|
Plagegeister aller Art und deren Bekämpfung: SOS - habe Trojaner ? mein PC läuft nur noch ganz langsamWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
28.10.2017, 19:21 | #1 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Bitte euch schon wieder um Hilfe. Mein PC (Win 7 , 64 bit ) läuft seit heute nur noch ganz langsam. Einige Programme lassen sich gar nicht öffnen, z.B Star Money: Fehlermeldung: " Das Sicherheitsmodul konnte Starmoney nicht starten , Fehler 575. " Habe Bitdefender gekauft, installieren geht aber nicht, da Benutzerkonto nicht zu eröffnen geht. Habe vorher Malwarebyte und Eset gelöscht, wie verlangt, bzw deinstalliert. Wollte als Sofortmaßnahme Free Version von Kaspersky Antivir ( 30 Tage Test) installieren, geht auch nicht. Nicht weis ich nicht mehr weiter. Internet geht nur noch ganz langsam . Ich hoffe, ihr könnt mir helfen, bin leider nicht der große PC - Spezi. Vorab vielen Dank |
28.10.2017, 20:36 | #2 |
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsamMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Um die Bereinigung möchlichst effektiv und schnell gestalten zu können, bitte ich um Beachtung der folgenden Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Schritt 2 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Bitte poste mit deiner nächsten Antwort
|
29.10.2017, 12:24 | #3 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias !
__________________Erst einmal Danke für deine Hilfe. Habe FRST64-Bit runtergeladen und es läuft auf " Untersuchen ". Aber es läuft sehr sehr langsam, es laufen gerade die Dienste durch. Weis nicht wie lange es laufen wird. Sowie ich txt habe, werde ich posten. mfg. Heinz |
29.10.2017, 14:22 | #4 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias hier kommen zunächst im Anhang die FRST.txt und die Addition.txt. TDSS Killer läuft ! Poste, wenn fertig. Gruß Heinz |
29.10.2017, 15:27 | #5 | ||
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Servus, ich sehe Malwarereste von 2012 auf diesem PC! Ich bezweifle, dass die Verlangsamung von Malware kommt. Stattdessen tippe ich auf ein Treiber-/Geräteproblem: Zitat:
Zitat:
Spricht etwas gegen eine Neuinstallation? Das würde ich hier zuerst empfehlen. |
29.10.2017, 19:14 | #6 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias Das wäre ärgerlich,wenn Mainbord oder Festplatte einen Schaden haben. Eine Neuinstallation ist machbar, aber nicht gerade wünschenswert. Macht es jetzt überhaupt noch für dich einen Sinn nach Fehlern zu suchen ? Ich sende dir noch jedenfalls den Report vom TDSS Killer, der aber " No treats found " hatte ( zwei Post,s) Hast du für mich noch einen Rat? Erster Teil: Code:
ATTFilter 13:59:22.0139 0x040c TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02 14:01:38.0563 0x040c ============================================================ 14:01:38.0563 0x040c Current date / time: 2017/10/29 14:01:38.0563 14:01:38.0563 0x040c SystemInfo: 14:01:38.0563 0x040c 14:01:38.0563 0x040c OS Version: 6.1.7601 ServicePack: 1.0 14:01:38.0563 0x040c Product type: Workstation 14:01:38.0564 0x040c ComputerName: HEINZELMANN-PC 14:01:38.0564 0x040c UserName: Heinzelmann 14:01:38.0564 0x040c Windows directory: C:\Windows 14:01:38.0564 0x040c System windows directory: C:\Windows 14:01:38.0564 0x040c Running under WOW64 14:01:38.0564 0x040c Processor architecture: Intel x64 14:01:38.0564 0x040c Number of processors: 4 14:01:38.0564 0x040c Page size: 0x1000 14:01:38.0564 0x040c Boot type: Normal boot 14:01:38.0564 0x040c CodeIntegrityOptions = 0x00000001 14:01:38.0564 0x040c ============================================================ 14:01:39.0600 0x040c KLMD registered as C:\Windows\system32\drivers\83069946.sys 14:01:39.0600 0x040c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23915, osProperties = 0x1 14:01:39.0807 0x040c System UUID: {BEDD57A7-4CBC-C527-5BD7-6D482E7A39DA} 14:01:40.0061 0x040c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:01:40.0081 0x040c ============================================================ 14:01:40.0081 0x040c \Device\Harddisk0\DR0: 14:01:40.0081 0x040c MBR partitions: 14:01:40.0081 0x040c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 14:01:40.0081 0x040c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32FC8, BlocksNum 0x4CA0065D 14:01:40.0100 0x040c \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x4CA34000, BlocksNum 0x27CCDB00 14:01:40.0100 0x040c ============================================================ 14:01:40.0150 0x040c C: <-> \Device\Harddisk0\DR0\Partition2 14:01:40.0177 0x040c J: <-> \Device\Harddisk0\DR0\Partition3 14:01:40.0177 0x040c ============================================================ 14:01:40.0177 0x040c Initialize success 14:01:40.0177 0x040c ============================================================ 14:05:16.0109 0x0e80 ============================================================ 14:05:16.0109 0x0e80 Scan started 14:05:16.0109 0x0e80 Mode: Manual; SigCheck; TDLFS; 14:05:16.0109 0x0e80 ============================================================ 14:05:16.0109 0x0e80 KSN ping started 14:05:16.0151 0x0e80 KSN ping finished: true 14:05:16.0832 0x0e80 ================ Scan system memory ======================== 14:05:16.0833 0x0e80 System memory - ok 14:05:16.0833 0x0e80 ================ Scan services ============================= 14:05:16.0966 0x0e80 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:05:28.0406 0x0e80 1394ohci - detected UnsignedFile.Multi.Generic ( 1 ) 14:05:28.0457 0x0e80 Detect skipped due to KSN trusted 14:05:28.0457 0x0e80 1394ohci - ok 14:05:47.0399 0x0e80 [ E0A8525A951ADDB4655BC2068566407D, 7C08B9DB7C281422FD64219DF81B7064CE16EA53CF00EB1FC33CB0741CE6605F ] 61883 C:\Windows\system32\DRIVERS\61883.sys 14:05:52.0448 0x0e80 61883 - detected UnsignedFile.Multi.Generic ( 1 ) 14:05:52.0497 0x0e80 Detect skipped due to KSN trusted 14:05:52.0497 0x0e80 61883 - ok 14:06:11.0561 0x0e80 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:06:11.0573 0x0e80 ACPI - ok 14:06:14.0647 0x0e80 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:06:24.0652 0x0e80 AcpiPmi - detected UnsignedFile.Multi.Generic ( 1 ) 14:06:24.0709 0x0e80 Detect skipped due to KSN trusted 14:06:24.0709 0x0e80 AcpiPmi - ok 14:06:41.0816 0x0e80 [ 9B112FDA1D5FB7B75627461001AC692A, 2EDF7C8FD59CD5FCD19FA528F60CBD6DDB9A8076AE0280B11D8EA8EAF7D39958 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:06:41.0822 0x0e80 AdobeARMservice - ok 14:06:41.0883 0x0e80 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 14:06:41.0896 0x0e80 adp94xx - ok 14:06:41.0942 0x0e80 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 14:06:41.0953 0x0e80 adpahci - ok 14:06:41.0963 0x0e80 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 14:06:41.0972 0x0e80 adpu320 - ok 14:06:41.0987 0x0e80 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:06:53.0524 0x0e80 AeLookupSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:06:53.0573 0x0e80 Detect skipped due to KSN trusted 14:06:53.0573 0x0e80 AeLookupSvc - ok 14:07:09.0192 0x0e80 [ 0DC2A9882540DEA4A55B08785E09D8FC, 69B15724B0034F9915AACE109A6C596D6AF2DA350FC18C9A0CD98C81CB7EDEE3 ] AFD C:\Windows\system32\drivers\afd.sys 14:07:14.0239 0x0e80 AFD - detected UnsignedFile.Multi.Generic ( 1 ) 14:07:14.0287 0x0e80 Detect skipped due to KSN trusted 14:07:14.0287 0x0e80 AFD - ok 14:07:30.0340 0x0e80 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 14:07:30.0346 0x0e80 agp440 - ok 14:07:36.0389 0x0e80 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 14:07:41.0412 0x0e80 ALG - detected UnsignedFile.Multi.Generic ( 1 ) 14:07:41.0461 0x0e80 Detect skipped due to KSN trusted 14:07:41.0461 0x0e80 ALG - ok 14:07:54.0556 0x0e80 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 14:07:54.0562 0x0e80 aliide - ok 14:08:00.0551 0x0e80 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 14:08:00.0557 0x0e80 amdide - ok 14:08:03.0606 0x0e80 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 14:08:08.0660 0x0e80 AmdK8 - detected UnsignedFile.Multi.Generic ( 1 ) 14:08:08.0708 0x0e80 Detect skipped due to KSN trusted 14:08:08.0708 0x0e80 AmdK8 - ok 14:08:13.0233 0x0e80 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:08:24.0966 0x0e80 AmdPPM - detected UnsignedFile.Multi.Generic ( 1 ) 14:08:25.0014 0x0e80 Detect skipped due to KSN trusted 14:08:25.0014 0x0e80 AmdPPM - ok 14:08:31.0023 0x0e80 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:08:31.0030 0x0e80 amdsata - ok 14:08:31.0073 0x0e80 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 14:08:31.0082 0x0e80 amdsbs - ok 14:08:31.0098 0x0e80 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:08:31.0103 0x0e80 amdxata - ok 14:08:31.0129 0x0e80 [ C16B5B379A2A79702CC5FF923EAAE3FD, FD6A1E3C46282CF77AFA9FB4B4ACE2DB6295DFB0C69EA07BE7160538041CDB2F ] AppID C:\Windows\system32\drivers\appid.sys 14:08:41.0133 0x0e80 AppID - detected UnsignedFile.Multi.Generic ( 1 ) 14:08:41.0182 0x0e80 Detect skipped due to KSN trusted 14:08:41.0182 0x0e80 AppID - ok 14:08:52.0484 0x0e80 [ 5152D6B29C61EF59537DBDA92BFE2978, 6D426A0FEE016A8899ADE864DD84BE019C5B5DB7E1DB295ED720239877FCB3EF ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:08:58.0503 0x0e80 AppIDSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:08:58.0551 0x0e80 Detect skipped due to KSN trusted 14:08:58.0551 0x0e80 AppIDSvc - ok 14:08:58.0607 0x0e80 [ DE23E052E557580674785CDF45B613F3, A955ADC6CC7D816BA7CE1065F911E7A3295A1908C22BE0A3C506C38CFEE8DE0D ] Appinfo C:\Windows\System32\appinfo.dll 14:09:09.0952 0x0e80 Appinfo - detected UnsignedFile.Multi.Generic ( 1 ) 14:09:10.0001 0x0e80 Detect skipped due to KSN trusted 14:09:10.0002 0x0e80 Appinfo - ok 14:09:16.0810 0x0e80 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 14:09:16.0817 0x0e80 arc - ok 14:09:25.0920 0x0e80 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 14:09:25.0928 0x0e80 arcsas - ok 14:09:26.0041 0x0e80 [ 0AA7A996792FB0287B33A57A8093AE44, 41894F055F3CDA05794FC46E1F2C59979D1DAF7602F44E4ADF6347E199B8137C ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys 14:09:36.0051 0x0e80 asmthub3 - detected UnsignedFile.Multi.Generic ( 1 ) 14:09:36.0110 0x0e80 Detect skipped due to KSN trusted 14:09:36.0110 0x0e80 asmthub3 - ok 14:09:53.0271 0x0e80 [ 125DC3ABF5BFCCFE82AD17D078E0B9EC, FEFF8C37CD688F39C8E341F8BF7A712AA8C0F431B064E07C3EA66A96250D855B ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys 14:09:58.0319 0x0e80 asmtxhci - detected UnsignedFile.Multi.Generic ( 1 ) 14:09:58.0370 0x0e80 Detect skipped due to KSN trusted 14:09:58.0370 0x0e80 asmtxhci - ok 14:10:20.0732 0x0e80 [ 8637F3119057178364D200F2462E625C, 40CAE47AA6C6B23FEB95961FD06BB3EB075CA63BB91B54CB26215A368371B343 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:10:20.0740 0x0e80 aspnet_state - ok 14:10:20.0791 0x0e80 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:10:30.0795 0x0e80 AsyncMac - detected UnsignedFile.Multi.Generic ( 1 ) 14:10:30.0844 0x0e80 Detect skipped due to KSN trusted 14:10:30.0844 0x0e80 AsyncMac - ok 14:10:36.0137 0x0e80 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 14:10:42.0051 0x0e80 atapi - ok 14:10:48.0219 0x0e80 [ 36322190763845975E0D001E90687BF2, EA3DB2D112015CA5C744C5A84CDEFF6D02CE7D0E7E6E141AE3E527C2FAB5600E ] athur C:\Windows\system32\DRIVERS\athurx.sys 14:10:58.0255 0x0e80 athur - detected UnsignedFile.Multi.Generic ( 1 ) 14:10:58.0304 0x0e80 Detect skipped due to KSN trusted 14:10:58.0305 0x0e80 athur - ok 14:11:15.0524 0x0e80 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:11:25.0541 0x0e80 AudioEndpointBuilder - detected UnsignedFile.Multi.Generic ( 1 ) 14:11:25.0590 0x0e80 Detect skipped due to KSN trusted 14:11:25.0590 0x0e80 AudioEndpointBuilder - ok 14:11:42.0962 0x0e80 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:11:47.0982 0x0e80 AudioSrv - detected UnsignedFile.Multi.Generic ( 1 ) 14:11:47.0982 0x0e80 Detect skipped due to KSN trusted 14:11:47.0982 0x0e80 AudioSrv - ok 14:12:10.0367 0x0e80 [ 16FABE84916623D0607E4A975544032C, 9D960CAE27B1769ED5B024C0A3375912432521C73C1F59E21111596A7981BDC3 ] Avc C:\Windows\system32\DRIVERS\avc.sys 14:12:16.0863 0x0e80 Avc - detected UnsignedFile.Multi.Generic ( 1 ) 14:12:16.0919 0x0e80 Detect skipped due to KSN trusted 14:12:16.0919 0x0e80 Avc - ok 14:12:31.0620 0x0e80 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:12:37.0551 0x0e80 AxInstSV - detected UnsignedFile.Multi.Generic ( 1 ) 14:12:37.0600 0x0e80 Detect skipped due to KSN trusted 14:12:37.0600 0x0e80 AxInstSV - ok 14:12:37.0654 0x0e80 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 14:12:47.0666 0x0e80 b06bdrv - detected UnsignedFile.Multi.Generic ( 1 ) 14:12:47.0714 0x0e80 Detect skipped due to KSN trusted 14:12:47.0714 0x0e80 b06bdrv - ok 14:12:56.0062 0x0e80 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:13:04.0982 0x0e80 b57nd60a - detected UnsignedFile.Multi.Generic ( 1 ) 14:13:05.0030 0x0e80 Detect skipped due to KSN trusted 14:13:05.0030 0x0e80 b57nd60a - ok 14:13:05.0082 0x0e80 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 14:13:15.0086 0x0e80 BDESVC - detected UnsignedFile.Multi.Generic ( 1 ) 14:13:15.0137 0x0e80 Detect skipped due to KSN trusted 14:13:15.0137 0x0e80 BDESVC - ok 14:13:32.0499 0x0e80 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 14:13:37.0621 0x0e80 Beep - detected UnsignedFile.Multi.Generic ( 1 ) 14:13:37.0680 0x0e80 Detect skipped due to KSN trusted 14:13:37.0680 0x0e80 Beep - ok 14:13:59.0739 0x0e80 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 14:14:04.0797 0x0e80 BFE - detected UnsignedFile.Multi.Generic ( 1 ) 14:14:04.0844 0x0e80 Detect skipped due to KSN trusted 14:14:04.0845 0x0e80 BFE - ok 14:14:27.0002 0x0e80 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 14:14:39.0427 0x0e80 BITS - detected UnsignedFile.Multi.Generic ( 1 ) 14:14:39.0487 0x0e80 Detect skipped due to KSN trusted 14:14:39.0487 0x0e80 BITS - ok 14:14:45.0466 0x0e80 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:14:54.0438 0x0e80 blbdrive - detected UnsignedFile.Multi.Generic ( 1 ) 14:14:54.0493 0x0e80 Detect skipped due to KSN trusted 14:14:54.0493 0x0e80 blbdrive - ok 14:14:54.0533 0x0e80 [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:15:04.0538 0x0e80 bowser - detected UnsignedFile.Multi.Generic ( 1 ) 14:15:04.0708 0x0e80 Detect skipped due to KSN trusted 14:15:04.0708 0x0e80 bowser - ok 14:15:09.0717 0x0e80 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:15:21.0757 0x0e80 BrFiltLo - detected UnsignedFile.Multi.Generic ( 1 ) 14:15:21.0805 0x0e80 Detect skipped due to KSN trusted 14:15:21.0805 0x0e80 BrFiltLo - ok 14:15:21.0837 0x0e80 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:15:31.0841 0x0e80 BrFiltUp - detected UnsignedFile.Multi.Generic ( 1 ) 14:15:31.0891 0x0e80 Detect skipped due to KSN trusted 14:15:31.0891 0x0e80 BrFiltUp - ok 14:15:45.0835 0x0e80 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 14:15:53.0924 0x0e80 Browser - detected UnsignedFile.Multi.Generic ( 1 ) 14:15:53.0983 0x0e80 Detect skipped due to KSN trusted 14:15:53.0983 0x0e80 Browser - ok 14:16:13.0179 0x0e80 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:16:21.0160 0x0e80 Brserid - detected UnsignedFile.Multi.Generic ( 1 ) 14:16:21.0209 0x0e80 Detect skipped due to KSN trusted 14:16:21.0209 0x0e80 Brserid - ok 14:16:28.0563 0x0e80 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:16:41.0468 0x0e80 BrSerWdm - detected UnsignedFile.Multi.Generic ( 1 ) 14:16:41.0547 0x0e80 Detect skipped due to KSN trusted 14:16:41.0547 0x0e80 BrSerWdm - ok 14:16:43.0498 0x0e80 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:16:48.0593 0x0e80 BrUsbMdm - detected UnsignedFile.Multi.Generic ( 1 ) 14:16:48.0642 0x0e80 Detect skipped due to KSN trusted 14:16:48.0642 0x0e80 BrUsbMdm - ok 14:17:02.0104 0x0e80 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:17:11.0061 0x0e80 BrUsbSer - detected UnsignedFile.Multi.Generic ( 1 ) 14:17:11.0120 0x0e80 Detect skipped due to KSN trusted 14:17:11.0120 0x0e80 BrUsbSer - ok 14:17:11.0163 0x0e80 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 14:17:23.0501 0x0e80 BTHMODEM - detected UnsignedFile.Multi.Generic ( 1 ) 14:17:23.0560 0x0e80 Detect skipped due to KSN trusted 14:17:23.0560 0x0e80 BTHMODEM - ok 14:17:35.0525 0x0e80 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 14:17:43.0530 0x0e80 bthserv - detected UnsignedFile.Multi.Generic ( 1 ) 14:17:43.0580 0x0e80 Detect skipped due to KSN trusted 14:17:43.0580 0x0e80 bthserv - ok 14:17:47.0996 0x0e80 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:17:58.0910 0x0e80 cdfs - detected UnsignedFile.Multi.Generic ( 1 ) 14:17:58.0958 0x0e80 Detect skipped due to KSN trusted 14:17:58.0958 0x0e80 cdfs - ok 14:18:05.0724 0x0e80 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 14:18:10.0747 0x0e80 cdrom - detected UnsignedFile.Multi.Generic ( 1 ) 14:18:10.0795 0x0e80 Detect skipped due to KSN trusted 14:18:10.0795 0x0e80 cdrom - ok 14:18:18.0177 0x0e80 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 14:18:31.0914 0x0e80 CertPropSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:18:31.0973 0x0e80 Detect skipped due to KSN trusted 14:18:31.0973 0x0e80 CertPropSvc - ok 14:18:32.0784 0x0e80 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 14:18:39.0275 0x0e80 circlass - detected UnsignedFile.Multi.Generic ( 1 ) 14:18:39.0324 0x0e80 Detect skipped due to KSN trusted 14:18:39.0324 0x0e80 circlass - ok 14:19:00.0124 0x0e80 [ 3963FEC1892368DD500E6ED1F5C286CE, A04689CB07AF1C1B4B1032B0ACAD88DA3EB03D89A575C59FE602A65E8C246138 ] CLFS C:\Windows\system32\CLFS.sys 14:19:00.0148 0x0e80 CLFS - ok 14:19:00.0253 0x0e80 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:19:00.0259 0x0e80 clr_optimization_v2.0.50727_32 - ok 14:19:00.0270 0x0e80 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:19:00.0276 0x0e80 clr_optimization_v2.0.50727_64 - ok 14:19:00.0343 0x0e80 [ 2BA609641FA64BAB02ACD3C0095672F5, FD1FE403864F0564CA4A2F1D7415649B8FFE16F8ED33C4B44ACB21767118AD5F ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:19:00.0352 0x0e80 clr_optimization_v4.0.30319_32 - ok 14:19:00.0366 0x0e80 [ 7C7502CD2A2CFAB399D0D8DA95DB03E7, 4AE53B468CF597FCFD912A6EEE27E87EE4D9BC73F2A794FB5DF5DA46C1DD1289 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:19:00.0374 0x0e80 clr_optimization_v4.0.30319_64 - ok 14:19:00.0403 0x0e80 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 14:19:10.0406 0x0e80 CmBatt - detected UnsignedFile.Multi.Generic ( 1 ) 14:19:10.0457 0x0e80 Detect skipped due to KSN trusted 14:19:10.0457 0x0e80 CmBatt - ok 14:19:24.0739 0x0e80 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:19:24.0745 0x0e80 cmdide - ok 14:19:27.0724 0x0e80 [ A98CED39AD91B445E2E442A9BD67E8B4, B4189DEEF1C0EE22AE983119047B1A40FFDD8F3E163DFFABD7C2706231B0B1B0 ] CNG C:\Windows\system32\Drivers\cng.sys 14:19:27.0741 0x0e80 CNG - ok 14:19:27.0775 0x0e80 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 14:19:27.0781 0x0e80 Compbatt - ok 14:19:27.0806 0x0e80 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 14:19:37.0812 0x0e80 CompositeBus - detected UnsignedFile.Multi.Generic ( 1 ) 14:19:37.0868 0x0e80 Detect skipped due to KSN trusted 14:19:37.0868 0x0e80 CompositeBus - ok 14:19:40.0133 0x0e80 COMSysApp - ok 14:19:46.0008 0x0e80 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 14:19:46.0014 0x0e80 crcdisk - ok 14:19:51.0954 0x0e80 [ 48FEDBE324F1EA9417BA1D62AE863011, 2C3D84F0842237A3BF2838DDB4126807977EB36588FA669B1E6671077584EF18 ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:19:59.0978 0x0e80 CryptSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:20:00.0027 0x0e80 Detect skipped due to KSN trusted 14:20:00.0027 0x0e80 CryptSvc - ok 14:20:07.0182 0x0e80 DCamUSBSTK03N - ok 14:20:22.0066 0x0e80 [ 3F1A199859B4F3F8357B2A0AF5666A54, B0ACE9384088B7D0E54CF82BF48D4FEAA518BDEF98A294BA8F5A37DFF0E45328 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:20:28.0427 0x0e80 DcomLaunch - detected UnsignedFile.Multi.Generic ( 1 ) 14:20:28.0475 0x0e80 Detect skipped due to KSN trusted 14:20:28.0476 0x0e80 DcomLaunch - ok 14:20:49.0185 0x0e80 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 14:20:58.0574 0x0e80 defragsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:20:58.0629 0x0e80 Detect skipped due to KSN trusted 14:20:58.0629 0x0e80 defragsvc - ok 14:21:16.0424 0x0e80 [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:21:21.0524 0x0e80 DfsC - detected UnsignedFile.Multi.Generic ( 1 ) 14:21:21.0573 0x0e80 Detect skipped due to KSN trusted 14:21:21.0573 0x0e80 DfsC - ok 14:21:43.0750 0x0e80 [ D51B32BA3897F630D99713B74B40D6A2, 5EB136A8248E6FA1316CFA273D9DC8F9C8E8CCB9AC00AE23C1337FBF5F6FDBEC ] DfSdkS C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2017\DfsdkS64.exe 14:21:53.0764 0x0e80 DfSdkS - detected UnsignedFile.Multi.Generic ( 1 ) 14:21:53.0813 0x0e80 Detect skipped due to KSN trusted 14:21:53.0814 0x0e80 DfSdkS - ok 14:22:01.0967 0x0e80 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 14:22:10.0963 0x0e80 Dhcp - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:11.0023 0x0e80 Detect skipped due to KSN trusted 14:22:11.0023 0x0e80 Dhcp - ok 14:22:11.0146 0x0e80 [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack C:\Windows\system32\diagtrack.dll 14:22:21.0172 0x0e80 DiagTrack - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:21.0221 0x0e80 Detect skipped due to KSN trusted 14:22:21.0221 0x0e80 DiagTrack - ok 14:22:26.0517 0x0e80 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 14:22:36.0520 0x0e80 discache - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:36.0569 0x0e80 Detect skipped due to KSN trusted 14:22:36.0569 0x0e80 discache - ok 14:22:38.0383 0x0e80 [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk C:\Windows\system32\drivers\disk.sys 14:22:38.0391 0x0e80 Disk - ok 14:22:38.0443 0x0e80 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:22:48.0451 0x0e80 Dnscache - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:48.0499 0x0e80 Detect skipped due to KSN trusted 14:22:48.0499 0x0e80 Dnscache - ok 14:22:56.0642 0x0e80 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 14:23:12.0006 0x0e80 dot3svc - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:12.0062 0x0e80 Detect skipped due to KSN trusted 14:23:12.0062 0x0e80 dot3svc - ok 14:23:32.0799 0x0e80 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 14:23:37.0880 0x0e80 DPS - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:37.0929 0x0e80 Detect skipped due to KSN trusted 14:23:37.0929 0x0e80 DPS - ok 14:23:42.0198 0x0e80 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:23:52.0202 0x0e80 drmkaud - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:52.0251 0x0e80 Detect skipped due to KSN trusted 14:23:52.0251 0x0e80 drmkaud - ok 14:23:59.0961 0x0e80 [ 5CEF80AE869336376F550ECAE91E424A, 49152AC35556A5629AE7A4A762FDB2112FAD1C9CDB91E6196172809F74A3149A ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:23:59.0983 0x0e80 DXGKrnl - ok 14:24:00.0036 0x0e80 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 14:24:11.0515 0x0e80 EapHost - detected UnsignedFile.Multi.Generic ( 1 ) 14:24:11.0564 0x0e80 Detect skipped due to KSN trusted 14:24:11.0564 0x0e80 EapHost - ok 14:24:27.0633 0x0e80 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 14:24:37.0693 0x0e80 ebdrv - detected UnsignedFile.Multi.Generic ( 1 ) 14:24:37.0750 0x0e80 Detect skipped due to KSN trusted 14:24:37.0751 0x0e80 ebdrv - ok 14:24:46.0057 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] EFS C:\Windows\System32\lsass.exe 14:24:54.0997 0x0e80 EFS - detected UnsignedFile.Multi.Generic ( 1 ) 14:24:55.0047 0x0e80 Detect skipped due to KSN trusted 14:24:55.0047 0x0e80 EFS - ok 14:24:55.0143 0x0e80 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:25:05.0160 0x0e80 ehRecvr - detected UnsignedFile.Multi.Generic ( 1 ) 14:25:05.0210 0x0e80 Detect skipped due to KSN trusted 14:25:05.0211 0x0e80 ehRecvr - ok 14:25:13.0484 0x0e80 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 14:25:22.0532 0x0e80 ehSched - detected UnsignedFile.Multi.Generic ( 1 ) 14:25:22.0581 0x0e80 Detect skipped due to KSN trusted 14:25:22.0581 0x0e80 ehSched - ok 14:25:22.0688 0x0e80 [ 568F7FB00D308AC75D61DF6C61A09B83, D1DDEC268845097C54496220CDF297C0D2B85C312219B5A3AE9BFA35D82AF2CF ] ElfoService C:\Program Files (x86)\ElsterFormular Update Service\bin\ElfoService.exe 14:25:22.0722 0x0e80 ElfoService - ok 14:25:22.0761 0x0e80 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 14:25:22.0775 0x0e80 elxstor - ok 14:25:22.0791 0x0e80 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:25:32.0794 0x0e80 ErrDev - detected UnsignedFile.Multi.Generic ( 1 ) 14:25:32.0843 0x0e80 Detect skipped due to KSN trusted 14:25:32.0843 0x0e80 ErrDev - ok 14:25:50.0067 0x0e80 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 14:25:56.0567 0x0e80 EventSystem - detected UnsignedFile.Multi.Generic ( 1 ) 14:25:56.0623 0x0e80 Detect skipped due to KSN trusted 14:25:56.0623 0x0e80 EventSystem - ok 14:26:02.0507 0x0e80 [ 7E45F8B117419ABA3BB26579F6E70324, 03FE86519860153E1BE571F10ACC9BA58FFB5A661C5C3EBDF3B77973BCD96C84 ] exfat C:\Windows\system32\drivers\exfat.sys 14:26:12.0514 0x0e80 exfat - detected UnsignedFile.Multi.Generic ( 1 ) 14:26:12.0562 0x0e80 Detect skipped due to KSN trusted 14:26:12.0562 0x0e80 exfat - ok 14:26:17.0401 0x0e80 [ 6EDFA237D25433C03F42FBFDB16BDD24, A30F89A40F7AFC475D3C2D3591FB9AFC06AE3FEBC915FDCB24ED77946FBA4E2C ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:26:22.0472 0x0e80 fastfat - detected UnsignedFile.Multi.Generic ( 1 ) 14:26:22.0521 0x0e80 Detect skipped due to KSN trusted 14:26:22.0521 0x0e80 fastfat - ok 14:26:44.0776 0x0e80 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 14:26:51.0193 0x0e80 Fax - detected UnsignedFile.Multi.Generic ( 1 ) 14:26:51.0241 0x0e80 Detect skipped due to KSN trusted 14:26:51.0241 0x0e80 Fax - ok 14:26:57.0296 0x0e80 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 14:27:08.0962 0x0e80 fdc - detected UnsignedFile.Multi.Generic ( 1 ) 14:27:09.0018 0x0e80 Detect skipped due to KSN trusted 14:27:09.0018 0x0e80 fdc - ok 14:27:12.0060 0x0e80 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 14:27:18.0716 0x0e80 fdPHost - detected UnsignedFile.Multi.Generic ( 1 ) 14:27:18.0764 0x0e80 Detect skipped due to KSN trusted 14:27:18.0764 0x0e80 fdPHost - ok 14:27:30.0389 0x0e80 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 14:27:39.0230 0x0e80 FDResPub - detected UnsignedFile.Multi.Generic ( 1 ) 14:27:39.0278 0x0e80 Detect skipped due to KSN trusted 14:27:39.0278 0x0e80 FDResPub - ok 14:27:39.0303 0x0e80 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:27:39.0310 0x0e80 FileInfo - ok 14:27:39.0320 0x0e80 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:27:49.0323 0x0e80 Filetrace - detected UnsignedFile.Multi.Generic ( 1 ) 14:27:49.0373 0x0e80 Detect skipped due to KSN trusted 14:27:49.0373 0x0e80 Filetrace - ok 14:27:54.0590 0x0e80 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 14:28:04.0595 0x0e80 flpydisk - detected UnsignedFile.Multi.Generic ( 1 ) 14:28:04.0642 0x0e80 Detect skipped due to KSN trusted 14:28:04.0642 0x0e80 flpydisk - ok 14:28:06.0622 0x0e80 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:28:06.0632 0x0e80 FltMgr - ok 14:28:06.0683 0x0e80 [ 785F474FB5E67E448E1931C98E8D0ABC, 911697D580CBF508A6F4A52D4F95A6976CF9A0EC3549076A8D0B5C8BD947C989 ] FontCache C:\Windows\system32\FntCache.dll 14:28:16.0708 0x0e80 FontCache - detected UnsignedFile.Multi.Generic ( 1 ) 14:28:16.0765 0x0e80 Detect skipped due to KSN trusted 14:28:16.0765 0x0e80 FontCache - ok 14:28:34.0016 0x0e80 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:28:34.0022 0x0e80 FontCache3.0.0.0 - ok 14:28:34.0144 0x0e80 [ 6456E172CBF023E7D8985ADF0560736E, 15502D644270FEE8B9B883C2C7C69615E83F9EC35F5A727130945A2B11E67FF6 ] Freemake Improver C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe 14:28:34.0152 0x0e80 Freemake Improver - ok 14:28:34.0199 0x0e80 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:28:34.0206 0x0e80 FsDepends - ok 14:28:34.0239 0x0e80 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:28:34.0245 0x0e80 Fs_Rec - ok 14:28:34.0286 0x0e80 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:28:34.0297 0x0e80 fvevol - ok 14:28:34.0312 0x0e80 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 14:28:34.0318 0x0e80 gagp30kx - ok 14:28:34.0351 0x0e80 [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc C:\Windows\System32\gpsvc.dll 14:28:49.0613 0x0e80 gpsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:28:49.0661 0x0e80 Detect skipped due to KSN trusted 14:28:49.0662 0x0e80 gpsvc - ok 14:29:01.0704 0x0e80 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:29:01.0729 0x0e80 gupdate - ok 14:29:01.0785 0x0e80 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:29:01.0792 0x0e80 gupdatem - ok 14:29:01.0819 0x0e80 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:29:14.0335 0x0e80 hcw85cir - detected UnsignedFile.Multi.Generic ( 1 ) 14:29:14.0383 0x0e80 Detect skipped due to KSN trusted 14:29:14.0383 0x0e80 hcw85cir - ok 14:29:29.0601 0x0e80 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:29:36.0024 0x0e80 HdAudAddService - detected UnsignedFile.Multi.Generic ( 1 ) 14:29:36.0082 0x0e80 Detect skipped due to KSN trusted 14:29:36.0082 0x0e80 HdAudAddService - ok 14:29:39.0001 0x0e80 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 14:29:50.0825 0x0e80 HDAudBus - detected UnsignedFile.Multi.Generic ( 1 ) 14:29:50.0873 0x0e80 Detect skipped due to KSN trusted 14:29:50.0873 0x0e80 HDAudBus - ok 14:29:56.0840 0x0e80 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 14:30:03.0409 0x0e80 HidBatt - detected UnsignedFile.Multi.Generic ( 1 ) 14:30:03.0655 0x0e80 Detect skipped due to KSN trusted 14:30:03.0655 0x0e80 HidBatt - ok 14:30:06.0395 0x0e80 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 14:30:18.0224 0x0e80 HidBth - detected UnsignedFile.Multi.Generic ( 1 ) 14:30:18.0271 0x0e80 Detect skipped due to KSN trusted 14:30:18.0271 0x0e80 HidBth - ok 14:30:24.0160 0x0e80 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 14:30:29.0207 0x0e80 HidIr - detected UnsignedFile.Multi.Generic ( 1 ) 14:30:29.0256 0x0e80 Detect skipped due to KSN trusted 14:30:29.0256 0x0e80 HidIr - ok 14:30:36.0688 0x0e80 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 14:30:47.0554 0x0e80 hidserv - detected UnsignedFile.Multi.Generic ( 1 ) 14:30:47.0610 0x0e80 Detect skipped due to KSN trusted 14:30:47.0610 0x0e80 hidserv - ok 14:30:51.0485 0x0e80 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 14:31:01.0489 0x0e80 HidUsb - detected UnsignedFile.Multi.Generic ( 1 ) 14:31:01.0538 0x0e80 Detect skipped due to KSN trusted 14:31:01.0538 0x0e80 HidUsb - ok 14:31:12.0649 0x0e80 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:31:18.0652 0x0e80 hkmsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:31:18.0700 0x0e80 Detect skipped due to KSN trusted 14:31:18.0700 0x0e80 hkmsvc - ok 14:31:18.0757 0x0e80 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:31:30.0136 0x0e80 HomeGroupListener - detected UnsignedFile.Multi.Generic ( 1 ) 14:31:30.0185 0x0e80 Detect skipped due to KSN trusted 14:31:30.0185 0x0e80 HomeGroupListener - ok 14:31:39.0991 0x0e80 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:31:45.0929 0x0e80 HomeGroupProvider - detected UnsignedFile.Multi.Generic ( 1 ) 14:31:45.0977 0x0e80 Detect skipped due to KSN trusted 14:31:45.0977 0x0e80 HomeGroupProvider - ok 14:31:46.0005 0x0e80 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:31:46.0011 0x0e80 HpSAMD - ok 14:31:46.0048 0x0e80 [ CF5C9BD985120781200D35FD445D0BD5, 91B37F595A196542458CBBCDAD80779721D228A7030A34E55995DDBB06649248 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:31:57.0677 0x0e80 HTTP - detected UnsignedFile.Multi.Generic ( 1 ) 14:31:57.0725 0x0e80 Detect skipped due to KSN trusted 14:31:57.0725 0x0e80 HTTP - ok 14:32:10.0450 0x0e80 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:32:10.0456 0x0e80 hwpolicy - ok 14:32:13.0632 0x0e80 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 14:32:23.0637 0x0e80 i8042prt - detected UnsignedFile.Multi.Generic ( 1 ) 14:32:23.0686 0x0e80 Detect skipped due to KSN trusted 14:32:23.0686 0x0e80 i8042prt - ok 14:32:40.0936 0x0e80 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:32:40.0948 0x0e80 iaStorV - ok 14:32:41.0045 0x0e80 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:32:41.0065 0x0e80 idsvc - ok 14:32:41.0100 0x0e80 IEEtwCollectorService - ok 14:32:41.0124 0x0e80 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 14:32:41.0130 0x0e80 iirsp - ok 14:32:41.0212 0x0e80 [ CE1EE31FFF730CA975A5535D8A71AF61, A1808EB92EC2444F9309C93F5724A7A374F4B983862829BF9B076C8D3B2427DE ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 14:32:41.0218 0x0e80 IJPLMSVC - ok 14:32:41.0266 0x0e80 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 14:32:53.0628 0x0e80 IKEEXT - detected UnsignedFile.Multi.Generic ( 1 ) 14:32:53.0724 0x0e80 Detect skipped due to KSN trusted 14:32:53.0724 0x0e80 IKEEXT - ok 14:33:08.0877 0x0e80 [ EB5FA493A4B6EA290200AE39EBA2FBC6, 1C2797058A52D87D0F4412F40D372BABB7E4E4146F6DA5F4FFB7C6BA026A1FAC ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 14:33:08.0930 0x0e80 IntcAzAudAddService - ok 14:33:08.0971 0x0e80 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 14:33:08.0977 0x0e80 intelide - ok 14:33:09.0006 0x0e80 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 14:33:19.0012 0x0e80 intelppm - detected UnsignedFile.Multi.Generic ( 1 ) 14:33:19.0060 0x0e80 Detect skipped due to KSN trusted 14:33:19.0060 0x0e80 intelppm - ok 14:33:36.0146 0x0e80 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:33:41.0194 0x0e80 IPBusEnum - detected UnsignedFile.Multi.Generic ( 1 ) 14:33:41.0243 0x0e80 Detect skipped due to KSN trusted 14:33:41.0243 0x0e80 IPBusEnum - ok 14:33:48.0701 0x0e80 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:34:01.0654 0x0e80 IpFilterDriver - detected UnsignedFile.Multi.Generic ( 1 ) 14:34:01.0710 0x0e80 Detect skipped due to KSN trusted 14:34:01.0710 0x0e80 IpFilterDriver - ok 14:34:03.0538 0x0e80 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 14:34:13.0552 0x0e80 iphlpsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:34:13.0601 0x0e80 Detect skipped due to KSN trusted 14:34:13.0601 0x0e80 iphlpsvc - ok 14:34:24.0847 0x0e80 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:34:31.0017 0x0e80 IPMIDRV - detected UnsignedFile.Multi.Generic ( 1 ) 14:34:31.0065 0x0e80 Detect skipped due to KSN trusted 14:34:31.0065 0x0e80 IPMIDRV - ok 14:34:31.0103 0x0e80 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:34:41.0109 0x0e80 IPNAT - detected UnsignedFile.Multi.Generic ( 1 ) 14:34:41.0158 0x0e80 Detect skipped due to KSN trusted 14:34:41.0158 0x0e80 IPNAT - ok 14:34:49.0422 0x0e80 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:34:58.0405 0x0e80 IRENUM - detected UnsignedFile.Multi.Generic ( 1 ) 14:34:58.0452 0x0e80 Detect skipped due to KSN trusted 14:34:58.0452 0x0e80 IRENUM - ok 14:34:58.0492 0x0e80 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:34:58.0498 0x0e80 isapnp - ok 14:34:58.0520 0x0e80 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:34:58.0530 0x0e80 iScsiPrt - ok 14:34:58.0540 0x0e80 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 14:34:58.0547 0x0e80 kbdclass - ok 14:34:58.0561 0x0e80 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 14:35:08.0565 0x0e80 kbdhid - detected UnsignedFile.Multi.Generic ( 1 ) 14:35:08.0718 0x0e80 Detect skipped due to KSN trusted 14:35:08.0718 0x0e80 kbdhid - ok 14:35:10.0994 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] KeyIso C:\Windows\system32\lsass.exe 14:35:25.0005 0x0e80 KeyIso - detected UnsignedFile.Multi.Generic ( 1 ) 14:35:25.0005 0x0e80 Detect skipped due to KSN trusted 14:35:25.0005 0x0e80 KeyIso - ok 14:35:26.0109 0x0e80 [ DFE85B031220F8E0271716BBB3C4C8FF, 531AB0851AE2F2B25D751605529C483B4734E5D26F94F56DEC0191730DD6A9A4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:35:26.0116 0x0e80 KSecDD - ok 14:35:26.0138 0x0e80 [ 70D7302DD70B979637179BFD8295C924, 7A3498C8A90AC5D7A070E9BCAF1BC0D16F478A7160A9333C58247034C5B3B59F ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:35:26.0145 0x0e80 KSecPkg - ok 14:35:26.0167 0x0e80 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:35:36.0172 0x0e80 ksthunk - detected UnsignedFile.Multi.Generic ( 1 ) 14:35:36.0221 0x0e80 Detect skipped due to KSN trusted 14:35:36.0221 0x0e80 ksthunk - ok 14:35:53.0635 0x0e80 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 14:35:58.0665 0x0e80 KtmRm - detected UnsignedFile.Multi.Generic ( 1 ) 14:35:58.0715 0x0e80 Detect skipped due to KSN trusted 14:35:58.0715 0x0e80 KtmRm - ok 14:36:20.0924 0x0e80 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 14:36:27.0388 0x0e80 LanmanServer - detected UnsignedFile.Multi.Generic ( 1 ) 14:36:27.0444 0x0e80 Detect skipped due to KSN trusted 14:36:27.0444 0x0e80 LanmanServer - ok 14:36:33.0342 0x0e80 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:36:46.0240 0x0e80 LanmanWorkstation - detected UnsignedFile.Multi.Generic ( 1 ) 14:36:46.0288 0x0e80 Detect skipped due to KSN trusted 14:36:46.0288 0x0e80 LanmanWorkstation - ok 14:36:48.0221 0x0e80 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:36:54.0763 0x0e80 lltdio - detected UnsignedFile.Multi.Generic ( 1 ) 14:36:54.0813 0x0e80 Detect skipped due to KSN trusted 14:36:54.0813 0x0e80 lltdio - ok 14:37:03.0592 0x0e80 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:37:13.0601 0x0e80 lltdsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:37:13.0649 0x0e80 Detect skipped due to KSN trusted 14:37:13.0649 0x0e80 lltdsvc - ok 14:37:15.0638 0x0e80 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:37:20.0718 0x0e80 lmhosts - detected UnsignedFile.Multi.Generic ( 1 ) 14:37:20.0767 0x0e80 Detect skipped due to KSN trusted 14:37:20.0767 0x0e80 lmhosts - ok 14:37:34.0048 0x0e80 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 14:37:34.0056 0x0e80 LSI_FC - ok 14:37:42.0990 0x0e80 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 14:37:42.0997 0x0e80 LSI_SAS - ok 14:37:43.0067 0x0e80 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:37:43.0073 0x0e80 LSI_SAS2 - ok 14:37:43.0124 0x0e80 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:37:43.0132 0x0e80 LSI_SCSI - ok 14:37:43.0158 0x0e80 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 14:37:53.0164 0x0e80 luafv - detected UnsignedFile.Multi.Generic ( 1 ) 14:37:53.0212 0x0e80 Detect skipped due to KSN trusted 14:37:53.0212 0x0e80 luafv - ok 14:37:55.0488 0x0e80 lvpopf64 - ok 14:38:07.0313 0x0e80 LVPr2M64 - ok 14:38:10.0363 0x0e80 [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 14:38:10.0375 0x0e80 LVRS64 - ok 14:38:10.0500 0x0e80 [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 14:38:10.0587 0x0e80 LVUVC64 - ok 14:38:10.0649 0x0e80 MBAMWebProtection - ok 14:38:10.0666 0x0e80 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:38:22.0816 0x0e80 Mcx2Svc - detected UnsignedFile.Multi.Generic ( 1 ) 14:38:22.0865 0x0e80 Detect skipped due to KSN trusted 14:38:22.0865 0x0e80 Mcx2Svc - ok 14:38:29.0009 0x0e80 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 14:38:29.0015 0x0e80 megasas - ok 14:38:37.0918 0x0e80 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 14:38:37.0928 0x0e80 MegaSR - ok 14:38:37.0968 0x0e80 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 14:38:47.0974 0x0e80 MMCSS - detected UnsignedFile.Multi.Generic ( 1 ) 14:38:48.0022 0x0e80 Detect skipped due to KSN trusted 14:38:48.0022 0x0e80 MMCSS - ok 14:38:50.0355 0x0e80 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 14:39:01.0245 0x0e80 Modem - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:01.0293 0x0e80 Detect skipped due to KSN trusted 14:39:01.0293 0x0e80 Modem - ok 14:39:05.0244 0x0e80 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:39:10.0266 0x0e80 monitor - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:10.0315 0x0e80 Detect skipped due to KSN trusted 14:39:10.0315 0x0e80 monitor - ok 14:39:26.0495 0x0e80 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 14:39:26.0501 0x0e80 mouclass - ok 14:39:32.0681 0x0e80 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:39:37.0799 0x0e80 mouhid - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:37.0848 0x0e80 Detect skipped due to KSN trusted 14:39:37.0848 0x0e80 mouhid - ok 14:39:45.0134 0x0e80 [ 072D8646E23ECF8A3F5F0157017B4DB6, EBFB1459ECC5AF94C94FB49CEBC724542612680F0777E24B5AA6E062C0EE5D94 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:39:45.0141 0x0e80 mountmgr - ok 14:39:48.0118 0x0e80 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 14:39:48.0126 0x0e80 mpio - ok 14:39:56.0961 0x0e80 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:40:06.0577 0x0e80 mpsdrv - detected UnsignedFile.Multi.Generic ( 1 ) 14:40:06.0627 0x0e80 Detect skipped due to KSN trusted 14:40:06.0627 0x0e80 mpsdrv - ok 14:40:27.0285 0x0e80 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 14:40:32.0341 0x0e80 MpsSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:40:32.0390 0x0e80 Detect skipped due to KSN trusted 14:40:32.0390 0x0e80 MpsSvc - ok 14:40:54.0842 0x0e80 [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:41:00.0121 0x0e80 MRxDAV - detected UnsignedFile.Multi.Generic ( 1 ) 14:41:00.0179 0x0e80 Detect skipped due to KSN trusted 14:41:00.0179 0x0e80 MRxDAV - ok 14:41:10.0792 0x0e80 [ 767C6DF04C5758B9F0790D400541B44F, BFC38D7BCF19F7246BCAD3E04273A403F6B973432EE0EF6E25B16BA3826A21B7 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:41:22.0641 0x0e80 mrxsmb - detected UnsignedFile.Multi.Generic ( 1 ) 14:41:22.0688 0x0e80 Detect skipped due to KSN trusted 14:41:22.0688 0x0e80 mrxsmb - ok 14:41:22.0780 0x0e80 [ BD55F604FFABC911F8E5500186AE70E5, 3719EDB070E6FFE9781337A05CA0309C3CD5CD38A292DF091E05C9BA3D5A479F ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:41:32.0789 0x0e80 mrxsmb10 - detected UnsignedFile.Multi.Generic ( 1 ) 14:41:32.0837 0x0e80 Detect skipped due to KSN trusted 14:41:32.0837 0x0e80 mrxsmb10 - ok 14:41:44.0022 0x0e80 [ 92EECFB046D4706A4B8D699A4069B6EC, 3B3E232DABA913A500CE55AD8600D8DD8F28E32B0276B9B6C8FD6239688833A4 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:41:50.0094 0x0e80 mrxsmb20 - detected UnsignedFile.Multi.Generic ( 1 ) 14:41:50.0142 0x0e80 Detect skipped due to KSN trusted 14:41:50.0142 0x0e80 mrxsmb20 - ok 14:41:50.0173 0x0e80 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 14:41:50.0179 0x0e80 msahci - ok 14:41:50.0197 0x0e80 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:41:50.0204 0x0e80 msdsm - ok 14:41:50.0225 0x0e80 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 14:42:05.0520 0x0e80 MSDTC - detected UnsignedFile.Multi.Generic ( 1 ) 14:42:05.0577 0x0e80 Detect skipped due to KSN trusted 14:42:05.0577 0x0e80 MSDTC - ok 14:42:17.0309 0x0e80 [ 72949A24D37A20A54B3D4D3DADBB55E9, 580B59EF2DFA4F6EE27BA37904F0705CBCD74F9B07D2D795093C045F94AE6DB5 ] MSDV C:\Windows\system32\DRIVERS\msdv.sys 14:42:22.0400 0x0e80 MSDV - detected UnsignedFile.Multi.Generic ( 1 ) 14:42:22.0450 0x0e80 Detect skipped due to KSN trusted 14:42:22.0450 0x0e80 MSDV - ok 14:42:29.0709 0x0e80 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:42:40.0570 0x0e80 Msfs - detected UnsignedFile.Multi.Generic ( 1 ) 14:42:40.0619 0x0e80 Detect skipped due to KSN trusted 14:42:40.0619 0x0e80 Msfs - ok 14:42:44.0775 0x0e80 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:42:49.0849 0x0e80 mshidkmdf - detected UnsignedFile.Multi.Generic ( 1 ) 14:42:49.0897 0x0e80 Detect skipped due to KSN trusted 14:42:49.0897 0x0e80 mshidkmdf - ok 14:43:08.0926 0x0e80 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:43:08.0932 0x0e80 msisadrv - ok 14:43:11.0949 0x0e80 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:43:21.0954 0x0e80 MSiSCSI - detected UnsignedFile.Multi.Generic ( 1 ) 14:43:22.0004 0x0e80 Detect skipped due to KSN trusted 14:43:22.0004 0x0e80 MSiSCSI - ok 14:43:22.0006 0x0e80 msiserver - ok 14:43:36.0495 0x0e80 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:43:44.0557 0x0e80 MSKSSRV - detected UnsignedFile.Multi.Generic ( 1 ) 14:43:44.0606 0x0e80 Detect skipped due to KSN trusted 14:43:44.0606 0x0e80 MSKSSRV - ok 14:43:54.0993 0x0e80 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:44:04.0997 0x0e80 MSPCLOCK - detected UnsignedFile.Multi.Generic ( 1 ) 14:44:05.0046 0x0e80 Detect skipped due to KSN trusted 14:44:05.0046 0x0e80 MSPCLOCK - ok 14:44:06.0926 0x0e80 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:44:11.0981 0x0e80 MSPQM - detected UnsignedFile.Multi.Generic ( 1 ) 14:44:12.0039 0x0e80 Detect skipped due to KSN trusted 14:44:12.0039 0x0e80 MSPQM - ok 14:44:25.0279 0x0e80 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:44:25.0290 0x0e80 MsRPC - ok 14:44:34.0270 0x0e80 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 14:44:34.0275 0x0e80 mssmbios - ok 14:44:34.0316 0x0e80 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:44:44.0320 0x0e80 MSTEE - detected UnsignedFile.Multi.Generic ( 1 ) 14:44:44.0369 0x0e80 Detect skipped due to KSN trusted 14:44:44.0369 0x0e80 MSTEE - ok 14:44:46.0826 0x0e80 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 14:44:59.0732 0x0e80 MTConfig - detected UnsignedFile.Multi.Generic ( 1 ) 14:44:59.0783 0x0e80 Detect skipped due to KSN trusted 14:44:59.0783 0x0e80 MTConfig - ok 14:45:01.0631 0x0e80 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 14:45:01.0638 0x0e80 Mup - ok 14:45:01.0668 0x0e80 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 14:45:11.0681 0x0e80 napagent - detected UnsignedFile.Multi.Generic ( 1 ) 14:45:11.0733 0x0e80 Detect skipped due to KSN trusted 14:45:11.0733 0x0e80 napagent - ok 14:45:20.0583 0x0e80 [ 9FB2A095B1166CB3C9A06651863B3452, 808105C59C2D28C390FDE0CA48690A5CD052DE3D7F7327864EB45F80187D5BE9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:45:29.0319 0x0e80 NativeWifiP - detected UnsignedFile.Multi.Generic ( 1 ) 14:45:29.0374 0x0e80 Detect skipped due to KSN trusted 14:45:29.0374 0x0e80 NativeWifiP - ok 14:45:29.0453 0x0e80 [ 9D1CCE440552500DED3A62F9D779CDB4, C6B3B1C891A8BA3F91CC1EC21919C4F80F4C9CAF88971AB6CA11F09820601EBD ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe 14:45:29.0466 0x0e80 NAUpdate - ok 14:45:29.0507 0x0e80 [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 14:45:29.0529 0x0e80 NDIS - ok 14:45:29.0550 0x0e80 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:45:41.0953 0x0e80 NdisCap - detected UnsignedFile.Multi.Generic ( 1 ) 14:45:42.0000 0x0e80 Detect skipped due to KSN trusted 14:45:42.0000 0x0e80 NdisCap - ok 14:45:56.0945 0x0e80 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:46:01.0990 0x0e80 NdisTapi - detected UnsignedFile.Multi.Generic ( 1 ) 14:46:02.0039 0x0e80 Detect skipped due to KSN trusted 14:46:02.0039 0x0e80 NdisTapi - ok 14:46:21.0460 0x0e80 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:46:29.0412 0x0e80 Ndisuio - detected UnsignedFile.Multi.Generic ( 1 ) 14:46:29.0607 0x0e80 Detect skipped due to KSN trusted 14:46:29.0607 0x0e80 Ndisuio - ok 14:46:51.0627 0x0e80 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:46:58.0088 0x0e80 NdisWan - detected UnsignedFile.Multi.Generic ( 1 ) 14:46:58.0146 0x0e80 Detect skipped due to KSN trusted 14:46:58.0146 0x0e80 NdisWan - ok 14:47:03.0957 0x0e80 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:47:13.0962 0x0e80 NDProxy - detected UnsignedFile.Multi.Generic ( 1 ) 14:47:14.0152 0x0e80 Detect skipped due to KSN trusted 14:47:14.0152 0x0e80 NDProxy - ok 14:47:18.0827 0x0e80 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:47:23.0952 0x0e80 NetBIOS - detected UnsignedFile.Multi.Generic ( 1 ) 14:47:23.0999 0x0e80 Detect skipped due to KSN trusted 14:47:23.0999 0x0e80 NetBIOS - ok 14:47:31.0569 0x0e80 [ 734837208CAFD6E0959A7A0333C95C9D, 0B7CD6E3CE43ABE021DBE6516492E326265EC0273F2F4297187CE70602CB8CE1 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:47:41.0578 0x0e80 NetBT - detected UnsignedFile.Multi.Generic ( 1 ) 14:47:41.0625 0x0e80 Detect skipped due to KSN trusted 14:47:41.0625 0x0e80 NetBT - ok 14:47:46.0499 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] Netlogon C:\Windows\system32\lsass.exe 14:47:52.0960 0x0e80 Netlogon - detected UnsignedFile.Multi.Generic ( 1 ) 14:47:52.0960 0x0e80 Detect skipped due to KSN trusted 14:47:52.0960 0x0e80 Netlogon - ok 14:48:13.0793 0x0e80 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 14:48:18.0837 0x0e80 Netman - detected UnsignedFile.Multi.Generic ( 1 ) 14:48:18.0892 0x0e80 Detect skipped due to KSN trusted 14:48:18.0892 0x0e80 Netman - ok 14:48:41.0357 0x0e80 [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:48:41.0367 0x0e80 NetMsmqActivator - ok 14:48:41.0448 0x0e80 [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:48:41.0456 0x0e80 NetPipeActivator - ok 14:48:41.0482 0x0e80 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 14:48:52.0965 0x0e80 netprofm - detected UnsignedFile.Multi.Generic ( 1 ) 14:48:53.0011 0x0e80 Detect skipped due to KSN trusted 14:48:53.0011 0x0e80 netprofm - ok 14:48:56.0893 0x0e80 [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:48:56.0902 0x0e80 NetTcpActivator - ok 14:49:02.0759 0x0e80 [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:49:02.0767 0x0e80 NetTcpPortSharing - ok 14:49:08.0678 0x0e80 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 14:49:08.0684 0x0e80 nfrd960 - ok 14:49:08.0708 0x0e80 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 14:49:18.0718 0x0e80 NlaSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:49:18.0764 0x0e80 Detect skipped due to KSN trusted 14:49:18.0765 0x0e80 NlaSvc - ok 14:49:35.0946 0x0e80 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:49:41.0018 0x0e80 Npfs - detected UnsignedFile.Multi.Generic ( 1 ) 14:49:41.0074 0x0e80 Detect skipped due to KSN trusted 14:49:41.0074 0x0e80 Npfs - ok 14:49:45.0402 0x0e80 [ 668B9EFF5CCA4542F435D2CD9CE3C778, 7409EF35D1DC0DE2BAB752694981FFA1F1855C7F11310366B80BD1EC3513262E ] nsi C:\Windows\system32\nsisvc.dll 14:49:55.0406 0x0e80 nsi - detected UnsignedFile.Multi.Generic ( 1 ) 14:49:55.0453 0x0e80 Detect skipped due to KSN trusted 14:49:55.0453 0x0e80 nsi - ok 14:50:00.0406 0x0e80 [ BE313E566EEA2A4B7F9AAC9782A567D4, 377C624737B1A4FBC1DFF988F029B8ED9A368827C33A4FEEBA1B7937A87C2B47 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:50:09.0936 0x0e80 nsiproxy - detected UnsignedFile.Multi.Generic ( 1 ) 14:50:09.0982 0x0e80 Detect skipped due to KSN trusted 14:50:09.0983 0x0e80 nsiproxy - ok 14:50:30.0708 0x0e80 [ 96FEB18D7FFA4DC10F0C3CC4EF41500E, B7F937B8579CD81CC3298E0AADDF559DB451DE04DBAC88A082C722B7E84E0494 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:50:30.0742 0x0e80 Ntfs - ok 14:50:30.0778 0x0e80 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 14:50:40.0783 0x0e80 Null - detected UnsignedFile.Multi.Generic ( 1 ) 14:50:40.0831 0x0e80 Detect skipped due to KSN trusted 14:50:40.0831 0x0e80 Null - ok 14:50:58.0370 0x0e80 [ 1F07B814C0BB5AABA703ABFF1F31F2E8, 07F578686CAE0FAB5462B472A03DD1BC5DFE0D5DA6307895534CECC330C3D220 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 14:50:58.0378 0x0e80 NVHDA - ok 14:50:58.0661 0x0e80 [ FCBA1C22727939E7CFF9EB08FE9692AB, 081FBF38EA17746C5CF2260AD32B62385D4A075476E30CBB9A2AA080F8AA0CA4 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 14:50:58.0847 0x0e80 nvlddmkm - ok 14:50:58.0881 0x0e80 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:50:58.0888 0x0e80 nvraid - ok 14:50:58.0919 0x0e80 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:50:58.0927 0x0e80 nvstor - ok 14:50:58.0973 0x0e80 [ 10C232F6CFFD51D2332898AE7AE0FF23, 92E5452D8467852C22D702ACAFB5DBFD312A8F72A4353B8D0A9C18AEFCE4B2B2 ] nvsvc C:\Windows\system32\nvvsvc.exe 14:50:58.0992 0x0e80 nvsvc - ok 14:50:59.0058 0x0e80 [ 551CE34DAD2DFF0A480781E68B286E4D, 01F1D83350715BF23C246E3CBBBB4556FAC72DEF66F5173586A1FC0D3058FEF0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 14:50:59.0083 0x0e80 nvUpdatusService - ok 14:50:59.0099 0x0e80 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:50:59.0107 0x0e80 nv_agp - ok 14:50:59.0169 0x0e80 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:51:09.0174 0x0e80 ohci1394 - detected UnsignedFile.Multi.Generic ( 1 ) 14:51:09.0222 0x0e80 Detect skipped due to KSN trusted 14:51:09.0222 0x0e80 ohci1394 - ok 14:51:23.0146 0x0e80 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:51:31.0112 0x0e80 p2pimsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:51:32.0717 0x0e80 Detect skipped due to KSN trusted 14:51:32.0717 0x0e80 p2pimsvc - ok 14:51:47.0496 0x0e80 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 14:51:53.0666 0x0e80 p2psvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:51:53.0712 0x0e80 Detect skipped due to KSN trusted 14:51:53.0712 0x0e80 p2psvc - ok 14:51:53.0742 0x0e80 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 14:52:03.0747 0x0e80 Parport - detected UnsignedFile.Multi.Generic ( 1 ) 14:52:03.0801 0x0e80 Detect skipped due to KSN trusted 14:52:03.0801 0x0e80 Parport - ok 14:52:09.0247 0x0e80 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:52:12.0348 0x0e80 partmgr - ok 14:52:21.0433 0x0e80 [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc C:\Windows\System32\pcasvc.dll 14:52:26.0459 0x0e80 PcaSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:52:26.0506 0x0e80 Detect skipped due to KSN trusted 14:52:26.0506 0x0e80 PcaSvc - ok 14:52:45.0671 0x0e80 pccsmcfd - ok 14:52:51.0614 0x0e80 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 14:52:51.0636 0x0e80 pci - ok 14:52:51.0693 0x0e80 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 14:52:51.0699 0x0e80 pciide - ok 14:52:51.0786 0x0e80 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 14:52:51.0795 0x0e80 pcmcia - ok 14:52:51.0803 0x0e80 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 14:52:51.0809 0x0e80 pcw - ok 14:52:51.0839 0x0e80 [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:53:04.0166 0x0e80 PEAUTH - detected UnsignedFile.Multi.Generic ( 1 ) 14:53:04.0220 0x0e80 Detect skipped due to KSN trusted 14:53:04.0221 0x0e80 PEAUTH - ok 14:53:19.0129 0x0e80 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:53:29.0133 0x0e80 PerfHost - detected UnsignedFile.Multi.Generic ( 1 ) 14:53:29.0183 0x0e80 Detect skipped due to KSN trusted 14:53:29.0183 0x0e80 PerfHost - ok 14:53:46.0574 0x0e80 [ B47DEE29B5E6E1939567A926C7A3E6A4, E86CB77DE7B6A8025F9A546F6C45D135F471E664963CF70B381BEE2DFD0FDEF4 ] PID_0928 C:\Windows\system32\DRIVERS\LV561V64.SYS 14:53:46.0589 0x0e80 PID_0928 - ok 14:53:46.0773 0x0e80 [ BC5F8C5C7ACCD0B884FCB8B67616F537, 5C99E9D7E7095CED52B1F5F4A569E54F124602C573DD2B25731E0D57FDA22A27 ] pla C:\Windows\system32\pla.dll 14:53:58.0353 0x0e80 pla - detected UnsignedFile.Multi.Generic ( 1 ) 14:53:58.0402 0x0e80 Detect skipped due to KSN trusted 14:53:58.0403 0x0e80 pla - ok 14:54:14.0317 0x0e80 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:54:29.0735 0x0e80 PlugPlay - detected UnsignedFile.Multi.Generic ( 1 ) 14:54:29.0792 0x0e80 Detect skipped due to KSN trusted 14:54:32.0693 0x0e80 PlugPlay - ok 14:54:35.0739 0x0e80 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:54:41.0626 0x0e80 PNRPAutoReg - detected UnsignedFile.Multi.Generic ( 1 ) 14:54:41.0672 0x0e80 Detect skipped due to KSN trusted 14:54:41.0672 0x0e80 PNRPAutoReg - ok 14:54:41.0701 0x0e80 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:54:51.0710 0x0e80 PNRPsvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:54:51.0711 0x0e80 Detect skipped due to KSN trusted 14:54:51.0711 0x0e80 PNRPsvc - ok 14:55:06.0285 0x0e80 [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:55:14.0301 0x0e80 PolicyAgent - detected UnsignedFile.Multi.Generic ( 1 ) 14:55:14.0349 0x0e80 Detect skipped due to KSN trusted 14:55:14.0350 0x0e80 PolicyAgent - ok 14:55:24.0836 0x0e80 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 14:55:34.0842 0x0e80 Power - detected UnsignedFile.Multi.Generic ( 1 ) 14:55:34.0898 0x0e80 Detect skipped due to KSN trusted 14:55:34.0898 0x0e80 Power - ok 14:55:36.0700 0x0e80 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:55:43.0161 0x0e80 PptpMiniport - detected UnsignedFile.Multi.Generic ( 1 ) 14:55:43.0210 0x0e80 Detect skipped due to KSN trusted 14:55:43.0210 0x0e80 PptpMiniport - ok 14:55:58.0287 0x0e80 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 14:56:04.0205 0x0e80 Processor - detected UnsignedFile.Multi.Generic ( 1 ) 14:56:04.0251 0x0e80 Detect skipped due to KSN trusted 14:56:04.0251 0x0e80 Processor - ok 14:56:04.0286 0x0e80 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 14:56:16.0813 0x0e80 ProfSvc - detected UnsignedFile.Multi.Generic ( 1 ) 14:56:16.0859 0x0e80 Detect skipped due to KSN trusted 14:56:16.0859 0x0e80 ProfSvc - ok |
29.10.2017, 19:16 | #7 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam zweiter Teil: Code:
ATTFilter 14:56:19.0743 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] ProtectedStorage C:\Windows\system32\lsass.exe 14:56:31.0420 0x0e80 ProtectedStorage - detected UnsignedFile.Multi.Generic ( 1 ) 14:56:31.0420 0x0e80 Detect skipped due to KSN trusted 14:56:31.0420 0x0e80 ProtectedStorage - ok 14:56:31.0517 0x0e80 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:56:41.0523 0x0e80 Psched - detected UnsignedFile.Multi.Generic ( 1 ) 14:56:41.0579 0x0e80 Detect skipped due to KSN trusted 14:56:41.0579 0x0e80 Psched - ok 14:56:56.0149 0x0e80 [ C32ECB99AD25E9A04F01C8665DF29EF8, 0489B3DEC6A33E50D8A48A8DAD3F5B923A81F7300E4A71358D90D2879BAC9AA2 ] pwdrvio C:\Windows\system32\pwdrvio.sys 14:56:56.0157 0x0e80 pwdrvio - ok 14:56:59.0235 0x0e80 [ D619356B955EEFA642F5FF72755E8B3C, 1FD54978A77ACD6FBF1236E177ED074894743A9141E4169FE9AFE28680FC93C5 ] pwdspio C:\Windows\system32\pwdspio.sys 14:56:59.0240 0x0e80 pwdspio - ok 14:56:59.0289 0x0e80 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 14:56:59.0319 0x0e80 ql2300 - ok 14:56:59.0344 0x0e80 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 14:56:59.0351 0x0e80 ql40xx - ok 14:56:59.0376 0x0e80 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 14:57:10.0812 0x0e80 QWAVE - detected UnsignedFile.Multi.Generic ( 1 ) 14:57:10.0859 0x0e80 Detect skipped due to KSN trusted 14:57:10.0859 0x0e80 QWAVE - ok 14:57:11.0827 0x0e80 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:57:26.0778 0x0e80 QWAVEdrv - detected UnsignedFile.Multi.Generic ( 1 ) 14:57:26.0826 0x0e80 Detect skipped due to KSN trusted 14:57:26.0826 0x0e80 QWAVEdrv - ok 14:57:27.0070 0x0e80 [ 9B35220786B06B61D19C54406904E6ED, 166FDD8CC15D3D1B13E2CECC814ED876EA66D65E9308043ED0024660C4F90E8D ] Radio.fx C:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe 14:57:27.0139 0x0e80 Radio.fx - ok 14:57:27.0190 0x0e80 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:57:39.0590 0x0e80 RasAcd - detected UnsignedFile.Multi.Generic ( 1 ) 14:57:39.0637 0x0e80 Detect skipped due to KSN trusted 14:57:42.0616 0x0e80 RasAcd - ok 14:57:51.0635 0x0e80 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:58:00.0967 0x0e80 RasAgileVpn - detected UnsignedFile.Multi.Generic ( 1 ) 14:58:01.0022 0x0e80 Detect skipped due to KSN trusted 14:58:01.0023 0x0e80 RasAgileVpn - ok 14:58:09.0962 0x0e80 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 14:58:19.0969 0x0e80 RasAuto - detected UnsignedFile.Multi.Generic ( 1 ) 14:58:20.0015 0x0e80 Detect skipped due to KSN trusted 14:58:20.0015 0x0e80 RasAuto - ok 14:58:22.0239 0x0e80 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:58:27.0262 0x0e80 Rasl2tp - detected UnsignedFile.Multi.Generic ( 1 ) 14:58:27.0310 0x0e80 Detect skipped due to KSN trusted 14:58:27.0310 0x0e80 Rasl2tp - ok 14:58:50.0608 0x0e80 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 14:58:55.0677 0x0e80 RasMan - detected UnsignedFile.Multi.Generic ( 1 ) 14:58:55.0724 0x0e80 Detect skipped due to KSN trusted 14:58:55.0724 0x0e80 RasMan - ok 14:59:12.0297 0x0e80 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:59:18.0224 0x0e80 RasPppoe - detected UnsignedFile.Multi.Generic ( 1 ) 14:59:18.0278 0x0e80 Detect skipped due to KSN trusted 14:59:18.0278 0x0e80 RasPppoe - ok 14:59:18.0304 0x0e80 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:59:30.0743 0x0e80 RasSstp - detected UnsignedFile.Multi.Generic ( 1 ) 14:59:30.0789 0x0e80 Detect skipped due to KSN trusted 14:59:30.0789 0x0e80 RasSstp - ok 14:59:39.0931 0x0e80 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:59:45.0883 0x0e80 rdbss - detected UnsignedFile.Multi.Generic ( 1 ) 14:59:45.0930 0x0e80 Detect skipped due to KSN trusted 14:59:45.0930 0x0e80 rdbss - ok 14:59:45.0996 0x0e80 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 14:59:55.0999 0x0e80 rdpbus - detected UnsignedFile.Multi.Generic ( 1 ) 14:59:56.0046 0x0e80 Detect skipped due to KSN trusted 14:59:56.0046 0x0e80 rdpbus - ok 15:00:01.0314 0x0e80 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 15:00:11.0317 0x0e80 RDPCDD - detected UnsignedFile.Multi.Generic ( 1 ) 15:00:11.0366 0x0e80 Detect skipped due to KSN trusted 15:00:11.0366 0x0e80 RDPCDD - ok 15:00:13.0520 0x0e80 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 15:00:19.0982 0x0e80 RDPENCDD - detected UnsignedFile.Multi.Generic ( 1 ) 15:00:20.0037 0x0e80 Detect skipped due to KSN trusted 15:00:20.0037 0x0e80 RDPENCDD - ok 15:00:22.0970 0x0e80 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 15:00:34.0873 0x0e80 RDPREFMP - detected UnsignedFile.Multi.Generic ( 1 ) 15:00:34.0921 0x0e80 Detect skipped due to KSN trusted 15:00:34.0921 0x0e80 RDPREFMP - ok 15:00:40.0839 0x0e80 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 15:00:45.0861 0x0e80 RDPWD - detected UnsignedFile.Multi.Generic ( 1 ) 15:00:45.0909 0x0e80 Detect skipped due to KSN trusted 15:00:45.0909 0x0e80 RDPWD - ok 15:00:56.0171 0x0e80 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 15:00:56.0180 0x0e80 rdyboost - ok 15:01:02.0114 0x0e80 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 15:01:08.0388 0x0e80 RemoteAccess - detected UnsignedFile.Multi.Generic ( 1 ) 15:01:08.0435 0x0e80 Detect skipped due to KSN trusted 15:01:08.0435 0x0e80 RemoteAccess - ok 15:01:08.0482 0x0e80 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 15:01:19.0808 0x0e80 RemoteRegistry - detected UnsignedFile.Multi.Generic ( 1 ) 15:01:19.0855 0x0e80 Detect skipped due to KSN trusted 15:01:19.0855 0x0e80 RemoteRegistry - ok 15:01:23.0647 0x0e80 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 15:01:34.0479 0x0e80 RpcEptMapper - detected UnsignedFile.Multi.Generic ( 1 ) 15:01:34.0534 0x0e80 Detect skipped due to KSN trusted 15:01:34.0535 0x0e80 RpcEptMapper - ok 15:01:35.0379 0x0e80 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 15:01:41.0719 0x0e80 RpcLocator - detected UnsignedFile.Multi.Generic ( 1 ) 15:01:41.0767 0x0e80 Detect skipped due to KSN trusted 15:01:41.0767 0x0e80 RpcLocator - ok 15:01:59.0804 0x0e80 [ 3F1A199859B4F3F8357B2A0AF5666A54, B0ACE9384088B7D0E54CF82BF48D4FEAA518BDEF98A294BA8F5A37DFF0E45328 ] RpcSs C:\Windows\system32\rpcss.dll 15:02:07.0787 0x0e80 RpcSs - detected UnsignedFile.Multi.Generic ( 1 ) 15:02:07.0787 0x0e80 Detect skipped due to KSN trusted 15:02:07.0787 0x0e80 RpcSs - ok 15:02:15.0251 0x0e80 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 15:02:26.0058 0x0e80 rspndr - detected UnsignedFile.Multi.Generic ( 1 ) 15:02:26.0126 0x0e80 Detect skipped due to KSN trusted 15:02:26.0126 0x0e80 rspndr - ok 15:02:29.0905 0x0e80 [ E50CFB92986DCAB49DE93788FD695813, EAE103008B967B0F064EDDA551AA553EE7C22D39D14FA0BBFEF41C4D1B6C99E5 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 15:02:29.0919 0x0e80 RTL8167 - ok 15:02:29.0929 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] SamSs C:\Windows\system32\lsass.exe 15:02:41.0384 0x0e80 SamSs - detected UnsignedFile.Multi.Generic ( 1 ) 15:02:41.0384 0x0e80 Detect skipped due to KSN trusted 15:02:41.0384 0x0e80 SamSs - ok 15:02:48.0286 0x0e80 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 15:02:48.0293 0x0e80 sbp2port - ok 15:02:57.0211 0x0e80 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 15:03:02.0295 0x0e80 SCardSvr - detected UnsignedFile.Multi.Generic ( 1 ) 15:03:02.0344 0x0e80 Detect skipped due to KSN trusted 15:03:02.0344 0x0e80 SCardSvr - ok 15:03:09.0826 0x0e80 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 15:03:19.0831 0x0e80 scfilter - detected UnsignedFile.Multi.Generic ( 1 ) 15:03:19.0878 0x0e80 Detect skipped due to KSN trusted 15:03:19.0878 0x0e80 scfilter - ok 15:03:24.0840 0x0e80 [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 15:03:36.0277 0x0e80 Schedule - detected UnsignedFile.Multi.Generic ( 1 ) 15:03:36.0325 0x0e80 Detect skipped due to KSN trusted 15:03:36.0325 0x0e80 Schedule - ok 15:03:43.0155 0x0e80 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 15:03:52.0327 0x0e80 SCPolicySvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:03:52.0327 0x0e80 Detect skipped due to KSN trusted 15:03:52.0327 0x0e80 SCPolicySvc - ok 15:03:52.0351 0x0e80 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 15:04:03.0762 0x0e80 SDRSVC - detected UnsignedFile.Multi.Generic ( 1 ) 15:04:03.0818 0x0e80 Detect skipped due to KSN trusted 15:04:03.0818 0x0e80 SDRSVC - ok 15:04:13.0821 0x0e80 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 15:04:24.0914 0x0e80 secdrv - detected UnsignedFile.Multi.Generic ( 1 ) 15:04:24.0961 0x0e80 Detect skipped due to KSN trusted 15:04:24.0961 0x0e80 secdrv - ok 15:04:38.0254 0x0e80 [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon C:\Windows\system32\seclogon.dll 15:04:47.0265 0x0e80 seclogon - detected UnsignedFile.Multi.Generic ( 1 ) 15:04:47.0310 0x0e80 Detect skipped due to KSN trusted 15:04:47.0310 0x0e80 seclogon - ok 15:04:47.0372 0x0e80 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 15:04:58.0824 0x0e80 SENS - detected UnsignedFile.Multi.Generic ( 1 ) 15:04:58.0872 0x0e80 Detect skipped due to KSN trusted 15:04:58.0872 0x0e80 SENS - ok 15:05:02.0658 0x0e80 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 15:05:14.0686 0x0e80 SensrSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:05:14.0740 0x0e80 Detect skipped due to KSN trusted 15:05:14.0740 0x0e80 SensrSvc - ok 15:05:14.0773 0x0e80 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 15:05:30.0099 0x0e80 Serenum - detected UnsignedFile.Multi.Generic ( 1 ) 15:05:30.0141 0x0e80 Detect skipped due to KSN trusted 15:05:30.0141 0x0e80 Serenum - ok 15:05:39.0179 0x0e80 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 15:05:48.0895 0x0e80 Serial - detected UnsignedFile.Multi.Generic ( 1 ) 15:05:48.0937 0x0e80 Detect skipped due to KSN trusted 15:05:48.0937 0x0e80 Serial - ok 15:06:07.0333 0x0e80 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 15:06:15.0421 0x0e80 sermouse - detected UnsignedFile.Multi.Generic ( 1 ) 15:06:15.0474 0x0e80 Detect skipped due to KSN trusted 15:06:15.0474 0x0e80 sermouse - ok 15:06:25.0797 0x0e80 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 15:06:37.0660 0x0e80 SessionEnv - detected UnsignedFile.Multi.Generic ( 1 ) 15:06:37.0704 0x0e80 Detect skipped due to KSN trusted 15:06:37.0704 0x0e80 SessionEnv - ok 15:06:40.0825 0x0e80 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 15:06:50.0829 0x0e80 sffdisk - detected UnsignedFile.Multi.Generic ( 1 ) 15:06:50.0872 0x0e80 Detect skipped due to KSN trusted 15:06:50.0872 0x0e80 sffdisk - ok 15:06:53.0147 0x0e80 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 15:07:03.0152 0x0e80 sffp_mmc - detected UnsignedFile.Multi.Generic ( 1 ) 15:07:03.0196 0x0e80 Detect skipped due to KSN trusted 15:07:03.0196 0x0e80 sffp_mmc - ok 15:07:08.0121 0x0e80 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 15:07:14.0623 0x0e80 sffp_sd - detected UnsignedFile.Multi.Generic ( 1 ) 15:07:14.0666 0x0e80 Detect skipped due to KSN trusted 15:07:14.0666 0x0e80 sffp_sd - ok 15:07:23.0470 0x0e80 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 15:07:35.0228 0x0e80 sfloppy - detected UnsignedFile.Multi.Generic ( 1 ) 15:07:35.0280 0x0e80 Detect skipped due to KSN trusted 15:07:35.0280 0x0e80 sfloppy - ok 15:07:35.0356 0x0e80 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 15:07:45.0366 0x0e80 SharedAccess - detected UnsignedFile.Multi.Generic ( 1 ) 15:07:45.0409 0x0e80 Detect skipped due to KSN trusted 15:07:45.0409 0x0e80 SharedAccess - ok 15:07:56.0750 0x0e80 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 15:08:02.0735 0x0e80 ShellHWDetection - detected UnsignedFile.Multi.Generic ( 1 ) 15:08:02.0778 0x0e80 Detect skipped due to KSN trusted 15:08:02.0778 0x0e80 ShellHWDetection - ok 15:08:02.0817 0x0e80 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 15:08:02.0823 0x0e80 SiSRaid2 - ok 15:08:02.0845 0x0e80 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 15:08:02.0852 0x0e80 SiSRaid4 - ok 15:08:03.0011 0x0e80 [ 4CA43B85F22C7739311788B651A779CB, 5F761B3ADBDB093A4198CE5FE3BB444AB3C063483815F45DFB186082DDEB8CBC ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe 15:08:03.0065 0x0e80 Skype C2C Service - ok 15:08:03.0149 0x0e80 [ 22CC2A61BC77C5972B58756049AA254E, 4DF554A1C2FF8C2D9AD8633231961DE95171A17295DAA7779E607AFD7BD8FE03 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 15:08:03.0165 0x0e80 SkypeUpdate - ok 15:08:03.0185 0x0e80 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 15:08:13.0190 0x0e80 Smb - detected UnsignedFile.Multi.Generic ( 1 ) 15:08:13.0233 0x0e80 Detect skipped due to KSN trusted 15:08:13.0234 0x0e80 Smb - ok 15:08:30.0753 0x0e80 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 15:08:35.0834 0x0e80 SNMPTRAP - detected UnsignedFile.Multi.Generic ( 1 ) 15:08:35.0878 0x0e80 Detect skipped due to KSN trusted 15:08:35.0878 0x0e80 SNMPTRAP - ok 15:08:46.0240 0x0e80 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 15:08:46.0246 0x0e80 spldr - ok 15:08:58.0257 0x0e80 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 15:09:03.0281 0x0e80 Spooler - detected UnsignedFile.Multi.Generic ( 1 ) 15:09:03.0323 0x0e80 Detect skipped due to KSN trusted 15:09:03.0323 0x0e80 Spooler - ok 15:09:25.0731 0x0e80 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 15:09:38.0091 0x0e80 sppsvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:09:38.0134 0x0e80 Detect skipped due to KSN trusted 15:09:38.0134 0x0e80 sppsvc - ok 15:09:50.0212 0x0e80 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 15:09:58.0368 0x0e80 sppuinotify - detected UnsignedFile.Multi.Generic ( 1 ) 15:09:58.0447 0x0e80 Detect skipped due to KSN trusted 15:09:58.0447 0x0e80 sppuinotify - ok 15:10:17.0569 0x0e80 [ 72E6A150A8C8530B201832D1C801CDE6, EFBDD5D1FB924979E63D829A6970CB5552A746BEBB7C4D41066684CA16A374E0 ] srv C:\Windows\system32\DRIVERS\srv.sys 15:10:25.0542 0x0e80 srv - detected UnsignedFile.Multi.Generic ( 1 ) 15:10:25.0586 0x0e80 Detect skipped due to KSN trusted 15:10:25.0586 0x0e80 srv - ok 15:10:36.0764 0x0e80 [ C4F67ABCC5033D334613F28F9E782809, A19E32E2EF790E88E7013C298AF0A34A9957A7CE55DF19FBD7BDF688D3767BA5 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 15:10:46.0776 0x0e80 srv2 - detected UnsignedFile.Multi.Generic ( 1 ) 15:10:46.0818 0x0e80 Detect skipped due to KSN trusted 15:10:46.0818 0x0e80 srv2 - ok 15:10:48.0976 0x0e80 [ C53CB62B0E57488AAE41FDA0FF8A0AB9, 93614C72C578E348B66690585F8AC2B53C0C19D2C96AAD3E776D3389CA5E43B6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 15:10:53.0996 0x0e80 srvnet - detected UnsignedFile.Multi.Generic ( 1 ) 15:10:54.0039 0x0e80 Detect skipped due to KSN trusted 15:10:54.0039 0x0e80 srvnet - ok 15:11:07.0496 0x0e80 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 15:11:16.0837 0x0e80 SSDPSRV - detected UnsignedFile.Multi.Generic ( 1 ) 15:11:16.0887 0x0e80 Detect skipped due to KSN trusted 15:11:16.0887 0x0e80 SSDPSRV - ok 15:11:16.0916 0x0e80 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 15:11:26.0923 0x0e80 SstpSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:11:26.0966 0x0e80 Detect skipped due to KSN trusted 15:11:26.0966 0x0e80 SstpSvc - ok 15:11:44.0488 0x0e80 [ A72B7C730B1EF1E7764044737E802FAD, D102122D2B938A48F8A6761F1F75D37476D628C1E5D644DFB30262CE50E2D250 ] StarMoney 10 OnlineUpdate C:\Program Files (x86)\StarMoney 10 S-Edition\ouservice\StarMoneyOnlineUpdate.exe 15:11:44.0506 0x0e80 StarMoney 10 OnlineUpdate - ok 15:11:44.0626 0x0e80 [ 5A19667A580B1CE886EAF968B9743F45, 0A9EBE4057A0A6EF4732623794C2416A6BD8B87356DA46652BD92762505F57C7 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 15:11:44.0638 0x0e80 Stereo Service - ok 15:11:44.0663 0x0e80 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 15:11:44.0669 0x0e80 stexstor - ok 15:11:44.0701 0x0e80 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 15:11:56.0833 0x0e80 stisvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:11:56.0875 0x0e80 Detect skipped due to KSN trusted 15:11:56.0875 0x0e80 stisvc - ok 15:12:02.0873 0x0e80 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 15:12:02.0879 0x0e80 swenum - ok 15:12:11.0901 0x0e80 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 15:12:16.0924 0x0e80 swprv - detected UnsignedFile.Multi.Generic ( 1 ) 15:12:16.0981 0x0e80 Detect skipped due to KSN trusted 15:12:16.0981 0x0e80 swprv - ok 15:12:39.0330 0x0e80 [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 15:12:49.0364 0x0e80 SysMain - detected UnsignedFile.Multi.Generic ( 1 ) 15:12:49.0417 0x0e80 Detect skipped due to KSN trusted 15:12:49.0417 0x0e80 SysMain - ok 15:12:55.0105 0x0e80 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 15:13:05.0110 0x0e80 TabletInputService - detected UnsignedFile.Multi.Generic ( 1 ) 15:13:05.0154 0x0e80 Detect skipped due to KSN trusted 15:13:05.0154 0x0e80 TabletInputService - ok 15:13:07.0262 0x0e80 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 15:13:18.0627 0x0e80 TapiSrv - detected UnsignedFile.Multi.Generic ( 1 ) 15:13:18.0671 0x0e80 Detect skipped due to KSN trusted 15:13:18.0671 0x0e80 TapiSrv - ok 15:13:34.0614 0x0e80 [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 15:13:34.0651 0x0e80 Tcpip - ok 15:13:34.0723 0x0e80 [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 15:13:34.0759 0x0e80 TCPIP6 - ok 15:13:34.0783 0x0e80 [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 15:13:44.0789 0x0e80 tcpipreg - detected UnsignedFile.Multi.Generic ( 1 ) 15:13:44.0832 0x0e80 Detect skipped due to KSN trusted 15:13:44.0832 0x0e80 tcpipreg - ok 15:14:02.0215 0x0e80 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 15:14:07.0279 0x0e80 TDPIPE - detected UnsignedFile.Multi.Generic ( 1 ) 15:14:07.0334 0x0e80 Detect skipped due to KSN trusted 15:14:07.0334 0x0e80 TDPIPE - ok 15:14:08.0853 0x0e80 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 15:14:18.0859 0x0e80 TDTCP - detected UnsignedFile.Multi.Generic ( 1 ) 15:14:18.0902 0x0e80 Detect skipped due to KSN trusted 15:14:18.0902 0x0e80 TDTCP - ok 15:14:23.0864 0x0e80 [ 4DD986720F7CB7A8A5D1226793097B9A, 9020375B45E9C966BF44CF425C127D7E0EC82EB99C7047F225C25402FF97743D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 15:14:29.0881 0x0e80 tdx - detected UnsignedFile.Multi.Generic ( 1 ) 15:14:29.0925 0x0e80 Detect skipped due to KSN trusted 15:14:29.0925 0x0e80 tdx - ok 15:14:29.0961 0x0e80 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 15:14:29.0968 0x0e80 TermDD - ok 15:14:29.0992 0x0e80 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 15:14:41.0499 0x0e80 TermService - detected UnsignedFile.Multi.Generic ( 1 ) 15:14:41.0544 0x0e80 Detect skipped due to KSN trusted 15:14:41.0544 0x0e80 TermService - ok 15:14:48.0250 0x0e80 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 15:14:57.0282 0x0e80 Themes - detected UnsignedFile.Multi.Generic ( 1 ) 15:14:57.0324 0x0e80 Detect skipped due to KSN trusted 15:14:57.0324 0x0e80 Themes - ok 15:14:57.0362 0x0e80 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 15:15:07.0366 0x0e80 THREADORDER - detected UnsignedFile.Multi.Generic ( 1 ) 15:15:07.0367 0x0e80 Detect skipped due to KSN trusted 15:15:07.0367 0x0e80 THREADORDER - ok 15:15:18.0718 0x0e80 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 15:15:30.0977 0x0e80 TrkWks - detected UnsignedFile.Multi.Generic ( 1 ) 15:15:31.0029 0x0e80 Detect skipped due to KSN trusted 15:15:31.0029 0x0e80 TrkWks - ok 15:15:51.0912 0x0e80 [ 767F4524AEA2EDE58DC21F653EEAA02F, FBDC68DC00087D4CBE64856794F8EBCA1B24C91D0FA9F1E2EF543DF57363FF32 ] TrueKey C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe 15:15:51.0944 0x0e80 TrueKey - ok 15:15:51.0989 0x0e80 [ 263C411EC7DDD052B23A0F191F0E1E9A, C9B12ACB89442ABAC3AAE7E9EA5D5CF92B394B554B61ABB8181474075097B457 ] TrueKeyScheduler C:\Program Files\TrueKey\McTkSchedulerService.exe 15:15:51.0995 0x0e80 TrueKeyScheduler - ok 15:15:52.0037 0x0e80 [ 7E64AE41715FF49D37149C32A2FB068C, B8794F356194452237F69EC7B6F7A5C5615B14D7F14CE5F43FB2DA64E5AA34D6 ] TrueKeyServiceHelper C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.Exe 15:15:52.0045 0x0e80 TrueKeyServiceHelper - ok 15:15:52.0079 0x0e80 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 15:16:04.0459 0x0e80 TrustedInstaller - detected UnsignedFile.Multi.Generic ( 1 ) 15:16:04.0503 0x0e80 Detect skipped due to KSN trusted 15:16:04.0503 0x0e80 TrustedInstaller - ok 15:16:13.0451 0x0e80 [ 2CF58216424757ED29605B4F18EC443C, 9D523FC075F7F41A17F60617670A976A8F2F2943444515DC3834720BDC37DFA0 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 15:16:19.0494 0x0e80 tssecsrv - detected UnsignedFile.Multi.Generic ( 1 ) 15:16:19.0537 0x0e80 Detect skipped due to KSN trusted 15:16:19.0537 0x0e80 tssecsrv - ok 15:16:19.0592 0x0e80 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 15:16:29.0596 0x0e80 TsUsbFlt - detected UnsignedFile.Multi.Generic ( 1 ) 15:16:29.0639 0x0e80 Detect skipped due to KSN trusted 15:16:29.0639 0x0e80 TsUsbFlt - ok 15:16:31.0856 0x0e80 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 15:16:41.0861 0x0e80 tunnel - detected UnsignedFile.Multi.Generic ( 1 ) 15:16:41.0913 0x0e80 Detect skipped due to KSN trusted 15:16:41.0913 0x0e80 tunnel - ok 15:16:46.0519 0x0e80 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 15:16:46.0526 0x0e80 uagp35 - ok 15:16:46.0590 0x0e80 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 15:16:56.0599 0x0e80 udfs - detected UnsignedFile.Multi.Generic ( 1 ) 15:16:56.0643 0x0e80 Detect skipped due to KSN trusted 15:16:56.0643 0x0e80 udfs - ok 15:17:13.0936 0x0e80 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 15:17:19.0024 0x0e80 UI0Detect - detected UnsignedFile.Multi.Generic ( 1 ) 15:17:19.0068 0x0e80 Detect skipped due to KSN trusted 15:17:19.0068 0x0e80 UI0Detect - ok 15:17:26.0311 0x0e80 [ CA204117E5DD16DBF45D1513E169039E, 39F2CEE77B8E35D89ECE5028CDB555B04418E2593E2EB0E2AA809EEF688193D2 ] UimBus C:\Windows\system32\DRIVERS\UimBus.sys 15:17:26.0317 0x0e80 UimBus - ok 15:17:29.0390 0x0e80 [ 8593690D302AE73AAC8BBA9B19757352, 36F29C32A7E0D8D54533441C840E86C7C407815DD3568C6D44C043939E998FAF ] Uim_DEVIM C:\Windows\system32\DRIVERS\uim_devim.sys 15:17:29.0395 0x0e80 Uim_DEVIM - ok 15:17:41.0903 0x0e80 [ 889788C1B850D1ED4027B675B9B8E5E2, D8CA795CAFFF803252E1B41D69F9B55C787E2633198BC322E07449408A58B083 ] Uim_IM C:\Windows\system32\DRIVERS\uim_im.sys 15:17:41.0919 0x0e80 Uim_IM - ok 15:17:41.0940 0x0e80 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 15:17:41.0946 0x0e80 uliagpkx - ok 15:17:41.0971 0x0e80 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 15:17:53.0411 0x0e80 umbus - detected UnsignedFile.Multi.Generic ( 1 ) 15:17:53.0455 0x0e80 Detect skipped due to KSN trusted 15:17:53.0455 0x0e80 umbus - ok 15:18:00.0358 0x0e80 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 15:18:09.0714 0x0e80 UmPass - detected UnsignedFile.Multi.Generic ( 1 ) 15:18:09.0759 0x0e80 Detect skipped due to KSN trusted 15:18:09.0759 0x0e80 UmPass - ok 15:18:09.0819 0x0e80 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 15:18:09.0831 0x0e80 UMVPFSrv - ok 15:18:09.0863 0x0e80 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 15:18:19.0873 0x0e80 upnphost - detected UnsignedFile.Multi.Generic ( 1 ) 15:18:19.0916 0x0e80 Detect skipped due to KSN trusted 15:18:19.0916 0x0e80 upnphost - ok 15:18:25.0291 0x0e80 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 15:18:35.0296 0x0e80 usbaudio - detected UnsignedFile.Multi.Generic ( 1 ) 15:18:35.0339 0x0e80 Detect skipped due to KSN trusted 15:18:35.0340 0x0e80 usbaudio - ok 15:18:37.0084 0x0e80 [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 15:18:42.0163 0x0e80 usbccgp - detected UnsignedFile.Multi.Generic ( 1 ) 15:18:42.0206 0x0e80 Detect skipped due to KSN trusted 15:18:42.0206 0x0e80 usbccgp - ok 15:18:46.0724 0x0e80 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 15:18:57.0657 0x0e80 usbcir - detected UnsignedFile.Multi.Generic ( 1 ) 15:18:57.0710 0x0e80 Detect skipped due to KSN trusted 15:18:57.0710 0x0e80 usbcir - ok 15:19:04.0799 0x0e80 [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci C:\Windows\system32\drivers\usbehci.sys 15:19:11.0371 0x0e80 usbehci - detected UnsignedFile.Multi.Generic ( 1 ) 15:19:11.0414 0x0e80 Detect skipped due to KSN trusted 15:19:11.0414 0x0e80 usbehci - ok 15:19:32.0197 0x0e80 [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 15:19:37.0265 0x0e80 usbhub - detected UnsignedFile.Multi.Generic ( 1 ) 15:19:37.0309 0x0e80 Detect skipped due to KSN trusted 15:19:37.0309 0x0e80 usbhub - ok 15:19:47.0537 0x0e80 [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci C:\Windows\system32\drivers\usbohci.sys 15:19:57.0542 0x0e80 usbohci - detected UnsignedFile.Multi.Generic ( 1 ) 15:19:57.0585 0x0e80 Detect skipped due to KSN trusted 15:19:57.0585 0x0e80 usbohci - ok 15:19:59.0479 0x0e80 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 15:20:10.0952 0x0e80 usbprint - detected UnsignedFile.Multi.Generic ( 1 ) 15:20:11.0002 0x0e80 Detect skipped due to KSN trusted 15:20:11.0002 0x0e80 usbprint - ok 15:20:20.0803 0x0e80 [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\Windows\system32\drivers\usbscan.sys 15:20:26.0945 0x0e80 usbscan - detected UnsignedFile.Multi.Generic ( 1 ) 15:20:26.0988 0x0e80 Detect skipped due to KSN trusted 15:20:26.0988 0x0e80 usbscan - ok 15:20:27.0028 0x0e80 [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser C:\Windows\system32\drivers\usbser.sys 15:20:37.0031 0x0e80 usbser - detected UnsignedFile.Multi.Generic ( 1 ) 15:20:37.0075 0x0e80 Detect skipped due to KSN trusted 15:20:37.0075 0x0e80 usbser - ok 15:20:46.0675 0x0e80 [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 15:20:55.0784 0x0e80 USBSTOR - detected UnsignedFile.Multi.Generic ( 1 ) 15:20:55.0827 0x0e80 Detect skipped due to KSN trusted 15:20:55.0827 0x0e80 USBSTOR - ok 15:20:55.0869 0x0e80 [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 15:21:05.0873 0x0e80 usbuhci - detected UnsignedFile.Multi.Generic ( 1 ) 15:21:05.0917 0x0e80 Detect skipped due to KSN trusted 15:21:05.0917 0x0e80 usbuhci - ok 15:21:23.0340 0x0e80 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 15:21:28.0436 0x0e80 usbvideo - detected UnsignedFile.Multi.Generic ( 1 ) 15:21:28.0487 0x0e80 Detect skipped due to KSN trusted 15:21:28.0487 0x0e80 usbvideo - ok 15:21:32.0823 0x0e80 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 15:21:44.0754 0x0e80 UxSms - detected UnsignedFile.Multi.Generic ( 1 ) 15:21:44.0800 0x0e80 Detect skipped due to KSN trusted 15:21:44.0800 0x0e80 UxSms - ok 15:21:51.0101 0x0e80 [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] VaultSvc C:\Windows\system32\lsass.exe 15:21:56.0242 0x0e80 VaultSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:21:56.0242 0x0e80 Detect skipped due to KSN trusted 15:21:56.0242 0x0e80 VaultSvc - ok 15:22:03.0764 0x0e80 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 15:22:06.0706 0x0e80 vdrvroot - ok 15:22:18.0951 0x0e80 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 15:22:37.0136 0x0e80 vds - detected UnsignedFile.Multi.Generic ( 1 ) 15:22:37.0186 0x0e80 Detect skipped due to KSN trusted 15:22:37.0186 0x0e80 vds - ok 15:22:46.0896 0x0e80 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 15:22:51.0946 0x0e80 vga - detected UnsignedFile.Multi.Generic ( 1 ) 15:22:51.0989 0x0e80 Detect skipped due to KSN trusted 15:22:51.0989 0x0e80 vga - ok 15:23:02.0357 0x0e80 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 15:23:12.0361 0x0e80 VgaSave - detected UnsignedFile.Multi.Generic ( 1 ) 15:23:12.0405 0x0e80 Detect skipped due to KSN trusted 15:23:12.0405 0x0e80 VgaSave - ok 15:23:14.0315 0x0e80 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 15:23:14.0324 0x0e80 vhdmp - ok 15:23:14.0341 0x0e80 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 15:23:14.0347 0x0e80 viaide - ok 15:23:14.0363 0x0e80 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 15:23:14.0369 0x0e80 volmgr - ok 15:23:14.0397 0x0e80 [ 85C5468BC395819AE2A0C747334BA14C, 75EB4751F90F3347229442A5622539383CE0B1834EE7B995260D0D433BA2E25F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 15:23:14.0408 0x0e80 volmgrx - ok 15:23:14.0421 0x0e80 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 15:23:14.0431 0x0e80 volsnap - ok 15:23:14.0468 0x0e80 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 15:23:14.0475 0x0e80 vsmraid - ok 15:23:14.0518 0x0e80 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 15:23:26.0042 0x0e80 VSS - detected UnsignedFile.Multi.Generic ( 1 ) 15:23:26.0086 0x0e80 Detect skipped due to KSN trusted 15:23:26.0086 0x0e80 VSS - ok 15:23:29.0823 0x0e80 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 15:23:40.0691 0x0e80 vwifibus - detected UnsignedFile.Multi.Generic ( 1 ) 15:23:40.0782 0x0e80 Detect skipped due to KSN trusted 15:23:40.0782 0x0e80 vwifibus - ok 15:23:41.0730 0x0e80 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] VWiFiFlt C:\Windows\system32\DRIVERS\vwififlt.sys 15:23:46.0802 0x0e80 VWiFiFlt - detected UnsignedFile.Multi.Generic ( 1 ) 15:23:46.0846 0x0e80 Detect skipped due to KSN trusted 15:23:46.0846 0x0e80 VWiFiFlt - ok 15:23:51.0284 0x0e80 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 15:24:01.0288 0x0e80 vwifimp - detected UnsignedFile.Multi.Generic ( 1 ) 15:24:01.0331 0x0e80 Detect skipped due to KSN trusted 15:24:01.0331 0x0e80 vwifimp - ok 15:24:09.0213 0x0e80 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 15:24:14.0298 0x0e80 W32Time - detected UnsignedFile.Multi.Generic ( 1 ) 15:24:14.0341 0x0e80 Detect skipped due to KSN trusted 15:24:14.0342 0x0e80 W32Time - ok 15:24:21.0668 0x0e80 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 15:24:34.0574 0x0e80 WacomPen - detected UnsignedFile.Multi.Generic ( 1 ) 15:24:34.0617 0x0e80 Detect skipped due to KSN trusted 15:24:34.0617 0x0e80 WacomPen - ok 15:24:36.0582 0x0e80 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 15:24:46.0587 0x0e80 WANARP - detected UnsignedFile.Multi.Generic ( 1 ) 15:24:46.0639 0x0e80 Detect skipped due to KSN trusted 15:24:46.0639 0x0e80 WANARP - ok 15:24:52.0106 0x0e80 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 15:25:02.0110 0x0e80 Wanarpv6 - detected UnsignedFile.Multi.Generic ( 1 ) 15:25:02.0111 0x0e80 Detect skipped due to KSN trusted 15:25:02.0111 0x0e80 Wanarpv6 - ok 15:25:03.0997 0x0e80 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 15:25:15.0466 0x0e80 wbengine - detected UnsignedFile.Multi.Generic ( 1 ) 15:25:15.0509 0x0e80 Detect skipped due to KSN trusted 15:25:15.0509 0x0e80 wbengine - ok 15:25:31.0792 0x0e80 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 15:25:36.0845 0x0e80 WbioSrvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:25:36.0891 0x0e80 Detect skipped due to KSN trusted 15:25:36.0891 0x0e80 WbioSrvc - ok 15:25:47.0344 0x0e80 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 15:25:59.0658 0x0e80 wcncsvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:25:59.0707 0x0e80 Detect skipped due to KSN trusted 15:25:59.0707 0x0e80 wcncsvc - ok 15:25:59.0768 0x0e80 [ BC00873272B3771CCDA38336AF2B4D4B, 3E412DEC5F172B4C5FD5C227CD790EE56B90A00A8B538704E8F973D230BE2289 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 15:26:11.0365 0x0e80 WcsPlugInService - detected UnsignedFile.Multi.Generic ( 1 ) 15:26:11.0408 0x0e80 Detect skipped due to KSN trusted 15:26:11.0408 0x0e80 WcsPlugInService - ok 15:26:18.0372 0x0e80 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 15:26:18.0378 0x0e80 Wd - ok 15:26:27.0203 0x0e80 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 15:26:27.0222 0x0e80 Wdf01000 - ok 15:26:27.0364 0x0e80 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 15:26:37.0371 0x0e80 WdiServiceHost - detected UnsignedFile.Multi.Generic ( 1 ) 15:26:37.0414 0x0e80 Detect skipped due to KSN trusted 15:26:37.0414 0x0e80 WdiServiceHost - ok 15:26:42.0738 0x0e80 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 15:26:54.0773 0x0e80 WdiSystemHost - detected UnsignedFile.Multi.Generic ( 1 ) 15:26:54.0774 0x0e80 Detect skipped due to KSN trusted 15:26:54.0774 0x0e80 WdiSystemHost - ok 15:26:54.0798 0x0e80 [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient C:\Windows\System32\webclnt.dll 15:27:06.0304 0x0e80 WebClient - detected UnsignedFile.Multi.Generic ( 1 ) 15:27:06.0355 0x0e80 Detect skipped due to KSN trusted 15:27:06.0355 0x0e80 WebClient - ok 15:27:22.0118 0x0e80 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 15:27:28.0603 0x0e80 Wecsvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:27:28.0645 0x0e80 Detect skipped due to KSN trusted 15:27:28.0645 0x0e80 Wecsvc - ok 15:27:34.0785 0x0e80 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 15:27:45.0617 0x0e80 wercplsupport - detected UnsignedFile.Multi.Generic ( 1 ) 15:27:45.0660 0x0e80 Detect skipped due to KSN trusted 15:27:45.0660 0x0e80 wercplsupport - ok 15:27:49.0562 0x0e80 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 15:27:54.0607 0x0e80 WerSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:27:54.0650 0x0e80 Detect skipped due to KSN trusted 15:27:54.0650 0x0e80 WerSvc - ok 15:27:59.0018 0x0e80 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 15:28:13.0963 0x0e80 WfpLwf - detected UnsignedFile.Multi.Generic ( 1 ) 15:28:14.0005 0x0e80 Detect skipped due to KSN trusted 15:28:14.0005 0x0e80 WfpLwf - ok 15:28:17.0188 0x0e80 [ F90B32B6034A377CAA6BFD73C0BA5C71, CDEF926F62A707C2CB0EF389CAA3932CB84BFDF16E33CACA386CF1B666304F63 ] WG111T C:\Windows\system32\DRIVERS\WG111Tvx.sys 15:28:27.0208 0x0e80 WG111T - detected UnsignedFile.Multi.Generic ( 1 ) 15:28:27.0251 0x0e80 Detect skipped due to KSN trusted 15:28:27.0252 0x0e80 WG111T - ok 15:28:32.0566 0x0e80 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 15:28:35.0485 0x0e80 WIMMount - ok 15:28:44.0500 0x0e80 WinDefend - ok 15:28:44.0533 0x0e80 WinHttpAutoProxySvc - ok 15:28:44.0601 0x0e80 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 15:28:54.0610 0x0e80 Winmgmt - detected UnsignedFile.Multi.Generic ( 1 ) 15:28:54.0652 0x0e80 Detect skipped due to KSN trusted 15:28:54.0652 0x0e80 Winmgmt - ok 15:29:12.0216 0x0e80 [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM C:\Windows\system32\WsmSvc.dll 15:29:23.0779 0x0e80 WinRM - detected UnsignedFile.Multi.Generic ( 1 ) 15:29:23.0835 0x0e80 Detect skipped due to KSN trusted 15:29:23.0835 0x0e80 WinRM - ok 15:29:39.0741 0x0e80 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 15:29:46.0086 0x0e80 WinUsb - detected UnsignedFile.Multi.Generic ( 1 ) 15:29:46.0129 0x0e80 Detect skipped due to KSN trusted 15:29:46.0129 0x0e80 WinUsb - ok 15:30:07.0224 0x0e80 [ 4B7912EB80820EAC543EE54806EFCAF0, 4D9186F9FE80F03C85C4DC73342EE5870DF1021BD29974BE33557CEA0D524667 ] Wlansvc C:\Windows\System32\wlansvc.dll 15:30:13.0921 0x0e80 Wlansvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:30:13.0977 0x0e80 Detect skipped due to KSN trusted 15:30:13.0977 0x0e80 Wlansvc - ok 15:30:34.0732 0x0e80 [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 15:30:34.0776 0x0e80 wlidsvc - ok 15:30:34.0803 0x0e80 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 15:30:47.0236 0x0e80 WmiAcpi - detected UnsignedFile.Multi.Generic ( 1 ) 15:30:47.0305 0x0e80 Detect skipped due to KSN trusted 15:30:47.0305 0x0e80 WmiAcpi - ok 15:30:59.0314 0x0e80 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 15:31:07.0384 0x0e80 wmiApSrv - detected UnsignedFile.Multi.Generic ( 1 ) 15:31:07.0428 0x0e80 Detect skipped due to KSN trusted 15:31:07.0428 0x0e80 wmiApSrv - ok 15:31:17.0777 0x0e80 WMPNetworkSvc - ok 15:31:29.0701 0x0e80 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 15:31:34.0783 0x0e80 WPCSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:31:34.0826 0x0e80 Detect skipped due to KSN trusted 15:31:34.0826 0x0e80 WPCSvc - ok 15:31:42.0267 0x0e80 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 15:31:53.0152 0x0e80 WPDBusEnum - detected UnsignedFile.Multi.Generic ( 1 ) 15:31:53.0204 0x0e80 Detect skipped due to KSN trusted 15:31:53.0204 0x0e80 WPDBusEnum - ok 15:31:54.0062 0x0e80 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 15:32:03.0720 0x0e80 ws2ifsl - detected UnsignedFile.Multi.Generic ( 1 ) 15:32:03.0767 0x0e80 Detect skipped due to KSN trusted 15:32:03.0767 0x0e80 ws2ifsl - ok 15:32:18.0790 0x0e80 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 15:32:24.0670 0x0e80 wscsvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:32:24.0712 0x0e80 Detect skipped due to KSN trusted 15:32:24.0712 0x0e80 wscsvc - ok 15:32:24.0714 0x0e80 WSearch - ok 15:32:24.0795 0x0e80 [ 88009DB9E1166B6B6713A858C176FECD, CBF4C63D3C5D14AF3C3F0D9C48E5AC9E7A4323BFB0363E9948FD801963BE1467 ] wuauserv C:\Windows\system32\wuaueng.dll 15:32:34.0846 0x0e80 wuauserv - detected UnsignedFile.Multi.Generic ( 1 ) 15:32:34.0889 0x0e80 Detect skipped due to KSN trusted 15:32:34.0889 0x0e80 wuauserv - ok 15:32:40.0258 0x0e80 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 15:32:50.0263 0x0e80 WudfPf - detected UnsignedFile.Multi.Generic ( 1 ) 15:32:50.0306 0x0e80 Detect skipped due to KSN trusted 15:32:50.0306 0x0e80 WudfPf - ok 15:32:52.0114 0x0e80 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 15:33:02.0122 0x0e80 WUDFRd - detected UnsignedFile.Multi.Generic ( 1 ) 15:33:02.0172 0x0e80 Detect skipped due to KSN trusted 15:33:02.0172 0x0e80 WUDFRd - ok 15:33:07.0561 0x0e80 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 15:33:19.0689 0x0e80 wudfsvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:33:19.0731 0x0e80 Detect skipped due to KSN trusted 15:33:19.0732 0x0e80 wudfsvc - ok 15:33:19.0781 0x0e80 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 15:33:29.0788 0x0e80 WwanSvc - detected UnsignedFile.Multi.Generic ( 1 ) 15:33:29.0831 0x0e80 Detect skipped due to KSN trusted 15:33:29.0831 0x0e80 WwanSvc - ok 15:33:41.0012 0x0e80 [ 6533F30045B0A234783BD8B4069F0433, 458A753961A4D0AC63BC44613A10101DCA5CFD7AB0F5CFA174F1DEF2A72B825D ] XUIF C:\Windows\system32\Drivers\x10ufx2.sys 15:33:41.0018 0x0e80 XUIF - ok 15:33:46.0954 0x0e80 ================ Scan global =============================== 15:33:47.0016 0x0e80 [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 15:33:47.0054 0x0e80 [ 66A8A9412337B08E1735204B8ADEE58C, 766429FBB014A9CA6AEFD39579C3F33625335A3DFD88AB324E4534978695B887 ] C:\Windows\system32\winsrv.dll 15:33:47.0062 0x0e80 [ 66A8A9412337B08E1735204B8ADEE58C, 766429FBB014A9CA6AEFD39579C3F33625335A3DFD88AB324E4534978695B887 ] C:\Windows\system32\winsrv.dll 15:33:47.0081 0x0e80 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 15:33:47.0105 0x0e80 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 15:33:47.0110 0x0e80 [ Global ] - ok 15:33:47.0110 0x0e80 ================ Scan MBR ================================== 15:33:47.0120 0x0e80 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 15:33:47.0372 0x0e80 \Device\Harddisk0\DR0 - ok 15:33:47.0372 0x0e80 ================ Scan VBR ================================== 15:33:47.0393 0x0e80 [ 82BD7EAF574BBEEB24FFE69B0B4E98A6 ] \Device\Harddisk0\DR0\Partition1 15:33:47.0394 0x0e80 \Device\Harddisk0\DR0\Partition1 - ok 15:33:47.0400 0x0e80 [ F0FE098C865C392E163768E3C3B7BEC9 ] \Device\Harddisk0\DR0\Partition2 15:33:47.0401 0x0e80 \Device\Harddisk0\DR0\Partition2 - ok 15:33:47.0403 0x0e80 [ EE365EDF61F4F477222E99F8C90008BE ] \Device\Harddisk0\DR0\Partition3 15:33:47.0404 0x0e80 \Device\Harddisk0\DR0\Partition3 - ok 15:33:47.0404 0x0e80 ================ Scan generic autorun ====================== 15:33:47.0669 0x0e80 [ BCFF8CD24809941E28C73185FC58CA39, 353CA65A5EAFAF5DEC777C422A1B842DAF84ED66626AF314670E49402B6DE994 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 15:33:47.0865 0x0e80 RTHDVCPL - ok 15:33:47.0934 0x0e80 [ B9CCBA39317F2CE2AE9EC5E94271AD23, C497D5EC8F3DED41AF1FC93CE48D237C54F4C4286E7B633C3ADC2F7D524E8ED8 ] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe 15:33:47.0949 0x0e80 CanonSolutionMenu - ok 15:33:48.0039 0x0e80 [ 5858DE874168C5F0AEA7A353DD520D48, DB77AF431227AEBD92C6E40AC723435E83DCF4620B7366D4FA6D9ACB500AA6EA ] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe 15:33:48.0087 0x0e80 CanonMyPrinter - ok 15:33:48.0174 0x0e80 [ 00AB2B491C7037BB219BEB26FAD34C72, 95EDBBE07EB85EEE1376252AA975BAA61235C80FC03036357BD4786E5D6B9703 ] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE 15:33:48.0205 0x0e80 CanonSolutionMenuEx - ok 15:33:48.0279 0x0e80 [ F2FF574F6F2211D9AAAE5E82A3AD553F, 392CDC901BE6CC617E9F5C720EB0C3244F3082D63AC6CAE8BEDB029BC7069D69 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe 15:33:48.0303 0x0e80 Adobe ARM - ok 15:33:48.0326 0x0e80 [ 62CC348ECEAF9F7D3ECCF2D2C72E0DEA, 6416BDA011102EC9413A5E7D0E87B5A6BCC25B328FE34E03FF223C82B1CA20DB ] C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe 15:33:48.0332 0x0e80 ProductUpdater - ok 15:33:48.0570 0x0e80 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 15:33:58.0594 0x0e80 Sidebar - detected UnsignedFile.Multi.Generic ( 1 ) 15:33:58.0637 0x0e80 Detect skipped due to KSN trusted 15:33:58.0637 0x0e80 Sidebar - ok 15:34:12.0950 0x0e80 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 15:34:22.0501 0x0e80 mctadmin - detected UnsignedFile.Multi.Generic ( 1 ) 15:34:22.0552 0x0e80 Detect skipped due to KSN trusted 15:34:22.0552 0x0e80 mctadmin - ok 15:34:43.0377 0x0e80 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 15:34:49.0766 0x0e80 Sidebar - detected UnsignedFile.Multi.Generic ( 1 ) 15:34:49.0766 0x0e80 Detect skipped due to KSN trusted 15:34:49.0766 0x0e80 Sidebar - ok 15:34:52.0798 0x0e80 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 15:35:04.0911 0x0e80 mctadmin - detected UnsignedFile.Multi.Generic ( 1 ) 15:35:04.0911 0x0e80 Detect skipped due to KSN trusted 15:35:04.0911 0x0e80 mctadmin - ok 15:35:11.0032 0x0e80 [ D82F21A55B009AA22050797204C09168, 372AFE66814F2D4A1076ED3BAE8A3F73B5C55B09AF3E8A1E1DEE873358ADD096 ] C:\Program Files (x86)\T-Online\WLAN-Access Finder\ToWLaAcF.exe 15:35:22.0457 0x0e80 T-Online_Software_6\WLAN-Access Finder - detected UnsignedFile.Multi.Generic ( 1 ) 15:35:22.0500 0x0e80 Detect skipped due to KSN trusted 15:35:22.0500 0x0e80 T-Online_Software_6\WLAN-Access Finder - ok 15:35:38.0639 0x0e80 [ 14EF06B1EA531D681B5738F37388B99C, AB74735A3569B7995572FD7B0D026919CADA27C43A6AD0503659CE7CA3FF6B84 ] C:\Program Files\CCleaner\CCleaner64.exe 15:35:38.0762 0x0e80 CCleaner Monitoring - ok 15:35:38.0841 0x0e80 [ FE438ED1EE2ADDCC5615864EC120FA70, 231ED2E1D88266E55F0D0070DD6F47581EDCCCA9FF2D8FF69263E7A47CEEA067 ] C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPDLR.exe 15:35:38.0863 0x0e80 SmartSwitchPDLR.exe - ok 15:35:38.0896 0x0e80 [ 06CD07270AE873EB4E6717164428D133, EAF5B211121FD3266AF7F7946A3C6E6C546CCE4C098CA0DA92061135FA7F87C2 ] C:\Program Files (x86)\phonostar-Player\phonostarTimer.exe 15:35:48.0900 0x0e80 phonostar-PlayerTimer - detected UnsignedFile.Multi.Generic ( 1 ) 15:35:48.0943 0x0e80 Detect skipped due to KSN trusted 15:35:48.0943 0x0e80 phonostar-PlayerTimer - ok 15:36:02.0936 0x0e80 Skype - ok 15:36:06.0074 0x0e80 [ 2261FC3573534BD28EFF1B4C69339D70, 0AB4A132FBA1EC88FDC9145DB34D8A9ED40D4BB579FDE2C21F2846730993295E ] C:\Program Files (x86)\Tobit Radio.fx\Client\rfx-tray.exe 15:36:06.0108 0x0e80 rfxsrvtray - ok 15:36:06.0220 0x0e80 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 15:36:16.0243 0x0e80 Sidebar - detected UnsignedFile.Multi.Generic ( 1 ) 15:36:16.0243 0x0e80 Detect skipped due to KSN trusted 15:36:16.0243 0x0e80 Sidebar - ok 15:36:18.0543 0x0e80 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 15:36:30.0245 0x0e80 mctadmin - detected UnsignedFile.Multi.Generic ( 1 ) 15:36:30.0245 0x0e80 Detect skipped due to KSN trusted 15:36:30.0245 0x0e80 mctadmin - ok 15:36:30.0255 0x0e80 Win FW state via NFP2: enabled ( trusted ) 15:36:30.0317 0x0e80 ============================================================ 15:36:30.0317 0x0e80 Scan finished 15:36:30.0317 0x0e80 ============================================================ 15:36:30.0322 0x1340 Detected object count: 0 15:36:30.0322 0x1340 Actual detected object count: 0 |
29.10.2017, 20:14 | #8 |
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Servus, wir sind hier im Malwarebereich... darauf bin ich spezialisiert. Wenn du es möchtest, versuchen wir, den Rechner zu bereinigen. Inwieweit das klappt (bei den von dir beschriebenen Problemen), wird sich dann zeigen. Alternative: private Daten sichern und Windows neu installieren Wenn es danach immer noch nicht besser wird, liegt wohl ein Hardwaredefekt vor. Deine Entscheidung, gib mir Rückmeldung. |
30.10.2017, 12:48 | #9 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias Vielen Dank für dein Angebot, habe aber irgendwie inzwischen selbst mein Problem gelöst. Habe den Bitdefender installieren können und obwohl er keine Probleme gefunden hat, läuft wieder alles. Bin sehr erleichtert. Weis auch nicht was die Ursache war. Trotzdem nochmals Danke, danke für eure Hilfe. Es ist schon ein Segen, das es euch gibt. Gruß, Heinz |
30.10.2017, 21:13 | #10 |
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Servus, und die Malware (Schadsoftware), die ich in den Logdateien sehe, willst du weiter auf deinem Rechner behalten? Wie gesagt, da sind Sachen von 2012 drauf... schon schwach von Bitdefender, wenn das Programm nichts entdeckt hat... |
01.11.2017, 11:47 | #11 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias Nee, diese alte Schadmalware hätte ich natürlich schon gerne weg. Ich hatte dich so verstanden, das du sie nicht eliminieren kannst. Geht denn das jetzt noch ? Hab ja inzwischen den Bitdefender drauf. Der wird ja überall als Testsieger bei Antivieren Schutzprogrammen bezeichnet. Weis auch nicht, warum er diese alten Sachen nicht findet, aber vielleicht findet und beseitigt er diese alte Malware doch noch, denn er arbeitet ja im Hintergrund und ich bekomme ja erst demnächst automatische Berichte. Schreib mir bitte, was du vorschlägst. Gruß, Heinz |
01.11.2017, 16:01 | #12 | |
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Servus, Zitat:
Solche Tests sind meiner Meinung nach wenig aussagekräftig, weil sie mir der Realität wenig zu tun haben. Die Entfernung sollte wenig Probleme bereiten (außer vielleicht, Bitdefender stört bei der Bereinigung, was wir hier auch schon öfter hatten). Bitte nochmal FRST ausführen, damit ich weiß, wie es jetzt mit Bitdefender aussieht (achja, und sollte Bitdefender FRST gleich mal blockieren, dann weißt du gleich, dass Bitdefender nichts taugt... ggf. dann Bitdefender deaktivieren oder FRST erlauben ):
|
01.11.2017, 17:25 | #13 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias O.K, dann versuchen wir die Malware Reste auch noch zu beseitigen. " Frst " lief jedenfalls sehr schnell durch, weis aber nicht, ob der Bitdefender irgend welche wichtigen Daten unterbunden hat, aber das wirst du ja sicher sofort selbst erkennen. Gruß Heinz anbei in den Anhängen die neuen txt. |
01.11.2017, 20:30 | #14 |
/// TB-Ausbilder | SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Servus, Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop (Bebilderte Anleitung).
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware 3 (Bebilderte Anleitung)
Schritt 3
Bitte poste mit deiner nächsten Antwort
|
02.11.2017, 12:45 | #15 |
| SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam Hallo Matthias Adware Cleaner läuft zwar und findet auch etwas, hängt sich aber beim löschen auf !! Komme dadurch nicht weiter. Sende dir trotzdem die txt vom Suchlauf. Gruß Heinz Code:
ATTFilter # AdwCleaner 7.0.4.0 - Logfile created on Thu Nov 02 11:04:53 2017 # Updated on 2017/27/10 by Malwarebytes # Database: 11-02-2017.1 # Running on Windows 7 Home Premium (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** PUP.Optional.Legacy, C:\Program Files (x86)\Common Files\freemake shared PUP.Optional.DriverTurbo, C:\Program Files (x86)\DriverTurbo PUP.Optional.DriverTurbo, C:\Users\Heinzelmann\AppData\Roaming\DriverTurbo ***** [ Files ] ***** PUP.Optional.Legacy, C:\Users\Heinzelmann\Downloads\DriverTurboSetup.exe ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries. ************************* C:/AdwCleaner/AdwCleaner[C0].txt - [1153 B] - [2017/9/17 16:7:23] C:/AdwCleaner/AdwCleaner[C1].txt - [1339 B] - [2017/9/19 14:12:39] C:/AdwCleaner/AdwCleaner[C2].txt - [1475 B] - [2017/9/23 16:26:45] C:/AdwCleaner/AdwCleaner[S0].txt - [983 B] - [2017/9/17 16:7:2] C:/AdwCleaner/AdwCleaner[S10].txt - [1877 B] - [2017/10/11 15:17:4] C:/AdwCleaner/AdwCleaner[S11].txt - [1946 B] - [2017/10/11 15:20:14] C:/AdwCleaner/AdwCleaner[S12].txt - [2016 B] - [2017/10/28 8:56:27] C:/AdwCleaner/AdwCleaner[S13].txt - [2085 B] - [2017/10/28 9:24:19] C:/AdwCleaner/AdwCleaner[S14].txt - [2341 B] - [2017/11/2 10:7:32] C:/AdwCleaner/AdwCleaner[S1].txt - [1084 B] - [2017/9/18 11:13:10] C:/AdwCleaner/AdwCleaner[S2].txt - [1152 B] - [2017/9/19 14:12:24] C:/AdwCleaner/AdwCleaner[S3].txt - [1288 B] - [2017/9/23 16:26:24] C:/AdwCleaner/AdwCleaner[S4].txt - [1424 B] - [2017/9/29 8:56:3] C:/AdwCleaner/AdwCleaner[S5].txt - [1490 B] - [2017/10/3 15:49:36] C:/AdwCleaner/AdwCleaner[S6].txt - [1558 B] - [2017/10/5 9:2:49] C:/AdwCleaner/AdwCleaner[S7].txt - [1624 B] - [2017/10/5 13:34:42] C:/AdwCleaner/AdwCleaner[S8].txt - [1692 B] - [2017/10/10 8:45:17] C:/AdwCleaner/AdwCleaner[S9].txt - [1807 B] - [2017/10/11 12:58:24] ########## EOF - C:\AdwCleaner\AdwCleaner[S15].txt ########## |
Themen zu SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam |
antivir, benutzerkonto, bitdefender, defender, eset, fehlermeldung, free, gekauft, gelöscht, heute, hoffe, installieren, kaspersky, konnte, langsam, nicht mehr, programme, starte, starten, test, trojaner, verlangt, version, win, öffnen |