Gemäß Anweisung habe ich die beiden Schritte durchgeführt, gefunden wurde dabei laut Meldungen nichts:
MBAR: Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2017.02.15.07
rootkit: v2017.02.15.01
Windows 10 x64 NTFS
Internet Explorer 11.576.14393.0
Martina :: DESKTOP-0O8M50A [administrator]
15.02.2017 21:31:47
mbar-log-2017-02-15 (21-31-47).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 316931
Time elapsed: 24 minute(s), 36 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) TDSS-Killer: Code:
21:59:19.0508 0x0638 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
21:59:19.0508 0x0638 UEFI system
21:59:34.0028 0x0638 ============================================================
21:59:34.0028 0x0638 Current date / time: 2017/02/15 21:59:34.0028
21:59:34.0029 0x0638 SystemInfo:
21:59:34.0029 0x0638
21:59:34.0029 0x0638 OS Version: 10.0.14393 ServicePack: 0.0
21:59:34.0029 0x0638 Product type: Workstation
21:59:34.0029 0x0638 ComputerName: DESKTOP-0O8M50A
21:59:34.0029 0x0638 UserName: Martina
21:59:34.0029 0x0638 Windows directory: C:\WINDOWS
21:59:34.0029 0x0638 System windows directory: C:\WINDOWS
21:59:34.0029 0x0638 Running under WOW64
21:59:34.0029 0x0638 Processor architecture: Intel x64
21:59:34.0029 0x0638 Number of processors: 8
21:59:34.0029 0x0638 Page size: 0x1000
21:59:34.0029 0x0638 Boot type: Normal boot
21:59:34.0029 0x0638 CodeIntegrityOptions = 0x00000001
21:59:34.0029 0x0638 ============================================================
21:59:34.0288 0x0638 KLMD registered as C:\WINDOWS\system32\drivers\21742438.sys
21:59:34.0288 0x0638 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
21:59:34.0459 0x0638 System UUID: {971AD4D5-AFFA-F65B-05EF-AEDC6FE5D5D2}
21:59:34.0822 0x0638 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:59:34.0868 0x0638 ============================================================
21:59:34.0868 0x0638 \Device\Harddisk0\DR0:
21:59:34.0869 0x0638 GPT partitions:
21:59:34.0869 0x0638 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {33EA83E8-B7FD-4BC1-A67B-06CBC265E236}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xF9800
21:59:34.0869 0x0638 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {DE58F0F4-3A6D-46A4-A4AB-0DC7D5EC5F5E}, Name: EFI system partition, StartLBA 0xFA000, BlocksNum 0x96000
21:59:34.0869 0x0638 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {28C332C7-F8F2-4F62-A571-78D9CB7B0A01}, Name: Microsoft reserved partition, StartLBA 0x190000, BlocksNum 0x40000
21:59:34.0869 0x0638 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {EEE2A90A-57B7-47A6-AD51-A95C9EC24F2F}, Name: Basic data partition, StartLBA 0x1D0000, BlocksNum 0x36AF07CB
21:59:34.0870 0x0638 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {8A1AA919-4127-48A8-B179-715CB8D10463}, Name: , StartLBA 0x36CC0800, BlocksNum 0x196800
21:59:34.0870 0x0638 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {C7FD026F-3850-4A32-ADBC-606775514E36}, Name: Basic data partition, StartLBA 0x36E57000, BlocksNum 0x332F000
21:59:34.0870 0x0638 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {32F9AC8F-D26A-46E6-4173-636C65706975}, Name: Basic data partition, StartLBA 0x3A186000, BlocksNum 0x200000
21:59:34.0870 0x0638 MBR partitions:
21:59:34.0870 0x0638 ============================================================
21:59:34.0885 0x0638 C: <-> \Device\Harddisk0\DR0\Partition4
21:59:34.0885 0x0638 ============================================================
21:59:34.0885 0x0638 Initialize success
21:59:34.0885 0x0638 ============================================================
22:00:04.0594 0x1db0 ============================================================
22:00:04.0594 0x1db0 Scan started
22:00:04.0594 0x1db0 Mode: Manual; SigCheck; TDLFS;
22:00:04.0594 0x1db0 ============================================================
22:00:04.0594 0x1db0 KSN ping started
22:00:04.0881 0x1db0 KSN ping finished: true
22:00:07.0422 0x1db0 ================ Scan system memory ========================
22:00:07.0422 0x1db0 System memory - ok
22:00:07.0423 0x1db0 ================ Scan services =============================
22:00:07.0559 0x1db0 1394ohci - ok
22:00:07.0565 0x1db0 3ware - ok
22:00:07.0579 0x1db0 ACPI - ok
22:00:07.0585 0x1db0 AcpiDev - ok
22:00:07.0592 0x1db0 acpiex - ok
22:00:07.0597 0x1db0 acpipagr - ok
22:00:07.0621 0x1db0 AcpiPmi - ok
22:00:07.0624 0x1db0 acpitime - ok
22:00:07.0705 0x1db0 [ B932E0EE190778D840F1442DFC0F9612, 8780963F14D57279FDD585BE945ED40F24590D32676C7A9EF94002D38B8BA643 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
22:00:07.0753 0x1db0 AdobeARMservice - ok
22:00:07.0770 0x1db0 ADP80XX - ok
22:00:07.0773 0x1db0 AFD - ok
22:00:07.0787 0x1db0 ahcache - ok
22:00:07.0821 0x1db0 AJRouter - ok
22:00:07.0838 0x1db0 ALG - ok
22:00:07.0864 0x1db0 [ BBADD85854BFB5D43C60B7AC8EEA3DBA, 968C043ABEA46F5C79525863B3FE2681AC0FA4202036C9EFD20B408DECF407E2 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
22:00:07.0898 0x1db0 AMD External Events Utility - ok
22:00:07.0912 0x1db0 AmdK8 - ok
22:00:07.0915 0x1db0 amdkmdag - ok
22:00:07.0989 0x1db0 [ 17BA5C907E14947574CBB788F4CEB85F, EAA3DBF436637C58666A91905E388287FC54334EBB2589A00727EB09AC4870E3 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
22:00:08.0024 0x1db0 amdkmdap - ok
22:00:08.0042 0x1db0 [ 82D7250133CF669A294AF189910C8744, D6448B86B36FD777084755BB653452ACA72D1D0A41227B27E0073BC4A2DF9C8B ] amdkmpfd C:\WINDOWS\system32\drivers\amdkmpfd.sys
22:00:08.0053 0x1db0 amdkmpfd - ok
22:00:08.0070 0x1db0 AmdPPM - ok
22:00:08.0072 0x1db0 amdsata - ok
22:00:08.0075 0x1db0 amdsbs - ok
22:00:08.0090 0x1db0 amdxata - ok
22:00:08.0092 0x1db0 AppID - ok
22:00:08.0122 0x1db0 AppIDSvc - ok
22:00:08.0136 0x1db0 Appinfo - ok
22:00:08.0154 0x1db0 applockerfltr - ok
22:00:08.0181 0x1db0 AppReadiness - ok
22:00:08.0205 0x1db0 AppXSvc - ok
22:00:08.0215 0x1db0 arcsas - ok
22:00:08.0221 0x1db0 AsyncMac - ok
22:00:08.0225 0x1db0 atapi - ok
22:00:08.0230 0x1db0 athr - ok
22:00:08.0253 0x1db0 AudioEndpointBuilder - ok
22:00:08.0265 0x1db0 Audiosrv - ok
22:00:08.0294 0x1db0 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
22:00:08.0312 0x1db0 avkmgr - ok
22:00:08.0323 0x1db0 AxInstSV - ok
22:00:08.0335 0x1db0 b06bdrv - ok
22:00:08.0348 0x1db0 BasicDisplay - ok
22:00:08.0355 0x1db0 BasicRender - ok
22:00:08.0364 0x1db0 bcmfn - ok
22:00:08.0371 0x1db0 bcmfn2 - ok
22:00:08.0392 0x1db0 BDESVC - ok
22:00:08.0407 0x1db0 Beep - ok
22:00:08.0419 0x1db0 BFE - ok
22:00:08.0427 0x1db0 BITS - ok
22:00:08.0443 0x1db0 bowser - ok
22:00:08.0457 0x1db0 BrokerInfrastructure - ok
22:00:08.0469 0x1db0 Browser - ok
22:00:08.0494 0x1db0 [ 63A00CDBEB300522C49EC7CA77324060, 99CB6D37C7D898982A192AAA8DE5CE255E6FA482E19FE9032BAA7069E652F6F5 ] BrSerIb C:\WINDOWS\system32\DRIVERS\BrSerIb.sys
22:00:08.0510 0x1db0 BrSerIb - ok
22:00:08.0524 0x1db0 [ BBCFD6C6EF66449F55AF1BFDB08C9B12, D6D5D408FCFFF9ED69D095948E786C08EEECD5F55905A3D8FE2BB08944C5E1F2 ] BrUsbSIb C:\WINDOWS\system32\DRIVERS\BrUsbSIb.sys
22:00:08.0531 0x1db0 BrUsbSIb - ok
22:00:08.0574 0x1db0 [ 065818B8A2CD7F08D6DC8C598191548C, 08982EB22484ECCA1A7FD0C6A10E6D0BB09F624CEBC397C9B241C2D75C984C70 ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
22:00:08.0641 0x1db0 BrYNSvc - detected UnsignedFile.Multi.Generic ( 1 )
22:00:08.0846 0x1db0 Detect skipped due to KSN trusted
22:00:08.0846 0x1db0 BrYNSvc - ok
22:00:08.0943 0x1db0 [ C8BF11D79B29BB23A461B65B58BA8593, 35AFAD5ED40304976287E6C982085DF7A91FF48F0320DAC32370FA039AA03C69 ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
22:00:08.0971 0x1db0 BtFilter - ok
22:00:08.0988 0x1db0 BthAvrcpTg - ok
22:00:09.0016 0x1db0 BthEnum - ok
22:00:09.0022 0x1db0 BthHFEnum - ok
22:00:09.0028 0x1db0 bthhfhid - ok
22:00:09.0038 0x1db0 BthHFSrv - ok
22:00:09.0049 0x1db0 BthLEEnum - ok
22:00:09.0053 0x1db0 BTHMODEM - ok
22:00:09.0073 0x1db0 BthPan - ok
22:00:09.0083 0x1db0 BTHPORT - ok
22:00:09.0096 0x1db0 bthserv - ok
22:00:09.0106 0x1db0 BTHUSB - ok
22:00:09.0126 0x1db0 buttonconverter - ok
22:00:09.0139 0x1db0 CapImg - ok
22:00:09.0143 0x1db0 cdfs - ok
22:00:09.0151 0x1db0 CDPSvc - ok
22:00:09.0165 0x1db0 CDPUserSvc - ok
22:00:09.0215 0x1db0 cdrom - ok
22:00:09.0247 0x1db0 CertPropSvc - ok
22:00:09.0254 0x1db0 cht4iscsi - ok
22:00:09.0260 0x1db0 cht4vbd - ok
22:00:09.0288 0x1db0 circlass - ok
22:00:09.0303 0x1db0 CLFS - ok
22:00:09.0315 0x1db0 ClipSVC - ok
22:00:09.0321 0x1db0 clreg - ok
22:00:09.0333 0x1db0 CmBatt - ok
22:00:09.0339 0x1db0 CNG - ok
22:00:09.0345 0x1db0 cnghwassist - ok
22:00:09.0405 0x1db0 CompositeBus - ok
22:00:09.0411 0x1db0 COMSysApp - ok
22:00:09.0424 0x1db0 condrv - ok
22:00:09.0445 0x1db0 CoreMessagingRegistrar - ok
22:00:09.0534 0x1db0 [ A28D6FA203CE094BDE7ED8CEC6079E42, 5DCA8BA21F5FD0D9F00620E7592949ABCF3BA202CF7AF3D84F93DF7C13E2D4C9 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
22:00:09.0574 0x1db0 cphs - ok
22:00:09.0587 0x1db0 CryptSvc - ok
22:00:09.0595 0x1db0 dam - ok
22:00:09.0607 0x1db0 DcomLaunch - ok
22:00:09.0631 0x1db0 DcpSvc - ok
22:00:09.0650 0x1db0 defragsvc - ok
22:00:09.0669 0x1db0 DeviceAssociationService - ok
22:00:09.0687 0x1db0 DeviceInstall - ok
22:00:09.0702 0x1db0 DevQueryBroker - ok
22:00:09.0719 0x1db0 Dfsc - ok
22:00:09.0743 0x1db0 Dhcp - ok
22:00:09.0796 0x1db0 diagnosticshub.standardcollector.service - ok
22:00:09.0812 0x1db0 DiagTrack - ok
22:00:09.0827 0x1db0 disk - ok
22:00:09.0853 0x1db0 DmEnrollmentSvc - ok
22:00:09.0860 0x1db0 dmvsc - ok
22:00:09.0882 0x1db0 dmwappushservice - ok
22:00:09.0910 0x1db0 Dnscache - ok
22:00:09.0930 0x1db0 dot3svc - ok
22:00:09.0945 0x1db0 DPS - ok
22:00:09.0963 0x1db0 drmkaud - ok
22:00:09.0970 0x1db0 DsmSvc - ok
22:00:09.0977 0x1db0 DsSvc - ok
22:00:09.0992 0x1db0 DXGKrnl - ok
22:00:09.0995 0x1db0 EapHost - ok
22:00:10.0013 0x1db0 ebdrv - ok
22:00:10.0045 0x1db0 EFS - ok
22:00:10.0051 0x1db0 EhStorClass - ok
22:00:10.0075 0x1db0 EhStorTcgDrv - ok
22:00:10.0085 0x1db0 embeddedmode - ok
22:00:10.0105 0x1db0 EntAppSvc - ok
22:00:10.0108 0x1db0 ErrDev - ok
22:00:10.0137 0x1db0 EventSystem - ok
22:00:10.0146 0x1db0 exfat - ok
22:00:10.0153 0x1db0 fastfat - ok
22:00:10.0167 0x1db0 Fax - ok
22:00:10.0172 0x1db0 fdc - ok
22:00:10.0175 0x1db0 fdPHost - ok
22:00:10.0185 0x1db0 FDResPub - ok
22:00:10.0202 0x1db0 fhsvc - ok
22:00:10.0210 0x1db0 FileCrypt - ok
22:00:10.0212 0x1db0 FileInfo - ok
22:00:10.0216 0x1db0 Filetrace - ok
22:00:10.0220 0x1db0 flpydisk - ok
22:00:10.0223 0x1db0 FltMgr - ok
22:00:10.0245 0x1db0 FontCache - ok
22:00:10.0266 0x1db0 FrameServer - ok
22:00:10.0271 0x1db0 FsDepends - ok
22:00:10.0278 0x1db0 Fs_Rec - ok
22:00:10.0292 0x1db0 fvevol - ok
22:00:10.0309 0x1db0 gencounter - ok
22:00:10.0329 0x1db0 genericusbfn - ok
22:00:10.0332 0x1db0 GPIOClx0101 - ok
22:00:10.0347 0x1db0 gpsvc - ok
22:00:10.0355 0x1db0 GpuEnergyDrv - ok
22:00:10.0367 0x1db0 HdAudAddService - ok
22:00:10.0371 0x1db0 HDAudBus - ok
22:00:10.0374 0x1db0 HidBatt - ok
22:00:10.0379 0x1db0 HidBth - ok
22:00:10.0383 0x1db0 hidi2c - ok
22:00:10.0387 0x1db0 hidinterrupt - ok
22:00:10.0393 0x1db0 HidIr - ok
22:00:10.0410 0x1db0 hidserv - ok
22:00:10.0438 0x1db0 HidUsb - ok
22:00:10.0463 0x1db0 HomeGroupListener - ok
22:00:10.0477 0x1db0 HomeGroupProvider - ok
22:00:10.0496 0x1db0 HpSAMD - ok
22:00:10.0508 0x1db0 HTTP - ok
22:00:10.0525 0x1db0 HvHost - ok
22:00:10.0553 0x1db0 hvservice - ok
22:00:10.0574 0x1db0 hwpolicy - ok
22:00:10.0580 0x1db0 hyperkbd - ok
22:00:10.0596 0x1db0 i8042prt - ok
22:00:10.0602 0x1db0 iagpio - ok
22:00:10.0609 0x1db0 iai2c - ok
22:00:10.0616 0x1db0 iaLPSS2i_GPIO2 - ok
22:00:10.0620 0x1db0 iaLPSS2i_I2C - ok
22:00:10.0624 0x1db0 iaLPSSi_GPIO - ok
22:00:10.0628 0x1db0 iaLPSSi_I2C - ok
22:00:10.0632 0x1db0 iaStorAV - ok
22:00:10.0635 0x1db0 iaStorV - ok
22:00:10.0638 0x1db0 ibbus - ok
22:00:10.0673 0x1db0 icssvc - ok
22:00:10.0785 0x1db0 [ 9CE4D3A79D3180AC5A141E2F7E7137F4, 1D717D2156B78632895281779D2646AB066619EA1DB293A9505BF7C174F53271 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
22:00:10.0852 0x1db0 igfx - ok
22:00:10.0880 0x1db0 [ 6A9C613D0F5F9676D128F39B63ACE45B, 027B9568C740E336C7CBBE952309E2719E8FFA14E7DFC2B85B49E0C0CE7D2149 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
22:00:10.0895 0x1db0 igfxCUIService1.0.0.0 - ok
22:00:10.0910 0x1db0 IKEEXT - ok
22:00:10.0922 0x1db0 IndirectKmd - ok
22:00:10.0944 0x1db0 [ 41CD73C13FCAEA4942F0CF7608B7530F, 835BF370E6624975E3CB7106D4835488D6F527C545E7B0ECD26A161D36CABABB ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
22:00:10.0959 0x1db0 intaud_WaveExtensible - ok
22:00:11.0001 0x1db0 [ 87871AB7AC797F922A6F3D4C874CED96, 2BCD89911E42827CD294DD7D1486A7845D1F98019E51958E0F488384401B2944 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
22:00:11.0024 0x1db0 IntcDAud - ok
22:00:11.0040 0x1db0 intelide - ok
22:00:11.0043 0x1db0 intelpep - ok
22:00:11.0058 0x1db0 intelppm - ok
22:00:11.0073 0x1db0 iorate - ok
22:00:11.0085 0x1db0 IpFilterDriver - ok
22:00:11.0112 0x1db0 iphlpsvc - ok
22:00:11.0129 0x1db0 IPMIDRV - ok
22:00:11.0135 0x1db0 IPNAT - ok
22:00:11.0141 0x1db0 irda - ok
22:00:11.0147 0x1db0 IRENUM - ok
22:00:11.0169 0x1db0 irmon - ok
22:00:11.0171 0x1db0 isapnp - ok
22:00:11.0181 0x1db0 iScsiPrt - ok
22:00:11.0198 0x1db0 [ 48B904D31F2369D7B0122617038D3F5B, 8A43CB37667929CCCC37B6E79E82509BBCA6C8884B44059DC87BCA7C21BE7FE1 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
22:00:11.0205 0x1db0 iwdbus - ok
22:00:11.0229 0x1db0 kbdclass - ok
22:00:11.0234 0x1db0 kbdhid - ok
22:00:11.0244 0x1db0 kdnic - ok
22:00:11.0248 0x1db0 KeyIso - ok
22:00:11.0253 0x1db0 KSecDD - ok
22:00:11.0271 0x1db0 KSecPkg - ok
22:00:11.0275 0x1db0 ksthunk - ok
22:00:11.0286 0x1db0 KtmRm - ok
22:00:11.0296 0x1db0 LanmanServer - ok
22:00:11.0303 0x1db0 LanmanWorkstation - ok
22:00:11.0316 0x1db0 lfsvc - ok
22:00:11.0319 0x1db0 LicenseManager - ok
22:00:11.0329 0x1db0 lltdio - ok
22:00:11.0340 0x1db0 lltdsvc - ok
22:00:11.0359 0x1db0 lmhosts - ok
22:00:11.0374 0x1db0 LSI_SAS - ok
22:00:11.0376 0x1db0 LSI_SAS2i - ok
22:00:11.0378 0x1db0 LSI_SAS3i - ok
22:00:11.0381 0x1db0 LSI_SSS - ok
22:00:11.0389 0x1db0 LSM - ok
22:00:11.0391 0x1db0 luafv - ok
22:00:11.0401 0x1db0 MapsBroker - ok
22:00:11.0404 0x1db0 megasas - ok
22:00:11.0434 0x1db0 megasas2i - ok
22:00:11.0438 0x1db0 megasr - ok
22:00:11.0467 0x1db0 [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
22:00:11.0488 0x1db0 MEIx64 - ok
22:00:11.0512 0x1db0 MessagingService - ok
22:00:11.0525 0x1db0 mlx4_bus - ok
22:00:11.0541 0x1db0 MMCSS - ok
22:00:11.0556 0x1db0 Modem - ok
22:00:11.0566 0x1db0 monitor - ok
22:00:11.0585 0x1db0 mouclass - ok
22:00:11.0588 0x1db0 mouhid - ok
22:00:11.0592 0x1db0 mountmgr - ok
22:00:11.0652 0x1db0 [ 572BD5A99648652147A5D3C6DA946C99, FFDAD4A5682864977C926A5DDDB632CDB2A166BF025757801CC56F2828720023 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
22:00:11.0670 0x1db0 MozillaMaintenance - ok
22:00:11.0673 0x1db0 mpsdrv - ok
22:00:11.0682 0x1db0 MpsSvc - ok
22:00:11.0690 0x1db0 MRxDAV - ok
22:00:11.0697 0x1db0 mrxsmb - ok
22:00:11.0717 0x1db0 mrxsmb10 - ok
22:00:11.0722 0x1db0 mrxsmb20 - ok
22:00:11.0741 0x1db0 MsBridge - ok
22:00:11.0758 0x1db0 MSDTC - ok
22:00:11.0766 0x1db0 Msfs - ok
22:00:11.0772 0x1db0 msgpiowin32 - ok
22:00:11.0785 0x1db0 mshidkmdf - ok
22:00:11.0800 0x1db0 mshidumdf - ok
22:00:11.0802 0x1db0 msisadrv - ok
22:00:11.0834 0x1db0 MSiSCSI - ok
22:00:11.0836 0x1db0 msiserver - ok
22:00:11.0838 0x1db0 MSKSSRV - ok
22:00:11.0841 0x1db0 MsLldp - ok
22:00:11.0849 0x1db0 MSPCLOCK - ok
22:00:11.0851 0x1db0 MSPQM - ok
22:00:11.0853 0x1db0 MsRPC - ok
22:00:11.0857 0x1db0 mssmbios - ok
22:00:11.0860 0x1db0 MSTEE - ok
22:00:11.0863 0x1db0 MTConfig - ok
22:00:11.0865 0x1db0 Mup - ok
22:00:11.0868 0x1db0 mvumis - ok
22:00:11.0889 0x1db0 NativeWifiP - ok
22:00:11.0903 0x1db0 NcaSvc - ok
22:00:11.0908 0x1db0 NcbService - ok
22:00:11.0910 0x1db0 NcdAutoSetup - ok
22:00:11.0912 0x1db0 ndfltr - ok
22:00:11.0930 0x1db0 NDIS - ok
22:00:11.0941 0x1db0 NdisCap - ok
22:00:11.0967 0x1db0 NdisImPlatform - ok
22:00:11.0972 0x1db0 NdisTapi - ok
22:00:11.0978 0x1db0 Ndisuio - ok
22:00:11.0997 0x1db0 NdisVirtualBus - ok
22:00:12.0000 0x1db0 NdisWan - ok
22:00:12.0004 0x1db0 ndiswanlegacy - ok
22:00:12.0016 0x1db0 ndproxy - ok
22:00:12.0031 0x1db0 Ndu - ok
22:00:12.0035 0x1db0 NetAdapterCx - ok
22:00:12.0038 0x1db0 NetBIOS - ok
22:00:12.0044 0x1db0 NetBT - ok
22:00:12.0048 0x1db0 Netlogon - ok
22:00:12.0071 0x1db0 Netman - ok
22:00:12.0086 0x1db0 netprofm - ok
22:00:12.0099 0x1db0 NetSetupSvc - ok
22:00:12.0154 0x1db0 NetTcpPortSharing - ok
22:00:12.0175 0x1db0 NgcCtnrSvc - ok
22:00:12.0190 0x1db0 NgcSvc - ok
22:00:12.0196 0x1db0 NlaSvc - ok
22:00:12.0216 0x1db0 Npfs - ok
22:00:12.0233 0x1db0 npsvctrig - ok
22:00:12.0249 0x1db0 nsi - ok
22:00:12.0253 0x1db0 nsiproxy - ok
22:00:12.0271 0x1db0 NTFS - ok
22:00:12.0274 0x1db0 Null - ok
22:00:12.0285 0x1db0 nvraid - ok
22:00:12.0289 0x1db0 nvstor - ok
22:00:12.0302 0x1db0 OneSyncSvc - ok
22:00:12.0320 0x1db0 p2pimsvc - ok
22:00:12.0322 0x1db0 p2psvc - ok
22:00:12.0327 0x1db0 Parport - ok
22:00:12.0343 0x1db0 partmgr - ok
22:00:12.0357 0x1db0 PcaSvc - ok
22:00:12.0374 0x1db0 pci - ok
22:00:12.0386 0x1db0 pciide - ok
22:00:12.0388 0x1db0 pcmcia - ok
22:00:12.0390 0x1db0 pcw - ok
22:00:12.0403 0x1db0 pdc - ok
22:00:12.0408 0x1db0 PEAUTH - ok
22:00:12.0410 0x1db0 percsas2i - ok
22:00:12.0412 0x1db0 percsas3i - ok
22:00:12.0492 0x1db0 PerfHost - ok
22:00:12.0527 0x1db0 PhoneSvc - ok
22:00:12.0541 0x1db0 PimIndexMaintenanceSvc - ok
22:00:12.0564 0x1db0 pla - ok
22:00:12.0576 0x1db0 PlugPlay - ok
22:00:12.0582 0x1db0 PNRPAutoReg - ok
22:00:12.0588 0x1db0 PNRPsvc - ok
22:00:12.0599 0x1db0 PolicyAgent - ok
22:00:12.0604 0x1db0 Power - ok
22:00:12.0616 0x1db0 PptpMiniport - ok
22:00:12.0785 0x1db0 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
22:00:12.0947 0x1db0 PrintNotify - ok
22:00:12.0964 0x1db0 Processor - ok
22:00:12.0982 0x1db0 ProfSvc - ok
22:00:12.0986 0x1db0 Psched - ok
22:00:13.0011 0x1db0 QWAVE - ok
22:00:13.0030 0x1db0 QWAVEdrv - ok
22:00:13.0058 0x1db0 [ 45F4CEF43389C69641B56DD9E0618422, D7003038EA3414B08211C1203B5A94072FA719BFC1B7A142FBDB5E7D12F728C4 ] RadioHIDMini C:\WINDOWS\System32\drivers\RadioHIDMini.sys
22:00:13.0096 0x1db0 RadioHIDMini - ok
22:00:13.0101 0x1db0 RasAcd - ok
22:00:13.0121 0x1db0 RasAgileVpn - ok
22:00:13.0129 0x1db0 RasAuto - ok
22:00:13.0132 0x1db0 Rasl2tp - ok
22:00:13.0156 0x1db0 RasMan - ok
22:00:13.0158 0x1db0 RasPppoe - ok
22:00:13.0172 0x1db0 RasSstp - ok
22:00:13.0175 0x1db0 rdbss - ok
22:00:13.0189 0x1db0 rdpbus - ok
22:00:13.0192 0x1db0 RDPDR - ok
22:00:13.0233 0x1db0 RdpVideoMiniport - ok
22:00:13.0237 0x1db0 rdyboost - ok
22:00:13.0241 0x1db0 ReFSv1 - ok
22:00:13.0258 0x1db0 RemoteAccess - ok
22:00:13.0290 0x1db0 RemoteRegistry - ok
22:00:13.0308 0x1db0 RetailDemo - ok
22:00:13.0315 0x1db0 RFCOMM - ok
22:00:13.0322 0x1db0 RmSvc - ok
22:00:13.0340 0x1db0 RpcEptMapper - ok
22:00:13.0357 0x1db0 RpcLocator - ok
22:00:13.0363 0x1db0 RpcSs - ok
22:00:13.0386 0x1db0 rspndr - ok
22:00:13.0408 0x1db0 rt640x64 - ok
22:00:13.0445 0x1db0 [ 1C201F1FC03ADBD7A2DE4282F6536772, 69D7FF0AE44191F2E0292F841D3E97F29697EB978D92C523F3ED4EBE619E8B8A ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
22:00:13.0466 0x1db0 RTSUER - ok
22:00:13.0479 0x1db0 s3cap - ok
22:00:13.0481 0x1db0 SamSs - ok
22:00:13.0497 0x1db0 sbp2port - ok
22:00:13.0508 0x1db0 SCardSvr - ok
22:00:13.0529 0x1db0 ScDeviceEnum - ok
22:00:13.0542 0x1db0 scfilter - ok
22:00:13.0549 0x1db0 Schedule - ok
22:00:13.0555 0x1db0 scmbus - ok
22:00:13.0561 0x1db0 scmdisk0101 - ok
22:00:13.0592 0x1db0 SCPolicySvc - ok
22:00:13.0606 0x1db0 sdbus - ok
22:00:13.0610 0x1db0 SDRSVC - ok
22:00:13.0614 0x1db0 sdstor - ok
22:00:13.0618 0x1db0 seclogon - ok
22:00:13.0624 0x1db0 SENS - ok
22:00:13.0627 0x1db0 SensorDataService - ok
22:00:13.0641 0x1db0 SensorService - ok
22:00:13.0650 0x1db0 SensrSvc - ok
22:00:13.0652 0x1db0 SerCx - ok
22:00:13.0654 0x1db0 SerCx2 - ok
22:00:13.0664 0x1db0 Serenum - ok
22:00:13.0666 0x1db0 Serial - ok
22:00:13.0668 0x1db0 sermouse - ok
22:00:13.0671 0x1db0 SessionEnv - ok
22:00:13.0674 0x1db0 sfloppy - ok
22:00:13.0692 0x1db0 SharedAccess - ok
22:00:13.0711 0x1db0 ShellHWDetection - ok
22:00:13.0740 0x1db0 shpamsvc - ok
22:00:13.0746 0x1db0 SiSRaid2 - ok
22:00:13.0754 0x1db0 SiSRaid4 - ok
22:00:13.0767 0x1db0 smphost - ok
22:00:13.0782 0x1db0 SmsRouter - ok
22:00:13.0794 0x1db0 SNMPTRAP - ok
22:00:13.0817 0x1db0 spaceport - ok
22:00:13.0827 0x1db0 SpbCx - ok
22:00:13.0838 0x1db0 Spooler - ok
22:00:13.0850 0x1db0 sppsvc - ok
22:00:13.0860 0x1db0 srv - ok
22:00:13.0872 0x1db0 srv2 - ok
22:00:13.0886 0x1db0 srvnet - ok
22:00:13.0898 0x1db0 SSDPSRV - ok
22:00:13.0931 0x1db0 SstpSvc - ok
22:00:13.0976 0x1db0 StateRepository - ok
22:00:13.0998 0x1db0 stexstor - ok
22:00:14.0027 0x1db0 [ B11724BFE7DA1BA55903B4D849415F1A, ED09B6AD68C87FED34FC66CB6C7A74DFC3AF524E3BE89EDD18A5B6685F656ACA ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
22:00:14.0079 0x1db0 StillCam - ok
22:00:14.0116 0x1db0 stisvc - ok
22:00:14.0133 0x1db0 storahci - ok
22:00:14.0139 0x1db0 storflt - ok
22:00:14.0145 0x1db0 stornvme - ok
22:00:14.0148 0x1db0 storqosflt - ok
22:00:14.0162 0x1db0 StorSvc - ok
22:00:14.0175 0x1db0 storufs - ok
22:00:14.0183 0x1db0 storvsc - ok
22:00:14.0197 0x1db0 svsvc - ok
22:00:14.0201 0x1db0 swenum - ok
22:00:14.0204 0x1db0 swprv - ok
22:00:14.0223 0x1db0 Synth3dVsc - ok
22:00:14.0281 0x1db0 [ 55CCD15CA1BFC41A07A58DAD29341720, B675C6C8B4DD5856B1D6996A6605834433F3B5C0B6C0EB1D91BA29CA2D75946B ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
22:00:14.0306 0x1db0 SynTP - ok
22:00:14.0386 0x1db0 [ 1046691BF93D89342190DA54DF437238, A1C0EDF4F6CAAEE304960813005AF3F06ADBE0C85C9447669D8FCE7B0F049CA0 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
22:00:14.0410 0x1db0 SynTPEnhService - ok
22:00:14.0421 0x1db0 SysMain - ok
22:00:14.0436 0x1db0 SystemEventsBroker - ok
22:00:14.0453 0x1db0 TabletInputService - ok
22:00:14.0456 0x1db0 TapiSrv - ok
22:00:14.0464 0x1db0 Tcpip - ok
22:00:14.0467 0x1db0 Tcpip6 - ok
22:00:14.0486 0x1db0 tcpipreg - ok
22:00:14.0505 0x1db0 tdx - ok
22:00:14.0508 0x1db0 terminpt - ok
22:00:14.0543 0x1db0 TermService - ok
22:00:14.0551 0x1db0 Themes - ok
22:00:14.0566 0x1db0 TieringEngineService - ok
22:00:14.0573 0x1db0 tiledatamodelsvc - ok
22:00:14.0580 0x1db0 TimeBrokerSvc - ok
22:00:14.0594 0x1db0 TPM - ok
22:00:14.0610 0x1db0 TrkWks - ok
22:00:14.0659 0x1db0 TrustedInstaller - ok
22:00:14.0667 0x1db0 tsusbflt - ok
22:00:14.0689 0x1db0 TsUsbGD - ok
22:00:14.0695 0x1db0 tunnel - ok
22:00:14.0725 0x1db0 tzautoupdate - ok
22:00:14.0742 0x1db0 UASPStor - ok
22:00:14.0748 0x1db0 UcmCx0101 - ok
22:00:14.0755 0x1db0 UcmTcpciCx0101 - ok
22:00:14.0762 0x1db0 UcmUcsi - ok
22:00:14.0772 0x1db0 Ucx01000 - ok
22:00:14.0775 0x1db0 UdeCx - ok
22:00:14.0779 0x1db0 udfs - ok
22:00:14.0783 0x1db0 UEFI - ok
22:00:14.0787 0x1db0 Ufx01000 - ok
22:00:14.0791 0x1db0 UfxChipidea - ok
22:00:14.0794 0x1db0 ufxsynopsys - ok
22:00:14.0811 0x1db0 UI0Detect - ok
22:00:14.0813 0x1db0 umbus - ok
22:00:14.0816 0x1db0 UmPass - ok
22:00:14.0822 0x1db0 UmRdpService - ok
22:00:14.0825 0x1db0 UnistoreSvc - ok
22:00:14.0839 0x1db0 upnphost - ok
22:00:14.0856 0x1db0 UrsChipidea - ok
22:00:14.0865 0x1db0 UrsCx01000 - ok
22:00:14.0867 0x1db0 UrsSynopsys - ok
22:00:14.0887 0x1db0 usbccgp - ok
22:00:14.0890 0x1db0 usbcir - ok
22:00:14.0893 0x1db0 usbehci - ok
22:00:14.0895 0x1db0 usbhub - ok
22:00:14.0905 0x1db0 USBHUB3 - ok
22:00:14.0908 0x1db0 usbohci - ok
22:00:14.0911 0x1db0 usbprint - ok
22:00:14.0913 0x1db0 usbser - ok
22:00:14.0916 0x1db0 USBSTOR - ok
22:00:14.0919 0x1db0 usbuhci - ok
22:00:14.0933 0x1db0 usbvideo - ok
22:00:14.0935 0x1db0 USBXHCI - ok
22:00:14.0967 0x1db0 UserDataSvc - ok
22:00:14.0994 0x1db0 UserManager - ok
22:00:15.0009 0x1db0 UsoSvc - ok
22:00:15.0014 0x1db0 VaultSvc - ok
22:00:15.0021 0x1db0 vdrvroot - ok
22:00:15.0037 0x1db0 vds - ok
22:00:15.0042 0x1db0 VerifierExt - ok
22:00:15.0063 0x1db0 vhdmp - ok
22:00:15.0067 0x1db0 vhf - ok
22:00:15.0087 0x1db0 vmbus - ok
22:00:15.0091 0x1db0 VMBusHID - ok
22:00:15.0095 0x1db0 vmgid - ok
22:00:15.0100 0x1db0 vmicguestinterface - ok
22:00:15.0104 0x1db0 vmicheartbeat - ok
22:00:15.0109 0x1db0 vmickvpexchange - ok
22:00:15.0113 0x1db0 vmicrdv - ok
22:00:15.0118 0x1db0 vmicshutdown - ok
22:00:15.0122 0x1db0 vmictimesync - ok
22:00:15.0125 0x1db0 vmicvmsession - ok
22:00:15.0127 0x1db0 vmicvss - ok
22:00:15.0130 0x1db0 volmgr - ok
22:00:15.0133 0x1db0 volmgrx - ok
22:00:15.0150 0x1db0 volsnap - ok
22:00:15.0152 0x1db0 volume - ok
22:00:15.0166 0x1db0 vpci - ok
22:00:15.0168 0x1db0 vsmraid - ok
22:00:15.0171 0x1db0 VSS - ok
22:00:15.0174 0x1db0 VSTXRAID - ok
22:00:15.0187 0x1db0 vwifibus - ok
22:00:15.0189 0x1db0 vwififlt - ok
22:00:15.0192 0x1db0 vwifimp - ok
22:00:15.0195 0x1db0 W32Time - ok
22:00:15.0197 0x1db0 WacomPen - ok
22:00:15.0235 0x1db0 WalletService - ok
22:00:15.0237 0x1db0 wanarp - ok
22:00:15.0240 0x1db0 wanarpv6 - ok
22:00:15.0243 0x1db0 wbengine - ok
22:00:15.0256 0x1db0 WbioSrvc - ok
22:00:15.0271 0x1db0 wcifs - ok
22:00:15.0273 0x1db0 Wcmsvc - ok
22:00:15.0276 0x1db0 wcncsvc - ok
22:00:15.0278 0x1db0 wcnfs - ok
22:00:15.0281 0x1db0 WdBoot - ok
22:00:15.0285 0x1db0 Wdf01000 - ok
22:00:15.0288 0x1db0 WdFilter - ok
22:00:15.0291 0x1db0 WdiServiceHost - ok
22:00:15.0293 0x1db0 WdiSystemHost - ok
22:00:15.0303 0x1db0 wdiwifi - ok
22:00:15.0305 0x1db0 WdNisDrv - ok
22:00:15.0340 0x1db0 WdNisSvc - ok
22:00:15.0345 0x1db0 WebClient - ok
22:00:15.0360 0x1db0 Wecsvc - ok
22:00:15.0364 0x1db0 WEPHOSTSVC - ok
22:00:15.0367 0x1db0 wercplsupport - ok
22:00:15.0371 0x1db0 WerSvc - ok
22:00:15.0375 0x1db0 WFPLWFS - ok
22:00:15.0393 0x1db0 WiaRpc - ok
22:00:15.0406 0x1db0 WIMMount - ok
22:00:15.0408 0x1db0 WinDefend - ok
22:00:15.0434 0x1db0 WindowsTrustedRT - ok
22:00:15.0437 0x1db0 WindowsTrustedRTProxy - ok
22:00:15.0456 0x1db0 WinHttpAutoProxySvc - ok
22:00:15.0465 0x1db0 WinMad - ok
22:00:15.0511 0x1db0 Winmgmt - ok
22:00:15.0531 0x1db0 WinRM - ok
22:00:15.0557 0x1db0 WINUSB - ok
22:00:15.0560 0x1db0 WinVerbs - ok
22:00:15.0586 0x1db0 wisvc - ok
22:00:15.0603 0x1db0 WlanSvc - ok
22:00:15.0631 0x1db0 wlidsvc - ok
22:00:15.0643 0x1db0 WmiAcpi - ok
22:00:15.0660 0x1db0 wmiApSrv - ok
22:00:15.0678 0x1db0 WMPNetworkSvc - ok
22:00:15.0690 0x1db0 Wof - ok
22:00:15.0724 0x1db0 workfolderssvc - ok
22:00:15.0731 0x1db0 WPDBusEnum - ok
22:00:15.0757 0x1db0 WpdUpFltr - ok
22:00:15.0763 0x1db0 WpnService - ok
22:00:15.0770 0x1db0 WpnUserService - ok
22:00:15.0795 0x1db0 ws2ifsl - ok
22:00:15.0805 0x1db0 wscsvc - ok
22:00:15.0808 0x1db0 WSearch - ok
22:00:15.0834 0x1db0 wuauserv - ok
22:00:15.0837 0x1db0 WudfPf - ok
22:00:15.0840 0x1db0 WUDFRd - ok
22:00:15.0852 0x1db0 wudfsvc - ok
22:00:15.0854 0x1db0 WUDFWpdFs - ok
22:00:15.0857 0x1db0 WUDFWpdMtp - ok
22:00:15.0874 0x1db0 WwanSvc - ok
22:00:15.0881 0x1db0 XblAuthManager - ok
22:00:15.0904 0x1db0 XblGameSave - ok
22:00:15.0916 0x1db0 xboxgip - ok
22:00:15.0919 0x1db0 XboxNetApiSvc - ok
22:00:15.0941 0x1db0 xinputhid - ok
22:00:15.0943 0x1db0 ================ Scan global ===============================
22:00:16.0027 0x1db0 [ Global ] - ok
22:00:16.0028 0x1db0 ================ Scan MBR ==================================
22:00:16.0035 0x1db0 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
22:00:16.0129 0x1db0 \Device\Harddisk0\DR0 - ok
22:00:16.0129 0x1db0 ================ Scan VBR ==================================
22:00:16.0155 0x1db0 [ 0F6D5FDD7368D0C7E540B23D89109459 ] \Device\Harddisk0\DR0\Partition1
22:00:16.0158 0x1db0 \Device\Harddisk0\DR0\Partition1 - ok
22:00:16.0177 0x1db0 [ CC10A31CA1474F1735E382C7B6A33743 ] \Device\Harddisk0\DR0\Partition2
22:00:16.0178 0x1db0 \Device\Harddisk0\DR0\Partition2 - ok
22:00:16.0188 0x1db0 [ B887DD79C836790486AEE5DEBE39AA3C ] \Device\Harddisk0\DR0\Partition3
22:00:16.0188 0x1db0 \Device\Harddisk0\DR0\Partition3 - ok
22:00:16.0199 0x1db0 [ 83F56089F2A995B51475B6140019B36C ] \Device\Harddisk0\DR0\Partition4
22:00:16.0202 0x1db0 \Device\Harddisk0\DR0\Partition4 - ok
22:00:16.0236 0x1db0 [ FDEBD1EE7A745B6416D178074BD0957E ] \Device\Harddisk0\DR0\Partition5
22:00:16.0239 0x1db0 \Device\Harddisk0\DR0\Partition5 - ok
22:00:16.0256 0x1db0 [ 9CCC069385360D23F9B25D47006264D4 ] \Device\Harddisk0\DR0\Partition6
22:00:16.0259 0x1db0 \Device\Harddisk0\DR0\Partition6 - ok
22:00:16.0272 0x1db0 [ 186381D787587D16081E09DEBFB1EED0 ] \Device\Harddisk0\DR0\Partition7
22:00:16.0274 0x1db0 \Device\Harddisk0\DR0\Partition7 - ok
22:00:16.0274 0x1db0 ================ Scan generic autorun ======================
22:00:16.0275 0x1db0 WindowsDefender - ok
22:00:16.0339 0x1db0 [ 799312CDAA79E65DB21AA9F56D0BE1C7, FCB2D5F213F82BAB4C320EFF3BF988B7609A7E8EBAF85DAAF63F1A92826323CA ] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe
22:00:16.0408 0x1db0 ControlCenter4 - detected UnsignedFile.Multi.Generic ( 1 )
22:00:16.0595 0x1db0 Detect skipped due to KSN trusted
22:00:16.0595 0x1db0 ControlCenter4 - ok
22:00:16.0766 0x1db0 [ 22310E2C6AE375142ABBB9EF384ECD40, A8673DF56546E4CDD7A0099D8CCB889415125089F786D0637E8D9B21CE53AB4D ] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
22:00:16.0907 0x1db0 BrStsMon00 - detected UnsignedFile.Multi.Generic ( 1 )
22:00:17.0281 0x1db0 Detect skipped due to KSN trusted
22:00:17.0281 0x1db0 BrStsMon00 - ok
22:00:17.0427 0x1db0 [ 0C0DD390CF53D506414AC2CAA68E7F34, C64A9BAF0FDA5161B9361FC454CA36E7595E6BC969A6FA03993C5949373D8A00 ] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
22:00:17.0515 0x1db0 BrHelp - detected UnsignedFile.Multi.Generic ( 1 )
22:00:17.0887 0x1db0 Detect skipped due to KSN trusted
22:00:17.0887 0x1db0 BrHelp - ok
22:00:17.0987 0x1db0 [ 4C6AAABB264526A9C845A39AEBB79B69, B27F869E8B44CC5F1F9ADCA53AA848C16D706587ED9C7F995AE59BF9B0426523 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe
22:00:18.0005 0x1db0 StartCCC - ok
22:00:18.0085 0x1db0 OneDriveSetup - ok
22:00:18.0088 0x1db0 OneDriveSetup - ok
22:00:18.0267 0x1db0 [ CD7DC286D2FDFACB965C3E10967B2199, 30FFB133E70D694BE6968E86E999C797EE7349DCC4E9ACFB338412C039374388 ] C:\Users\Martina\AppData\Local\Microsoft\OneDrive\OneDrive.exe
22:00:18.0298 0x1db0 OneDrive - ok
22:00:18.0300 0x1db0 Waiting for KSN requests completion. In queue: 2
22:00:19.0325 0x1db0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x62100 ( disabled : updated )
22:00:19.0332 0x1db0 Win FW state via NFP2: enabled ( trusted )
22:00:19.0623 0x1db0 ============================================================
22:00:19.0623 0x1db0 Scan finished
22:00:19.0623 0x1db0 ============================================================
22:00:19.0638 0x1164 Detected object count: 0
22:00:19.0639 0x1164 Actual detected object count: 0 |