Hallo und schönen Sonntag!
Seit 2 Tagen ist mein PC auch langsamer, der Browser friert ab und zu ein und der PC lässt sich nicht immer hinunter fahren. Der Bildschirm schaltet sich zwar aus, aber der PC und die Tastatur bleiben an. Erst, wenn ich den Hauptschalter eine Weile gedrückt halte, dann fährt er ganz hinunter. Code:
14:15:10.0227 0x17d8 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
14:15:10.0227 0x17d8 UEFI system
14:15:15.0425 0x17d8 ============================================================
14:15:15.0425 0x17d8 Current date / time: 2017/02/05 14:15:15.0425
14:15:15.0436 0x17d8 SystemInfo:
14:15:15.0436 0x17d8
14:15:15.0437 0x17d8 OS Version: 10.0.14393 ServicePack: 0.0
14:15:15.0437 0x17d8 Product type: Workstation
14:15:15.0437 0x17d8 ComputerName: TRAUSDORFBÄR
14:15:15.0437 0x17d8 UserName: Eveline
14:15:15.0437 0x17d8 Windows directory: C:\WINDOWS
14:15:15.0437 0x17d8 System windows directory: C:\WINDOWS
14:15:15.0437 0x17d8 Running under WOW64
14:15:15.0437 0x17d8 Processor architecture: Intel x64
14:15:15.0437 0x17d8 Number of processors: 4
14:15:15.0437 0x17d8 Page size: 0x1000
14:15:15.0437 0x17d8 Boot type: Normal boot
14:15:15.0437 0x17d8 CodeIntegrityOptions = 0x00000001
14:15:15.0437 0x17d8 ============================================================
14:15:16.0190 0x17d8 KLMD registered as C:\WINDOWS\system32\drivers\75826983.sys
14:15:16.0190 0x17d8 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
14:15:16.0836 0x17d8 System UUID: {EEB39B5E-9476-F330-7B9C-F212FFC0ABBE}
14:15:17.0360 0x17d8 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:15:17.0385 0x17d8 ============================================================
14:15:17.0385 0x17d8 \Device\Harddisk0\DR0:
14:15:17.0393 0x17d8 GPT partitions:
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {7E0D0BA7-4D45-4F09-BBA8-C2A183A9C282}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xF9800
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {47EA8986-068D-4982-A02E-081C6663B764}, Name: EFI system partition, StartLBA 0xFA000, BlocksNum 0x32000
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {0FAAE7E9-56B6-43AA-B5D7-A13CDD304AC8}, Name: Microsoft reserved partition, StartLBA 0x12C000, BlocksNum 0x40000
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {8D7F0CC6-879E-47F6-A767-0ED8FD3B0659}, UniqueGUID: {07F41686-314D-45A7-82AB-1E7A837573AC}, Name: Basic data partition, StartLBA 0x16C000, BlocksNum 0x200000
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {D257ABB2-D7F4-4A43-B4D0-D0326336409E}, Name: Basic data partition, StartLBA 0x36C000, BlocksNum 0x6CAB9D8F
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {556509AE-58AF-4AD8-B591-74760D8D0665}, Name: , StartLBA 0x6CE26000, BlocksNum 0xE1000
14:15:17.0394 0x17d8 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C12BBF49-B8EB-4BBF-9746-6A9A88FDE6F9}, Name: Basic data partition, StartLBA 0x6CF07000, BlocksNum 0x77FD000
14:15:17.0394 0x17d8 MBR partitions:
14:15:17.0394 0x17d8 ============================================================
14:15:17.0412 0x17d8 C: <-> \Device\Harddisk0\DR0\Partition5
14:15:17.0453 0x17d8 D: <-> \Device\Harddisk0\DR0\Partition7
14:15:17.0453 0x17d8 ============================================================
14:15:17.0453 0x17d8 Initialize success
14:15:17.0453 0x17d8 ============================================================
14:15:56.0460 0x28cc ============================================================
14:15:56.0460 0x28cc Scan started
14:15:56.0460 0x28cc Mode: Manual; SigCheck; TDLFS;
14:15:56.0460 0x28cc ============================================================
14:15:56.0460 0x28cc KSN ping started
14:15:56.0467 0x28cc KSN ping finished: false
14:16:01.0016 0x28cc ================ Scan system memory ========================
14:16:01.0016 0x28cc System memory - ok
14:16:01.0017 0x28cc ================ Scan services =============================
14:16:01.0138 0x28cc 1394ohci - ok
14:16:01.0144 0x28cc 3ware - ok
14:16:01.0161 0x28cc ACPI - ok
14:16:01.0166 0x28cc AcpiDev - ok
14:16:01.0171 0x28cc acpiex - ok
14:16:01.0176 0x28cc acpipagr - ok
14:16:01.0195 0x28cc AcpiPmi - ok
14:16:01.0197 0x28cc acpitime - ok
14:16:01.0258 0x28cc [ 2D766591E87FFFF237C0C9C16CDDECAB, AF04A4C029FD34A5F16B689A4F7F328FCEE11B0033E077FF5FC154C6021B2986 ] ACT2PM C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys
14:16:01.0298 0x28cc ACT2PM - ok
14:16:01.0331 0x28cc [ C47D15FC2CA269DD2EC5946953C5BF03, 20C9CEDECE45E24AA9C78A1FFE4BE6D150B10B726F6F576889971E40CDA267C4 ] ACT2_Service C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe
14:16:01.0361 0x28cc ACT2_Service - ok
14:16:01.0377 0x28cc ADP80XX - ok
14:16:01.0394 0x28cc AFD - ok
14:16:01.0403 0x28cc ahcache - ok
14:16:01.0475 0x28cc [ 1CC3E547FE3DEC8272780F24F3059519, 72400F60D41239E9F2493DF71472704ECB006F5871E3CBB125DE2D0303051617 ] AHDDC2 C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe
14:16:01.0509 0x28cc AHDDC2 - ok
14:16:01.0527 0x28cc AJRouter - ok
14:16:01.0532 0x28cc ALG - ok
14:16:01.0534 0x28cc AmdK8 - ok
14:16:01.0536 0x28cc AmdPPM - ok
14:16:01.0538 0x28cc amdsata - ok
14:16:01.0541 0x28cc amdsbs - ok
14:16:01.0543 0x28cc amdxata - ok
14:16:01.0648 0x28cc [ 98D7647EF729503A60EF870DA5C21D0D, 7E36E8E3D9D0BD940DC225E1DB7EFD90F76F7BE8DCAD9782255556C31D6FD476 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
14:16:01.0681 0x28cc AntiVirMailService - ok
14:16:01.0718 0x28cc [ 229E752A26B53E155524D6530B95CDD4, B4D3DEA52860143D16A57EBA31CD3394B8B4FEA642EB3A736C8388447AB7E0E9 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
14:16:01.0733 0x28cc AntiVirSchedulerService - ok
14:16:01.0751 0x28cc [ 229E752A26B53E155524D6530B95CDD4, B4D3DEA52860143D16A57EBA31CD3394B8B4FEA642EB3A736C8388447AB7E0E9 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe
14:16:01.0765 0x28cc AntiVirService - ok
14:16:01.0819 0x28cc [ F2B26CD2305E917B1EA1BF49E0C59E31, 8CCE64C68B80D56C7604DB6ABD187F66C624462328F4886C607F0A46D8E9DE92 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
14:16:01.0850 0x28cc AntiVirWebService - ok
14:16:01.0866 0x28cc AppID - ok
14:16:01.0868 0x28cc AppIDSvc - ok
14:16:01.0877 0x28cc Appinfo - ok
14:16:01.0886 0x28cc applockerfltr - ok
14:16:01.0904 0x28cc AppReadiness - ok
14:16:01.0920 0x28cc AppXSvc - ok
14:16:01.0930 0x28cc arcsas - ok
14:16:01.0936 0x28cc AsyncMac - ok
14:16:01.0942 0x28cc atapi - ok
14:16:01.0950 0x28cc AudioEndpointBuilder - ok
14:16:01.0964 0x28cc Audiosrv - ok
14:16:01.0987 0x28cc [ 19A629CC661BBB49E25203B9626354F9, 9FDE67E19CE0B5973441A11EB0D5CD8187C1B47B3A2C866FD6BD939D31F42924 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
14:16:01.0999 0x28cc avgntflt - ok
14:16:02.0025 0x28cc [ B34C86461D03F33E9B1A57699DCABED3, 127A63A3AEC796DDF7E19432CAF523CA23051058752B9772244655797B3B4CDB ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
14:16:02.0033 0x28cc avipbb - ok
14:16:02.0135 0x28cc [ 2AEE4D1D7E668F1CCF97EDE93509B0EE, B082B3BBB27D3C8B26A754508C3B98BA803FEA707898FF18A120D6A2679098DF ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
14:16:02.0162 0x28cc Avira.ServiceHost - ok
14:16:02.0214 0x28cc [ 8D2830B4A88B957890AC292686140E2D, 5B645D67EC327E074C0A01B2CDF2FDBF376B6F869E2724F2699A7DEF4AA366D2 ] AviraUpdaterService C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
14:16:02.0237 0x28cc AviraUpdaterService - ok
14:16:02.0264 0x28cc [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
14:16:02.0278 0x28cc avkmgr - ok
14:16:02.0287 0x28cc [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
14:16:02.0299 0x28cc avnetflt - ok
14:16:02.0305 0x28cc [ D19DA6C23FC2C4AF294E60CB7752D64C, 8EFC1D45A297D8881E89B00BF5993502D57F50C0ADBE07607FF140EEC724DC43 ] avusbflt C:\WINDOWS\system32\Drivers\avusbflt.sys
14:16:02.0311 0x28cc avusbflt - ok
14:16:02.0328 0x28cc AxInstSV - ok
14:16:02.0331 0x28cc b06bdrv - ok
14:16:02.0347 0x28cc BasicDisplay - ok
14:16:02.0349 0x28cc BasicRender - ok
14:16:02.0355 0x28cc bcmfn - ok
14:16:02.0357 0x28cc bcmfn2 - ok
14:16:02.0366 0x28cc BDESVC - ok
14:16:02.0374 0x28cc Beep - ok
14:16:02.0381 0x28cc BFE - ok
14:16:02.0399 0x28cc BITS - ok
14:16:02.0413 0x28cc bowser - ok
14:16:02.0425 0x28cc BrokerInfrastructure - ok
14:16:02.0431 0x28cc Browser - ok
14:16:02.0445 0x28cc BthAvrcpTg - ok
14:16:02.0450 0x28cc BthHFEnum - ok
14:16:02.0455 0x28cc bthhfhid - ok
14:16:02.0472 0x28cc BthHFSrv - ok
14:16:02.0477 0x28cc BTHMODEM - ok
14:16:02.0481 0x28cc bthserv - ok
14:16:02.0484 0x28cc buttonconverter - ok
14:16:02.0500 0x28cc CapImg - ok
14:16:02.0503 0x28cc cdfs - ok
14:16:02.0520 0x28cc CDPSvc - ok
14:16:02.0538 0x28cc CDPUserSvc - ok
14:16:02.0558 0x28cc cdrom - ok
14:16:02.0592 0x28cc CertPropSvc - ok
14:16:02.0595 0x28cc cht4iscsi - ok
14:16:02.0597 0x28cc cht4vbd - ok
14:16:02.0600 0x28cc circlass - ok
14:16:02.0605 0x28cc CLFS - ok
14:16:02.0783 0x28cc [ 45AF5F89D707C3F64AC59B627AE34A30, 3E0D50463133FD7D57419258C88D80FF47F2729636D7836EE2567F94B0BA0358 ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
14:16:02.0840 0x28cc ClickToRunSvc - ok
14:16:02.0845 0x28cc ClipSVC - ok
14:16:02.0847 0x28cc clreg - ok
14:16:02.0876 0x28cc [ 3E76A1547F2448BCEE3D2F4AE3931AB5, 31B41723FAA4210A86B1AE02D6C052BD8B738C4B89FB0177C1AE997D24BA5B8C ] CLVirtualDrive C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys
14:16:02.0884 0x28cc CLVirtualDrive - ok
14:16:02.0886 0x28cc CmBatt - ok
14:16:02.0889 0x28cc CNG - ok
14:16:02.0891 0x28cc cnghwassist - ok
14:16:02.0936 0x28cc CompositeBus - ok
14:16:02.0943 0x28cc COMSysApp - ok
14:16:02.0949 0x28cc condrv - ok
14:16:02.0967 0x28cc CoreMessagingRegistrar - ok
14:16:02.0982 0x28cc CryptSvc - ok
14:16:03.0055 0x28cc [ 9FF6436D65CD8C798691373E28FBFB3B, 7A9ACD14679FB82E71EF4C47E43DAD931EC4FD727A5656AF8A3CC3B95D67EB5B ] CyberLink PowerDVD 10 MS Monitor Service C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe
14:16:03.0079 0x28cc CyberLink PowerDVD 10 MS Monitor Service - ok
14:16:03.0098 0x28cc [ 06B5C625CB915E9A7A1F08A43E332FA1, 66F0BFE088B44ED3D36E62DC05200CD09F135FF63C447846C603D6246FABB9BE ] CyberLink PowerDVD 10 MS Service C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe
14:16:03.0113 0x28cc CyberLink PowerDVD 10 MS Service - ok
14:16:03.0120 0x28cc dam - ok
14:16:03.0137 0x28cc DcomLaunch - ok
14:16:03.0140 0x28cc DcpSvc - ok
14:16:03.0150 0x28cc defragsvc - ok
14:16:03.0157 0x28cc DeviceAssociationService - ok
14:16:03.0160 0x28cc DeviceInstall - ok
14:16:03.0162 0x28cc DevQueryBroker - ok
14:16:03.0177 0x28cc Dfsc - ok
14:16:03.0182 0x28cc Dhcp - ok
14:16:03.0214 0x28cc diagnosticshub.standardcollector.service - ok
14:16:03.0230 0x28cc DiagTrack - ok
14:16:03.0247 0x28cc disk - ok
14:16:03.0273 0x28cc DmEnrollmentSvc - ok
14:16:03.0275 0x28cc dmvsc - ok
14:16:03.0277 0x28cc dmwappushservice - ok
14:16:03.0291 0x28cc Dnscache - ok
14:16:03.0295 0x28cc dot3svc - ok
14:16:03.0297 0x28cc DPS - ok
14:16:03.0308 0x28cc drmkaud - ok
14:16:03.0311 0x28cc DsmSvc - ok
14:16:03.0313 0x28cc DsSvc - ok
14:16:03.0315 0x28cc DXGKrnl - ok
14:16:03.0318 0x28cc EapHost - ok
14:16:03.0320 0x28cc ebdrv - ok
14:16:03.0330 0x28cc EFS - ok
14:16:03.0333 0x28cc EhStorClass - ok
14:16:03.0363 0x28cc EhStorTcgDrv - ok
14:16:03.0366 0x28cc embeddedmode - ok
14:16:03.0380 0x28cc EntAppSvc - ok
14:16:03.0382 0x28cc ErrDev - ok
14:16:03.0393 0x28cc EventSystem - ok
14:16:03.0395 0x28cc exfat - ok
14:16:03.0407 0x28cc fastfat - ok
14:16:03.0410 0x28cc Fax - ok
14:16:03.0413 0x28cc fdc - ok
14:16:03.0415 0x28cc fdPHost - ok
14:16:03.0417 0x28cc FDResPub - ok
14:16:03.0433 0x28cc fhsvc - ok
14:16:03.0454 0x28cc FileCrypt - ok
14:16:03.0456 0x28cc FileInfo - ok
14:16:03.0458 0x28cc Filetrace - ok
14:16:03.0460 0x28cc flpydisk - ok
14:16:03.0462 0x28cc FltMgr - ok
14:16:03.0479 0x28cc FontCache - ok
14:16:03.0564 0x28cc FontCache3.0.0.0 - ok
14:16:03.0591 0x28cc FrameServer - ok
14:16:03.0598 0x28cc FsDepends - ok
14:16:03.0607 0x28cc Fs_Rec - ok
14:16:03.0624 0x28cc fvevol - ok
14:16:03.0628 0x28cc gencounter - ok
14:16:03.0631 0x28cc genericusbfn - ok
14:16:03.0634 0x28cc GPIOClx0101 - ok
14:16:03.0644 0x28cc gpsvc - ok
14:16:03.0647 0x28cc GpuEnergyDrv - ok
14:16:03.0694 0x28cc [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:16:03.0707 0x28cc gupdate - ok
14:16:03.0711 0x28cc [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:16:03.0718 0x28cc gupdatem - ok
14:16:03.0721 0x28cc HDAudBus - ok
14:16:03.0723 0x28cc HidBatt - ok
14:16:03.0725 0x28cc HidBth - ok
14:16:03.0728 0x28cc hidi2c - ok
14:16:03.0730 0x28cc hidinterrupt - ok
14:16:03.0731 0x28cc HidIr - ok
14:16:03.0742 0x28cc hidserv - ok
14:16:03.0762 0x28cc HidUsb - ok
14:16:03.0779 0x28cc HomeGroupListener - ok
14:16:03.0790 0x28cc HomeGroupProvider - ok
14:16:03.0792 0x28cc HpSAMD - ok
14:16:03.0794 0x28cc HTTP - ok
14:16:03.0813 0x28cc HvHost - ok
14:16:03.0831 0x28cc hvservice - ok
14:16:03.0833 0x28cc hwpolicy - ok
14:16:03.0835 0x28cc hyperkbd - ok
14:16:03.0849 0x28cc i8042prt - ok
14:16:03.0851 0x28cc iagpio - ok
14:16:03.0853 0x28cc iai2c - ok
14:16:03.0855 0x28cc iaLPSS2i_GPIO2 - ok
14:16:03.0858 0x28cc iaLPSS2i_I2C - ok
14:16:03.0860 0x28cc iaLPSSi_GPIO - ok
14:16:03.0862 0x28cc iaLPSSi_I2C - ok
14:16:03.0879 0x28cc [ 25555186E4FBDF0E30A5DBFC9B9A73F9, 4A9DAC2B56389C5955C343E202C6E81CD3A608E78A4BB7E6ED560719DF02C955 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
14:16:03.0896 0x28cc iaStorA - ok
14:16:03.0899 0x28cc iaStorAV - ok
14:16:03.0938 0x28cc [ 6241810294275CEA59EBA9733080E5EE, F9A1A505B9279CD660CAAF4F8D21BDC34AC75FD86E881632A378B9BF39A3738E ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:16:03.0944 0x28cc IAStorDataMgrSvc - ok
14:16:03.0946 0x28cc iaStorV - ok
14:16:03.0948 0x28cc ibbus - ok
14:16:03.0962 0x28cc icssvc - ok
14:16:03.0964 0x28cc IKEEXT - ok
14:16:03.0970 0x28cc IndirectKmd - ok
14:16:04.0098 0x28cc [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
14:16:04.0175 0x28cc IntcAzAudAddService - ok
14:16:04.0201 0x28cc [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
14:16:04.0246 0x28cc Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
14:16:04.0310 0x28cc Intel(R) Capability Licensing Service Interface ( UnsignedFile.Multi.Generic ) - warning
14:16:04.0339 0x28cc [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
14:16:04.0358 0x28cc Intel(R) Capability Licensing Service TCP IP Interface - ok
14:16:04.0420 0x28cc [ 57739E742ABC085C2A4340D4404B4A8B, B4B85C35AC96D11F5940AFCB15A2B2A41D70E3C392E1D4D9353899FA140FF281 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
14:16:04.0447 0x28cc Intel(R) ME Service - ok
14:16:04.0460 0x28cc intelide - ok
14:16:04.0475 0x28cc intelpep - ok
14:16:04.0483 0x28cc intelppm - ok
14:16:04.0490 0x28cc iorate - ok
14:16:04.0492 0x28cc IpFilterDriver - ok
14:16:04.0512 0x28cc iphlpsvc - ok
14:16:04.0516 0x28cc IPMIDRV - ok
14:16:04.0520 0x28cc IPNAT - ok
14:16:04.0523 0x28cc irda - ok
14:16:04.0527 0x28cc IRENUM - ok
14:16:04.0540 0x28cc irmon - ok
14:16:04.0543 0x28cc isapnp - ok
14:16:04.0547 0x28cc iScsiPrt - ok
14:16:04.0568 0x28cc [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
14:16:04.0577 0x28cc jhi_service - ok
14:16:04.0580 0x28cc kbdclass - ok
14:16:04.0595 0x28cc kbdhid - ok
14:16:04.0600 0x28cc kdnic - ok
14:16:04.0602 0x28cc KeyIso - ok
14:16:04.0607 0x28cc KSecDD - ok
14:16:04.0609 0x28cc KSecPkg - ok
14:16:04.0611 0x28cc ksthunk - ok
14:16:04.0614 0x28cc KtmRm - ok
14:16:04.0621 0x28cc LanmanServer - ok
14:16:04.0631 0x28cc LanmanWorkstation - ok
14:16:04.0634 0x28cc lfsvc - ok
14:16:04.0641 0x28cc LicenseManager - ok
14:16:04.0643 0x28cc lltdio - ok
14:16:04.0646 0x28cc lltdsvc - ok
14:16:04.0652 0x28cc lmhosts - ok
14:16:04.0690 0x28cc [ 6A35B295812CE7064CFBCD9F254169CF, 561DD131FED6F90686D8C031B45B87B6D065C7E0C8804AEFCDE239725AAEE43E ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
14:16:04.0702 0x28cc LMS - ok
14:16:04.0706 0x28cc LSI_SAS - ok
14:16:04.0708 0x28cc LSI_SAS2i - ok
14:16:04.0710 0x28cc LSI_SAS3i - ok
14:16:04.0712 0x28cc LSI_SSS - ok
14:16:04.0715 0x28cc LSM - ok
14:16:04.0717 0x28cc luafv - ok
14:16:04.0727 0x28cc MapsBroker - ok
14:16:04.0768 0x28cc [ BDE2FC7213C0897524C1357BAAE30239, 1E1AB68145107429217E07A662477C86406E0188BE9F01CAC416AC13054D1A5E ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
14:16:04.0779 0x28cc MBAMSwissArmy - ok
14:16:04.0782 0x28cc megasas - ok
14:16:04.0791 0x28cc megasas2i - ok
14:16:04.0793 0x28cc megasr - ok
14:16:04.0815 0x28cc [ 926C135CFB0C75B32FB714B5C0C58FAA, AF627CD125794B69D450D298D5608D357F2C91FB89EBFAA0DA2A0F07C6A304A8 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
14:16:04.0823 0x28cc MEIx64 - ok
14:16:04.0835 0x28cc MessagingService - ok
14:16:04.0854 0x28cc mlx4_bus - ok
14:16:04.0856 0x28cc MMCSS - ok
14:16:04.0866 0x28cc Modem - ok
14:16:04.0871 0x28cc monitor - ok
14:16:04.0873 0x28cc mouclass - ok
14:16:04.0875 0x28cc mouhid - ok
14:16:04.0878 0x28cc mountmgr - ok
14:16:04.0901 0x28cc [ ADF79A49E942C91D1FC9863CBFDD6B58, C2B2A792C4717133DCAE6297EE3F5D985B11D3C1E68A8DC23985AC6B78ACDE98 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:16:04.0910 0x28cc MozillaMaintenance - ok
14:16:04.0915 0x28cc mpsdrv - ok
14:16:04.0918 0x28cc MpsSvc - ok
14:16:04.0924 0x28cc MRxDAV - ok
14:16:04.0939 0x28cc mrxsmb - ok
14:16:04.0941 0x28cc mrxsmb10 - ok
14:16:04.0943 0x28cc mrxsmb20 - ok
14:16:04.0945 0x28cc MsBridge - ok
14:16:04.0954 0x28cc MSDTC - ok
14:16:04.0958 0x28cc Msfs - ok
14:16:04.0962 0x28cc msgpiowin32 - ok
14:16:04.0965 0x28cc mshidkmdf - ok
14:16:04.0967 0x28cc mshidumdf - ok
14:16:04.0969 0x28cc msisadrv - ok
14:16:04.0985 0x28cc MSiSCSI - ok
14:16:04.0988 0x28cc msiserver - ok
14:16:04.0990 0x28cc MSKSSRV - ok
14:16:04.0992 0x28cc MsLldp - ok
14:16:04.0993 0x28cc MSPCLOCK - ok
14:16:04.0995 0x28cc MSPQM - ok
14:16:04.0997 0x28cc MsRPC - ok
14:16:05.0001 0x28cc mssmbios - ok
14:16:05.0004 0x28cc MSTEE - ok
14:16:05.0006 0x28cc MTConfig - ok
14:16:05.0008 0x28cc Mup - ok
14:16:05.0010 0x28cc mvumis - ok
14:16:05.0023 0x28cc NativeWifiP - ok
14:16:05.0025 0x28cc NcaSvc - ok
14:16:05.0036 0x28cc NcbService - ok
14:16:05.0038 0x28cc NcdAutoSetup - ok
14:16:05.0040 0x28cc ndfltr - ok
14:16:05.0053 0x28cc NDIS - ok
14:16:05.0055 0x28cc NdisCap - ok
14:16:05.0069 0x28cc NdisImPlatform - ok
14:16:05.0071 0x28cc NdisTapi - ok
14:16:05.0073 0x28cc Ndisuio - ok
14:16:05.0076 0x28cc NdisVirtualBus - ok
14:16:05.0078 0x28cc NdisWan - ok
14:16:05.0080 0x28cc ndiswanlegacy - ok
14:16:05.0082 0x28cc ndproxy - ok
14:16:05.0084 0x28cc Ndu - ok
14:16:05.0086 0x28cc NetAdapterCx - ok
14:16:05.0088 0x28cc NetBIOS - ok
14:16:05.0091 0x28cc NetBT - ok
14:16:05.0093 0x28cc Netlogon - ok
14:16:05.0095 0x28cc Netman - ok
14:16:05.0098 0x28cc netprofm - ok
14:16:05.0107 0x28cc NetSetupSvc - ok
14:16:05.0130 0x28cc NetTcpPortSharing - ok
14:16:05.0133 0x28cc NgcCtnrSvc - ok
14:16:05.0136 0x28cc NgcSvc - ok
14:16:05.0138 0x28cc NlaSvc - ok
14:16:05.0140 0x28cc Npfs - ok
14:16:05.0142 0x28cc npsvctrig - ok
14:16:05.0144 0x28cc nsi - ok
14:16:05.0146 0x28cc nsiproxy - ok
14:16:05.0152 0x28cc NTFS - ok
14:16:05.0154 0x28cc Null - ok
14:16:05.0184 0x28cc [ 64DA1993B1973F049C1347DA1B05185E, 2A04E263DB13751D033E2F9B9518820CF4942EEAFA5A32488570EEB699EE2A96 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
14:16:05.0194 0x28cc NVHDA - ok
14:16:05.0550 0x28cc [ 76ECA562B95DB26C64BEC14BB188A3F6, B4DB40D391B227393EEC13659C64B03499632FD11A75E5183BE8A0C8F3C9688B ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvmoi.inf_amd64_ced1ded071ee981c\nvlddmkm.sys
14:16:05.0778 0x28cc nvlddmkm - ok
14:16:05.0897 0x28cc [ A6102293847A7A2DF01E7BF7AC1C1F12, 14E4E75711C00DA826136FB531E9AD53787502F441103386C5CD37EEFCE27AFC ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
14:16:05.0932 0x28cc NvNetworkService - ok
14:16:05.0949 0x28cc nvraid - ok
14:16:05.0951 0x28cc nvstor - ok
14:16:06.0005 0x28cc [ 99D42078C9596A20A7B3419159265A25, E9F5380E6597C79B26B2CBAAC534F31C5027F32AAA0FD5876CF7E9BB6658F30C ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
14:16:06.0023 0x28cc NvStreamKms - ok
14:16:06.0108 0x28cc [ E6A64322EB213AEACBB61584AA6FB032, FA91C89B81DD7F3EC22DF71FFC3A506AD40AE76EC91F1115CCAB6ED39431369D ] NvStreamNetworkSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
14:16:06.0172 0x28cc NvStreamNetworkSvc - ok
14:16:06.0217 0x28cc [ A8213BF32D2E75ADD362E118AD164749, 6F35210ED11088FE64F13DD63053FFDA4628A5F6397DA33A345970962AB83499 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
14:16:06.0262 0x28cc NvStreamSvc - ok
14:16:06.0271 0x28cc [ F37FE6B15A987AEEC08EEF531F2FAED7, CC768E7DE80C7A8CB2392F9BC528212B8A3A35A30A222ED0B0B959051E6F8065 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
14:16:06.0279 0x28cc nvvad_WaveExtensible - ok
14:16:06.0301 0x28cc OneSyncSvc - ok
14:16:06.0372 0x28cc [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:16:06.0397 0x28cc ose - ok
14:16:06.0414 0x28cc p2pimsvc - ok
14:16:06.0421 0x28cc p2psvc - ok
14:16:06.0424 0x28cc Parport - ok
14:16:06.0433 0x28cc partmgr - ok
14:16:06.0447 0x28cc PcaSvc - ok
14:16:06.0458 0x28cc pci - ok
14:16:06.0467 0x28cc pciide - ok
14:16:06.0470 0x28cc pcmcia - ok
14:16:06.0473 0x28cc pcw - ok
14:16:06.0483 0x28cc pdc - ok
14:16:06.0492 0x28cc PEAUTH - ok
14:16:06.0495 0x28cc percsas2i - ok
14:16:06.0498 0x28cc percsas3i - ok
14:16:06.0538 0x28cc PerfHost - ok
14:16:06.0555 0x28cc PhoneSvc - ok
14:16:06.0567 0x28cc PimIndexMaintenanceSvc - ok
14:16:06.0571 0x28cc pla - ok
14:16:06.0580 0x28cc PlugPlay - ok
14:16:06.0582 0x28cc PNRPAutoReg - ok
14:16:06.0585 0x28cc PNRPsvc - ok
14:16:06.0593 0x28cc PolicyAgent - ok
14:16:06.0596 0x28cc Power - ok
14:16:06.0599 0x28cc PptpMiniport - ok
14:16:06.0698 0x28cc [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
14:16:06.0821 0x28cc PrintNotify - ok
14:16:06.0827 0x28cc Processor - ok
14:16:06.0840 0x28cc ProfSvc - ok
14:16:06.0842 0x28cc Psched - ok
14:16:06.0844 0x28cc QWAVE - ok
14:16:06.0846 0x28cc QWAVEdrv - ok
14:16:06.0848 0x28cc RasAcd - ok
14:16:06.0864 0x28cc RasAgileVpn - ok
14:16:06.0866 0x28cc RasAuto - ok
14:16:06.0868 0x28cc Rasl2tp - ok
14:16:06.0879 0x28cc RasMan - ok
14:16:06.0881 0x28cc RasPppoe - ok
14:16:06.0883 0x28cc RasSstp - ok
14:16:06.0885 0x28cc rdbss - ok
14:16:06.0892 0x28cc rdpbus - ok
14:16:06.0893 0x28cc RDPDR - ok
14:16:06.0923 0x28cc RdpVideoMiniport - ok
14:16:06.0925 0x28cc rdyboost - ok
14:16:06.0927 0x28cc ReFSv1 - ok
14:16:06.0931 0x28cc RemoteAccess - ok
14:16:06.0933 0x28cc RemoteRegistry - ok
14:16:06.0950 0x28cc RetailDemo - ok
14:16:07.0002 0x28cc [ C70F30AD0A519A53544129BD723CC5FB, B93ACB75423E3DA0A9E3EA641C62265D3087FF504850E70AE87625221BE9E987 ] RichVideo64 C:\Program Files\CyberLink\Shared files\RichVideo64.exe
14:16:07.0014 0x28cc RichVideo64 - ok
14:16:07.0017 0x28cc RmSvc - ok
14:16:07.0019 0x28cc RpcEptMapper - ok
14:16:07.0037 0x28cc RpcLocator - ok
14:16:07.0039 0x28cc RpcSs - ok
14:16:07.0041 0x28cc rspndr - ok
14:16:07.0106 0x28cc [ 841ECEC8C2F1FB61F0FF518B288649B7, 62856A0EC8BD6A5595C142CE68131CC625477460E469BEBB261F915A95AB8F2E ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
14:16:07.0130 0x28cc rt640x64 - ok
14:16:07.0147 0x28cc RtlWlanu_OldIC - ok
14:16:07.0166 0x28cc [ 56A28D8CCC3862AE32C14EE9CAE4B920, 6B2120B09D360A1DA17B21EE39675CBFAD0CB58ED0B8EE6AB53F25D04B411EC4 ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys
14:16:07.0179 0x28cc rzudd - ok
14:16:07.0183 0x28cc s3cap - ok
14:16:07.0198 0x28cc SamSs - ok
14:16:07.0203 0x28cc sbp2port - ok
14:16:07.0220 0x28cc SCardSvr - ok
14:16:07.0231 0x28cc ScDeviceEnum - ok
14:16:07.0236 0x28cc scfilter - ok
14:16:07.0241 0x28cc Schedule - ok
14:16:07.0245 0x28cc scmbus - ok
14:16:07.0250 0x28cc scmdisk0101 - ok
14:16:07.0268 0x28cc SCPolicySvc - ok
14:16:07.0277 0x28cc sdbus - ok
14:16:07.0281 0x28cc SDRSVC - ok
14:16:07.0284 0x28cc sdstor - ok
14:16:07.0287 0x28cc seclogon - ok
14:16:07.0290 0x28cc SENS - ok
14:16:07.0293 0x28cc SensorDataService - ok
14:16:07.0309 0x28cc SensorService - ok
14:16:07.0311 0x28cc SensrSvc - ok
14:16:07.0314 0x28cc SerCx - ok
14:16:07.0316 0x28cc SerCx2 - ok
14:16:07.0320 0x28cc Serenum - ok
14:16:07.0322 0x28cc Serial - ok
14:16:07.0324 0x28cc sermouse - ok
14:16:07.0341 0x28cc SessionEnv - ok
14:16:07.0343 0x28cc sfloppy - ok
14:16:07.0388 0x28cc SharedAccess - ok
14:16:07.0390 0x28cc ShellHWDetection - ok
14:16:07.0409 0x28cc shpamsvc - ok
14:16:07.0412 0x28cc SiSRaid2 - ok
14:16:07.0414 0x28cc SiSRaid4 - ok
14:16:07.0456 0x28cc [ B72B80E6FF423C5011E745CB76DA9A08, 18A6B9D46E91AD4D463EB5CB832702392D2E162577F90C328B515FCE69FABD15 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:16:07.0473 0x28cc SkypeUpdate - ok
14:16:07.0488 0x28cc smphost - ok
14:16:07.0497 0x28cc SmsRouter - ok
14:16:07.0502 0x28cc SNMPTRAP - ok
14:16:07.0521 0x28cc spaceport - ok
14:16:07.0523 0x28cc SpbCx - ok
14:16:07.0531 0x28cc Spooler - ok
14:16:07.0537 0x28cc sppsvc - ok
14:16:07.0540 0x28cc srv - ok
14:16:07.0556 0x28cc srv2 - ok
14:16:07.0558 0x28cc srvnet - ok
14:16:07.0560 0x28cc SSDPSRV - ok
14:16:07.0587 0x28cc [ 23B3E65FDEA67313E4B8F89FB80F41BB, 1484E037A7F083445A1721DAB18477770646AC081DF7BA024E8457CECBB9A5B8 ] sshid C:\WINDOWS\System32\drivers\sshid.sys
14:16:07.0595 0x28cc sshid - ok
14:16:07.0613 0x28cc SstpSvc - ok
14:16:07.0632 0x28cc StateRepository - ok
14:16:07.0634 0x28cc stexstor - ok
14:16:07.0637 0x28cc stisvc - ok
14:16:07.0654 0x28cc storahci - ok
14:16:07.0657 0x28cc storflt - ok
14:16:07.0659 0x28cc stornvme - ok
14:16:07.0663 0x28cc storqosflt - ok
14:16:07.0669 0x28cc StorSvc - ok
14:16:07.0671 0x28cc storufs - ok
14:16:07.0675 0x28cc storvsc - ok
14:16:07.0677 0x28cc svsvc - ok
14:16:07.0680 0x28cc swenum - ok
14:16:07.0681 0x28cc swprv - ok
14:16:07.0697 0x28cc Synth3dVsc - ok
14:16:07.0699 0x28cc SysMain - ok
14:16:07.0705 0x28cc SystemEventsBroker - ok
14:16:07.0710 0x28cc TabletInputService - ok
14:16:07.0713 0x28cc TapiSrv - ok
14:16:07.0726 0x28cc Tcpip - ok
14:16:07.0728 0x28cc Tcpip6 - ok
14:16:07.0733 0x28cc tcpipreg - ok
14:16:07.0737 0x28cc tdx - ok
14:16:07.0739 0x28cc terminpt - ok
14:16:07.0742 0x28cc TermService - ok
14:16:07.0745 0x28cc Themes - ok
14:16:07.0764 0x28cc TieringEngineService - ok
14:16:07.0767 0x28cc tiledatamodelsvc - ok
14:16:07.0770 0x28cc TimeBrokerSvc - ok
14:16:07.0773 0x28cc TPM - ok
14:16:07.0775 0x28cc TrkWks - ok
14:16:07.0796 0x28cc TrustedInstaller - ok
14:16:07.0800 0x28cc tsusbflt - ok
14:16:07.0805 0x28cc TsUsbGD - ok
14:16:07.0808 0x28cc tunnel - ok
14:16:07.0810 0x28cc tzautoupdate - ok
14:16:07.0824 0x28cc [ A070ABB9D85582B2BECADBE6FCD12350, 3EBFA349F87933E20C4EADA2FA2E64206CCAC70DFB8B52C2E41670FFB16D7336 ] t_mouse.sys C:\WINDOWS\system32\DRIVERS\t_mouse.sys
14:16:07.0841 0x28cc t_mouse.sys - ok
14:16:07.0845 0x28cc UASPStor - ok
14:16:07.0847 0x28cc UcmCx0101 - ok
14:16:07.0850 0x28cc UcmTcpciCx0101 - ok
14:16:07.0852 0x28cc UcmUcsi - ok
14:16:07.0855 0x28cc Ucx01000 - ok
14:16:07.0857 0x28cc UdeCx - ok
14:16:07.0859 0x28cc udfs - ok
14:16:07.0862 0x28cc UEFI - ok
14:16:07.0864 0x28cc Ufx01000 - ok
14:16:07.0867 0x28cc UfxChipidea - ok
14:16:07.0869 0x28cc ufxsynopsys - ok
14:16:07.0874 0x28cc UI0Detect - ok
14:16:07.0876 0x28cc umbus - ok
14:16:07.0879 0x28cc UmPass - ok
14:16:07.0882 0x28cc UmRdpService - ok
14:16:07.0884 0x28cc UnistoreSvc - ok
14:16:07.0927 0x28cc [ 9DC07E73A4ABB9ACF692113B36A5009F, CA7176FC219515D58DCFA66EC61880ECE5617275C9B83701BB74D8B60E733D34 ] UnlockerDriver5 C:\Program Files\Unlocker\UnlockerDriver5.sys
14:16:07.0932 0x28cc UnlockerDriver5 - ok
14:16:07.0935 0x28cc upnphost - ok
14:16:07.0938 0x28cc UrsChipidea - ok
14:16:07.0940 0x28cc UrsCx01000 - ok
14:16:07.0942 0x28cc UrsSynopsys - ok
14:16:07.0944 0x28cc usbccgp - ok
14:16:07.0947 0x28cc usbcir - ok
14:16:07.0949 0x28cc usbehci - ok
14:16:07.0953 0x28cc usbhub - ok
14:16:07.0956 0x28cc USBHUB3 - ok
14:16:07.0958 0x28cc usbohci - ok
14:16:07.0960 0x28cc usbprint - ok
14:16:07.0988 0x28cc [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
14:16:08.0013 0x28cc usbscan - ok
14:16:08.0016 0x28cc usbser - ok
14:16:08.0019 0x28cc USBSTOR - ok
14:16:08.0022 0x28cc usbuhci - ok
14:16:08.0025 0x28cc USBXHCI - ok
14:16:08.0027 0x28cc UserDataSvc - ok
14:16:08.0032 0x28cc UserManager - ok
14:16:08.0043 0x28cc UsoSvc - ok
14:16:08.0045 0x28cc VaultSvc - ok
14:16:08.0048 0x28cc vdrvroot - ok
14:16:08.0057 0x28cc vds - ok
14:16:08.0059 0x28cc VerifierExt - ok
14:16:08.0067 0x28cc vhdmp - ok
14:16:08.0070 0x28cc vhf - ok
14:16:08.0073 0x28cc vmbus - ok
14:16:08.0075 0x28cc VMBusHID - ok
14:16:08.0078 0x28cc vmgid - ok
14:16:08.0080 0x28cc vmicguestinterface - ok
14:16:08.0082 0x28cc vmicheartbeat - ok
14:16:08.0085 0x28cc vmickvpexchange - ok
14:16:08.0087 0x28cc vmicrdv - ok
14:16:08.0090 0x28cc vmicshutdown - ok
14:16:08.0092 0x28cc vmictimesync - ok
14:16:08.0094 0x28cc vmicvmsession - ok
14:16:08.0096 0x28cc vmicvss - ok
14:16:08.0099 0x28cc volmgr - ok
14:16:08.0102 0x28cc volmgrx - ok
14:16:08.0104 0x28cc volsnap - ok
14:16:08.0107 0x28cc volume - ok
14:16:08.0110 0x28cc vpci - ok
14:16:08.0112 0x28cc vsmraid - ok
14:16:08.0115 0x28cc VSS - ok
14:16:08.0118 0x28cc VSTXRAID - ok
14:16:08.0120 0x28cc vwifibus - ok
14:16:08.0122 0x28cc vwififlt - ok
14:16:08.0125 0x28cc vwifimp - ok
14:16:08.0128 0x28cc W32Time - ok
14:16:08.0130 0x28cc WacomPen - ok
14:16:08.0140 0x28cc WalletService - ok
14:16:08.0142 0x28cc wanarp - ok
14:16:08.0145 0x28cc wanarpv6 - ok
14:16:08.0147 0x28cc wbengine - ok
14:16:08.0164 0x28cc WbioSrvc - ok
14:16:08.0166 0x28cc wcifs - ok
14:16:08.0170 0x28cc Wcmsvc - ok
14:16:08.0172 0x28cc wcncsvc - ok
14:16:08.0174 0x28cc wcnfs - ok
14:16:08.0177 0x28cc WdBoot - ok
14:16:08.0179 0x28cc Wdf01000 - ok
14:16:08.0181 0x28cc WdFilter - ok
14:16:08.0184 0x28cc WdiServiceHost - ok
14:16:08.0186 0x28cc WdiSystemHost - ok
14:16:08.0200 0x28cc wdiwifi - ok
14:16:08.0202 0x28cc WdNisDrv - ok
14:16:08.0225 0x28cc WdNisSvc - ok
14:16:08.0231 0x28cc WebClient - ok
14:16:08.0236 0x28cc Wecsvc - ok
14:16:08.0241 0x28cc WEPHOSTSVC - ok
14:16:08.0247 0x28cc wercplsupport - ok
14:16:08.0252 0x28cc WerSvc - ok
14:16:08.0255 0x28cc WFPLWFS - ok
14:16:08.0259 0x28cc WiaRpc - ok
14:16:08.0261 0x28cc WIMMount - ok
14:16:08.0263 0x28cc WinDefend - ok
14:16:08.0270 0x28cc WindowsTrustedRT - ok
14:16:08.0272 0x28cc WindowsTrustedRTProxy - ok
14:16:08.0281 0x28cc WinHttpAutoProxySvc - ok
14:16:08.0285 0x28cc WinMad - ok
14:16:08.0323 0x28cc Winmgmt - ok
14:16:08.0340 0x28cc WinRM - ok
14:16:08.0345 0x28cc WINUSB - ok
14:16:08.0347 0x28cc WinVerbs - ok
14:16:08.0376 0x28cc wisvc - ok
14:16:08.0378 0x28cc WlanSvc - ok
14:16:08.0400 0x28cc wlidsvc - ok
14:16:08.0403 0x28cc WmiAcpi - ok
14:16:08.0408 0x28cc wmiApSrv - ok
14:16:08.0418 0x28cc WMPNetworkSvc - ok
14:16:08.0437 0x28cc Wof - ok
14:16:08.0446 0x28cc workfolderssvc - ok
14:16:08.0450 0x28cc WPDBusEnum - ok
14:16:08.0454 0x28cc WpdUpFltr - ok
14:16:08.0458 0x28cc WpnService - ok
14:16:08.0461 0x28cc WpnUserService - ok
14:16:08.0465 0x28cc ws2ifsl - ok
14:16:08.0467 0x28cc wscsvc - ok
14:16:08.0470 0x28cc WSearch - ok
14:16:08.0489 0x28cc wuauserv - ok
14:16:08.0491 0x28cc WudfPf - ok
14:16:08.0494 0x28cc WUDFRd - ok
14:16:08.0497 0x28cc wudfsvc - ok
14:16:08.0499 0x28cc WUDFWpdFs - ok
14:16:08.0513 0x28cc WwanSvc - ok
14:16:08.0523 0x28cc XblAuthManager - ok
14:16:08.0535 0x28cc XblGameSave - ok
14:16:08.0537 0x28cc xboxgip - ok
14:16:08.0541 0x28cc XboxNetApiSvc - ok
14:16:08.0564 0x28cc xinputhid - ok
14:16:08.0572 0x28cc ================ Scan global ===============================
14:16:08.0632 0x28cc [ Global ] - ok
14:16:08.0632 0x28cc ================ Scan MBR ==================================
14:16:08.0646 0x28cc [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
14:16:08.0818 0x28cc \Device\Harddisk0\DR0 - ok
14:16:08.0819 0x28cc ================ Scan VBR ==================================
14:16:08.0851 0x28cc [ DC3170876CCE01EB1ABA739B908E956A ] \Device\Harddisk0\DR0\Partition1
14:16:08.0856 0x28cc \Device\Harddisk0\DR0\Partition1 - ok
14:16:08.0864 0x28cc [ 8112A77A3E19A7EA09AB94153A36FB26 ] \Device\Harddisk0\DR0\Partition2
14:16:08.0867 0x28cc \Device\Harddisk0\DR0\Partition2 - ok
14:16:08.0874 0x28cc [ 68492777A10F581CA995315C3B1C63CF ] \Device\Harddisk0\DR0\Partition3
14:16:08.0875 0x28cc \Device\Harddisk0\DR0\Partition3 - ok
14:16:08.0889 0x28cc [ 3771D5C9E0FD42C8C53C9C82DC748C43 ] \Device\Harddisk0\DR0\Partition4
14:16:08.0890 0x28cc \Device\Harddisk0\DR0\Partition4 - ok
14:16:08.0901 0x28cc [ 6001DFEF12B9133D4D4D4DBB7D97D1A6 ] \Device\Harddisk0\DR0\Partition5
14:16:08.0904 0x28cc \Device\Harddisk0\DR0\Partition5 - ok
14:16:08.0928 0x28cc [ E8EE21BB40E3647E9C930BE82FC4CDF3 ] \Device\Harddisk0\DR0\Partition6
14:16:08.0931 0x28cc \Device\Harddisk0\DR0\Partition6 - ok
14:16:08.0936 0x28cc [ CA3141679AF9E73D74EA552148FE4459 ] \Device\Harddisk0\DR0\Partition7
14:16:08.0938 0x28cc \Device\Harddisk0\DR0\Partition7 - ok
14:16:08.0938 0x28cc ================ Scan generic autorun ======================
14:16:09.0255 0x28cc [ 65E8545F1297CD83534C354A7BED1848, 19B3F3C17A335837454DC1851C6436D0BB2D8B1595AEB4DC71265FB20868B48F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
14:16:09.0473 0x28cc RTHDVCPL - ok
14:16:09.0524 0x28cc [ E6A3062BDB2E18EBDEB69CF7F7A3A070, 48AB0CCA0230DCBB47CCC765659E390A4A42AC7303A27B835B9FBB1168AC7BF1 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
14:16:09.0558 0x28cc IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
14:16:09.0558 0x28cc IAStorIcon ( UnsignedFile.Multi.Generic ) - warning
14:16:09.0692 0x28cc [ BE586B5D1D73E1F07ED5AADDEFBCAA47, 68D957EBE01DD369BF4E2D5D07A7EDF9408066E61056A1C4968DBF8CE5841BBE ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
14:16:09.0734 0x28cc NvBackend - ok
14:16:09.0758 0x28cc [ DB367E8C8F46C26A05BA982715CC0DB5, 63AE8DD8E41260123E8C98905BD3D444BED86AEA6353F690483E5CB116433AC2 ] C:\WINDOWS\system32\TiltWheelMouse.exe
14:16:09.0783 0x28cc MouseDriver - ok
14:16:09.0783 0x28cc WindowsDefender - ok
14:16:09.0837 0x28cc [ 4E9AF25BA5E8219310E384AEA5B0EED8, 743062F755E7A88BA394E96CA26A988CCFDF73B441B779B3149D54A769CBC411 ] C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
14:16:09.0844 0x28cc CLMLServer_For_P2G8 - ok
14:16:09.0864 0x28cc [ 3DB184D96E9BCFD40E071DBADCA6127C, 5DBC91C1749267803415AF265B3AFE3663D515F579F9C771D2FC3ED4D5B96390 ] C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
14:16:09.0878 0x28cc CLVirtualDrive - ok
14:16:09.0900 0x28cc APSDaemon - ok
14:16:09.0923 0x28cc [ 0966408A384E8B0FE57B0008E18D561C, 045AB5798CAFA7D27E7D02F780B3508EBF34C0991C8EF166A61CF869D9399B70 ] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
14:16:09.0930 0x28cc RemoteControl10 - ok
14:16:09.0962 0x28cc [ 271B0D188430670509CB9943D5229205, 74CB5A9D8B5988AE08C0F65C601FC54F8745BAB6825B6FEEFBA8F068D656D8D7 ] C:\Program Files (x86)\QuickTime\QTTask.exe
14:16:09.0995 0x28cc QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
14:16:09.0995 0x28cc QuickTime Task ( UnsignedFile.Multi.Generic ) - warning
14:16:09.0995 0x28cc Force sending object to P2P due to detect: C:\Program Files (x86)\QuickTime\QTTask.exe
14:16:09.0997 0x28cc Object send P2P result: false
14:16:10.0315 0x28cc [ 4533BD3789B7A8A16431E61D5D5FB741, BEB3316553FCACB6CCED4468058A72E32C9BC85A932A38FA6EF11F7E0AA31E9A ] C:\Program Files (x86)\A1 Servicecenter\A1 Servicecenter\A1Servicecenter_Launcher.exe
14:16:10.0494 0x28cc A1Servicecenter - ok
14:16:10.0549 0x28cc [ 258E2CD2C4984A977106C9EF7CA8AF69, D8F6409D5F5782CC27D159D18E914A3DB59D8644D7017CA6F84F0CF30E95174C ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
14:16:10.0557 0x28cc Avira SystrayStartTrigger - ok
14:16:10.0656 0x28cc [ 1BC31F797516DC7B7446B62A849D5905, 49B35A41F1C3739800CBA2A559C2AEFE89FBC090F8305681AF3B379B639E16AA ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
14:16:10.0686 0x28cc avgnt - ok
14:16:10.0738 0x28cc OneDriveSetup - ok
14:16:10.0739 0x28cc OneDriveSetup - ok
14:16:10.0740 0x28cc RESTART_STICKY_NOTES - ok
14:16:10.0771 0x28cc Skype - ok
14:16:10.0871 0x28cc [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\Eveline\AppData\Local\Microsoft\BingSvc\BingSvc.exe
14:16:10.0899 0x28cc BingSvc - ok
14:16:11.0018 0x28cc [ 638EC39FFA5EB20E09F03E3433E9746E, 6299DE071EF97D32C334EF624BC4B0FD3BF15BDD411976687951696771373949 ] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
14:16:11.0053 0x28cc GoogleChromeAutoLaunch_3E866541A350BCF9753662F46BCD806E - ok
14:16:11.0062 0x28cc AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.24.143 ), 0x40000 ( disabled : updated )
14:16:11.0062 0x28cc AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x61100 ( enabled : updated )
14:16:11.0064 0x28cc Win FW state via NFP2: enabled ( trusted )
14:16:11.0065 0x28cc ============================================================
14:16:11.0065 0x28cc Scan finished
14:16:11.0065 0x28cc ============================================================
14:16:11.0071 0x26e0 Detected object count: 3
14:16:11.0071 0x26e0 Actual detected object count: 3
14:17:13.0926 0x26e0 Intel(R) Capability Licensing Service Interface ( UnsignedFile.Multi.Generic ) - skipped by user
14:17:13.0926 0x26e0 Intel(R) Capability Licensing Service Interface ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:17:13.0926 0x26e0 IAStorIcon ( UnsignedFile.Multi.Generic ) - skipped by user
14:17:13.0926 0x26e0 IAStorIcon ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:17:13.0927 0x26e0 QuickTime Task ( UnsignedFile.Multi.Generic ) - skipped by user
14:17:13.0927 0x26e0 QuickTime Task ( UnsignedFile.Multi.Generic ) - User select action: Skip |