|
Log-Analyse und Auswertung: Klarna Trojaner; ZIP geöffnetWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
12.07.2018, 21:01 | #16 |
| Klarna Trojaner; ZIP geöffnet erledigt |
12.07.2018, 22:55 | #17 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Klarna Trojaner; ZIP geöffnet Schädlinge suchen mit Kaspersky TDSS-Killer
__________________Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
13.07.2018, 18:44 | #18 |
| Klarna Trojaner; ZIP geöffnetCode:
ATTFilter 19:42:17.0953 0x2c64 TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17 19:42:17.0953 0x2c64 UEFI system 19:42:27.0093 0x2c64 ============================================================ 19:42:27.0093 0x2c64 Current date / time: 2018/07/13 19:42:27.0093 19:42:27.0156 0x2c64 SystemInfo: 19:42:27.0156 0x2c64 19:42:27.0156 0x2c64 OS Version: 10.0.17134 ServicePack: 0.0 19:42:27.0156 0x2c64 Product type: Workstation 19:42:27.0156 0x2c64 ComputerName: FIXTOP 19:42:27.0156 0x2c64 UserName: email 19:42:27.0156 0x2c64 Windows directory: C:\WINDOWS 19:42:27.0156 0x2c64 System windows directory: C:\WINDOWS 19:42:27.0156 0x2c64 Running under WOW64 19:42:27.0156 0x2c64 Processor architecture: Intel x64 19:42:27.0156 0x2c64 Number of processors: 8 19:42:27.0156 0x2c64 Page size: 0x1000 19:42:27.0156 0x2c64 Boot type: Normal boot 19:42:27.0156 0x2c64 CodeIntegrityOptions = 0x00000001 19:42:27.0156 0x2c64 ============================================================ 19:42:28.0500 0x2c64 KLMD registered as C:\WINDOWS\system32\drivers\23087305.sys 19:42:28.0500 0x2c64 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 17134.1, osProperties = 0x19 19:42:28.0703 0x2c64 System UUID: {024AC421-79A4-970C-10D0-F2071005B9B7} 19:42:28.0953 0x2c64 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:42:28.0968 0x2c64 ============================================================ 19:42:28.0968 0x2c64 \Device\Harddisk0\DR0: 19:42:28.0968 0x2c64 GPT partitions: 19:42:28.0968 0x2c64 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {221C1492-83DA-46DC-9802-C2D0CDE2893A}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000 19:42:28.0968 0x2c64 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {4F42D1ED-4137-4AFB-8F6A-3F527716BA62}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x8000 19:42:28.0968 0x2c64 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {CDBC5203-B98F-432D-AB16-678F7D3B351A}, Name: Basic data partition, StartLBA 0x3A800, BlocksNum 0x745D2000 19:42:28.0968 0x2c64 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {DDFBB9CD-0849-4885-B700-89A54EF55F57}, Name: Basic data partition, StartLBA 0x7460C800, BlocksNum 0xFA000 19:42:28.0968 0x2c64 MBR partitions: 19:42:28.0968 0x2c64 ============================================================ 19:42:28.0984 0x2c64 C: <-> \Device\Harddisk0\DR0\Partition3 19:42:28.0984 0x2c64 ============================================================ 19:42:28.0984 0x2c64 Initialize success 19:42:28.0984 0x2c64 ============================================================ 19:42:31.0109 0x2a18 ============================================================ 19:42:31.0109 0x2a18 Scan started 19:42:31.0109 0x2a18 Mode: Manual; 19:42:31.0109 0x2a18 ============================================================ 19:42:31.0109 0x2a18 KSN ping started 19:42:31.0234 0x2a18 KSN ping finished: true 19:42:36.0452 0x2a18 ================ Scan system memory ======================== 19:42:36.0452 0x2a18 System memory - ok 19:42:36.0452 0x2a18 ================ Scan services ============================= 19:42:36.0577 0x2a18 1394ohci - ok 19:42:36.0577 0x2a18 3ware - ok 19:42:36.0593 0x2a18 ACPI - ok 19:42:36.0593 0x2a18 AcpiDev - ok 19:42:36.0593 0x2a18 acpiex - ok 19:42:36.0593 0x2a18 acpipagr - ok 19:42:36.0624 0x2a18 [ 6AFFD57803BBB6FBCB483F983900A5C4, A3A87984E70C8B47F919D2633E6378F3AACCBF3E74DB3B35BB2E15D036DB36E2 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 19:42:36.0624 0x2a18 AcpiPmi - ok 19:42:36.0624 0x2a18 acpitime - ok 19:42:36.0640 0x2a18 [ AAA8E68E685DB1B68747E3DF68F96368, 1A5BE239B2D0C6F727303A98CFFC91070B6A05ECD6B9CD05AB326AC1910ECEBF ] acsock C:\WINDOWS\system32\DRIVERS\acsock64.sys 19:42:36.0640 0x2a18 acsock - ok 19:42:36.0687 0x2a18 [ DD743E7FC93D8F9AB84B0FAECF4BE681, 4F56F4EB8FC10723C4D0E7DAD207CCCCB225E7EF7852C208FCF30052C45E9F90 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 19:42:36.0687 0x2a18 AdobeFlashPlayerUpdateSvc - ok 19:42:36.0702 0x2a18 ADP80XX - ok 19:42:36.0702 0x2a18 AFD - ok 19:42:36.0718 0x2a18 [ F267095A11A461BEF39FB180750BE801, CF90798C46892FF5225155D2C7BCC469A4A631E22919CBEDA2F4FEEF4F05E301 ] afunix C:\WINDOWS\system32\drivers\afunix.sys 19:42:36.0718 0x2a18 afunix - ok 19:42:36.0733 0x2a18 [ 0CD0F0C62414217DE9EA7EC8D425277E, FD211157B85B841D0C94B36776572FADC7425F1B0B49EACC910D3E175208A7EC ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 19:42:36.0749 0x2a18 ahcache - ok 19:42:36.0749 0x2a18 [ 2BF4DA8EC5F1A0D88D2DDE1E6821076B, B9F4D499DB4CB91576ACE4847B96F2FC770B9BCC223B5E2261B2DEC22D7651E7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 19:42:36.0749 0x2a18 AJRouter - ok 19:42:36.0765 0x2a18 [ 9E9D78D1C179EB2E3E2282A1DC409D93, EA7486B4425A87FDDD60542AAF0812A8DB868F569886B894883702B362A05D2C ] ALG C:\WINDOWS\System32\alg.exe 19:42:36.0765 0x2a18 ALG - ok 19:42:36.0780 0x2a18 AmdK8 - ok 19:42:36.0780 0x2a18 AmdPPM - ok 19:42:36.0780 0x2a18 amdsata - ok 19:42:36.0780 0x2a18 amdsbs - ok 19:42:36.0780 0x2a18 amdxata - ok 19:42:36.0796 0x2a18 [ E4A18157BF5D8D714C05169A8A8D604C, 45D8CB25A9967D634F8331070BDFB3DF4ACB6295CF1520F9AAE8753D3BF4018A ] AppID C:\WINDOWS\system32\drivers\appid.sys 19:42:36.0796 0x2a18 AppID - ok 19:42:36.0812 0x2a18 [ F1A04835C7FA75C8215961C1095D5EBF, 45D153404E601C0CE247058B78F328DD9F7F4F6A9480132F7CE6D9A7092F63CF ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 19:42:36.0812 0x2a18 AppIDSvc - ok 19:42:36.0843 0x2a18 [ 48EA4B4CCC920D130529A1EF85388B6A, 31F69543682E70DF0A6B2A70FC7553ECEE643C554E7F8FF18A2DD09359360F8E ] Appinfo C:\WINDOWS\System32\appinfo.dll 19:42:36.0843 0x2a18 Appinfo - ok 19:42:36.0858 0x2a18 [ 27DF6AD69B46386DA76F42C565D7A402, B03588E0BFC139A79B9CE15D3E250C66234A445FA68942CAADF61D90E5D8C980 ] AppleLowerFilter C:\WINDOWS\System32\drivers\AppleLowerFilter.sys 19:42:36.0858 0x2a18 AppleLowerFilter - ok 19:42:36.0874 0x2a18 [ 769316CA5884FBBD02D45C28FE105922, 117168BFB2D8DBF1258EBA53DCE09E74000B35B7B7460251B4C46BDB9CEA709A ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys 19:42:36.0874 0x2a18 applockerfltr - ok 19:42:36.0874 0x2a18 AppReadiness - ok 19:42:36.0890 0x2a18 AppXSvc - ok 19:42:36.0890 0x2a18 arcsas - ok 19:42:36.0890 0x2a18 AsyncMac - ok 19:42:36.0890 0x2a18 atapi - ok 19:42:36.0905 0x2a18 [ C345E697B68BE9A45BB6CBD03F1E66F2, F50E0CC874A67A9EED3C792599ADA92C888348E7256663F7C784FBBF51D19EAC ] AtherosSvc C:\WINDOWS\system32\AdminService.exe 19:42:36.0921 0x2a18 AtherosSvc - ok 19:42:36.0921 0x2a18 AudioEndpointBuilder - ok 19:42:36.0921 0x2a18 Audiosrv - ok 19:42:36.0937 0x2a18 [ D7BFD86F7A9ABE39351199869D093110, 90BB2C0A8185D3982FEFAC7C1E18783AF949EBECA3B9E44DCF89E2FD5FD6AA0C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 19:42:36.0937 0x2a18 AxInstSV - ok 19:42:36.0937 0x2a18 b06bdrv - ok 19:42:36.0952 0x2a18 [ 982FAA5686F67BFEF3E6094705C2621F, 02456312B0FD0ABE7B7EEC0FB385268AF34DDB5F13AF934F96FCA7C32EA51447 ] bam C:\WINDOWS\system32\drivers\bam.sys 19:42:36.0952 0x2a18 bam - ok 19:42:36.0952 0x2a18 BasicDisplay - ok 19:42:36.0952 0x2a18 BasicRender - ok 19:42:36.0968 0x2a18 BcastDVRUserService - ok 19:42:36.0983 0x2a18 bcmfn2 - ok 19:42:37.0015 0x2a18 [ 255D1EA1F4EDA1B7B28A88581F12A1CE, 5B2D7F2EFA7BB539719890CF2E45568C544DD0EECEC44BBA56CCECB792E8BC44 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 19:42:37.0015 0x2a18 BDESVC - ok 19:42:37.0015 0x2a18 [ 9B068DF7B7B3DDF768D06DFD69B49FD0, DC2CD3A70506AEB1BCEB207A9B06657806E72C5432FA605FF9C6F11516F38132 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 19:42:37.0015 0x2a18 Beep - ok 19:42:37.0030 0x2a18 BFE - ok 19:42:37.0046 0x2a18 [ BC1E5F20251E0AFDB955E7D91093B619, 5642E6B6CA6DBC8585834790A70CFF54252A631A9EA06D28F28EF7430FA42BE5 ] bindflt C:\WINDOWS\system32\drivers\bindflt.sys 19:42:37.0046 0x2a18 bindflt - ok 19:42:37.0108 0x2a18 [ 97F4C0B9741E06BAC6AD2D93ABCEAED8, 25FD58F4BA2F8EC99241A580352D1EC49924829C61D89353B30CCEEE2CEBADE7 ] BITS C:\WINDOWS\System32\qmgr.dll 19:42:37.0140 0x2a18 BITS - ok 19:42:37.0155 0x2a18 [ 30D75769E23CCFBE13DB41FC54243BB1, 4ED018F1DB103D3F354D8EF7DFE797028DBDF22294D355F6D38DF9C6AF61B69E ] BluetoothUserService C:\WINDOWS\System32\Microsoft.Bluetooth.UserService.dll 19:42:37.0171 0x2a18 BluetoothUserService - ok 19:42:37.0171 0x2a18 bowser - ok 19:42:37.0171 0x2a18 BrokerInfrastructure - ok 19:42:37.0187 0x2a18 [ 3E4BF0145201239E0BBD0A937431C14C, 1DDC27C89B16ADD9346EB30AA9E17330FE0181BE96DC6F06C455493FBDCB1113 ] Browser C:\WINDOWS\System32\browser.dll 19:42:37.0187 0x2a18 Browser - ok 19:42:37.0218 0x2a18 [ 85F5808D19879E1803E46405090F29C8, E22E73BCE3B76BFBAC712DF1E5D7D38E189B80D1CE6E9A9AB3C94733CF18F04B ] BTAGService C:\WINDOWS\System32\BTAGService.dll 19:42:37.0218 0x2a18 BTAGService - ok 19:42:37.0249 0x2a18 [ 7170961E98A4F47175972D7F096AA7C5, 8D060277A7C1371DBA1CAFBFB23632664FFFFD3FA2B512F811A25C1871E5CE7D ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys 19:42:37.0249 0x2a18 BtFilter - ok 19:42:37.0280 0x2a18 [ 2B5EB1BB42AEE7A77B1E9C794DFCEF3D, E94040AAE365CFCAEEC75F38EBDDB2C7F13B41F41D96C33FE3F25078BA21DA13 ] BthA2DP C:\WINDOWS\system32\drivers\BthA2DP.sys 19:42:37.0296 0x2a18 BthA2DP - ok 19:42:37.0311 0x2a18 [ 063E91CD2CB1C372459FD6FBC02509E7, 29319290F73D8D87323584D938FBC86400AB37455E7E058A543A77F9BBF4579D ] BthAvctpSvc C:\WINDOWS\System32\BthAvctpSvc.dll 19:42:37.0311 0x2a18 BthAvctpSvc - ok 19:42:37.0327 0x2a18 [ E0121734C2492406034FA23E3D394EBD, E855EB12DD35CC47F68C5C6B1622560599C7074E274E510528196D47BDA56960 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 19:42:37.0327 0x2a18 BthEnum - ok 19:42:37.0358 0x2a18 [ F56B351A4E2B384911B2BA2A98261F34, A8140A2ABEC704A11776D29894ADD5D1FA9C125567EB6B270694573DB9B0E30E ] BthHFAud C:\WINDOWS\system32\DRIVERS\BthHfAud.sys 19:42:37.0358 0x2a18 BthHFAud - ok 19:42:37.0358 0x2a18 [ 02FEC31842DD153D966AC227B6DDF8BB, 90EEEA049212E5FE8EFA2ACED45DFB6ABAFEA6D40FB4E1E2681F65A417237163 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 19:42:37.0374 0x2a18 BthHFEnum - ok 19:42:37.0390 0x2a18 [ 8EE632BFE4BABD4E7A299AF54476F9A5, 836675F295A033C0239DCF86D90985443A60D5A1F38B668CA82A30BDFD983352 ] BthLEEnum C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys 19:42:37.0390 0x2a18 BthLEEnum - ok 19:42:37.0405 0x2a18 [ A0EC1D5C937995A2C5F1179538A8A6B4, CBFBDF2D8305BD72FFF64AAAB31EB5D5B8ADE537C35AC63DC3F6ADCBF96B3659 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 19:42:37.0405 0x2a18 BTHMODEM - ok 19:42:37.0421 0x2a18 [ B10E0CC936462BBA7BC659C0927617A0, B4F2A318384D176D0ACF26372756CE097F34EED59FBB023E7DB8F95D8F73F69A ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 19:42:37.0421 0x2a18 BthPan - ok 19:42:37.0452 0x2a18 [ EF105DBEB81F14EBDBA5F7977AD8FA91, A4D20038B72361CD95446854F2E538314C4C8B5EA4618AC7B18A43D8AF777A34 ] BTHPORT C:\WINDOWS\system32\DRIVERS\BTHport.sys 19:42:37.0468 0x2a18 BTHPORT - ok 19:42:37.0499 0x2a18 [ 1EB49C9E2716D4924460B2FAA295E313, B96D39479BFD2ABCD3A3BB8897EAD7C5A03DFFD7266E82A1FBA0E7FEAF73E4B8 ] bthserv C:\WINDOWS\system32\bthserv.dll 19:42:37.0499 0x2a18 bthserv - ok 19:42:37.0515 0x2a18 [ 0D5ECDF2601312025811F6AC413F851A, B7E99CF02C6B511BD643E7F8BB59E983D8B65073D9B55ED44457EDC2BBBBC419 ] BTHUSB C:\WINDOWS\system32\DRIVERS\BTHUSB.sys 19:42:37.0515 0x2a18 BTHUSB - ok 19:42:37.0515 0x2a18 bttflt - ok 19:42:37.0515 0x2a18 buttonconverter - ok 19:42:37.0530 0x2a18 [ 9983FF8D9834F2E67787F4BDC42A8E36, 85260F4A657D657ACD394339DFDDE814AD6BCA65712EAD943833BE7AB0937C8D ] CAD C:\WINDOWS\System32\drivers\CAD.sys 19:42:37.0530 0x2a18 CAD - ok 19:42:37.0530 0x2a18 camsvc - ok 19:42:37.0530 0x2a18 CapImg - ok 19:42:37.0608 0x2a18 [ 8BF2DAB8C726ED91BBE3F3FFA774CB2C, 317379A43D85DE46A8CAB10716EDD22228D624B79A39377A4411D93880517F9B ] CCDMonitorService C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe 19:42:37.0671 0x2a18 CCDMonitorService - ok 19:42:37.0671 0x2a18 cdfs - ok 19:42:37.0702 0x2a18 [ 0942C87ED45B1E227032AD154105F79B, A0A40589B9C399061C1C46247609CA514DCD21DDF1E7FCEE19F0CE75D0FC7996 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 19:42:37.0702 0x2a18 CDPSvc - ok 19:42:37.0733 0x2a18 [ 9FBF5849A6F51E3B3F8AF2A4171648DA, 7422BC5C87075F5008E6364C8AFAA794AB17CA2DC238DC00F377B942B6FCDC11 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll 19:42:37.0749 0x2a18 CDPUserSvc - ok 19:42:37.0780 0x2a18 cdrom - ok 19:42:37.0796 0x2a18 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 19:42:37.0796 0x2a18 CertPropSvc - ok 19:42:37.0811 0x2a18 [ 5E1BCF6E4859E66CE5A0246DF8827A16, 21DC9CFA0EF40B6D45F4FC2DF4AE7D911D53CB3AA462BE8CE71D5421EF39D3CB ] chip1click C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe 19:42:37.0811 0x2a18 chip1click - ok 19:42:37.0811 0x2a18 cht4iscsi - ok 19:42:37.0811 0x2a18 cht4vbd - ok 19:42:37.0827 0x2a18 [ 3AA86DA04A561E8162C2DBBF92D12074, 9CB67299BEC25F2B357DDAA5A36B3464193B8BDAB4DCFAE0CD4315911027E409 ] circlass C:\WINDOWS\System32\drivers\circlass.sys 19:42:37.0827 0x2a18 circlass - ok 19:42:37.0843 0x2a18 [ 5619FC2A3AE4F43D4B20D95472ED948E, A5D530FB6AC493FC01489A1D32C311F7D28F0D7B49C950E71F4ADF4FBA302689 ] CldFlt C:\WINDOWS\system32\drivers\cldflt.sys 19:42:37.0858 0x2a18 CldFlt - ok 19:42:37.0874 0x2a18 CLFS - ok 19:42:38.0358 0x2a18 [ 64536C6809869A967A7390CF2B588E05, AF1C8116014C108A8393A767FBA66CBF5E9AA836DC599D00B8F794460548254F ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 19:42:38.0530 0x2a18 ClickToRunSvc - ok 19:42:38.0577 0x2a18 [ 5BD85187D6A6A37D2A4563F33D7A76E4, 6FF434BE93259229E0EA64EC1B6E09B1B814C2A467FC2859B94C79549E2F114C ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 19:42:38.0593 0x2a18 ClipSVC - ok 19:42:38.0608 0x2a18 CmBatt - ok 19:42:38.0608 0x2a18 CNG - ok 19:42:38.0624 0x2a18 [ 037DCC7A71938729CB12E8174E03031C, 1BA2F74F639BF8D5BB38AA658A6D847BAE8D85CF72C4AD5F13BBA1D53145789F ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 19:42:38.0624 0x2a18 cnghwassist - ok 19:42:38.0671 0x2a18 [ E40C99A3E0FFF49687F2187BF3E3050D, 30723EC5767C3F6FAA3CF299440B71B5973F890FB54B9737B96FA0359E7D90FA ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys 19:42:38.0671 0x2a18 CompositeBus - ok 19:42:38.0671 0x2a18 COMSysApp - ok 19:42:38.0671 0x2a18 condrv - ok 19:42:38.0686 0x2a18 CoreMessagingRegistrar - ok 19:42:38.0733 0x2a18 [ 15419926E1BB686C6953394D3B73AEDE, 8DE4BF51B29AA040D008F9E1F313064E6D14CC2BDC6C8D9ABA4E6B9FAB293EE3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 19:42:38.0749 0x2a18 cphs - ok 19:42:38.0749 0x2a18 [ 5212E0957468D3F94D90FA7A0F06B58F, 955DAC77A0148E9F9ED744F5D341CB9C9118261E52FE622AC6213965F2BC4CAD ] cpuz137 C:\Program Files (x86)\CPUID\PC Wizard 2015\pcwiz_x64.sys 19:42:38.0749 0x2a18 cpuz137 - ok 19:42:38.0765 0x2a18 CryptSvc - ok 19:42:38.0780 0x2a18 [ 8711386E9B04357F8F58166760759F3A, 8912CFD220645002C9D3F9E49717D8B0B98704380B45F53D45D5674537B496FF ] dam C:\WINDOWS\system32\drivers\dam.sys 19:42:38.0780 0x2a18 dam - ok 19:42:38.0780 0x2a18 DcomLaunch - ok 19:42:38.0780 0x2a18 defragsvc - ok 19:42:38.0811 0x2a18 [ 8DF502E8116C625387DD789936D7A0C2, D42661E068F401199FAEA012C200EEF02C1409A09DACD30E6B08E3FBE4149BFA ] DeviceAssociationService C:\WINDOWS\system32\das.dll 19:42:38.0827 0x2a18 DeviceAssociationService - ok 19:42:38.0827 0x2a18 DeviceInstall - ok 19:42:38.0858 0x2a18 [ 38D6ED38A46F815C24C5656E8A5AB083, 730DD6D85771A60E5C089BF5D810E3AEA335BF7DD14FD72924A1A4FCF021A59D ] DevicePickerUserSvc C:\WINDOWS\System32\Windows.Devices.Picker.dll 19:42:38.0874 0x2a18 DevicePickerUserSvc - ok 19:42:38.0936 0x2a18 [ 372BD821867225F32DE87A6B3FEC8A2E, 20389A1861B5A451EE3383F68FC59B3C9A75D3123B2DF1669CBB5CC37A0128B0 ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll 19:42:38.0952 0x2a18 DevicesFlowUserSvc - ok 19:42:38.0952 0x2a18 [ C48C4D6B8D9C53F0399DEDA402A6FAE5, 25FBE2A51DCF7DB95AD2707502F8A9661B94FC61DFC405DA5BF23BED1BA123D2 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 19:42:38.0952 0x2a18 DevQueryBroker - ok 19:42:38.0968 0x2a18 Dfsc - ok 19:42:38.0983 0x2a18 [ 5F78930AAB3900102EA8ACDD38F97324, 49CAE29CC7B1B846BDE603B1A411833162ACC1A9D1608BFDF67C2EA3A0EE0F85 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys 19:42:38.0983 0x2a18 dg_ssudbus - ok 19:42:38.0983 0x2a18 Dhcp - ok 19:42:39.0015 0x2a18 diagnosticshub.standardcollector.service - ok 19:42:39.0030 0x2a18 [ 6EC6BB6EF31C85FD72D14BE4A1BD1B03, E027124AD492ED22F0D604030CB0E2C3778331879FC73A614644FA8C8606ADD3 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll 19:42:39.0030 0x2a18 diagsvc - ok 19:42:39.0046 0x2a18 DiagTrack - ok 19:42:39.0046 0x2a18 Disk - ok 19:42:39.0077 0x2a18 [ 89FC056F9CEFB85FC7159AA063904AFF, 6B6F86F87C48EE92F616D4EEE624C9711D0606FD651F3B1D4DD5EF3767B76750 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 19:42:39.0093 0x2a18 DmEnrollmentSvc - ok 19:42:39.0093 0x2a18 dmvsc - ok 19:42:39.0124 0x2a18 [ 8B3601E34BD1D693598F968D70361C37, 897C5AEB5ED6AC9DAB2E8E638A42FF588AF3A94EE4C731E97DFAB89BD3B658BC ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 19:42:39.0124 0x2a18 dmwappushservice - ok 19:42:39.0124 0x2a18 Dnscache - ok 19:42:39.0140 0x2a18 [ C79E79CD4DE45EC0EC0ECB5C76D6CB11, C1AFCA79A104EDF5C59C3E6A113467C7F73E84AACEDE97A22BCBA5B25563E163 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 19:42:39.0140 0x2a18 dot3svc - ok 19:42:39.0390 0x2a18 [ 5B1EF28DE7302A6BD5DF8459E2C598EF, F2292B8ED8FBFFA681942D5566BF1932D1E9B4F44C2D13329B60E5A8B9386CC9 ] DPS C:\WINDOWS\system32\dps.dll 19:42:39.0405 0x2a18 DPS - ok 19:42:39.0405 0x2a18 drmkaud - ok 19:42:39.0405 0x2a18 [ 5242DC5849014BCFBB3147B76A899783, 759542B42D9DCC224D9CBD19A0C6B8939417F2F08B547BE07FFA3356918C1ED7 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 19:42:39.0421 0x2a18 DsmSvc - ok 19:42:39.0421 0x2a18 DsSvc - ok 19:42:39.0436 0x2a18 [ 974BC06C0EC847EA4DC8D9002D394FEB, 4952FEADD7A3EF541FD537EBBCD56ED573D712755798C42428E78267E50BAB34 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 19:42:39.0436 0x2a18 DusmSvc - ok 19:42:39.0436 0x2a18 DXGKrnl - ok 19:42:39.0452 0x2a18 Eaphost - ok 19:42:39.0452 0x2a18 ebdrv - ok 19:42:39.0452 0x2a18 EFS - ok 19:42:39.0452 0x2a18 EhStorClass - ok 19:42:39.0452 0x2a18 EhStorTcgDrv - ok 19:42:39.0499 0x2a18 [ 2F47D3915839372D238ACF00FCEBD90E, F1C6CFB63FAC26F85A7D2A38DAC1D7F4D22007A7251755BD7392FF67ECD2F3F7 ] ElfoService C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe 19:42:39.0639 0x2a18 ElfoService - ok 19:42:39.0655 0x2a18 [ 80D5BD4804C587B21A121566549A63FB, 9BDC1DEB8805E06851F2E2A8B8762265FDC6B12B873D391BFCB8300BDF425B36 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 19:42:39.0671 0x2a18 embeddedmode - ok 19:42:39.0686 0x2a18 [ 8BDB4EB138A93B9C4242D5ADC068899A, 528C0D16CE5D9A69EA75C43DC53D14F7BD2D8BB0B0B0F32BB1F36AC6659C6A27 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 19:42:39.0686 0x2a18 EntAppSvc - ok 19:42:39.0764 0x2a18 [ B17FB7318D7CB8E315309F7484461369, 5D9E6464EDF3D8DA6D9CB2649E923B9DB1B0AA4EBF48A7E9CD64F8C9EAF9E56F ] ePowerSvc C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe 19:42:39.0811 0x2a18 ePowerSvc - ok 19:42:39.0811 0x2a18 ErrDev - ok 19:42:39.0858 0x2a18 [ 9B538A1E44E1D61FA80E80EA75A085FA, 6431BBC533895BD466879C407B9BE7EB50345D666FEE69CAB0813283F07DBE82 ] EventSystem C:\WINDOWS\system32\es.dll 19:42:39.0874 0x2a18 EventSystem - ok 19:42:39.0874 0x2a18 exfat - ok 19:42:39.0874 0x2a18 fastfat - ok 19:42:39.0889 0x2a18 [ BBD6407DA3DA4FC718710587E253C7BF, 8C9995A86EF9FC1FB47ADA1367A67A9829E0E3CE191D11E0AFB0F85E325D48DC ] Fax C:\WINDOWS\system32\fxssvc.exe 19:42:39.0905 0x2a18 Fax - ok 19:42:39.0921 0x2a18 fdc - ok 19:42:39.0921 0x2a18 [ A2037943CCC079307A383C5543607CEF, 2FAC5F76526A8E4D7D7FAE80F9A0AF31D37DD12FF597769C87912B973C339BF4 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 19:42:39.0921 0x2a18 fdPHost - ok 19:42:39.0921 0x2a18 [ C11A1A9CF331B7AA2F04974EE262EC07, AA1C79FCCDEC3C7236B7BE73E6888D7DD5642EB16E13B4633C98EE34CB72A644 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 19:42:39.0936 0x2a18 FDResPub - ok 19:42:39.0952 0x2a18 [ 71CECDA2DCF81E0AD8C30440C77966E2, E26313CD895579A9F3380A648E6FC271EFED0E82C0FCFB287049C5C2D0CC35A9 ] fhsvc C:\WINDOWS\system32\fhsvc.dll 19:42:39.0952 0x2a18 fhsvc - ok 19:42:39.0952 0x2a18 [ 9BC7FE262AF52B341048234809AA7D91, DF95BBEB59821357C69797AC659380C9F27C11B8A60A599C9A2C5623B7CBB6DB ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 19:42:39.0968 0x2a18 FileCrypt - ok 19:42:39.0968 0x2a18 FileInfo - ok 19:42:39.0968 0x2a18 Filetrace - ok 19:42:39.0968 0x2a18 flpydisk - ok 19:42:39.0968 0x2a18 FltMgr - ok 19:42:39.0968 0x2a18 FontCache - ok 19:42:40.0030 0x2a18 FontCache3.0.0.0 - ok 19:42:40.0030 0x2a18 FrameServer - ok 19:42:40.0046 0x2a18 FsDepends - ok 19:42:40.0046 0x2a18 Fs_Rec - ok 19:42:40.0046 0x2a18 fvevol - ok 19:42:40.0061 0x2a18 [ 71DBED7FB264DB60341BC796EC2E8135, DBD29794A45AEFB16A5765D03962B311CB061D1EB8A281C5F34DABF39C66A3B2 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 19:42:40.0061 0x2a18 gencounter - ok 19:42:40.0061 0x2a18 genericusbfn - ok 19:42:40.0077 0x2a18 GPIOClx0101 - ok 19:42:40.0077 0x2a18 gpsvc - ok 19:42:40.0077 0x2a18 [ 508614CAC7BF8AEE4FB9002A413919B1, F60DE0236B0453FC99473A09A7FAC1140831E581C08F3F5C440F5EFCD30943AB ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 19:42:40.0077 0x2a18 GpuEnergyDrv - ok 19:42:40.0077 0x2a18 [ 248739BB0F3A1156A2C0AF51F39A9EA2, A94C43658BCCC88C2D229F40F5C03CA5839A2EAFD57CA088E3E85EB9264CCA3E ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll 19:42:40.0093 0x2a18 GraphicsPerfSvc - ok 19:42:40.0218 0x2a18 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:42:40.0218 0x2a18 gupdate - ok 19:42:40.0218 0x2a18 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:42:40.0218 0x2a18 gupdatem - ok 19:42:40.0218 0x2a18 HDAudBus - ok 19:42:40.0233 0x2a18 HidBatt - ok 19:42:40.0249 0x2a18 [ 33346BD26BB0AE4361DF1ED00D2876CF, 1777169606573646F7E7D54E01E421F62479DF57FAE86005B1EEFDC06F4898B7 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 19:42:40.0249 0x2a18 HidBth - ok 19:42:40.0249 0x2a18 hidi2c - ok 19:42:40.0249 0x2a18 hidinterrupt - ok 19:42:40.0280 0x2a18 [ 1553DF41F4EE4F60B4BEEEC62264BE71, 46AE8357E8038D35ADB82A51ED421293D7AB18C926C713F19149B97400D4C65E ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 19:42:40.0280 0x2a18 HidIr - ok 19:42:40.0280 0x2a18 hidserv - ok 19:42:40.0280 0x2a18 HidUsb - ok 19:42:40.0280 0x2a18 HpSAMD - ok 19:42:40.0296 0x2a18 HTTP - ok 19:42:40.0311 0x2a18 [ 9E1F3BA540DB9F4942A3F50A92E5754F, 3FF53B60DC52886D6F2EC7F9D8C12009A4BECE5A046D827BC8C941E7401ED000 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 19:42:40.0311 0x2a18 hvcrash - ok 19:42:40.0311 0x2a18 [ 64A94654E5703D2E8830AA2500D8F0A4, A1E3C910DFF1485E412F01076A11B9441161224C0F08A9067082A9FD8A5D8E5B ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 19:42:40.0327 0x2a18 HvHost - ok 19:42:40.0343 0x2a18 [ 621042C19113527CF8FA89F3454576BF, AB072C44B9BA8CD3AFE0DA33E42A69210AE87F4314FA3A0DF984DDF12516F063 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys 19:42:40.0343 0x2a18 hvservice - ok 19:42:40.0374 0x2a18 [ B149905CD7451160B6BFA2191A3F6182, A706E4F12963A20F9767D8730973282B5830D97A087ADA8CA9B7D219513C127F ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 19:42:40.0374 0x2a18 HwNClx0101 - ok 19:42:40.0374 0x2a18 hwpolicy - ok 19:42:40.0374 0x2a18 hyperkbd - ok 19:42:40.0374 0x2a18 HyperVideo - ok 19:42:40.0374 0x2a18 i8042prt - ok 19:42:40.0374 0x2a18 iagpio - ok 19:42:40.0389 0x2a18 iai2c - ok 19:42:40.0389 0x2a18 iaLPSS2i_GPIO2 - ok 19:42:40.0389 0x2a18 iaLPSS2i_GPIO2_BXT_P - ok 19:42:40.0389 0x2a18 iaLPSS2i_I2C - ok 19:42:40.0389 0x2a18 iaLPSS2i_I2C_BXT_P - ok 19:42:40.0405 0x2a18 iaLPSSi_GPIO - ok 19:42:40.0405 0x2a18 iaLPSSi_I2C - ok 19:42:40.0405 0x2a18 iaStorAVC - ok 19:42:40.0405 0x2a18 iaStorV - ok 19:42:40.0405 0x2a18 ibbus - ok 19:42:40.0421 0x2a18 [ F8CFDD8FED56E1261367A81A731BC1C0, 408187B2E7B403B47AF0D4BF089439D9BA3B3090A430983F77A55DEF2AB381DB ] icssvc C:\WINDOWS\System32\tetheringservice.dll 19:42:40.0421 0x2a18 icssvc - ok 19:42:40.0889 0x2a18 [ E82A13D1EE63A24C8ACE78BF19683884, 4D98E915BF86B4BD526355B51142FE318CA1BCFDB74C74CB6F2FC339DC847669 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 19:42:40.0999 0x2a18 igfx - ok 19:42:41.0030 0x2a18 [ 4F09222B004191568EE1928021C5C6D4, E86098F8B75CD2B1A5F5467EA4387CE3DFF49B1240DF9F1D9B0A06A91A295772 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 19:42:41.0030 0x2a18 igfxCUIService2.0.0.0 - ok 19:42:41.0061 0x2a18 [ EDCCC8C13B1EB882F77BA0ABB84566E7, DB299C1D2CFC197CF2FE69358F5EEDE94DCC4C919AF5D2CDFFF0DE476612C988 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 19:42:41.0061 0x2a18 IJPLMSVC - ok 19:42:41.0061 0x2a18 IKEEXT - ok 19:42:41.0077 0x2a18 [ AA38C19A3D65E8228D822EB18037E19D, 54943929E398C67A5A9C72EA65F0FD7A06BB43F03A2291CAEA29443CD10C5169 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys 19:42:41.0077 0x2a18 IndirectKmd - ok 19:42:41.0092 0x2a18 InstallService - ok 19:42:41.0202 0x2a18 [ D172E06EFE08DF148155A59DB716C1B6, F059B0B37C5E944D70626E9F029BC6311029E0A9D778C9C75DDDDC59A5AF1605 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 19:42:41.0311 0x2a18 IntcAzAudAddService - ok 19:42:41.0342 0x2a18 [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 19:42:41.0342 0x2a18 IntcDAud - ok 19:42:41.0389 0x2a18 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 19:42:42.0030 0x2a18 Intel(R) Capability Licensing Service TCP IP Interface - ok 19:42:42.0046 0x2a18 [ 8213094EA736A9C575AB0E22AD09B0BA, 12670A466B5AA37283BD4CB481D000DE3AE2A8D1BD159F67A41703A6FE5675EC ] Intel(R) Security Assist C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe 19:42:42.0092 0x2a18 Intel(R) Security Assist - ok 19:42:42.0092 0x2a18 intelide - ok 19:42:42.0124 0x2a18 [ E6CC7C1E7CEDC81D6B15BF2CF4C99109, 1B181F55CD2E500468FE07C9BA6F20B207FA4B601C4971D1551B80A480D42EBD ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 19:42:42.0139 0x2a18 intelpep - ok 19:42:42.0139 0x2a18 intelppm - ok 19:42:42.0139 0x2a18 [ 917931A6116F03DB3CA56CFCE8634667, 27B661B6143F4AE94BF28DE1133001F95A451C18804F6DFED1D7D1F36B5E5350 ] iorate C:\WINDOWS\system32\drivers\iorate.sys 19:42:42.0155 0x2a18 iorate - ok 19:42:42.0186 0x2a18 [ FB72A49FAD5C343C8C38948F92D87BBF, 3947D9393D6F4F104D2D07D5FBA61041A8D6006BE2497F2A6337462F8B04A124 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 19:42:42.0186 0x2a18 IpFilterDriver - ok 19:42:42.0217 0x2a18 [ 9064A49C03F1CED42EAC2B4636C87192, CF388E05EA782BC0645FD0B42A41C9334C074BE6D7C193FA4F9819905CBCEA9C ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 19:42:42.0233 0x2a18 iphlpsvc - ok 19:42:42.0233 0x2a18 IPMIDRV - ok 19:42:42.0249 0x2a18 [ 7408B83959A4B8271EF67FD06A6B366B, C22DDB76AC3351A50B889AD7D2756EF8612450AC8EE72C88A1044691A0071BE5 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 19:42:42.0264 0x2a18 IPNAT - ok 19:42:42.0264 0x2a18 [ 7BEA2228C81FB6E1EADDD54D615B4C7E, 8640865C98F951B1B8D99E841D9A3FDC6E0251AFAC6B02F815DC409627A50112 ] IPT C:\WINDOWS\System32\drivers\ipt.sys 19:42:42.0264 0x2a18 IPT - ok 19:42:42.0280 0x2a18 [ AD0574F12AA812340BD39071FD30AD1E, 765F1EDFEDEA1F2728108D7A1187A468F529A883886006F74DB9EAD0BFE7B1B6 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 19:42:42.0280 0x2a18 IpxlatCfgSvc - ok 19:42:42.0311 0x2a18 [ 030AE3773151CFA728C67E38416FAD8D, 167E698035F2F07E822B430B31F02FABF3997BAC93039786747053344CE6E6D3 ] irda C:\WINDOWS\system32\drivers\irda.sys 19:42:42.0311 0x2a18 irda - ok 19:42:42.0327 0x2a18 [ 79D02DC54AB4F85D2C13A728A0E36193, 3B6BA678ED269195D506D29EBD9E070603F02AC0FAA92364E7C553B8856C3EDB ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 19:42:42.0342 0x2a18 IRENUM - ok 19:42:42.0342 0x2a18 [ 6ADE9DCAF71DCD888320CA47DB8B05EF, 6FA1EBB3D025546AAD14D968DF7CABD3002598F2F561CCC1D4F07A9B0322DE02 ] irmon C:\WINDOWS\System32\irmon.dll 19:42:42.0342 0x2a18 irmon - ok 19:42:42.0342 0x2a18 [ 1DFC3CCA51785254C5604238BB1A5467, 31451A90A91AEE14C6B24F84CB9816E5C77179D411B8B3E8547F538235BEEFB0 ] isaHelperSvc C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 19:42:42.0358 0x2a18 isaHelperSvc - ok 19:42:42.0374 0x2a18 isapnp - ok 19:42:42.0374 0x2a18 iScsiPrt - ok 19:42:42.0374 0x2a18 ItSas35i - ok 19:42:42.0389 0x2a18 [ 832F7C2747F04D1294AEF46A2CE5B63B, ABAECEFCAD9B526C3D98681A874966B924EB99AF61CDFAC6D5E767BE2FAF6CFA ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 19:42:42.0389 0x2a18 jhi_service - ok 19:42:42.0389 0x2a18 k57nd60a - ok 19:42:42.0389 0x2a18 kbdclass - ok 19:42:42.0389 0x2a18 kbdhid - ok 19:42:42.0405 0x2a18 kdnic - ok 19:42:42.0405 0x2a18 KeyIso - ok 19:42:42.0405 0x2a18 KSecDD - ok 19:42:42.0405 0x2a18 KSecPkg - ok 19:42:42.0405 0x2a18 ksthunk - ok 19:42:42.0436 0x2a18 [ C4151271434A490707B4FD4E6AAE9EED, DDB809D002039645CDED08322B9CDCA04C483A119380098FF9EBA998A1A3811D ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 19:42:42.0452 0x2a18 KtmRm - ok 19:42:42.0452 0x2a18 LanmanServer - ok 19:42:42.0467 0x2a18 LanmanWorkstation - ok 19:42:42.0467 0x2a18 [ C2A49E8EEE7C3D06ECA80847A42F65D5, E1559EF96E6F2146E4AC0BE46CBFF5FA29829812A64A6F09803C00E3E0AAB1F0 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 19:42:42.0483 0x2a18 lfsvc - ok 19:42:42.0483 0x2a18 [ DB8F10ED986BFE0A5B663A1D067F2CCC, 88EE540F545C8838E9F855094A2A4AAC096BD24F77103E06464CCD77C3FCFFFD ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 19:42:42.0483 0x2a18 LicenseManager - ok 19:42:42.0499 0x2a18 [ 3CF979AFF0196DF3DF5E54DFC049EB1F, FEA82EF2AA4222171E80548EB00A4F0FBD27363B84AA9E6B8F82147C568BADEE ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 19:42:42.0499 0x2a18 lltdio - ok 19:42:42.0530 0x2a18 [ D6DD748EAC3BC540CFE65C73FE20C099, 8A79E1F1834D949D027B4D3471297ADFB539B9282DE5DF5FDBE60AE171F3CFFC ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 19:42:42.0530 0x2a18 lltdsvc - ok 19:42:42.0545 0x2a18 [ 595FBB84D5E62AE8629ED0F6179818A7, 6BF747A759425BDC1080888B6D9C4611B55020A64B67AC1486DB8C4E70B16A9D ] LMDriver C:\WINDOWS\System32\drivers\LMDriver.sys 19:42:42.0545 0x2a18 LMDriver - ok 19:42:42.0545 0x2a18 lmhosts - ok 19:42:42.0577 0x2a18 [ 76BC5705E1F838E32451ECF14518B1C8, 3F664723DCF6C07BDB3287184175F60DD7B4A85B0480800ECBE065730E2DA5F5 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 19:42:42.0592 0x2a18 LMS - ok 19:42:42.0592 0x2a18 LSI_SAS - ok 19:42:42.0592 0x2a18 LSI_SAS2i - ok 19:42:42.0592 0x2a18 LSI_SAS3i - ok 19:42:42.0592 0x2a18 LSI_SSS - ok 19:42:42.0608 0x2a18 LSM - ok 19:42:42.0608 0x2a18 [ E86400D7B6E095E89CF63667D94D3F50, 4E30374B82FB1D8904B9803109C4557C565023FA94C7AE61BB2ADAAACAE0E179 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 19:42:42.0608 0x2a18 luafv - ok 19:42:42.0624 0x2a18 [ 07514F5635999D7DDB5F3A62B5C5AEB3, D3717437D14C36873E2D0C1AA65F29EB9A5DB1DE60A7EE86A093FD126B7EBC05 ] LxpSvc C:\WINDOWS\System32\LanguageOverlayServer.dll 19:42:42.0624 0x2a18 LxpSvc - ok 19:42:42.0639 0x2a18 [ 1C1FF36E51F73989FB4DD2DBAFAE11EC, B5C0B169BFEF5FD769745F924B3F30C960A555F8B0C0C7315B273435D9F246D5 ] MapsBroker C:\WINDOWS\System32\moshost.dll 19:42:42.0639 0x2a18 MapsBroker - ok 19:42:42.0639 0x2a18 mausbhost - ok 19:42:42.0639 0x2a18 mausbip - ok 19:42:42.0967 0x2a18 [ F7265B7490428499F2FE409FA9247866, 43A406C74689B72020E4669B45F19D377A5FF3EFE79B03AF58C2679D14405E9D ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe 19:42:43.0108 0x2a18 MBAMService - ok 19:42:43.0139 0x2a18 [ 351BF8F77B0A15A7B5A2AE098C52A387, A84330DF5C4F0E5D6251D311B5DC78722D7724E87DAF5DE5A11EB73BB3502E26 ] MBAMSwissArmy C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 19:42:43.0139 0x2a18 MBAMSwissArmy - ok 19:42:43.0139 0x2a18 megasas - ok 19:42:43.0155 0x2a18 megasas2i - ok 19:42:43.0155 0x2a18 megasas35i - ok 19:42:43.0155 0x2a18 megasr - ok 19:42:43.0186 0x2a18 [ 0CAEA11CEC2EEC7511385A467FD464D1, C84DD82374D551C90CCB274AB7F8CE4A503042CC8D1337A1F6498B2538E1793A ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 19:42:43.0186 0x2a18 MEIx64 - ok 19:42:43.0202 0x2a18 [ 69259AFDF347B5F4AF06E900C4A1F62E, 167FF155F3E1B362A5D5FDB010A5F539F5E13CAD7E64E6F105CC770DA3639EEB ] MessagingService C:\WINDOWS\System32\MessagingService.dll 19:42:43.0202 0x2a18 MessagingService - ok 19:42:43.0202 0x2a18 [ 1ECAB1D7A88F953397D09ECFCF789B91, 42AFE658FABAA6816700886B2F0697A692DE6B5DB0B90B361E099BF79B44E389 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.AvrcpTransport.sys 19:42:43.0217 0x2a18 Microsoft_Bluetooth_AvrcpTransport - ok 19:42:43.0217 0x2a18 mlx4_bus - ok 19:42:43.0217 0x2a18 MMCSS - ok 19:42:43.0233 0x2a18 [ CA25F2D78FDD0D36E3F3071B4B317BD4, 21B5902EF802FAFA7DC6FD737CE9888C74526983FDCE31CDFAB11630E1476FD1 ] Modem C:\WINDOWS\system32\drivers\modem.sys 19:42:43.0233 0x2a18 Modem - ok 19:42:43.0233 0x2a18 [ 13142B3B30F633F407D5256B2FFCCEF0, 0A8DD229FD752E8B7E1D11E1A066BCF8B3E2023068AD731FF23ACBF4D182D23D ] monitor C:\WINDOWS\System32\drivers\monitor.sys 19:42:43.0233 0x2a18 monitor - ok 19:42:43.0249 0x2a18 mouclass - ok 19:42:43.0249 0x2a18 mouhid - ok 19:42:43.0249 0x2a18 mountmgr - ok 19:42:43.0264 0x2a18 [ A28E7138B050A29AEFE1C4E91D48B9AE, F06B5DCC73BFB547C2DAFE4BE76D63B069F84FE6B0A37B4532625F125C6910BA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 19:42:43.0280 0x2a18 MozillaMaintenance - ok 19:42:43.0280 0x2a18 mpsdrv - ok 19:42:43.0280 0x2a18 mpssvc - ok 19:42:43.0295 0x2a18 MRxDAV - ok 19:42:43.0295 0x2a18 mrxsmb - ok 19:42:43.0295 0x2a18 mrxsmb10 - ok 19:42:43.0295 0x2a18 mrxsmb20 - ok 19:42:43.0311 0x2a18 [ F14DE177087F9E990EDE95ACE1F94662, E0B8C7DAF8C13CAD08B974D681981038E33ED8871717C550477EDCFD05A3B96D ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 19:42:43.0327 0x2a18 MsBridge - ok 19:42:43.0342 0x2a18 [ 9A94F32C1DC90A7E5A35D0F820A8FB1D, 4CAFCE804D9135BE9CBF80307D570F24E4A102890DAB504E3DEFF3B335C9B80E ] MSDTC C:\WINDOWS\System32\msdtc.exe 19:42:43.0342 0x2a18 MSDTC - ok 19:42:43.0374 0x2a18 Msfs - ok 19:42:43.0389 0x2a18 [ 5A5ABA987943317300A4E55A5C5EB8C4, 9AC863F537BBB2D776C3F240B510DEE94BD84A7675C695D1270770609E77F65B ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 19:42:43.0389 0x2a18 msgpiowin32 - ok 19:42:43.0405 0x2a18 mshidkmdf - ok 19:42:43.0436 0x2a18 [ E12A703CE10B068727499276340D5296, 67F513A83D896DBF014D7446D66F1A1F9F0D03ADB23B57FD1A3CCC880ED50299 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 19:42:43.0436 0x2a18 mshidumdf - ok 19:42:43.0436 0x2a18 msisadrv - ok 19:42:43.0436 0x2a18 MSiSCSI - ok 19:42:43.0436 0x2a18 msiserver - ok 19:42:43.0436 0x2a18 MSKSSRV - ok 19:42:43.0467 0x2a18 [ AECFFBE104D428E8A74BCABF5B3B9912, EA94A7FA1F9BE357311E411293F4D3CC8F80ED1523BFE362DA56A3C2AC65DF58 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 19:42:43.0483 0x2a18 MsLldp - ok 19:42:43.0483 0x2a18 MSPCLOCK - ok 19:42:43.0483 0x2a18 MSPQM - ok 19:42:43.0483 0x2a18 MsRPC - ok 19:42:43.0483 0x2a18 mssmbios - ok 19:42:43.0499 0x2a18 MSTEE - ok 19:42:43.0499 0x2a18 MTConfig - ok 19:42:43.0499 0x2a18 Mup - ok 19:42:43.0499 0x2a18 mvumis - ok 19:42:43.0499 0x2a18 NativeWifiP - ok 19:42:43.0592 0x2a18 [ B281FAC1C60FE21ED3F635ECF673A981, 6641CCBD38AEF3FA5D9EDD24F01AAB6509AD6D3927371CD7938C04B3BBC92FD1 ] NaturalAuthentication C:\WINDOWS\System32\NaturalAuth.dll 19:42:43.0608 0x2a18 NaturalAuthentication - ok 19:42:43.0624 0x2a18 [ 6FEC83EDC4A3D1E99039CA1D96AD720D, F6DB011FBED10EAF8CCDC9EDDCB47F728B6B17A6A3CA5D6DB5DE50EEFE7DDD4D ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 19:42:43.0624 0x2a18 NcaSvc - ok 19:42:43.0655 0x2a18 [ C3D3E2DFBD52C48EA787604F49060A5C, 0F5E3C9E63F6421398154EF942182FE67CCCCE6DE25B1EE2A30A8E6E3C17145A ] NcbService C:\WINDOWS\System32\ncbservice.dll 19:42:43.0670 0x2a18 NcbService - ok 19:42:43.0686 0x2a18 [ 9AB04C4C14B32D127DB6E7D3DF79FF26, DAC84CBDF605C43657CDA1B95A86DC0D55E236A75BFDA3041472C5D6222EB025 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 19:42:43.0686 0x2a18 NcdAutoSetup - ok 19:42:43.0702 0x2a18 ndfltr - ok 19:42:43.0702 0x2a18 NDIS - ok 19:42:43.0717 0x2a18 [ AF73B18F3096B165A6F4417C5ED36B01, B0FA9E52D7208F756103E2E853F1D17F594C9FDD2E76304743C581613E612449 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 19:42:43.0717 0x2a18 NdisCap - ok 19:42:43.0733 0x2a18 [ 1A9B1F5B8B131CE461A01C9424E149D7, 66E3F49308DF111B5D5DBF57F11A05E0B9492530587E37C6729C46AED17647D3 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 19:42:43.0749 0x2a18 NdisImPlatform - ok 19:42:43.0749 0x2a18 NdisTapi - ok 19:42:43.0764 0x2a18 Ndisuio - ok 19:42:43.0874 0x2a18 NdisVirtualBus - ok 19:42:43.0889 0x2a18 NdisWan - ok 19:42:43.0889 0x2a18 ndiswanlegacy - ok 19:42:43.0905 0x2a18 ndproxy - ok 19:42:43.0998 0x2a18 [ 4F54331F051F15EAD005F0E4CB55014E, 77C905F6DA787725AB3DEA9EABF4A79CDFC9B2EAE377E635966CBE3B50A3DC34 ] ndsvc C:\Program Files\NetDrive\ndsvc.exe 19:42:44.0061 0x2a18 ndsvc - ok 19:42:44.0077 0x2a18 [ 0E3B0F3645D1BAE79397C66FE8AF6402, 6568FD9646FE7C7D61D280C26097583EFA2FB9F59D43340A7283BEAD3A5CC206 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 19:42:44.0077 0x2a18 Ndu - ok 19:42:44.0077 0x2a18 [ EE00C544C025958AF50C7B199F3C8595, D774DB020D9C46D1AA0B2DB9FA2C36C4A9C38D904CC6929695321D32ACA0D4D1 ] Netaapl C:\WINDOWS\System32\drivers\netaapl64.sys 19:42:44.0108 0x2a18 Netaapl - ok 19:42:44.0108 0x2a18 NetAdapterCx - ok 19:42:44.0108 0x2a18 NetBIOS - ok 19:42:44.0108 0x2a18 NetBT - ok 19:42:44.0108 0x2a18 Netlogon - ok 19:42:44.0123 0x2a18 Netman - ok 19:42:44.0139 0x2a18 [ E9931F57F05696CBF53A086449D97BF6, 986C99033AA10A258F0CC42727B14C5812BC76AB535CDF54FCA1B038C4BF9546 ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 19:42:44.0155 0x2a18 netprofm - ok 19:42:44.0155 0x2a18 NetSetupSvc - ok 19:42:44.0186 0x2a18 [ 7EC8B56348F9298BCCA7A745C7F70E2C, F677CBD94ABE25AECF08ECFBBDA063A9C032C678327A0D105CB6B3E587C44C19 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:42:44.0186 0x2a18 NetTcpPortSharing - ok 19:42:44.0202 0x2a18 netvsc - ok 19:42:44.0233 0x2a18 [ 162A571ABAF9546339EE0BB482FF6AE7, E6E590B628AA65D161D7A87C9CF360D905FCC858E73EE1C4723FE217E8A91EA2 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 19:42:44.0248 0x2a18 NgcCtnrSvc - ok 19:42:44.0264 0x2a18 [ DB3589FF79F06EC1967EBA56C7249E3C, C3F1B4687F2AAE869C8566B38DCFE507F8E7201A2241BD5342AAC22A2370D5E4 ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll 19:42:44.0280 0x2a18 NgcSvc - ok 19:42:44.0280 0x2a18 NlaSvc - ok 19:42:44.0295 0x2a18 Npfs - ok 19:42:44.0295 0x2a18 npsvctrig - ok 19:42:44.0295 0x2a18 nsi - ok 19:42:44.0295 0x2a18 nsiproxy - ok 19:42:44.0295 0x2a18 Ntfs - ok 19:42:44.0311 0x2a18 Null - ok 19:42:44.0311 0x2a18 nvdimm - ok 19:42:44.0639 0x2a18 [ 4D56E475D32437ECF663CE944D7E0D3F, 22F4E20D066A750ECC1C2566A0D93FE059CA16CF8A0D26002A1B721E26D443D7 ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_31f4ef4821269ebb\nvlddmkm.sys 19:42:44.0952 0x2a18 nvlddmkm - ok 19:42:44.0967 0x2a18 nvraid - ok 19:42:44.0967 0x2a18 nvstor - ok 19:42:44.0983 0x2a18 [ 9DBC464AB85AA48C9760C6C2E591E2D3, C9D718F8BE838E13F7488F1E8DAA79809340235A5BA5BF206C1C3DBF0A5DDB48 ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 19:42:44.0983 0x2a18 OneSyncSvc - ok 19:42:44.0998 0x2a18 [ AD4EB6A3FB038C2E215BB06262D4009A, 778E25079650D094337DF094F4C262528C7D983EAD52194795B4B033C17686AE ] OpenVPNService C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe 19:42:44.0998 0x2a18 OpenVPNService - ok 19:42:45.0030 0x2a18 [ 44EC1C7AC8999C35DA603DE8E9E1393C, D0EF55DB094D8711C6F28934D207489FC8B85276CAF1E17C516BD5777132F49A ] ose c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 19:42:45.0045 0x2a18 ose - ok 19:42:45.0061 0x2a18 [ 65E0500B39BA5D9F99DF63AFC261A90D, 2A7611C0C30D7092C3777BA49700C41A944677DF9E4F65F69E3E9CEC17EA4106 ] osrss C:\WINDOWS\system32\osrss.dll 19:42:45.0061 0x2a18 osrss - ok 19:42:45.0077 0x2a18 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 19:42:45.0092 0x2a18 p2pimsvc - ok 19:42:45.0108 0x2a18 [ CCD10679BA0D9EF549F80C458C2AD1C4, 7B433FEE4BEA69C28A98F4BFBE5FA603DB2CE1DFCF229EBB4D9B7A0FD159FF04 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 19:42:45.0123 0x2a18 p2psvc - ok 19:42:45.0123 0x2a18 Parport - ok 19:42:45.0123 0x2a18 partmgr - ok 19:42:45.0170 0x2a18 [ 0CF87FC2DA60940031D553F8FDF5066B, 95F8A15210D6F431B84C6E18643F93C9D16F53D3FF4873F9A327A77924B4B9F8 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 19:42:45.0170 0x2a18 PcaSvc - ok 19:42:45.0170 0x2a18 pci - ok 19:42:45.0186 0x2a18 pciide - ok 19:42:45.0186 0x2a18 pcmcia - ok 19:42:45.0186 0x2a18 pcw - ok 19:42:45.0186 0x2a18 pdc - ok 19:42:45.0202 0x2a18 [ B5D17D9FCDF1C6291063EF4A1E24E932, 112D12E8AD2D2DA2D2432FFB02A111C9D30A039FA9EA03408AAAD823622AF58F ] PDF24 C:\Program Files (x86)\PDF24\pdf24.exe 19:42:45.0358 0x2a18 PDF24 - ok 19:42:45.0373 0x2a18 [ 42B12A76D3C98AE69C97727E3BEC7D8A, C878A05A9817F62514432685FAA795737F628EF7258EC5C7846045E1CAB2DF6E ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 19:42:45.0405 0x2a18 PEAUTH - ok 19:42:45.0405 0x2a18 percsas2i - ok 19:42:45.0405 0x2a18 percsas3i - ok 19:42:45.0436 0x2a18 [ 185100798FBD23C849DC1C00ED43D99D, 10895ADE339744BBABDFB50BE6025217C02C76B1911C2C8740A57912385B38DE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 19:42:45.0436 0x2a18 PerfHost - ok 19:42:45.0452 0x2a18 PhoneSvc - ok 19:42:45.0467 0x2a18 [ 807ED476A62E79935315342BD3FAA046, FF56FC79C6B6043A10C123CF85A8DDA0B8564E03D49AD5811DDCBB99823C4836 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 19:42:45.0467 0x2a18 PimIndexMaintenanceSvc - ok 19:42:45.0514 0x2a18 [ 4E614DBE28B5857F70DEBCC804629E67, B93C42FB96BBA0577CB892274905352AE4A6DE257F676D6A23CE0297F945D7E7 ] pla C:\WINDOWS\system32\pla.dll 19:42:45.0545 0x2a18 pla - ok 19:42:45.0545 0x2a18 PlugPlay - ok 19:42:45.0545 0x2a18 pmem - ok 19:42:45.0577 0x2a18 [ 99ECEDA6B2E1FDB6892FBD5AED1E5D99, C970DDDBDB4AF8C6A1AA92D780B82920B4922304649509075CF14A2AB86C3CCF ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 19:42:45.0577 0x2a18 PNPMEM - ok 19:42:45.0577 0x2a18 [ 75690F495CEDBEF3D5989828AEEAE832, 3257E7261DF8F39CA4988BBED3060B9E8A5988978F66A4B1409E08F65B262FED ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 19:42:45.0577 0x2a18 PNRPAutoReg - ok 19:42:45.0592 0x2a18 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 19:42:45.0592 0x2a18 PNRPsvc - ok 19:42:45.0608 0x2a18 PolicyAgent - ok 19:42:45.0623 0x2a18 [ 512399852F84977A2A00FA220C831E60, 5144BC66305D5682E630D2CE38739902B70E798E43F041F28313101F6E03E1DB ] postgresql-x64-9.3 C:\Program Files\PostgreSQL\9.3\bin\pg_ctl.exe 19:42:45.0639 0x2a18 postgresql-x64-9.3 - ok 19:42:45.0655 0x2a18 Power - ok 19:42:45.0655 0x2a18 PptpMiniport - ok 19:42:45.0764 0x2a18 [ AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4, 6372FC5E78A2DDB8AE6EB73BEB5C0D4056FB6BE9F231A36BAC37AE970F5EB247 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 19:42:45.0889 0x2a18 PrintNotify - ok 19:42:45.0905 0x2a18 [ A60202AE474E2173ED91118DD73ADAAD, 6AE315E1DD9E3B03E48B8848FCB0CDD506080F0012DE478BA99D102F91E968E6 ] PrintWorkflowUserSvc C:\WINDOWS\System32\PrintWorkflowService.dll 19:42:45.0920 0x2a18 PrintWorkflowUserSvc - ok 19:42:45.0920 0x2a18 Processor - ok 19:42:45.0920 0x2a18 ProfSvc - ok 19:42:45.0951 0x2a18 [ E4BF8BE7B3711BCBBC95EE983C0236F4, A71C09D83034C96F7ED4DB58F7388F8A13C7FD1A3F41FE8EEC553C42B65DFFC6 ] Psched C:\WINDOWS\system32\drivers\pacer.sys 19:42:45.0951 0x2a18 Psched - ok 19:42:45.0967 0x2a18 [ 29F12CD3F77B65C7E37F8517395B13D2, 690517756A21B3DE4CF4A027AA712FC62DB6F5F2E89B4D2DE220A29C4A36878B ] PushToInstall C:\WINDOWS\system32\PushToInstall.dll 19:42:45.0967 0x2a18 PushToInstall - ok 19:42:45.0983 0x2a18 [ 605750DA0741F2B28906BD27EFCB78D8, 91AD3952B4FA19FA28FC4C3151BAD2EDE94D250A87EBC4B2EE3A534A2D41C456 ] QALSvc C:\Program Files\Acer\Acer Quick Access\QALSvc.exe 19:42:45.0998 0x2a18 QALSvc - ok 19:42:46.0014 0x2a18 [ D232A1F1DD250F9B9944F0D98045FA9B, 330719FED4D4A53A3A75263560B4A32D06AC1E3F00F0AD6A45C4F504A1C1AB6D ] QASvc C:\Program Files\Acer\Acer Quick Access\QASvc.exe 19:42:46.0014 0x2a18 QASvc - ok 19:42:46.0092 0x2a18 [ D76F885983B04E8BE2D1BDEF118A097E, 34D293F7E9D2E4BF43B2BB575D77E6A8D45D54C22F8F0214EA26712BE6CE9A49 ] Qcamain C:\WINDOWS\System32\drivers\Qcamainx64.sys 19:42:46.0139 0x2a18 Qcamain - ok 19:42:46.0201 0x2a18 [ 47B1B98FF5E2B173B86EB53A417FA26E, 46B77D7CC9E050A1BEEFCEF3B38D91E83133D67BDC397D4D24BAB426B928F997 ] Qcamain10x64 C:\WINDOWS\System32\drivers\Qcamain10x64.sys 19:42:46.0248 0x2a18 Qcamain10x64 - ok 19:42:46.0280 0x2a18 [ 8AB5F41584C98047ABEF490FC1E31F7E, F8480F9D9C1A60901975C529CC0911ED592834AB1068FADD88B15E6497A59221 ] QWAVE C:\WINDOWS\system32\qwave.dll 19:42:46.0280 0x2a18 QWAVE - ok 19:42:46.0295 0x2a18 [ 00F72861538B6C4E925A21BAE397A49D, 6847E2332CC8573850428CC7E3A73B2DA0274977F53BDDF7DBA68D223A501CC4 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 19:42:46.0311 0x2a18 QWAVEdrv - ok 19:42:46.0311 0x2a18 [ 29EF474475CA406FF5B14D6B434F1ECE, A09ABDCE77FF45E0FEB826E96C9F54A5BC6699BF644C8816BAF4CA5630C9D44E ] RadioShim C:\WINDOWS\System32\drivers\RadioShim.sys 19:42:46.0311 0x2a18 RadioShim - ok 19:42:46.0311 0x2a18 Ramdisk - ok 19:42:46.0311 0x2a18 RasAcd - ok 19:42:46.0311 0x2a18 RasAgileVpn - ok 19:42:46.0326 0x2a18 RasAuto - ok 19:42:46.0326 0x2a18 Rasl2tp - ok 19:42:46.0326 0x2a18 RasMan - ok 19:42:46.0326 0x2a18 RasPppoe - ok 19:42:46.0326 0x2a18 RasSstp - ok 19:42:46.0326 0x2a18 rdbss - ok 19:42:46.0342 0x2a18 [ 206AB796793FDBD518B82E2F308A7176, ED0DBDE7106970F217F4FB1FB184B6795A16356C879C17E0910840F64F292809 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 19:42:46.0342 0x2a18 rdpbus - ok 19:42:46.0358 0x2a18 [ 52A6CC99F5934CFAE88353C47B6193E7, 37F6991FA526036866E8CFC938A16750644AD764FA52BB102B11B5D594DB7E96 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 19:42:46.0373 0x2a18 RDPDR - ok 19:42:46.0373 0x2a18 [ 0600DF60EF88FD10663EC84709E5E245, 48572DC0C644E13BD1713E29E522763EB4E00337ACA64D1392960D17EAF8923A ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 19:42:46.0373 0x2a18 RdpVideoMiniport - ok 19:42:46.0389 0x2a18 [ 65652EFAAF4A8A59E60A2D7BE15317E8, 83A9A8506EF4769625EF0EF43B93906A6FBD9133E52C12B17A68B89DAC68D026 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 19:42:46.0405 0x2a18 rdyboost - ok 19:42:46.0405 0x2a18 ReFS - ok 19:42:46.0405 0x2a18 ReFSv1 - ok 19:42:46.0451 0x2a18 [ 980F60634FAF9C58FC468AF9AA609D68, 7BA03FE851F78D5DC9062ACEADF194ACB4F8F56C9D496B17D846CE1E4373B404 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 19:42:46.0467 0x2a18 RemoteAccess - ok 19:42:46.0498 0x2a18 [ 106E630F1B2A8BF2BBD4508D9B166406, FAFBE21EC61B97B4B825285EBA0F661382A95119E1740EE4FB9A1F6FB3C0F5F7 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 19:42:46.0498 0x2a18 RemoteRegistry - ok 19:42:46.0530 0x2a18 [ 53BE6D9C36A9CB95A1568C24D44A8A34, DD8245F87B9D4203F56595D6ABF9F1E74EA071D4B7BB0469A293CA9E20BDA246 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 19:42:46.0561 0x2a18 RetailDemo - ok 19:42:46.0576 0x2a18 [ 59F600BDA5B6EE591802945F1D8388D5, A30593A0EC696DE21264969664261E7ADA12C9E1161445BD41E71B7E3232604F ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 19:42:46.0576 0x2a18 RFCOMM - ok 19:42:46.0592 0x2a18 [ 3D4F4CCE0364CD3F1B539D2630686F24, 620EFC53D6F5279AEF4748FAE22F7239E7855D1F5C79B85F6CB54EF51C516408 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 19:42:46.0592 0x2a18 rhproxy - ok 19:42:46.0623 0x2a18 [ ADA13EBD9C23C51876A5B2EADF7F2E29, D08E6A907DE5DC6F51CA71CBF7886FE7D8C6FB09154B633D86CDBE9C311361A0 ] RmSvc C:\WINDOWS\System32\RMapi.dll 19:42:46.0623 0x2a18 RmSvc - ok 19:42:46.0623 0x2a18 RpcEptMapper - ok 19:42:46.0623 0x2a18 [ 19EC4D05E01FE350B3494CEA122D64EB, 09FF60A8F22D66796257E33F4CFD6059D4A11A3173A7691718E9FE841E15ABA2 ] RpcLocator C:\WINDOWS\system32\locator.exe 19:42:46.0639 0x2a18 RpcLocator - ok 19:42:46.0639 0x2a18 RpcSs - ok 19:42:46.0655 0x2a18 [ FFFB16EF6E0B8B5F7F19B425923E7D12, 27C2882AC7B27BAC5A4051C2C9326A6D289F297158DE7A3A93E8B09378DC91AA ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 19:42:46.0655 0x2a18 rspndr - ok 19:42:46.0670 0x2a18 [ 02CB159500B40705BE8644F3B42C3992, B4F6238BF2D9E53DE3C43FC4A247700C94B9F0BEFA8D3F0AE043B1F3405A1D70 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys 19:42:46.0686 0x2a18 RTSUER - ok 19:42:46.0701 0x2a18 [ A2939E69027B97105014434BFBFF7195, 9DC09BE94415564D0E80431223BDA1C59E3555AB5267DD3F64E71D4A18C8553A ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 19:42:46.0701 0x2a18 s3cap - ok 19:42:46.0701 0x2a18 SamSs - ok 19:42:46.0701 0x2a18 sbp2port - ok 19:42:46.0733 0x2a18 [ D48F36EA4B4E8237B24E33B18D76EB2A, 128E754F15FDB00D218FB23431BF0FBDC65D64EEF294D72535B0C07EB5472136 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 19:42:46.0748 0x2a18 SCardSvr - ok 19:42:46.0764 0x2a18 [ 1B1FB3D8403E621F2B9201EF414E21D9, 5EFBEA5DC09CD5F151EF224BE2FF2C985D19301B17E5C16F5D00CB2852DAF8BF ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 19:42:46.0764 0x2a18 ScDeviceEnum - ok 19:42:46.0780 0x2a18 [ 0070C2DC6563C48EDA63A282748F3FCD, 12C8505DDD05994641B2B19666D7A54E12A21F6894913342A9BA5D148F193BE0 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 19:42:46.0780 0x2a18 scfilter - ok 19:42:46.0826 0x2a18 [ 9D13410D7B4D76AA2EA73EC8CA0E0190, 7C46D202683F34F1C07D9D297E9A239376800DC8C84FE1585FE7FC723B6EBBA0 ] Schedule C:\WINDOWS\system32\schedsvc.dll 19:42:46.0842 0x2a18 Schedule - ok 19:42:46.0858 0x2a18 scmbus - ok 19:42:46.0858 0x2a18 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 19:42:46.0858 0x2a18 SCPolicySvc - ok 19:42:46.0873 0x2a18 sdbus - ok 19:42:46.0889 0x2a18 [ 9EF09DE84CE20B787C02395394AC2A7E, 17019B74506D26707EBC342365008A9BB5AACA381FB60ABA85F34D153FB0682C ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 19:42:46.0889 0x2a18 SDFRd - ok 19:42:46.0905 0x2a18 [ 01607A2FAB0068450A06C90AF755D57E, 9615261063475045CBC99F17BD3A4919198D0F77CA9E4EC7B13826E514BC8543 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 19:42:46.0905 0x2a18 SDRSVC - ok 19:42:46.0905 0x2a18 sdstor - ok 19:42:46.0920 0x2a18 [ 44B1F4F200B4D3AE8B53290101148AFC, 34F18FEDE525BB398371329CA9F93BD3D88C30E23FCA576978D94EC67513228C ] seclogon C:\WINDOWS\system32\seclogon.dll 19:42:46.0920 0x2a18 seclogon - ok 19:42:46.0951 0x2a18 [ EA160DB2589350DFF52C7ACCD7763187, 1EA4C33AE67EE0EC0748D892D402AD49832FE752F6864AF99AFCA52873D6F4A4 ] SecureLine C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe 19:42:46.0967 0x2a18 SecureLine - ok 19:42:46.0998 0x2a18 [ 1E8CC4964FEECEE44D720A5130075F79, 75656541633FE90045183C68F4A81F1AA305E4A03CFBF7C50F226F18000924D5 ] SecurityHealthService C:\WINDOWS\system32\SecurityHealthService.exe 19:42:47.0014 0x2a18 SecurityHealthService - ok 19:42:47.0061 0x2a18 [ 7D7ED932B6417D8687D1D972989B310B, A5DF3B6CEE97DD110FD1BC542CC5A5313B2F447E5FCC40DF6EFB9D7D49CD792C ] SEMgrSvc C:\WINDOWS\system32\SEMgrSvc.dll 19:42:47.0076 0x2a18 SEMgrSvc - ok 19:42:47.0092 0x2a18 [ CA614C9FBC8307AB1DC937F3393899E2, 4833CC631FA30E4D4B45BBC2CE41DE72B332B6A1FFD23B7DBFD6EDD6BC1A2ED8 ] SENS C:\WINDOWS\System32\sens.dll 19:42:47.0092 0x2a18 SENS - ok 19:42:47.0139 0x2a18 [ 46AEFFC68BEAF89805B95CC6F9529C2E, 7A6A38A329E82F684191561479604142BBB35121822A5CDD828819C606F2A60A ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 19:42:47.0155 0x2a18 SensorDataService - ok 19:42:47.0186 0x2a18 [ 2B81117E9C3E20BBAA2CB5467D000F77, AC0DF8E635908026EE43EE0444DEF61481E211737A85A473D64EC8BB214D1135 ] SensorService C:\WINDOWS\system32\SensorService.dll 19:42:47.0217 0x2a18 SensorService - ok 19:42:47.0233 0x2a18 [ DF94FAAEC4CDAA3886A0169E660C984B, 54BB09459D59B5DDA24D72821840FA7A71A194EA464E09DFDE021B24CB27FCAD ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 19:42:47.0248 0x2a18 SensrSvc - ok 19:42:47.0248 0x2a18 SerCx - ok 19:42:47.0248 0x2a18 SerCx2 - ok 19:42:47.0248 0x2a18 Serenum - ok 19:42:47.0248 0x2a18 Serial - ok 19:42:47.0264 0x2a18 sermouse - ok 19:42:47.0280 0x2a18 [ 87340BC77470B34F11A9E558B591DB08, FD91561FE5951B4F59FEE23707E1ACE31293E508EF734A5CDB0F34D332EFDDF7 ] SessionEnv C:\WINDOWS\system32\sessenv.dll 19:42:47.0295 0x2a18 SessionEnv - ok 19:42:47.0295 0x2a18 sfloppy - ok 19:42:47.0311 0x2a18 [ 1941F5CA54C469E16957587FD56ED842, D356547A9702A50AEB5F7765AC44668EEA913563A422ABBD0427EC22833A5B78 ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 19:42:47.0326 0x2a18 SgrmAgent - ok 19:42:47.0342 0x2a18 [ D3170A3F3A9626597EEE1888686E3EA6, 9321991C441B095DF15D24C8AE58F87EE5A3242532E8C023D0F78B2F96FEE6B7 ] SgrmBroker C:\WINDOWS\system32\SgrmBroker.exe 19:42:47.0342 0x2a18 SgrmBroker - ok 19:42:47.0373 0x2a18 [ AC1D97F89F2EC7E334A406603A686973, D230059C1CB400CCA62438603356F058B40E17DE4C7BD4DADDBB981E4F5E4C9C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 19:42:47.0405 0x2a18 SharedAccess - ok 19:42:47.0451 0x2a18 [ 0BE15FDA358837ABD88DC72AA75C75CD, 3990FA051E7C280B446C8A749FCEE04E384230CC5E286B4E7080B1737E5730DD ] SharedRealitySvc C:\WINDOWS\System32\SharedRealitySvc.dll 19:42:47.0467 0x2a18 SharedRealitySvc - ok 19:42:47.0498 0x2a18 [ 63B104867F70F0D81125C37989146960, 468431098DD9B91F1C58551CEB4DBE6E1C456FFE845E302571B970EF05AE03A8 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 19:42:47.0514 0x2a18 ShellHWDetection - ok 19:42:47.0530 0x2a18 [ F6D90D09D2BCFA2B5E492BFECA40EDE4, 7B427335943C1EFDE482D59F3A23149FCD45BB014643BEF620A708720383C4A8 ] shpamsvc C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll 19:42:47.0545 0x2a18 shpamsvc - ok 19:42:47.0545 0x2a18 SiSRaid2 - ok 19:42:47.0545 0x2a18 SiSRaid4 - ok 19:42:47.0561 0x2a18 [ 22CC2A61BC77C5972B58756049AA254E, 4DF554A1C2FF8C2D9AD8633231961DE95171A17295DAA7779E607AFD7BD8FE03 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 19:42:47.0561 0x2a18 SkypeUpdate - ok 19:42:47.0576 0x2a18 smphost - ok 19:42:47.0608 0x2a18 [ A3BEF2736E902B9DCA68554F4E10E08C, 5C7590D8F2D637B6D4A5F68945D8350B1C3D48EBE1B2C36658361900C9425611 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 19:42:47.0623 0x2a18 SmsRouter - ok 19:42:47.0623 0x2a18 [ 577EC13EB5215325E9B9FC51FB56A974, 1D7A0245A3C474BCD4EC69704040FB50C0E086DB1711C5B7FC4D9C4A7909DAB9 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 19:42:47.0639 0x2a18 SNMPTRAP - ok 19:42:47.0639 0x2a18 spaceport - ok 19:42:47.0655 0x2a18 [ FE1776E587227120DC04EAEC45473245, 9DEBD997D275065481EEEDD2310479F2021D53B64AA6D5CEEA70E9BB8C9856C7 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 19:42:47.0655 0x2a18 SpatialGraphFilter - ok 19:42:47.0655 0x2a18 SpbCx - ok 19:42:47.0655 0x2a18 spectrum - ok 19:42:47.0686 0x2a18 [ C05A19A38D7D203B738771FD1854656F, 3A832F3CBA33682EAA18ABB721BF2D5A6FE9AC853038C684C264700DEB52AA65 ] Spooler C:\WINDOWS\System32\spoolsv.exe 19:42:47.0701 0x2a18 Spooler - ok 19:42:47.0701 0x2a18 sppsvc - ok 19:42:47.0717 0x2a18 srv - ok 19:42:47.0717 0x2a18 srv2 - ok 19:42:47.0717 0x2a18 srvnet - ok 19:42:47.0733 0x2a18 [ 1AEA66706573E8CCD6038369FE37F237, A62CAFE205D5B4C9F8528EDDA4E20BA4E2D1E231F2B183FE70EFE6458B2D5460 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 19:42:47.0748 0x2a18 SSDPSRV - ok 19:42:47.0780 0x2a18 [ 5EE518DFADC18573E681BB78833E93FA, E98CCD3E2ADA265D6E3CF48CDBFE5C3067E0546F179F23B77C267F65CEB978EE ] ssh-agent C:\WINDOWS\System32\OpenSSH\ssh-agent.exe 19:42:47.0795 0x2a18 ssh-agent - ok 19:42:47.0795 0x2a18 SstpSvc - ok 19:42:47.0811 0x2a18 [ F0B59ADCD06BCEB9D47311B7041CA2C9, 6299AB514CBE153C875F083ED789F6205C1781C0178759521F5A6D8007F5257C ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys 19:42:47.0811 0x2a18 ssudmdm - ok 19:42:47.0873 0x2a18 [ 7DB9E612A2742ACEAB080B882E83141C, FFD1FA36E732F55223F3F4B5F845331DBB3073B023C2C5BF51A0E7680DEE7FA7 ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe 19:42:47.0873 0x2a18 ss_conn_service - ok 19:42:47.0889 0x2a18 StateRepository - ok 19:42:47.0920 0x2a18 [ 0608A6DB82B8E6845BCC624051F31130, 9FF2993FFDC273AE8EB9F4E870620B6287024E013F778154F1A022A9370A1A34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 19:42:47.0951 0x2a18 Steam Client Service - ok 19:42:47.0951 0x2a18 stexstor - ok 19:42:47.0983 0x2a18 [ EB2C25A3700309F3F67D9334CF33A36C, 9262778566EEEA810AD32CD660DEA841797BD9F874252CC5445D917FF159280B ] stisvc C:\WINDOWS\System32\wiaservc.dll 19:42:47.0983 0x2a18 stisvc - ok 19:42:47.0998 0x2a18 storahci - ok 19:42:47.0998 0x2a18 storflt - ok 19:42:47.0998 0x2a18 stornvme - ok 19:42:47.0998 0x2a18 storqosflt - ok 19:42:48.0014 0x2a18 StorSvc - ok 19:42:48.0014 0x2a18 storufs - ok 19:42:48.0014 0x2a18 storvsc - ok 19:42:48.0014 0x2a18 svsvc - ok 19:42:48.0029 0x2a18 swenum - ok 19:42:48.0045 0x2a18 swprv - ok 19:42:48.0045 0x2a18 [ 80CB108EB46BCAE1A30B7E2F29D3032B, 3C5793F882AF05F928F71AB7B6282F0AF55A755AAFA2506F7062B85AD6869145 ] SynRMIHID C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys 19:42:48.0045 0x2a18 SynRMIHID - ok 19:42:48.0045 0x2a18 [ A2A42A570524C975259E3B81C4D80DCA, 4B2A6295E46DD2042B3C741D9519A0376687B30711F2DA8B9B81A039E46229F9 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 19:42:48.0045 0x2a18 Synth3dVsc - ok 19:42:48.0092 0x2a18 [ 62492FAAC26223E8A21E79A2331A3F10, 164C2650EAD344B6DFF95B8275436231E7994B7F06ACB3DA19054849BED61FD2 ] SysMain C:\WINDOWS\system32\sysmain.dll 19:42:48.0108 0x2a18 SysMain - ok 19:42:48.0108 0x2a18 SystemEventsBroker - ok 19:42:48.0123 0x2a18 [ CE9975A9E0DFBEFECECE218D2674C1CD, 20ABA9B78FF40C89A757ED2B4AE2F8BE5F4C6C257AA00A324849D68ACA59A264 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 19:42:48.0139 0x2a18 TabletInputService - ok 19:42:48.0139 0x2a18 [ D765F43CBEA72D14C04AF3D2B9C8E54B, 89C5CA1440DF186497CE158EB71C0C6BF570A75B6BC1880EAC7C87A0250201C0 ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys 19:42:48.0201 0x2a18 tap0901 - ok 19:42:48.0217 0x2a18 [ E38C7C4D57B1438F70A1B913870E8665, EEBE640E31F3D9126FD2F58EB93051FE4EEA591223DFAB9E918DEBE879718B95 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 19:42:48.0420 0x2a18 TapiSrv - ok 19:42:48.0420 0x2a18 Tcpip - ok 19:42:48.0420 0x2a18 Tcpip6 - ok 19:42:48.0436 0x2a18 [ 085F8A5F09E64CC27309AF160EF4F9BA, DB3DFD3059836A9FB26FE924E9F2B960E454F4B20D8862266DFDA3168D610FD8 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 19:42:48.0436 0x2a18 tcpipreg - ok 19:42:48.0436 0x2a18 tdx - ok 19:42:48.0467 0x2a18 [ B2C4D7CB291293CAC636748E695D111E, 5E0AA8147EFDA5D21CEE8AE254F74A974B0ADAF298F569CAA73AC4E3B758438A ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 19:42:48.0467 0x2a18 terminpt - ok 19:42:48.0498 0x2a18 [ 10ADC3589E50B1ED8452C86E0CBE8248, BE82341A12EA83D9EFADC9AC35CF16D327F8499C99107DCDE88DD0F5DF84523C ] TermService C:\WINDOWS\System32\termsrv.dll 19:42:48.0529 0x2a18 TermService - ok 19:42:48.0561 0x2a18 [ 1A0A0F6A139148AFDC4622046D4B3CBD, 8FC2FB99B70A3A5B2F1D757A2F0E3085B1D242B792A35070E1DB3871A275329E ] Themes C:\WINDOWS\system32\themeservice.dll 19:42:48.0561 0x2a18 Themes - ok 19:42:48.0592 0x2a18 [ 811910E891A6DB4A864AE119EB71218C, 2CBB6159E2ACAE4BA73892A4F7F8A3981C159083C29F1A1D548C59FB713B9D74 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe 19:42:48.0608 0x2a18 TieringEngineService - ok 19:42:48.0608 0x2a18 TimeBrokerSvc - ok 19:42:48.0608 0x2a18 TokenBroker - ok 19:42:48.0608 0x2a18 TPM - ok 19:42:48.0623 0x2a18 [ A5C0F857C38278A90E953A24E1701196, 1A646E47013946CCE41C798A494C6D266AEFC8A8D6EB65CD8848E72106687E38 ] TrkWks C:\WINDOWS\System32\trkwks.dll 19:42:48.0639 0x2a18 TrkWks - ok 19:42:48.0654 0x2a18 [ ED9913C84739BE2B4D5F1A54EFF3FC6C, A5192DD8E20155E748E4817063B068A4E5B4BC2FE324DF917B11DA524B11DF53 ] TrueKey C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe 19:42:48.0670 0x2a18 TrueKey - ok 19:42:48.0686 0x2a18 [ 39121FB613B2E3C0506D678E297B0F40, A469CE5C90C7DEAEC238689AAFD62968DB298F0F725841270B5A2A49313274EC ] TrueKeyScheduler C:\Program Files\TrueKey\McTkSchedulerService.exe 19:42:48.0686 0x2a18 TrueKeyScheduler - ok 19:42:48.0701 0x2a18 [ 40A532AC4A579184641CFDC8102B6705, BF8B0107F8DCF987340F6901DAC55358416D07F70850620757E6FF6B3CA4DC13 ] TrueKeyServiceHelper C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe 19:42:48.0701 0x2a18 TrueKeyServiceHelper - ok 19:42:48.0701 0x2a18 TrustedInstaller - ok 19:42:48.0717 0x2a18 [ 0D721F40C179EC5737C15E551F22C69B, BBA04E11C3D9150C60F74D8B1A3F444BDE0C19857BB7C45D58448F641082DE1A ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 19:42:48.0717 0x2a18 TsUsbFlt - ok 19:42:48.0748 0x2a18 [ DE1296871208D1F13B7AC57C4B1FA46C, D18709F65E372A47AE114ECFD6A45E6736089B4A8E719E2FB5D831D9415E995D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 19:42:48.0748 0x2a18 TsUsbGD - ok 19:42:48.0764 0x2a18 [ BC938ABBF586272BD4063CA51F09149F, 06EB662948D212ACDF930C3CD01C6381A6FB152AC0F1628C86764F0973ABA1CB ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 19:42:48.0764 0x2a18 tunnel - ok 19:42:48.0779 0x2a18 [ E94996BB8F323AF02860196C1400AD30, DE605439FC5B59C1064DF05F63C94D7C275482C1C66BEC74FA4A83F61C2051FC ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll 19:42:48.0779 0x2a18 tzautoupdate - ok 19:42:48.0795 0x2a18 UASPStor - ok 19:42:48.0811 0x2a18 [ 00C4396DE1CD3502884BB2E2B6D6861C, 39F6BF25096ACE29CAF964DCA15078F47986F645DF49FB502A2CDF2C05C89AAB ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 19:42:48.0811 0x2a18 UcmCx0101 - ok 19:42:48.0842 0x2a18 [ ED9CBD1541C8AFDAA9B8255A384E2B53, D970F5E976CEBE0BCDF07B9E155EDB5B3C225812991779748CD04A9C4852DF3D ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 19:42:48.0842 0x2a18 UcmTcpciCx0101 - ok 19:42:48.0858 0x2a18 [ F58F1BC6A6972437CE18516F8ACCEB9F, 2C619D1E2E80662FA463EE48E3D41C8437A81B0F68EE67A0839A93DEDCD2E0B2 ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 19:42:48.0858 0x2a18 UcmUcsi - ok 19:42:48.0873 0x2a18 Ucx01000 - ok 19:42:48.0873 0x2a18 UdeCx - ok 19:42:48.0873 0x2a18 udfs - ok 19:42:48.0873 0x2a18 UEFI - ok 19:42:48.0889 0x2a18 [ AD53262AFF486D28190439D3A59C80F7, 9A57AA4BD93392894110B344CAB884476A2F107442FAB6E840178BE544B5CC6E ] UEIPSvc C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe 19:42:49.0061 0x2a18 UEIPSvc - ok 19:42:49.0092 0x2a18 [ 588B9212DEE84F5192C09A147AA5C316, 80C70FD489D72015FCF8AFBE649F6C77F40B613882A1F031A2DAE088B9B4F67B ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 19:42:49.0092 0x2a18 Ufx01000 - ok 19:42:49.0108 0x2a18 UfxChipidea - ok 19:42:49.0108 0x2a18 ufxsynopsys - ok 19:42:49.0108 0x2a18 umbus - ok 19:42:49.0108 0x2a18 UmPass - ok 19:42:49.0139 0x2a18 [ 0D806415E1F86E7C1C192261C247EF0D, 640CB73D9ACC3B6E0F2A2A5A4587375F05A7519081BEC510B926A8A4A496C3B9 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 19:42:49.0154 0x2a18 UmRdpService - ok 19:42:49.0186 0x2a18 [ EAEC69961D9D8B39FEA44D56F7FB259D, 43FEB15A32B353B6F3C8E5F1072FF9507F2FA7799A414F30FEA0B8C47999D969 ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 19:42:49.0217 0x2a18 UnistoreSvc - ok 19:42:49.0233 0x2a18 [ 2362D5C18120FAB9CE5BD1F73EE33758, D9AB5D5BEAF95F62A204CE8A3B8B3B6C9C1E85FB5425CA2AADCBB4770EDCDF30 ] upnphost C:\WINDOWS\System32\upnphost.dll 19:42:49.0248 0x2a18 upnphost - ok 19:42:49.0264 0x2a18 [ 49A5E1B43C59DC0E363AD9C2D7D10BE4, B903C1C24DAF316AF9D8C1770687DE0A24ACDA4EFE47845E13BE99985609B7CE ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 19:42:49.0264 0x2a18 UrsChipidea - ok 19:42:49.0279 0x2a18 [ 53F1DA2D92D1D8CE4BB9D33E58D7DF01, CD3F4B92EDA042FE696C59D67BEB711C7AF0EB5979AD5F4110297C47454EBBFA ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 19:42:49.0295 0x2a18 UrsCx01000 - ok 19:42:49.0295 0x2a18 [ 09518A324B95BBC0B472BD5A472CB916, B3C6BF8C84268C02CC43E5C6B37648F9691B6038D275F4BEBA7B5E9ECA046181 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 19:42:49.0295 0x2a18 UrsSynopsys - ok 19:42:49.0311 0x2a18 [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys 19:42:49.0358 0x2a18 USBAAPL64 - ok 19:42:49.0358 0x2a18 usbccgp - ok 19:42:49.0389 0x2a18 [ 250D21958EE5F45CD13FE6BE3788EE70, C0EF097EE2ED91950BD3A6881AB08698E85C4ABABC4F7520F7E92E70CA454D4E ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 19:42:49.0389 0x2a18 usbcir - ok 19:42:49.0389 0x2a18 usbehci - ok 19:42:49.0389 0x2a18 usbhub - ok 19:42:49.0389 0x2a18 USBHUB3 - ok 19:42:49.0404 0x2a18 usbohci - ok 19:42:49.0404 0x2a18 [ 692C0BA4109C8F78392A299369F51129, A675E11CD4794693D0B65A06E85F264199506A4C6EDBB68503163EED389B8D1F ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 19:42:49.0420 0x2a18 usbprint - ok 19:42:49.0420 0x2a18 [ 555DE99E30E6A6EF37137F8325B30068, B78B44883A3E524DFEC13B72AFFDF06FD446EFB12061593D8247C0B92D558B8A ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 19:42:49.0436 0x2a18 usbscan - ok 19:42:49.0436 0x2a18 usbser - ok 19:42:49.0436 0x2a18 USBSTOR - ok 19:42:49.0436 0x2a18 usbuhci - ok 19:42:49.0467 0x2a18 [ 9431F7E997A8750139517709B04D8629, 250DE2A461DD3E6D40BD7A21041BF451D954D5BC14A9BC4D819955A135FC34F4 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 19:42:49.0467 0x2a18 usbvideo - ok 19:42:49.0467 0x2a18 USBXHCI - ok 19:42:49.0514 0x2a18 [ CE0E3BA8FC974BEE5BE20E4F43A1C583, E19DE81559FD92D1F7B0ADB4297926E6971F7FCB642E11758D361FC2A22C33BB ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 19:42:49.0545 0x2a18 UserDataSvc - ok 19:42:49.0545 0x2a18 UserManager - ok 19:42:49.0545 0x2a18 UsoSvc - ok 19:42:49.0576 0x2a18 [ 3E283D06357616CD4117CC15BDB7C4C3, ACE50702EE61C9F93855720037898F19E509D45982F9173643EDA455F54FB9E7 ] VacSvc C:\WINDOWS\System32\vac.dll 19:42:49.0592 0x2a18 VacSvc - ok 19:42:49.0592 0x2a18 VaultSvc - ok 19:42:49.0592 0x2a18 vdrvroot - ok 19:42:49.0592 0x2a18 vds - ok 19:42:49.0607 0x2a18 VerifierExt - ok 19:42:49.0607 0x2a18 vhdmp - ok 19:42:49.0607 0x2a18 vhf - ok 19:42:49.0607 0x2a18 vmbus - ok 19:42:49.0607 0x2a18 VMBusHID - ok 19:42:49.0623 0x2a18 [ C9F69EBA06A703CE726CC6FC0AEFB5E9, 53E441D9D6017CC4BB75F41C6CB9DA79DE500CACBDDE58104D1857A2B749C373 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 19:42:49.0623 0x2a18 vmgid - ok 19:42:49.0654 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll 19:42:49.0670 0x2a18 vmicguestinterface - ok 19:42:49.0670 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicheartbeat C:\WINDOWS\System32\icsvc.dll 19:42:49.0670 0x2a18 vmicheartbeat - ok 19:42:49.0686 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll 19:42:49.0686 0x2a18 vmickvpexchange - ok 19:42:49.0717 0x2a18 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicrdv C:\WINDOWS\System32\icsvcext.dll 19:42:49.0717 0x2a18 vmicrdv - ok 19:42:49.0732 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicshutdown C:\WINDOWS\System32\icsvc.dll 19:42:49.0732 0x2a18 vmicshutdown - ok 19:42:49.0748 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmictimesync C:\WINDOWS\System32\icsvc.dll 19:42:49.0748 0x2a18 vmictimesync - ok 19:42:49.0748 0x2a18 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicvmsession C:\WINDOWS\System32\icsvc.dll 19:42:49.0764 0x2a18 vmicvmsession - ok 19:42:49.0764 0x2a18 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicvss C:\WINDOWS\System32\icsvcext.dll 19:42:49.0764 0x2a18 vmicvss - ok 19:42:49.0779 0x2a18 volmgr - ok 19:42:49.0779 0x2a18 volmgrx - ok 19:42:49.0779 0x2a18 volsnap - ok 19:42:49.0779 0x2a18 volume - ok 19:42:49.0811 0x2a18 [ CB90DACF9194DD9D60A2C1DBFBC1E0D1, BE454495C79857FD8DF4ABAF5BDB7D076467BBC27B31E87FA9D920F2001B670D ] vpci C:\WINDOWS\System32\drivers\vpci.sys 19:42:49.0811 0x2a18 vpci - ok 19:42:49.0842 0x2a18 [ 8B02F857621B5482BB05DF9C2CB9AB87, 0BB91BF5D2E2C5FE62AB9FAC0BBE8FD88661983EE2D98235D93166E5B24248D0 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe 19:42:49.0842 0x2a18 vpnagent - ok 19:42:49.0857 0x2a18 [ 0F42C39016F82F345C0F2DB2D5B90EB4, 2E957E72BB8D0293F61FA7385BA9400DF7759E1E3D35FE24F3877A6460988F4D ] vpnva C:\WINDOWS\System32\drivers\vpnva64-6.sys 19:42:49.0873 0x2a18 vpnva - ok 19:42:49.0873 0x2a18 vsmraid - ok 19:42:49.0873 0x2a18 VSS - ok 19:42:49.0873 0x2a18 VSTXRAID - ok 19:42:49.0873 0x2a18 vwifibus - ok 19:42:49.0873 0x2a18 vwififlt - ok 19:42:49.0889 0x2a18 vwifimp - ok 19:42:49.0889 0x2a18 W32Time - ok 19:42:49.0904 0x2a18 [ 1C8447EFBC2B36B1CFE889E519F46A6E, 2601185B01909682FB921400C26BE6391AC93F72E84E70E2F49B4059987E191E ] WaaSMedicSvc C:\WINDOWS\System32\WaaSMedicSvc.dll 19:42:49.0904 0x2a18 WaaSMedicSvc - ok 19:42:49.0920 0x2a18 WacomPen - ok 19:42:49.0951 0x2a18 [ 25FAB8A2CFFA21FDB472AB3AE6C17A57, C97E651111643F32FD5B94BEDA31D62E6FF83CA0644FFE8BA98463EC9EA6EF9B ] WalletService C:\WINDOWS\system32\WalletService.dll 19:42:49.0951 0x2a18 WalletService - ok 19:42:49.0967 0x2a18 wanarp - ok 19:42:49.0967 0x2a18 wanarpv6 - ok 19:42:49.0967 0x2a18 [ 395447583F42FD840520EE87AE439D74, 984AE1EE8BA3B8926C6FC94BC22DE9061C90C15135EA56D0F16C1D3C4EF8DAF8 ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 19:42:49.0967 0x2a18 WarpJITSvc - ok 19:42:49.0982 0x2a18 wbengine - ok 19:42:49.0998 0x2a18 WbioSrvc - ok 19:42:50.0014 0x2a18 [ 8A304D6CDC067922448CBA1EBB9FFCA8, DE40DD3A32DFF22C477F38B5E2224D55B8CCF2499EFFE0A8E9923728295BAEC1 ] wcifs C:\WINDOWS\system32\drivers\wcifs.sys 19:42:50.0014 0x2a18 wcifs - ok 19:42:50.0045 0x2a18 [ 2BCA9BABB5CEC329E604AE9C1DBA9D5B, 315C72B80A5E6278A725E7BD2DE0C8A2751C2A3F9B4D82F7A034B1ADDE687507 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 19:42:50.0061 0x2a18 Wcmsvc - ok 19:42:50.0061 0x2a18 wcncsvc - ok 19:42:50.0092 0x2a18 [ FCA1B5465213EF4DE373A1F7E76D260E, 2548A9D11027871AD0290FDADF1E42E828E6120ECE925B12BAB3F09E25172489 ] wcnfs C:\WINDOWS\system32\drivers\wcnfs.sys 19:42:50.0092 0x2a18 wcnfs - ok 19:42:50.0092 0x2a18 [ CD8A7398D8E0710CD3AA316A4427C56B, 81CA3256BACBEBC24380B6C4A5C4385C0F7D2BFFFDB4F990670A1EDBEB00B34D ] WdBoot C:\WINDOWS\system32\drivers\wd\WdBoot.sys 19:42:50.0139 0x2a18 WdBoot - ok 19:42:50.0139 0x2a18 Wdf01000 - ok 19:42:50.0154 0x2a18 [ 58B452788C0051C6C6E62F188EFEE438, C2EC7D28415B1A06A21BE1290848784D1676D0E1E9BEEFD1FF233F248B5F8C9A ] WdFilter C:\WINDOWS\system32\drivers\wd\WdFilter.sys 19:42:50.0170 0x2a18 WdFilter - ok 19:42:50.0170 0x2a18 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 19:42:50.0186 0x2a18 WdiServiceHost - ok 19:42:50.0186 0x2a18 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 19:42:50.0186 0x2a18 WdiSystemHost - ok 19:42:50.0201 0x2a18 wdiwifi - ok 19:42:50.0201 0x2a18 [ EAF4FB729E94561EE31BDE5BEF869C65, 73290250B565E0A3F453BC45E69FF16A1D964E372A15401A2D3E2CDEB4670B38 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 19:42:50.0201 0x2a18 WdmCompanionFilter - ok 19:42:50.0201 0x2a18 [ 65081A53DB730D2347AD66AF7187795A, 3F91C9846D02956AF7B54F121CF3663E8682A6974F9696A35DAAE67697BD53EA ] WdNisDrv C:\WINDOWS\system32\drivers\wd\WdNisDrv.sys 19:42:50.0201 0x2a18 WdNisDrv - ok 19:42:50.0357 0x2a18 [ 71C846A2F98CFC9F2E426890523AC276, ECA5BF57913D4B0E4B20CB729BD0FF5DC76DDDF839D5A9841B9E3B62D760C679 ] WdNisSvc C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe 19:42:50.0436 0x2a18 WdNisSvc - ok 19:42:50.0623 0x2a18 [ BDCC510E85F7AF152E2DFF030A526EA2, 67830B42DE20EBB30DD33093F30FBA166B27D3C1F25B52DABE1BC436671A1882 ] WebClient C:\WINDOWS\System32\webclnt.dll 19:42:50.0639 0x2a18 WebClient - ok 19:42:50.0654 0x2a18 [ 506F0A1CCABF4428733CF854BCBB6832, 859A7E21ABB93A0AD538AAF93D32E31B961EA6012C24567B4C76A9ED8FD4AD46 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 19:42:50.0670 0x2a18 Wecsvc - ok 19:42:50.0686 0x2a18 [ D8D727E8311C86B2A993A9006A453BAC, AD6C93F5ED51C621841DF68A25D5932578FADB83689FB668D056F316A8AA749D ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 19:42:50.0686 0x2a18 WEPHOSTSVC - ok 19:42:50.0717 0x2a18 [ 30B4568D058E17500E7BF88AECEDF3F1, 612597DFAF63E55ACB80789483CBCF0E5AC5FF7607C478C61E5A86D77B169E9E ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 19:42:50.0717 0x2a18 wercplsupport - ok 19:42:50.0717 0x2a18 WerSvc - ok 19:42:50.0748 0x2a18 [ 0427A785512BB39BEA530DC5367A9A03, 8ED29AE0FDB65D4E1D8CD3FA1783D74EF7B01AB30DD1090C917A74AC88FD4C3E ] WFDSConMgrSvc C:\WINDOWS\System32\wfdsconmgrsvc.dll 19:42:50.0764 0x2a18 WFDSConMgrSvc - ok 19:42:50.0764 0x2a18 WFPLWFS - ok 19:42:50.0779 0x2a18 [ 752F5931696914DF2EC0B27275C38458, 83415E7BE50D9548785FBF6550FA679E425B5990F303E2D74513275A5E1DC828 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 19:42:50.0779 0x2a18 WiaRpc - ok 19:42:50.0779 0x2a18 WIMMount - ok 19:42:50.0795 0x2a18 [ DD752ECFDEC95581A00D62A8B00591EC, ADE71487979EF52B585ACEB3314A2DB5A8032E18FAB766AE773694DF25DEE3F4 ] WinDefend C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe 19:42:50.0795 0x2a18 WinDefend - ok 19:42:50.0795 0x2a18 [ EC7C1A7397988EFAF37BF685CA25525D, 50DA7D63CDE618D6426649AED250CEBE229CBBAC718C4E3CD882D816839B4CE9 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 19:42:50.0811 0x2a18 WindowsTrustedRT - ok 19:42:50.0811 0x2a18 [ 5F0EDDA201630E132C2251BC9DA85023, 842B5CBA8C33616345EDC2F91B560416AAEAAB15A8CE1F36978B251CE4CBDA16 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 19:42:50.0811 0x2a18 WindowsTrustedRTProxy - ok 19:42:50.0811 0x2a18 WinHttpAutoProxySvc - ok 19:42:50.0826 0x2a18 WinMad - ok 19:42:50.0842 0x2a18 Winmgmt - ok 19:42:50.0857 0x2a18 [ 48194110C410B335AC985D9194275A1C, 1CE64B9DD2DB4CCB3916AA4F4C5F8C71C647ABF7845D284019725761138B8A8B ] WinNat C:\WINDOWS\system32\drivers\winnat.sys 19:42:50.0857 0x2a18 WinNat - ok 19:42:50.0920 0x2a18 [ C57185CC62AA13E4F5A989D904CC9A16, 993F27F710148335C4244AB74D4B1D232DEDB0E3D82E39093A1E422C72283D31 ] WinRM C:\WINDOWS\system32\WsmSvc.dll 19:42:50.0967 0x2a18 WinRM - ok 19:42:51.0014 0x2a18 [ 6FA3D810FE082001B16ADE19829F1E8E, 64B420FC14AB3194D4D2907EA5BE741456928E7E3CB9CBA50FEB8677A43B1971 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 19:42:51.0014 0x2a18 WINUSB - ok 19:42:51.0014 0x2a18 WinVerbs - ok 19:42:51.0014 0x2a18 wisvc - ok 19:42:51.0014 0x2a18 WlanSvc - ok 19:42:51.0029 0x2a18 wlidsvc - ok 19:42:51.0076 0x2a18 [ 59F6A50CD336D0ADD22E3F1FC0D73957, A62469B30325965735FE76AE7D83E5D829AE09D7F0996CC0B42604E68426B088 ] wlpasvc C:\WINDOWS\System32\lpasvc.dll 19:42:51.0092 0x2a18 wlpasvc - ok 19:42:51.0107 0x2a18 WmiAcpi - ok 19:42:51.0107 0x2a18 wmiApSrv - ok 19:42:51.0107 0x2a18 WMPNetworkSvc - ok 19:42:51.0123 0x2a18 [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof C:\WINDOWS\system32\drivers\Wof.sys 19:42:51.0139 0x2a18 Wof - ok 19:42:51.0201 0x2a18 [ 0D3303BDBC591ECF113601D7853A1AA7, 437CF89541696E0B1A8056F4A5189642FC76D762113ED4F71458AF4D72FC3E9A ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 19:42:51.0248 0x2a18 workfolderssvc - ok 19:42:51.0248 0x2a18 WpcMonSvc - ok 19:42:51.0279 0x2a18 [ 25180559693250D7B7FF16A6BE7AC9BE, 1872BC298C3ED6A204B3BA2AB13D08EB9DAE5B30B7F83CA7A67BFDECA8D043AD ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 19:42:51.0279 0x2a18 WPDBusEnum - ok 19:42:51.0295 0x2a18 [ 15C1131EA0216F799C86B03EDAE0BE45, 39F50C084407BC3B498714B74DDA5D63E0539681F324A18ABBED3CD0DE5D52AA ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 19:42:51.0295 0x2a18 WpdUpFltr - ok 19:42:51.0310 0x2a18 [ 096969606BB5C4822AB020081EA07FC5, 522F372834B0497215F45ACBC417DA10DCE45C6D3C7099E47BBA18700C294B22 ] WpnService C:\WINDOWS\system32\WpnService.dll 19:42:51.0326 0x2a18 WpnService - ok 19:42:51.0342 0x2a18 [ 8B694BC50D2D2B98311283CFE5B40EE6, 734F8985CAD99E8635ACF09309D958D2B7FB05C6FF54DBE3623DC071BECE3413 ] WpnUserService C:\WINDOWS\System32\WpnUserService.dll 19:42:51.0342 0x2a18 WpnUserService - ok 19:42:51.0342 0x2a18 ws2ifsl - ok 19:42:51.0373 0x2a18 [ DCB549367EB94CD8AFAA28E3F77F6493, 9FD2C6E03F398E76403502CFC94EB8EBD2F90ED5E95ABA5E86C1B7F63601C43C ] wscsvc C:\WINDOWS\System32\wscsvc.dll 19:42:51.0373 0x2a18 wscsvc - ok 19:42:51.0373 0x2a18 WSearch - ok 19:42:51.0389 0x2a18 wuauserv - ok 19:42:51.0404 0x2a18 [ 813DC18CC654CFB1875074139B0FEFD3, 87901841AFD9224BFEC06A712BE3C2371E16D3571210D4792F91034A2B926A06 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 19:42:51.0404 0x2a18 WudfPf - ok 19:42:51.0436 0x2a18 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFRd C:\WINDOWS\system32\drivers\WudfRd.sys 19:42:51.0451 0x2a18 WUDFRd - ok 19:42:51.0451 0x2a18 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 19:42:51.0451 0x2a18 WUDFWpdFs - ok 19:42:51.0467 0x2a18 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 19:42:51.0467 0x2a18 WUDFWpdMtp - ok 19:42:51.0514 0x2a18 [ FAFE3B08208AA28C82BC42731B4EEBE8, 333D9CBE6B3492BC30A7B64C1F83494B38AD2CE7C832C1D68FEBD2EB8029230D ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 19:42:51.0560 0x2a18 WwanSvc - ok 19:42:51.0560 0x2a18 [ 51D3A1E2285E2E931A553281BBA10E81, 8B371AF5E7717C53780A5C2F68400412C4DB0F01AC6551476FF062B83A7D0AC8 ] xbgm C:\WINDOWS\system32\xbgmsvc.exe 19:42:51.0576 0x2a18 xbgm - ok 19:42:51.0623 0x2a18 [ DB952AD196A9548CF5235A71E5197F3F, 6C51EB14B2808665FCB999F376A97018F6B0A91EE6E63A25C044EA59A5713EE1 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 19:42:51.0639 0x2a18 XblAuthManager - ok 19:42:51.0701 0x2a18 [ 8C0DD7BFFF5A81AEC26AD720057F5451, 4503D4DD540DB9977BBFF3BF7E92BE9778578B769972CF8A54AF0F1FF5C79BF5 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 19:42:51.0717 0x2a18 XblGameSave - ok 19:42:51.0748 0x2a18 [ 0AA38B54EB292CB3EB13FFF948473DBA, C5256ABC0A4A2117EC6F1C88B5BFDBECAE673AD47639A274BFFF92A46452E9B0 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 19:42:51.0748 0x2a18 xboxgip - ok 19:42:51.0764 0x2a18 [ C7FEC5C0377E5598BA919B29731CA45F, C153C62742B6F981905AEF7C464761E5894260F26EE164968B21D93979376378 ] XboxGipSvc C:\WINDOWS\System32\XboxGipSvc.dll 19:42:51.0764 0x2a18 XboxGipSvc - ok 19:42:51.0810 0x2a18 [ 3A94BD93CD2D9C34725D924230B502A5, 87AF2061D348FFFA190D0E50E6860903BED46968CF64B7765D8D80127C702E6A ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 19:42:51.0826 0x2a18 XboxNetApiSvc - ok 19:42:51.0842 0x2a18 [ CE1F78B5C1F14F74242008B2B3153FA2, 682D1F32DD1BBEB031D5129CE40D9C77D3C6CF4FB5979F1918B2482AF617B5BE ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 19:42:51.0842 0x2a18 xinputhid - ok 19:42:51.0857 0x2a18 ================ Scan global =============================== 19:42:51.0873 0x2a18 [ Global ] - ok 19:42:51.0873 0x2a18 ================ Scan MBR ================================== 19:42:51.0889 0x2a18 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 19:42:51.0904 0x2a18 \Device\Harddisk0\DR0 - ok 19:42:51.0904 0x2a18 ================ Scan VBR ================================== 19:42:51.0904 0x2a18 [ 9ADE897E267BF9E3B2AF0204F102CA23 ] \Device\Harddisk0\DR0\Partition1 19:42:51.0904 0x2a18 \Device\Harddisk0\DR0\Partition1 - ok 19:42:51.0904 0x2a18 [ 29E7C40C43DC9D4D0AB2972A4D7C833D ] \Device\Harddisk0\DR0\Partition2 19:42:51.0904 0x2a18 \Device\Harddisk0\DR0\Partition2 - ok 19:42:51.0904 0x2a18 [ D85132139A7F33066FE1493E82528DAB ] \Device\Harddisk0\DR0\Partition3 19:42:51.0904 0x2a18 \Device\Harddisk0\DR0\Partition3 - ok 19:42:51.0904 0x2a18 [ 8825384F5D0274919C9CDBF7CCCA4992 ] \Device\Harddisk0\DR0\Partition4 19:42:51.0920 0x2a18 \Device\Harddisk0\DR0\Partition4 - ok 19:42:51.0920 0x2a18 ================ Scan generic autorun ====================== 19:42:51.0920 0x2a18 SecurityHealth - ok 19:42:52.0373 0x2a18 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe 19:42:52.0873 0x2a18 OneDriveSetup - ok 19:42:52.0920 0x2a18 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe 19:42:53.0138 0x2a18 WAB Migrate - ok 19:42:53.0623 0x2a18 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe 19:42:54.0029 0x2a18 OneDriveSetup - ok 19:42:54.0060 0x2a18 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe 19:42:54.0076 0x2a18 WAB Migrate - ok 19:42:54.0123 0x2a18 [ 5AD1389669F29C08C50413222BF4A19F, 0EA3A05B7B795E9B5A19FF5235EF95F37720900FD565116DFEE678B63422FC6B ] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe 19:42:54.0248 0x2a18 FlashPlayerUpdate - ok 19:42:54.0248 0x2a18 Waiting for KSN requests completion. In queue: 286 19:42:55.0263 0x2a18 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated ) 19:42:55.0310 0x2a18 Win FW state via NFP2: enabled ( trusted ) 19:42:55.0529 0x2a18 ============================================================ 19:42:55.0529 0x2a18 Scan finished 19:42:55.0529 0x2a18 ============================================================ 19:42:55.0529 0x3750 Detected object count: 0 19:42:55.0529 0x3750 Actual detected object count: 0 Geändert von cosinus (13.07.2018 um 20:52 Uhr) Grund: code tags |
13.07.2018, 20:53 | #19 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Klarna Trojaner; ZIP geöffnetZitat:
1. du hast den tdsskiller nicht richtig eingestellt 2. du hat nicht in code tags gepostet - es wurde doch nun extra ein fetter Hinweise gepostet
__________________ Logfiles bitte immer in CODE-Tags posten |
14.07.2018, 16:49 | #20 |
| Klarna Trojaner; ZIP geöffnetCode:
ATTFilter 17:45:52.0718 0x14d8 TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17 17:45:52.0718 0x14d8 UEFI system 17:45:54.0984 0x14d8 ============================================================ 17:45:54.0984 0x14d8 Current date / time: 2018/07/14 17:45:54.0984 17:45:54.0984 0x14d8 SystemInfo: 17:45:54.0984 0x14d8 17:45:54.0984 0x14d8 OS Version: 10.0.17134 ServicePack: 0.0 17:45:54.0984 0x14d8 Product type: Workstation 17:45:54.0984 0x14d8 ComputerName: FIXTOP 17:45:54.0984 0x14d8 UserName: email 17:45:54.0984 0x14d8 Windows directory: C:\WINDOWS 17:45:54.0984 0x14d8 System windows directory: C:\WINDOWS 17:45:54.0984 0x14d8 Running under WOW64 17:45:54.0984 0x14d8 Processor architecture: Intel x64 17:45:54.0984 0x14d8 Number of processors: 8 17:45:54.0984 0x14d8 Page size: 0x1000 17:45:54.0984 0x14d8 Boot type: Normal boot 17:45:54.0984 0x14d8 CodeIntegrityOptions = 0x00000001 17:45:54.0984 0x14d8 ============================================================ 17:45:55.0515 0x14d8 KLMD registered as C:\WINDOWS\system32\drivers\80077409.sys 17:45:55.0515 0x14d8 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 17134.1, osProperties = 0x19 17:45:56.0171 0x14d8 System UUID: {024AC421-79A4-970C-10D0-F2071005B9B7} 17:45:56.0405 0x14d8 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 17:45:56.0421 0x14d8 ============================================================ 17:45:56.0421 0x14d8 \Device\Harddisk0\DR0: 17:45:56.0437 0x14d8 GPT partitions: 17:45:56.0437 0x14d8 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {221C1492-83DA-46DC-9802-C2D0CDE2893A}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000 17:45:56.0437 0x14d8 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {4F42D1ED-4137-4AFB-8F6A-3F527716BA62}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x8000 17:45:56.0437 0x14d8 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {CDBC5203-B98F-432D-AB16-678F7D3B351A}, Name: Basic data partition, StartLBA 0x3A800, BlocksNum 0x745D2000 17:45:56.0437 0x14d8 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {DDFBB9CD-0849-4885-B700-89A54EF55F57}, Name: Basic data partition, StartLBA 0x7460C800, BlocksNum 0xFA000 17:45:56.0437 0x14d8 MBR partitions: 17:45:56.0437 0x14d8 ============================================================ 17:45:56.0452 0x14d8 C: <-> \Device\Harddisk0\DR0\Partition3 17:45:56.0452 0x14d8 ============================================================ 17:45:56.0452 0x14d8 Initialize success 17:45:56.0452 0x14d8 ============================================================ 17:46:45.0199 0x2dc8 ============================================================ 17:46:45.0199 0x2dc8 Scan started 17:46:45.0199 0x2dc8 Mode: Manual; SigCheck; TDLFS; 17:46:45.0199 0x2dc8 ============================================================ 17:46:45.0199 0x2dc8 KSN ping started 17:46:45.0261 0x2dc8 KSN ping finished: true 17:46:49.0636 0x2dc8 ================ Scan system memory ======================== 17:46:49.0636 0x2dc8 System memory - ok 17:46:49.0636 0x2dc8 ================ Scan services ============================= 17:46:49.0761 0x2dc8 1394ohci - ok 17:46:49.0761 0x2dc8 3ware - ok 17:46:49.0761 0x2dc8 ACPI - ok 17:46:49.0777 0x2dc8 AcpiDev - ok 17:46:49.0777 0x2dc8 acpiex - ok 17:46:49.0777 0x2dc8 acpipagr - ok 17:46:49.0808 0x2dc8 [ 6AFFD57803BBB6FBCB483F983900A5C4, A3A87984E70C8B47F919D2633E6378F3AACCBF3E74DB3B35BB2E15D036DB36E2 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 17:46:49.0964 0x2dc8 AcpiPmi - ok 17:46:49.0980 0x2dc8 acpitime - ok 17:46:49.0995 0x2dc8 [ AAA8E68E685DB1B68747E3DF68F96368, 1A5BE239B2D0C6F727303A98CFFC91070B6A05ECD6B9CD05AB326AC1910ECEBF ] acsock C:\WINDOWS\system32\DRIVERS\acsock64.sys 17:46:50.0074 0x2dc8 acsock - ok 17:46:50.0136 0x2dc8 [ DD743E7FC93D8F9AB84B0FAECF4BE681, 4F56F4EB8FC10723C4D0E7DAD207CCCCB225E7EF7852C208FCF30052C45E9F90 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 17:46:50.0152 0x2dc8 AdobeFlashPlayerUpdateSvc - ok 17:46:50.0152 0x2dc8 ADP80XX - ok 17:46:50.0167 0x2dc8 AFD - ok 17:46:50.0183 0x2dc8 [ F267095A11A461BEF39FB180750BE801, CF90798C46892FF5225155D2C7BCC469A4A631E22919CBEDA2F4FEEF4F05E301 ] afunix C:\WINDOWS\system32\drivers\afunix.sys 17:46:50.0214 0x2dc8 afunix - ok 17:46:50.0245 0x2dc8 [ 0CD0F0C62414217DE9EA7EC8D425277E, FD211157B85B841D0C94B36776572FADC7425F1B0B49EACC910D3E175208A7EC ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 17:46:50.0277 0x2dc8 ahcache - ok 17:46:50.0292 0x2dc8 [ 2BF4DA8EC5F1A0D88D2DDE1E6821076B, B9F4D499DB4CB91576ACE4847B96F2FC770B9BCC223B5E2261B2DEC22D7651E7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 17:46:50.0355 0x2dc8 AJRouter - ok 17:46:50.0370 0x2dc8 [ 9E9D78D1C179EB2E3E2282A1DC409D93, EA7486B4425A87FDDD60542AAF0812A8DB868F569886B894883702B362A05D2C ] ALG C:\WINDOWS\System32\alg.exe 17:46:50.0449 0x2dc8 ALG - ok 17:46:50.0449 0x2dc8 AmdK8 - ok 17:46:50.0449 0x2dc8 AmdPPM - ok 17:46:50.0449 0x2dc8 amdsata - ok 17:46:50.0464 0x2dc8 amdsbs - ok 17:46:50.0464 0x2dc8 amdxata - ok 17:46:50.0480 0x2dc8 [ E4A18157BF5D8D714C05169A8A8D604C, 45D8CB25A9967D634F8331070BDFB3DF4ACB6295CF1520F9AAE8753D3BF4018A ] AppID C:\WINDOWS\system32\drivers\appid.sys 17:46:50.0495 0x2dc8 AppID - ok 17:46:50.0511 0x2dc8 [ F1A04835C7FA75C8215961C1095D5EBF, 45D153404E601C0CE247058B78F328DD9F7F4F6A9480132F7CE6D9A7092F63CF ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 17:46:50.0542 0x2dc8 AppIDSvc - ok 17:46:50.0542 0x2dc8 [ 48EA4B4CCC920D130529A1EF85388B6A, 31F69543682E70DF0A6B2A70FC7553ECEE643C554E7F8FF18A2DD09359360F8E ] Appinfo C:\WINDOWS\System32\appinfo.dll 17:46:50.0605 0x2dc8 Appinfo - ok 17:46:50.0620 0x2dc8 [ 27DF6AD69B46386DA76F42C565D7A402, B03588E0BFC139A79B9CE15D3E250C66234A445FA68942CAADF61D90E5D8C980 ] AppleLowerFilter C:\WINDOWS\System32\drivers\AppleLowerFilter.sys 17:46:50.0636 0x2dc8 AppleLowerFilter - ok 17:46:50.0652 0x2dc8 [ 769316CA5884FBBD02D45C28FE105922, 117168BFB2D8DBF1258EBA53DCE09E74000B35B7B7460251B4C46BDB9CEA709A ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys 17:46:50.0683 0x2dc8 applockerfltr - ok 17:46:50.0683 0x2dc8 AppReadiness - ok 17:46:50.0683 0x2dc8 AppXSvc - ok 17:46:50.0683 0x2dc8 arcsas - ok 17:46:50.0698 0x2dc8 AsyncMac - ok 17:46:50.0698 0x2dc8 atapi - ok 17:46:50.0714 0x2dc8 [ C345E697B68BE9A45BB6CBD03F1E66F2, F50E0CC874A67A9EED3C792599ADA92C888348E7256663F7C784FBBF51D19EAC ] AtherosSvc C:\WINDOWS\system32\AdminService.exe 17:46:50.0730 0x2dc8 AtherosSvc - ok 17:46:50.0730 0x2dc8 AudioEndpointBuilder - ok 17:46:50.0730 0x2dc8 Audiosrv - ok 17:46:50.0745 0x2dc8 [ D7BFD86F7A9ABE39351199869D093110, 90BB2C0A8185D3982FEFAC7C1E18783AF949EBECA3B9E44DCF89E2FD5FD6AA0C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 17:46:50.0777 0x2dc8 AxInstSV - ok 17:46:50.0777 0x2dc8 b06bdrv - ok 17:46:50.0777 0x2dc8 [ 982FAA5686F67BFEF3E6094705C2621F, 02456312B0FD0ABE7B7EEC0FB385268AF34DDB5F13AF934F96FCA7C32EA51447 ] bam C:\WINDOWS\system32\drivers\bam.sys 17:46:50.0792 0x2dc8 bam - ok 17:46:50.0792 0x2dc8 BasicDisplay - ok 17:46:50.0792 0x2dc8 BasicRender - ok 17:46:50.0792 0x2dc8 BcastDVRUserService - ok 17:46:50.0824 0x2dc8 bcmfn2 - ok 17:46:50.0855 0x2dc8 [ 255D1EA1F4EDA1B7B28A88581F12A1CE, 5B2D7F2EFA7BB539719890CF2E45568C544DD0EECEC44BBA56CCECB792E8BC44 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 17:46:50.0964 0x2dc8 BDESVC - ok 17:46:50.0980 0x2dc8 [ 9B068DF7B7B3DDF768D06DFD69B49FD0, DC2CD3A70506AEB1BCEB207A9B06657806E72C5432FA605FF9C6F11516F38132 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 17:46:51.0167 0x2dc8 Beep - ok 17:46:51.0183 0x2dc8 BFE - ok 17:46:51.0214 0x2dc8 [ BC1E5F20251E0AFDB955E7D91093B619, 5642E6B6CA6DBC8585834790A70CFF54252A631A9EA06D28F28EF7430FA42BE5 ] bindflt C:\WINDOWS\system32\drivers\bindflt.sys 17:46:51.0230 0x2dc8 bindflt - ok 17:46:51.0261 0x2dc8 [ 97F4C0B9741E06BAC6AD2D93ABCEAED8, 25FD58F4BA2F8EC99241A580352D1EC49924829C61D89353B30CCEEE2CEBADE7 ] BITS C:\WINDOWS\System32\qmgr.dll 17:46:51.0542 0x2dc8 BITS - ok 17:46:51.0573 0x2dc8 [ 30D75769E23CCFBE13DB41FC54243BB1, 4ED018F1DB103D3F354D8EF7DFE797028DBDF22294D355F6D38DF9C6AF61B69E ] BluetoothUserService C:\WINDOWS\System32\Microsoft.Bluetooth.UserService.dll 17:46:51.0605 0x2dc8 BluetoothUserService - ok 17:46:51.0620 0x2dc8 bowser - ok 17:46:51.0620 0x2dc8 BrokerInfrastructure - ok 17:46:51.0636 0x2dc8 [ 3E4BF0145201239E0BBD0A937431C14C, 1DDC27C89B16ADD9346EB30AA9E17330FE0181BE96DC6F06C455493FBDCB1113 ] Browser C:\WINDOWS\System32\browser.dll 17:46:51.0683 0x2dc8 Browser - ok 17:46:51.0714 0x2dc8 [ 85F5808D19879E1803E46405090F29C8, E22E73BCE3B76BFBAC712DF1E5D7D38E189B80D1CE6E9A9AB3C94733CF18F04B ] BTAGService C:\WINDOWS\System32\BTAGService.dll 17:46:51.0745 0x2dc8 BTAGService - ok 17:46:51.0777 0x2dc8 [ 7170961E98A4F47175972D7F096AA7C5, 8D060277A7C1371DBA1CAFBFB23632664FFFFD3FA2B512F811A25C1871E5CE7D ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys 17:46:51.0808 0x2dc8 BtFilter - ok 17:46:51.0823 0x2dc8 [ 2B5EB1BB42AEE7A77B1E9C794DFCEF3D, E94040AAE365CFCAEEC75F38EBDDB2C7F13B41F41D96C33FE3F25078BA21DA13 ] BthA2DP C:\WINDOWS\system32\drivers\BthA2DP.sys 17:46:51.0855 0x2dc8 BthA2DP - ok 17:46:51.0886 0x2dc8 [ 063E91CD2CB1C372459FD6FBC02509E7, 29319290F73D8D87323584D938FBC86400AB37455E7E058A543A77F9BBF4579D ] BthAvctpSvc C:\WINDOWS\System32\BthAvctpSvc.dll 17:46:51.0917 0x2dc8 BthAvctpSvc - ok 17:46:51.0933 0x2dc8 [ E0121734C2492406034FA23E3D394EBD, E855EB12DD35CC47F68C5C6B1622560599C7074E274E510528196D47BDA56960 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 17:46:52.0011 0x2dc8 BthEnum - ok 17:46:52.0011 0x2dc8 [ F56B351A4E2B384911B2BA2A98261F34, A8140A2ABEC704A11776D29894ADD5D1FA9C125567EB6B270694573DB9B0E30E ] BthHFAud C:\WINDOWS\system32\DRIVERS\BthHfAud.sys 17:46:52.0167 0x2dc8 BthHFAud - ok 17:46:52.0183 0x2dc8 [ 02FEC31842DD153D966AC227B6DDF8BB, 90EEEA049212E5FE8EFA2ACED45DFB6ABAFEA6D40FB4E1E2681F65A417237163 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 17:46:52.0198 0x2dc8 BthHFEnum - ok 17:46:52.0214 0x2dc8 [ 8EE632BFE4BABD4E7A299AF54476F9A5, 836675F295A033C0239DCF86D90985443A60D5A1F38B668CA82A30BDFD983352 ] BthLEEnum C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys 17:46:52.0261 0x2dc8 BthLEEnum - ok 17:46:52.0292 0x2dc8 [ A0EC1D5C937995A2C5F1179538A8A6B4, CBFBDF2D8305BD72FFF64AAAB31EB5D5B8ADE537C35AC63DC3F6ADCBF96B3659 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 17:46:52.0339 0x2dc8 BTHMODEM - ok 17:46:52.0355 0x2dc8 [ B10E0CC936462BBA7BC659C0927617A0, B4F2A318384D176D0ACF26372756CE097F34EED59FBB023E7DB8F95D8F73F69A ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 17:46:52.0370 0x2dc8 BthPan - ok 17:46:52.0386 0x2dc8 [ EF105DBEB81F14EBDBA5F7977AD8FA91, A4D20038B72361CD95446854F2E538314C4C8B5EA4618AC7B18A43D8AF777A34 ] BTHPORT C:\WINDOWS\system32\DRIVERS\BTHport.sys 17:46:52.0448 0x2dc8 BTHPORT - ok 17:46:52.0464 0x2dc8 [ 1EB49C9E2716D4924460B2FAA295E313, B96D39479BFD2ABCD3A3BB8897EAD7C5A03DFFD7266E82A1FBA0E7FEAF73E4B8 ] bthserv C:\WINDOWS\system32\bthserv.dll 17:46:52.0480 0x2dc8 bthserv - ok 17:46:52.0495 0x2dc8 [ 0D5ECDF2601312025811F6AC413F851A, B7E99CF02C6B511BD643E7F8BB59E983D8B65073D9B55ED44457EDC2BBBBC419 ] BTHUSB C:\WINDOWS\system32\DRIVERS\BTHUSB.sys 17:46:52.0526 0x2dc8 BTHUSB - ok 17:46:52.0526 0x2dc8 bttflt - ok 17:46:52.0526 0x2dc8 buttonconverter - ok 17:46:52.0526 0x2dc8 [ 9983FF8D9834F2E67787F4BDC42A8E36, 85260F4A657D657ACD394339DFDDE814AD6BCA65712EAD943833BE7AB0937C8D ] CAD C:\WINDOWS\System32\drivers\CAD.sys 17:46:52.0542 0x2dc8 CAD - ok 17:46:52.0542 0x2dc8 camsvc - ok 17:46:52.0542 0x2dc8 CapImg - ok 17:46:52.0636 0x2dc8 [ 8BF2DAB8C726ED91BBE3F3FFA774CB2C, 317379A43D85DE46A8CAB10716EDD22228D624B79A39377A4411D93880517F9B ] CCDMonitorService C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe 17:46:52.0698 0x2dc8 CCDMonitorService - ok 17:46:52.0714 0x2dc8 cdfs - ok 17:46:52.0730 0x2dc8 [ 0942C87ED45B1E227032AD154105F79B, A0A40589B9C399061C1C46247609CA514DCD21DDF1E7FCEE19F0CE75D0FC7996 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 17:46:52.0761 0x2dc8 CDPSvc - ok 17:46:52.0792 0x2dc8 [ 9FBF5849A6F51E3B3F8AF2A4171648DA, 7422BC5C87075F5008E6364C8AFAA794AB17CA2DC238DC00F377B942B6FCDC11 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll 17:46:52.0823 0x2dc8 CDPUserSvc - ok 17:46:52.0855 0x2dc8 cdrom - ok 17:46:52.0870 0x2dc8 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 17:46:52.0886 0x2dc8 CertPropSvc - ok 17:46:52.0886 0x2dc8 [ 5E1BCF6E4859E66CE5A0246DF8827A16, 21DC9CFA0EF40B6D45F4FC2DF4AE7D911D53CB3AA462BE8CE71D5421EF39D3CB ] chip1click C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe 17:46:52.0901 0x2dc8 chip1click - detected UnsignedFile.Multi.Generic ( 1 ) 17:46:52.0980 0x2dc8 Detect skipped due to KSN trusted 17:46:52.0980 0x2dc8 chip1click - ok 17:46:52.0995 0x2dc8 cht4iscsi - ok 17:46:52.0995 0x2dc8 cht4vbd - ok 17:46:53.0026 0x2dc8 [ 3AA86DA04A561E8162C2DBBF92D12074, 9CB67299BEC25F2B357DDAA5A36B3464193B8BDAB4DCFAE0CD4315911027E409 ] circlass C:\WINDOWS\System32\drivers\circlass.sys 17:46:53.0058 0x2dc8 circlass - ok 17:46:53.0073 0x2dc8 [ 5619FC2A3AE4F43D4B20D95472ED948E, A5D530FB6AC493FC01489A1D32C311F7D28F0D7B49C950E71F4ADF4FBA302689 ] CldFlt C:\WINDOWS\system32\drivers\cldflt.sys 17:46:53.0089 0x2dc8 CldFlt - ok 17:46:53.0105 0x2dc8 CLFS - ok 17:46:53.0355 0x2dc8 [ 64536C6809869A967A7390CF2B588E05, AF1C8116014C108A8393A767FBA66CBF5E9AA836DC599D00B8F794460548254F ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 17:46:53.0495 0x2dc8 ClickToRunSvc - ok 17:46:53.0526 0x2dc8 [ 5BD85187D6A6A37D2A4563F33D7A76E4, 6FF434BE93259229E0EA64EC1B6E09B1B814C2A467FC2859B94C79549E2F114C ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 17:46:53.0558 0x2dc8 ClipSVC - ok 17:46:53.0558 0x2dc8 CmBatt - ok 17:46:53.0573 0x2dc8 CNG - ok 17:46:53.0589 0x2dc8 [ 037DCC7A71938729CB12E8174E03031C, 1BA2F74F639BF8D5BB38AA658A6D847BAE8D85CF72C4AD5F13BBA1D53145789F ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 17:46:53.0605 0x2dc8 cnghwassist - ok 17:46:53.0636 0x2dc8 [ E40C99A3E0FFF49687F2187BF3E3050D, 30723EC5767C3F6FAA3CF299440B71B5973F890FB54B9737B96FA0359E7D90FA ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys 17:46:53.0651 0x2dc8 CompositeBus - ok 17:46:53.0651 0x2dc8 COMSysApp - ok 17:46:53.0651 0x2dc8 condrv - ok 17:46:53.0651 0x2dc8 CoreMessagingRegistrar - ok 17:46:53.0698 0x2dc8 [ 15419926E1BB686C6953394D3B73AEDE, 8DE4BF51B29AA040D008F9E1F313064E6D14CC2BDC6C8D9ABA4E6B9FAB293EE3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 17:46:53.0823 0x2dc8 cphs - ok 17:46:53.0839 0x2dc8 [ 5212E0957468D3F94D90FA7A0F06B58F, 955DAC77A0148E9F9ED744F5D341CB9C9118261E52FE622AC6213965F2BC4CAD ] cpuz137 C:\Program Files (x86)\CPUID\PC Wizard 2015\pcwiz_x64.sys 17:46:53.0855 0x2dc8 cpuz137 - ok 17:46:53.0855 0x2dc8 CryptSvc - ok 17:46:53.0870 0x2dc8 [ 8711386E9B04357F8F58166760759F3A, 8912CFD220645002C9D3F9E49717D8B0B98704380B45F53D45D5674537B496FF ] dam C:\WINDOWS\system32\drivers\dam.sys 17:46:53.0886 0x2dc8 dam - ok 17:46:53.0886 0x2dc8 DcomLaunch - ok 17:46:53.0886 0x2dc8 defragsvc - ok 17:46:53.0901 0x2dc8 [ 8DF502E8116C625387DD789936D7A0C2, D42661E068F401199FAEA012C200EEF02C1409A09DACD30E6B08E3FBE4149BFA ] DeviceAssociationService C:\WINDOWS\system32\das.dll 17:46:53.0948 0x2dc8 DeviceAssociationService - ok 17:46:53.0948 0x2dc8 DeviceInstall - ok 17:46:54.0151 0x2dc8 [ 38D6ED38A46F815C24C5656E8A5AB083, 730DD6D85771A60E5C089BF5D810E3AEA335BF7DD14FD72924A1A4FCF021A59D ] DevicePickerUserSvc C:\WINDOWS\System32\Windows.Devices.Picker.dll 17:46:54.0308 0x2dc8 DevicePickerUserSvc - ok 17:46:54.0355 0x2dc8 [ 372BD821867225F32DE87A6B3FEC8A2E, 20389A1861B5A451EE3383F68FC59B3C9A75D3123B2DF1669CBB5CC37A0128B0 ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll 17:46:54.0417 0x2dc8 DevicesFlowUserSvc - ok 17:46:54.0433 0x2dc8 [ C48C4D6B8D9C53F0399DEDA402A6FAE5, 25FBE2A51DCF7DB95AD2707502F8A9661B94FC61DFC405DA5BF23BED1BA123D2 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 17:46:54.0495 0x2dc8 DevQueryBroker - ok 17:46:54.0495 0x2dc8 Dfsc - ok 17:46:54.0511 0x2dc8 [ 5F78930AAB3900102EA8ACDD38F97324, 49CAE29CC7B1B846BDE603B1A411833162ACC1A9D1608BFDF67C2EA3A0EE0F85 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys 17:46:54.0542 0x2dc8 dg_ssudbus - ok 17:46:54.0542 0x2dc8 Dhcp - ok 17:46:54.0542 0x2dc8 diagnosticshub.standardcollector.service - ok 17:46:54.0573 0x2dc8 [ 6EC6BB6EF31C85FD72D14BE4A1BD1B03, E027124AD492ED22F0D604030CB0E2C3778331879FC73A614644FA8C8606ADD3 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll 17:46:54.0651 0x2dc8 diagsvc - ok 17:46:54.0651 0x2dc8 DiagTrack - ok 17:46:54.0651 0x2dc8 Disk - ok 17:46:54.0683 0x2dc8 [ 89FC056F9CEFB85FC7159AA063904AFF, 6B6F86F87C48EE92F616D4EEE624C9711D0606FD651F3B1D4DD5EF3767B76750 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 17:46:54.0729 0x2dc8 DmEnrollmentSvc - ok 17:46:54.0729 0x2dc8 dmvsc - ok 17:46:54.0729 0x2dc8 [ 8B3601E34BD1D693598F968D70361C37, 897C5AEB5ED6AC9DAB2E8E638A42FF588AF3A94EE4C731E97DFAB89BD3B658BC ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 17:46:54.0761 0x2dc8 dmwappushservice - ok 17:46:54.0761 0x2dc8 Dnscache - ok 17:46:54.0808 0x2dc8 [ C79E79CD4DE45EC0EC0ECB5C76D6CB11, C1AFCA79A104EDF5C59C3E6A113467C7F73E84AACEDE97A22BCBA5B25563E163 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 17:46:54.0870 0x2dc8 dot3svc - ok 17:46:54.0886 0x2dc8 [ 5B1EF28DE7302A6BD5DF8459E2C598EF, F2292B8ED8FBFFA681942D5566BF1932D1E9B4F44C2D13329B60E5A8B9386CC9 ] DPS C:\WINDOWS\system32\dps.dll 17:46:54.0917 0x2dc8 DPS - ok 17:46:54.0917 0x2dc8 drmkaud - ok 17:46:54.0933 0x2dc8 [ 5242DC5849014BCFBB3147B76A899783, 759542B42D9DCC224D9CBD19A0C6B8939417F2F08B547BE07FFA3356918C1ED7 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 17:46:54.0964 0x2dc8 DsmSvc - ok 17:46:54.0964 0x2dc8 DsSvc - ok 17:46:54.0995 0x2dc8 [ 974BC06C0EC847EA4DC8D9002D394FEB, 4952FEADD7A3EF541FD537EBBCD56ED573D712755798C42428E78267E50BAB34 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 17:46:55.0026 0x2dc8 DusmSvc - ok 17:46:55.0026 0x2dc8 DXGKrnl - ok 17:46:55.0026 0x2dc8 Eaphost - ok 17:46:55.0026 0x2dc8 ebdrv - ok 17:46:55.0042 0x2dc8 EFS - ok 17:46:55.0042 0x2dc8 EhStorClass - ok 17:46:55.0042 0x2dc8 EhStorTcgDrv - ok 17:46:55.0073 0x2dc8 [ 2F47D3915839372D238ACF00FCEBD90E, F1C6CFB63FAC26F85A7D2A38DAC1D7F4D22007A7251755BD7392FF67ECD2F3F7 ] ElfoService C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe 17:46:55.0354 0x2dc8 ElfoService - ok 17:46:55.0370 0x2dc8 [ 80D5BD4804C587B21A121566549A63FB, 9BDC1DEB8805E06851F2E2A8B8762265FDC6B12B873D391BFCB8300BDF425B36 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 17:46:55.0401 0x2dc8 embeddedmode - ok 17:46:55.0417 0x2dc8 [ 8BDB4EB138A93B9C4242D5ADC068899A, 528C0D16CE5D9A69EA75C43DC53D14F7BD2D8BB0B0B0F32BB1F36AC6659C6A27 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 17:46:55.0464 0x2dc8 EntAppSvc - ok 17:46:55.0542 0x2dc8 [ B17FB7318D7CB8E315309F7484461369, 5D9E6464EDF3D8DA6D9CB2649E923B9DB1B0AA4EBF48A7E9CD64F8C9EAF9E56F ] ePowerSvc C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe 17:46:55.0589 0x2dc8 ePowerSvc - ok 17:46:55.0589 0x2dc8 ErrDev - ok 17:46:55.0620 0x2dc8 [ 9B538A1E44E1D61FA80E80EA75A085FA, 6431BBC533895BD466879C407B9BE7EB50345D666FEE69CAB0813283F07DBE82 ] EventSystem C:\WINDOWS\system32\es.dll 17:46:55.0651 0x2dc8 EventSystem - ok 17:46:55.0651 0x2dc8 exfat - ok 17:46:55.0667 0x2dc8 fastfat - ok 17:46:55.0682 0x2dc8 [ BBD6407DA3DA4FC718710587E253C7BF, 8C9995A86EF9FC1FB47ADA1367A67A9829E0E3CE191D11E0AFB0F85E325D48DC ] Fax C:\WINDOWS\system32\fxssvc.exe 17:46:55.0761 0x2dc8 Fax - ok 17:46:55.0761 0x2dc8 fdc - ok 17:46:55.0761 0x2dc8 [ A2037943CCC079307A383C5543607CEF, 2FAC5F76526A8E4D7D7FAE80F9A0AF31D37DD12FF597769C87912B973C339BF4 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 17:46:55.0807 0x2dc8 fdPHost - ok 17:46:55.0807 0x2dc8 [ C11A1A9CF331B7AA2F04974EE262EC07, AA1C79FCCDEC3C7236B7BE73E6888D7DD5642EB16E13B4633C98EE34CB72A644 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 17:46:55.0839 0x2dc8 FDResPub - ok 17:46:55.0854 0x2dc8 [ 71CECDA2DCF81E0AD8C30440C77966E2, E26313CD895579A9F3380A648E6FC271EFED0E82C0FCFB287049C5C2D0CC35A9 ] fhsvc C:\WINDOWS\system32\fhsvc.dll 17:46:55.0979 0x2dc8 fhsvc - ok 17:46:55.0995 0x2dc8 [ 9BC7FE262AF52B341048234809AA7D91, DF95BBEB59821357C69797AC659380C9F27C11B8A60A599C9A2C5623B7CBB6DB ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 17:46:56.0042 0x2dc8 FileCrypt - ok 17:46:56.0042 0x2dc8 FileInfo - ok 17:46:56.0042 0x2dc8 Filetrace - ok 17:46:56.0042 0x2dc8 flpydisk - ok 17:46:56.0042 0x2dc8 FltMgr - ok 17:46:56.0057 0x2dc8 FontCache - ok 17:46:56.0057 0x2dc8 FontCache3.0.0.0 - ok 17:46:56.0073 0x2dc8 FrameServer - ok 17:46:56.0073 0x2dc8 FsDepends - ok 17:46:56.0073 0x2dc8 Fs_Rec - ok 17:46:56.0073 0x2dc8 fvevol - ok 17:46:56.0089 0x2dc8 [ 71DBED7FB264DB60341BC796EC2E8135, DBD29794A45AEFB16A5765D03962B311CB061D1EB8A281C5F34DABF39C66A3B2 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 17:46:56.0167 0x2dc8 gencounter - ok 17:46:56.0183 0x2dc8 genericusbfn - ok 17:46:56.0183 0x2dc8 GPIOClx0101 - ok 17:46:56.0183 0x2dc8 gpsvc - ok 17:46:56.0198 0x2dc8 [ 508614CAC7BF8AEE4FB9002A413919B1, F60DE0236B0453FC99473A09A7FAC1140831E581C08F3F5C440F5EFCD30943AB ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 17:46:56.0214 0x2dc8 GpuEnergyDrv - ok 17:46:56.0214 0x2dc8 [ 248739BB0F3A1156A2C0AF51F39A9EA2, A94C43658BCCC88C2D229F40F5C03CA5839A2EAFD57CA088E3E85EB9264CCA3E ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll 17:46:56.0229 0x2dc8 GraphicsPerfSvc - ok 17:46:56.0261 0x2dc8 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 17:46:56.0261 0x2dc8 gupdate - ok 17:46:56.0276 0x2dc8 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 17:46:56.0276 0x2dc8 gupdatem - ok 17:46:56.0276 0x2dc8 HDAudBus - ok 17:46:56.0276 0x2dc8 HidBatt - ok 17:46:56.0308 0x2dc8 [ 33346BD26BB0AE4361DF1ED00D2876CF, 1777169606573646F7E7D54E01E421F62479DF57FAE86005B1EEFDC06F4898B7 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 17:46:56.0339 0x2dc8 HidBth - ok 17:46:56.0339 0x2dc8 hidi2c - ok 17:46:56.0339 0x2dc8 hidinterrupt - ok 17:46:56.0354 0x2dc8 [ 1553DF41F4EE4F60B4BEEEC62264BE71, 46AE8357E8038D35ADB82A51ED421293D7AB18C926C713F19149B97400D4C65E ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 17:46:56.0354 0x2dc8 HidIr - ok 17:46:56.0370 0x2dc8 hidserv - ok 17:46:56.0370 0x2dc8 HidUsb - ok 17:46:56.0370 0x2dc8 HpSAMD - ok 17:46:56.0370 0x2dc8 HTTP - ok 17:46:56.0401 0x2dc8 [ 9E1F3BA540DB9F4942A3F50A92E5754F, 3FF53B60DC52886D6F2EC7F9D8C12009A4BECE5A046D827BC8C941E7401ED000 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 17:46:56.0401 0x2dc8 hvcrash - ok 17:46:56.0433 0x2dc8 [ 64A94654E5703D2E8830AA2500D8F0A4, A1E3C910DFF1485E412F01076A11B9441161224C0F08A9067082A9FD8A5D8E5B ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 17:46:56.0448 0x2dc8 HvHost - ok 17:46:56.0479 0x2dc8 [ 621042C19113527CF8FA89F3454576BF, AB072C44B9BA8CD3AFE0DA33E42A69210AE87F4314FA3A0DF984DDF12516F063 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys 17:46:56.0479 0x2dc8 hvservice - ok 17:46:56.0495 0x2dc8 [ B149905CD7451160B6BFA2191A3F6182, A706E4F12963A20F9767D8730973282B5830D97A087ADA8CA9B7D219513C127F ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 17:46:56.0526 0x2dc8 HwNClx0101 - ok 17:46:56.0526 0x2dc8 hwpolicy - ok 17:46:56.0526 0x2dc8 hyperkbd - ok 17:46:56.0526 0x2dc8 HyperVideo - ok 17:46:56.0542 0x2dc8 i8042prt - ok 17:46:56.0542 0x2dc8 iagpio - ok 17:46:56.0542 0x2dc8 iai2c - ok 17:46:56.0542 0x2dc8 iaLPSS2i_GPIO2 - ok 17:46:56.0542 0x2dc8 iaLPSS2i_GPIO2_BXT_P - ok 17:46:56.0542 0x2dc8 iaLPSS2i_I2C - ok 17:46:56.0542 0x2dc8 iaLPSS2i_I2C_BXT_P - ok 17:46:56.0558 0x2dc8 iaLPSSi_GPIO - ok 17:46:56.0558 0x2dc8 iaLPSSi_I2C - ok 17:46:56.0558 0x2dc8 iaStorAVC - ok 17:46:56.0558 0x2dc8 iaStorV - ok 17:46:56.0558 0x2dc8 ibbus - ok 17:46:56.0589 0x2dc8 [ F8CFDD8FED56E1261367A81A731BC1C0, 408187B2E7B403B47AF0D4BF089439D9BA3B3090A430983F77A55DEF2AB381DB ] icssvc C:\WINDOWS\System32\tetheringservice.dll 17:46:56.0620 0x2dc8 icssvc - ok 17:46:56.0792 0x2dc8 [ E82A13D1EE63A24C8ACE78BF19683884, 4D98E915BF86B4BD526355B51142FE318CA1BCFDB74C74CB6F2FC339DC847669 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 17:46:56.0995 0x2dc8 igfx - ok 17:46:57.0011 0x2dc8 [ 4F09222B004191568EE1928021C5C6D4, E86098F8B75CD2B1A5F5467EA4387CE3DFF49B1240DF9F1D9B0A06A91A295772 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 17:46:57.0026 0x2dc8 igfxCUIService2.0.0.0 - ok 17:46:57.0042 0x2dc8 [ EDCCC8C13B1EB882F77BA0ABB84566E7, DB299C1D2CFC197CF2FE69358F5EEDE94DCC4C919AF5D2CDFFF0DE476612C988 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 17:46:57.0057 0x2dc8 IJPLMSVC - ok 17:46:57.0057 0x2dc8 IKEEXT - ok 17:46:57.0073 0x2dc8 [ AA38C19A3D65E8228D822EB18037E19D, 54943929E398C67A5A9C72EA65F0FD7A06BB43F03A2291CAEA29443CD10C5169 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys 17:46:57.0089 0x2dc8 IndirectKmd - ok 17:46:57.0089 0x2dc8 InstallService - ok 17:46:57.0214 0x2dc8 [ D172E06EFE08DF148155A59DB716C1B6, F059B0B37C5E944D70626E9F029BC6311029E0A9D778C9C75DDDDC59A5AF1605 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 17:46:57.0323 0x2dc8 IntcAzAudAddService - ok 17:46:57.0354 0x2dc8 [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 17:46:57.0370 0x2dc8 IntcDAud - ok 17:46:57.0401 0x2dc8 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 17:46:57.0886 0x2dc8 Intel(R) Capability Licensing Service TCP IP Interface - ok 17:46:57.0917 0x2dc8 [ 8213094EA736A9C575AB0E22AD09B0BA, 12670A466B5AA37283BD4CB481D000DE3AE2A8D1BD159F67A41703A6FE5675EC ] Intel(R) Security Assist C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe 17:46:58.0073 0x2dc8 Intel(R) Security Assist - detected UnsignedFile.Multi.Generic ( 1 ) 17:46:58.0136 0x2dc8 Detect skipped due to KSN trusted 17:46:58.0136 0x2dc8 Intel(R) Security Assist - ok 17:46:58.0136 0x2dc8 intelide - ok 17:46:58.0151 0x2dc8 [ E6CC7C1E7CEDC81D6B15BF2CF4C99109, 1B181F55CD2E500468FE07C9BA6F20B207FA4B601C4971D1551B80A480D42EBD ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 17:46:58.0167 0x2dc8 intelpep - ok 17:46:58.0167 0x2dc8 intelppm - ok 17:46:58.0182 0x2dc8 [ 917931A6116F03DB3CA56CFCE8634667, 27B661B6143F4AE94BF28DE1133001F95A451C18804F6DFED1D7D1F36B5E5350 ] iorate C:\WINDOWS\system32\drivers\iorate.sys 17:46:58.0198 0x2dc8 iorate - ok 17:46:58.0229 0x2dc8 [ FB72A49FAD5C343C8C38948F92D87BBF, 3947D9393D6F4F104D2D07D5FBA61041A8D6006BE2497F2A6337462F8B04A124 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 17:46:58.0292 0x2dc8 IpFilterDriver - ok 17:46:58.0323 0x2dc8 [ 9064A49C03F1CED42EAC2B4636C87192, CF388E05EA782BC0645FD0B42A41C9334C074BE6D7C193FA4F9819905CBCEA9C ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 17:46:58.0354 0x2dc8 iphlpsvc - ok 17:46:58.0370 0x2dc8 IPMIDRV - ok 17:46:58.0401 0x2dc8 [ 7408B83959A4B8271EF67FD06A6B366B, C22DDB76AC3351A50B889AD7D2756EF8612450AC8EE72C88A1044691A0071BE5 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 17:46:58.0417 0x2dc8 IPNAT - ok 17:46:58.0432 0x2dc8 [ 7BEA2228C81FB6E1EADDD54D615B4C7E, 8640865C98F951B1B8D99E841D9A3FDC6E0251AFAC6B02F815DC409627A50112 ] IPT C:\WINDOWS\System32\drivers\ipt.sys 17:46:58.0479 0x2dc8 IPT - ok 17:46:58.0479 0x2dc8 [ AD0574F12AA812340BD39071FD30AD1E, 765F1EDFEDEA1F2728108D7A1187A468F529A883886006F74DB9EAD0BFE7B1B6 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 17:46:58.0511 0x2dc8 IpxlatCfgSvc - ok 17:46:58.0526 0x2dc8 [ 030AE3773151CFA728C67E38416FAD8D, 167E698035F2F07E822B430B31F02FABF3997BAC93039786747053344CE6E6D3 ] irda C:\WINDOWS\system32\drivers\irda.sys 17:46:58.0542 0x2dc8 irda - ok 17:46:58.0557 0x2dc8 [ 79D02DC54AB4F85D2C13A728A0E36193, 3B6BA678ED269195D506D29EBD9E070603F02AC0FAA92364E7C553B8856C3EDB ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 17:46:58.0557 0x2dc8 IRENUM - ok 17:46:58.0573 0x2dc8 [ 6ADE9DCAF71DCD888320CA47DB8B05EF, 6FA1EBB3D025546AAD14D968DF7CABD3002598F2F561CCC1D4F07A9B0322DE02 ] irmon C:\WINDOWS\System32\irmon.dll 17:46:58.0589 0x2dc8 irmon - ok 17:46:58.0604 0x2dc8 [ 1DFC3CCA51785254C5604238BB1A5467, 31451A90A91AEE14C6B24F84CB9816E5C77179D411B8B3E8547F538235BEEFB0 ] isaHelperSvc C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 17:46:58.0651 0x2dc8 isaHelperSvc - detected UnsignedFile.Multi.Generic ( 1 ) 17:46:58.0714 0x2dc8 Detect skipped due to KSN trusted 17:46:58.0714 0x2dc8 isaHelperSvc - ok 17:46:58.0729 0x2dc8 isapnp - ok 17:46:58.0729 0x2dc8 iScsiPrt - ok 17:46:58.0729 0x2dc8 ItSas35i - ok 17:46:58.0761 0x2dc8 [ 832F7C2747F04D1294AEF46A2CE5B63B, ABAECEFCAD9B526C3D98681A874966B924EB99AF61CDFAC6D5E767BE2FAF6CFA ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 17:46:58.0761 0x2dc8 jhi_service - ok 17:46:58.0776 0x2dc8 k57nd60a - ok 17:46:58.0776 0x2dc8 kbdclass - ok 17:46:58.0776 0x2dc8 kbdhid - ok 17:46:58.0776 0x2dc8 kdnic - ok 17:46:58.0776 0x2dc8 KeyIso - ok 17:46:58.0776 0x2dc8 KSecDD - ok 17:46:58.0792 0x2dc8 KSecPkg - ok 17:46:58.0792 0x2dc8 ksthunk - ok 17:46:58.0807 0x2dc8 [ C4151271434A490707B4FD4E6AAE9EED, DDB809D002039645CDED08322B9CDCA04C483A119380098FF9EBA998A1A3811D ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 17:46:58.0839 0x2dc8 KtmRm - ok 17:46:58.0839 0x2dc8 LanmanServer - ok 17:46:58.0839 0x2dc8 LanmanWorkstation - ok 17:46:58.0854 0x2dc8 [ C2A49E8EEE7C3D06ECA80847A42F65D5, E1559EF96E6F2146E4AC0BE46CBFF5FA29829812A64A6F09803C00E3E0AAB1F0 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 17:46:58.0886 0x2dc8 lfsvc - ok 17:46:58.0886 0x2dc8 [ DB8F10ED986BFE0A5B663A1D067F2CCC, 88EE540F545C8838E9F855094A2A4AAC096BD24F77103E06464CCD77C3FCFFFD ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 17:46:58.0917 0x2dc8 LicenseManager - ok 17:46:58.0932 0x2dc8 [ 3CF979AFF0196DF3DF5E54DFC049EB1F, FEA82EF2AA4222171E80548EB00A4F0FBD27363B84AA9E6B8F82147C568BADEE ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 17:46:58.0932 0x2dc8 lltdio - ok 17:46:58.0964 0x2dc8 [ D6DD748EAC3BC540CFE65C73FE20C099, 8A79E1F1834D949D027B4D3471297ADFB539B9282DE5DF5FDBE60AE171F3CFFC ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 17:46:58.0995 0x2dc8 lltdsvc - ok 17:46:59.0011 0x2dc8 [ 595FBB84D5E62AE8629ED0F6179818A7, 6BF747A759425BDC1080888B6D9C4611B55020A64B67AC1486DB8C4E70B16A9D ] LMDriver C:\WINDOWS\System32\drivers\LMDriver.sys 17:46:59.0011 0x2dc8 LMDriver - ok 17:46:59.0011 0x2dc8 lmhosts - ok 17:46:59.0026 0x2dc8 [ 76BC5705E1F838E32451ECF14518B1C8, 3F664723DCF6C07BDB3287184175F60DD7B4A85B0480800ECBE065730E2DA5F5 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 17:46:59.0042 0x2dc8 LMS - ok 17:46:59.0057 0x2dc8 LSI_SAS - ok 17:46:59.0057 0x2dc8 LSI_SAS2i - ok 17:46:59.0057 0x2dc8 LSI_SAS3i - ok 17:46:59.0057 0x2dc8 LSI_SSS - ok 17:46:59.0057 0x2dc8 LSM - ok 17:46:59.0073 0x2dc8 [ E86400D7B6E095E89CF63667D94D3F50, 4E30374B82FB1D8904B9803109C4557C565023FA94C7AE61BB2ADAAACAE0E179 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 17:46:59.0104 0x2dc8 luafv - ok 17:46:59.0120 0x2dc8 [ 07514F5635999D7DDB5F3A62B5C5AEB3, D3717437D14C36873E2D0C1AA65F29EB9A5DB1DE60A7EE86A093FD126B7EBC05 ] LxpSvc C:\WINDOWS\System32\LanguageOverlayServer.dll 17:46:59.0136 0x2dc8 LxpSvc - ok 17:46:59.0136 0x2dc8 [ 1C1FF36E51F73989FB4DD2DBAFAE11EC, B5C0B169BFEF5FD769745F924B3F30C960A555F8B0C0C7315B273435D9F246D5 ] MapsBroker C:\WINDOWS\System32\moshost.dll 17:46:59.0167 0x2dc8 MapsBroker - ok 17:46:59.0167 0x2dc8 mausbhost - ok 17:46:59.0167 0x2dc8 mausbip - ok 17:46:59.0307 0x2dc8 [ F7265B7490428499F2FE409FA9247866, 43A406C74689B72020E4669B45F19D377A5FF3EFE79B03AF58C2679D14405E9D ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe 17:46:59.0417 0x2dc8 MBAMService - ok 17:46:59.0432 0x2dc8 [ 351BF8F77B0A15A7B5A2AE098C52A387, A84330DF5C4F0E5D6251D311B5DC78722D7724E87DAF5DE5A11EB73BB3502E26 ] MBAMSwissArmy C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 17:46:59.0448 0x2dc8 MBAMSwissArmy - ok 17:46:59.0448 0x2dc8 megasas - ok 17:46:59.0448 0x2dc8 megasas2i - ok 17:46:59.0448 0x2dc8 megasas35i - ok 17:46:59.0464 0x2dc8 megasr - ok 17:46:59.0479 0x2dc8 [ 0CAEA11CEC2EEC7511385A467FD464D1, C84DD82374D551C90CCB274AB7F8CE4A503042CC8D1337A1F6498B2538E1793A ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 17:46:59.0479 0x2dc8 MEIx64 - ok 17:46:59.0495 0x2dc8 [ 69259AFDF347B5F4AF06E900C4A1F62E, 167FF155F3E1B362A5D5FDB010A5F539F5E13CAD7E64E6F105CC770DA3639EEB ] MessagingService C:\WINDOWS\System32\MessagingService.dll 17:46:59.0511 0x2dc8 MessagingService - ok 17:46:59.0557 0x2dc8 [ 1ECAB1D7A88F953397D09ECFCF789B91, 42AFE658FABAA6816700886B2F0697A692DE6B5DB0B90B361E099BF79B44E389 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.AvrcpTransport.sys 17:46:59.0573 0x2dc8 Microsoft_Bluetooth_AvrcpTransport - ok 17:46:59.0573 0x2dc8 mlx4_bus - ok 17:46:59.0589 0x2dc8 MMCSS - ok 17:46:59.0604 0x2dc8 [ CA25F2D78FDD0D36E3F3071B4B317BD4, 21B5902EF802FAFA7DC6FD737CE9888C74526983FDCE31CDFAB11630E1476FD1 ] Modem C:\WINDOWS\system32\drivers\modem.sys 17:46:59.0620 0x2dc8 Modem - ok 17:46:59.0620 0x2dc8 [ 13142B3B30F633F407D5256B2FFCCEF0, 0A8DD229FD752E8B7E1D11E1A066BCF8B3E2023068AD731FF23ACBF4D182D23D ] monitor C:\WINDOWS\System32\drivers\monitor.sys 17:46:59.0667 0x2dc8 monitor - ok 17:46:59.0667 0x2dc8 mouclass - ok 17:46:59.0667 0x2dc8 mouhid - ok 17:46:59.0682 0x2dc8 mountmgr - ok 17:46:59.0698 0x2dc8 [ A28E7138B050A29AEFE1C4E91D48B9AE, F06B5DCC73BFB547C2DAFE4BE76D63B069F84FE6B0A37B4532625F125C6910BA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 17:46:59.0714 0x2dc8 MozillaMaintenance - ok 17:46:59.0714 0x2dc8 mpsdrv - ok 17:46:59.0714 0x2dc8 mpssvc - ok 17:46:59.0714 0x2dc8 MRxDAV - ok 17:46:59.0729 0x2dc8 mrxsmb - ok 17:46:59.0729 0x2dc8 mrxsmb10 - ok 17:46:59.0729 0x2dc8 mrxsmb20 - ok 17:46:59.0745 0x2dc8 [ F14DE177087F9E990EDE95ACE1F94662, E0B8C7DAF8C13CAD08B974D681981038E33ED8871717C550477EDCFD05A3B96D ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 17:46:59.0776 0x2dc8 MsBridge - ok 17:46:59.0792 0x2dc8 [ 9A94F32C1DC90A7E5A35D0F820A8FB1D, 4CAFCE804D9135BE9CBF80307D570F24E4A102890DAB504E3DEFF3B335C9B80E ] MSDTC C:\WINDOWS\System32\msdtc.exe 17:46:59.0807 0x2dc8 MSDTC - ok 17:46:59.0823 0x2dc8 Msfs - ok 17:46:59.0839 0x2dc8 [ 5A5ABA987943317300A4E55A5C5EB8C4, 9AC863F537BBB2D776C3F240B510DEE94BD84A7675C695D1270770609E77F65B ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 17:46:59.0839 0x2dc8 msgpiowin32 - ok 17:46:59.0839 0x2dc8 mshidkmdf - ok 17:46:59.0854 0x2dc8 [ E12A703CE10B068727499276340D5296, 67F513A83D896DBF014D7446D66F1A1F9F0D03ADB23B57FD1A3CCC880ED50299 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 17:46:59.0870 0x2dc8 mshidumdf - ok 17:46:59.0870 0x2dc8 msisadrv - ok 17:46:59.0870 0x2dc8 MSiSCSI - ok 17:46:59.0885 0x2dc8 msiserver - ok 17:46:59.0885 0x2dc8 MSKSSRV - ok 17:46:59.0901 0x2dc8 [ AECFFBE104D428E8A74BCABF5B3B9912, EA94A7FA1F9BE357311E411293F4D3CC8F80ED1523BFE362DA56A3C2AC65DF58 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 17:46:59.0948 0x2dc8 MsLldp - ok 17:46:59.0948 0x2dc8 MSPCLOCK - ok 17:46:59.0964 0x2dc8 MSPQM - ok 17:46:59.0964 0x2dc8 MsRPC - ok 17:46:59.0964 0x2dc8 mssmbios - ok 17:46:59.0964 0x2dc8 MSTEE - ok 17:46:59.0964 0x2dc8 MTConfig - ok 17:46:59.0979 0x2dc8 Mup - ok 17:46:59.0979 0x2dc8 mvumis - ok 17:46:59.0979 0x2dc8 NativeWifiP - ok 17:47:00.0011 0x2dc8 [ B281FAC1C60FE21ED3F635ECF673A981, 6641CCBD38AEF3FA5D9EDD24F01AAB6509AD6D3927371CD7938C04B3BBC92FD1 ] NaturalAuthentication C:\WINDOWS\System32\NaturalAuth.dll 17:47:00.0073 0x2dc8 NaturalAuthentication - ok 17:47:00.0089 0x2dc8 [ 6FEC83EDC4A3D1E99039CA1D96AD720D, F6DB011FBED10EAF8CCDC9EDDCB47F728B6B17A6A3CA5D6DB5DE50EEFE7DDD4D ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 17:47:00.0167 0x2dc8 NcaSvc - ok 17:47:00.0182 0x2dc8 [ C3D3E2DFBD52C48EA787604F49060A5C, 0F5E3C9E63F6421398154EF942182FE67CCCCE6DE25B1EE2A30A8E6E3C17145A ] NcbService C:\WINDOWS\System32\ncbservice.dll 17:47:00.0214 0x2dc8 NcbService - ok 17:47:00.0245 0x2dc8 [ 9AB04C4C14B32D127DB6E7D3DF79FF26, DAC84CBDF605C43657CDA1B95A86DC0D55E236A75BFDA3041472C5D6222EB025 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 17:47:00.0260 0x2dc8 NcdAutoSetup - ok 17:47:00.0260 0x2dc8 ndfltr - ok 17:47:00.0260 0x2dc8 NDIS - ok 17:47:00.0276 0x2dc8 [ AF73B18F3096B165A6F4417C5ED36B01, B0FA9E52D7208F756103E2E853F1D17F594C9FDD2E76304743C581613E612449 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 17:47:00.0292 0x2dc8 NdisCap - ok 17:47:00.0323 0x2dc8 [ 1A9B1F5B8B131CE461A01C9424E149D7, 66E3F49308DF111B5D5DBF57F11A05E0B9492530587E37C6729C46AED17647D3 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 17:47:00.0354 0x2dc8 NdisImPlatform - ok 17:47:00.0354 0x2dc8 NdisTapi - ok 17:47:00.0354 0x2dc8 Ndisuio - ok 17:47:00.0370 0x2dc8 NdisVirtualBus - ok 17:47:00.0370 0x2dc8 NdisWan - ok 17:47:00.0370 0x2dc8 ndiswanlegacy - ok 17:47:00.0370 0x2dc8 ndproxy - ok 17:47:00.0448 0x2dc8 [ 4F54331F051F15EAD005F0E4CB55014E, 77C905F6DA787725AB3DEA9EABF4A79CDFC9B2EAE377E635966CBE3B50A3DC34 ] ndsvc C:\Program Files\NetDrive\ndsvc.exe 17:47:00.0635 0x2dc8 ndsvc - detected UnsignedFile.Multi.Generic ( 1 ) 17:47:00.0698 0x2dc8 Detect skipped due to KSN trusted 17:47:00.0698 0x2dc8 ndsvc - ok 17:47:00.0729 0x2dc8 [ 0E3B0F3645D1BAE79397C66FE8AF6402, 6568FD9646FE7C7D61D280C26097583EFA2FB9F59D43340A7283BEAD3A5CC206 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 17:47:00.0745 0x2dc8 Ndu - ok 17:47:00.0792 0x2dc8 [ EE00C544C025958AF50C7B199F3C8595, D774DB020D9C46D1AA0B2DB9FA2C36C4A9C38D904CC6929695321D32ACA0D4D1 ] Netaapl C:\WINDOWS\System32\drivers\netaapl64.sys 17:47:01.0042 0x2dc8 Netaapl - detected UnsignedFile.Multi.Generic ( 1 ) 17:47:01.0104 0x2dc8 Detect skipped due to KSN trusted 17:47:01.0104 0x2dc8 Netaapl - ok 17:47:01.0120 0x2dc8 NetAdapterCx - ok 17:47:01.0120 0x2dc8 NetBIOS - ok 17:47:01.0120 0x2dc8 NetBT - ok 17:47:01.0120 0x2dc8 Netlogon - ok 17:47:01.0120 0x2dc8 Netman - ok 17:47:01.0151 0x2dc8 [ E9931F57F05696CBF53A086449D97BF6, 986C99033AA10A258F0CC42727B14C5812BC76AB535CDF54FCA1B038C4BF9546 ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 17:47:01.0182 0x2dc8 netprofm - ok 17:47:01.0182 0x2dc8 NetSetupSvc - ok 17:47:01.0229 0x2dc8 [ 7EC8B56348F9298BCCA7A745C7F70E2C, F677CBD94ABE25AECF08ECFBBDA063A9C032C678327A0D105CB6B3E587C44C19 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 17:47:01.0292 0x2dc8 NetTcpPortSharing - ok 17:47:01.0292 0x2dc8 netvsc - ok 17:47:01.0323 0x2dc8 [ 162A571ABAF9546339EE0BB482FF6AE7, E6E590B628AA65D161D7A87C9CF360D905FCC858E73EE1C4723FE217E8A91EA2 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 17:47:01.0354 0x2dc8 NgcCtnrSvc - ok 17:47:01.0385 0x2dc8 [ DB3589FF79F06EC1967EBA56C7249E3C, C3F1B4687F2AAE869C8566B38DCFE507F8E7201A2241BD5342AAC22A2370D5E4 ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll 17:47:01.0417 0x2dc8 NgcSvc - ok 17:47:01.0432 0x2dc8 NlaSvc - ok 17:47:01.0432 0x2dc8 Npfs - ok 17:47:01.0432 0x2dc8 npsvctrig - ok 17:47:01.0432 0x2dc8 nsi - ok 17:47:01.0432 0x2dc8 nsiproxy - ok 17:47:01.0448 0x2dc8 Ntfs - ok 17:47:01.0448 0x2dc8 Null - ok 17:47:01.0448 0x2dc8 nvdimm - ok 17:47:01.0760 0x2dc8 [ 4D56E475D32437ECF663CE944D7E0D3F, 22F4E20D066A750ECC1C2566A0D93FE059CA16CF8A0D26002A1B721E26D443D7 ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_31f4ef4821269ebb\nvlddmkm.sys 17:47:02.0104 0x2dc8 nvlddmkm - ok 17:47:02.0120 0x2dc8 nvraid - ok 17:47:02.0120 0x2dc8 nvstor - ok 17:47:02.0151 0x2dc8 [ 9DBC464AB85AA48C9760C6C2E591E2D3, C9D718F8BE838E13F7488F1E8DAA79809340235A5BA5BF206C1C3DBF0A5DDB48 ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 17:47:02.0213 0x2dc8 OneSyncSvc - ok 17:47:02.0260 0x2dc8 [ AD4EB6A3FB038C2E215BB06262D4009A, 778E25079650D094337DF094F4C262528C7D983EAD52194795B4B033C17686AE ] OpenVPNService C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe 17:47:02.0260 0x2dc8 OpenVPNService - ok 17:47:02.0276 0x2dc8 [ 44EC1C7AC8999C35DA603DE8E9E1393C, D0EF55DB094D8711C6F28934D207489FC8B85276CAF1E17C516BD5777132F49A ] ose c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 17:47:02.0292 0x2dc8 ose - ok 17:47:02.0307 0x2dc8 [ 65E0500B39BA5D9F99DF63AFC261A90D, 2A7611C0C30D7092C3777BA49700C41A944677DF9E4F65F69E3E9CEC17EA4106 ] osrss C:\WINDOWS\system32\osrss.dll 17:47:02.0323 0x2dc8 osrss - ok 17:47:02.0338 0x2dc8 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 17:47:02.0401 0x2dc8 p2pimsvc - ok 17:47:02.0432 0x2dc8 [ CCD10679BA0D9EF549F80C458C2AD1C4, 7B433FEE4BEA69C28A98F4BFBE5FA603DB2CE1DFCF229EBB4D9B7A0FD159FF04 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 17:47:02.0463 0x2dc8 p2psvc - ok 17:47:02.0479 0x2dc8 Parport - ok 17:47:02.0479 0x2dc8 partmgr - ok 17:47:02.0510 0x2dc8 [ 0CF87FC2DA60940031D553F8FDF5066B, 95F8A15210D6F431B84C6E18643F93C9D16F53D3FF4873F9A327A77924B4B9F8 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 17:47:02.0526 0x2dc8 PcaSvc - ok 17:47:02.0526 0x2dc8 pci - ok 17:47:02.0526 0x2dc8 pciide - ok 17:47:02.0526 0x2dc8 pcmcia - ok 17:47:02.0542 0x2dc8 pcw - ok 17:47:02.0542 0x2dc8 pdc - ok 17:47:02.0573 0x2dc8 [ B5D17D9FCDF1C6291063EF4A1E24E932, 112D12E8AD2D2DA2D2432FFB02A111C9D30A039FA9EA03408AAAD823622AF58F ] PDF24 C:\Program Files (x86)\PDF24\pdf24.exe 17:47:02.0573 0x2dc8 PDF24 - ok 17:47:02.0604 0x2dc8 [ 42B12A76D3C98AE69C97727E3BEC7D8A, C878A05A9817F62514432685FAA795737F628EF7258EC5C7846045E1CAB2DF6E ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 17:47:02.0635 0x2dc8 PEAUTH - ok 17:47:02.0635 0x2dc8 percsas2i - ok 17:47:02.0651 0x2dc8 percsas3i - ok 17:47:02.0667 0x2dc8 [ 185100798FBD23C849DC1C00ED43D99D, 10895ADE339744BBABDFB50BE6025217C02C76B1911C2C8740A57912385B38DE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 17:47:02.0776 0x2dc8 PerfHost - ok 17:47:02.0792 0x2dc8 PhoneSvc - ok 17:47:02.0807 0x2dc8 [ 807ED476A62E79935315342BD3FAA046, FF56FC79C6B6043A10C123CF85A8DDA0B8564E03D49AD5811DDCBB99823C4836 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 17:47:02.0823 0x2dc8 PimIndexMaintenanceSvc - ok 17:47:02.0870 0x2dc8 [ 4E614DBE28B5857F70DEBCC804629E67, B93C42FB96BBA0577CB892274905352AE4A6DE257F676D6A23CE0297F945D7E7 ] pla C:\WINDOWS\system32\pla.dll 17:47:02.0979 0x2dc8 pla - ok 17:47:02.0979 0x2dc8 PlugPlay - ok 17:47:02.0979 0x2dc8 pmem - ok 17:47:03.0010 0x2dc8 [ 99ECEDA6B2E1FDB6892FBD5AED1E5D99, C970DDDBDB4AF8C6A1AA92D780B82920B4922304649509075CF14A2AB86C3CCF ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 17:47:03.0042 0x2dc8 PNPMEM - ok 17:47:03.0057 0x2dc8 [ 75690F495CEDBEF3D5989828AEEAE832, 3257E7261DF8F39CA4988BBED3060B9E8A5988978F66A4B1409E08F65B262FED ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 17:47:03.0073 0x2dc8 PNRPAutoReg - ok 17:47:03.0088 0x2dc8 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 17:47:03.0104 0x2dc8 PNRPsvc - ok 17:47:03.0104 0x2dc8 PolicyAgent - ok 17:47:03.0135 0x2dc8 [ 512399852F84977A2A00FA220C831E60, 5144BC66305D5682E630D2CE38739902B70E798E43F041F28313101F6E03E1DB ] postgresql-x64-9.3 C:\Program Files\PostgreSQL\9.3\bin\pg_ctl.exe 17:47:03.0167 0x2dc8 postgresql-x64-9.3 - detected UnsignedFile.Multi.Generic ( 1 ) 17:47:03.0245 0x2dc8 Detect skipped due to KSN trusted 17:47:03.0245 0x2dc8 postgresql-x64-9.3 - ok 17:47:03.0245 0x2dc8 Power - ok 17:47:03.0260 0x2dc8 PptpMiniport - ok 17:47:03.0776 0x2dc8 [ AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4, 6372FC5E78A2DDB8AE6EB73BEB5C0D4056FB6BE9F231A36BAC37AE970F5EB247 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 17:47:04.0010 0x2dc8 PrintNotify - ok 17:47:04.0041 0x2dc8 [ A60202AE474E2173ED91118DD73ADAAD, 6AE315E1DD9E3B03E48B8848FCB0CDD506080F0012DE478BA99D102F91E968E6 ] PrintWorkflowUserSvc C:\WINDOWS\System32\PrintWorkflowService.dll 17:47:04.0073 0x2dc8 PrintWorkflowUserSvc - ok 17:47:04.0073 0x2dc8 Processor - ok 17:47:04.0073 0x2dc8 ProfSvc - ok 17:47:04.0088 0x2dc8 [ E4BF8BE7B3711BCBBC95EE983C0236F4, A71C09D83034C96F7ED4DB58F7388F8A13C7FD1A3F41FE8EEC553C42B65DFFC6 ] Psched C:\WINDOWS\system32\drivers\pacer.sys 17:47:04.0104 0x2dc8 Psched - ok 17:47:04.0104 0x2dc8 [ 29F12CD3F77B65C7E37F8517395B13D2, 690517756A21B3DE4CF4A027AA712FC62DB6F5F2E89B4D2DE220A29C4A36878B ] PushToInstall C:\WINDOWS\system32\PushToInstall.dll 17:47:04.0135 0x2dc8 PushToInstall - ok 17:47:04.0166 0x2dc8 [ 605750DA0741F2B28906BD27EFCB78D8, 91AD3952B4FA19FA28FC4C3151BAD2EDE94D250A87EBC4B2EE3A534A2D41C456 ] QALSvc C:\Program Files\Acer\Acer Quick Access\QALSvc.exe 17:47:04.0182 0x2dc8 QALSvc - ok 17:47:04.0198 0x2dc8 [ D232A1F1DD250F9B9944F0D98045FA9B, 330719FED4D4A53A3A75263560B4A32D06AC1E3F00F0AD6A45C4F504A1C1AB6D ] QASvc C:\Program Files\Acer\Acer Quick Access\QASvc.exe 17:47:04.0213 0x2dc8 QASvc - ok 17:47:04.0276 0x2dc8 [ D76F885983B04E8BE2D1BDEF118A097E, 34D293F7E9D2E4BF43B2BB575D77E6A8D45D54C22F8F0214EA26712BE6CE9A49 ] Qcamain C:\WINDOWS\System32\drivers\Qcamainx64.sys 17:47:04.0370 0x2dc8 Qcamain - detected UnsignedFile.Multi.Generic ( 1 ) 17:47:04.0432 0x2dc8 Detect skipped due to KSN trusted 17:47:04.0432 0x2dc8 Qcamain - ok 17:47:04.0495 0x2dc8 [ 47B1B98FF5E2B173B86EB53A417FA26E, 46B77D7CC9E050A1BEEFCEF3B38D91E83133D67BDC397D4D24BAB426B928F997 ] Qcamain10x64 C:\WINDOWS\System32\drivers\Qcamain10x64.sys 17:47:04.0619 0x2dc8 Qcamain10x64 - ok 17:47:04.0666 0x2dc8 [ 8AB5F41584C98047ABEF490FC1E31F7E, F8480F9D9C1A60901975C529CC0911ED592834AB1068FADD88B15E6497A59221 ] QWAVE C:\WINDOWS\system32\qwave.dll 17:47:04.0682 0x2dc8 QWAVE - ok 17:47:04.0698 0x2dc8 [ 00F72861538B6C4E925A21BAE397A49D, 6847E2332CC8573850428CC7E3A73B2DA0274977F53BDDF7DBA68D223A501CC4 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 17:47:04.0729 0x2dc8 QWAVEdrv - ok 17:47:04.0745 0x2dc8 [ 29EF474475CA406FF5B14D6B434F1ECE, A09ABDCE77FF45E0FEB826E96C9F54A5BC6699BF644C8816BAF4CA5630C9D44E ] RadioShim C:\WINDOWS\System32\drivers\RadioShim.sys 17:47:04.0760 0x2dc8 RadioShim - ok 17:47:04.0760 0x2dc8 Ramdisk - ok 17:47:04.0760 0x2dc8 RasAcd - ok 17:47:04.0760 0x2dc8 RasAgileVpn - ok 17:47:04.0760 0x2dc8 RasAuto - ok 17:47:04.0760 0x2dc8 Rasl2tp - ok 17:47:04.0776 0x2dc8 RasMan - ok 17:47:04.0776 0x2dc8 RasPppoe - ok 17:47:04.0776 0x2dc8 RasSstp - ok 17:47:04.0776 0x2dc8 rdbss - ok 17:47:04.0791 0x2dc8 [ 206AB796793FDBD518B82E2F308A7176, ED0DBDE7106970F217F4FB1FB184B6795A16356C879C17E0910840F64F292809 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 17:47:04.0838 0x2dc8 rdpbus - ok 17:47:04.0854 0x2dc8 [ 52A6CC99F5934CFAE88353C47B6193E7, 37F6991FA526036866E8CFC938A16750644AD764FA52BB102B11B5D594DB7E96 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 17:47:04.0885 0x2dc8 RDPDR - ok 17:47:04.0901 0x2dc8 [ 0600DF60EF88FD10663EC84709E5E245, 48572DC0C644E13BD1713E29E522763EB4E00337ACA64D1392960D17EAF8923A ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 17:47:04.0916 0x2dc8 RdpVideoMiniport - ok 17:47:04.0932 0x2dc8 [ 65652EFAAF4A8A59E60A2D7BE15317E8, 83A9A8506EF4769625EF0EF43B93906A6FBD9133E52C12B17A68B89DAC68D026 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 17:47:04.0948 0x2dc8 rdyboost - ok 17:47:04.0948 0x2dc8 ReFS - ok 17:47:04.0963 0x2dc8 ReFSv1 - ok 17:47:04.0979 0x2dc8 [ 980F60634FAF9C58FC468AF9AA609D68, 7BA03FE851F78D5DC9062ACEADF194ACB4F8F56C9D496B17D846CE1E4373B404 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 17:47:05.0073 0x2dc8 RemoteAccess - ok 17:47:05.0120 0x2dc8 [ 106E630F1B2A8BF2BBD4508D9B166406, FAFBE21EC61B97B4B825285EBA0F661382A95119E1740EE4FB9A1F6FB3C0F5F7 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 17:47:05.0260 0x2dc8 RemoteRegistry - ok 17:47:05.0291 0x2dc8 [ 53BE6D9C36A9CB95A1568C24D44A8A34, DD8245F87B9D4203F56595D6ABF9F1E74EA071D4B7BB0469A293CA9E20BDA246 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 17:47:05.0338 0x2dc8 RetailDemo - ok 17:47:05.0354 0x2dc8 [ 59F600BDA5B6EE591802945F1D8388D5, A30593A0EC696DE21264969664261E7ADA12C9E1161445BD41E71B7E3232604F ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 17:47:05.0369 0x2dc8 RFCOMM - ok 17:47:05.0416 0x2dc8 [ 3D4F4CCE0364CD3F1B539D2630686F24, 620EFC53D6F5279AEF4748FAE22F7239E7855D1F5C79B85F6CB54EF51C516408 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 17:47:05.0448 0x2dc8 rhproxy - ok 17:47:05.0463 0x2dc8 [ ADA13EBD9C23C51876A5B2EADF7F2E29, D08E6A907DE5DC6F51CA71CBF7886FE7D8C6FB09154B633D86CDBE9C311361A0 ] RmSvc C:\WINDOWS\System32\RMapi.dll 17:47:05.0479 0x2dc8 RmSvc - ok 17:47:05.0494 0x2dc8 RpcEptMapper - ok 17:47:05.0494 0x2dc8 [ 19EC4D05E01FE350B3494CEA122D64EB, 09FF60A8F22D66796257E33F4CFD6059D4A11A3173A7691718E9FE841E15ABA2 ] RpcLocator C:\WINDOWS\system32\locator.exe 17:47:05.0526 0x2dc8 RpcLocator - ok 17:47:05.0682 0x2dc8 RpcSs - ok 17:47:05.0682 0x2dc8 [ FFFB16EF6E0B8B5F7F19B425923E7D12, 27C2882AC7B27BAC5A4051C2C9326A6D289F297158DE7A3A93E8B09378DC91AA ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 17:47:05.0698 0x2dc8 rspndr - ok 17:47:05.0713 0x2dc8 [ 02CB159500B40705BE8644F3B42C3992, B4F6238BF2D9E53DE3C43FC4A247700C94B9F0BEFA8D3F0AE043B1F3405A1D70 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys 17:47:05.0729 0x2dc8 RTSUER - ok 17:47:05.0760 0x2dc8 [ A2939E69027B97105014434BFBFF7195, 9DC09BE94415564D0E80431223BDA1C59E3555AB5267DD3F64E71D4A18C8553A ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 17:47:05.0823 0x2dc8 s3cap - ok 17:47:05.0823 0x2dc8 SamSs - ok 17:47:05.0823 0x2dc8 sbp2port - ok 17:47:05.0854 0x2dc8 [ D48F36EA4B4E8237B24E33B18D76EB2A, 128E754F15FDB00D218FB23431BF0FBDC65D64EEF294D72535B0C07EB5472136 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 17:47:05.0885 0x2dc8 SCardSvr - ok 17:47:05.0901 0x2dc8 [ 1B1FB3D8403E621F2B9201EF414E21D9, 5EFBEA5DC09CD5F151EF224BE2FF2C985D19301B17E5C16F5D00CB2852DAF8BF ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 17:47:05.0932 0x2dc8 ScDeviceEnum - ok 17:47:05.0948 0x2dc8 [ 0070C2DC6563C48EDA63A282748F3FCD, 12C8505DDD05994641B2B19666D7A54E12A21F6894913342A9BA5D148F193BE0 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 17:47:05.0979 0x2dc8 scfilter - ok 17:47:06.0010 0x2dc8 [ 9D13410D7B4D76AA2EA73EC8CA0E0190, 7C46D202683F34F1C07D9D297E9A239376800DC8C84FE1585FE7FC723B6EBBA0 ] Schedule C:\WINDOWS\system32\schedsvc.dll 17:47:06.0057 0x2dc8 Schedule - ok 17:47:06.0057 0x2dc8 scmbus - ok 17:47:06.0073 0x2dc8 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 17:47:06.0088 0x2dc8 SCPolicySvc - ok 17:47:06.0088 0x2dc8 sdbus - ok 17:47:06.0104 0x2dc8 [ 9EF09DE84CE20B787C02395394AC2A7E, 17019B74506D26707EBC342365008A9BB5AACA381FB60ABA85F34D153FB0682C ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 17:47:06.0104 0x2dc8 SDFRd - ok 17:47:06.0135 0x2dc8 [ 01607A2FAB0068450A06C90AF755D57E, 9615261063475045CBC99F17BD3A4919198D0F77CA9E4EC7B13826E514BC8543 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 17:47:06.0182 0x2dc8 SDRSVC - ok 17:47:06.0182 0x2dc8 sdstor - ok 17:47:06.0198 0x2dc8 [ 44B1F4F200B4D3AE8B53290101148AFC, 34F18FEDE525BB398371329CA9F93BD3D88C30E23FCA576978D94EC67513228C ] seclogon C:\WINDOWS\system32\seclogon.dll 17:47:06.0213 0x2dc8 seclogon - ok 17:47:06.0244 0x2dc8 [ EA160DB2589350DFF52C7ACCD7763187, 1EA4C33AE67EE0EC0748D892D402AD49832FE752F6864AF99AFCA52873D6F4A4 ] SecureLine C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe 17:47:06.0260 0x2dc8 SecureLine - ok 17:47:06.0291 0x2dc8 [ 1E8CC4964FEECEE44D720A5130075F79, 75656541633FE90045183C68F4A81F1AA305E4A03CFBF7C50F226F18000924D5 ] SecurityHealthService C:\WINDOWS\system32\SecurityHealthService.exe 17:47:06.0323 0x2dc8 SecurityHealthService - ok 17:47:06.0369 0x2dc8 [ 7D7ED932B6417D8687D1D972989B310B, A5DF3B6CEE97DD110FD1BC542CC5A5313B2F447E5FCC40DF6EFB9D7D49CD792C ] SEMgrSvc C:\WINDOWS\system32\SEMgrSvc.dll 17:47:06.0416 0x2dc8 SEMgrSvc - ok 17:47:06.0432 0x2dc8 [ CA614C9FBC8307AB1DC937F3393899E2, 4833CC631FA30E4D4B45BBC2CE41DE72B332B6A1FFD23B7DBFD6EDD6BC1A2ED8 ] SENS C:\WINDOWS\System32\sens.dll 17:47:06.0494 0x2dc8 SENS - ok 17:47:06.0526 0x2dc8 [ 46AEFFC68BEAF89805B95CC6F9529C2E, 7A6A38A329E82F684191561479604142BBB35121822A5CDD828819C606F2A60A ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 17:47:06.0572 0x2dc8 SensorDataService - ok 17:47:06.0619 0x2dc8 [ 2B81117E9C3E20BBAA2CB5467D000F77, AC0DF8E635908026EE43EE0444DEF61481E211737A85A473D64EC8BB214D1135 ] SensorService C:\WINDOWS\system32\SensorService.dll 17:47:06.0760 0x2dc8 SensorService - ok 17:47:06.0776 0x2dc8 [ DF94FAAEC4CDAA3886A0169E660C984B, 54BB09459D59B5DDA24D72821840FA7A71A194EA464E09DFDE021B24CB27FCAD ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 17:47:06.0823 0x2dc8 SensrSvc - ok 17:47:06.0838 0x2dc8 SerCx - ok 17:47:06.0838 0x2dc8 SerCx2 - ok 17:47:06.0838 0x2dc8 Serenum - ok 17:47:06.0838 0x2dc8 Serial - ok 17:47:06.0838 0x2dc8 sermouse - ok 17:47:06.0869 0x2dc8 [ 87340BC77470B34F11A9E558B591DB08, FD91561FE5951B4F59FEE23707E1ACE31293E508EF734A5CDB0F34D332EFDDF7 ] SessionEnv C:\WINDOWS\system32\sessenv.dll 17:47:06.0901 0x2dc8 SessionEnv - ok 17:47:06.0916 0x2dc8 sfloppy - ok 17:47:06.0932 0x2dc8 [ 1941F5CA54C469E16957587FD56ED842, D356547A9702A50AEB5F7765AC44668EEA913563A422ABBD0427EC22833A5B78 ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 17:47:06.0932 0x2dc8 SgrmAgent - ok 17:47:06.0979 0x2dc8 [ D3170A3F3A9626597EEE1888686E3EA6, 9321991C441B095DF15D24C8AE58F87EE5A3242532E8C023D0F78B2F96FEE6B7 ] SgrmBroker C:\WINDOWS\system32\SgrmBroker.exe 17:47:06.0994 0x2dc8 SgrmBroker - ok 17:47:07.0026 0x2dc8 [ AC1D97F89F2EC7E334A406603A686973, D230059C1CB400CCA62438603356F058B40E17DE4C7BD4DADDBB981E4F5E4C9C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 17:47:07.0166 0x2dc8 SharedAccess - ok 17:47:07.0244 0x2dc8 [ 0BE15FDA358837ABD88DC72AA75C75CD, 3990FA051E7C280B446C8A749FCEE04E384230CC5E286B4E7080B1737E5730DD ] SharedRealitySvc C:\WINDOWS\System32\SharedRealitySvc.dll 17:47:07.0369 0x2dc8 SharedRealitySvc - ok 17:47:07.0463 0x2dc8 [ 63B104867F70F0D81125C37989146960, 468431098DD9B91F1C58551CEB4DBE6E1C456FFE845E302571B970EF05AE03A8 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 17:47:07.0494 0x2dc8 ShellHWDetection - ok 17:47:07.0526 0x2dc8 [ F6D90D09D2BCFA2B5E492BFECA40EDE4, 7B427335943C1EFDE482D59F3A23149FCD45BB014643BEF620A708720383C4A8 ] shpamsvc C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll 17:47:07.0541 0x2dc8 shpamsvc - ok 17:47:07.0541 0x2dc8 SiSRaid2 - ok 17:47:07.0541 0x2dc8 SiSRaid4 - ok 17:47:07.0588 0x2dc8 [ 22CC2A61BC77C5972B58756049AA254E, 4DF554A1C2FF8C2D9AD8633231961DE95171A17295DAA7779E607AFD7BD8FE03 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 17:47:07.0604 0x2dc8 SkypeUpdate - ok 17:47:07.0619 0x2dc8 smphost - ok 17:47:07.0651 0x2dc8 [ A3BEF2736E902B9DCA68554F4E10E08C, 5C7590D8F2D637B6D4A5F68945D8350B1C3D48EBE1B2C36658361900C9425611 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 17:47:07.0682 0x2dc8 SmsRouter - ok 17:47:07.0697 0x2dc8 [ 577EC13EB5215325E9B9FC51FB56A974, 1D7A0245A3C474BCD4EC69704040FB50C0E086DB1711C5B7FC4D9C4A7909DAB9 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 17:47:07.0713 0x2dc8 SNMPTRAP - ok 17:47:07.0713 0x2dc8 spaceport - ok 17:47:07.0729 0x2dc8 [ FE1776E587227120DC04EAEC45473245, 9DEBD997D275065481EEEDD2310479F2021D53B64AA6D5CEEA70E9BB8C9856C7 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 17:47:07.0744 0x2dc8 SpatialGraphFilter - ok 17:47:07.0744 0x2dc8 SpbCx - ok 17:47:07.0744 0x2dc8 spectrum - ok 17:47:07.0776 0x2dc8 [ C05A19A38D7D203B738771FD1854656F, 3A832F3CBA33682EAA18ABB721BF2D5A6FE9AC853038C684C264700DEB52AA65 ] Spooler C:\WINDOWS\System32\spoolsv.exe 17:47:07.0807 0x2dc8 Spooler - ok 17:47:07.0822 0x2dc8 sppsvc - ok 17:47:07.0822 0x2dc8 srv - ok 17:47:07.0822 0x2dc8 srv2 - ok 17:47:07.0822 0x2dc8 srvnet - ok 17:47:07.0854 0x2dc8 [ 1AEA66706573E8CCD6038369FE37F237, A62CAFE205D5B4C9F8528EDDA4E20BA4E2D1E231F2B183FE70EFE6458B2D5460 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 17:47:07.0869 0x2dc8 SSDPSRV - ok 17:47:07.0916 0x2dc8 [ 5EE518DFADC18573E681BB78833E93FA, E98CCD3E2ADA265D6E3CF48CDBFE5C3067E0546F179F23B77C267F65CEB978EE ] ssh-agent C:\WINDOWS\System32\OpenSSH\ssh-agent.exe 17:47:08.0010 0x2dc8 ssh-agent - ok 17:47:08.0010 0x2dc8 SstpSvc - ok 17:47:08.0041 0x2dc8 [ F0B59ADCD06BCEB9D47311B7041CA2C9, 6299AB514CBE153C875F083ED789F6205C1781C0178759521F5A6D8007F5257C ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys 17:47:08.0057 0x2dc8 ssudmdm - ok 17:47:08.0197 0x2dc8 [ 7DB9E612A2742ACEAB080B882E83141C, FFD1FA36E732F55223F3F4B5F845331DBB3073B023C2C5BF51A0E7680DEE7FA7 ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe 17:47:08.0213 0x2dc8 ss_conn_service - ok 17:47:08.0229 0x2dc8 StateRepository - ok 17:47:08.0307 0x2dc8 [ 0608A6DB82B8E6845BCC624051F31130, 9FF2993FFDC273AE8EB9F4E870620B6287024E013F778154F1A022A9370A1A34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 17:47:08.0354 0x2dc8 Steam Client Service - ok 17:47:08.0354 0x2dc8 stexstor - ok 17:47:08.0385 0x2dc8 [ EB2C25A3700309F3F67D9334CF33A36C, 9262778566EEEA810AD32CD660DEA841797BD9F874252CC5445D917FF159280B ] stisvc C:\WINDOWS\System32\wiaservc.dll 17:47:08.0432 0x2dc8 stisvc - ok 17:47:08.0432 0x2dc8 storahci - ok 17:47:08.0432 0x2dc8 storflt - ok 17:47:08.0447 0x2dc8 stornvme - ok 17:47:08.0447 0x2dc8 storqosflt - ok 17:47:08.0447 0x2dc8 StorSvc - ok 17:47:08.0447 0x2dc8 storufs - ok 17:47:08.0447 0x2dc8 storvsc - ok 17:47:08.0463 0x2dc8 svsvc - ok 17:47:08.0479 0x2dc8 swenum - ok 17:47:08.0479 0x2dc8 swprv - ok 17:47:08.0494 0x2dc8 [ 80CB108EB46BCAE1A30B7E2F29D3032B, 3C5793F882AF05F928F71AB7B6282F0AF55A755AAFA2506F7062B85AD6869145 ] SynRMIHID C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys 17:47:08.0494 0x2dc8 SynRMIHID - ok 17:47:08.0510 0x2dc8 [ A2A42A570524C975259E3B81C4D80DCA, 4B2A6295E46DD2042B3C741D9519A0376687B30711F2DA8B9B81A039E46229F9 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 17:47:08.0650 0x2dc8 Synth3dVsc - ok 17:47:08.0682 0x2dc8 [ 62492FAAC26223E8A21E79A2331A3F10, 164C2650EAD344B6DFF95B8275436231E7994B7F06ACB3DA19054849BED61FD2 ] SysMain C:\WINDOWS\system32\sysmain.dll 17:47:08.0729 0x2dc8 SysMain - ok 17:47:08.0744 0x2dc8 SystemEventsBroker - ok 17:47:08.0760 0x2dc8 [ CE9975A9E0DFBEFECECE218D2674C1CD, 20ABA9B78FF40C89A757ED2B4AE2F8BE5F4C6C257AA00A324849D68ACA59A264 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 17:47:08.0791 0x2dc8 TabletInputService - ok 17:47:08.0807 0x2dc8 [ D765F43CBEA72D14C04AF3D2B9C8E54B, 89C5CA1440DF186497CE158EB71C0C6BF570A75B6BC1880EAC7C87A0250201C0 ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys 17:47:08.0979 0x2dc8 tap0901 - ok 17:47:08.0979 0x2dc8 [ E38C7C4D57B1438F70A1B913870E8665, EEBE640E31F3D9126FD2F58EB93051FE4EEA591223DFAB9E918DEBE879718B95 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 17:47:09.0010 0x2dc8 TapiSrv - ok 17:47:09.0010 0x2dc8 Tcpip - ok 17:47:09.0010 0x2dc8 Tcpip6 - ok 17:47:09.0025 0x2dc8 [ 085F8A5F09E64CC27309AF160EF4F9BA, DB3DFD3059836A9FB26FE924E9F2B960E454F4B20D8862266DFDA3168D610FD8 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 17:47:09.0041 0x2dc8 tcpipreg - ok 17:47:09.0041 0x2dc8 tdx - ok 17:47:09.0057 0x2dc8 [ B2C4D7CB291293CAC636748E695D111E, 5E0AA8147EFDA5D21CEE8AE254F74A974B0ADAF298F569CAA73AC4E3B758438A ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 17:47:09.0072 0x2dc8 terminpt - ok 17:47:09.0104 0x2dc8 [ 10ADC3589E50B1ED8452C86E0CBE8248, BE82341A12EA83D9EFADC9AC35CF16D327F8499C99107DCDE88DD0F5DF84523C ] TermService C:\WINDOWS\System32\termsrv.dll 17:47:09.0135 0x2dc8 TermService - ok 17:47:09.0166 0x2dc8 [ 1A0A0F6A139148AFDC4622046D4B3CBD, 8FC2FB99B70A3A5B2F1D757A2F0E3085B1D242B792A35070E1DB3871A275329E ] Themes C:\WINDOWS\system32\themeservice.dll 17:47:09.0182 0x2dc8 Themes - ok 17:47:09.0197 0x2dc8 [ 811910E891A6DB4A864AE119EB71218C, 2CBB6159E2ACAE4BA73892A4F7F8A3981C159083C29F1A1D548C59FB713B9D74 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe 17:47:09.0244 0x2dc8 TieringEngineService - ok 17:47:09.0244 0x2dc8 TimeBrokerSvc - ok 17:47:09.0244 0x2dc8 TokenBroker - ok 17:47:09.0260 0x2dc8 TPM - ok 17:47:09.0260 0x2dc8 [ A5C0F857C38278A90E953A24E1701196, 1A646E47013946CCE41C798A494C6D266AEFC8A8D6EB65CD8848E72106687E38 ] TrkWks C:\WINDOWS\System32\trkwks.dll 17:47:09.0291 0x2dc8 TrkWks - ok 17:47:09.0307 0x2dc8 [ ED9913C84739BE2B4D5F1A54EFF3FC6C, A5192DD8E20155E748E4817063B068A4E5B4BC2FE324DF917B11DA524B11DF53 ] TrueKey C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe 17:47:09.0338 0x2dc8 TrueKey - ok 17:47:09.0338 0x2dc8 [ 39121FB613B2E3C0506D678E297B0F40, A469CE5C90C7DEAEC238689AAFD62968DB298F0F725841270B5A2A49313274EC ] TrueKeyScheduler C:\Program Files\TrueKey\McTkSchedulerService.exe 17:47:09.0354 0x2dc8 TrueKeyScheduler - ok 17:47:09.0354 0x2dc8 [ 40A532AC4A579184641CFDC8102B6705, BF8B0107F8DCF987340F6901DAC55358416D07F70850620757E6FF6B3CA4DC13 ] TrueKeyServiceHelper C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe 17:47:09.0369 0x2dc8 TrueKeyServiceHelper - ok 17:47:09.0385 0x2dc8 TrustedInstaller - ok 17:47:09.0400 0x2dc8 [ 0D721F40C179EC5737C15E551F22C69B, BBA04E11C3D9150C60F74D8B1A3F444BDE0C19857BB7C45D58448F641082DE1A ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 17:47:09.0479 0x2dc8 TsUsbFlt - ok 17:47:09.0510 0x2dc8 [ DE1296871208D1F13B7AC57C4B1FA46C, D18709F65E372A47AE114ECFD6A45E6736089B4A8E719E2FB5D831D9415E995D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 17:47:09.0525 0x2dc8 TsUsbGD - ok 17:47:09.0557 0x2dc8 [ BC938ABBF586272BD4063CA51F09149F, 06EB662948D212ACDF930C3CD01C6381A6FB152AC0F1628C86764F0973ABA1CB ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 17:47:09.0588 0x2dc8 tunnel - ok 17:47:09.0588 0x2dc8 [ E94996BB8F323AF02860196C1400AD30, DE605439FC5B59C1064DF05F63C94D7C275482C1C66BEC74FA4A83F61C2051FC ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll 17:47:09.0619 0x2dc8 tzautoupdate - ok 17:47:09.0619 0x2dc8 UASPStor - ok 17:47:09.0635 0x2dc8 [ 00C4396DE1CD3502884BB2E2B6D6861C, 39F6BF25096ACE29CAF964DCA15078F47986F645DF49FB502A2CDF2C05C89AAB ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 17:47:09.0650 0x2dc8 UcmCx0101 - ok 17:47:09.0682 0x2dc8 [ ED9CBD1541C8AFDAA9B8255A384E2B53, D970F5E976CEBE0BCDF07B9E155EDB5B3C225812991779748CD04A9C4852DF3D ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 17:47:09.0697 0x2dc8 UcmTcpciCx0101 - ok 17:47:09.0713 0x2dc8 [ F58F1BC6A6972437CE18516F8ACCEB9F, 2C619D1E2E80662FA463EE48E3D41C8437A81B0F68EE67A0839A93DEDCD2E0B2 ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 17:47:09.0744 0x2dc8 UcmUcsi - ok 17:47:09.0744 0x2dc8 Ucx01000 - ok 17:47:09.0744 0x2dc8 UdeCx - ok 17:47:09.0744 0x2dc8 udfs - ok 17:47:09.0744 0x2dc8 UEFI - ok 17:47:09.0760 0x2dc8 [ AD53262AFF486D28190439D3A59C80F7, 9A57AA4BD93392894110B344CAB884476A2F107442FAB6E840178BE544B5CC6E ] UEIPSvc C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe 17:47:09.0869 0x2dc8 UEIPSvc - ok 17:47:09.0932 0x2dc8 [ 588B9212DEE84F5192C09A147AA5C316, 80C70FD489D72015FCF8AFBE649F6C77F40B613882A1F031A2DAE088B9B4F67B ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 17:47:09.0947 0x2dc8 Ufx01000 - ok 17:47:09.0947 0x2dc8 UfxChipidea - ok 17:47:09.0947 0x2dc8 ufxsynopsys - ok 17:47:09.0963 0x2dc8 umbus - ok 17:47:09.0963 0x2dc8 UmPass - ok 17:47:09.0994 0x2dc8 [ 0D806415E1F86E7C1C192261C247EF0D, 640CB73D9ACC3B6E0F2A2A5A4587375F05A7519081BEC510B926A8A4A496C3B9 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 17:47:10.0025 0x2dc8 UmRdpService - ok 17:47:10.0057 0x2dc8 [ EAEC69961D9D8B39FEA44D56F7FB259D, 43FEB15A32B353B6F3C8E5F1072FF9507F2FA7799A414F30FEA0B8C47999D969 ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 17:47:10.0119 0x2dc8 UnistoreSvc - ok 17:47:10.0150 0x2dc8 [ 2362D5C18120FAB9CE5BD1F73EE33758, D9AB5D5BEAF95F62A204CE8A3B8B3B6C9C1E85FB5425CA2AADCBB4770EDCDF30 ] upnphost C:\WINDOWS\System32\upnphost.dll 17:47:10.0182 0x2dc8 upnphost - ok 17:47:10.0213 0x2dc8 [ 49A5E1B43C59DC0E363AD9C2D7D10BE4, B903C1C24DAF316AF9D8C1770687DE0A24ACDA4EFE47845E13BE99985609B7CE ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 17:47:10.0213 0x2dc8 UrsChipidea - ok 17:47:10.0244 0x2dc8 [ 53F1DA2D92D1D8CE4BB9D33E58D7DF01, CD3F4B92EDA042FE696C59D67BEB711C7AF0EB5979AD5F4110297C47454EBBFA ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 17:47:10.0244 0x2dc8 UrsCx01000 - ok 17:47:10.0260 0x2dc8 [ 09518A324B95BBC0B472BD5A472CB916, B3C6BF8C84268C02CC43E5C6B37648F9691B6038D275F4BEBA7B5E9ECA046181 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 17:47:10.0432 0x2dc8 UrsSynopsys - ok 17:47:10.0447 0x2dc8 [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys 17:47:10.0510 0x2dc8 USBAAPL64 - detected UnsignedFile.Multi.Generic ( 1 ) 17:47:10.0572 0x2dc8 Detect skipped due to KSN trusted 17:47:10.0572 0x2dc8 USBAAPL64 - ok 17:47:10.0572 0x2dc8 usbccgp - ok 17:47:10.0619 0x2dc8 [ 250D21958EE5F45CD13FE6BE3788EE70, C0EF097EE2ED91950BD3A6881AB08698E85C4ABABC4F7520F7E92E70CA454D4E ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 17:47:10.0635 0x2dc8 usbcir - ok 17:47:10.0635 0x2dc8 usbehci - ok 17:47:10.0635 0x2dc8 usbhub - ok 17:47:10.0650 0x2dc8 USBHUB3 - ok 17:47:10.0650 0x2dc8 usbohci - ok 17:47:10.0682 0x2dc8 [ 692C0BA4109C8F78392A299369F51129, A675E11CD4794693D0B65A06E85F264199506A4C6EDBB68503163EED389B8D1F ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 17:47:10.0697 0x2dc8 usbprint - ok 17:47:10.0728 0x2dc8 [ 555DE99E30E6A6EF37137F8325B30068, B78B44883A3E524DFEC13B72AFFDF06FD446EFB12061593D8247C0B92D558B8A ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 17:47:10.0822 0x2dc8 usbscan - ok 17:47:10.0822 0x2dc8 usbser - ok 17:47:10.0822 0x2dc8 USBSTOR - ok 17:47:10.0838 0x2dc8 usbuhci - ok 17:47:10.0932 0x2dc8 [ 9431F7E997A8750139517709B04D8629, 250DE2A461DD3E6D40BD7A21041BF451D954D5BC14A9BC4D819955A135FC34F4 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 17:47:10.0947 0x2dc8 usbvideo - ok 17:47:10.0947 0x2dc8 USBXHCI - ok 17:47:10.0994 0x2dc8 [ CE0E3BA8FC974BEE5BE20E4F43A1C583, E19DE81559FD92D1F7B0ADB4297926E6971F7FCB642E11758D361FC2A22C33BB ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 17:47:11.0057 0x2dc8 UserDataSvc - ok 17:47:11.0057 0x2dc8 UserManager - ok 17:47:11.0072 0x2dc8 UsoSvc - ok 17:47:11.0088 0x2dc8 [ 3E283D06357616CD4117CC15BDB7C4C3, ACE50702EE61C9F93855720037898F19E509D45982F9173643EDA455F54FB9E7 ] VacSvc C:\WINDOWS\System32\vac.dll 17:47:11.0103 0x2dc8 VacSvc - ok 17:47:11.0103 0x2dc8 VaultSvc - ok 17:47:11.0119 0x2dc8 vdrvroot - ok 17:47:11.0119 0x2dc8 vds - ok 17:47:11.0119 0x2dc8 VerifierExt - ok 17:47:11.0119 0x2dc8 vhdmp - ok 17:47:11.0119 0x2dc8 vhf - ok 17:47:11.0135 0x2dc8 vmbus - ok 17:47:11.0135 0x2dc8 VMBusHID - ok 17:47:11.0213 0x2dc8 [ C9F69EBA06A703CE726CC6FC0AEFB5E9, 53E441D9D6017CC4BB75F41C6CB9DA79DE500CACBDDE58104D1857A2B749C373 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 17:47:11.0275 0x2dc8 vmgid - ok 17:47:11.0307 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll 17:47:11.0353 0x2dc8 vmicguestinterface - ok 17:47:11.0353 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicheartbeat C:\WINDOWS\System32\icsvc.dll 17:47:11.0369 0x2dc8 vmicheartbeat - ok 17:47:11.0385 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll 17:47:11.0385 0x2dc8 vmickvpexchange - ok 17:47:11.0416 0x2dc8 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicrdv C:\WINDOWS\System32\icsvcext.dll 17:47:11.0463 0x2dc8 vmicrdv - ok 17:47:11.0478 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicshutdown C:\WINDOWS\System32\icsvc.dll 17:47:11.0494 0x2dc8 vmicshutdown - ok 17:47:11.0494 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmictimesync C:\WINDOWS\System32\icsvc.dll 17:47:11.0510 0x2dc8 vmictimesync - ok 17:47:11.0525 0x2dc8 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicvmsession C:\WINDOWS\System32\icsvc.dll 17:47:11.0525 0x2dc8 vmicvmsession - ok 17:47:11.0541 0x2dc8 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicvss C:\WINDOWS\System32\icsvcext.dll 17:47:11.0557 0x2dc8 vmicvss - ok 17:47:11.0557 0x2dc8 volmgr - ok 17:47:11.0557 0x2dc8 volmgrx - ok 17:47:11.0572 0x2dc8 volsnap - ok 17:47:11.0572 0x2dc8 volume - ok 17:47:11.0603 0x2dc8 [ CB90DACF9194DD9D60A2C1DBFBC1E0D1, BE454495C79857FD8DF4ABAF5BDB7D076467BBC27B31E87FA9D920F2001B670D ] vpci C:\WINDOWS\System32\drivers\vpci.sys 17:47:11.0619 0x2dc8 vpci - ok 17:47:11.0635 0x2dc8 [ 8B02F857621B5482BB05DF9C2CB9AB87, 0BB91BF5D2E2C5FE62AB9FAC0BBE8FD88661983EE2D98235D93166E5B24248D0 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe 17:47:11.0650 0x2dc8 vpnagent - ok 17:47:11.0666 0x2dc8 [ 0F42C39016F82F345C0F2DB2D5B90EB4, 2E957E72BB8D0293F61FA7385BA9400DF7759E1E3D35FE24F3877A6460988F4D ] vpnva C:\WINDOWS\System32\drivers\vpnva64-6.sys 17:47:11.0666 0x2dc8 vpnva - ok 17:47:11.0666 0x2dc8 vsmraid - ok 17:47:11.0666 0x2dc8 VSS - ok 17:47:11.0681 0x2dc8 VSTXRAID - ok 17:47:11.0681 0x2dc8 vwifibus - ok 17:47:11.0681 0x2dc8 vwififlt - ok 17:47:11.0681 0x2dc8 vwifimp - ok 17:47:11.0681 0x2dc8 W32Time - ok 17:47:11.0697 0x2dc8 [ 1C8447EFBC2B36B1CFE889E519F46A6E, 2601185B01909682FB921400C26BE6391AC93F72E84E70E2F49B4059987E191E ] WaaSMedicSvc C:\WINDOWS\System32\WaaSMedicSvc.dll 17:47:11.0744 0x2dc8 WaaSMedicSvc - ok 17:47:11.0744 0x2dc8 WacomPen - ok 17:47:11.0775 0x2dc8 [ 25FAB8A2CFFA21FDB472AB3AE6C17A57, C97E651111643F32FD5B94BEDA31D62E6FF83CA0644FFE8BA98463EC9EA6EF9B ] WalletService C:\WINDOWS\system32\WalletService.dll 17:47:11.0806 0x2dc8 WalletService - ok 17:47:11.0806 0x2dc8 wanarp - ok 17:47:11.0806 0x2dc8 wanarpv6 - ok 17:47:11.0838 0x2dc8 [ 395447583F42FD840520EE87AE439D74, 984AE1EE8BA3B8926C6FC94BC22DE9061C90C15135EA56D0F16C1D3C4EF8DAF8 ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 17:47:11.0853 0x2dc8 WarpJITSvc - ok 17:47:11.0869 0x2dc8 wbengine - ok 17:47:11.0869 0x2dc8 WbioSrvc - ok 17:47:11.0885 0x2dc8 [ 8A304D6CDC067922448CBA1EBB9FFCA8, DE40DD3A32DFF22C477F38B5E2224D55B8CCF2499EFFE0A8E9923728295BAEC1 ] wcifs C:\WINDOWS\system32\drivers\wcifs.sys 17:47:11.0900 0x2dc8 wcifs - ok 17:47:11.0931 0x2dc8 [ 2BCA9BABB5CEC329E604AE9C1DBA9D5B, 315C72B80A5E6278A725E7BD2DE0C8A2751C2A3F9B4D82F7A034B1ADDE687507 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 17:47:11.0963 0x2dc8 Wcmsvc - ok 17:47:11.0978 0x2dc8 wcncsvc - ok 17:47:11.0994 0x2dc8 [ FCA1B5465213EF4DE373A1F7E76D260E, 2548A9D11027871AD0290FDADF1E42E828E6120ECE925B12BAB3F09E25172489 ] wcnfs C:\WINDOWS\system32\drivers\wcnfs.sys 17:47:12.0025 0x2dc8 wcnfs - ok 17:47:12.0041 0x2dc8 [ CD8A7398D8E0710CD3AA316A4427C56B, 81CA3256BACBEBC24380B6C4A5C4385C0F7D2BFFFDB4F990670A1EDBEB00B34D ] WdBoot C:\WINDOWS\system32\drivers\wd\WdBoot.sys 17:47:12.0056 0x2dc8 WdBoot - ok 17:47:12.0072 0x2dc8 Wdf01000 - ok 17:47:12.0088 0x2dc8 [ 58B452788C0051C6C6E62F188EFEE438, C2EC7D28415B1A06A21BE1290848784D1676D0E1E9BEEFD1FF233F248B5F8C9A ] WdFilter C:\WINDOWS\system32\drivers\wd\WdFilter.sys 17:47:12.0088 0x2dc8 WdFilter - ok 17:47:12.0103 0x2dc8 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 17:47:12.0119 0x2dc8 WdiServiceHost - ok 17:47:12.0135 0x2dc8 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 17:47:12.0150 0x2dc8 WdiSystemHost - ok 17:47:12.0150 0x2dc8 wdiwifi - ok 17:47:12.0181 0x2dc8 [ EAF4FB729E94561EE31BDE5BEF869C65, 73290250B565E0A3F453BC45E69FF16A1D964E372A15401A2D3E2CDEB4670B38 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 17:47:12.0197 0x2dc8 WdmCompanionFilter - ok 17:47:12.0197 0x2dc8 [ 65081A53DB730D2347AD66AF7187795A, 3F91C9846D02956AF7B54F121CF3663E8682A6974F9696A35DAAE67697BD53EA ] WdNisDrv C:\WINDOWS\system32\drivers\wd\WdNisDrv.sys 17:47:12.0213 0x2dc8 WdNisDrv - ok 17:47:12.0385 0x2dc8 [ 71C846A2F98CFC9F2E426890523AC276, ECA5BF57913D4B0E4B20CB729BD0FF5DC76DDDF839D5A9841B9E3B62D760C679 ] WdNisSvc C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe 17:47:12.0494 0x2dc8 WdNisSvc - ok 17:47:12.0510 0x2dc8 [ BDCC510E85F7AF152E2DFF030A526EA2, 67830B42DE20EBB30DD33093F30FBA166B27D3C1F25B52DABE1BC436671A1882 ] WebClient C:\WINDOWS\System32\webclnt.dll 17:47:12.0556 0x2dc8 WebClient - ok 17:47:12.0572 0x2dc8 [ 506F0A1CCABF4428733CF854BCBB6832, 859A7E21ABB93A0AD538AAF93D32E31B961EA6012C24567B4C76A9ED8FD4AD46 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 17:47:12.0588 0x2dc8 Wecsvc - ok 17:47:12.0588 0x2dc8 [ D8D727E8311C86B2A993A9006A453BAC, AD6C93F5ED51C621841DF68A25D5932578FADB83689FB668D056F316A8AA749D ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 17:47:12.0619 0x2dc8 WEPHOSTSVC - ok 17:47:12.0635 0x2dc8 [ 30B4568D058E17500E7BF88AECEDF3F1, 612597DFAF63E55ACB80789483CBCF0E5AC5FF7607C478C61E5A86D77B169E9E ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 17:47:12.0666 0x2dc8 wercplsupport - ok 17:47:12.0666 0x2dc8 WerSvc - ok 17:47:12.0681 0x2dc8 [ 0427A785512BB39BEA530DC5367A9A03, 8ED29AE0FDB65D4E1D8CD3FA1783D74EF7B01AB30DD1090C917A74AC88FD4C3E ] WFDSConMgrSvc C:\WINDOWS\System32\wfdsconmgrsvc.dll 17:47:12.0728 0x2dc8 WFDSConMgrSvc - ok 17:47:12.0728 0x2dc8 WFPLWFS - ok 17:47:12.0760 0x2dc8 [ 752F5931696914DF2EC0B27275C38458, 83415E7BE50D9548785FBF6550FA679E425B5990F303E2D74513275A5E1DC828 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 17:47:12.0775 0x2dc8 WiaRpc - ok 17:47:12.0775 0x2dc8 WIMMount - ok 17:47:12.0791 0x2dc8 [ DD752ECFDEC95581A00D62A8B00591EC, ADE71487979EF52B585ACEB3314A2DB5A8032E18FAB766AE773694DF25DEE3F4 ] WinDefend C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe 17:47:12.0791 0x2dc8 WinDefend - ok 17:47:12.0822 0x2dc8 [ EC7C1A7397988EFAF37BF685CA25525D, 50DA7D63CDE618D6426649AED250CEBE229CBBAC718C4E3CD882D816839B4CE9 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 17:47:12.0822 0x2dc8 WindowsTrustedRT - ok 17:47:12.0838 0x2dc8 [ 5F0EDDA201630E132C2251BC9DA85023, 842B5CBA8C33616345EDC2F91B560416AAEAAB15A8CE1F36978B251CE4CBDA16 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 17:47:12.0838 0x2dc8 WindowsTrustedRTProxy - ok 17:47:12.0853 0x2dc8 WinHttpAutoProxySvc - ok 17:47:12.0853 0x2dc8 WinMad - ok 17:47:12.0853 0x2dc8 Winmgmt - ok 17:47:12.0869 0x2dc8 [ 48194110C410B335AC985D9194275A1C, 1CE64B9DD2DB4CCB3916AA4F4C5F8C71C647ABF7845D284019725761138B8A8B ] WinNat C:\WINDOWS\system32\drivers\winnat.sys 17:47:12.0947 0x2dc8 WinNat - ok 17:47:13.0010 0x2dc8 [ C57185CC62AA13E4F5A989D904CC9A16, 993F27F710148335C4244AB74D4B1D232DEDB0E3D82E39093A1E422C72283D31 ] WinRM C:\WINDOWS\system32\WsmSvc.dll 17:47:13.0135 0x2dc8 WinRM - ok 17:47:13.0166 0x2dc8 [ 6FA3D810FE082001B16ADE19829F1E8E, 64B420FC14AB3194D4D2907EA5BE741456928E7E3CB9CBA50FEB8677A43B1971 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 17:47:13.0197 0x2dc8 WINUSB - ok 17:47:13.0197 0x2dc8 WinVerbs - ok 17:47:13.0197 0x2dc8 wisvc - ok 17:47:13.0197 0x2dc8 WlanSvc - ok 17:47:13.0197 0x2dc8 wlidsvc - ok 17:47:13.0244 0x2dc8 [ 59F6A50CD336D0ADD22E3F1FC0D73957, A62469B30325965735FE76AE7D83E5D829AE09D7F0996CC0B42604E68426B088 ] wlpasvc C:\WINDOWS\System32\lpasvc.dll 17:47:13.0306 0x2dc8 wlpasvc - ok 17:47:13.0306 0x2dc8 WmiAcpi - ok 17:47:13.0306 0x2dc8 wmiApSrv - ok 17:47:13.0306 0x2dc8 WMPNetworkSvc - ok 17:47:13.0338 0x2dc8 [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof C:\WINDOWS\system32\drivers\Wof.sys 17:47:13.0353 0x2dc8 Wof - ok 17:47:13.0431 0x2dc8 [ 0D3303BDBC591ECF113601D7853A1AA7, 437CF89541696E0B1A8056F4A5189642FC76D762113ED4F71458AF4D72FC3E9A ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 17:47:13.0494 0x2dc8 workfolderssvc - ok 17:47:13.0494 0x2dc8 WpcMonSvc - ok 17:47:13.0494 0x2dc8 [ 25180559693250D7B7FF16A6BE7AC9BE, 1872BC298C3ED6A204B3BA2AB13D08EB9DAE5B30B7F83CA7A67BFDECA8D043AD ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 17:47:13.0572 0x2dc8 WPDBusEnum - ok 17:47:13.0588 0x2dc8 [ 15C1131EA0216F799C86B03EDAE0BE45, 39F50C084407BC3B498714B74DDA5D63E0539681F324A18ABBED3CD0DE5D52AA ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 17:47:13.0588 0x2dc8 WpdUpFltr - ok 17:47:13.0619 0x2dc8 [ 096969606BB5C4822AB020081EA07FC5, 522F372834B0497215F45ACBC417DA10DCE45C6D3C7099E47BBA18700C294B22 ] WpnService C:\WINDOWS\system32\WpnService.dll 17:47:13.0634 0x2dc8 WpnService - ok 17:47:13.0650 0x2dc8 [ 8B694BC50D2D2B98311283CFE5B40EE6, 734F8985CAD99E8635ACF09309D958D2B7FB05C6FF54DBE3623DC071BECE3413 ] WpnUserService C:\WINDOWS\System32\WpnUserService.dll 17:47:13.0681 0x2dc8 WpnUserService - ok 17:47:13.0681 0x2dc8 ws2ifsl - ok 17:47:13.0697 0x2dc8 [ DCB549367EB94CD8AFAA28E3F77F6493, 9FD2C6E03F398E76403502CFC94EB8EBD2F90ED5E95ABA5E86C1B7F63601C43C ] wscsvc C:\WINDOWS\System32\wscsvc.dll 17:47:13.0728 0x2dc8 wscsvc - ok 17:47:13.0728 0x2dc8 WSearch - ok 17:47:13.0744 0x2dc8 wuauserv - ok 17:47:13.0775 0x2dc8 [ 813DC18CC654CFB1875074139B0FEFD3, 87901841AFD9224BFEC06A712BE3C2371E16D3571210D4792F91034A2B926A06 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 17:47:13.0791 0x2dc8 WudfPf - ok 17:47:13.0806 0x2dc8 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFRd C:\WINDOWS\system32\drivers\WudfRd.sys 17:47:13.0853 0x2dc8 WUDFRd - ok 17:47:13.0853 0x2dc8 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 17:47:13.0869 0x2dc8 WUDFWpdFs - ok 17:47:13.0869 0x2dc8 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 17:47:13.0884 0x2dc8 WUDFWpdMtp - ok 17:47:13.0963 0x2dc8 [ FAFE3B08208AA28C82BC42731B4EEBE8, 333D9CBE6B3492BC30A7B64C1F83494B38AD2CE7C832C1D68FEBD2EB8029230D ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 17:47:14.0041 0x2dc8 WwanSvc - ok 17:47:14.0041 0x2dc8 [ 51D3A1E2285E2E931A553281BBA10E81, 8B371AF5E7717C53780A5C2F68400412C4DB0F01AC6551476FF062B83A7D0AC8 ] xbgm C:\WINDOWS\system32\xbgmsvc.exe 17:47:14.0088 0x2dc8 xbgm - ok 17:47:14.0119 0x2dc8 [ DB952AD196A9548CF5235A71E5197F3F, 6C51EB14B2808665FCB999F376A97018F6B0A91EE6E63A25C044EA59A5713EE1 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 17:47:14.0166 0x2dc8 XblAuthManager - ok 17:47:14.0197 0x2dc8 [ 8C0DD7BFFF5A81AEC26AD720057F5451, 4503D4DD540DB9977BBFF3BF7E92BE9778578B769972CF8A54AF0F1FF5C79BF5 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 17:47:14.0384 0x2dc8 XblGameSave - ok 17:47:14.0400 0x2dc8 [ 0AA38B54EB292CB3EB13FFF948473DBA, C5256ABC0A4A2117EC6F1C88B5BFDBECAE673AD47639A274BFFF92A46452E9B0 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 17:47:14.0431 0x2dc8 xboxgip - ok 17:47:14.0431 0x2dc8 [ C7FEC5C0377E5598BA919B29731CA45F, C153C62742B6F981905AEF7C464761E5894260F26EE164968B21D93979376378 ] XboxGipSvc C:\WINDOWS\System32\XboxGipSvc.dll 17:47:14.0447 0x2dc8 XboxGipSvc - ok 17:47:14.0478 0x2dc8 [ 3A94BD93CD2D9C34725D924230B502A5, 87AF2061D348FFFA190D0E50E6860903BED46968CF64B7765D8D80127C702E6A ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 17:47:14.0541 0x2dc8 XboxNetApiSvc - ok 17:47:14.0556 0x2dc8 [ CE1F78B5C1F14F74242008B2B3153FA2, 682D1F32DD1BBEB031D5129CE40D9C77D3C6CF4FB5979F1918B2482AF617B5BE ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 17:47:14.0572 0x2dc8 xinputhid - ok 17:47:14.0572 0x2dc8 ================ Scan global =============================== 17:47:14.0603 0x2dc8 [ Global ] - ok 17:47:14.0603 0x2dc8 ================ Scan MBR ================================== 17:47:14.0619 0x2dc8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 17:47:14.0681 0x2dc8 \Device\Harddisk0\DR0 - ok 17:47:14.0681 0x2dc8 ================ Scan VBR ================================== 17:47:14.0713 0x2dc8 [ 9ADE897E267BF9E3B2AF0204F102CA23 ] \Device\Harddisk0\DR0\Partition1 17:47:14.0728 0x2dc8 \Device\Harddisk0\DR0\Partition1 - ok 17:47:14.0728 0x2dc8 [ 29E7C40C43DC9D4D0AB2972A4D7C833D ] \Device\Harddisk0\DR0\Partition2 17:47:14.0728 0x2dc8 \Device\Harddisk0\DR0\Partition2 - ok 17:47:14.0728 0x2dc8 [ D85132139A7F33066FE1493E82528DAB ] \Device\Harddisk0\DR0\Partition3 17:47:14.0728 0x2dc8 \Device\Harddisk0\DR0\Partition3 - ok 17:47:14.0728 0x2dc8 [ 8825384F5D0274919C9CDBF7CCCA4992 ] \Device\Harddisk0\DR0\Partition4 17:47:14.0728 0x2dc8 \Device\Harddisk0\DR0\Partition4 - ok 17:47:14.0728 0x2dc8 ================ Scan generic autorun ====================== 17:47:14.0728 0x2dc8 SecurityHealth - ok 17:47:15.0197 0x2dc8 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe 17:47:15.0712 0x2dc8 OneDriveSetup - ok 17:47:15.0775 0x2dc8 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe 17:47:15.0869 0x2dc8 WAB Migrate - ok 17:47:16.0306 0x2dc8 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe 17:47:16.0619 0x2dc8 OneDriveSetup - ok 17:47:16.0650 0x2dc8 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe 17:47:16.0666 0x2dc8 WAB Migrate - ok 17:47:16.0728 0x2dc8 [ 5AD1389669F29C08C50413222BF4A19F, 0EA3A05B7B795E9B5A19FF5235EF95F37720900FD565116DFEE678B63422FC6B ] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe 17:47:16.0759 0x2dc8 FlashPlayerUpdate - ok 17:47:16.0759 0x2dc8 Waiting for KSN requests completion. In queue: 278 17:47:17.0775 0x2dc8 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated ) 17:47:17.0837 0x2dc8 Win FW state via NFP2: enabled ( trusted ) 17:47:17.0931 0x2dc8 ============================================================ 17:47:17.0931 0x2dc8 Scan finished 17:47:17.0931 0x2dc8 ============================================================ 17:47:17.0931 0x11cc Detected object count: 0 17:47:17.0931 0x11cc Actual detected object count: 0 |
14.07.2018, 16:49 | #21 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Klarna Trojaner; ZIP geöffnet Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! adwCleaner v7.x Downloade Dir bitte AdwCleaner auf deinen Desktop (Bebilderte Anleitung).
__________________ --> Klarna Trojaner; ZIP geöffnet |
14.07.2018, 17:20 | #22 |
| Klarna Trojaner; ZIP geöffnet # ------------------------------- # Malwarebytes AdwCleaner 7.2.1.1 # ------------------------------- # Build: 07-04-2018 # Database: 2018-07-04.1 # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 07-14-2018 # Duration: 00:00:10 # OS: Windows 10 Home # Cleaned: 32 # Failed: 0 ***** [ Services ] ***** Deleted chip1click ***** [ Folders ] ***** Deleted C:\Users\Fix\AppData\Local\Host App Service Deleted C:\Users\Public\Desktop\..\App Explorer Deleted C:\Windows\Installer\{503CA94E-0834-4CEE-AD92-BA17AF4E809A} Deleted C:\Users\email\AppData\Local\Downloaded Installations\{DAD82379-C684-4D04-83D5-2B9934A9C362} Deleted C:\Program Files (x86)\Chip Digital GmbH Deleted C:\Windows\Installer\{4D0A0750-B034-4DF8-97DE-26F1212AC2FF} Deleted C:\Users\Public\Pokki ***** [ Files ] ***** Deleted C:\Windows\System32\Tasks_Migrated\App Explorer ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{503CA94E-0834-4CEE-AD92-BA17AF4E809A} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Classes\Installer\Products\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Classes\Installer\Features\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 Deleted HKLM\Software\Classes\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 Deleted HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\chip 1-click download service Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A38C15B2D5649AE4C9CDE19DE50DA96C Deleted HKLM\Software\Classes\Installer\Products\A38C15B2D5649AE4C9CDE19DE50DA96C Deleted HKLM\Software\Classes\Installer\Features\A38C15B2D5649AE4C9CDE19DE50DA96C Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE} Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.solvusoft.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\solvusoft.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.solvusoft.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\solvusoft.com Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C} Deleted HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C} Deleted HKLM\SOFTWARE\Classes\Applications\DriverDocSetup.exe ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** Deleted https://homepage-web.com/?s=acer&m=start Deleted hxxp://homepage-web.com/?s=acer&m=home Deleted Web Search ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Prefetch [+] Delete Tracing Keys [+] Reset Chromium Policies [+] Reset IE Policies [+] Reset Proxy Settings [+] Reset Winsock ************************* AdwCleaner[S00].txt - [4889 octets] - [14/07/2018 18:10:12] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## |
16.07.2018, 08:50 | #23 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Klarna Trojaner; ZIP geöffnet Du sollst doch in code tags posten!! adwcleaner bitte zwecks Kontrolle wiederholen
__________________ Logfiles bitte immer in CODE-Tags posten |
16.07.2018, 19:47 | #24 |
| Klarna Trojaner; ZIP geöffnet Bitte entschuldige meine Dummheit!! Der adw cleaner hat diesmal nicht automatisch gestartet. Habe nun zwei logfiles: Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 7.2.1.1 # ------------------------------- # Build: 07-04-2018 # Database: 2018-07-04.1 # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 07-16-2018 # Duration: 00:00:22 # OS: Windows 10 Home # Scanned: 41365 # Detected: 1 ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** PUP.Optional.Legacy Web Search ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries found. ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. AdwCleaner[S00].txt - [4889 octets] - [14/07/2018 18:10:12] AdwCleaner[C00].txt - [4588 octets] - [14/07/2018 18:10:50] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ########## Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 7.2.1.1 # ------------------------------- # Build: 07-04-2018 # Database: 2018-07-04.1 # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 07-16-2018 # Duration: 00:00:05 # OS: Windows 10 Home # Cleaned: 1 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** No malicious folders cleaned. ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** No malicious registry entries cleaned. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** Deleted Web Search ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Prefetch [+] Delete Tracing Keys [+] Reset Chromium Policies [+] Reset IE Policies [+] Reset Proxy Settings [+] Reset Winsock ************************* AdwCleaner[S00].txt - [4889 octets] - [14/07/2018 18:10:12] AdwCleaner[C00].txt - [4588 octets] - [14/07/2018 18:10:50] AdwCleaner[S01].txt - [1373 octets] - [16/07/2018 20:41:22] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ########## |
17.07.2018, 08:44 | #25 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Klarna Trojaner; ZIP geöffnet Ich brauche neue FRST-Logs . Haken setzen bei addition.txt dann auf Untersuchen klicken.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Klarna Trojaner; ZIP geöffnet |
antivirus, avast, avdevprot, avira, bonjour, canon, defender, desktop, email, explorer, firefox, flash player, google, home, homepage, mozilla, prozesse, registry, scan, security, services.exe, software, svchost.exe, system, trojaner, usb, windows, windowsapps |