcfighter_Web.exe 2016-11-30 20:17 - 2016-11-30 20:17 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (21).exe 2016-11-30 20:07 - 2016-11-30 20:07 - 00002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-11-30 20:07 - 2016-11-30 20:07 - 00002287 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-11-30 20:06 - 2016-12-02 11:37 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-11-30 20:06 - 2016-12-01 20:11 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-11-30 20:06 - 2016-11-30 20:06 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-11-30 20:06 - 2016-11-30 20:06 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-11-30 19:53 - 2016-11-30 19:53 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (20).exe 2016-11-30 19:03 - 2016-11-30 19:03 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe 2016-11-30 18:59 - 2016-11-30 19:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (19).exe 2016-11-30 18:09 - 2016-11-30 18:09 - 00066064 _____ C:\Users\maplo\AppData\Local\GDIPFONTCACHEV1.DAT 2016-11-30 17:23 - 2016-11-30 17:23 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (18).exe 2016-11-30 17:22 - 2016-11-30 17:23 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (17).exe 2016-11-29 18:23 - 2016-11-29 18:23 - 05659307 _____ (Swearware) C:\Users\maplo\Downloads\ComboFix (2).exe 2016-11-29 18:11 - 2016-11-29 18:11 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (16).exe 2016-11-29 17:27 - 2016-11-29 17:28 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (15).exe 2016-11-29 10:21 - 2016-11-29 10:21 - 05659307 _____ (Swearware) C:\Users\maplo\Downloads\ComboFix (1).exe 2016-11-28 22:02 - 2016-11-28 22:02 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (14).exe 2016-11-28 22:01 - 2016-11-28 22:01 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 54710.crdownload 2016-11-28 21:23 - 2016-11-28 21:23 - 00002984 _____ C:\Windows\System32\Tasks\{19E94F83-02F8-4991-8493-62DF15BDB388} 2016-11-28 20:52 - 2016-11-28 20:53 - 00000000 __SDC C:\ComboFix 2016-11-28 20:52 - 2016-11-28 20:52 - 00000000 ___DC C:\Qoobox 2016-11-28 20:52 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2016-11-28 20:52 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2016-11-28 20:52 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2016-11-28 20:52 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2016-11-28 20:52 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2016-11-28 20:52 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2016-11-28 20:52 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2016-11-28 20:52 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2016-11-28 20:51 - 2016-11-28 20:51 - 00000000 ____D C:\Windows\erdnt 2016-11-28 20:50 - 2016-11-28 20:52 - 00000000 __SDC C:\32788R22FWJFW 2016-11-28 20:49 - 2016-11-28 20:49 - 05659307 ____R (Swearware) C:\Users\maplo\Downloads\ComboFix.exe 2016-11-28 20:48 - 2016-11-28 20:48 - 00002634 _____ C:\Users\maplo\Downloads\Winmgmt.reg 2016-11-28 20:46 - 2016-11-28 20:46 - 00000099 _____ C:\Users\maplo\Downloads\FixWscsvcWin7 (1).bat 2016-11-28 20:45 - 2016-11-28 20:46 - 00000099 _____ C:\Users\maplo\Downloads\FixWscsvcWin7.bat 2016-11-27 20:22 - 2016-11-27 20:22 - 00060965 _____ C:\Users\maplo\Downloads\pkeyuibx_v1.5.0.zip 2016-11-27 20:21 - 2016-11-27 20:22 - 01496584 _____ C:\Users\maplo\Downloads\Windows Product Key Viewer - CHIP-Installer.exe 2016-11-27 19:52 - 2016-11-27 19:52 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (3).exe 2016-11-27 19:31 - 2016-11-27 19:31 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (2).exe 2016-11-27 19:06 - 2016-11-27 19:06 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (1).exe 2016-11-27 18:59 - 2016-11-27 19:00 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader.exe 2016-11-27 13:46 - 2016-11-27 13:47 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (13).exe 2016-11-27 11:58 - 2016-11-27 11:59 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (12).exe 2016-11-26 20:18 - 2016-11-26 20:18 - 00057743 _____ C:\Users\maplo\Desktop\scann.txt 2016-11-26 19:40 - 2016-11-26 19:40 - 00001925 _____ C:\Users\maplo\Desktop\scan.txt 2016-11-26 19:22 - 2016-11-26 19:23 - 22851472 _____ (Malwarebytes ) C:\Users\maplo\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-26 18:46 - 2016-11-26 18:46 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (11).exe 2016-11-26 18:38 - 2016-11-26 18:39 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (10).exe 2016-11-26 18:37 - 2016-11-26 18:37 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 669081.crdownload 2016-11-26 18:37 - 2016-11-26 18:37 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (9).exe 2016-11-26 13:50 - 2016-11-26 14:15 - 00384176 _____ C:\Users\maplo\Desktop\sfcdetails.txt 2016-11-25 19:19 - 2016-11-25 19:19 - 00005594 _____ C:\Users\maplo\Downloads\Security_Center.reg 2016-11-25 18:52 - 2016-11-25 18:52 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (5).zip 2016-11-25 18:45 - 2016-11-25 18:46 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (4).zip 2016-11-25 18:40 - 2016-11-25 18:41 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (3).zip 2016-11-25 18:40 - 2016-11-25 18:41 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (2).zip 2016-11-25 13:24 - 2016-11-25 13:24 - 06253640 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online.exe 2016-11-25 12:34 - 2016-11-25 12:34 - 00000000 ____D C:\Windows\system32\EventProviders 2016-11-25 12:31 - 2016-11-25 12:34 - 947070088 _____ (Microsoft Corporation) C:\Users\maplo\Downloads\windows6.1-KB976932-X64.exe 2016-11-25 12:28 - 2016-11-25 12:28 - 01496584 _____ C:\Users\maplo\Downloads\HijackThis - CHIP-Installer.exe 2016-11-25 12:09 - 2016-11-25 12:09 - 01496584 _____ C:\Users\maplo\Downloads\Windows PowerShell - CHIP-Installer.exe 2016-11-25 12:07 - 2016-11-25 12:07 - 00000093 _____ C:\Users\maplo\Downloads\FixWinmgmtWin7.bat 2016-11-25 12:07 - 2016-11-25 12:07 - 00000093 _____ C:\Users\maplo\Downloads\FixWinmgmtWin7 (1).bat 2016-11-25 11:54 - 2016-11-25 11:54 - 00478720 _____ C:\Users\maplo\Downloads\SESetup.msi 2016-11-25 11:25 - 2016-11-25 11:26 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup (2).exe 2016-11-25 11:18 - 2016-11-25 11:18 - 00000000 ___DC C:\ProgramData\dllescort 2016-11-25 11:17 - 2016-11-27 11:24 - 00000000 ___DC C:\Program Files (x86)\DLLEscort 2016-11-25 11:16 - 2016-11-25 11:16 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup (1).exe 2016-11-25 11:15 - 2016-11-25 11:16 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup.exe 2016-11-25 10:54 - 2016-11-25 10:55 - 10198088 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (3).exe 2016-11-25 09:52 - 2016-11-25 11:21 - 00000456 _____ C:\Windows\Tasks\PC Health Advisor Aktualisierung.job 2016-11-25 09:52 - 2016-11-25 09:52 - 00003330 _____ C:\Windows\System32\Tasks\PC Health Advisor Aktualisierung 2016-11-25 09:52 - 2016-11-25 09:52 - 00000000 ___DC C:\Program Files\BDServices 2016-11-24 20:02 - 2016-11-24 20:02 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (2).exe 2016-11-24 19:35 - 2016-11-24 19:50 - 00000000 ___DC C:\EEK 2016-11-24 19:32 - 2016-11-24 19:34 - 254461872 _____ C:\Users\maplo\Downloads\EmsisoftEmergencyKit.exe 2016-11-24 19:18 - 2016-11-24 19:18 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (1).exe 2016-11-24 19:01 - 2016-11-27 13:38 - 00000000 ____D C:\Windows\pss 2016-11-24 16:15 - 2016-11-24 16:16 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (1).zip 2016-11-24 15:39 - 2016-11-24 15:39 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64).zip 2016-11-24 13:20 - 2016-11-24 13:21 - 00268639 _____ C:\Users\maplo\Downloads\Nicht bestätigt 204496.crdownload 2016-11-24 12:13 - 2016-11-24 12:13 - 00394752 _____ (TweakBit) C:\Users\maplo\Downloads\fehler_87-repairkit.exe 2016-11-24 11:22 - 2016-11-24 11:22 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (8).exe 2016-11-24 11:11 - 2016-11-24 11:11 - 00000000 ____D C:\Users\maplo\Documents\Neuer Ordner 2016-11-24 10:38 - 2016-11-24 10:38 - 00000000 ___DC C:\Neuer Ordner 2016-11-24 10:37 - 2016-11-24 10:37 - 00000000 ____D C:\Users\maplo\Desktop\Neuer Ordner (3) 2016-11-23 20:48 - 2016-11-23 20:48 - 00001245 _____ C:\Users\maplo\Downloads\FSS.txt 2016-11-23 20:47 - 2016-11-23 20:47 - 00899584 _____ (Farbar) C:\Users\maplo\Downloads\FSS.exe 2016-11-23 20:37 - 2016-11-23 20:37 - 00033665 _____ C:\Users\maplo\Downloads\Addition.txt 2016-11-23 20:36 - 2016-12-02 11:56 - 00022847 _____ C:\Users\maplo\Downloads\FRST.txt 2016-11-23 20:35 - 2016-12-02 11:55 - 00000000 ___DC C:\FRST 2016-11-23 20:35 - 2016-11-23 20:35 - 02412032 _____ (Farbar) C:\Users\maplo\Downloads\FRST64.exe 2016-11-23 20:21 - 2016-11-23 20:21 - 00394752 _____ (TweakBit) C:\Users\maplo\Downloads\fehler_1075-repairkit.exe 2016-11-23 20:15 - 2016-11-23 20:16 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de.exe 2016-11-23 19:40 - 2008-08-28 12:44 - 00025600 _____ (Nokia) C:\Windows\system32\Drivers\pccsmcfdx64.sys 2016-11-23 19:39 - 2016-11-23 19:39 - 00000000 ___DC C:\ProgramData\NortonInstaller 2016-11-23 19:37 - 2016-11-23 19:38 - 00000000 ___DC C:\Program Files (x86)\PC Connectivity Solution 2016-11-23 19:34 - 2016-11-23 19:34 - 00000000 ___DC C:\ProgramData\Installations 2016-11-23 19:33 - 2016-11-23 19:33 - 00000000 ____D C:\Users\maplo\AppData\Roaming\WOW 2016-11-23 19:32 - 2016-11-23 19:32 - 13099456 _____ () C:\Users\maplo\Downloads\PCCS_8.22.7.0.exe 2016-11-23 17:15 - 2016-11-23 17:16 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (7).exe 2016-11-23 12:38 - 2016-11-23 12:38 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (6).exe 2016-11-23 12:19 - 2016-11-23 12:20 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (3).exe 2016-11-23 11:54 - 2016-11-23 11:54 - 00000297 _____ C:\Users\maplo\Downloads\MDNPart2.txt 2016-11-23 04:41 - 2016-11-23 04:41 - 00001447 _____ C:\Users\maplo\Desktop\Internet Explorer (2).lnk 2016-11-22 15:45 - 2016-11-22 15:48 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (2).exe 2016-11-22 09:49 - 2016-11-22 09:49 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (5).exe 2016-11-22 09:49 - 2016-11-22 09:49 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (4).exe 2016-11-21 18:25 - 2016-11-22 15:51 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns_13.62.zip 2016-11-21 18:24 - 2016-11-21 18:24 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (1).exe 2016-11-21 18:02 - 2016-11-21 18:02 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (3).exe 2016-11-21 17:53 - 2016-11-21 17:56 - 01304400 _____ C:\Users\maplo\Downloads\autoruns (3).zip 2016-11-21 17:42 - 2016-11-21 17:42 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (2).exe 2016-11-21 17:41 - 2016-11-21 17:41 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 313050.crdownload 2016-11-21 17:26 - 2016-11-21 17:27 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns (2).zip 2016-11-21 17:24 - 2016-11-21 17:24 - 00000000 ___DC C:\AutorunsPortable 2016-11-21 17:23 - 2016-11-21 17:24 - 00911832 _____ (PortableApps.com) C:\Users\maplo\Downloads\AutorunsPortable_13.51_English_online.paf.exe 2016-11-21 17:15 - 2016-11-21 17:15 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns (1).zip 2016-11-21 17:12 - 2016-11-21 17:12 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns.zip 2016-11-21 17:07 - 2016-11-21 17:07 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer.exe 2016-11-21 17:02 - 2016-11-21 17:03 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030.exe 2016-11-21 17:02 - 2016-11-21 17:03 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (1).exe 2016-11-20 18:55 - 2016-11-20 18:55 - 00000000 _____ C:\Users\maplo\Desktop\Neues Textdokument.txt 2016-11-20 18:31 - 2016-11-20 18:31 - 00007334 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu) (4).odt 2016-11-20 11:51 - 2016-12-01 12:05 - 00005803 _____ C:\Users\maplo\Desktop\JRT.txt 2016-11-10 18:08 - 2016-12-01 15:03 - 00000000 ___DC C:\AdwCleaner 2016-11-10 02:00 - 2016-11-10 02:00 - 00485512 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\Trufos.sys 2016-11-04 10:21 - 2016-11-04 10:21 - 00000000 ____D C:\Users\maplo\AppData\Roaming\LolClient 2016-11-02 17:59 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2016-11-02 17:59 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2016-11-02 17:59 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-02 11:45 - 2009-07-14 05:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-02 11:45 - 2009-07-14 05:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-02 11:35 - 2014-01-30 15:03 - 00000000 ____D C:\ProgramData\NVIDIA 2016-12-02 11:35 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-01 20:19 - 2016-10-13 18:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-01 18:24 - 2016-02-22 14:15 - 00000000 ___DC C:\ProgramData\AVAST Software 2016-12-01 14:33 - 2014-07-24 15:43 - 00103936 ___SH C:\Users\maplo\Thumbs.db 2016-12-01 12:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-12-01 11:44 - 2014-09-19 11:04 - 00251920 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu).odt 2016-12-01 10:26 - 2011-04-12 08:43 - 00699092 _____ C:\Windows\system32\perfh007.dat 2016-12-01 10:26 - 2011-04-12 08:43 - 00149232 _____ C:\Windows\system32\perfc007.dat 2016-12-01 10:26 - 2009-07-14 06:13 - 01619284 _____ C:\Windows\system32\PerfStringBackup.INI 2016-11-30 20:27 - 2014-04-01 08:34 - 00007605 _____ C:\Users\maplo\AppData\Local\Resmon.ResmonCfg 2016-11-30 20:07 - 2013-09-25 13:54 - 00000000 ___DC C:\Program Files (x86)\Google 2016-11-30 20:06 - 2014-02-08 07:00 - 00000000 ____D C:\Users\maplo\AppData\Local\Deployment 2016-11-28 21:03 - 2015-05-28 07:48 - 00000306 __RSH C:\Users\maplo\ntuser.pol 2016-11-28 21:03 - 2013-09-25 13:17 - 00000000 ____D C:\Users\maplo 2016-11-28 18:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2016-11-27 12:20 - 2016-09-04 17:21 - 00009218 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu) (3).odt 2016-11-26 19:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Branding 2016-11-25 19:00 - 2011-01-26 11:11 - 00005256 _____ C:\Windows\wscsvc.reg 2016-11-24 20:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-11-24 12:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PLA 2016-11-24 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Msdtc 2016-11-23 20:17 - 2016-09-21 08:46 - 00001116 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk 2016-11-23 20:17 - 2014-02-10 07:46 - 00001058 _____ C:\Users\Public\Desktop\PDF-Viewer.lnk 2016-11-23 19:43 - 2016-04-29 18:57 - 00000000 ___DC C:\Program Files (x86)\Nokia 2016-11-23 19:40 - 2016-04-29 19:00 - 00000000 ___DC C:\Program Files\DIFX 2016-11-23 12:22 - 2014-05-10 07:59 - 00000000 ____D C:\Users\maplo\Desktop\Neuer Ordner 2016-11-22 09:45 - 2009-07-14 06:37 - 00000000 ____D C:\Windows\DigitalLocker 2016-11-21 18:14 - 2016-08-22 17:20 - 00000000 ___DC C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-21 18:14 - 2016-08-16 18:28 - 00000000 ___DC C:\Program Files (x86)\phase5 2016-11-21 16:41 - 2014-08-09 15:26 - 01124352 ___SH C:\Users\maplo\Downloads\Thumbs.db 2016-11-21 11:06 - 2009-07-14 05:45 - 00000000 ____D C:\Windows\ServiceProfiles 2016-11-14 19:35 - 2015-05-15 18:54 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames 2016-11-08 17:19 - 2016-10-13 18:31 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-08 17:19 - 2016-10-13 18:31 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-08 17:19 - 2016-10-13 18:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-11-08 17:19 - 2013-09-25 13:54 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-08 17:19 - 2013-09-25 13:48 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-07 18:28 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-11-02 17:59 - 2016-10-19 19:20 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Riot Games 2016-11-02 09:29 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\LiveKernelReports ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-09-20 13:02 - 2013-09-20 13:02 - 153313362 ____C () C:\Program Files\openoffice1.cab 2013-09-20 13:00 - 2013-09-20 13:00 - 2269184 ____C () C:\Program Files\openoffice401.msi 2013-09-20 13:00 - 2013-09-20 13:00 - 0475136 ____C () C:\Program Files\setup.exe 2013-09-20 13:00 - 2013-09-20 13:00 - 0000279 ____C () C:\Program Files\setup.ini 2014-04-01 08:34 - 2016-11-30 20:27 - 0007605 _____ () C:\Users\maplo\AppData\Local\Resmon.ResmonCfg ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-30 18:03 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 30-11-2016 durchgeführt von maplo (02-12-2016 11:57:11) Gestartet von C:\Users\maplo\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2013-09-25 12:17:28) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-272398419-1830848293-3820193082-500 - Administrator - Disabled) Gast (S-1-5-21-272398419-1830848293-3820193082-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-272398419-1830848293-3820193082-1002 - Limited - Enabled) maplo (S-1-5-21-272398419-1830848293-3820193082-1001 - Administrator - Enabled) => C:\Users\maplo UpdatusUser (S-1-5-21-272398419-1830848293-3820193082-1003 - Limited - Enabled) => C:\Users\TEMP ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Akamai) (Version: - Akamai Technologies, Inc) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 4.10 - Piriform) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden Nokia Connectivity Cable Driver (HKLM-x32\...\{C3F19A5F-35A8-4FDB-A6ED-0F4CE398DA48}) (Version: 7.0.2.0 - Nokia) NVIDIA 3D Vision Controller-Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation) NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) PC Connectivity Solution (HKLM-x32\...\{83258E90-1F76-4E13-9F60-A0F8ED41E76F}) (Version: 8.22.7.0 - Nokia) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden SLOW-PCfighter (HKLM\...\SLOW-PCfighter) (Version: 2.1.32 - SPAMfighter ApS.) SLOW-PCfighter (Version: 2.1.32 - SPAMfighter ApS) Hidden System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows-Treiberpaket - Nokia pccsmcfd (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia) World of Battles-DE (HKLM-x32\...\World of Battles-DE) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0130AC60-C2DD-4AB5-8100-45643BB50767} - System32\Tasks\{BD5E1A65-1DD2-47F5-9780-1386FC85B937} => C:\AeriaGames\Shaiya-DE\aeria_launcher.exe Task: {1CA10902-3D78-40FF-8EDB-60797BA09CB2} - System32\Tasks\Fighters\SLOW-PCfighter\RCPRO-5-maplo-logon => C:\Program Files (x86)\Fighters\SLOW-PCfighter\UI.exe [2016-10-21] (SPAMfighter ApS) Task: {326E1F2E-CD46-44CC-AD3E-54644E16702E} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-09-22] (Oracle Corporation) Task: {35B7BEA9-215F-4325-BD25-826BC00B56AF} - System32\Tasks\RunOW => C:\Program Files (x86)\Overwolf\\OverwolfLauncher.exe Task: {4A19E649-4DAC-4C80-9DBE-62329DA9FF6D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-30] (Google Inc.) Task: {5BDC19DC-E192-4B6E-89A8-353E7F4CC64C} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-03] (AVAST Software) Task: {5CE1D5FC-1B0A-42B8-8B6E-F5B1853DFA58} - System32\Tasks\{18536E1C-69C6-4495-B250-99D73369FEAD} => pcalua.exe -a C:\Users\maplo\AppData\Local\Temp\jre-8u101-windows-au.exe -d "C:\Program Files\Java\jre1.8.0_91\bin" -c /installmethod=jau-m FAMILYUPGRADE=1 <==== ACHTUNG Task: {63E6A0A5-2040-4DC8-A2FA-494E2A6F6BC4} - System32\Tasks\SafeZone scheduled Autoupdate 1480613134 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software) Task: {663E32D2-A3F9-4FD9-9758-9A03474785BC} - System32\Tasks\PC Health Advisor Aktualisierung => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe Task: {68FAE479-046A-4919-B936-4488585D2C37} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-30] (Google Inc.) Task: {7C53022B-2EBB-4E22-92C4-AC1F1D6CB46D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-08] (Adobe Systems Incorporated) Task: {8616DDDD-C38E-4B00-B19F-25DF08EF5584} - System32\Tasks\{57821D88-714A-40BD-84BD-25FF843FD5B5} => pcalua.exe -a "C:\Program Files (x86)\X-Setup Pro\bin\xqdcXSPStart.exe" -d "C:\Program Files (x86)\X-Setup Pro" Task: {9A01A719-93EC-42B6-BF02-337F220286E8} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks [Argument = /run /TN "\Microsoft\Windows\Setup\gwx\refreshgwxconfig"] Task: {A973D079-888A-499A-BAF2-EEB1AE3B82CC} - \AppManager_logon -> Keine Datei <==== ACHTUNG Task: {B86AADC5-37A3-4591-9603-11F4348671BB} - System32\Tasks\{19E94F83-02F8-4991-8493-62DF15BDB388} => Chrome.exe Task: {B9008251-5EBE-4100-8CBB-1AAC8A405919} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-12-01] (AVAST Software) Task: {CE5CA5D4-4733-420A-8E91-4273C62EF2A2} - System32\Tasks\{0B7C8532-5821-4649-ADED-854281A7BF27} => pcalua.exe -a "C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OPM79QZW\wmp11-windowsxp-x86-DE-DE.exe" -d C:\Users\maplo\Desktop Task: {F3D4066A-125E-4C19-B520-D832056DDFE4} - System32\Tasks\{941FB3DA-4EE9-4EF5-AF82-D53F3B89A730} => C:\AeriaGames\Shaiya-DE\aeria_launcher.exe Task: {FEE18234-36C2-41A1-AB47-B918C82F6AF4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\PC Health Advisor Aktualisierung.job => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\maplo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Profil 2 - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2014-01-30 15:02 - 2013-03-15 05:16 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-11-30 20:07 - 2016-11-08 22:03 - 02367080 ____C () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll 2016-11-30 20:07 - 2016-11-08 22:03 - 00107112 ____C () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll 2016-12-01 17:15 - 2016-12-01 17:15 - 00169064 ____C () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-12-01 18:25 - 2016-12-01 18:25 - 03129808 ____C () C:\Program Files\AVAST Software\Avast\defs\16120100\algo.dll 2016-12-01 17:16 - 2016-12-01 17:16 - 00482928 ____C () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-09-23 18:43 - 2005-11-27 20:06 - 00360448 _____ () C:\Windows\SysWow64\CoolXPLabel.ocx 2016-09-23 18:43 - 2005-11-27 20:07 - 00491520 _____ () C:\Windows\SysWow64\CoolXPButton.ocx 2016-09-23 18:43 - 2005-11-27 20:07 - 00417792 _____ () C:\Windows\SysWow64\CoolXPCombo.ocx 2016-12-01 17:16 - 2016-12-01 17:16 - 48936448 ____C () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-10-31 18:00 - 00000826 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\maplo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\Services: MBAMService => 2 MSCONFIG\Services: McComponentHostService => 3 ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [TCP Query User{92DBB8EC-BF4D-4503-B017-6FEF5794C6C3}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{93818E17-C3EC-403A-82BC-D4E360E33935}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{EEF2AA93-E0BD-40EE-9061-7E25F86ACE4F}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{DCA1BA60-F2E1-40EC-8AD4-5C0699F42024}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{01660FA1-BBB9-405E-896F-D101A6B8C3B6}C:\program files (x86)\tera\tera-launcher.exe] => C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [UDP Query User{60079D49-5C8C-4F65-B0FB-4F781C56151A}C:\program files (x86)\tera\tera-launcher.exe] => C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [{32F03291-6488-48ED-8B03-F2C086718986}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{51E45E7F-224A-44D3-943D-5588B18DCB34}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [TCP Query User{5C7B2041-5DD4-475F-8F18-E253EF48C7CA}C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe FirewallRules: [UDP Query User{9651F89F-692D-41DD-B01B-A00978B935FF}C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe FirewallRules: [TCP Query User{9E5FBB90-9C11-420E-B289-9B414F9A1547}C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe] => C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [UDP Query User{D092E8B1-CBA2-419E-B92D-4A7F4EC4E631}C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe] => C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [{B2C84DC8-0C32-44B4-B637-6F1DB7031CD7}] => C:\Users\maplo\AppData\Roaming\Allmyapps\Allmyapps.exe FirewallRules: [TCP Query User{1C564928-6DA8-4AF0-B65A-06E1ACF4040B}C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe FirewallRules: [UDP Query User{6514A7D7-AB31-406E-9FFE-F52B64A07DF8}C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe FirewallRules: [TCP Query User{5BB74CF1-C40E-4CE3-B652-7F122DE29237}F:\tera\tera-launcher.exe] => F:\tera\tera-launcher.exe FirewallRules: [UDP Query User{C7F6E5BD-EECC-45A1-B3EB-8786B4872E47}F:\tera\tera-launcher.exe] => F:\tera\tera-launcher.exe FirewallRules: [TCP Query User{F905CB23-51AA-4E46-BD16-3A7E3B36B8B7}C:\windows\syswow64\rundll32.exe] => C:\windows\syswow64\rundll32.exe FirewallRules: [UDP Query User{E7C2FF9A-AE22-424B-9A85-60351D73776C}C:\windows\syswow64\rundll32.exe] => C:\windows\syswow64\rundll32.exe FirewallRules: [{6D9C7F08-71C9-4EDC-82BB-512168344168}] => F:\AuraKingdom\AuraKingdom-DE\game.bin FirewallRules: [{BBE3AFD4-F97F-4B55-9EF0-8B12BAD3CD6E}] => F:\AuraKingdom\AuraKingdom-DE\game.bin FirewallRules: [{374100BD-A111-4281-AE39-931D54869FB3}] => C:\Users\maplo\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{40AA3635-228E-44B8-A4CF-815FB08748F2}] => C:\Users\maplo\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{A6A99E2C-6AD5-425B-89F7-54FF6B84383D}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/02/2016 11:37:51 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/02/2016 11:36:00 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (12/01/2016 07:57:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: rundll32.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc637 Name des fehlerhaften Moduls: bcuengine.dll, Version: 12.0.0.298, Zeitstempel: 0x5821b6de Ausnahmecode: 0xc0000005 Fehleroffset: 0x00168e44 ID des fehlerhaften Prozesses: 0x484 Startzeit der fehlerhaften Anwendung: 0x01d24c04b83ba868 Pfad der fehlerhaften Anwendung: C:\Windows\SysWOW64\rundll32.exe Pfad des fehlerhaften Moduls: C:\Program Files\AVAST Software\Avast\defs\16120100\bcuengine.dll Berichtskennung: f66fe1b8-b7f7-11e6-b2ac-00219b16a998 Error: (12/01/2016 06:24:59 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/01/2016 06:22:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (12/01/2016 05:11:45 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/01/2016 05:11:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (12/01/2016 02:53:09 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/01/2016 02:52:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (12/01/2016 02:26:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: rundll32.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc637 Name des fehlerhaften Moduls: bcuengine.dll, Version: 12.0.0.298, Zeitstempel: 0x5821b6de Ausnahmecode: 0xc0000005 Fehleroffset: 0x00168e44 ID des fehlerhaften Prozesses: 0x1070 Startzeit der fehlerhaften Anwendung: 0x01d24bd67a4585b2 Pfad der fehlerhaften Anwendung: C:\Windows\SysWOW64\rundll32.exe Pfad des fehlerhaften Moduls: C:\Program Files\AVAST Software\Avast\defs\16120100\bcuengine.dll Berichtskennung: b980dc62-b7c9-11e6-80c4-00219b16a998 Systemfehler: ============= Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden. Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden. Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden. Error: (12/02/2016 11:39:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (12/02/2016 11:39:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (12/02/2016 11:39:04 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (12/02/2016 11:37:51 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/02/2016 11:37:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Media Center Extender-Dienst" ist vom Dienst "PnP-X-IP-Busenumerator" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (12/01/2016 08:26:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (12/01/2016 07:24:18 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. CodeIntegrity: =================================== Date: 2014-07-26 19:56:36.731 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-26 19:56:36.687 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-26 19:56:36.167 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-26 19:56:36.126 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-12-28 12:00:40.390 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-12-28 12:00:40.312 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-12-28 12:00:39.578 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-12-28 12:00:39.500 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz Prozentuale Nutzung des RAM: 67% Installierter physikalischer RAM: 3070.99 MB Verfügbarer physikalischer RAM: 994.63 MB Summe virtueller Speicher: 6440.18 MB Verfügbarer virtueller Speicher: 3751.24 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:68.39 GB) (Free:7.14 GB) NTFS Drive e: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive f: (500GB) (Fixed) (Total:465.66 GB) (Free:330.73 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F01D32BD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 74.5 GB) (Disk ID: DE2F0A61) Partition 1: (Active) - (Size=6.1 GB) - (Type=27) Partition 2: (Not Active) - (Size=68.4 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
02.12.2016, 13:09 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes Programm Bitte Avast deinstallieren. Das Teil können wir einfach nicht mehr guten Gewissens empfehlen. => Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog Auch andere Freewareanbieter wie Avira, AVG oder Panda springen auf diesen oder ähnlichen Zügen rauf, basteln Junkware in die Setups, arbeiten mit ASK zusammen etc; so was ist bei Sicherheitssoftware einfach inakzeptabel. Gib Bescheid wenn Avast weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________ Logfiles bitte immer in CODE-Tags posten |
02.12.2016, 17:50 | #9 |
| avast deinstalliert Ok ich habe avast komplett deinstalliert. |
02.12.2016, 18:29 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes Programm 1. Schritt: Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers 2. Schritt: Kaspersky TDSS-Killer Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
02.12.2016, 19:43 | #11 |
| unbekanntes ProgrammCode:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2016.12.02.10 rootkit: v2016.11.20.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.17801 maplo :: MAPLO-PC [administrator] 02.12.2016 18:59:15 mbar-log-2016-12-02 (18-59-15).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 356915 Time elapsed: 17 minute(s), 25 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter 19:33:10.0665 0x0658 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 19:33:53.0446 0x0658 ============================================================ 19:33:53.0446 0x0658 Current date / time: 2016/12/02 19:33:53.0446 19:33:53.0446 0x0658 SystemInfo: 19:33:53.0446 0x0658 19:33:53.0446 0x0658 OS Version: 6.1.7601 ServicePack: 1.0 19:33:53.0446 0x0658 Product type: Workstation 19:33:53.0446 0x0658 ComputerName: MAPLO-PC 19:33:53.0446 0x0658 UserName: maplo 19:33:53.0446 0x0658 Windows directory: C:\Windows 19:33:53.0446 0x0658 System windows directory: C:\Windows 19:33:53.0446 0x0658 Running under WOW64 19:33:53.0446 0x0658 Processor architecture: Intel x64 19:33:53.0446 0x0658 Number of processors: 4 19:33:53.0446 0x0658 Page size: 0x1000 19:33:53.0446 0x0658 Boot type: Normal boot 19:33:53.0446 0x0658 CodeIntegrityOptions = 0x00000001 19:33:53.0446 0x0658 ============================================================ 19:33:54.0712 0x0658 KLMD registered as C:\Windows\system32\drivers\89356864.sys 19:33:54.0712 0x0658 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.18839, osProperties = 0x1 19:33:54.0872 0x0658 System UUID: {415A6447-DBF0-2C12-E363-4AA23CDEB767} 19:33:55.0322 0x0658 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:33:55.0322 0x0658 Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:33:55.0332 0x0658 ============================================================ 19:33:55.0332 0x0658 \Device\Harddisk0\DR0: 19:33:55.0332 0x0658 MBR partitions: 19:33:55.0332 0x0658 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 19:33:55.0332 0x0658 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000 19:33:55.0332 0x0658 \Device\Harddisk1\DR1: 19:33:55.0332 0x0658 MBR partitions: 19:33:55.0332 0x0658 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xC45800, BlocksNum 0x88C9800 19:33:55.0332 0x0658 ============================================================ 19:33:55.0362 0x0658 C: <-> \Device\Harddisk1\DR1\Partition1 19:33:55.0372 0x0658 E: <-> \Device\Harddisk0\DR0\Partition1 19:33:55.0702 0x0658 F: <-> \Device\Harddisk0\DR0\Partition2 19:33:55.0702 0x0658 ============================================================ 19:33:55.0702 0x0658 Initialize success 19:33:55.0702 0x0658 ============================================================ 19:38:22.0843 0x0c90 ============================================================ 19:38:22.0843 0x0c90 Scan started 19:38:22.0843 0x0c90 Mode: Manual; SigCheck; TDLFS; 19:38:22.0843 0x0c90 ============================================================ 19:38:22.0843 0x0c90 KSN ping started 19:38:36.0222 0x0c90 KSN ping finished: true 19:38:37.0435 0x0c90 ================ Scan system memory ======================== 19:38:37.0435 0x0c90 System memory - ok 19:38:37.0435 0x0c90 ================ Scan services ============================= 19:38:37.0555 0x0c90 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 19:38:37.0901 0x0c90 1394ohci - ok 19:38:37.0943 0x0c90 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 19:38:37.0964 0x0c90 ACPI - ok 19:38:37.0983 0x0c90 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 19:38:38.0149 0x0c90 AcpiPmi - ok 19:38:38.0267 0x0c90 [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 19:38:38.0282 0x0c90 AdobeFlashPlayerUpdateSvc - ok 19:38:38.0321 0x0c90 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 19:38:38.0345 0x0c90 adp94xx - ok 19:38:38.0372 0x0c90 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 19:38:38.0392 0x0c90 adpahci - ok 19:38:38.0422 0x0c90 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 19:38:38.0432 0x0c90 adpu320 - ok 19:38:38.0462 0x0c90 [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 19:38:38.0522 0x0c90 AeLookupSvc - ok 19:38:38.0562 0x0c90 [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe 19:38:38.0572 0x0c90 AERTFilters - ok 19:38:38.0612 0x0c90 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys 19:38:38.0662 0x0c90 AFD - ok 19:38:38.0682 0x0c90 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 19:38:38.0692 0x0c90 agp440 - ok 19:38:38.0712 0x0c90 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 19:38:38.0772 0x0c90 ALG - ok 19:38:38.0792 0x0c90 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 19:38:38.0802 0x0c90 aliide - ok 19:38:38.0812 0x0c90 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 19:38:38.0822 0x0c90 amdide - ok 19:38:38.0842 0x0c90 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 19:38:38.0862 0x0c90 AmdK8 - ok 19:38:38.0882 0x0c90 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 19:38:38.0892 0x0c90 AmdPPM - ok 19:38:38.0923 0x0c90 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 19:38:38.0933 0x0c90 amdsata - ok 19:38:38.0963 0x0c90 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 19:38:38.0973 0x0c90 amdsbs - ok 19:38:38.0993 0x0c90 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 19:38:39.0003 0x0c90 amdxata - ok 19:38:39.0033 0x0c90 [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID C:\Windows\system32\drivers\appid.sys 19:38:39.0094 0x0c90 AppID - ok 19:38:39.0124 0x0c90 [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc C:\Windows\System32\appidsvc.dll 19:38:39.0144 0x0c90 AppIDSvc - ok 19:38:39.0164 0x0c90 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 19:38:39.0234 0x0c90 Appinfo - ok 19:38:39.0284 0x0c90 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 19:38:39.0294 0x0c90 arc - ok 19:38:39.0324 0x0c90 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 19:38:39.0334 0x0c90 arcsas - ok 19:38:39.0434 0x0c90 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 19:38:39.0484 0x0c90 aspnet_state - ok 19:38:39.0534 0x0c90 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 19:38:39.0644 0x0c90 AsyncMac - ok 19:38:39.0674 0x0c90 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 19:38:39.0684 0x0c90 atapi - ok 19:38:39.0754 0x0c90 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 19:38:39.0794 0x0c90 AudioEndpointBuilder - ok 19:38:39.0814 0x0c90 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 19:38:39.0844 0x0c90 AudioSrv - ok 19:38:39.0864 0x0c90 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 19:38:39.0924 0x0c90 AxInstSV - ok 19:38:39.0964 0x0c90 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 19:38:40.0014 0x0c90 b06bdrv - ok 19:38:40.0044 0x0c90 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 19:38:40.0064 0x0c90 b57nd60a - ok 19:38:40.0084 0x0c90 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 19:38:40.0134 0x0c90 BDESVC - ok 19:38:40.0164 0x0c90 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 19:38:40.0214 0x0c90 Beep - ok 19:38:40.0244 0x0c90 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 19:38:40.0324 0x0c90 BFE - ok 19:38:40.0414 0x0c90 [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM C:\Program Files\BDServices\BitDefenderCom.exe 19:38:40.0464 0x0c90 BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 ) 19:38:42.0774 0x0c90 Detect skipped due to KSN trusted 19:38:42.0774 0x0c90 BitDefenderCOM - ok 19:38:42.0824 0x0c90 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 19:38:42.0954 0x0c90 BITS - ok 19:38:42.0984 0x0c90 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys 19:38:43.0004 0x0c90 blbdrive - ok 19:38:43.0024 0x0c90 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 19:38:43.0084 0x0c90 bowser - ok 19:38:43.0104 0x0c90 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 19:38:43.0124 0x0c90 BrFiltLo - ok 19:38:43.0144 0x0c90 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 19:38:43.0164 0x0c90 BrFiltUp - ok 19:38:43.0214 0x0c90 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 19:38:43.0264 0x0c90 BridgeMP - ok 19:38:43.0284 0x0c90 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 19:38:43.0324 0x0c90 Browser - ok 19:38:43.0364 0x0c90 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 19:38:43.0424 0x0c90 Brserid - ok 19:38:43.0444 0x0c90 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 19:38:43.0464 0x0c90 BrSerWdm - ok 19:38:43.0474 0x0c90 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 19:38:43.0504 0x0c90 BrUsbMdm - ok 19:38:43.0524 0x0c90 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 19:38:43.0534 0x0c90 BrUsbSer - ok 19:38:43.0554 0x0c90 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 19:38:43.0574 0x0c90 BTHMODEM - ok 19:38:43.0604 0x0c90 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 19:38:43.0644 0x0c90 bthserv - ok 19:38:43.0654 0x0c90 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 19:38:43.0704 0x0c90 cdfs - ok 19:38:43.0724 0x0c90 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 19:38:43.0744 0x0c90 cdrom - ok 19:38:43.0754 0x0c90 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 19:38:43.0804 0x0c90 CertPropSvc - ok 19:38:43.0814 0x0c90 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 19:38:43.0834 0x0c90 circlass - ok 19:38:43.0884 0x0c90 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 19:38:43.0904 0x0c90 CLFS - ok 19:38:43.0934 0x0c90 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 19:38:43.0944 0x0c90 clr_optimization_v2.0.50727_32 - ok 19:38:43.0994 0x0c90 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 19:38:44.0004 0x0c90 clr_optimization_v2.0.50727_64 - ok 19:38:44.0074 0x0c90 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 19:38:44.0084 0x0c90 clr_optimization_v4.0.30319_32 - ok 19:38:44.0104 0x0c90 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 19:38:44.0194 0x0c90 clr_optimization_v4.0.30319_64 - ok 19:38:44.0204 0x0c90 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 19:38:44.0234 0x0c90 CmBatt - ok 19:38:44.0244 0x0c90 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 19:38:44.0254 0x0c90 cmdide - ok 19:38:44.0294 0x0c90 [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\Windows\system32\Drivers\cng.sys 19:38:44.0344 0x0c90 CNG - ok 19:38:44.0374 0x0c90 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 19:38:44.0384 0x0c90 Compbatt - ok 19:38:44.0404 0x0c90 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 19:38:44.0434 0x0c90 CompositeBus - ok 19:38:44.0444 0x0c90 COMSysApp - ok 19:38:44.0514 0x0c90 cpuz132 - ok 19:38:44.0534 0x0c90 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 19:38:44.0544 0x0c90 crcdisk - ok 19:38:44.0584 0x0c90 [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc C:\Windows\system32\cryptsvc.dll 19:38:44.0644 0x0c90 CryptSvc - ok 19:38:44.0684 0x0c90 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 19:38:44.0734 0x0c90 DcomLaunch - ok 19:38:44.0764 0x0c90 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 19:38:44.0814 0x0c90 defragsvc - ok 19:38:44.0834 0x0c90 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 19:38:44.0884 0x0c90 DfsC - ok 19:38:44.0904 0x0c90 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 19:38:44.0954 0x0c90 Dhcp - ok 19:38:45.0044 0x0c90 [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack C:\Windows\system32\diagtrack.dll 19:38:45.0114 0x0c90 DiagTrack - ok 19:38:45.0134 0x0c90 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 19:38:45.0174 0x0c90 discache - ok 19:38:45.0184 0x0c90 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 19:38:45.0204 0x0c90 Disk - ok 19:38:45.0234 0x0c90 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 19:38:45.0274 0x0c90 Dnscache - ok 19:38:45.0294 0x0c90 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 19:38:45.0344 0x0c90 dot3svc - ok 19:38:45.0364 0x0c90 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 19:38:45.0414 0x0c90 DPS - ok 19:38:45.0424 0x0c90 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 19:38:45.0474 0x0c90 drmkaud - ok 19:38:45.0484 0x0c90 dtmelqbg - ok 19:38:45.0534 0x0c90 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 19:38:45.0574 0x0c90 DXGKrnl - ok 19:38:45.0594 0x0c90 [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress C:\Windows\system32\DRIVERS\e1k60x64.sys 19:38:45.0614 0x0c90 e1kexpress - ok 19:38:45.0624 0x0c90 EagleX64 - ok 19:38:45.0654 0x0c90 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 19:38:45.0684 0x0c90 EapHost - ok 19:38:45.0824 0x0c90 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 19:38:45.0924 0x0c90 ebdrv - ok 19:38:45.0964 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS C:\Windows\System32\lsass.exe 19:38:46.0004 0x0c90 EFS - ok 19:38:46.0064 0x0c90 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 19:38:46.0144 0x0c90 ehRecvr - ok 19:38:46.0174 0x0c90 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 19:38:46.0194 0x0c90 ehSched - ok 19:38:46.0224 0x0c90 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 19:38:46.0254 0x0c90 elxstor - ok 19:38:46.0284 0x0c90 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 19:38:46.0314 0x0c90 ErrDev - ok 19:38:46.0354 0x0c90 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 19:38:46.0404 0x0c90 EventSystem - ok 19:38:46.0414 0x0c90 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 19:38:46.0464 0x0c90 exfat - ok 19:38:46.0484 0x0c90 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 19:38:46.0534 0x0c90 fastfat - ok 19:38:46.0574 0x0c90 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 19:38:46.0644 0x0c90 Fax - ok 19:38:46.0664 0x0c90 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 19:38:46.0684 0x0c90 fdc - ok 19:38:46.0704 0x0c90 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 19:38:46.0744 0x0c90 fdPHost - ok 19:38:46.0764 0x0c90 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 19:38:46.0794 0x0c90 FDResPub - ok 19:38:46.0824 0x0c90 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 19:38:46.0834 0x0c90 FileInfo - ok 19:38:46.0854 0x0c90 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 19:38:46.0894 0x0c90 Filetrace - ok 19:38:46.0914 0x0c90 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 19:38:46.0934 0x0c90 flpydisk - ok 19:38:46.0964 0x0c90 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 19:38:46.0974 0x0c90 FltMgr - ok 19:38:47.0044 0x0c90 [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache C:\Windows\system32\FntCache.dll 19:38:47.0104 0x0c90 FontCache - ok 19:38:47.0144 0x0c90 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 19:38:47.0154 0x0c90 FontCache3.0.0.0 - ok 19:38:47.0174 0x0c90 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 19:38:47.0194 0x0c90 FsDepends - ok 19:38:47.0204 0x0c90 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 19:38:47.0214 0x0c90 Fs_Rec - ok 19:38:47.0244 0x0c90 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 19:38:47.0264 0x0c90 fvevol - ok 19:38:47.0274 0x0c90 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 19:38:47.0294 0x0c90 gagp30kx - ok 19:38:47.0334 0x0c90 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 19:38:47.0394 0x0c90 gpsvc - ok 19:38:47.0504 0x0c90 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:38:47.0514 0x0c90 gupdate - ok 19:38:47.0524 0x0c90 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:38:47.0534 0x0c90 gupdatem - ok 19:38:47.0564 0x0c90 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 19:38:47.0634 0x0c90 hcw85cir - ok 19:38:47.0664 0x0c90 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 19:38:47.0704 0x0c90 HdAudAddService - ok 19:38:47.0724 0x0c90 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 19:38:47.0784 0x0c90 HDAudBus - ok 19:38:47.0824 0x0c90 [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64 C:\Windows\system32\drivers\HECIx64.sys 19:38:47.0864 0x0c90 HECIx64 - ok 19:38:47.0884 0x0c90 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 19:38:47.0894 0x0c90 HidBatt - ok 19:38:47.0924 0x0c90 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 19:38:47.0944 0x0c90 HidBth - ok 19:38:47.0974 0x0c90 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 19:38:47.0994 0x0c90 HidIr - ok 19:38:48.0014 0x0c90 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll 19:38:48.0054 0x0c90 hidserv - ok 19:38:48.0074 0x0c90 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 19:38:48.0124 0x0c90 HidUsb - ok 19:38:48.0144 0x0c90 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 19:38:48.0184 0x0c90 hkmsvc - ok 19:38:48.0204 0x0c90 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 19:38:48.0264 0x0c90 HomeGroupListener - ok 19:38:48.0294 0x0c90 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 19:38:48.0314 0x0c90 HomeGroupProvider - ok 19:38:48.0324 0x0c90 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 19:38:48.0334 0x0c90 HpSAMD - ok 19:38:48.0384 0x0c90 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 19:38:48.0444 0x0c90 HTTP - ok 19:38:48.0464 0x0c90 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 19:38:48.0474 0x0c90 hwpolicy - ok 19:38:48.0504 0x0c90 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 19:38:48.0514 0x0c90 i8042prt - ok 19:38:48.0564 0x0c90 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 19:38:48.0584 0x0c90 iaStorV - ok 19:38:48.0656 0x0c90 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 19:38:48.0692 0x0c90 idsvc - ok 19:38:48.0698 0x0c90 IEEtwCollectorService - ok 19:38:48.0925 0x0c90 [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 19:38:49.0178 0x0c90 igfx - ok 19:38:49.0218 0x0c90 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 19:38:49.0228 0x0c90 iirsp - ok 19:38:49.0278 0x0c90 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 19:38:49.0308 0x0c90 IKEEXT - ok 19:38:49.0468 0x0c90 [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 19:38:49.0588 0x0c90 IntcAzAudAddService - ok 19:38:49.0622 0x0c90 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 19:38:49.0633 0x0c90 intelide - ok 19:38:49.0659 0x0c90 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys 19:38:49.0672 0x0c90 intelppm - ok 19:38:49.0697 0x0c90 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 19:38:49.0738 0x0c90 IPBusEnum - ok 19:38:49.0757 0x0c90 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 19:38:49.0801 0x0c90 IpFilterDriver - ok 19:38:49.0839 0x0c90 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 19:38:49.0895 0x0c90 iphlpsvc - ok 19:38:49.0905 0x0c90 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 19:38:49.0927 0x0c90 IPMIDRV - ok 19:38:49.0955 0x0c90 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 19:38:49.0998 0x0c90 IPNAT - ok 19:38:50.0020 0x0c90 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 19:38:50.0045 0x0c90 IRENUM - ok 19:38:50.0060 0x0c90 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 19:38:50.0071 0x0c90 isapnp - ok 19:38:50.0099 0x0c90 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 19:38:50.0116 0x0c90 iScsiPrt - ok 19:38:50.0128 0x0c90 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 19:38:50.0138 0x0c90 kbdclass - ok 19:38:50.0158 0x0c90 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 19:38:50.0178 0x0c90 kbdhid - ok 19:38:50.0198 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso C:\Windows\system32\lsass.exe 19:38:50.0208 0x0c90 KeyIso - ok 19:38:50.0248 0x0c90 [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 19:38:50.0258 0x0c90 KSecDD - ok 19:38:50.0278 0x0c90 [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 19:38:50.0288 0x0c90 KSecPkg - ok 19:38:50.0318 0x0c90 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 19:38:50.0348 0x0c90 ksthunk - ok 19:38:50.0378 0x0c90 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 19:38:50.0428 0x0c90 KtmRm - ok 19:38:50.0458 0x0c90 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll 19:38:50.0508 0x0c90 LanmanServer - ok 19:38:50.0528 0x0c90 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 19:38:50.0578 0x0c90 LanmanWorkstation - ok 19:38:50.0598 0x0c90 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 19:38:50.0628 0x0c90 lltdio - ok 19:38:50.0668 0x0c90 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 19:38:50.0708 0x0c90 lltdsvc - ok 19:38:50.0728 0x0c90 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 19:38:50.0778 0x0c90 lmhosts - ok 19:38:50.0798 0x0c90 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 19:38:50.0818 0x0c90 LSI_FC - ok 19:38:50.0828 0x0c90 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 19:38:50.0838 0x0c90 LSI_SAS - ok 19:38:50.0848 0x0c90 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 19:38:50.0858 0x0c90 LSI_SAS2 - ok 19:38:50.0898 0x0c90 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 19:38:50.0908 0x0c90 LSI_SCSI - ok 19:38:50.0938 0x0c90 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 19:38:50.0978 0x0c90 luafv - ok 19:38:50.0998 0x0c90 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 19:38:51.0008 0x0c90 Mcx2Svc - ok 19:38:51.0018 0x0c90 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 19:38:51.0038 0x0c90 megasas - ok 19:38:51.0058 0x0c90 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 19:38:51.0078 0x0c90 MegaSR - ok 19:38:51.0108 0x0c90 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 19:38:51.0148 0x0c90 MMCSS - ok 19:38:51.0158 0x0c90 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 19:38:51.0198 0x0c90 Modem - ok 19:38:51.0208 0x0c90 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 19:38:51.0228 0x0c90 monitor - ok 19:38:51.0248 0x0c90 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 19:38:51.0258 0x0c90 mouclass - ok 19:38:51.0268 0x0c90 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 19:38:51.0278 0x0c90 mouhid - ok 19:38:51.0318 0x0c90 [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 19:38:51.0338 0x0c90 mountmgr - ok 19:38:51.0368 0x0c90 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 19:38:51.0378 0x0c90 mpio - ok 19:38:51.0398 0x0c90 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 19:38:51.0428 0x0c90 mpsdrv - ok 19:38:51.0478 0x0c90 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 19:38:51.0538 0x0c90 MpsSvc - ok 19:38:51.0568 0x0c90 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 19:38:51.0628 0x0c90 MRxDAV - ok 19:38:51.0648 0x0c90 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 19:38:51.0688 0x0c90 mrxsmb - ok 19:38:51.0728 0x0c90 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 19:38:51.0758 0x0c90 mrxsmb10 - ok 19:38:51.0768 0x0c90 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 19:38:51.0788 0x0c90 mrxsmb20 - ok 19:38:51.0798 0x0c90 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 19:38:51.0808 0x0c90 msahci - ok 19:38:51.0828 0x0c90 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 19:38:51.0848 0x0c90 msdsm - ok 19:38:51.0858 0x0c90 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 19:38:51.0888 0x0c90 MSDTC - ok 19:38:51.0918 0x0c90 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 19:38:51.0958 0x0c90 Msfs - ok 19:38:51.0968 0x0c90 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 19:38:52.0008 0x0c90 mshidkmdf - ok 19:38:52.0028 0x0c90 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 19:38:52.0038 0x0c90 msisadrv - ok 19:38:52.0058 0x0c90 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 19:38:52.0108 0x0c90 MSiSCSI - ok 19:38:52.0108 0x0c90 msiserver - ok 19:38:52.0118 0x0c90 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 19:38:52.0158 0x0c90 MSKSSRV - ok 19:38:52.0168 0x0c90 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 19:38:52.0208 0x0c90 MSPCLOCK - ok 19:38:52.0218 0x0c90 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 19:38:52.0248 0x0c90 MSPQM - ok 19:38:52.0278 0x0c90 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 19:38:52.0298 0x0c90 MsRPC - ok 19:38:52.0318 0x0c90 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 19:38:52.0328 0x0c90 mssmbios - ok 19:38:52.0338 0x0c90 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 19:38:52.0378 0x0c90 MSTEE - ok 19:38:52.0398 0x0c90 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 19:38:52.0418 0x0c90 MTConfig - ok 19:38:52.0448 0x0c90 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 19:38:52.0458 0x0c90 Mup - ok 19:38:52.0498 0x0c90 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 19:38:52.0538 0x0c90 napagent - ok 19:38:52.0578 0x0c90 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 19:38:52.0608 0x0c90 NativeWifiP - ok 19:38:52.0648 0x0c90 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 19:38:52.0678 0x0c90 NDIS - ok 19:38:52.0698 0x0c90 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 19:38:52.0738 0x0c90 NdisCap - ok 19:38:52.0768 0x0c90 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 19:38:52.0808 0x0c90 NdisTapi - ok 19:38:52.0818 0x0c90 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 19:38:52.0858 0x0c90 Ndisuio - ok 19:38:52.0868 0x0c90 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 19:38:52.0918 0x0c90 NdisWan - ok 19:38:52.0928 0x0c90 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 19:38:52.0978 0x0c90 NDProxy - ok 19:38:52.0998 0x0c90 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 19:38:53.0038 0x0c90 NetBIOS - ok 19:38:53.0068 0x0c90 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 19:38:53.0108 0x0c90 NetBT - ok 19:38:53.0128 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon C:\Windows\system32\lsass.exe 19:38:53.0138 0x0c90 Netlogon - ok 19:38:53.0168 0x0c90 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 19:38:53.0218 0x0c90 Netman - ok 19:38:53.0278 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0288 0x0c90 NetMsmqActivator - ok 19:38:53.0308 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0328 0x0c90 NetPipeActivator - ok 19:38:53.0348 0x0c90 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 19:38:53.0398 0x0c90 netprofm - ok 19:38:53.0418 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0428 0x0c90 NetTcpActivator - ok 19:38:53.0438 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0448 0x0c90 NetTcpPortSharing - ok 19:38:53.0478 0x0c90 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 19:38:53.0488 0x0c90 nfrd960 - ok 19:38:53.0518 0x0c90 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 19:38:53.0588 0x0c90 NlaSvc - ok 19:38:53.0618 0x0c90 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 19:38:53.0648 0x0c90 Npfs - ok 19:38:53.0648 0x0c90 npggsvc - ok 19:38:53.0668 0x0c90 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 19:38:53.0718 0x0c90 nsi - ok 19:38:53.0728 0x0c90 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 19:38:53.0768 0x0c90 nsiproxy - ok 19:38:53.0848 0x0c90 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 19:38:53.0908 0x0c90 Ntfs - ok 19:38:53.0938 0x0c90 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 19:38:53.0980 0x0c90 Null - ok 19:38:54.0000 0x0c90 [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 19:38:54.0020 0x0c90 NVHDA - ok 19:38:54.0400 0x0c90 [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 19:38:54.0820 0x0c90 nvlddmkm - ok 19:38:54.0870 0x0c90 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 19:38:54.0880 0x0c90 nvraid - ok 19:38:54.0900 0x0c90 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 19:38:54.0910 0x0c90 nvstor - ok 19:38:54.0970 0x0c90 [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc C:\Windows\system32\nvvsvc.exe 19:38:55.0000 0x0c90 nvsvc - ok 19:38:55.0090 0x0c90 [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 19:38:55.0120 0x0c90 nvUpdatusService - ok 19:38:55.0150 0x0c90 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 19:38:55.0160 0x0c90 nv_agp - ok 19:38:55.0190 0x0c90 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 19:38:55.0210 0x0c90 ohci1394 - ok 19:38:55.0230 0x0c90 onotlzbb - ok 19:38:55.0240 0x0c90 oshnyfcv - ok 19:38:55.0280 0x0c90 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 19:38:55.0340 0x0c90 p2pimsvc - ok 19:38:55.0370 0x0c90 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 19:38:55.0400 0x0c90 p2psvc - ok 19:38:55.0430 0x0c90 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 19:38:55.0460 0x0c90 Parport - ok 19:38:55.0470 0x0c90 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 19:38:55.0490 0x0c90 partmgr - ok 19:38:55.0530 0x0c90 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 19:38:55.0590 0x0c90 PcaSvc - ok 19:38:55.0660 0x0c90 [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys 19:38:55.0700 0x0c90 pccsmcfd - ok 19:38:55.0710 0x0c90 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 19:38:55.0730 0x0c90 pci - ok 19:38:55.0750 0x0c90 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 19:38:55.0760 0x0c90 pciide - ok 19:38:55.0790 0x0c90 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 19:38:55.0810 0x0c90 pcmcia - ok 19:38:55.0840 0x0c90 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 19:38:55.0850 0x0c90 pcw - ok 19:38:55.0910 0x0c90 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 19:38:55.0950 0x0c90 PEAUTH - ok 19:38:56.0030 0x0c90 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 19:38:56.0040 0x0c90 PerfHost - ok 19:38:56.0120 0x0c90 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 19:38:56.0190 0x0c90 pla - ok 19:38:56.0240 0x0c90 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 19:38:56.0300 0x0c90 PlugPlay - ok 19:38:56.0310 0x0c90 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 19:38:56.0330 0x0c90 PNRPAutoReg - ok 19:38:56.0350 0x0c90 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 19:38:56.0380 0x0c90 PNRPsvc - ok 19:38:56.0430 0x0c90 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 19:38:56.0490 0x0c90 PolicyAgent - ok 19:38:56.0520 0x0c90 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 19:38:56.0570 0x0c90 Power - ok 19:38:56.0590 0x0c90 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 19:38:56.0620 0x0c90 PptpMiniport - ok 19:38:56.0640 0x0c90 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 19:38:56.0670 0x0c90 Processor - ok 19:38:56.0700 0x0c90 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 19:38:56.0760 0x0c90 ProfSvc - ok 19:38:56.0770 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe 19:38:56.0790 0x0c90 ProtectedStorage - ok 19:38:56.0800 0x0c90 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 19:38:56.0840 0x0c90 Psched - ok 19:38:56.0910 0x0c90 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 19:38:56.0960 0x0c90 ql2300 - ok 19:38:56.0980 0x0c90 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 19:38:57.0000 0x0c90 ql40xx - ok 19:38:57.0030 0x0c90 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 19:38:57.0050 0x0c90 QWAVE - ok 19:38:57.0070 0x0c90 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 19:38:57.0100 0x0c90 QWAVEdrv - ok 19:38:57.0120 0x0c90 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 19:38:57.0160 0x0c90 RasAcd - ok 19:38:57.0180 0x0c90 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 19:38:57.0210 0x0c90 RasAgileVpn - ok 19:38:57.0230 0x0c90 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 19:38:57.0270 0x0c90 RasAuto - ok 19:38:57.0290 0x0c90 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 19:38:57.0320 0x0c90 Rasl2tp - ok 19:38:57.0360 0x0c90 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 19:38:57.0410 0x0c90 RasMan - ok 19:38:57.0430 0x0c90 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 19:38:57.0480 0x0c90 RasPppoe - ok 19:38:57.0490 0x0c90 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 19:38:57.0540 0x0c90 RasSstp - ok 19:38:57.0560 0x0c90 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 19:38:57.0600 0x0c90 rdbss - ok 19:38:57.0630 0x0c90 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys 19:38:57.0650 0x0c90 rdpbus - ok 19:38:57.0670 0x0c90 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 19:38:57.0700 0x0c90 RDPCDD - ok 19:38:57.0740 0x0c90 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 19:38:57.0770 0x0c90 RDPENCDD - ok 19:38:57.0790 0x0c90 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 19:38:57.0820 0x0c90 RDPREFMP - ok 19:38:57.0860 0x0c90 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 19:38:57.0900 0x0c90 RDPWD - ok 19:38:57.0930 0x0c90 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 19:38:57.0940 0x0c90 rdyboost - ok 19:38:57.0970 0x0c90 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 19:38:58.0010 0x0c90 RemoteAccess - ok 19:38:58.0040 0x0c90 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 19:38:58.0090 0x0c90 RemoteRegistry - ok 19:38:58.0100 0x0c90 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 19:38:58.0150 0x0c90 RpcEptMapper - ok 19:38:58.0170 0x0c90 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 19:38:58.0190 0x0c90 RpcLocator - ok 19:38:58.0220 0x0c90 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 19:38:58.0260 0x0c90 RpcSs - ok 19:38:58.0290 0x0c90 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 19:38:58.0320 0x0c90 rspndr - ok 19:38:58.0370 0x0c90 [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 19:38:58.0390 0x0c90 RTL8167 - ok 19:38:58.0400 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs C:\Windows\system32\lsass.exe 19:38:58.0410 0x0c90 SamSs - ok 19:38:58.0430 0x0c90 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 19:38:58.0440 0x0c90 sbp2port - ok 19:38:58.0470 0x0c90 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 19:38:58.0510 0x0c90 SCardSvr - ok 19:38:58.0540 0x0c90 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 19:38:58.0580 0x0c90 scfilter - ok 19:38:58.0630 0x0c90 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 19:38:58.0690 0x0c90 Schedule - ok 19:38:58.0720 0x0c90 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 19:38:58.0760 0x0c90 SCPolicySvc - ok 19:38:58.0780 0x0c90 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 19:38:58.0830 0x0c90 SDRSVC - ok 19:38:58.0850 0x0c90 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 19:38:58.0890 0x0c90 secdrv - ok 19:38:58.0910 0x0c90 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 19:38:58.0950 0x0c90 seclogon - ok 19:38:58.0960 0x0c90 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 19:38:59.0010 0x0c90 SENS - ok 19:38:59.0030 0x0c90 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 19:38:59.0080 0x0c90 SensrSvc - ok 19:38:59.0110 0x0c90 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys 19:38:59.0130 0x0c90 Serenum - ok 19:38:59.0150 0x0c90 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys 19:38:59.0170 0x0c90 Serial - ok 19:38:59.0190 0x0c90 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 19:38:59.0210 0x0c90 sermouse - ok 19:38:59.0300 0x0c90 [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe 19:38:59.0330 0x0c90 ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 ) 19:39:01.0700 0x0c90 Detect skipped due to KSN trusted 19:39:01.0700 0x0c90 ServiceLayer - ok 19:39:01.0730 0x0c90 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 19:39:01.0780 0x0c90 SessionEnv - ok 19:39:01.0800 0x0c90 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 19:39:01.0820 0x0c90 sffdisk - ok 19:39:01.0840 0x0c90 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 19:39:01.0860 0x0c90 sffp_mmc - ok 19:39:01.0870 0x0c90 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 19:39:01.0890 0x0c90 sffp_sd - ok 19:39:01.0910 0x0c90 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 19:39:01.0930 0x0c90 sfloppy - ok 19:39:01.0970 0x0c90 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 19:39:02.0020 0x0c90 SharedAccess - ok 19:39:02.0060 0x0c90 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 19:39:02.0110 0x0c90 ShellHWDetection - ok 19:39:02.0120 0x0c90 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 19:39:02.0130 0x0c90 SiSRaid2 - ok 19:39:02.0150 0x0c90 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 19:39:02.0160 0x0c90 SiSRaid4 - ok 19:39:02.0180 0x0c90 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 19:39:02.0230 0x0c90 Smb - ok 19:39:02.0240 0x0c90 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 19:39:02.0260 0x0c90 SNMPTRAP - ok 19:39:02.0280 0x0c90 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 19:39:02.0290 0x0c90 spldr - ok 19:39:02.0330 0x0c90 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 19:39:02.0390 0x0c90 Spooler - ok 19:39:02.0510 0x0c90 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 19:39:02.0640 0x0c90 sppsvc - ok 19:39:02.0670 0x0c90 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 19:39:02.0710 0x0c90 sppuinotify - ok 19:39:02.0740 0x0c90 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 19:39:02.0790 0x0c90 srv - ok 19:39:02.0820 0x0c90 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 19:39:02.0850 0x0c90 srv2 - ok 19:39:02.0860 0x0c90 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 19:39:02.0880 0x0c90 srvnet - ok 19:39:02.0900 0x0c90 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 19:39:02.0940 0x0c90 SSDPSRV - ok 19:39:02.0970 0x0c90 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 19:39:03.0030 0x0c90 SstpSvc - ok 19:39:03.0080 0x0c90 [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 19:39:03.0100 0x0c90 Stereo Service - ok 19:39:03.0110 0x0c90 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 19:39:03.0120 0x0c90 stexstor - ok 19:39:03.0160 0x0c90 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 19:39:03.0200 0x0c90 stisvc - ok 19:39:03.0210 0x0c90 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 19:39:03.0220 0x0c90 swenum - ok 19:39:03.0260 0x0c90 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 19:39:03.0310 0x0c90 swprv - ok 19:39:03.0380 0x0c90 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 19:39:03.0460 0x0c90 SysMain - ok 19:39:03.0480 0x0c90 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 19:39:03.0500 0x0c90 TabletInputService - ok 19:39:03.0540 0x0c90 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 19:39:03.0590 0x0c90 TapiSrv - ok 19:39:03.0610 0x0c90 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 19:39:03.0650 0x0c90 TBS - ok 19:39:03.0740 0x0c90 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 19:39:03.0800 0x0c90 Tcpip - ok 19:39:03.0860 0x0c90 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 19:39:03.0910 0x0c90 TCPIP6 - ok 19:39:03.0940 0x0c90 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 19:39:03.0970 0x0c90 tcpipreg - ok 19:39:03.0980 0x0c90 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 19:39:04.0030 0x0c90 TDPIPE - ok 19:39:04.0040 0x0c90 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 19:39:04.0060 0x0c90 TDTCP - ok 19:39:04.0090 0x0c90 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 19:39:04.0140 0x0c90 tdx - ok 19:39:04.0160 0x0c90 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 19:39:04.0170 0x0c90 TermDD - ok 19:39:04.0220 0x0c90 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 19:39:04.0290 0x0c90 TermService - ok 19:39:04.0320 0x0c90 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 19:39:04.0340 0x0c90 Themes - ok 19:39:04.0360 0x0c90 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 19:39:04.0400 0x0c90 THREADORDER - ok 19:39:04.0420 0x0c90 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 19:39:04.0460 0x0c90 TrkWks - ok 19:39:04.0520 0x0c90 [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos C:\Windows\system32\DRIVERS\Trufos.sys 19:39:04.0540 0x0c90 Trufos - ok 19:39:04.0590 0x0c90 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 19:39:04.0640 0x0c90 TrustedInstaller - ok 19:39:04.0670 0x0c90 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 19:39:04.0690 0x0c90 tssecsrv - ok 19:39:04.0710 0x0c90 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 19:39:04.0760 0x0c90 TsUsbFlt - ok 19:39:04.0770 0x0c90 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 19:39:04.0800 0x0c90 TsUsbGD - ok 19:39:04.0820 0x0c90 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 19:39:04.0860 0x0c90 tunnel - ok 19:39:04.0870 0x0c90 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 19:39:04.0890 0x0c90 uagp35 - ok 19:39:04.0910 0x0c90 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 19:39:04.0950 0x0c90 udfs - ok 19:39:04.0980 0x0c90 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 19:39:05.0000 0x0c90 UI0Detect - ok 19:39:05.0010 0x0c90 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 19:39:05.0020 0x0c90 uliagpkx - ok 19:39:05.0040 0x0c90 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 19:39:05.0050 0x0c90 umbus - ok 19:39:05.0060 0x0c90 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 19:39:05.0090 0x0c90 UmPass - ok 19:39:05.0110 0x0c90 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 19:39:05.0155 0x0c90 upnphost - ok 19:39:05.0173 0x0c90 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\drivers\usbccgp.sys 19:39:05.0209 0x0c90 usbccgp - ok 19:39:05.0234 0x0c90 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 19:39:05.0267 0x0c90 usbcir - ok 19:39:05.0287 0x0c90 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 19:39:05.0308 0x0c90 usbehci - ok 19:39:05.0336 0x0c90 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 19:39:05.0376 0x0c90 usbhub - ok 19:39:05.0396 0x0c90 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys 19:39:05.0413 0x0c90 usbohci - ok 19:39:05.0427 0x0c90 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys 19:39:05.0442 0x0c90 usbprint - ok 19:39:05.0494 0x0c90 [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser C:\Windows\system32\DRIVERS\usbser.sys 19:39:05.0517 0x0c90 usbser - ok 19:39:05.0535 0x0c90 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 19:39:05.0593 0x0c90 USBSTOR - ok 19:39:05.0617 0x0c90 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 19:39:05.0642 0x0c90 usbuhci - ok 19:39:05.0666 0x0c90 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 19:39:05.0714 0x0c90 UxSms - ok 19:39:05.0729 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc C:\Windows\system32\lsass.exe 19:39:05.0750 0x0c90 VaultSvc - ok 19:39:05.0755 0x0c90 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 19:39:05.0767 0x0c90 vdrvroot - ok 19:39:05.0798 0x0c90 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 19:39:05.0854 0x0c90 vds - ok 19:39:05.0873 0x0c90 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 19:39:05.0888 0x0c90 vga - ok 19:39:05.0903 0x0c90 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 19:39:05.0936 0x0c90 VgaSave - ok 19:39:05.0965 0x0c90 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 19:39:05.0982 0x0c90 vhdmp - ok 19:39:06.0006 0x0c90 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 19:39:06.0018 0x0c90 viaide - ok 19:39:06.0030 0x0c90 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 19:39:06.0042 0x0c90 volmgr - ok 19:39:06.0069 0x0c90 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 19:39:06.0087 0x0c90 volmgrx - ok 19:39:06.0114 0x0c90 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 19:39:06.0134 0x0c90 volsnap - ok 19:39:06.0154 0x0c90 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 19:39:06.0170 0x0c90 vsmraid - ok 19:39:06.0240 0x0c90 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 19:39:06.0309 0x0c90 VSS - ok 19:39:06.0333 0x0c90 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 19:39:06.0347 0x0c90 vwifibus - ok 19:39:06.0373 0x0c90 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 19:39:06.0418 0x0c90 W32Time - ok 19:39:06.0441 0x0c90 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 19:39:06.0453 0x0c90 WacomPen - ok 19:39:06.0470 0x0c90 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 19:39:06.0503 0x0c90 WANARP - ok 19:39:06.0507 0x0c90 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 19:39:06.0539 0x0c90 Wanarpv6 - ok 19:39:06.0604 0x0c90 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 19:39:06.0650 0x0c90 WatAdminSvc - ok 19:39:06.0714 0x0c90 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 19:39:06.0794 0x0c90 wbengine - ok 19:39:06.0834 0x0c90 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 19:39:06.0854 0x0c90 WbioSrvc - ok 19:39:06.0874 0x0c90 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 19:39:06.0904 0x0c90 wcncsvc - ok 19:39:06.0924 0x0c90 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 19:39:06.0964 0x0c90 WcsPlugInService - ok 19:39:06.0994 0x0c90 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 19:39:07.0014 0x0c90 Wd - ok 19:39:07.0054 0x0c90 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 19:39:07.0084 0x0c90 Wdf01000 - ok 19:39:07.0114 0x0c90 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 19:39:07.0154 0x0c90 WdiServiceHost - ok 19:39:07.0154 0x0c90 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 19:39:07.0174 0x0c90 WdiSystemHost - ok 19:39:07.0194 0x0c90 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 19:39:07.0234 0x0c90 WebClient - ok 19:39:07.0255 0x0c90 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 19:39:07.0305 0x0c90 Wecsvc - ok 19:39:07.0325 0x0c90 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 19:39:07.0375 0x0c90 wercplsupport - ok 19:39:07.0395 0x0c90 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 19:39:07.0439 0x0c90 WerSvc - ok 19:39:07.0459 0x0c90 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 19:39:07.0489 0x0c90 WfpLwf - ok 19:39:07.0499 0x0c90 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 19:39:07.0509 0x0c90 WIMMount - ok 19:39:07.0529 0x0c90 WinDefend - ok 19:39:07.0539 0x0c90 WinHttpAutoProxySvc - ok 19:39:07.0609 0x0c90 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 19:39:07.0659 0x0c90 Winmgmt - ok 19:39:07.0749 0x0c90 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 19:39:07.0839 0x0c90 WinRM - ok 19:39:07.0879 0x0c90 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 19:39:07.0899 0x0c90 WinUsb - ok 19:39:07.0949 0x0c90 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 19:39:07.0999 0x0c90 Wlansvc - ok 19:39:08.0019 0x0c90 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 19:39:08.0039 0x0c90 WmiAcpi - ok 19:39:08.0089 0x0c90 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 19:39:08.0099 0x0c90 wmiApSrv - ok 19:39:08.0119 0x0c90 WMPNetworkSvc - ok 19:39:08.0139 0x0c90 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 19:39:08.0189 0x0c90 WPCSvc - ok 19:39:08.0209 0x0c90 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 19:39:08.0249 0x0c90 WPDBusEnum - ok 19:39:08.0269 0x0c90 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 19:39:08.0299 0x0c90 ws2ifsl - ok 19:39:08.0339 0x0c90 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll 19:39:08.0369 0x0c90 wscsvc - ok 19:39:08.0379 0x0c90 WSearch - ok 19:39:08.0479 0x0c90 [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv C:\Windows\system32\wuaueng.dll 19:39:08.0599 0x0c90 wuauserv - ok 19:39:08.0629 0x0c90 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 19:39:08.0669 0x0c90 WudfPf - ok 19:39:08.0689 0x0c90 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 19:39:08.0699 0x0c90 WUDFRd - ok 19:39:08.0719 0x0c90 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 19:39:08.0729 0x0c90 wudfsvc - ok 19:39:08.0759 0x0c90 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 19:39:08.0789 0x0c90 WwanSvc - ok 19:39:08.0819 0x0c90 xhunter1 - ok 19:39:08.0829 0x0c90 ================ Scan global =============================== 19:39:08.0879 0x0c90 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 19:39:08.0929 0x0c90 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:39:08.0939 0x0c90 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:39:08.0969 0x0c90 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 19:39:08.0999 0x0c90 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 19:39:09.0009 0x0c90 [ Global ] - ok 19:39:09.0009 0x0c90 ================ Scan MBR ================================== 19:39:09.0309 0x0c90 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 19:39:09.0659 0x0c90 \Device\Harddisk0\DR0 - ok 19:39:09.0669 0x0c90 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 19:39:09.0899 0x0c90 \Device\Harddisk1\DR1 - ok 19:39:09.0899 0x0c90 ================ Scan VBR ================================== 19:39:09.0909 0x0c90 [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1 19:39:09.0909 0x0c90 \Device\Harddisk0\DR0\Partition1 - ok 19:39:09.0939 0x0c90 [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2 19:39:09.0949 0x0c90 \Device\Harddisk0\DR0\Partition2 - ok 19:39:09.0949 0x0c90 [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1 19:39:09.0949 0x0c90 \Device\Harddisk1\DR1\Partition1 - ok 19:39:09.0949 0x0c90 ================ Scan generic autorun ====================== 19:39:10.0449 0x0c90 [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 19:39:10.0749 0x0c90 RtHDVCpl - ok 19:39:10.0889 0x0c90 [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe 19:39:10.0919 0x0c90 svchospt - detected UnsignedFile.Multi.Generic ( 1 ) 19:39:13.0219 0x0c90 Detect skipped due to KSN trusted 19:39:13.0219 0x0c90 svchospt - ok 19:39:13.0269 0x0c90 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 19:39:13.0289 0x0c90 SunJavaUpdateSched - ok 19:39:13.0499 0x0c90 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:39:13.0609 0x0c90 Akamai NetSession Interface - ok 19:39:13.0699 0x0c90 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe 19:39:13.0759 0x0c90 Sidebar - ok 19:39:13.0809 0x0c90 [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe 19:39:13.0829 0x0c90 BingSvc - ok 19:39:13.0829 0x0c90 Chromium - ok 19:39:13.0989 0x0c90 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:39:14.0099 0x0c90 Akamai NetSession Interface - ok 19:39:14.0099 0x0c90 Overwolf - ok 19:39:14.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:15.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:16.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:17.0359 0x0c90 Win FW state via NFP2: enabled ( trusted ) 19:39:19.0748 0x0c90 ============================================================ 19:39:19.0748 0x0c90 Scan finished 19:39:19.0748 0x0c90 ============================================================ 19:39:19.0748 0x0db8 Detected object count: 0 19:39:19.0748 0x0db8 Actual detected object count: 0 |
02.12.2016, 20:00 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes Programm Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ Logfiles bitte immer in CODE-Tags posten |
02.12.2016, 20:02 | #13 |
| unbekanntes ProgrammCode:
ATTFilter 19:33:10.0665 0x0658 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 19:33:53.0446 0x0658 ============================================================ 19:33:53.0446 0x0658 Current date / time: 2016/12/02 19:33:53.0446 19:33:53.0446 0x0658 SystemInfo: 19:33:53.0446 0x0658 19:33:53.0446 0x0658 OS Version: 6.1.7601 ServicePack: 1.0 19:33:53.0446 0x0658 Product type: Workstation 19:33:53.0446 0x0658 ComputerName: MAPLO-PC 19:33:53.0446 0x0658 UserName: maplo 19:33:53.0446 0x0658 Windows directory: C:\Windows 19:33:53.0446 0x0658 System windows directory: C:\Windows 19:33:53.0446 0x0658 Running under WOW64 19:33:53.0446 0x0658 Processor architecture: Intel x64 19:33:53.0446 0x0658 Number of processors: 4 19:33:53.0446 0x0658 Page size: 0x1000 19:33:53.0446 0x0658 Boot type: Normal boot 19:33:53.0446 0x0658 CodeIntegrityOptions = 0x00000001 19:33:53.0446 0x0658 ============================================================ 19:33:54.0712 0x0658 KLMD registered as C:\Windows\system32\drivers\89356864.sys 19:33:54.0712 0x0658 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.18839, osProperties = 0x1 19:33:54.0872 0x0658 System UUID: {415A6447-DBF0-2C12-E363-4AA23CDEB767} 19:33:55.0322 0x0658 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:33:55.0322 0x0658 Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:33:55.0332 0x0658 ============================================================ 19:33:55.0332 0x0658 \Device\Harddisk0\DR0: 19:33:55.0332 0x0658 MBR partitions: 19:33:55.0332 0x0658 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 19:33:55.0332 0x0658 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000 19:33:55.0332 0x0658 \Device\Harddisk1\DR1: 19:33:55.0332 0x0658 MBR partitions: 19:33:55.0332 0x0658 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xC45800, BlocksNum 0x88C9800 19:33:55.0332 0x0658 ============================================================ 19:33:55.0362 0x0658 C: <-> \Device\Harddisk1\DR1\Partition1 19:33:55.0372 0x0658 E: <-> \Device\Harddisk0\DR0\Partition1 19:33:55.0702 0x0658 F: <-> \Device\Harddisk0\DR0\Partition2 19:33:55.0702 0x0658 ============================================================ 19:33:55.0702 0x0658 Initialize success 19:33:55.0702 0x0658 ============================================================ 19:38:22.0843 0x0c90 ============================================================ 19:38:22.0843 0x0c90 Scan started 19:38:22.0843 0x0c90 Mode: Manual; SigCheck; TDLFS; 19:38:22.0843 0x0c90 ============================================================ 19:38:22.0843 0x0c90 KSN ping started 19:38:36.0222 0x0c90 KSN ping finished: true 19:38:37.0435 0x0c90 ================ Scan system memory ======================== 19:38:37.0435 0x0c90 System memory - ok 19:38:37.0435 0x0c90 ================ Scan services ============================= 19:38:37.0555 0x0c90 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 19:38:37.0901 0x0c90 1394ohci - ok 19:38:37.0943 0x0c90 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 19:38:37.0964 0x0c90 ACPI - ok 19:38:37.0983 0x0c90 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 19:38:38.0149 0x0c90 AcpiPmi - ok 19:38:38.0267 0x0c90 [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 19:38:38.0282 0x0c90 AdobeFlashPlayerUpdateSvc - ok 19:38:38.0321 0x0c90 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 19:38:38.0345 0x0c90 adp94xx - ok 19:38:38.0372 0x0c90 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 19:38:38.0392 0x0c90 adpahci - ok 19:38:38.0422 0x0c90 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 19:38:38.0432 0x0c90 adpu320 - ok 19:38:38.0462 0x0c90 [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 19:38:38.0522 0x0c90 AeLookupSvc - ok 19:38:38.0562 0x0c90 [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe 19:38:38.0572 0x0c90 AERTFilters - ok 19:38:38.0612 0x0c90 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys 19:38:38.0662 0x0c90 AFD - ok 19:38:38.0682 0x0c90 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 19:38:38.0692 0x0c90 agp440 - ok 19:38:38.0712 0x0c90 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 19:38:38.0772 0x0c90 ALG - ok 19:38:38.0792 0x0c90 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 19:38:38.0802 0x0c90 aliide - ok 19:38:38.0812 0x0c90 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 19:38:38.0822 0x0c90 amdide - ok 19:38:38.0842 0x0c90 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 19:38:38.0862 0x0c90 AmdK8 - ok 19:38:38.0882 0x0c90 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 19:38:38.0892 0x0c90 AmdPPM - ok 19:38:38.0923 0x0c90 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 19:38:38.0933 0x0c90 amdsata - ok 19:38:38.0963 0x0c90 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 19:38:38.0973 0x0c90 amdsbs - ok 19:38:38.0993 0x0c90 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 19:38:39.0003 0x0c90 amdxata - ok 19:38:39.0033 0x0c90 [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID C:\Windows\system32\drivers\appid.sys 19:38:39.0094 0x0c90 AppID - ok 19:38:39.0124 0x0c90 [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc C:\Windows\System32\appidsvc.dll 19:38:39.0144 0x0c90 AppIDSvc - ok 19:38:39.0164 0x0c90 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 19:38:39.0234 0x0c90 Appinfo - ok 19:38:39.0284 0x0c90 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 19:38:39.0294 0x0c90 arc - ok 19:38:39.0324 0x0c90 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 19:38:39.0334 0x0c90 arcsas - ok 19:38:39.0434 0x0c90 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 19:38:39.0484 0x0c90 aspnet_state - ok 19:38:39.0534 0x0c90 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 19:38:39.0644 0x0c90 AsyncMac - ok 19:38:39.0674 0x0c90 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 19:38:39.0684 0x0c90 atapi - ok 19:38:39.0754 0x0c90 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 19:38:39.0794 0x0c90 AudioEndpointBuilder - ok 19:38:39.0814 0x0c90 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 19:38:39.0844 0x0c90 AudioSrv - ok 19:38:39.0864 0x0c90 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 19:38:39.0924 0x0c90 AxInstSV - ok 19:38:39.0964 0x0c90 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 19:38:40.0014 0x0c90 b06bdrv - ok 19:38:40.0044 0x0c90 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 19:38:40.0064 0x0c90 b57nd60a - ok 19:38:40.0084 0x0c90 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 19:38:40.0134 0x0c90 BDESVC - ok 19:38:40.0164 0x0c90 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 19:38:40.0214 0x0c90 Beep - ok 19:38:40.0244 0x0c90 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 19:38:40.0324 0x0c90 BFE - ok 19:38:40.0414 0x0c90 [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM C:\Program Files\BDServices\BitDefenderCom.exe 19:38:40.0464 0x0c90 BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 ) 19:38:42.0774 0x0c90 Detect skipped due to KSN trusted 19:38:42.0774 0x0c90 BitDefenderCOM - ok 19:38:42.0824 0x0c90 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 19:38:42.0954 0x0c90 BITS - ok 19:38:42.0984 0x0c90 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys 19:38:43.0004 0x0c90 blbdrive - ok 19:38:43.0024 0x0c90 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 19:38:43.0084 0x0c90 bowser - ok 19:38:43.0104 0x0c90 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 19:38:43.0124 0x0c90 BrFiltLo - ok 19:38:43.0144 0x0c90 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 19:38:43.0164 0x0c90 BrFiltUp - ok 19:38:43.0214 0x0c90 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 19:38:43.0264 0x0c90 BridgeMP - ok 19:38:43.0284 0x0c90 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 19:38:43.0324 0x0c90 Browser - ok 19:38:43.0364 0x0c90 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 19:38:43.0424 0x0c90 Brserid - ok 19:38:43.0444 0x0c90 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 19:38:43.0464 0x0c90 BrSerWdm - ok 19:38:43.0474 0x0c90 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 19:38:43.0504 0x0c90 BrUsbMdm - ok 19:38:43.0524 0x0c90 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 19:38:43.0534 0x0c90 BrUsbSer - ok 19:38:43.0554 0x0c90 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 19:38:43.0574 0x0c90 BTHMODEM - ok 19:38:43.0604 0x0c90 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 19:38:43.0644 0x0c90 bthserv - ok 19:38:43.0654 0x0c90 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 19:38:43.0704 0x0c90 cdfs - ok 19:38:43.0724 0x0c90 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 19:38:43.0744 0x0c90 cdrom - ok 19:38:43.0754 0x0c90 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 19:38:43.0804 0x0c90 CertPropSvc - ok 19:38:43.0814 0x0c90 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 19:38:43.0834 0x0c90 circlass - ok 19:38:43.0884 0x0c90 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 19:38:43.0904 0x0c90 CLFS - ok 19:38:43.0934 0x0c90 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 19:38:43.0944 0x0c90 clr_optimization_v2.0.50727_32 - ok 19:38:43.0994 0x0c90 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 19:38:44.0004 0x0c90 clr_optimization_v2.0.50727_64 - ok 19:38:44.0074 0x0c90 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 19:38:44.0084 0x0c90 clr_optimization_v4.0.30319_32 - ok 19:38:44.0104 0x0c90 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 19:38:44.0194 0x0c90 clr_optimization_v4.0.30319_64 - ok 19:38:44.0204 0x0c90 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 19:38:44.0234 0x0c90 CmBatt - ok 19:38:44.0244 0x0c90 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 19:38:44.0254 0x0c90 cmdide - ok 19:38:44.0294 0x0c90 [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\Windows\system32\Drivers\cng.sys 19:38:44.0344 0x0c90 CNG - ok 19:38:44.0374 0x0c90 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 19:38:44.0384 0x0c90 Compbatt - ok 19:38:44.0404 0x0c90 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 19:38:44.0434 0x0c90 CompositeBus - ok 19:38:44.0444 0x0c90 COMSysApp - ok 19:38:44.0514 0x0c90 cpuz132 - ok 19:38:44.0534 0x0c90 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 19:38:44.0544 0x0c90 crcdisk - ok 19:38:44.0584 0x0c90 [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc C:\Windows\system32\cryptsvc.dll 19:38:44.0644 0x0c90 CryptSvc - ok 19:38:44.0684 0x0c90 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 19:38:44.0734 0x0c90 DcomLaunch - ok 19:38:44.0764 0x0c90 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 19:38:44.0814 0x0c90 defragsvc - ok 19:38:44.0834 0x0c90 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 19:38:44.0884 0x0c90 DfsC - ok 19:38:44.0904 0x0c90 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 19:38:44.0954 0x0c90 Dhcp - ok 19:38:45.0044 0x0c90 [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack C:\Windows\system32\diagtrack.dll 19:38:45.0114 0x0c90 DiagTrack - ok 19:38:45.0134 0x0c90 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 19:38:45.0174 0x0c90 discache - ok 19:38:45.0184 0x0c90 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 19:38:45.0204 0x0c90 Disk - ok 19:38:45.0234 0x0c90 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 19:38:45.0274 0x0c90 Dnscache - ok 19:38:45.0294 0x0c90 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 19:38:45.0344 0x0c90 dot3svc - ok 19:38:45.0364 0x0c90 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 19:38:45.0414 0x0c90 DPS - ok 19:38:45.0424 0x0c90 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 19:38:45.0474 0x0c90 drmkaud - ok 19:38:45.0484 0x0c90 dtmelqbg - ok 19:38:45.0534 0x0c90 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 19:38:45.0574 0x0c90 DXGKrnl - ok 19:38:45.0594 0x0c90 [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress C:\Windows\system32\DRIVERS\e1k60x64.sys 19:38:45.0614 0x0c90 e1kexpress - ok 19:38:45.0624 0x0c90 EagleX64 - ok 19:38:45.0654 0x0c90 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 19:38:45.0684 0x0c90 EapHost - ok 19:38:45.0824 0x0c90 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 19:38:45.0924 0x0c90 ebdrv - ok 19:38:45.0964 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS C:\Windows\System32\lsass.exe 19:38:46.0004 0x0c90 EFS - ok 19:38:46.0064 0x0c90 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 19:38:46.0144 0x0c90 ehRecvr - ok 19:38:46.0174 0x0c90 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 19:38:46.0194 0x0c90 ehSched - ok 19:38:46.0224 0x0c90 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 19:38:46.0254 0x0c90 elxstor - ok 19:38:46.0284 0x0c90 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 19:38:46.0314 0x0c90 ErrDev - ok 19:38:46.0354 0x0c90 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 19:38:46.0404 0x0c90 EventSystem - ok 19:38:46.0414 0x0c90 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 19:38:46.0464 0x0c90 exfat - ok 19:38:46.0484 0x0c90 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 19:38:46.0534 0x0c90 fastfat - ok 19:38:46.0574 0x0c90 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 19:38:46.0644 0x0c90 Fax - ok 19:38:46.0664 0x0c90 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 19:38:46.0684 0x0c90 fdc - ok 19:38:46.0704 0x0c90 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 19:38:46.0744 0x0c90 fdPHost - ok 19:38:46.0764 0x0c90 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 19:38:46.0794 0x0c90 FDResPub - ok 19:38:46.0824 0x0c90 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 19:38:46.0834 0x0c90 FileInfo - ok 19:38:46.0854 0x0c90 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 19:38:46.0894 0x0c90 Filetrace - ok 19:38:46.0914 0x0c90 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 19:38:46.0934 0x0c90 flpydisk - ok 19:38:46.0964 0x0c90 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 19:38:46.0974 0x0c90 FltMgr - ok 19:38:47.0044 0x0c90 [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache C:\Windows\system32\FntCache.dll 19:38:47.0104 0x0c90 FontCache - ok 19:38:47.0144 0x0c90 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 19:38:47.0154 0x0c90 FontCache3.0.0.0 - ok 19:38:47.0174 0x0c90 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 19:38:47.0194 0x0c90 FsDepends - ok 19:38:47.0204 0x0c90 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 19:38:47.0214 0x0c90 Fs_Rec - ok 19:38:47.0244 0x0c90 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 19:38:47.0264 0x0c90 fvevol - ok 19:38:47.0274 0x0c90 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 19:38:47.0294 0x0c90 gagp30kx - ok 19:38:47.0334 0x0c90 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 19:38:47.0394 0x0c90 gpsvc - ok 19:38:47.0504 0x0c90 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:38:47.0514 0x0c90 gupdate - ok 19:38:47.0524 0x0c90 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:38:47.0534 0x0c90 gupdatem - ok 19:38:47.0564 0x0c90 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 19:38:47.0634 0x0c90 hcw85cir - ok 19:38:47.0664 0x0c90 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 19:38:47.0704 0x0c90 HdAudAddService - ok 19:38:47.0724 0x0c90 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 19:38:47.0784 0x0c90 HDAudBus - ok 19:38:47.0824 0x0c90 [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64 C:\Windows\system32\drivers\HECIx64.sys 19:38:47.0864 0x0c90 HECIx64 - ok 19:38:47.0884 0x0c90 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 19:38:47.0894 0x0c90 HidBatt - ok 19:38:47.0924 0x0c90 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 19:38:47.0944 0x0c90 HidBth - ok 19:38:47.0974 0x0c90 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 19:38:47.0994 0x0c90 HidIr - ok 19:38:48.0014 0x0c90 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll 19:38:48.0054 0x0c90 hidserv - ok 19:38:48.0074 0x0c90 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 19:38:48.0124 0x0c90 HidUsb - ok 19:38:48.0144 0x0c90 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 19:38:48.0184 0x0c90 hkmsvc - ok 19:38:48.0204 0x0c90 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 19:38:48.0264 0x0c90 HomeGroupListener - ok 19:38:48.0294 0x0c90 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 19:38:48.0314 0x0c90 HomeGroupProvider - ok 19:38:48.0324 0x0c90 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 19:38:48.0334 0x0c90 HpSAMD - ok 19:38:48.0384 0x0c90 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 19:38:48.0444 0x0c90 HTTP - ok 19:38:48.0464 0x0c90 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 19:38:48.0474 0x0c90 hwpolicy - ok 19:38:48.0504 0x0c90 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 19:38:48.0514 0x0c90 i8042prt - ok 19:38:48.0564 0x0c90 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 19:38:48.0584 0x0c90 iaStorV - ok 19:38:48.0656 0x0c90 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 19:38:48.0692 0x0c90 idsvc - ok 19:38:48.0698 0x0c90 IEEtwCollectorService - ok 19:38:48.0925 0x0c90 [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 19:38:49.0178 0x0c90 igfx - ok 19:38:49.0218 0x0c90 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 19:38:49.0228 0x0c90 iirsp - ok 19:38:49.0278 0x0c90 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 19:38:49.0308 0x0c90 IKEEXT - ok 19:38:49.0468 0x0c90 [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 19:38:49.0588 0x0c90 IntcAzAudAddService - ok 19:38:49.0622 0x0c90 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 19:38:49.0633 0x0c90 intelide - ok 19:38:49.0659 0x0c90 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys 19:38:49.0672 0x0c90 intelppm - ok 19:38:49.0697 0x0c90 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 19:38:49.0738 0x0c90 IPBusEnum - ok 19:38:49.0757 0x0c90 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 19:38:49.0801 0x0c90 IpFilterDriver - ok 19:38:49.0839 0x0c90 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 19:38:49.0895 0x0c90 iphlpsvc - ok 19:38:49.0905 0x0c90 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 19:38:49.0927 0x0c90 IPMIDRV - ok 19:38:49.0955 0x0c90 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 19:38:49.0998 0x0c90 IPNAT - ok 19:38:50.0020 0x0c90 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 19:38:50.0045 0x0c90 IRENUM - ok 19:38:50.0060 0x0c90 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 19:38:50.0071 0x0c90 isapnp - ok 19:38:50.0099 0x0c90 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 19:38:50.0116 0x0c90 iScsiPrt - ok 19:38:50.0128 0x0c90 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 19:38:50.0138 0x0c90 kbdclass - ok 19:38:50.0158 0x0c90 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 19:38:50.0178 0x0c90 kbdhid - ok 19:38:50.0198 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso C:\Windows\system32\lsass.exe 19:38:50.0208 0x0c90 KeyIso - ok 19:38:50.0248 0x0c90 [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 19:38:50.0258 0x0c90 KSecDD - ok 19:38:50.0278 0x0c90 [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 19:38:50.0288 0x0c90 KSecPkg - ok 19:38:50.0318 0x0c90 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 19:38:50.0348 0x0c90 ksthunk - ok 19:38:50.0378 0x0c90 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 19:38:50.0428 0x0c90 KtmRm - ok 19:38:50.0458 0x0c90 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll 19:38:50.0508 0x0c90 LanmanServer - ok 19:38:50.0528 0x0c90 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 19:38:50.0578 0x0c90 LanmanWorkstation - ok 19:38:50.0598 0x0c90 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 19:38:50.0628 0x0c90 lltdio - ok 19:38:50.0668 0x0c90 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 19:38:50.0708 0x0c90 lltdsvc - ok 19:38:50.0728 0x0c90 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 19:38:50.0778 0x0c90 lmhosts - ok 19:38:50.0798 0x0c90 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 19:38:50.0818 0x0c90 LSI_FC - ok 19:38:50.0828 0x0c90 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 19:38:50.0838 0x0c90 LSI_SAS - ok 19:38:50.0848 0x0c90 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 19:38:50.0858 0x0c90 LSI_SAS2 - ok 19:38:50.0898 0x0c90 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 19:38:50.0908 0x0c90 LSI_SCSI - ok 19:38:50.0938 0x0c90 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 19:38:50.0978 0x0c90 luafv - ok 19:38:50.0998 0x0c90 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 19:38:51.0008 0x0c90 Mcx2Svc - ok 19:38:51.0018 0x0c90 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 19:38:51.0038 0x0c90 megasas - ok 19:38:51.0058 0x0c90 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 19:38:51.0078 0x0c90 MegaSR - ok 19:38:51.0108 0x0c90 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 19:38:51.0148 0x0c90 MMCSS - ok 19:38:51.0158 0x0c90 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 19:38:51.0198 0x0c90 Modem - ok 19:38:51.0208 0x0c90 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 19:38:51.0228 0x0c90 monitor - ok 19:38:51.0248 0x0c90 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 19:38:51.0258 0x0c90 mouclass - ok 19:38:51.0268 0x0c90 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 19:38:51.0278 0x0c90 mouhid - ok 19:38:51.0318 0x0c90 [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 19:38:51.0338 0x0c90 mountmgr - ok 19:38:51.0368 0x0c90 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 19:38:51.0378 0x0c90 mpio - ok 19:38:51.0398 0x0c90 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 19:38:51.0428 0x0c90 mpsdrv - ok 19:38:51.0478 0x0c90 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 19:38:51.0538 0x0c90 MpsSvc - ok 19:38:51.0568 0x0c90 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 19:38:51.0628 0x0c90 MRxDAV - ok 19:38:51.0648 0x0c90 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 19:38:51.0688 0x0c90 mrxsmb - ok 19:38:51.0728 0x0c90 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 19:38:51.0758 0x0c90 mrxsmb10 - ok 19:38:51.0768 0x0c90 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 19:38:51.0788 0x0c90 mrxsmb20 - ok 19:38:51.0798 0x0c90 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 19:38:51.0808 0x0c90 msahci - ok 19:38:51.0828 0x0c90 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 19:38:51.0848 0x0c90 msdsm - ok 19:38:51.0858 0x0c90 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 19:38:51.0888 0x0c90 MSDTC - ok 19:38:51.0918 0x0c90 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 19:38:51.0958 0x0c90 Msfs - ok 19:38:51.0968 0x0c90 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 19:38:52.0008 0x0c90 mshidkmdf - ok 19:38:52.0028 0x0c90 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 19:38:52.0038 0x0c90 msisadrv - ok 19:38:52.0058 0x0c90 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 19:38:52.0108 0x0c90 MSiSCSI - ok 19:38:52.0108 0x0c90 msiserver - ok 19:38:52.0118 0x0c90 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 19:38:52.0158 0x0c90 MSKSSRV - ok 19:38:52.0168 0x0c90 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 19:38:52.0208 0x0c90 MSPCLOCK - ok 19:38:52.0218 0x0c90 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 19:38:52.0248 0x0c90 MSPQM - ok 19:38:52.0278 0x0c90 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 19:38:52.0298 0x0c90 MsRPC - ok 19:38:52.0318 0x0c90 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 19:38:52.0328 0x0c90 mssmbios - ok 19:38:52.0338 0x0c90 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 19:38:52.0378 0x0c90 MSTEE - ok 19:38:52.0398 0x0c90 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 19:38:52.0418 0x0c90 MTConfig - ok 19:38:52.0448 0x0c90 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 19:38:52.0458 0x0c90 Mup - ok 19:38:52.0498 0x0c90 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 19:38:52.0538 0x0c90 napagent - ok 19:38:52.0578 0x0c90 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 19:38:52.0608 0x0c90 NativeWifiP - ok 19:38:52.0648 0x0c90 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 19:38:52.0678 0x0c90 NDIS - ok 19:38:52.0698 0x0c90 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 19:38:52.0738 0x0c90 NdisCap - ok 19:38:52.0768 0x0c90 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 19:38:52.0808 0x0c90 NdisTapi - ok 19:38:52.0818 0x0c90 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 19:38:52.0858 0x0c90 Ndisuio - ok 19:38:52.0868 0x0c90 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 19:38:52.0918 0x0c90 NdisWan - ok 19:38:52.0928 0x0c90 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 19:38:52.0978 0x0c90 NDProxy - ok 19:38:52.0998 0x0c90 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 19:38:53.0038 0x0c90 NetBIOS - ok 19:38:53.0068 0x0c90 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 19:38:53.0108 0x0c90 NetBT - ok 19:38:53.0128 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon C:\Windows\system32\lsass.exe 19:38:53.0138 0x0c90 Netlogon - ok 19:38:53.0168 0x0c90 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 19:38:53.0218 0x0c90 Netman - ok 19:38:53.0278 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0288 0x0c90 NetMsmqActivator - ok 19:38:53.0308 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0328 0x0c90 NetPipeActivator - ok 19:38:53.0348 0x0c90 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 19:38:53.0398 0x0c90 netprofm - ok 19:38:53.0418 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0428 0x0c90 NetTcpActivator - ok 19:38:53.0438 0x0c90 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:38:53.0448 0x0c90 NetTcpPortSharing - ok 19:38:53.0478 0x0c90 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 19:38:53.0488 0x0c90 nfrd960 - ok 19:38:53.0518 0x0c90 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 19:38:53.0588 0x0c90 NlaSvc - ok 19:38:53.0618 0x0c90 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 19:38:53.0648 0x0c90 Npfs - ok 19:38:53.0648 0x0c90 npggsvc - ok 19:38:53.0668 0x0c90 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 19:38:53.0718 0x0c90 nsi - ok 19:38:53.0728 0x0c90 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 19:38:53.0768 0x0c90 nsiproxy - ok 19:38:53.0848 0x0c90 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 19:38:53.0908 0x0c90 Ntfs - ok 19:38:53.0938 0x0c90 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 19:38:53.0980 0x0c90 Null - ok 19:38:54.0000 0x0c90 [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 19:38:54.0020 0x0c90 NVHDA - ok 19:38:54.0400 0x0c90 [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 19:38:54.0820 0x0c90 nvlddmkm - ok 19:38:54.0870 0x0c90 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 19:38:54.0880 0x0c90 nvraid - ok 19:38:54.0900 0x0c90 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 19:38:54.0910 0x0c90 nvstor - ok 19:38:54.0970 0x0c90 [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc C:\Windows\system32\nvvsvc.exe 19:38:55.0000 0x0c90 nvsvc - ok 19:38:55.0090 0x0c90 [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 19:38:55.0120 0x0c90 nvUpdatusService - ok 19:38:55.0150 0x0c90 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 19:38:55.0160 0x0c90 nv_agp - ok 19:38:55.0190 0x0c90 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 19:38:55.0210 0x0c90 ohci1394 - ok 19:38:55.0230 0x0c90 onotlzbb - ok 19:38:55.0240 0x0c90 oshnyfcv - ok 19:38:55.0280 0x0c90 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 19:38:55.0340 0x0c90 p2pimsvc - ok 19:38:55.0370 0x0c90 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 19:38:55.0400 0x0c90 p2psvc - ok 19:38:55.0430 0x0c90 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 19:38:55.0460 0x0c90 Parport - ok 19:38:55.0470 0x0c90 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 19:38:55.0490 0x0c90 partmgr - ok 19:38:55.0530 0x0c90 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 19:38:55.0590 0x0c90 PcaSvc - ok 19:38:55.0660 0x0c90 [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys 19:38:55.0700 0x0c90 pccsmcfd - ok 19:38:55.0710 0x0c90 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 19:38:55.0730 0x0c90 pci - ok 19:38:55.0750 0x0c90 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 19:38:55.0760 0x0c90 pciide - ok 19:38:55.0790 0x0c90 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 19:38:55.0810 0x0c90 pcmcia - ok 19:38:55.0840 0x0c90 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 19:38:55.0850 0x0c90 pcw - ok 19:38:55.0910 0x0c90 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 19:38:55.0950 0x0c90 PEAUTH - ok 19:38:56.0030 0x0c90 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 19:38:56.0040 0x0c90 PerfHost - ok 19:38:56.0120 0x0c90 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 19:38:56.0190 0x0c90 pla - ok 19:38:56.0240 0x0c90 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 19:38:56.0300 0x0c90 PlugPlay - ok 19:38:56.0310 0x0c90 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 19:38:56.0330 0x0c90 PNRPAutoReg - ok 19:38:56.0350 0x0c90 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 19:38:56.0380 0x0c90 PNRPsvc - ok 19:38:56.0430 0x0c90 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 19:38:56.0490 0x0c90 PolicyAgent - ok 19:38:56.0520 0x0c90 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 19:38:56.0570 0x0c90 Power - ok 19:38:56.0590 0x0c90 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 19:38:56.0620 0x0c90 PptpMiniport - ok 19:38:56.0640 0x0c90 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 19:38:56.0670 0x0c90 Processor - ok 19:38:56.0700 0x0c90 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 19:38:56.0760 0x0c90 ProfSvc - ok 19:38:56.0770 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe 19:38:56.0790 0x0c90 ProtectedStorage - ok 19:38:56.0800 0x0c90 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 19:38:56.0840 0x0c90 Psched - ok 19:38:56.0910 0x0c90 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 19:38:56.0960 0x0c90 ql2300 - ok 19:38:56.0980 0x0c90 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 19:38:57.0000 0x0c90 ql40xx - ok 19:38:57.0030 0x0c90 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 19:38:57.0050 0x0c90 QWAVE - ok 19:38:57.0070 0x0c90 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 19:38:57.0100 0x0c90 QWAVEdrv - ok 19:38:57.0120 0x0c90 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 19:38:57.0160 0x0c90 RasAcd - ok 19:38:57.0180 0x0c90 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 19:38:57.0210 0x0c90 RasAgileVpn - ok 19:38:57.0230 0x0c90 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 19:38:57.0270 0x0c90 RasAuto - ok 19:38:57.0290 0x0c90 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 19:38:57.0320 0x0c90 Rasl2tp - ok 19:38:57.0360 0x0c90 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 19:38:57.0410 0x0c90 RasMan - ok 19:38:57.0430 0x0c90 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 19:38:57.0480 0x0c90 RasPppoe - ok 19:38:57.0490 0x0c90 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 19:38:57.0540 0x0c90 RasSstp - ok 19:38:57.0560 0x0c90 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 19:38:57.0600 0x0c90 rdbss - ok 19:38:57.0630 0x0c90 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys 19:38:57.0650 0x0c90 rdpbus - ok 19:38:57.0670 0x0c90 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 19:38:57.0700 0x0c90 RDPCDD - ok 19:38:57.0740 0x0c90 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 19:38:57.0770 0x0c90 RDPENCDD - ok 19:38:57.0790 0x0c90 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 19:38:57.0820 0x0c90 RDPREFMP - ok 19:38:57.0860 0x0c90 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 19:38:57.0900 0x0c90 RDPWD - ok 19:38:57.0930 0x0c90 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 19:38:57.0940 0x0c90 rdyboost - ok 19:38:57.0970 0x0c90 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 19:38:58.0010 0x0c90 RemoteAccess - ok 19:38:58.0040 0x0c90 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 19:38:58.0090 0x0c90 RemoteRegistry - ok 19:38:58.0100 0x0c90 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 19:38:58.0150 0x0c90 RpcEptMapper - ok 19:38:58.0170 0x0c90 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 19:38:58.0190 0x0c90 RpcLocator - ok 19:38:58.0220 0x0c90 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 19:38:58.0260 0x0c90 RpcSs - ok 19:38:58.0290 0x0c90 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 19:38:58.0320 0x0c90 rspndr - ok 19:38:58.0370 0x0c90 [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 19:38:58.0390 0x0c90 RTL8167 - ok 19:38:58.0400 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs C:\Windows\system32\lsass.exe 19:38:58.0410 0x0c90 SamSs - ok 19:38:58.0430 0x0c90 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 19:38:58.0440 0x0c90 sbp2port - ok 19:38:58.0470 0x0c90 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 19:38:58.0510 0x0c90 SCardSvr - ok 19:38:58.0540 0x0c90 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 19:38:58.0580 0x0c90 scfilter - ok 19:38:58.0630 0x0c90 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 19:38:58.0690 0x0c90 Schedule - ok 19:38:58.0720 0x0c90 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 19:38:58.0760 0x0c90 SCPolicySvc - ok 19:38:58.0780 0x0c90 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 19:38:58.0830 0x0c90 SDRSVC - ok 19:38:58.0850 0x0c90 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 19:38:58.0890 0x0c90 secdrv - ok 19:38:58.0910 0x0c90 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 19:38:58.0950 0x0c90 seclogon - ok 19:38:58.0960 0x0c90 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 19:38:59.0010 0x0c90 SENS - ok 19:38:59.0030 0x0c90 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 19:38:59.0080 0x0c90 SensrSvc - ok 19:38:59.0110 0x0c90 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys 19:38:59.0130 0x0c90 Serenum - ok 19:38:59.0150 0x0c90 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys 19:38:59.0170 0x0c90 Serial - ok 19:38:59.0190 0x0c90 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 19:38:59.0210 0x0c90 sermouse - ok 19:38:59.0300 0x0c90 [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe 19:38:59.0330 0x0c90 ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 ) 19:39:01.0700 0x0c90 Detect skipped due to KSN trusted 19:39:01.0700 0x0c90 ServiceLayer - ok 19:39:01.0730 0x0c90 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 19:39:01.0780 0x0c90 SessionEnv - ok 19:39:01.0800 0x0c90 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 19:39:01.0820 0x0c90 sffdisk - ok 19:39:01.0840 0x0c90 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 19:39:01.0860 0x0c90 sffp_mmc - ok 19:39:01.0870 0x0c90 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 19:39:01.0890 0x0c90 sffp_sd - ok 19:39:01.0910 0x0c90 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 19:39:01.0930 0x0c90 sfloppy - ok 19:39:01.0970 0x0c90 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 19:39:02.0020 0x0c90 SharedAccess - ok 19:39:02.0060 0x0c90 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 19:39:02.0110 0x0c90 ShellHWDetection - ok 19:39:02.0120 0x0c90 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 19:39:02.0130 0x0c90 SiSRaid2 - ok 19:39:02.0150 0x0c90 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 19:39:02.0160 0x0c90 SiSRaid4 - ok 19:39:02.0180 0x0c90 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 19:39:02.0230 0x0c90 Smb - ok 19:39:02.0240 0x0c90 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 19:39:02.0260 0x0c90 SNMPTRAP - ok 19:39:02.0280 0x0c90 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 19:39:02.0290 0x0c90 spldr - ok 19:39:02.0330 0x0c90 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 19:39:02.0390 0x0c90 Spooler - ok 19:39:02.0510 0x0c90 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 19:39:02.0640 0x0c90 sppsvc - ok 19:39:02.0670 0x0c90 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 19:39:02.0710 0x0c90 sppuinotify - ok 19:39:02.0740 0x0c90 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 19:39:02.0790 0x0c90 srv - ok 19:39:02.0820 0x0c90 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 19:39:02.0850 0x0c90 srv2 - ok 19:39:02.0860 0x0c90 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 19:39:02.0880 0x0c90 srvnet - ok 19:39:02.0900 0x0c90 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 19:39:02.0940 0x0c90 SSDPSRV - ok 19:39:02.0970 0x0c90 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 19:39:03.0030 0x0c90 SstpSvc - ok 19:39:03.0080 0x0c90 [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 19:39:03.0100 0x0c90 Stereo Service - ok 19:39:03.0110 0x0c90 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 19:39:03.0120 0x0c90 stexstor - ok 19:39:03.0160 0x0c90 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 19:39:03.0200 0x0c90 stisvc - ok 19:39:03.0210 0x0c90 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 19:39:03.0220 0x0c90 swenum - ok 19:39:03.0260 0x0c90 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 19:39:03.0310 0x0c90 swprv - ok 19:39:03.0380 0x0c90 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 19:39:03.0460 0x0c90 SysMain - ok 19:39:03.0480 0x0c90 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 19:39:03.0500 0x0c90 TabletInputService - ok 19:39:03.0540 0x0c90 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 19:39:03.0590 0x0c90 TapiSrv - ok 19:39:03.0610 0x0c90 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 19:39:03.0650 0x0c90 TBS - ok 19:39:03.0740 0x0c90 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 19:39:03.0800 0x0c90 Tcpip - ok 19:39:03.0860 0x0c90 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 19:39:03.0910 0x0c90 TCPIP6 - ok 19:39:03.0940 0x0c90 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 19:39:03.0970 0x0c90 tcpipreg - ok 19:39:03.0980 0x0c90 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 19:39:04.0030 0x0c90 TDPIPE - ok 19:39:04.0040 0x0c90 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 19:39:04.0060 0x0c90 TDTCP - ok 19:39:04.0090 0x0c90 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 19:39:04.0140 0x0c90 tdx - ok 19:39:04.0160 0x0c90 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 19:39:04.0170 0x0c90 TermDD - ok 19:39:04.0220 0x0c90 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 19:39:04.0290 0x0c90 TermService - ok 19:39:04.0320 0x0c90 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 19:39:04.0340 0x0c90 Themes - ok 19:39:04.0360 0x0c90 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 19:39:04.0400 0x0c90 THREADORDER - ok 19:39:04.0420 0x0c90 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 19:39:04.0460 0x0c90 TrkWks - ok 19:39:04.0520 0x0c90 [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos C:\Windows\system32\DRIVERS\Trufos.sys 19:39:04.0540 0x0c90 Trufos - ok 19:39:04.0590 0x0c90 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 19:39:04.0640 0x0c90 TrustedInstaller - ok 19:39:04.0670 0x0c90 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 19:39:04.0690 0x0c90 tssecsrv - ok 19:39:04.0710 0x0c90 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 19:39:04.0760 0x0c90 TsUsbFlt - ok 19:39:04.0770 0x0c90 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 19:39:04.0800 0x0c90 TsUsbGD - ok 19:39:04.0820 0x0c90 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 19:39:04.0860 0x0c90 tunnel - ok 19:39:04.0870 0x0c90 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 19:39:04.0890 0x0c90 uagp35 - ok 19:39:04.0910 0x0c90 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 19:39:04.0950 0x0c90 udfs - ok 19:39:04.0980 0x0c90 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 19:39:05.0000 0x0c90 UI0Detect - ok 19:39:05.0010 0x0c90 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 19:39:05.0020 0x0c90 uliagpkx - ok 19:39:05.0040 0x0c90 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 19:39:05.0050 0x0c90 umbus - ok 19:39:05.0060 0x0c90 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 19:39:05.0090 0x0c90 UmPass - ok 19:39:05.0110 0x0c90 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 19:39:05.0155 0x0c90 upnphost - ok 19:39:05.0173 0x0c90 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\drivers\usbccgp.sys 19:39:05.0209 0x0c90 usbccgp - ok 19:39:05.0234 0x0c90 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 19:39:05.0267 0x0c90 usbcir - ok 19:39:05.0287 0x0c90 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 19:39:05.0308 0x0c90 usbehci - ok 19:39:05.0336 0x0c90 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 19:39:05.0376 0x0c90 usbhub - ok 19:39:05.0396 0x0c90 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys 19:39:05.0413 0x0c90 usbohci - ok 19:39:05.0427 0x0c90 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys 19:39:05.0442 0x0c90 usbprint - ok 19:39:05.0494 0x0c90 [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser C:\Windows\system32\DRIVERS\usbser.sys 19:39:05.0517 0x0c90 usbser - ok 19:39:05.0535 0x0c90 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 19:39:05.0593 0x0c90 USBSTOR - ok 19:39:05.0617 0x0c90 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 19:39:05.0642 0x0c90 usbuhci - ok 19:39:05.0666 0x0c90 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 19:39:05.0714 0x0c90 UxSms - ok 19:39:05.0729 0x0c90 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc C:\Windows\system32\lsass.exe 19:39:05.0750 0x0c90 VaultSvc - ok 19:39:05.0755 0x0c90 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 19:39:05.0767 0x0c90 vdrvroot - ok 19:39:05.0798 0x0c90 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 19:39:05.0854 0x0c90 vds - ok 19:39:05.0873 0x0c90 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 19:39:05.0888 0x0c90 vga - ok 19:39:05.0903 0x0c90 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 19:39:05.0936 0x0c90 VgaSave - ok 19:39:05.0965 0x0c90 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 19:39:05.0982 0x0c90 vhdmp - ok 19:39:06.0006 0x0c90 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 19:39:06.0018 0x0c90 viaide - ok 19:39:06.0030 0x0c90 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 19:39:06.0042 0x0c90 volmgr - ok 19:39:06.0069 0x0c90 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 19:39:06.0087 0x0c90 volmgrx - ok 19:39:06.0114 0x0c90 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 19:39:06.0134 0x0c90 volsnap - ok 19:39:06.0154 0x0c90 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 19:39:06.0170 0x0c90 vsmraid - ok 19:39:06.0240 0x0c90 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 19:39:06.0309 0x0c90 VSS - ok 19:39:06.0333 0x0c90 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 19:39:06.0347 0x0c90 vwifibus - ok 19:39:06.0373 0x0c90 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 19:39:06.0418 0x0c90 W32Time - ok 19:39:06.0441 0x0c90 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 19:39:06.0453 0x0c90 WacomPen - ok 19:39:06.0470 0x0c90 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 19:39:06.0503 0x0c90 WANARP - ok 19:39:06.0507 0x0c90 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 19:39:06.0539 0x0c90 Wanarpv6 - ok 19:39:06.0604 0x0c90 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 19:39:06.0650 0x0c90 WatAdminSvc - ok 19:39:06.0714 0x0c90 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 19:39:06.0794 0x0c90 wbengine - ok 19:39:06.0834 0x0c90 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 19:39:06.0854 0x0c90 WbioSrvc - ok 19:39:06.0874 0x0c90 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 19:39:06.0904 0x0c90 wcncsvc - ok 19:39:06.0924 0x0c90 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 19:39:06.0964 0x0c90 WcsPlugInService - ok 19:39:06.0994 0x0c90 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 19:39:07.0014 0x0c90 Wd - ok 19:39:07.0054 0x0c90 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 19:39:07.0084 0x0c90 Wdf01000 - ok 19:39:07.0114 0x0c90 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 19:39:07.0154 0x0c90 WdiServiceHost - ok 19:39:07.0154 0x0c90 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 19:39:07.0174 0x0c90 WdiSystemHost - ok 19:39:07.0194 0x0c90 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 19:39:07.0234 0x0c90 WebClient - ok 19:39:07.0255 0x0c90 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 19:39:07.0305 0x0c90 Wecsvc - ok 19:39:07.0325 0x0c90 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 19:39:07.0375 0x0c90 wercplsupport - ok 19:39:07.0395 0x0c90 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 19:39:07.0439 0x0c90 WerSvc - ok 19:39:07.0459 0x0c90 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 19:39:07.0489 0x0c90 WfpLwf - ok 19:39:07.0499 0x0c90 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 19:39:07.0509 0x0c90 WIMMount - ok 19:39:07.0529 0x0c90 WinDefend - ok 19:39:07.0539 0x0c90 WinHttpAutoProxySvc - ok 19:39:07.0609 0x0c90 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 19:39:07.0659 0x0c90 Winmgmt - ok 19:39:07.0749 0x0c90 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 19:39:07.0839 0x0c90 WinRM - ok 19:39:07.0879 0x0c90 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 19:39:07.0899 0x0c90 WinUsb - ok 19:39:07.0949 0x0c90 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 19:39:07.0999 0x0c90 Wlansvc - ok 19:39:08.0019 0x0c90 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 19:39:08.0039 0x0c90 WmiAcpi - ok 19:39:08.0089 0x0c90 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 19:39:08.0099 0x0c90 wmiApSrv - ok 19:39:08.0119 0x0c90 WMPNetworkSvc - ok 19:39:08.0139 0x0c90 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 19:39:08.0189 0x0c90 WPCSvc - ok 19:39:08.0209 0x0c90 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 19:39:08.0249 0x0c90 WPDBusEnum - ok 19:39:08.0269 0x0c90 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 19:39:08.0299 0x0c90 ws2ifsl - ok 19:39:08.0339 0x0c90 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll 19:39:08.0369 0x0c90 wscsvc - ok 19:39:08.0379 0x0c90 WSearch - ok 19:39:08.0479 0x0c90 [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv C:\Windows\system32\wuaueng.dll 19:39:08.0599 0x0c90 wuauserv - ok 19:39:08.0629 0x0c90 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 19:39:08.0669 0x0c90 WudfPf - ok 19:39:08.0689 0x0c90 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 19:39:08.0699 0x0c90 WUDFRd - ok 19:39:08.0719 0x0c90 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 19:39:08.0729 0x0c90 wudfsvc - ok 19:39:08.0759 0x0c90 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 19:39:08.0789 0x0c90 WwanSvc - ok 19:39:08.0819 0x0c90 xhunter1 - ok 19:39:08.0829 0x0c90 ================ Scan global =============================== 19:39:08.0879 0x0c90 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 19:39:08.0929 0x0c90 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:39:08.0939 0x0c90 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:39:08.0969 0x0c90 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 19:39:08.0999 0x0c90 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 19:39:09.0009 0x0c90 [ Global ] - ok 19:39:09.0009 0x0c90 ================ Scan MBR ================================== 19:39:09.0309 0x0c90 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 19:39:09.0659 0x0c90 \Device\Harddisk0\DR0 - ok 19:39:09.0669 0x0c90 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 19:39:09.0899 0x0c90 \Device\Harddisk1\DR1 - ok 19:39:09.0899 0x0c90 ================ Scan VBR ================================== 19:39:09.0909 0x0c90 [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1 19:39:09.0909 0x0c90 \Device\Harddisk0\DR0\Partition1 - ok 19:39:09.0939 0x0c90 [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2 19:39:09.0949 0x0c90 \Device\Harddisk0\DR0\Partition2 - ok 19:39:09.0949 0x0c90 [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1 19:39:09.0949 0x0c90 \Device\Harddisk1\DR1\Partition1 - ok 19:39:09.0949 0x0c90 ================ Scan generic autorun ====================== 19:39:10.0449 0x0c90 [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 19:39:10.0749 0x0c90 RtHDVCpl - ok 19:39:10.0889 0x0c90 [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe 19:39:10.0919 0x0c90 svchospt - detected UnsignedFile.Multi.Generic ( 1 ) 19:39:13.0219 0x0c90 Detect skipped due to KSN trusted 19:39:13.0219 0x0c90 svchospt - ok 19:39:13.0269 0x0c90 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 19:39:13.0289 0x0c90 SunJavaUpdateSched - ok |
02.12.2016, 20:56 | #14 |
| unbekanntes ProgrammCode:
ATTFilter 19:39:13.0499 0x0c90 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:39:13.0609 0x0c90 Akamai NetSession Interface - ok 19:39:13.0699 0x0c90 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe 19:39:13.0759 0x0c90 Sidebar - ok 19:39:13.0809 0x0c90 [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe 19:39:13.0829 0x0c90 BingSvc - ok 19:39:13.0829 0x0c90 Chromium - ok 19:39:13.0989 0x0c90 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:39:14.0099 0x0c90 Akamai NetSession Interface - ok 19:39:14.0099 0x0c90 Overwolf - ok 19:39:14.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:15.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:16.0109 0x0c90 Waiting for KSN requests completion. In queue: 54 19:39:17.0359 0x0c90 Win FW state via NFP2: enabled ( trusted ) 19:39:19.0748 0x0c90 ============================================================ 19:39:19.0748 0x0c90 Scan finished 19:39:19.0748 0x0c90 ============================================================ 19:39:19.0748 0x0db8 Detected object count: 0 19:39:19.0748 0x0db8 Actual detected object count: 0 19:51:38.0994 0x0cd8 ============================================================ 19:51:38.0994 0x0cd8 Scan started 19:51:38.0994 0x0cd8 Mode: Manual; SigCheck; TDLFS; 19:51:38.0994 0x0cd8 ============================================================ 19:51:38.0994 0x0cd8 KSN ping started 19:51:52.0304 0x0cd8 KSN ping finished: true 19:51:53.0014 0x0cd8 ================ Scan system memory ======================== 19:51:53.0014 0x0cd8 System memory - ok 19:51:53.0024 0x0cd8 ================ Scan services ============================= 19:51:53.0124 0x0cd8 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 19:51:53.0154 0x0cd8 1394ohci - ok 19:51:53.0174 0x0cd8 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 19:51:53.0194 0x0cd8 ACPI - ok 19:51:53.0204 0x0cd8 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 19:51:53.0224 0x0cd8 AcpiPmi - ok 19:51:53.0314 0x0cd8 [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 19:51:53.0334 0x0cd8 AdobeFlashPlayerUpdateSvc - ok 19:51:53.0384 0x0cd8 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 19:51:53.0404 0x0cd8 adp94xx - ok 19:51:53.0424 0x0cd8 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 19:51:53.0444 0x0cd8 adpahci - ok 19:51:53.0454 0x0cd8 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 19:51:53.0474 0x0cd8 adpu320 - ok 19:51:53.0494 0x0cd8 [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 19:51:53.0504 0x0cd8 AeLookupSvc - ok 19:51:53.0554 0x0cd8 [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe 19:51:53.0564 0x0cd8 AERTFilters - ok 19:51:53.0604 0x0cd8 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys 19:51:53.0624 0x0cd8 AFD - ok 19:51:53.0644 0x0cd8 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 19:51:53.0654 0x0cd8 agp440 - ok 19:51:53.0674 0x0cd8 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 19:51:53.0694 0x0cd8 ALG - ok 19:51:53.0714 0x0cd8 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 19:51:53.0724 0x0cd8 aliide - ok 19:51:53.0734 0x0cd8 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 19:51:53.0744 0x0cd8 amdide - ok 19:51:53.0764 0x0cd8 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 19:51:53.0784 0x0cd8 AmdK8 - ok 19:51:53.0794 0x0cd8 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 19:51:53.0804 0x0cd8 AmdPPM - ok 19:51:53.0824 0x0cd8 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 19:51:53.0844 0x0cd8 amdsata - ok 19:51:53.0864 0x0cd8 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 19:51:53.0874 0x0cd8 amdsbs - ok 19:51:53.0894 0x0cd8 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 19:51:53.0904 0x0cd8 amdxata - ok 19:51:53.0934 0x0cd8 [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID C:\Windows\system32\drivers\appid.sys 19:51:53.0954 0x0cd8 AppID - ok 19:51:53.0974 0x0cd8 [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc C:\Windows\System32\appidsvc.dll 19:51:53.0994 0x0cd8 AppIDSvc - ok 19:51:54.0014 0x0cd8 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 19:51:54.0024 0x0cd8 Appinfo - ok 19:51:54.0054 0x0cd8 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 19:51:54.0064 0x0cd8 arc - ok 19:51:54.0094 0x0cd8 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 19:51:54.0104 0x0cd8 arcsas - ok 19:51:54.0194 0x0cd8 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 19:51:54.0204 0x0cd8 aspnet_state - ok 19:51:54.0224 0x0cd8 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 19:51:54.0254 0x0cd8 AsyncMac - ok 19:51:54.0274 0x0cd8 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 19:51:54.0284 0x0cd8 atapi - ok 19:51:54.0334 0x0cd8 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 19:51:54.0364 0x0cd8 AudioEndpointBuilder - ok 19:51:54.0384 0x0cd8 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 19:51:54.0404 0x0cd8 AudioSrv - ok 19:51:54.0434 0x0cd8 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 19:51:54.0454 0x0cd8 AxInstSV - ok 19:51:54.0524 0x0cd8 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 19:51:54.0554 0x0cd8 b06bdrv - ok 19:51:54.0574 0x0cd8 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 19:51:54.0594 0x0cd8 b57nd60a - ok 19:51:54.0614 0x0cd8 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 19:51:54.0624 0x0cd8 BDESVC - ok 19:51:54.0644 0x0cd8 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 19:51:54.0674 0x0cd8 Beep - ok 19:51:54.0704 0x0cd8 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 19:51:54.0734 0x0cd8 BFE - ok 19:51:54.0804 0x0cd8 [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM C:\Program Files\BDServices\BitDefenderCom.exe 19:51:54.0824 0x0cd8 BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 ) 19:51:54.0824 0x0cd8 Detect skipped due to KSN trusted 19:51:54.0834 0x0cd8 BitDefenderCOM - ok 19:51:54.0874 0x0cd8 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 19:51:54.0934 0x0cd8 BITS - ok 19:51:54.0954 0x0cd8 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys 19:51:54.0974 0x0cd8 blbdrive - ok 19:51:54.0984 0x0cd8 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 19:51:55.0004 0x0cd8 bowser - ok 19:51:55.0024 0x0cd8 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 19:51:55.0034 0x0cd8 BrFiltLo - ok 19:51:55.0054 0x0cd8 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 19:51:55.0064 0x0cd8 BrFiltUp - ok 19:51:55.0084 0x0cd8 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 19:51:55.0124 0x0cd8 BridgeMP - ok 19:51:55.0144 0x0cd8 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 19:51:55.0174 0x0cd8 Browser - ok 19:51:55.0195 0x0cd8 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 19:51:55.0214 0x0cd8 Brserid - ok 19:51:55.0229 0x0cd8 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 19:51:55.0243 0x0cd8 BrSerWdm - ok 19:51:55.0254 0x0cd8 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 19:51:55.0267 0x0cd8 BrUsbMdm - ok 19:51:55.0286 0x0cd8 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 19:51:55.0297 0x0cd8 BrUsbSer - ok 19:51:55.0316 0x0cd8 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 19:51:55.0331 0x0cd8 BTHMODEM - ok 19:51:55.0362 0x0cd8 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 19:51:55.0392 0x0cd8 bthserv - ok 19:51:55.0412 0x0cd8 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 19:51:55.0452 0x0cd8 cdfs - ok 19:51:55.0462 0x0cd8 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 19:51:55.0482 0x0cd8 cdrom - ok 19:51:55.0492 0x0cd8 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 19:51:55.0532 0x0cd8 CertPropSvc - ok 19:51:55.0552 0x0cd8 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 19:51:55.0562 0x0cd8 circlass - ok 19:51:55.0602 0x0cd8 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 19:51:55.0622 0x0cd8 CLFS - ok 19:51:55.0652 0x0cd8 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 19:51:55.0672 0x0cd8 clr_optimization_v2.0.50727_32 - ok 19:51:55.0721 0x0cd8 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 19:51:55.0734 0x0cd8 clr_optimization_v2.0.50727_64 - ok 19:51:55.0789 0x0cd8 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 19:51:55.0805 0x0cd8 clr_optimization_v4.0.30319_32 - ok 19:51:55.0821 0x0cd8 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 19:51:55.0839 0x0cd8 clr_optimization_v4.0.30319_64 - ok 19:51:55.0859 0x0cd8 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 19:51:55.0871 0x0cd8 CmBatt - ok 19:51:55.0882 0x0cd8 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 19:51:55.0893 0x0cd8 cmdide - ok 19:51:55.0935 0x0cd8 [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\Windows\system32\Drivers\cng.sys 19:51:55.0964 0x0cd8 CNG - ok 19:51:55.0979 0x0cd8 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 19:51:55.0990 0x0cd8 Compbatt - ok 19:51:56.0016 0x0cd8 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 19:51:56.0031 0x0cd8 CompositeBus - ok 19:51:56.0035 0x0cd8 COMSysApp - ok 19:51:56.0092 0x0cd8 cpuz132 - ok 19:51:56.0109 0x0cd8 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 19:51:56.0119 0x0cd8 crcdisk - ok 19:51:56.0162 0x0cd8 [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc C:\Windows\system32\cryptsvc.dll 19:51:56.0178 0x0cd8 CryptSvc - ok 19:51:56.0215 0x0cd8 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 19:51:56.0257 0x0cd8 DcomLaunch - ok 19:51:56.0287 0x0cd8 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 19:51:56.0327 0x0cd8 defragsvc - ok 19:51:56.0347 0x0cd8 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 19:51:56.0389 0x0cd8 DfsC - ok 19:51:56.0410 0x0cd8 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 19:51:56.0429 0x0cd8 Dhcp - ok 19:51:56.0506 0x0cd8 [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack C:\Windows\system32\diagtrack.dll 19:51:56.0562 0x0cd8 DiagTrack - ok 19:51:56.0581 0x0cd8 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 19:51:56.0614 0x0cd8 discache - ok 19:51:56.0631 0x0cd8 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 19:51:56.0643 0x0cd8 Disk - ok 19:51:56.0666 0x0cd8 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 19:51:56.0683 0x0cd8 Dnscache - ok 19:51:56.0706 0x0cd8 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 19:51:56.0745 0x0cd8 dot3svc - ok 19:51:56.0774 0x0cd8 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 19:51:56.0810 0x0cd8 DPS - ok 19:51:56.0824 0x0cd8 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 19:51:56.0836 0x0cd8 drmkaud - ok 19:51:56.0840 0x0cd8 dtmelqbg - ok 19:51:56.0888 0x0cd8 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 19:51:56.0919 0x0cd8 DXGKrnl - ok 19:51:56.0942 0x0cd8 [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress C:\Windows\system32\DRIVERS\e1k60x64.sys 19:51:56.0958 0x0cd8 e1kexpress - ok 19:51:56.0963 0x0cd8 EagleX64 - ok 19:51:56.0994 0x0cd8 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 19:51:57.0031 0x0cd8 EapHost - ok 19:51:57.0165 0x0cd8 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 19:51:57.0270 0x0cd8 ebdrv - ok 19:51:57.0312 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS C:\Windows\System32\lsass.exe 19:51:57.0325 0x0cd8 EFS - ok 19:51:57.0392 0x0cd8 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 19:51:57.0422 0x0cd8 ehRecvr - ok 19:51:57.0440 0x0cd8 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 19:51:57.0455 0x0cd8 ehSched - ok 19:51:57.0485 0x0cd8 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 19:51:57.0508 0x0cd8 elxstor - ok 19:51:57.0539 0x0cd8 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 19:51:57.0550 0x0cd8 ErrDev - ok 19:51:57.0594 0x0cd8 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 19:51:57.0639 0x0cd8 EventSystem - ok 19:51:57.0660 0x0cd8 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 19:51:57.0698 0x0cd8 exfat - ok 19:51:57.0716 0x0cd8 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 19:51:57.0753 0x0cd8 fastfat - ok 19:51:57.0798 0x0cd8 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 19:51:57.0828 0x0cd8 Fax - ok 19:51:57.0852 0x0cd8 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 19:51:57.0864 0x0cd8 fdc - ok 19:51:57.0880 0x0cd8 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 19:51:57.0915 0x0cd8 fdPHost - ok 19:51:57.0923 0x0cd8 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 19:51:57.0959 0x0cd8 FDResPub - ok 19:51:57.0982 0x0cd8 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 19:51:57.0994 0x0cd8 FileInfo - ok 19:51:58.0012 0x0cd8 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 19:51:58.0045 0x0cd8 Filetrace - ok 19:51:58.0055 0x0cd8 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 19:51:58.0068 0x0cd8 flpydisk - ok 19:51:58.0095 0x0cd8 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 19:51:58.0111 0x0cd8 FltMgr - ok 19:51:58.0187 0x0cd8 [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache C:\Windows\system32\FntCache.dll 19:51:58.0242 0x0cd8 FontCache - ok 19:51:58.0272 0x0cd8 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 19:51:58.0282 0x0cd8 FontCache3.0.0.0 - ok 19:51:58.0304 0x0cd8 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 19:51:58.0324 0x0cd8 FsDepends - ok 19:51:58.0334 0x0cd8 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 19:51:58.0344 0x0cd8 Fs_Rec - ok 19:51:58.0374 0x0cd8 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 19:51:58.0394 0x0cd8 fvevol - ok 19:51:58.0404 0x0cd8 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 19:51:58.0426 0x0cd8 gagp30kx - ok 19:51:58.0490 0x0cd8 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 19:51:58.0544 0x0cd8 gpsvc - ok 19:51:58.0617 0x0cd8 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:51:58.0631 0x0cd8 gupdate - ok 19:51:58.0639 0x0cd8 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:51:58.0650 0x0cd8 gupdatem - ok 19:51:58.0676 0x0cd8 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 19:51:58.0687 0x0cd8 hcw85cir - ok 19:51:58.0729 0x0cd8 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 19:51:58.0751 0x0cd8 HdAudAddService - ok 19:51:58.0772 0x0cd8 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 19:51:58.0789 0x0cd8 HDAudBus - ok 19:51:58.0814 0x0cd8 [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64 C:\Windows\system32\drivers\HECIx64.sys 19:51:58.0824 0x0cd8 HECIx64 - ok 19:51:58.0838 0x0cd8 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 19:51:58.0850 0x0cd8 HidBatt - ok 19:51:58.0864 0x0cd8 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 19:51:58.0881 0x0cd8 HidBth - ok 19:51:58.0907 0x0cd8 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 19:51:58.0922 0x0cd8 HidIr - ok 19:51:58.0945 0x0cd8 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll 19:51:58.0979 0x0cd8 hidserv - ok 19:51:58.0999 0x0cd8 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 19:51:59.0024 0x0cd8 HidUsb - ok 19:51:59.0048 0x0cd8 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 19:51:59.0082 0x0cd8 hkmsvc - ok 19:51:59.0098 0x0cd8 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 19:51:59.0122 0x0cd8 HomeGroupListener - ok 19:51:59.0151 0x0cd8 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 19:51:59.0168 0x0cd8 HomeGroupProvider - ok 19:51:59.0186 0x0cd8 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 19:51:59.0199 0x0cd8 HpSAMD - ok 19:51:59.0245 0x0cd8 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 19:51:59.0285 0x0cd8 HTTP - ok 19:51:59.0301 0x0cd8 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 19:51:59.0312 0x0cd8 hwpolicy - ok 19:51:59.0339 0x0cd8 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 19:51:59.0353 0x0cd8 i8042prt - ok 19:51:59.0392 0x0cd8 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 19:51:59.0411 0x0cd8 iaStorV - ok 19:51:59.0479 0x0cd8 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 19:51:59.0513 0x0cd8 idsvc - ok 19:51:59.0519 0x0cd8 IEEtwCollectorService - ok 19:51:59.0748 0x0cd8 [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 19:51:59.0904 0x0cd8 igfx - ok 19:51:59.0954 0x0cd8 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 19:51:59.0965 0x0cd8 iirsp - ok 19:52:00.0013 0x0cd8 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 19:52:00.0048 0x0cd8 IKEEXT - ok 19:52:00.0188 0x0cd8 [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 19:52:00.0331 0x0cd8 IntcAzAudAddService - ok 19:52:00.0353 0x0cd8 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 19:52:00.0364 0x0cd8 intelide - ok 19:52:00.0382 0x0cd8 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys 19:52:00.0396 0x0cd8 intelppm - ok 19:52:00.0420 0x0cd8 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 19:52:00.0457 0x0cd8 IPBusEnum - ok 19:52:00.0480 0x0cd8 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 19:52:00.0512 0x0cd8 IpFilterDriver - ok 19:52:00.0545 0x0cd8 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 19:52:00.0569 0x0cd8 iphlpsvc - ok 19:52:00.0587 0x0cd8 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 19:52:00.0599 0x0cd8 IPMIDRV - ok 19:52:00.0620 0x0cd8 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 19:52:00.0655 0x0cd8 IPNAT - ok 19:52:00.0668 0x0cd8 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 19:52:00.0683 0x0cd8 IRENUM - ok 19:52:00.0686 0x0cd8 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 19:52:00.0696 0x0cd8 isapnp - ok 19:52:00.0726 0x0cd8 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 19:52:00.0746 0x0cd8 iScsiPrt - ok 19:52:00.0766 0x0cd8 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 19:52:00.0776 0x0cd8 kbdclass - ok 19:52:00.0796 0x0cd8 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 19:52:00.0806 0x0cd8 kbdhid - ok 19:52:00.0829 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso C:\Windows\system32\lsass.exe 19:52:00.0841 0x0cd8 KeyIso - ok 19:52:00.0871 0x0cd8 [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 19:52:00.0881 0x0cd8 KSecDD - ok 19:52:00.0901 0x0cd8 [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 19:52:00.0911 0x0cd8 KSecPkg - ok 19:52:00.0921 0x0cd8 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 19:52:00.0961 0x0cd8 ksthunk - ok 19:52:00.0991 0x0cd8 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 19:52:01.0031 0x0cd8 KtmRm - ok 19:52:01.0061 0x0cd8 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll 19:52:01.0101 0x0cd8 LanmanServer - ok 19:52:01.0131 0x0cd8 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 19:52:01.0161 0x0cd8 LanmanWorkstation - ok 19:52:01.0171 0x0cd8 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 19:52:01.0211 0x0cd8 lltdio - ok 19:52:01.0231 0x0cd8 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 19:52:01.0271 0x0cd8 lltdsvc - ok 19:52:01.0281 0x0cd8 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 19:52:01.0322 0x0cd8 lmhosts - ok 19:52:01.0342 0x0cd8 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 19:52:01.0352 0x0cd8 LSI_FC - ok 19:52:01.0362 0x0cd8 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 19:52:01.0382 0x0cd8 LSI_SAS - ok 19:52:01.0392 0x0cd8 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 19:52:01.0402 0x0cd8 LSI_SAS2 - ok 19:52:01.0432 0x0cd8 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 19:52:01.0442 0x0cd8 LSI_SCSI - ok 19:52:01.0462 0x0cd8 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 19:52:01.0501 0x0cd8 luafv - ok 19:52:01.0531 0x0cd8 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 19:52:01.0541 0x0cd8 Mcx2Svc - ok 19:52:01.0551 0x0cd8 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 19:52:01.0561 0x0cd8 megasas - ok 19:52:01.0591 0x0cd8 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 19:52:01.0611 0x0cd8 MegaSR - ok 19:52:01.0641 0x0cd8 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 19:52:01.0671 0x0cd8 MMCSS - ok 19:52:01.0681 0x0cd8 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 19:52:01.0721 0x0cd8 Modem - ok 19:52:01.0731 0x0cd8 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 19:52:01.0751 0x0cd8 monitor - ok 19:52:01.0781 0x0cd8 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 19:52:01.0791 0x0cd8 mouclass - ok 19:52:01.0801 0x0cd8 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 19:52:01.0811 0x0cd8 mouhid - ok 19:52:01.0841 0x0cd8 [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 19:52:01.0861 0x0cd8 mountmgr - ok 19:52:01.0891 0x0cd8 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 19:52:01.0901 0x0cd8 mpio - ok 19:52:01.0921 0x0cd8 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 19:52:01.0951 0x0cd8 mpsdrv - ok 19:52:02.0001 0x0cd8 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 19:52:02.0061 0x0cd8 MpsSvc - ok 19:52:02.0081 0x0cd8 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 19:52:02.0101 0x0cd8 MRxDAV - ok 19:52:02.0131 0x0cd8 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 19:52:02.0151 0x0cd8 mrxsmb - ok 19:52:02.0191 0x0cd8 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 19:52:02.0201 0x0cd8 mrxsmb10 - ok 19:52:02.0221 0x0cd8 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 19:52:02.0231 0x0cd8 mrxsmb20 - ok 19:52:02.0251 0x0cd8 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 19:52:02.0261 0x0cd8 msahci - ok 19:52:02.0291 0x0cd8 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 19:52:02.0301 0x0cd8 msdsm - ok 19:52:02.0321 0x0cd8 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 19:52:02.0341 0x0cd8 MSDTC - ok 19:52:02.0371 0x0cd8 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 19:52:02.0410 0x0cd8 Msfs - ok 19:52:02.0421 0x0cd8 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 19:52:02.0456 0x0cd8 mshidkmdf - ok 19:52:02.0473 0x0cd8 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 19:52:02.0483 0x0cd8 msisadrv - ok 19:52:02.0513 0x0cd8 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 19:52:02.0552 0x0cd8 MSiSCSI - ok 19:52:02.0556 0x0cd8 msiserver - ok 19:52:02.0566 0x0cd8 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 19:52:02.0599 0x0cd8 MSKSSRV - ok 19:52:02.0609 0x0cd8 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 19:52:02.0641 0x0cd8 MSPCLOCK - ok 19:52:02.0646 0x0cd8 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 19:52:02.0679 0x0cd8 MSPQM - ok 19:52:02.0701 0x0cd8 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 19:52:02.0721 0x0cd8 MsRPC - ok 19:52:02.0739 0x0cd8 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 19:52:02.0750 0x0cd8 mssmbios - ok 19:52:02.0762 0x0cd8 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 19:52:02.0794 0x0cd8 MSTEE - ok 19:52:02.0815 0x0cd8 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 19:52:02.0827 0x0cd8 MTConfig - ok 19:52:02.0838 0x0cd8 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 19:52:02.0851 0x0cd8 Mup - ok 19:52:02.0880 0x0cd8 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 19:52:02.0930 0x0cd8 napagent - ok 19:52:02.0960 0x0cd8 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 19:52:02.0990 0x0cd8 NativeWifiP - ok 19:52:03.0030 0x0cd8 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 19:52:03.0060 0x0cd8 NDIS - ok 19:52:03.0080 0x0cd8 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 19:52:03.0110 0x0cd8 NdisCap - ok 19:52:03.0140 0x0cd8 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 19:52:03.0170 0x0cd8 NdisTapi - ok 19:52:03.0190 0x0cd8 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 19:52:03.0220 0x0cd8 Ndisuio - ok 19:52:03.0240 0x0cd8 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 19:52:03.0270 0x0cd8 NdisWan - ok 19:52:03.0280 0x0cd8 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 19:52:03.0310 0x0cd8 NDProxy - ok 19:52:03.0330 0x0cd8 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 19:52:03.0360 0x0cd8 NetBIOS - ok 19:52:03.0380 0x0cd8 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 19:52:03.0411 0x0cd8 NetBT - ok 19:52:03.0421 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon C:\Windows\system32\lsass.exe 19:52:03.0441 0x0cd8 Netlogon - ok 19:52:03.0461 0x0cd8 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 19:52:03.0511 0x0cd8 Netman - ok 19:52:03.0551 0x0cd8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:52:03.0561 0x0cd8 NetMsmqActivator - ok 19:52:03.0571 0x0cd8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:52:03.0581 0x0cd8 NetPipeActivator - ok 19:52:03.0611 0x0cd8 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 19:52:03.0661 0x0cd8 netprofm - ok 19:52:03.0671 0x0cd8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:52:03.0681 0x0cd8 NetTcpActivator - ok 19:52:03.0691 0x0cd8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:52:03.0701 0x0cd8 NetTcpPortSharing - ok 19:52:03.0721 0x0cd8 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 19:52:03.0741 0x0cd8 nfrd960 - ok 19:52:03.0771 0x0cd8 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 19:52:03.0801 0x0cd8 NlaSvc - ok 19:52:03.0831 0x0cd8 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 19:52:03.0861 0x0cd8 Npfs - ok 19:52:03.0871 0x0cd8 npggsvc - ok 19:52:03.0891 0x0cd8 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 19:52:03.0921 0x0cd8 nsi - ok 19:52:03.0931 0x0cd8 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 19:52:03.0961 0x0cd8 nsiproxy - ok 19:52:04.0041 0x0cd8 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 19:52:04.0091 0x0cd8 Ntfs - ok 19:52:04.0121 0x0cd8 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 19:52:04.0151 0x0cd8 Null - ok 19:52:04.0181 0x0cd8 [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 19:52:04.0191 0x0cd8 NVHDA - ok 19:52:04.0561 0x0cd8 [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 19:52:04.0961 0x0cd8 nvlddmkm - ok 19:52:05.0021 0x0cd8 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 19:52:05.0041 0x0cd8 nvraid - ok 19:52:05.0051 0x0cd8 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 19:52:05.0071 0x0cd8 nvstor - ok 19:52:05.0135 0x0cd8 [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc C:\Windows\system32\nvvsvc.exe 19:52:05.0166 0x0cd8 nvsvc - ok 19:52:05.0248 0x0cd8 [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 19:52:05.0286 0x0cd8 nvUpdatusService - ok 19:52:05.0318 0x0cd8 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 19:52:05.0332 0x0cd8 nv_agp - ok 19:52:05.0366 0x0cd8 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 19:52:05.0380 0x0cd8 ohci1394 - ok 19:52:05.0383 0x0cd8 onotlzbb - ok 19:52:05.0387 0x0cd8 oshnyfcv - ok 19:52:05.0417 0x0cd8 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 19:52:05.0444 0x0cd8 p2pimsvc - ok 19:52:05.0476 0x0cd8 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 19:52:05.0499 0x0cd8 p2psvc - ok 19:52:05.0527 0x0cd8 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 19:52:05.0536 0x0cd8 Parport - ok 19:52:05.0556 0x0cd8 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 19:52:05.0566 0x0cd8 partmgr - ok 19:52:05.0626 0x0cd8 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 19:52:05.0646 0x0cd8 PcaSvc - ok 19:52:05.0676 0x0cd8 [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys 19:52:05.0696 0x0cd8 pccsmcfd - ok 19:52:05.0726 0x0cd8 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 19:52:05.0736 0x0cd8 pci - ok 19:52:05.0756 0x0cd8 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 19:52:05.0766 0x0cd8 pciide - ok 19:52:05.0796 0x0cd8 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 19:52:05.0816 0x0cd8 pcmcia - ok 19:52:05.0836 0x0cd8 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 19:52:05.0846 0x0cd8 pcw - ok 19:52:05.0906 0x0cd8 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 19:52:05.0936 0x0cd8 PEAUTH - ok 19:52:06.0006 0x0cd8 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 19:52:06.0016 0x0cd8 PerfHost - ok 19:52:06.0096 0x0cd8 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 19:52:06.0156 0x0cd8 pla - ok 19:52:06.0206 0x0cd8 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 19:52:06.0226 0x0cd8 PlugPlay - ok 19:52:06.0246 0x0cd8 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 19:52:06.0256 0x0cd8 PNRPAutoReg - ok 19:52:06.0276 0x0cd8 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 19:52:06.0296 0x0cd8 PNRPsvc - ok 19:52:06.0337 0x0cd8 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 19:52:06.0377 0x0cd8 PolicyAgent - ok 19:52:06.0407 0x0cd8 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 19:52:06.0447 0x0cd8 Power - ok 19:52:06.0467 0x0cd8 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 19:52:06.0507 0x0cd8 PptpMiniport - ok 19:52:06.0527 0x0cd8 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 19:52:06.0547 0x0cd8 Processor - ok 19:52:06.0577 0x0cd8 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 19:52:06.0597 0x0cd8 ProfSvc - ok 19:52:06.0607 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe 19:52:06.0617 0x0cd8 ProtectedStorage - ok 19:52:06.0637 0x0cd8 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 19:52:06.0667 0x0cd8 Psched - ok 19:52:06.0737 0x0cd8 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 19:52:06.0787 0x0cd8 ql2300 - ok 19:52:06.0817 0x0cd8 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 19:52:06.0827 0x0cd8 ql40xx - ok 19:52:06.0857 0x0cd8 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 19:52:06.0887 0x0cd8 QWAVE - ok 19:52:06.0917 0x0cd8 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 19:52:06.0927 0x0cd8 QWAVEdrv - ok 19:52:06.0947 0x0cd8 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 19:52:06.0977 0x0cd8 RasAcd - ok 19:52:06.0997 0x0cd8 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 19:52:07.0027 0x0cd8 RasAgileVpn - ok 19:52:07.0047 0x0cd8 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 19:52:07.0077 0x0cd8 RasAuto - ok 19:52:07.0097 0x0cd8 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 19:52:07.0127 0x0cd8 Rasl2tp - ok 19:52:07.0157 0x0cd8 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 19:52:07.0197 0x0cd8 RasMan - ok 19:52:07.0217 0x0cd8 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 19:52:07.0257 0x0cd8 RasPppoe - ok 19:52:07.0267 0x0cd8 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 19:52:07.0297 0x0cd8 RasSstp - ok 19:52:07.0328 0x0cd8 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 19:52:07.0368 0x0cd8 rdbss - ok 19:52:07.0388 0x0cd8 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys 19:52:07.0408 0x0cd8 rdpbus - ok 19:52:07.0418 0x0cd8 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 19:52:07.0458 0x0cd8 RDPCDD - ok 19:52:07.0468 0x0cd8 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 19:52:07.0498 0x0cd8 RDPENCDD - ok 19:52:07.0508 0x0cd8 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 19:52:07.0538 0x0cd8 RDPREFMP - ok 19:52:07.0578 0x0cd8 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 19:52:07.0608 0x0cd8 RDPWD - ok 19:52:07.0638 0x0cd8 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 19:52:07.0648 0x0cd8 rdyboost - ok 19:52:07.0668 0x0cd8 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 19:52:07.0708 0x0cd8 RemoteAccess - ok 19:52:07.0728 0x0cd8 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 19:52:07.0768 0x0cd8 RemoteRegistry - ok 19:52:07.0788 0x0cd8 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 19:52:07.0818 0x0cd8 RpcEptMapper - ok 19:52:07.0838 0x0cd8 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 19:52:07.0848 0x0cd8 RpcLocator - ok 19:52:07.0878 0x0cd8 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 19:52:07.0918 0x0cd8 RpcSs - ok 19:52:07.0948 0x0cd8 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 19:52:07.0978 0x0cd8 rspndr - ok 19:52:08.0038 0x0cd8 [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 19:52:08.0058 0x0cd8 RTL8167 - ok 19:52:08.0078 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs C:\Windows\system32\lsass.exe 19:52:08.0088 0x0cd8 SamSs - ok 19:52:08.0098 0x0cd8 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 19:52:08.0118 0x0cd8 sbp2port - ok 19:52:08.0138 0x0cd8 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 19:52:08.0178 0x0cd8 SCardSvr - ok 19:52:08.0198 0x0cd8 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 19:52:08.0228 0x0cd8 scfilter - ok 19:52:08.0278 0x0cd8 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 19:52:08.0338 0x0cd8 Schedule - ok 19:52:08.0368 0x0cd8 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 19:52:08.0398 0x0cd8 SCPolicySvc - ok 19:52:08.0418 0x0cd8 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 19:52:08.0438 0x0cd8 SDRSVC - ok 19:52:08.0458 0x0cd8 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 19:52:08.0488 0x0cd8 secdrv - ok 19:52:08.0518 0x0cd8 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 19:52:08.0548 0x0cd8 seclogon - ok 19:52:08.0558 0x0cd8 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 19:52:08.0598 0x0cd8 SENS - ok 19:52:08.0608 0x0cd8 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 19:52:08.0618 0x0cd8 SensrSvc - ok 19:52:08.0638 0x0cd8 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys 19:52:08.0648 0x0cd8 Serenum - ok 19:52:08.0658 0x0cd8 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys 19:52:08.0678 0x0cd8 Serial - ok 19:52:08.0698 0x0cd8 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 19:52:08.0708 0x0cd8 sermouse - ok 19:52:08.0788 0x0cd8 [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe 19:52:08.0808 0x0cd8 ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 ) 19:52:08.0808 0x0cd8 Detect skipped due to KSN trusted 19:52:08.0808 0x0cd8 ServiceLayer - ok 19:52:08.0838 0x0cd8 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 19:52:08.0868 0x0cd8 SessionEnv - ok 19:52:08.0888 0x0cd8 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 19:52:08.0898 0x0cd8 sffdisk - ok 19:52:08.0908 0x0cd8 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 19:52:08.0918 0x0cd8 sffp_mmc - ok 19:52:08.0928 0x0cd8 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 19:52:08.0948 0x0cd8 sffp_sd - ok 19:52:08.0958 0x0cd8 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 19:52:08.0978 0x0cd8 sfloppy - ok 19:52:09.0008 0x0cd8 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 19:52:09.0048 0x0cd8 SharedAccess - ok 19:52:09.0078 0x0cd8 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 19:52:09.0118 0x0cd8 ShellHWDetection - ok 19:52:09.0138 0x0cd8 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 19:52:09.0148 0x0cd8 SiSRaid2 - ok 19:52:09.0158 0x0cd8 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 19:52:09.0178 0x0cd8 SiSRaid4 - ok 19:52:09.0188 0x0cd8 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 19:52:09.0228 0x0cd8 Smb - ok 19:52:09.0248 0x0cd8 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 19:52:09.0258 0x0cd8 SNMPTRAP - ok 19:52:09.0268 0x0cd8 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 19:52:09.0278 0x0cd8 spldr - ok 19:52:09.0308 0x0cd8 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 19:52:09.0338 0x0cd8 Spooler - ok 19:52:09.0468 0x0cd8 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 19:52:09.0598 0x0cd8 sppsvc - ok 19:52:09.0618 0x0cd8 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 19:52:09.0658 0x0cd8 sppuinotify - ok 19:52:09.0698 0x0cd8 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 19:52:09.0728 0x0cd8 srv - ok 19:52:09.0758 0x0cd8 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 19:52:09.0778 0x0cd8 srv2 - ok 19:52:09.0798 0x0cd8 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 19:52:09.0808 0x0cd8 srvnet - ok 19:52:09.0828 0x0cd8 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 19:52:09.0868 0x0cd8 SSDPSRV - ok 19:52:09.0888 0x0cd8 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 19:52:09.0928 0x0cd8 SstpSvc - ok 19:52:09.0968 0x0cd8 [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 19:52:09.0988 0x0cd8 Stereo Service - ok 19:52:09.0998 0x0cd8 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 19:52:10.0008 0x0cd8 stexstor - ok 19:52:10.0048 0x0cd8 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 19:52:10.0078 0x0cd8 stisvc - ok 19:52:10.0098 0x0cd8 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 19:52:10.0108 0x0cd8 swenum - ok 19:52:10.0138 0x0cd8 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 19:52:10.0188 0x0cd8 swprv - ok 19:52:10.0248 0x0cd8 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 19:52:10.0308 0x0cd8 SysMain - ok 19:52:10.0328 0x0cd8 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 19:52:10.0348 0x0cd8 TabletInputService - ok 19:52:10.0378 0x0cd8 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 19:52:10.0418 0x0cd8 TapiSrv - ok 19:52:10.0448 0x0cd8 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 19:52:10.0478 0x0cd8 TBS - ok 19:52:10.0558 0x0cd8 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 19:52:10.0618 0x0cd8 Tcpip - ok 19:52:10.0668 0x0cd8 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 19:52:10.0718 0x0cd8 TCPIP6 - ok 19:52:10.0748 0x0cd8 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 19:52:10.0758 0x0cd8 tcpipreg - ok 19:52:10.0778 0x0cd8 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 19:52:10.0788 0x0cd8 TDPIPE - ok 19:52:10.0808 0x0cd8 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 19:52:10.0818 0x0cd8 TDTCP - ok 19:52:10.0848 0x0cd8 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 19:52:10.0878 0x0cd8 tdx - ok 19:52:10.0898 0x0cd8 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 19:52:10.0908 0x0cd8 TermDD - ok 19:52:10.0958 0x0cd8 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 19:52:10.0988 0x0cd8 TermService - ok 19:52:11.0018 0x0cd8 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 19:52:11.0028 0x0cd8 Themes - ok 19:52:11.0048 0x0cd8 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 19:52:11.0088 0x0cd8 THREADORDER - ok 19:52:11.0108 0x0cd8 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 19:52:11.0138 0x0cd8 TrkWks - ok 19:52:11.0188 0x0cd8 [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos C:\Windows\system32\DRIVERS\Trufos.sys 19:52:11.0208 0x0cd8 Trufos - ok 19:52:11.0258 0x0cd8 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 19:52:11.0298 0x0cd8 TrustedInstaller - ok 19:52:11.0318 0x0cd8 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 19:52:11.0338 0x0cd8 tssecsrv - ok 19:52:11.0348 0x0cd8 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 19:52:11.0368 0x0cd8 TsUsbFlt - ok 19:52:11.0388 0x0cd8 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 19:52:11.0398 0x0cd8 TsUsbGD - ok 19:52:11.0418 0x0cd8 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 19:52:11.0458 0x0cd8 tunnel - ok 19:52:11.0468 0x0cd8 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 19:52:11.0478 0x0cd8 uagp35 - ok 19:52:11.0508 0x0cd8 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 19:52:11.0548 0x0cd8 udfs - ok 19:52:11.0578 0x0cd8 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 19:52:11.0588 0x0cd8 UI0Detect - ok 19:52:11.0608 0x0cd8 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 19:52:11.0618 0x0cd8 uliagpkx - ok 19:52:11.0638 0x0cd8 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 19:52:11.0648 0x0cd8 umbus - ok 19:52:11.0668 0x0cd8 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 19:52:11.0688 0x0cd8 UmPass - ok 19:52:11.0708 0x0cd8 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 19:52:11.0748 0x0cd8 upnphost - ok 19:52:11.0768 0x0cd8 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\drivers\usbccgp.sys 19:52:11.0778 0x0cd8 usbccgp - ok 19:52:11.0808 0x0cd8 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 19:52:11.0828 0x0cd8 usbcir - ok 19:52:11.0848 0x0cd8 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 19:52:11.0858 0x0cd8 usbehci - ok 19:52:11.0888 0x0cd8 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 19:52:11.0908 0x0cd8 usbhub - ok 19:52:11.0928 0x0cd8 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys 19:52:11.0938 0x0cd8 usbohci - ok 19:52:11.0948 0x0cd8 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys 19:52:11.0958 0x0cd8 usbprint - ok 19:52:11.0978 0x0cd8 [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser C:\Windows\system32\DRIVERS\usbser.sys 19:52:11.0998 0x0cd8 usbser - ok 19:52:12.0008 0x0cd8 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 19:52:12.0028 0x0cd8 USBSTOR - ok 19:52:12.0058 0x0cd8 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 19:52:12.0068 0x0cd8 usbuhci - ok 19:52:12.0098 0x0cd8 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 19:52:12.0128 0x0cd8 UxSms - ok 19:52:12.0138 0x0cd8 [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc C:\Windows\system32\lsass.exe 19:52:12.0148 0x0cd8 VaultSvc - ok 19:52:12.0158 0x0cd8 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 19:52:12.0168 0x0cd8 vdrvroot - ok 19:52:12.0188 0x0cd8 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 19:52:12.0238 0x0cd8 vds - ok 19:52:12.0258 0x0cd8 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 19:52:12.0278 0x0cd8 vga - ok 19:52:12.0288 0x0cd8 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 19:52:12.0318 0x0cd8 VgaSave - ok 19:52:12.0348 0x0cd8 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 19:52:12.0368 0x0cd8 vhdmp - ok 19:52:12.0388 0x0cd8 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 19:52:12.0398 0x0cd8 viaide - ok 19:52:12.0408 0x0cd8 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 19:52:12.0418 0x0cd8 volmgr - ok 19:52:12.0438 0x0cd8 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 19:52:12.0458 0x0cd8 volmgrx - ok 19:52:12.0488 0x0cd8 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 19:52:12.0508 0x0cd8 volsnap - ok 19:52:12.0528 0x0cd8 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 19:52:12.0548 0x0cd8 vsmraid - ok 19:52:12.0618 0x0cd8 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 19:52:12.0688 0x0cd8 VSS - ok 19:52:12.0708 0x0cd8 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 19:52:12.0728 0x0cd8 vwifibus - ok 19:52:12.0748 0x0cd8 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 19:52:12.0798 0x0cd8 W32Time - ok 19:52:12.0818 0x0cd8 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 19:52:12.0828 0x0cd8 WacomPen - ok 19:52:12.0848 0x0cd8 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 19:52:12.0878 0x0cd8 WANARP - ok 19:52:12.0888 0x0cd8 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 19:52:12.0918 0x0cd8 Wanarpv6 - ok 19:52:12.0978 0x0cd8 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 19:52:13.0018 0x0cd8 WatAdminSvc - ok 19:52:13.0088 0x0cd8 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 19:52:13.0138 0x0cd8 wbengine - ok 19:52:13.0158 0x0cd8 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 19:52:13.0188 0x0cd8 WbioSrvc - ok 19:52:13.0208 0x0cd8 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 19:52:13.0238 0x0cd8 wcncsvc - ok 19:52:13.0248 0x0cd8 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 19:52:13.0258 0x0cd8 WcsPlugInService - ok 19:52:13.0278 0x0cd8 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 19:52:13.0288 0x0cd8 Wd - ok 19:52:13.0338 0x0cd8 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 19:52:13.0368 0x0cd8 Wdf01000 - ok 19:52:13.0388 0x0cd8 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 19:52:13.0408 0x0cd8 WdiServiceHost - ok 19:52:13.0418 0x0cd8 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 19:52:13.0428 0x0cd8 WdiSystemHost - ok 19:52:13.0448 0x0cd8 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 19:52:13.0478 0x0cd8 WebClient - ok 19:52:13.0508 0x0cd8 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 19:52:13.0548 0x0cd8 Wecsvc - ok 19:52:13.0568 0x0cd8 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 19:52:13.0598 0x0cd8 wercplsupport - ok 19:52:13.0618 0x0cd8 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 19:52:13.0648 0x0cd8 WerSvc - ok 19:52:13.0668 0x0cd8 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 19:52:13.0708 0x0cd8 WfpLwf - ok 19:52:13.0718 0x0cd8 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 19:52:13.0728 0x0cd8 WIMMount - ok 19:52:13.0758 0x0cd8 WinDefend - ok 19:52:13.0758 0x0cd8 WinHttpAutoProxySvc - ok 19:52:13.0808 0x0cd8 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 19:52:13.0848 0x0cd8 Winmgmt - ok 19:52:13.0938 0x0cd8 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 19:52:13.0998 0x0cd8 WinRM - ok 19:52:14.0028 0x0cd8 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 19:52:14.0048 0x0cd8 WinUsb - ok 19:52:14.0088 0x0cd8 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 19:52:14.0138 0x0cd8 Wlansvc - ok 19:52:14.0148 0x0cd8 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 19:52:14.0158 0x0cd8 WmiAcpi - ok 19:52:14.0188 0x0cd8 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 19:52:14.0208 0x0cd8 wmiApSrv - ok 19:52:14.0228 0x0cd8 WMPNetworkSvc - ok 19:52:14.0238 0x0cd8 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 19:52:14.0248 0x0cd8 WPCSvc - ok 19:52:14.0268 0x0cd8 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 19:52:14.0288 0x0cd8 WPDBusEnum - ok 19:52:14.0308 0x0cd8 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 19:52:14.0338 0x0cd8 ws2ifsl - ok 19:52:14.0368 0x0cd8 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll 19:52:14.0388 0x0cd8 wscsvc - ok 19:52:14.0388 0x0cd8 WSearch - ok 19:52:14.0498 0x0cd8 [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv C:\Windows\system32\wuaueng.dll 19:52:14.0588 0x0cd8 wuauserv - ok 19:52:14.0618 0x0cd8 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 19:52:14.0628 0x0cd8 WudfPf - ok 19:52:14.0658 0x0cd8 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 19:52:14.0678 0x0cd8 WUDFRd - ok 19:52:14.0698 0x0cd8 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 19:52:14.0708 0x0cd8 wudfsvc - ok 19:52:14.0748 0x0cd8 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 19:52:14.0778 0x0cd8 WwanSvc - ok 19:52:14.0778 0x0cd8 xhunter1 - ok 19:52:14.0778 0x0cd8 ================ Scan global =============================== 19:52:14.0798 0x0cd8 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 19:52:14.0838 0x0cd8 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:52:14.0858 0x0cd8 [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll 19:52:14.0878 0x0cd8 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 19:52:14.0918 0x0cd8 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 19:52:14.0928 0x0cd8 [ Global ] - ok 19:52:14.0928 0x0cd8 ================ Scan MBR ================================== 19:52:14.0928 0x0cd8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 19:52:15.0448 0x0cd8 \Device\Harddisk0\DR0 - ok 19:52:15.0464 0x0cd8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 19:52:15.0696 0x0cd8 \Device\Harddisk1\DR1 - ok 19:52:15.0697 0x0cd8 ================ Scan VBR ================================== 19:52:15.0879 0x0cd8 [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1 19:52:15.0889 0x0cd8 \Device\Harddisk0\DR0\Partition1 - ok 19:52:15.0889 0x0cd8 [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2 19:52:15.0889 0x0cd8 \Device\Harddisk0\DR0\Partition2 - ok 19:52:15.0889 0x0cd8 [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1 19:52:15.0889 0x0cd8 \Device\Harddisk1\DR1\Partition1 - ok 19:52:15.0889 0x0cd8 ================ Scan generic autorun ====================== 19:52:16.0380 0x0cd8 [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 19:52:16.0690 0x0cd8 RtHDVCpl - ok 19:52:16.0836 0x0cd8 [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe 19:52:16.0861 0x0cd8 svchospt - detected UnsignedFile.Multi.Generic ( 1 ) 19:52:16.0861 0x0cd8 Detect skipped due to KSN trusted 19:52:16.0861 0x0cd8 svchospt - ok 19:52:16.0909 0x0cd8 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 19:52:16.0930 0x0cd8 SunJavaUpdateSched - ok 19:52:17.0149 0x0cd8 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:52:17.0259 0x0cd8 Akamai NetSession Interface - ok 19:52:17.0343 0x0cd8 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe 19:52:17.0390 0x0cd8 Sidebar - ok 19:52:17.0441 0x0cd8 [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe 19:52:17.0455 0x0cd8 BingSvc - ok 19:52:17.0456 0x0cd8 Chromium - ok 19:52:17.0616 0x0cd8 [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe 19:52:17.0726 0x0cd8 Akamai NetSession Interface - ok 19:52:17.0736 0x0cd8 Overwolf - ok 19:52:17.0747 0x0cd8 Win FW state via NFP2: enabled ( trusted ) 19:52:20.0103 0x0cd8 ============================================================ 19:52:20.0103 0x0cd8 Scan finished 19:52:20.0103 0x0cd8 ============================================================ 19:52:20.0103 0x08f4 Detected object count: 0 19:52:20.0103 0x08f4 Actual detected object count: 0 Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 02/12/2016 um 20:35:18 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-12-02.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : maplo - MAPLO-PC # Gestartet von : C:\Users\maplo\Downloads\AdwCleaner_6.030 (1).exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06] C:\AdwCleaner\AdwCleaner[C10].txt - [1026 Bytes] - [02/12/2016 20:35:18] C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32] C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06] C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01] C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27] C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58] C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44] C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53] C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02] C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22] C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02] C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28] C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44] C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45] C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15] C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04] C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59] C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29] C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33] C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01] C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54] C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40] C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25] C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12] C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25] C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35] C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58] C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22] C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24] C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56] C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19] C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39] C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29] C:\AdwCleaner\AdwCleaner[S31].txt - [4310 Bytes] - [01/12/2016 15:03:02] C:\AdwCleaner\AdwCleaner[S32].txt - [4384 Bytes] - [02/12/2016 12:37:01] C:\AdwCleaner\AdwCleaner[S33].txt - [4457 Bytes] - [02/12/2016 20:30:39] C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42] C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57] C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51] C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44] C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47] C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29] C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14] ########## EOF - C:\AdwCleaner\AdwCleaner[C10].txt - [4190 Bytes] ########## Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 02/12/2016 um 20:35:18 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-12-02.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : maplo - MAPLO-PC # Gestartet von : C:\Users\maplo\Downloads\AdwCleaner_6.030 (1).exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06] C:\AdwCleaner\AdwCleaner[C10].txt - [1026 Bytes] - [02/12/2016 20:35:18] C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32] C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06] C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01] C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27] C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58] C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44] C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53] C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02] C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22] C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02] C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28] C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44] C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45] C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15] C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04] C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59] C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29] C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33] C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01] C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54] C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40] C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25] C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12] C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25] C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35] C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58] C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22] C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24] C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56] C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19] C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39] C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29] C:\AdwCleaner\AdwCleaner[S31].txt - [4310 Bytes] - [01/12/2016 15:03:02] C:\AdwCleaner\AdwCleaner[S32].txt - [4384 Bytes] - [02/12/2016 12:37:01] C:\AdwCleaner\AdwCleaner[S33].txt - [4457 Bytes] - [02/12/2016 20:30:39] C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42] C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57] C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51] C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44] C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47] C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29] C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14] ########## EOF - C:\AdwCleaner\AdwCleaner[C10].txt - [4190 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.9 (09.30.2016) Operating System: Windows 7 Home Premium x64 Ran by maplo (Administrator) on 02.12.2016 at 20:53:01,33 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 8 Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1UJSKSDL (Temporary Internet Files Folder) Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7120RGYN (Temporary Internet Files Folder) Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IKB3PD42 (Temporary Internet Files Folder) Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ8WO2D9 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1UJSKSDL (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7120RGYN (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IKB3PD42 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ8WO2D9 (Temporary Internet Files Folder) Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 02.12.2016 at 20:55:17,47 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
02.12.2016, 22:51 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | unbekanntes Programm Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu unbekanntes Programm |
andere, anderen, antivirus, avast, avast free antivirus, chrome, einstellungen, festgestellt, free, gen, gestellt, google, google chrome, manipuliert, program, programm, unbekanntes, unbekanntes programm, unter |