Hier noch die Datei vom Scan mit dem TTS Killer Code:
19:25:14.0611 0x1298 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
19:25:22.0321 0x1298 ============================================================
19:25:22.0321 0x1298 Current date / time: 2017/01/21 19:25:22.0321
19:25:22.0321 0x1298 SystemInfo:
19:25:22.0322 0x1298
19:25:22.0322 0x1298 OS Version: 10.0.14393 ServicePack: 0.0
19:25:22.0322 0x1298 Product type: Workstation
19:25:22.0322 0x1298 ComputerName: USER-PC
19:25:22.0322 0x1298 UserName: User
19:25:22.0322 0x1298 Windows directory: C:\WINDOWS
19:25:22.0322 0x1298 System windows directory: C:\WINDOWS
19:25:22.0322 0x1298 Running under WOW64
19:25:22.0322 0x1298 Processor architecture: Intel x64
19:25:22.0322 0x1298 Number of processors: 8
19:25:22.0322 0x1298 Page size: 0x1000
19:25:22.0322 0x1298 Boot type: Normal boot
19:25:22.0322 0x1298 CodeIntegrityOptions = 0x00000001
19:25:22.0322 0x1298 ============================================================
19:25:22.0600 0x1298 KLMD registered as C:\WINDOWS\system32\drivers\97749381.sys
19:25:22.0600 0x1298 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
19:25:24.0157 0x1298 System UUID: {7DA8FC57-3FF4-6C6F-38D8-710A0481991A}
19:25:24.0972 0x1298 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:25:25.0845 0x1298 ============================================================
19:25:25.0845 0x1298 \Device\Harddisk0\DR0:
19:25:25.0845 0x1298 MBR partitions:
19:25:25.0864 0x1298 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x402000, BlocksNum 0x69A00800
19:25:25.0889 0x1298 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x69E03000, BlocksNum 0x9355800
19:25:25.0909 0x1298 ============================================================
19:25:25.0950 0x1298 C: <-> \Device\Harddisk0\DR0\Partition1
19:25:25.0990 0x1298 D: <-> \Device\Harddisk0\DR0\Partition2
19:25:25.0991 0x1298 ============================================================
19:25:25.0991 0x1298 Initialize success
19:25:25.0991 0x1298 ============================================================
19:26:04.0430 0x1b08 ============================================================
19:26:04.0430 0x1b08 Scan started
19:26:04.0430 0x1b08 Mode: Manual; SigCheck; TDLFS;
19:26:04.0430 0x1b08 ============================================================
19:26:04.0430 0x1b08 KSN ping started
19:26:04.0554 0x1b08 KSN ping finished: true
19:26:07.0559 0x1b08 ================ Scan system memory ========================
19:26:07.0559 0x1b08 System memory - ok
19:26:07.0560 0x1b08 ================ Scan services =============================
19:26:07.0809 0x1b08 1394ohci - ok
19:26:07.0835 0x1b08 3ware - ok
19:26:07.0853 0x1b08 ACPI - ok
19:26:07.0862 0x1b08 AcpiDev - ok
19:26:07.0872 0x1b08 acpiex - ok
19:26:07.0880 0x1b08 acpipagr - ok
19:26:07.0908 0x1b08 AcpiPmi - ok
19:26:07.0917 0x1b08 acpitime - ok
19:26:08.0008 0x1b08 [ B932E0EE190778D840F1442DFC0F9612, 8780963F14D57279FDD585BE945ED40F24590D32676C7A9EF94002D38B8BA643 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
19:26:08.0126 0x1b08 AdobeARMservice - ok
19:26:08.0239 0x1b08 [ B79750091FC0842182FE49D263791294, 32FC260A74C9C45CD1E8998523642C285866378FCD9478FEFD15A0CC42EC0E0B ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:26:08.0280 0x1b08 AdobeFlashPlayerUpdateSvc - ok
19:26:08.0294 0x1b08 ADP80XX - ok
19:26:08.0318 0x1b08 AFD - ok
19:26:08.0426 0x1b08 ahcache - ok
19:26:08.0459 0x1b08 AJRouter - ok
19:26:08.0496 0x1b08 ALG - ok
19:26:08.0504 0x1b08 AmdK8 - ok
19:26:08.0535 0x1b08 AmdPPM - ok
19:26:08.0557 0x1b08 amdsata - ok
19:26:08.0576 0x1b08 amdsbs - ok
19:26:08.0584 0x1b08 amdxata - ok
19:26:08.0622 0x1b08 AppHostSvc - ok
19:26:08.0641 0x1b08 AppID - ok
19:26:08.0648 0x1b08 AppIDSvc - ok
19:26:08.0660 0x1b08 Appinfo - ok
19:26:08.0669 0x1b08 applockerfltr - ok
19:26:08.0677 0x1b08 AppMgmt - ok
19:26:08.0700 0x1b08 AppReadiness - ok
19:26:08.0741 0x1b08 AppVClient - ok
19:26:08.0758 0x1b08 AppvStrm - ok
19:26:08.0794 0x1b08 AppvVemgr - ok
19:26:08.0811 0x1b08 AppvVfs - ok
19:26:08.0836 0x1b08 AppXSvc - ok
19:26:08.0844 0x1b08 arcsas - ok
19:26:08.0911 0x1b08 aspnet_state - ok
19:26:08.0920 0x1b08 AsyncMac - ok
19:26:08.0944 0x1b08 atapi - ok
19:26:08.0952 0x1b08 AudioEndpointBuilder - ok
19:26:08.0965 0x1b08 Audiosrv - ok
19:26:09.0119 0x1b08 [ A106D879B42E60FD33E8E3B7E3FFEA19, CAADA9D3E5507652923ADC8278F76FFE3BD5C4CA23F90D5EC5976915B0260F2A ] avgsvc C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
19:26:09.0207 0x1b08 avgsvc - ok
19:26:09.0228 0x1b08 AxInstSV - ok
19:26:09.0241 0x1b08 b06bdrv - ok
19:26:09.0249 0x1b08 BasicDisplay - ok
19:26:09.0258 0x1b08 BasicRender - ok
19:26:09.0377 0x1b08 bcmfn - ok
19:26:09.0386 0x1b08 bcmfn2 - ok
19:26:09.0397 0x1b08 BDESVC - ok
19:26:09.0408 0x1b08 Beep - ok
19:26:09.0429 0x1b08 BFE - ok
19:26:09.0441 0x1b08 BITS - ok
19:26:09.0462 0x1b08 bowser - ok
19:26:09.0474 0x1b08 BrokerInfrastructure - ok
19:26:09.0482 0x1b08 Browser - ok
19:26:09.0500 0x1b08 BthAvrcpTg - ok
19:26:09.0511 0x1b08 BthHFEnum - ok
19:26:09.0520 0x1b08 bthhfhid - ok
19:26:09.0530 0x1b08 BthHFSrv - ok
19:26:09.0538 0x1b08 BTHMODEM - ok
19:26:09.0550 0x1b08 bthserv - ok
19:26:09.0574 0x1b08 buttonconverter - ok
19:26:09.0592 0x1b08 CapImg - ok
19:26:09.0600 0x1b08 cdfs - ok
19:26:09.0623 0x1b08 CDPSvc - ok
19:26:09.0643 0x1b08 CDPUserSvc - ok
19:26:09.0770 0x1b08 cdrom - ok
19:26:09.0824 0x1b08 CertPropSvc - ok
19:26:09.0844 0x1b08 cht4iscsi - ok
19:26:09.0852 0x1b08 cht4vbd - ok
19:26:09.0863 0x1b08 circlass - ok
19:26:09.0880 0x1b08 CLFS - ok
19:26:09.0888 0x1b08 ClipSVC - ok
19:26:09.0896 0x1b08 clreg - ok
19:26:09.0917 0x1b08 CmBatt - ok
19:26:09.0927 0x1b08 CNG - ok
19:26:09.0934 0x1b08 cnghwassist - ok
19:26:09.0986 0x1b08 CompositeBus - ok
19:26:09.0996 0x1b08 COMSysApp - ok
19:26:10.0004 0x1b08 condrv - ok
19:26:10.0017 0x1b08 CoreMessagingRegistrar - ok
19:26:10.0037 0x1b08 CryptSvc - ok
19:26:10.0044 0x1b08 CSC - ok
19:26:10.0052 0x1b08 CscService - ok
19:26:10.0066 0x1b08 dam - ok
19:26:10.0078 0x1b08 DcomLaunch - ok
19:26:10.0086 0x1b08 DcpSvc - ok
19:26:10.0097 0x1b08 defragsvc - ok
19:26:10.0115 0x1b08 DeviceAssociationService - ok
19:26:10.0124 0x1b08 DeviceInstall - ok
19:26:10.0138 0x1b08 DevQueryBroker - ok
19:26:10.0152 0x1b08 Dfsc - ok
19:26:10.0186 0x1b08 [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
19:26:10.0228 0x1b08 dg_ssudbus - ok
19:26:10.0242 0x1b08 Dhcp - ok
19:26:10.0291 0x1b08 diagnosticshub.standardcollector.service - ok
19:26:10.0320 0x1b08 DiagTrack - ok
19:26:10.0344 0x1b08 disk - ok
19:26:10.0367 0x1b08 DmEnrollmentSvc - ok
19:26:10.0375 0x1b08 dmvsc - ok
19:26:10.0391 0x1b08 dmwappushservice - ok
19:26:10.0407 0x1b08 Dnscache - ok
19:26:10.0417 0x1b08 dot3svc - ok
19:26:10.0453 0x1b08 [ C0AA415718DDD13A136E353844628A65, 7E2F2A139E897EAE56038B920BDA9381094BC0AE9E626F6634E6B444B8B0C91F ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
19:26:10.0593 0x1b08 dot4 - ok
19:26:10.0615 0x1b08 [ CC88A1D8A39752859101ECCE1F1BC888, F21C1D478180BC5E932BB2C2E4618E3ED463CA87ACEDEB139682D218435F82F1 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
19:26:10.0695 0x1b08 Dot4Print - ok
19:26:10.0714 0x1b08 [ 292ADB7C57B5457F18F2FC06934B0B40, 12FFDF5F48A79B1B4ADBB88BA2CB6C59DD6719554E8EA6BEEFE99B3E3C66F1AC ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
19:26:10.0790 0x1b08 dot4usb - ok
19:26:10.0798 0x1b08 DPS - ok
19:26:10.0819 0x1b08 drmkaud - ok
19:26:10.0830 0x1b08 DsmSvc - ok
19:26:10.0839 0x1b08 DsSvc - ok
19:26:10.0855 0x1b08 DXGKrnl - ok
19:26:10.0924 0x1b08 EapHost - ok
19:26:10.0956 0x1b08 ebdrv - ok
19:26:10.0991 0x1b08 EFS - ok
19:26:11.0003 0x1b08 EhStorClass - ok
19:26:11.0042 0x1b08 EhStorTcgDrv - ok
19:26:11.0070 0x1b08 embeddedmode - ok
19:26:11.0148 0x1b08 EntAppSvc - ok
19:26:11.0156 0x1b08 ErrDev - ok
19:26:11.0200 0x1b08 EventSystem - ok
19:26:11.0210 0x1b08 exfat - ok
19:26:11.0218 0x1b08 fastfat - ok
19:26:11.0234 0x1b08 Fax - ok
19:26:11.0242 0x1b08 fdc - ok
19:26:11.0251 0x1b08 fdPHost - ok
19:26:11.0260 0x1b08 FDResPub - ok
19:26:11.0322 0x1b08 fhsvc - ok
19:26:11.0342 0x1b08 FileCrypt - ok
19:26:11.0350 0x1b08 FileInfo - ok
19:26:11.0360 0x1b08 Filetrace - ok
19:26:11.0371 0x1b08 flpydisk - ok
19:26:11.0380 0x1b08 FltMgr - ok
19:26:11.0425 0x1b08 FontCache - ok
19:26:11.0490 0x1b08 FontCache3.0.0.0 - ok
19:26:11.0517 0x1b08 FrameServer - ok
19:26:11.0525 0x1b08 FsDepends - ok
19:26:11.0534 0x1b08 Fs_Rec - ok
19:26:11.0606 0x1b08 [ 62EC4CD5F2D14A2ECF21B163D7B70778, D8352D3929F9B620C97D5EFE07DA95386E5F0EFD2E84E5C552B50A6DB2A7DD32 ] FTDIBUS C:\WINDOWS\system32\drivers\ftdibus.sys
19:26:11.0671 0x1b08 FTDIBUS - ok
19:26:11.0716 0x1b08 [ AFD2AF07AEC7177A73B736C5203E61CC, 6E6A0AE367A008756871A5D070B9C7820CFC7A01A1517A5FB794D2DB90B429C0 ] FTSER2K C:\WINDOWS\system32\drivers\ftser2k.sys
19:26:11.0781 0x1b08 FTSER2K - ok
19:26:11.0822 0x1b08 [ 7135030CBF87D724B6037BB023923730, 1F6D9A7D7033226507DEDD53CB686C0F3CDC15FD7E77DBC5263256E8EB541E4E ] FUJ02E3 C:\WINDOWS\system32\drivers\FUJ02E3.sys
19:26:11.0889 0x1b08 FUJ02E3 - ok
19:26:11.0911 0x1b08 fvevol - ok
19:26:11.0935 0x1b08 gencounter - ok
19:26:12.0003 0x1b08 genericusbfn - ok
19:26:12.0202 0x1b08 [ 55FC14B287C6FF306C32B42628CE0D8C, F22D7BA248D616A76AFAC5DA21A419FF13BC4346F402685F6FC6671B04528110 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
19:26:12.0290 0x1b08 GfExperienceService - ok
19:26:12.0304 0x1b08 GPIOClx0101 - ok
19:26:12.0312 0x1b08 gpsvc - ok
19:26:12.0335 0x1b08 GpuEnergyDrv - ok
19:26:12.0432 0x1b08 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:26:12.0462 0x1b08 gupdate - ok
19:26:12.0475 0x1b08 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:26:12.0499 0x1b08 gupdatem - ok
19:26:12.0536 0x1b08 HDAudBus - ok
19:26:12.0545 0x1b08 HidBatt - ok
19:26:12.0553 0x1b08 HidBth - ok
19:26:12.0561 0x1b08 hidi2c - ok
19:26:12.0569 0x1b08 hidinterrupt - ok
19:26:12.0577 0x1b08 HidIr - ok
19:26:12.0597 0x1b08 hidserv - ok
19:26:12.0628 0x1b08 HidUsb - ok
19:26:12.0652 0x1b08 HomeGroupListener - ok
19:26:12.0665 0x1b08 HomeGroupProvider - ok
19:26:12.0673 0x1b08 HpSAMD - ok
19:26:13.0297 0x1b08 [ 4668CBAAC8A908757BE3BE67A30614F8, 088BE28D9C19DB6267C278722539B3A5656C92F378D7A1CE0D6E3B5B289310BE ] HSETUApplicationService C:\Program Files (x86)\HSETU\ApplicationService\ApplicationService.exe
19:26:19.0632 0x1b08 HSETUApplicationService - ok
19:26:19.0672 0x1b08 HTTP - ok
19:26:19.0703 0x1b08 HvHost - ok
19:26:19.0718 0x1b08 hvservice - ok
19:26:19.0727 0x1b08 hwpolicy - ok
19:26:19.0735 0x1b08 hyperkbd - ok
19:26:19.0754 0x1b08 i8042prt - ok
19:26:19.0762 0x1b08 iagpio - ok
19:26:19.0770 0x1b08 iai2c - ok
19:26:19.0778 0x1b08 iaLPSS2i_GPIO2 - ok
19:26:19.0788 0x1b08 iaLPSS2i_I2C - ok
19:26:19.0797 0x1b08 iaLPSSi_GPIO - ok
19:26:19.0806 0x1b08 iaLPSSi_I2C - ok
19:26:19.0866 0x1b08 [ 96FBFC177A603840FFDF059EEB804176, A83FB1DF4B3DF774D44305B6CA566338FD95D937CA53E266A40E2DE19EFC6AB6 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
19:26:19.0928 0x1b08 iaStorA - ok
19:26:19.0946 0x1b08 iaStorAV - ok
19:26:19.0953 0x1b08 iaStorV - ok
19:26:19.0993 0x1b08 ibbus - ok
19:26:20.0030 0x1b08 icssvc - ok
19:26:20.0058 0x1b08 IKEEXT - ok
19:26:20.0065 0x1b08 IndirectKmd - ok
19:26:20.0319 0x1b08 [ 5B301323F69E653CEFE6C14C86627FCA, 2B462CA6C3E1AFB21C41A4C46E4853B0C1DBBF481654C08C1E540001FC0839CC ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
19:26:20.0557 0x1b08 IntcAzAudAddService - ok
19:26:20.0650 0x1b08 [ 4C17F57E43645E75800E9E84787E34E5, 6A1531D97462BA3B3DBDAD472AF15B717C958AA8C5CE2373DE0B2A41C35BE33E ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
19:26:21.0538 0x1b08 Intel(R) Capability Licensing Service TCP IP Interface - ok
19:26:21.0560 0x1b08 intelide - ok
19:26:21.0580 0x1b08 intelpep - ok
19:26:21.0585 0x1b08 intelppm - ok
19:26:21.0599 0x1b08 iorate - ok
19:26:21.0605 0x1b08 IpFilterDriver - ok
19:26:21.0627 0x1b08 iphlpsvc - ok
19:26:21.0632 0x1b08 IPMIDRV - ok
19:26:21.0638 0x1b08 IPNAT - ok
19:26:21.0643 0x1b08 irda - ok
19:26:21.0648 0x1b08 IRENUM - ok
19:26:21.0664 0x1b08 irmon - ok
19:26:21.0671 0x1b08 isapnp - ok
19:26:21.0676 0x1b08 iScsiPrt - ok
19:26:21.0722 0x1b08 [ 0B93A01F786F37A4B1EDE84E639FFF10, 8747109A2FA2B80C8C5F5B6D2372C1B0DA4F4BF9DC1D551195ADF0715C260223 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
19:26:21.0740 0x1b08 jhi_service - ok
19:26:21.0759 0x1b08 kbdclass - ok
19:26:21.0776 0x1b08 kbdhid - ok
19:26:21.0787 0x1b08 kdnic - ok
19:26:21.0797 0x1b08 KeyIso - ok
19:26:21.0804 0x1b08 KSecDD - ok
19:26:21.0819 0x1b08 KSecPkg - ok
19:26:21.0827 0x1b08 ksthunk - ok
19:26:21.0841 0x1b08 KtmRm - ok
19:26:21.0858 0x1b08 LanmanServer - ok
19:26:21.0875 0x1b08 LanmanWorkstation - ok
19:26:21.0886 0x1b08 lfsvc - ok
19:26:21.0893 0x1b08 LicenseManager - ok
19:26:21.0901 0x1b08 lltdio - ok
19:26:21.0911 0x1b08 lltdsvc - ok
19:26:21.0935 0x1b08 lmhosts - ok
19:26:21.0980 0x1b08 [ C31139E0907170E2A3FA8D19DCC23D35, C504E93D2018E9E487A428483C646C67B4ECE122560CF0FA49A1626E1509EEAE ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
19:26:22.0021 0x1b08 LMS - ok
19:26:22.0034 0x1b08 LSI_SAS - ok
19:26:22.0042 0x1b08 LSI_SAS2i - ok
19:26:22.0051 0x1b08 LSI_SAS3i - ok
19:26:22.0058 0x1b08 LSI_SSS - ok
19:26:22.0083 0x1b08 LSM - ok
19:26:22.0094 0x1b08 luafv - ok
19:26:22.0106 0x1b08 MapsBroker - ok
19:26:22.0114 0x1b08 megasas - ok
19:26:22.0138 0x1b08 megasas2i - ok
19:26:22.0149 0x1b08 megasr - ok
19:26:22.0188 0x1b08 [ 8751062F2F7EC78DE92D778A08099DDE, F10BE771FF9E02A51CF3A167BB967167DE4F66647D7F1508CB27D8FDD8623700 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
19:26:22.0214 0x1b08 MEIx64 - ok
19:26:22.0223 0x1b08 MessagingService - ok
19:26:22.0250 0x1b08 mlx4_bus - ok
19:26:22.0258 0x1b08 MMCSS - ok
19:26:22.0266 0x1b08 Modem - ok
19:26:22.0286 0x1b08 monitor - ok
19:26:22.0339 0x1b08 mouclass - ok
19:26:22.0349 0x1b08 mouhid - ok
19:26:22.0362 0x1b08 mountmgr - ok
19:26:22.0419 0x1b08 [ E464A0A92E2E354D07DDA713D3E10DE4, D5CF213F03DF54EF9933027A7A7D4413371C1ECBFF61E4DE818D50FA72C8C5FC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
19:26:22.0451 0x1b08 MozillaMaintenance - ok
19:26:22.0460 0x1b08 mpsdrv - ok
19:26:22.0475 0x1b08 MpsSvc - ok
19:26:22.0496 0x1b08 MQAC - ok
19:26:22.0505 0x1b08 MRxDAV - ok
19:26:22.0515 0x1b08 mrxsmb - ok
19:26:22.0523 0x1b08 mrxsmb10 - ok
19:26:22.0531 0x1b08 mrxsmb20 - ok
19:26:22.0539 0x1b08 MsBridge - ok
19:26:22.0556 0x1b08 MSDTC - ok
19:26:22.0570 0x1b08 Msfs - ok
19:26:22.0578 0x1b08 msgpiowin32 - ok
19:26:22.0585 0x1b08 mshidkmdf - ok
19:26:22.0593 0x1b08 mshidumdf - ok
19:26:22.0613 0x1b08 msisadrv - ok
19:26:22.0646 0x1b08 MSiSCSI - ok
19:26:22.0654 0x1b08 msiserver - ok
19:26:22.0680 0x1b08 MSKSSRV - ok
19:26:22.0688 0x1b08 MsLldp - ok
19:26:22.0706 0x1b08 MSMQ - ok
19:26:22.0713 0x1b08 MSPCLOCK - ok
19:26:22.0736 0x1b08 MSPQM - ok
19:26:22.0744 0x1b08 MsRPC - ok
19:26:22.0766 0x1b08 MsSecFlt - ok
19:26:22.0775 0x1b08 mssmbios - ok
19:26:22.0782 0x1b08 MSTEE - ok
19:26:22.0802 0x1b08 MTConfig - ok
19:26:22.0809 0x1b08 Mup - ok
19:26:22.0817 0x1b08 mvumis - ok
19:26:22.0844 0x1b08 NativeWifiP - ok
19:26:22.0854 0x1b08 NcaSvc - ok
19:26:22.0863 0x1b08 NcbService - ok
19:26:22.0871 0x1b08 NcdAutoSetup - ok
19:26:22.0879 0x1b08 ndfltr - ok
19:26:22.0896 0x1b08 NDIS - ok
19:26:22.0904 0x1b08 NdisCap - ok
19:26:22.0936 0x1b08 NdisImPlatform - ok
19:26:23.0035 0x1b08 NdisTapi - ok
19:26:23.0045 0x1b08 Ndisuio - ok
19:26:23.0056 0x1b08 NdisVirtualBus - ok
19:26:23.0064 0x1b08 NdisWan - ok
19:26:23.0073 0x1b08 ndiswanlegacy - ok
19:26:23.0080 0x1b08 ndproxy - ok
19:26:23.0089 0x1b08 Ndu - ok
19:26:23.0097 0x1b08 NetAdapterCx - ok
19:26:23.0106 0x1b08 NetBIOS - ok
19:26:23.0119 0x1b08 NetBT - ok
19:26:23.0127 0x1b08 Netlogon - ok
19:26:23.0145 0x1b08 Netman - ok
19:26:23.0210 0x1b08 NetMsmqActivator - ok
19:26:23.0216 0x1b08 NetPipeActivator - ok
19:26:23.0230 0x1b08 netprofm - ok
19:26:23.0263 0x1b08 NetSetupSvc - ok
19:26:23.0270 0x1b08 NetTcpActivator - ok
19:26:23.0278 0x1b08 NetTcpPortSharing - ok
19:26:23.0356 0x1b08 NgcCtnrSvc - ok
19:26:23.0397 0x1b08 NgcSvc - ok
19:26:23.0422 0x1b08 NlaSvc - ok
19:26:23.0430 0x1b08 Npfs - ok
19:26:23.0469 0x1b08 npsvctrig - ok
19:26:23.0493 0x1b08 nsi - ok
19:26:23.0501 0x1b08 nsiproxy - ok
19:26:23.0528 0x1b08 NTFS - ok
19:26:23.0536 0x1b08 Null - ok
19:26:23.0570 0x1b08 [ 417F5789073BE7B3DE45C308F3C527DF, 5137D7451D8D58BF5D7FFDF83F8C72CAAB05AFE237318FC4E1AE06F4FFE5CBFD ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
19:26:23.0609 0x1b08 NVHDA - ok
19:26:24.0855 0x1b08 [ 6B35BB6D1265906F93E37E1B737E31DB, 7168DD2185D5BC3EFB492254AAE079FAB8F5718FDFF1DE8151BC42F9318F7F92 ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys
19:26:25.0692 0x1b08 nvlddmkm - ok
19:26:25.0846 0x1b08 [ DCAA93D28D6FC75A4D80AE410008BA90, 7EDB69747C95FB68A4DF1932CF45E078DE94364D7A37D83A29952977A41D1FD7 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
19:26:25.0954 0x1b08 NvNetworkService - ok
19:26:25.0992 0x1b08 nvraid - ok
19:26:26.0002 0x1b08 nvstor - ok
19:26:26.0073 0x1b08 [ 9408391358F3B9FD0F59E27151383C51, 777A41DE1D8D71833369D1335A083BA8F197317CB62D0E65EFFCC9760D84F2AB ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
19:26:26.0095 0x1b08 NvStreamKms - ok
19:26:26.0106 0x1b08 NvStreamSvc - ok
19:26:26.0208 0x1b08 [ 85397430F424516BF8300FAAEF929366, 2EDF41407C7483AC8E4703BC0A13F764563E4B00D6923FD4678E6E361AC14D6B ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
19:26:26.0347 0x1b08 nvsvc - ok
19:26:26.0392 0x1b08 [ 6AC68DDFCAC19A300D738AF3493E46AA, 4E92215B6E3ED263E89489851C6FEAD08D3155C82A74E880DA460DED0021DF42 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
19:26:26.0413 0x1b08 nvvad_WaveExtensible - ok
19:26:26.0606 0x1b08 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:26:26.0675 0x1b08 odserv - ok
19:26:26.0703 0x1b08 OneSyncSvc - ok
19:26:26.0741 0x1b08 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:26:26.0768 0x1b08 ose - ok
19:26:26.0797 0x1b08 p2pimsvc - ok
19:26:26.0809 0x1b08 p2psvc - ok
19:26:26.0817 0x1b08 Parport - ok
19:26:26.0830 0x1b08 partmgr - ok
19:26:26.0857 0x1b08 PcaSvc - ok
19:26:26.0877 0x1b08 pci - ok
19:26:26.0897 0x1b08 pciide - ok
19:26:26.0907 0x1b08 pcmcia - ok
19:26:26.0914 0x1b08 pcw - ok
19:26:26.0961 0x1b08 pdc - ok
19:26:26.0979 0x1b08 PEAUTH - ok
19:26:26.0988 0x1b08 PeerDistSvc - ok
19:26:26.0996 0x1b08 percsas2i - ok
19:26:27.0004 0x1b08 percsas3i - ok
19:26:27.0065 0x1b08 PerfHost - ok
19:26:27.0091 0x1b08 PhoneSvc - ok
19:26:27.0118 0x1b08 PimIndexMaintenanceSvc - ok
19:26:27.0140 0x1b08 pla - ok
19:26:27.0159 0x1b08 PlugPlay - ok
19:26:27.0167 0x1b08 PNRPAutoReg - ok
19:26:27.0178 0x1b08 PNRPsvc - ok
19:26:27.0192 0x1b08 PolicyAgent - ok
19:26:27.0204 0x1b08 Power - ok
19:26:27.0212 0x1b08 PptpMiniport - ok
19:26:27.0455 0x1b08 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
19:26:27.0862 0x1b08 PrintNotify - ok
19:26:27.0885 0x1b08 Processor - ok
19:26:27.0894 0x1b08 ProfSvc - ok
19:26:27.0904 0x1b08 Psched - ok
19:26:27.0932 0x1b08 [ 543A4EF0923BF70D126625B034EF25AF, 9CC82C5221F11850419A796D48D5452B3DEE0C8E8E85A818F4AAA869673F9740 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
19:26:27.0956 0x1b08 PSI_SVC_2 - ok
19:26:27.0963 0x1b08 QWAVE - ok
19:26:27.0972 0x1b08 QWAVEdrv - ok
19:26:27.0981 0x1b08 RasAcd - ok
19:26:28.0004 0x1b08 RasAgileVpn - ok
19:26:28.0013 0x1b08 RasAuto - ok
19:26:28.0021 0x1b08 Rasl2tp - ok
19:26:28.0032 0x1b08 RasMan - ok
19:26:28.0039 0x1b08 RasPppoe - ok
19:26:28.0049 0x1b08 RasSstp - ok
19:26:28.0057 0x1b08 rdbss - ok
19:26:28.0076 0x1b08 rdpbus - ok
19:26:28.0086 0x1b08 RDPDR - ok
19:26:28.0127 0x1b08 RdpVideoMiniport - ok
19:26:28.0133 0x1b08 rdyboost - ok
19:26:28.0140 0x1b08 ReFSv1 - ok
19:26:28.0151 0x1b08 RemoteAccess - ok
19:26:28.0163 0x1b08 RemoteRegistry - ok
19:26:28.0184 0x1b08 RetailDemo - ok
19:26:28.0207 0x1b08 RmSvc - ok
19:26:28.0218 0x1b08 RpcEptMapper - ok
19:26:28.0231 0x1b08 RpcLocator - ok
19:26:28.0241 0x1b08 RpcSs - ok
19:26:28.0249 0x1b08 rspndr - ok
19:26:28.0282 0x1b08 rt640x64 - ok
19:26:28.0297 0x1b08 s3cap - ok
19:26:28.0402 0x1b08 SamSs - ok
19:26:28.0444 0x1b08 sbp2port - ok
19:26:28.0483 0x1b08 SCardSvr - ok
19:26:28.0516 0x1b08 ScDeviceEnum - ok
19:26:28.0533 0x1b08 scfilter - ok
19:26:28.0566 0x1b08 Schedule - ok
19:26:28.0581 0x1b08 scmbus - ok
19:26:28.0589 0x1b08 scmdisk0101 - ok
19:26:28.0603 0x1b08 SCPolicySvc - ok
19:26:28.0622 0x1b08 sdbus - ok
19:26:28.0631 0x1b08 SDRSVC - ok
19:26:28.0639 0x1b08 sdstor - ok
19:26:28.0649 0x1b08 seclogon - ok
19:26:28.0658 0x1b08 SENS - ok
19:26:28.0663 0x1b08 Sense - ok
19:26:28.0675 0x1b08 SensorDataService - ok
19:26:28.0693 0x1b08 SensorService - ok
19:26:28.0701 0x1b08 SensrSvc - ok
19:26:28.0709 0x1b08 SerCx - ok
19:26:28.0719 0x1b08 SerCx2 - ok
19:26:28.0731 0x1b08 Serenum - ok
19:26:28.0741 0x1b08 Serial - ok
19:26:28.0750 0x1b08 sermouse - ok
19:26:28.0776 0x1b08 SessionEnv - ok
19:26:28.0796 0x1b08 sfloppy - ok
19:26:28.0835 0x1b08 SharedAccess - ok
19:26:28.0844 0x1b08 ShellHWDetection - ok
19:26:28.0868 0x1b08 shpamsvc - ok
19:26:28.0876 0x1b08 SiSRaid2 - ok
19:26:28.0887 0x1b08 SiSRaid4 - ok
19:26:28.0935 0x1b08 smphost - ok
19:26:28.0962 0x1b08 SmsRouter - ok
19:26:28.0983 0x1b08 SNMPTRAP - ok
19:26:29.0007 0x1b08 spaceport - ok
19:26:29.0016 0x1b08 SpbCx - ok
19:26:29.0032 0x1b08 Spooler - ok
19:26:29.0048 0x1b08 sppsvc - ok
19:26:29.0057 0x1b08 srv - ok
19:26:29.0076 0x1b08 srv2 - ok
19:26:29.0086 0x1b08 srvnet - ok
19:26:29.0101 0x1b08 SSDPSRV - ok
19:26:29.0119 0x1b08 SstpSvc - ok
19:26:29.0162 0x1b08 [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
19:26:29.0201 0x1b08 ssudmdm - ok
19:26:29.0281 0x1b08 [ A72B7C730B1EF1E7764044737E802FAD, D102122D2B938A48F8A6761F1F75D37476D628C1E5D644DFB30262CE50E2D250 ] StarMoney 10 OnlineUpdate C:\Program Files (x86)\StarMoney 10 S-Edition\ouservice\StarMoneyOnlineUpdate.exe
19:26:29.0463 0x1b08 StarMoney 10 OnlineUpdate - ok
19:26:29.0489 0x1b08 StateRepository - ok
19:26:29.0595 0x1b08 [ 718D79F2E7EC3AFFD3661DA81F93BBEA, BA2A4E58E5EE06392EE6F4C2E738DC807EC5A8B9F6DD4B7935FE27CBC648E390 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:26:29.0647 0x1b08 Stereo Service - ok
19:26:29.0670 0x1b08 stexstor - ok
19:26:29.0706 0x1b08 stisvc - ok
19:26:29.0715 0x1b08 storahci - ok
19:26:29.0725 0x1b08 storflt - ok
19:26:29.0733 0x1b08 stornvme - ok
19:26:29.0743 0x1b08 storqosflt - ok
19:26:29.0752 0x1b08 StorSvc - ok
19:26:29.0760 0x1b08 storufs - ok
19:26:29.0770 0x1b08 storvsc - ok
19:26:29.0778 0x1b08 svsvc - ok
19:26:29.0817 0x1b08 [ 04CF20310145DEC63D5387BEAFF77D9A, 5017AF8C2DFBFE1F9946FF5AF229D62D141118EA923EEFA994EB4C7B52DEF208 ] SWDUMon C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
19:26:29.0871 0x1b08 SWDUMon - ok
19:26:29.0880 0x1b08 swenum - ok
19:26:29.0890 0x1b08 swprv - ok
19:26:29.0914 0x1b08 Synth3dVsc - ok
19:26:29.0927 0x1b08 SysMain - ok
19:26:29.0943 0x1b08 SystemEventsBroker - ok
19:26:29.0952 0x1b08 TabletInputService - ok
19:26:29.0961 0x1b08 TapiSrv - ok
19:26:29.0991 0x1b08 [ E91BCBD521606E60C2807813D8EAC579, 9B9329535AF753E5922BD53DEF08E5E99C51927923C7DF87112A0E293DE47FAC ] tbhsd C:\WINDOWS\system32\drivers\tbhsd.sys
19:26:30.0060 0x1b08 tbhsd - ok
19:26:30.0114 0x1b08 Tcpip - ok
19:26:30.0124 0x1b08 Tcpip6 - ok
19:26:30.0139 0x1b08 tcpipreg - ok
19:26:30.0154 0x1b08 tdx - ok
19:26:30.0532 0x1b08 [ 2AA61246A5B813C1B12BCCFAA6F23DD8, 74EE3DB839A0F4BC781294803281DB2248D013B8808FF05F2EE9597C14C6FEED ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
19:26:30.0915 0x1b08 TeamViewer - ok
19:26:30.0939 0x1b08 terminpt - ok
19:26:30.0948 0x1b08 TermService - ok
19:26:30.0965 0x1b08 Themes - ok
19:26:30.0988 0x1b08 TieringEngineService - ok
19:26:30.0997 0x1b08 tiledatamodelsvc - ok
19:26:31.0006 0x1b08 TimeBrokerSvc - ok
19:26:31.0019 0x1b08 TPM - ok
19:26:31.0038 0x1b08 TrkWks - ok
19:26:31.0079 0x1b08 TrustedInstaller - ok
19:26:31.0092 0x1b08 tsusbflt - ok
19:26:31.0114 0x1b08 TsUsbGD - ok
19:26:31.0124 0x1b08 tsusbhub - ok
19:26:31.0132 0x1b08 tunnel - ok
19:26:31.0146 0x1b08 tzautoupdate - ok
19:26:31.0162 0x1b08 UASPStor - ok
19:26:31.0171 0x1b08 UcmCx0101 - ok
19:26:31.0182 0x1b08 UcmTcpciCx0101 - ok
19:26:31.0192 0x1b08 UcmUcsi - ok
19:26:31.0206 0x1b08 Ucx01000 - ok
19:26:31.0215 0x1b08 UdeCx - ok
19:26:31.0228 0x1b08 udfs - ok
19:26:31.0238 0x1b08 UEFI - ok
19:26:31.0246 0x1b08 UevAgentDriver - ok
19:26:31.0259 0x1b08 UevAgentService - ok
19:26:31.0268 0x1b08 Ufx01000 - ok
19:26:31.0278 0x1b08 UfxChipidea - ok
19:26:31.0290 0x1b08 ufxsynopsys - ok
19:26:31.0311 0x1b08 UI0Detect - ok
19:26:31.0319 0x1b08 umbus - ok
19:26:31.0329 0x1b08 UmPass - ok
19:26:31.0340 0x1b08 UmRdpService - ok
19:26:31.0349 0x1b08 UnistoreSvc - ok
19:26:31.0363 0x1b08 upnphost - ok
19:26:31.0371 0x1b08 UrsChipidea - ok
19:26:31.0382 0x1b08 UrsCx01000 - ok
19:26:31.0393 0x1b08 UrsSynopsys - ok
19:26:31.0403 0x1b08 usbccgp - ok
19:26:31.0412 0x1b08 usbcir - ok
19:26:31.0420 0x1b08 usbehci - ok
19:26:31.0429 0x1b08 usbhub - ok
19:26:31.0438 0x1b08 USBHUB3 - ok
19:26:31.0446 0x1b08 usbohci - ok
19:26:31.0455 0x1b08 usbprint - ok
19:26:31.0487 0x1b08 [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:26:31.0537 0x1b08 usbscan - ok
19:26:31.0546 0x1b08 usbser - ok
19:26:31.0557 0x1b08 USBSTOR - ok
19:26:31.0565 0x1b08 usbuhci - ok
19:26:31.0577 0x1b08 USBXHCI - ok
19:26:31.0588 0x1b08 UserDataSvc - ok
19:26:31.0616 0x1b08 UserManager - ok
19:26:31.0629 0x1b08 UsoSvc - ok
19:26:31.0638 0x1b08 VaultSvc - ok
19:26:31.0647 0x1b08 vdrvroot - ok
19:26:31.0666 0x1b08 vds - ok
19:26:31.0675 0x1b08 VerifierExt - ok
19:26:31.0685 0x1b08 vhdmp - ok
19:26:31.0696 0x1b08 vhf - ok
19:26:31.0706 0x1b08 vmbus - ok
19:26:31.0715 0x1b08 VMBusHID - ok
19:26:31.0724 0x1b08 vmgid - ok
19:26:31.0733 0x1b08 vmicguestinterface - ok
19:26:31.0741 0x1b08 vmicheartbeat - ok
19:26:31.0750 0x1b08 vmickvpexchange - ok
19:26:31.0778 0x1b08 vmicrdv - ok
19:26:31.0787 0x1b08 vmicshutdown - ok
19:26:31.0796 0x1b08 vmictimesync - ok
19:26:31.0806 0x1b08 vmicvmsession - ok
19:26:31.0814 0x1b08 vmicvss - ok
19:26:31.0825 0x1b08 volmgr - ok
19:26:31.0834 0x1b08 volmgrx - ok
19:26:31.0844 0x1b08 volsnap - ok
19:26:31.0855 0x1b08 volume - ok
19:26:31.0871 0x1b08 vpci - ok
19:26:31.0880 0x1b08 vsmraid - ok
19:26:31.0890 0x1b08 VSS - ok
19:26:31.0898 0x1b08 VSTXRAID - ok
19:26:31.0908 0x1b08 vwifibus - ok
19:26:31.0917 0x1b08 vwififlt - ok
19:26:31.0933 0x1b08 W32Time - ok
19:26:31.0956 0x1b08 w3logsvc - ok
19:26:31.0977 0x1b08 W3SVC - ok
19:26:31.0986 0x1b08 WacomPen - ok
19:26:31.0998 0x1b08 WalletService - ok
19:26:32.0007 0x1b08 wanarp - ok
19:26:32.0017 0x1b08 wanarpv6 - ok
19:26:32.0027 0x1b08 WAS - ok
19:26:32.0038 0x1b08 wbengine - ok
19:26:32.0062 0x1b08 WbioSrvc - ok
19:26:32.0072 0x1b08 wcifs - ok
19:26:32.0082 0x1b08 Wcmsvc - ok
19:26:32.0093 0x1b08 wcncsvc - ok
19:26:32.0102 0x1b08 wcnfs - ok
19:26:32.0111 0x1b08 WdBoot - ok
19:26:32.0121 0x1b08 Wdf01000 - ok
19:26:32.0130 0x1b08 WdFilter - ok
19:26:32.0141 0x1b08 WdiServiceHost - ok
19:26:32.0149 0x1b08 WdiSystemHost - ok
19:26:32.0161 0x1b08 wdiwifi - ok
19:26:32.0171 0x1b08 WdNisDrv - ok
19:26:32.0185 0x1b08 WdNisSvc - ok
19:26:32.0195 0x1b08 WebClient - ok
19:26:32.0204 0x1b08 Wecsvc - ok
19:26:32.0213 0x1b08 WEPHOSTSVC - ok
19:26:32.0223 0x1b08 wercplsupport - ok
19:26:32.0232 0x1b08 WerSvc - ok
19:26:32.0241 0x1b08 WFPLWFS - ok
19:26:32.0250 0x1b08 WiaRpc - ok
19:26:32.0259 0x1b08 WIMMount - ok
19:26:32.0268 0x1b08 WinDefend - ok
19:26:32.0306 0x1b08 WindowsTrustedRT - ok
19:26:32.0314 0x1b08 WindowsTrustedRTProxy - ok
19:26:32.0339 0x1b08 WinHttpAutoProxySvc - ok
19:26:32.0347 0x1b08 WinMad - ok
19:26:32.0379 0x1b08 Winmgmt - ok
19:26:32.0410 0x1b08 WinRM - ok
19:26:32.0429 0x1b08 WINUSB - ok
19:26:32.0439 0x1b08 WinVerbs - ok
19:26:32.0472 0x1b08 wisvc - ok
19:26:32.0495 0x1b08 WlanSvc - ok
19:26:32.0526 0x1b08 wlidsvc - ok
19:26:32.0535 0x1b08 WmiAcpi - ok
19:26:32.0561 0x1b08 wmiApSrv - ok
19:26:32.0588 0x1b08 WMPNetworkSvc - ok
19:26:32.0610 0x1b08 Wof - ok
19:26:32.0648 0x1b08 workfolderssvc - ok
19:26:32.0660 0x1b08 WPDBusEnum - ok
19:26:32.0670 0x1b08 WpdUpFltr - ok
19:26:32.0681 0x1b08 WpnService - ok
19:26:32.0692 0x1b08 WpnUserService - ok
19:26:32.0731 0x1b08 ws2ifsl - ok
19:26:32.0743 0x1b08 wscsvc - ok
19:26:32.0752 0x1b08 WSearch - ok
19:26:32.0786 0x1b08 wuauserv - ok
19:26:32.0796 0x1b08 WudfPf - ok
19:26:32.0806 0x1b08 WUDFRd - ok
19:26:32.0817 0x1b08 wudfsvc - ok
19:26:32.0827 0x1b08 WUDFWpdFs - ok
19:26:32.0837 0x1b08 WUDFWpdMtp - ok
19:26:32.0857 0x1b08 WwanSvc - ok
19:26:32.0883 0x1b08 XblAuthManager - ok
19:26:32.0909 0x1b08 XblGameSave - ok
19:26:32.0919 0x1b08 xboxgip - ok
19:26:32.0931 0x1b08 XboxNetApiSvc - ok
19:26:32.0955 0x1b08 xinputhid - ok
19:26:32.0960 0x1b08 ================ Scan global ===============================
19:26:33.0173 0x1b08 [ Global ] - ok
19:26:33.0174 0x1b08 ================ Scan MBR ==================================
19:26:33.0237 0x1b08 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:26:33.0560 0x1b08 \Device\Harddisk0\DR0 - ok
19:26:33.0561 0x1b08 ================ Scan VBR ==================================
19:26:33.0566 0x1b08 [ 7A11ECDB4FA38B1091EA971D42212A3E ] \Device\Harddisk0\DR0\Partition1
19:26:33.0569 0x1b08 \Device\Harddisk0\DR0\Partition1 - ok
19:26:33.0595 0x1b08 [ 4152AA63828B460FB4D8BCF11C126D8B ] \Device\Harddisk0\DR0\Partition2
19:26:33.0599 0x1b08 \Device\Harddisk0\DR0\Partition2 - ok
19:26:33.0600 0x1b08 ================ Scan generic autorun ======================
19:26:34.0489 0x1b08 [ 7F9E5AD3AD1C0CCCF8094E28911B5068, 76D043B7DE0A175B8AA510F49F5983C9852FD4F38AE0FB023D9A339BB63AC269 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:26:35.0131 0x1b08 RTHDVCPL - ok
19:26:35.0791 0x1b08 [ 2C4DE73532291CB04EA4A492C233830A, 188D9840D563DB181A3494BB44B405F57D25C3F643D1D49F02BC8C811CDA2DB5 ] C:\Program Files\Avanquest\PDF Experte 9 Ultimate\vspdfprsrv.exe
19:26:36.0751 0x1b08 vspdfprsrv.exe - detected UnsignedFile.Multi.Generic ( 1 )
19:26:37.0101 0x1b08 Detect skipped due to KSN trusted
19:26:37.0101 0x1b08 vspdfprsrv.exe - ok
19:26:37.0325 0x1b08 [ D9133D4157664B1E2ACFC2CD56CCB599, 0B2B8EE7D45962026A30833D3D7F59FB1FB07085904C2E77A10714F38910E462 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
19:26:37.0506 0x1b08 NvBackend - ok
19:26:37.0542 0x1b08 ShadowPlay - ok
19:26:37.0543 0x1b08 WindowsDefender - ok
19:26:37.0572 0x1b08 USB3MON - ok
19:26:37.0680 0x1b08 [ 4D74A212A0AA5CCC05A8B365487DEC30, 950E451E3BAA062C284984CEADE2C0CCD58F77C9D1B0D9E013BD5503DEC2331C ] C:\Program Files (x86)\PFU\ScanSnap\Driver\SSDriver\fi5110\SsWiaChecker.exe
19:26:37.0830 0x1b08 ScanSnap WIA Service Checker - detected UnsignedFile.Multi.Generic ( 1 )
19:26:38.0165 0x1b08 Detect skipped due to KSN trusted
19:26:38.0165 0x1b08 ScanSnap WIA Service Checker - ok
19:26:38.0228 0x1b08 [ 278ED9F250174B742387F20DB99BCBEC, C3BE162B1E35CF379EECF816D21C25C60599C6C382203051496FED763428849E ] C:\Program Files (x86)\PFU\ScanSnap\Update\SsUWatcher.exe
19:26:38.0368 0x1b08 ScanSnap OnlineUpdate Watcher - detected UnsignedFile.Multi.Generic ( 1 )
19:26:39.0887 0x1b08 ScanSnap OnlineUpdate Watcher ( UnsignedFile.Multi.Generic ) - warning
19:26:39.0887 0x1b08 Force sending object to P2P due to detect: C:\Program Files (x86)\PFU\ScanSnap\Update\SsUWatcher.exe
19:26:43.0191 0x1b08 Object send P2P result: false
19:26:43.0245 0x1b08 [ 331B1ABBA88F92F53AC9CC10799E3886, A4847EECA8676E378155911A4DF196BB4E25E21427A53DD60B1B3DEF75B10653 ] C:\Program Files (x86)\PFU\Raku2Smart\RKiwrtKS.exe
19:26:43.0362 0x1b08 RkiwrtkS - ok
19:26:43.0444 0x1b08 [ 4DCD34F7B2B711B6C1B1B5689732DB57, 729247A51981D0E9E5A35F136ABD414D8450E3D8F47608F59EE4B5B3AA1BEBA3 ] C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe
19:26:43.0472 0x1b08 AvgUi - ok
19:26:43.0533 0x1b08 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
19:26:43.0586 0x1b08 SunJavaUpdateSched - ok
19:26:43.0634 0x1b08 OneDriveSetup - ok
19:26:43.0638 0x1b08 OneDriveSetup - ok
19:26:43.0842 0x1b08 [ CD7DC286D2FDFACB965C3E10967B2199, 30FFB133E70D694BE6968E86E999C797EE7349DCC4E9ACFB338412C039374388 ] C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe
19:26:43.0963 0x1b08 OneDrive - ok
19:26:44.0007 0x1b08 AudialsNotifier - ok
19:26:44.0012 0x1b08 OneDriveSetup - ok
19:26:44.0051 0x1b08 WAB Migrate - ok
19:26:44.0121 0x1b08 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x61100 ( enabled : updated )
19:26:44.0131 0x1b08 Win FW state via NFP2: enabled ( trusted )
19:26:44.0132 0x1b08 ============================================================
19:26:44.0132 0x1b08 Scan finished
19:26:44.0132 0x1b08 ============================================================
19:26:44.0148 0x1a88 Detected object count: 1
19:26:44.0148 0x1a88 Actual detected object count: 1
19:27:45.0674 0x1a88 C:\Program Files (x86)\PFU\ScanSnap\Update\SsUWatcher.exe - copied to quarantine
19:27:45.0817 0x1a88 ScanSnap OnlineUpdate Watcher ( UnsignedFile.Multi.Generic ) - User select action: Quarantine |