Hier der Report Code:
14:26:57.0824 0x1544 TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17
14:27:15.0953 0x1544 ============================================================
14:27:15.0953 0x1544 Current date / time: 2018/10/17 14:27:15.0952
14:27:15.0953 0x1544 SystemInfo:
14:27:15.0954 0x1544
14:27:15.0954 0x1544 OS Version: 10.0.16299 ServicePack: 0.0
14:27:15.0954 0x1544 Product type: Workstation
14:27:15.0954 0x1544 ComputerName: DESKTOP-K7CJ56O
14:27:15.0954 0x1544 UserName: Daniel
14:27:15.0960 0x1544 Windows directory: C:\WINDOWS
14:27:15.0960 0x1544 System windows directory: C:\WINDOWS
14:27:15.0960 0x1544 Running under WOW64
14:27:15.0960 0x1544 Processor architecture: Intel x64
14:27:15.0960 0x1544 Number of processors: 4
14:27:15.0960 0x1544 Page size: 0x1000
14:27:15.0960 0x1544 Boot type: Normal boot
14:27:15.0960 0x1544 CodeIntegrityOptions = 0x00000001
14:27:15.0960 0x1544 ============================================================
14:27:16.0025 0x1544 KLMD registered as C:\WINDOWS\system32\drivers\33415706.sys
14:27:16.0025 0x1544 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 16299.637, osProperties = 0x19
14:27:16.0141 0x1544 System UUID: {09F9F329-BBD1-A85C-4863-FCA877AD883D}
14:27:16.0680 0x1544 Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:27:16.0690 0x1544 ============================================================
14:27:16.0690 0x1544 \Device\Harddisk0\DR0:
14:27:16.0690 0x1544 MBR partitions:
14:27:16.0690 0x1544 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xB, StartLBA 0x800, BlocksNum 0x200000
14:27:16.0690 0x1544 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x200800, BlocksNum 0xC350000
14:27:16.0690 0x1544 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xC550800, BlocksNum 0x88B8000
14:27:16.0690 0x1544 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x14E08800, BlocksNum 0x8EEA000
14:27:16.0690 0x1544 ============================================================
14:27:16.0691 0x1544 C: <-> \Device\Harddisk0\DR0\Partition4
14:27:16.0692 0x1544 D: <-> \Device\Harddisk0\DR0\Partition2
14:27:16.0692 0x1544 E: <-> \Device\Harddisk0\DR0\Partition3
14:27:16.0692 0x1544 ============================================================
14:27:16.0692 0x1544 Initialize success
14:27:16.0692 0x1544 ============================================================
14:27:52.0139 0x1518 ============================================================
14:27:52.0139 0x1518 Scan started
14:27:52.0139 0x1518 Mode: Manual; SigCheck; TDLFS;
14:27:52.0139 0x1518 ============================================================
14:27:52.0139 0x1518 KSN ping started
14:27:52.0471 0x1518 KSN ping finished: true
14:27:53.0141 0x1518 ================ Scan system memory ========================
14:27:53.0141 0x1518 System memory - ok
14:27:53.0142 0x1518 ================ Scan services =============================
14:27:53.0195 0x1518 1394ohci - ok
14:27:53.0202 0x1518 3ware - ok
14:27:53.0210 0x1518 ACPI - ok
14:27:53.0215 0x1518 AcpiDev - ok
14:27:53.0226 0x1518 acpiex - ok
14:27:53.0234 0x1518 acpipagr - ok
14:27:53.0242 0x1518 AcpiPmi - ok
14:27:53.0250 0x1518 acpitime - ok
14:27:53.0264 0x1518 [ F28ADE410436B42A3FCB53C38CEFEFC8, 15FAF5CFC498FA08FF086C2AE50CBD0414D325F92FB1DA44F521CA0F1078B2C3 ] acsock C:\WINDOWS\system32\DRIVERS\acsock64.sys
14:27:53.0423 0x1518 acsock - ok
14:27:53.0443 0x1518 [ 696A8431DD22EDE385D7AB84E0EAF4C9, E5892B346904C7A392A0B1C8F4C9066BC535A2C70307123C8E1F2157353333F0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:27:53.0477 0x1518 AdobeARMservice - ok
14:27:53.0489 0x1518 ADP80XX - ok
14:27:53.0500 0x1518 AFD - ok
14:27:53.0507 0x1518 ahcache - ok
14:27:53.0521 0x1518 AJRouter - ok
14:27:53.0531 0x1518 ALG - ok
14:27:53.0538 0x1518 AmdK8 - ok
14:27:53.0541 0x1518 AmdPPM - ok
14:27:53.0546 0x1518 amdsata - ok
14:27:53.0556 0x1518 amdsbs - ok
14:27:53.0562 0x1518 amdxata - ok
14:27:53.0568 0x1518 AppID - ok
14:27:53.0573 0x1518 AppIDSvc - ok
14:27:53.0581 0x1518 Appinfo - ok
14:27:53.0592 0x1518 [ 7D811EA7A2AAA49B0446D42CBC1CD338, AFECE5E44E48F756C7EB81D95C9237552AF8A9C02CBE756E0F3D3C6524DE49AD ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:27:53.0612 0x1518 Apple Mobile Device Service - ok
14:27:53.0621 0x1518 applockerfltr - ok
14:27:53.0626 0x1518 AppMgmt - ok
14:27:53.0632 0x1518 AppReadiness - ok
14:27:53.0638 0x1518 AppVClient - ok
14:27:53.0644 0x1518 AppvStrm - ok
14:27:53.0650 0x1518 AppvVemgr - ok
14:27:53.0655 0x1518 AppvVfs - ok
14:27:53.0662 0x1518 AppXSvc - ok
14:27:53.0667 0x1518 arcsas - ok
14:27:53.0674 0x1518 AssignedAccessManagerSvc - ok
14:27:53.0680 0x1518 AsyncMac - ok
14:27:53.0687 0x1518 atapi - ok
14:27:53.0702 0x1518 [ 1008B9030D4AF6160979FADE94521C62, 81F37EFBC91ED1928B22270B6E001CD6721293055F1881585F582766C73B724E ] AtherosSvc C:\WINDOWS\system32\DRIVERS\AdminService.exe
14:27:53.0743 0x1518 AtherosSvc - ok
14:27:53.0749 0x1518 AudioEndpointBuilder - ok
14:27:53.0754 0x1518 Audiosrv - ok
14:27:53.0756 0x1518 AxInstSV - ok
14:27:53.0764 0x1518 b06bdrv - ok
14:27:53.0767 0x1518 bam - ok
14:27:53.0776 0x1518 BasicDisplay - ok
14:27:53.0783 0x1518 BasicRender - ok
14:27:53.0790 0x1518 bcmfn2 - ok
14:27:53.0794 0x1518 BDESVC - ok
14:27:53.0802 0x1518 Beep - ok
14:27:53.0809 0x1518 BFE - ok
14:27:53.0820 0x1518 [ 04CF08191930CFDA75C957473642D19E, 5E699D76E10A6E98A8389A7995DB15F9176A544741C756820B4DEB34314F820A ] BHTPCRDR C:\WINDOWS\System32\drivers\bhtpcrdr.sys
14:27:53.0886 0x1518 BHTPCRDR - ok
14:27:53.0890 0x1518 BITS - ok
14:27:53.0898 0x1518 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
14:27:53.0914 0x1518 Bonjour Service - ok
14:27:53.0924 0x1518 bowser - ok
14:27:53.0927 0x1518 BrokerInfrastructure - ok
14:27:53.0931 0x1518 Browser - ok
14:27:53.0936 0x1518 [ 36B117CB04920B421A7F6DF1ED7B884B, 94D96ACE4C11BDC4332B60B0B7ED346BBDE0C3D8562EC61FD04429C6CA082A1B ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
14:27:53.0979 0x1518 BtFilter - ok
14:27:53.0984 0x1518 BthA2DP - ok
14:27:53.0989 0x1518 BthAvrcpTg - ok
14:27:53.0993 0x1518 BthEnum - ok
14:27:53.0997 0x1518 BthHFEnum - ok
14:27:53.0999 0x1518 bthhfhid - ok
14:27:54.0004 0x1518 BthHFSrv - ok
14:27:54.0007 0x1518 bthl2cap - ok
14:27:54.0011 0x1518 BthLEEnum - ok
14:27:54.0015 0x1518 BTHMODEM - ok
14:27:54.0019 0x1518 BthPan - ok
14:27:54.0022 0x1518 BTHPORT - ok
14:27:54.0025 0x1518 bthserv - ok
14:27:54.0031 0x1518 BTHUSB - ok
14:27:54.0035 0x1518 bttflt - ok
14:27:54.0038 0x1518 buttonconverter - ok
14:27:54.0041 0x1518 CAD - ok
14:27:54.0048 0x1518 camsvc - ok
14:27:54.0051 0x1518 CapImg - ok
14:27:54.0055 0x1518 cdfs - ok
14:27:54.0058 0x1518 CDPSvc - ok
14:27:54.0062 0x1518 CDPUserSvc - ok
14:27:54.0068 0x1518 cdrom - ok
14:27:54.0072 0x1518 CertPropSvc - ok
14:27:54.0076 0x1518 cht4iscsi - ok
14:27:54.0080 0x1518 cht4vbd - ok
14:27:54.0083 0x1518 circlass - ok
14:27:54.0087 0x1518 CldFlt - ok
14:27:54.0090 0x1518 CLFS - ok
14:27:54.0326 0x1518 [ 50257A80367A2AA95E62B0F64580705E, 51A7BFB1B9AF02480609A7FA88AA514E50FD44A1F736433B7EB079A585548320 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
14:27:54.0499 0x1518 ClickToRunSvc - ok
14:27:54.0514 0x1518 ClipSVC - ok
14:27:54.0523 0x1518 CmBatt - ok
14:27:54.0527 0x1518 CNG - ok
14:27:54.0530 0x1518 cnghwassist - ok
14:27:54.0573 0x1518 [ 6565077F26B10FAB4DB7E2368F0F444A, ABFF4195CB55ED5CF48D3E7BD372044A903FD502ADE855C83CD1DBB45403DD34 ] CnxtHdAudService C:\WINDOWS\system32\drivers\CHDRT64.sys
14:27:54.0731 0x1518 CnxtHdAudService - ok
14:27:54.0775 0x1518 CompositeBus - ok
14:27:54.0779 0x1518 COMSysApp - ok
14:27:54.0784 0x1518 condrv - ok
14:27:54.0787 0x1518 CoreMessagingRegistrar - ok
14:27:54.0805 0x1518 [ 623C38C3E09041037E0DD983288CA8A2, 4897EAAF4058231F7409FD4A1FB15390643A2868154FC93694C530DD304BA90F ] cphs C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ce1af3c67f44ff6b\IntelCpHeciSvc.exe
14:27:54.0825 0x1518 cphs - ok
14:27:54.0839 0x1518 [ D041BB46DFD3E665CCA11B3252038968, 169D3C4921559F88BAC42A6937CA0F702C00B925B039BEB8D72691F17890E878 ] cplspcon C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ce1af3c67f44ff6b\IntelCpHDCPSvc.exe
14:27:54.0862 0x1518 cplspcon - ok
14:27:54.0868 0x1518 CryptSvc - ok
14:27:54.0873 0x1518 CSC - ok
14:27:54.0877 0x1518 CscService - ok
14:27:54.0884 0x1518 [ FF44271C20386D6D782D058EF632BD40, D89849954A91565A7816503DB0BFFAF90E8931F8FDC1AE6A785E8645988E348A ] CxAudMsg C:\WINDOWS\system32\CxAudMsg64.exe
14:27:54.0903 0x1518 CxAudMsg - ok
14:27:54.0911 0x1518 [ 85C05B3B6A3627FBB32EA3EC17BC9517, B1413893A3AF9165DD90D95BA0F93ACE56EF56F3D7F8B9432F2C3F1EB46A5EE9 ] CxUtilSvc C:\Program Files\Conexant\SAII\CxUtilSvc.exe
14:27:55.0003 0x1518 CxUtilSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:27:55.0381 0x1518 Detect skipped due to KSN trusted
14:27:55.0381 0x1518 CxUtilSvc - ok
14:27:55.0389 0x1518 dam - ok
14:27:55.0400 0x1518 [ D519FF1E2DF36CD53BE76A16506D4CD4, DFA46EC0C25F964CC308369BFA907FAE4B8985ADF6DBB4E0DD84A6DA6D52852B ] DAX2API C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
14:27:55.0439 0x1518 DAX2API - ok
14:27:55.0452 0x1518 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:27:55.0479 0x1518 dbupdate - ok
14:27:55.0486 0x1518 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:27:55.0515 0x1518 dbupdatem - ok
14:27:55.0524 0x1518 [ F3F02BEBC4E1FDD1B368D829C2ABEA8C, 0D063CD3EA01D087AC7A891F6994A91BC897275C65F6270A461E7864A28266AA ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
14:27:55.0551 0x1518 DbxSvc - ok
14:27:55.0566 0x1518 DcomLaunch - ok
14:27:55.0568 0x1518 defragsvc - ok
14:27:55.0577 0x1518 DeviceAssociationService - ok
14:27:55.0589 0x1518 DeviceInstall - ok
14:27:55.0600 0x1518 DevicesFlowUserSvc - ok
14:27:55.0615 0x1518 DevQueryBroker - ok
14:27:55.0629 0x1518 Dfsc - ok
14:27:55.0645 0x1518 [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
14:27:55.0804 0x1518 dg_ssudbus - ok
14:27:55.0818 0x1518 Dhcp - ok
14:27:55.0825 0x1518 diagnosticshub.standardcollector.service - ok
14:27:55.0837 0x1518 diagsvc - ok
14:27:55.0843 0x1518 DiagTrack - ok
14:27:55.0892 0x1518 [ 7B00468816A1D485E38D22704EED5F5C, 5E0D554875DE906015AAD94B02C15D947F33FE6C7C7503D8CEEE06BAB6820064 ] Disc Soft Lite Bus Service D:\Daemon Tools\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
14:27:56.0230 0x1518 Disc Soft Lite Bus Service - ok
14:27:56.0236 0x1518 Disk - ok
14:27:56.0245 0x1518 DmEnrollmentSvc - ok
14:27:56.0252 0x1518 dmvsc - ok
14:27:56.0259 0x1518 dmwappushservice - ok
14:27:56.0265 0x1518 Dnscache - ok
14:27:56.0277 0x1518 dot3svc - ok
14:27:56.0282 0x1518 DPS - ok
14:27:56.0293 0x1518 drmkaud - ok
14:27:56.0298 0x1518 DsmSvc - ok
14:27:56.0302 0x1518 DsSvc - ok
14:27:56.0309 0x1518 [ 679FF716052109392D870F6A6C4A3535, BEF1784448CCA4AF1D67ED68BD0C7CFE01A7719E98CACF92C2DCBFAA916DC57E ] dtlitescsibus C:\WINDOWS\System32\drivers\dtlitescsibus.sys
14:27:56.0370 0x1518 dtlitescsibus - ok
14:27:56.0379 0x1518 [ E23FDD696839A4790682CA66C48D3F2F, F5F0721BDA751968224E52E75D0C309A3E084C430CD98E85A55AF622D16B9A44 ] dtliteusbbus C:\WINDOWS\System32\drivers\dtliteusbbus.sys
14:27:56.0440 0x1518 dtliteusbbus - ok
14:27:56.0442 0x1518 DusmSvc - ok
14:27:56.0448 0x1518 DXGKrnl - ok
14:27:56.0459 0x1518 Eaphost - ok
14:27:56.0463 0x1518 ebdrv - ok
14:27:56.0470 0x1518 EFS - ok
14:27:56.0480 0x1518 EhStorClass - ok
14:27:56.0484 0x1518 EhStorTcgDrv - ok
14:27:56.0487 0x1518 embeddedmode - ok
14:27:56.0491 0x1518 EntAppSvc - ok
14:27:56.0501 0x1518 ErrDev - ok
14:27:56.0508 0x1518 [ 082F9D1ADB6DF9E5DB30EB52A34FCF0A, DC62F2E7D81B4D3C266855A64A575563A31D894B19F23E841B6C8A552FAF81CC ] ESProtectionDriver C:\WINDOWS\system32\drivers\mbae64.sys
14:27:56.0524 0x1518 ESProtectionDriver - ok
14:27:56.0529 0x1518 EventSystem - ok
14:27:56.0532 0x1518 exfat - ok
14:27:56.0540 0x1518 fastfat - ok
14:27:56.0545 0x1518 Fax - ok
14:27:56.0548 0x1518 fdc - ok
14:27:56.0552 0x1518 fdPHost - ok
14:27:56.0560 0x1518 FDResPub - ok
14:27:56.0565 0x1518 fhsvc - ok
14:27:56.0568 0x1518 FileCrypt - ok
14:27:56.0572 0x1518 FileInfo - ok
14:27:56.0577 0x1518 Filetrace - ok
14:27:56.0581 0x1518 flpydisk - ok
14:27:56.0584 0x1518 FltMgr - ok
14:27:56.0588 0x1518 FontCache - ok
14:27:56.0593 0x1518 FontCache3.0.0.0 - ok
14:27:56.0599 0x1518 FrameServer - ok
14:27:56.0602 0x1518 FsDepends - ok
14:27:56.0605 0x1518 Fs_Rec - ok
14:27:56.0609 0x1518 fvevol - ok
14:27:56.0612 0x1518 gencounter - ok
14:27:56.0616 0x1518 genericusbfn - ok
14:27:56.0622 0x1518 GPIOClx0101 - ok
14:27:56.0626 0x1518 gpsvc - ok
14:27:56.0629 0x1518 GpuEnergyDrv - ok
14:27:56.0633 0x1518 GraphicsPerfSvc - ok
14:27:56.0639 0x1518 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:27:56.0651 0x1518 gupdate - ok
14:27:56.0656 0x1518 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:27:56.0668 0x1518 gupdatem - ok
14:27:56.0672 0x1518 HDAudBus - ok
14:27:56.0675 0x1518 HidBatt - ok
14:27:56.0680 0x1518 HidBth - ok
14:27:56.0683 0x1518 hidi2c - ok
14:27:56.0686 0x1518 hidinterrupt - ok
14:27:56.0690 0x1518 HidIr - ok
14:27:56.0693 0x1518 hidserv - ok
14:27:56.0697 0x1518 HidUsb - ok
14:27:56.0704 0x1518 [ E1C43C08A9650F2DB2E1048AC68BE7AE, B8DF9B2464B5A374C5CE7F05AEF506AB1568A707EB4A5850F41FA9D338B4C2A1 ] hmevpnsvc C:\Program Files (x86)\hide.me VPN\hidemesvc.exe
14:27:56.0717 0x1518 hmevpnsvc - ok
14:27:56.0720 0x1518 HomeGroupListener - ok
14:27:56.0724 0x1518 HomeGroupProvider - ok
14:27:56.0728 0x1518 HpSAMD - ok
14:27:56.0730 0x1518 HTTP - ok
14:27:56.0735 0x1518 HvHost - ok
14:27:56.0738 0x1518 hvservice - ok
14:27:56.0742 0x1518 HwNClx0101 - ok
14:27:56.0746 0x1518 hwpolicy - ok
14:27:56.0749 0x1518 hyperkbd - ok
14:27:56.0752 0x1518 HyperVideo - ok
14:27:56.0756 0x1518 i8042prt - ok
14:27:56.0759 0x1518 iagpio - ok
14:27:56.0764 0x1518 iai2c - ok
14:27:56.0768 0x1518 iaLPSS2i_GPIO2 - ok
14:27:56.0771 0x1518 iaLPSS2i_GPIO2_BXT_P - ok
14:27:56.0774 0x1518 iaLPSS2i_I2C - ok
14:27:56.0778 0x1518 iaLPSS2i_I2C_BXT_P - ok
14:27:56.0781 0x1518 iaLPSSi_GPIO - ok
14:27:56.0786 0x1518 iaLPSSi_I2C - ok
14:27:56.0805 0x1518 [ 1646823DC94A810AE0F0B570C19E571F, 6E55FDB9681BDF1D3A21E2F1FA09C2CB7087BFF25043F487E396ABD272E8E10D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
14:27:56.0919 0x1518 iaStorA - ok
14:27:56.0951 0x1518 [ BD26815BA1C7B5C93029D0474EBF79D4, 5BFF3B66F125BC95CFDEDB72621B466B27441DA369D9905CFFF04EF79AE236FF ] iaStorAC C:\WINDOWS\system32\drivers\iaStorAC.sys
14:27:56.0991 0x1518 iaStorAC - ok
14:27:56.0995 0x1518 iaStorAV - ok
14:27:56.0997 0x1518 iaStorV - ok
14:27:57.0001 0x1518 ibbus - ok
14:27:57.0007 0x1518 [ CDC107C70CE4FB1D87E01F3D1485DC57, 3C6DF632E85D4E1F6594796A2ACE99C8690B4265F230B5873D7216842A951AD4 ] IBMPMDRV C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys
14:27:57.0051 0x1518 IBMPMDRV - ok
14:27:57.0059 0x1518 [ 9B1B9E4213DABEA3F865278867999E46, 8F319F7072306A4D9335D010AD8EFA59B8AC504C7B98CBFA952F3A34E9D9D4C6 ] IBMPMSVC C:\WINDOWS\system32\ibmpmsvc.exe
14:27:57.0074 0x1518 IBMPMSVC - ok
14:27:57.0077 0x1518 icssvc - ok
14:27:57.0323 0x1518 [ 793D254C6ED40F74114D33D8B89ACFF8, 3310EDBB90F1E54C4579B2A76B70F283BE1D4299B6AA3F138089143505D9134C ] igfx C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ce1af3c67f44ff6b\igdkmd64.sys
14:27:57.0588 0x1518 igfx - ok
14:27:57.0617 0x1518 [ 08F523F153D49A97C84B91D6D18B17B7, 881B09B01A71109C5C9219A6721844BDA0DE1B88FFA542A0799CB9A979378BEA ] igfxCUIService2.0.0.0 C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ce1af3c67f44ff6b\igfxCUIService.exe
14:27:57.0626 0x1518 igfxCUIService2.0.0.0 - ok
14:27:57.0635 0x1518 IKEEXT - ok
14:27:57.0642 0x1518 IndirectKmd - ok
14:27:57.0651 0x1518 InstallService - ok
14:27:57.0670 0x1518 [ C80399265EAB2289BE2747C905B4ACE7, 9AA5CC5CA75782A5709587791C522C9573E500F3915611F0D498FDAA0826A3A4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
14:27:57.0724 0x1518 IntcDAud - ok
14:27:57.0733 0x1518 intelide - ok
14:27:57.0737 0x1518 intelpep - ok
14:27:57.0739 0x1518 intelppm - ok
14:27:57.0746 0x1518 invdimm - ok
14:27:57.0749 0x1518 iorate - ok
14:27:57.0753 0x1518 IpFilterDriver - ok
14:27:57.0760 0x1518 iphlpsvc - ok
14:27:57.0765 0x1518 IPMIDRV - ok
14:27:57.0769 0x1518 IPNAT - ok
14:27:57.0785 0x1518 [ 97C9EBB84A761D48DC17E0E6B913C164, D195A8410E1FEED1A0EE9C5F5AF6F5FC861284765A38D460D496CE1048501905 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
14:27:57.0955 0x1518 iPod Service - ok
14:27:57.0960 0x1518 IPT - ok
14:27:57.0964 0x1518 IpxlatCfgSvc - ok
14:27:57.0968 0x1518 irda - ok
14:27:57.0971 0x1518 IRENUM - ok
14:27:57.0981 0x1518 irmon - ok
14:27:57.0984 0x1518 isapnp - ok
14:27:57.0987 0x1518 iScsiPrt - ok
14:27:57.0990 0x1518 kbdclass - ok
14:27:58.0007 0x1518 kbdhid - ok
14:27:58.0010 0x1518 kdnic - ok
14:27:58.0016 0x1518 KeyIso - ok
14:27:58.0022 0x1518 KSecDD - ok
14:27:58.0027 0x1518 KSecPkg - ok
14:27:58.0030 0x1518 ksthunk - ok
14:27:58.0034 0x1518 KtmRm - ok
14:27:58.0043 0x1518 LanmanServer - ok
14:27:58.0047 0x1518 LanmanWorkstation - ok
14:27:58.0053 0x1518 lfsvc - ok
14:27:58.0058 0x1518 LicenseManager - ok
14:27:58.0061 0x1518 lltdio - ok
14:27:58.0064 0x1518 lltdsvc - ok
14:27:58.0068 0x1518 lmhosts - ok
14:27:58.0079 0x1518 [ FE864FB61389DA71F52286E25343FBE6, 15B0C9CC91C42A36B74B86B82DD7421DFC52684D595AF24AF4C0DA9AA4BFC9B8 ] LPlatSvc C:\WINDOWS\system32\LPlatSvc.exe
14:27:58.0112 0x1518 LPlatSvc - ok
14:27:58.0118 0x1518 LSI_SAS - ok
14:27:58.0122 0x1518 LSI_SAS2i - ok
14:27:58.0126 0x1518 LSI_SAS3i - ok
14:27:58.0130 0x1518 LSI_SSS - ok
14:27:58.0134 0x1518 LSM - ok
14:27:58.0138 0x1518 luafv - ok
14:27:58.0149 0x1518 [ F54F07267103846D491413287910BCD4, 1B72D2546F88660D279B56E9FDA8DD2BFD6A44C2CC669C8EC1A81DB91D3B7189 ] MagentaCLOUDMaintenanceService C:\Program Files (x86)\Telekom\MagentaCloud\Updater\MaintenanceService.exe
14:27:58.0299 0x1518 MagentaCLOUDMaintenanceService - ok
14:27:58.0307 0x1518 MapsBroker - ok
14:27:58.0311 0x1518 mausbhost - ok
14:27:58.0315 0x1518 mausbip - ok
14:27:58.0324 0x1518 [ AD4D827A76EFC23FD0967D45597EA1C6, 5322BAEE2261AE6B9CF80DB4E735944E30ECA790E7B5788D65E984C6F8B03794 ] MBAMChameleon C:\WINDOWS\System32\Drivers\MbamChameleon.sys
14:27:58.0454 0x1518 MBAMChameleon - ok
14:27:58.0462 0x1518 [ 369D0CAFA432F291DB747B047CD423B4, 7665EB71659D153610ADF1C30F6958EDEBC8034DF0560A35F79A9123F800A603 ] MBAMFarflt C:\WINDOWS\system32\DRIVERS\farflt.sys
14:27:58.0483 0x1518 MBAMFarflt - ok
14:27:58.0490 0x1518 [ 3EB8C2CDA87FF8F8AB94B0E7845115F2, 44A0BDF13CBE1F9EB3855BBD9B6C10C7D6997468F3ECFE0AFA6A0DDD67528AF9 ] MBAMProtection C:\WINDOWS\system32\DRIVERS\mbam.sys
14:27:58.0509 0x1518 MBAMProtection - ok
14:27:58.0649 0x1518 [ ECB760B2391608BA4E0A7987ADA70CCF, 03B39EA56CD46666CFA8467AA246A63924C0F4AACD27E51FD5E1192000B4A577 ] MBAMService D:\Anti-Malware\mbamservice.exe
14:27:58.0820 0x1518 MBAMService - ok
14:27:58.0833 0x1518 [ 7CE9DEB496E666174498F7DF681E977E, 665D146303C39985E136C38F5F04C5FAE3BCCCB914F9AE75E541E09B28EC639E ] MBAMSwissArmy C:\WINDOWS\System32\Drivers\mbamswissarmy.sys
14:27:58.0850 0x1518 MBAMSwissArmy - ok
14:27:58.0855 0x1518 [ EE952B5245F97B7DA18FF2CB7E4B337C, 9767EDC7205C821841885787F7293BECD886ADB5A6F3E1CCB9BE5FD76BFA2B13 ] MBAMWebProtection C:\WINDOWS\system32\DRIVERS\mwac.sys
14:27:58.0868 0x1518 MBAMWebProtection - ok
14:27:58.0872 0x1518 megasas - ok
14:27:58.0876 0x1518 megasas2i - ok
14:27:58.0877 0x1518 megasr - ok
14:27:58.0886 0x1518 [ 552BCE17DF7FC306196F2325489CFFBE, C50720BFFAF5B78C9D0219023B7D18A2D94E70EA38526DE364FF5FBC5C98E208 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
14:27:58.0904 0x1518 MEIx64 - ok
14:27:58.0907 0x1518 MessagingService - ok
14:27:58.0912 0x1518 mlx4_bus - ok
14:27:58.0916 0x1518 MMCSS - ok
14:27:58.0919 0x1518 Modem - ok
14:27:58.0923 0x1518 monitor - ok
14:27:58.0926 0x1518 mouclass - ok
14:27:58.0930 0x1518 mouhid - ok
14:27:58.0933 0x1518 mountmgr - ok
14:27:58.0938 0x1518 mpsdrv - ok
14:27:58.0941 0x1518 MpsSvc - ok
14:27:58.0945 0x1518 MRxDAV - ok
14:27:58.0948 0x1518 mrxsmb - ok
14:27:58.0952 0x1518 mrxsmb10 - ok
14:27:58.0956 0x1518 mrxsmb20 - ok
14:27:58.0960 0x1518 MsBridge - ok
14:27:58.0963 0x1518 MSDTC - ok
14:27:58.0969 0x1518 Msfs - ok
14:27:58.0973 0x1518 msgpiowin32 - ok
14:27:58.0977 0x1518 mshidkmdf - ok
14:27:58.0981 0x1518 mshidumdf - ok
14:27:58.0983 0x1518 msisadrv - ok
14:27:58.0989 0x1518 MSiSCSI - ok
14:27:58.0993 0x1518 msiserver - ok
14:27:58.0996 0x1518 MSKSSRV - ok
14:27:59.0000 0x1518 MsLldp - ok
14:27:59.0004 0x1518 MSPCLOCK - ok
14:27:59.0007 0x1518 MSPQM - ok
14:27:59.0011 0x1518 MsRPC - ok
14:27:59.0016 0x1518 MsSecFlt - ok
14:27:59.0019 0x1518 mssmbios - ok
14:27:59.0022 0x1518 MSTEE - ok
14:27:59.0026 0x1518 MTConfig - ok
14:27:59.0029 0x1518 Mup - ok
14:27:59.0034 0x1518 mvumis - ok
14:27:59.0039 0x1518 NativeWifiP - ok
14:27:59.0042 0x1518 NaturalAuthentication - ok
14:27:59.0047 0x1518 NcaSvc - ok
14:27:59.0050 0x1518 NcbService - ok
14:27:59.0054 0x1518 NcdAutoSetup - ok
14:27:59.0057 0x1518 ndfltr - ok
14:27:59.0061 0x1518 NDIS - ok
14:27:59.0064 0x1518 NdisCap - ok
14:27:59.0069 0x1518 NdisImPlatform - ok
14:27:59.0073 0x1518 NdisTapi - ok
14:27:59.0076 0x1518 Ndisuio - ok
14:27:59.0080 0x1518 NdisVirtualBus - ok
14:27:59.0083 0x1518 NdisWan - ok
14:27:59.0087 0x1518 ndiswanlegacy - ok
14:27:59.0091 0x1518 ndproxy - ok
14:27:59.0096 0x1518 Ndu - ok
14:27:59.0101 0x1518 NetAdapterCx - ok
14:27:59.0104 0x1518 NetBIOS - ok
14:27:59.0112 0x1518 NetBT - ok
14:27:59.0115 0x1518 Netlogon - ok
14:27:59.0120 0x1518 Netman - ok
14:27:59.0123 0x1518 netprofm - ok
14:27:59.0127 0x1518 NetSetupSvc - ok
14:27:59.0137 0x1518 NetTcpPortSharing - ok
14:27:59.0141 0x1518 netvsc - ok
14:27:59.0146 0x1518 NgcCtnrSvc - ok
14:27:59.0150 0x1518 NgcSvc - ok
14:27:59.0154 0x1518 NlaSvc - ok
14:27:59.0157 0x1518 Npfs - ok
14:27:59.0162 0x1518 npsvctrig - ok
14:27:59.0165 0x1518 nsi - ok
14:27:59.0169 0x1518 nsiproxy - ok
14:27:59.0174 0x1518 NTFS - ok
14:27:59.0178 0x1518 Null - ok
14:27:59.0182 0x1518 nvdimmn - ok
14:27:59.0493 0x1518 [ 15AB4B7EEA154532EFB673069B8B3819, 858B76A29DE54CB2D08FC18B3BCD2C4B61993066F1AED49367DB9C3F666B256C ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6608c7a6e4ffbd7d\nvlddmkm.sys
14:28:00.0213 0x1518 nvlddmkm - ok
14:28:00.0238 0x1518 nvraid - ok
14:28:00.0242 0x1518 nvstor - ok
14:28:00.0251 0x1518 OneSyncSvc - ok
14:28:00.0263 0x1518 [ 1B67ED4BCD7647E3EAC526DA43A7B69B, 0FCEC4222294BCE569ABA1D2AC3BE19D1656357ADB33B41F204C699D829ED4E0 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:28:00.0353 0x1518 ose - ok
14:28:00.0355 0x1518 p2pimsvc - ok
14:28:00.0361 0x1518 p2psvc - ok
14:28:00.0368 0x1518 Parport - ok
14:28:00.0372 0x1518 partmgr - ok
14:28:00.0377 0x1518 PcaSvc - ok
14:28:00.0380 0x1518 pci - ok
14:28:00.0384 0x1518 pciide - ok
14:28:00.0388 0x1518 pcmcia - ok
14:28:00.0393 0x1518 pcw - ok
14:28:00.0397 0x1518 pdc - ok
14:28:00.0431 0x1518 [ 87B3DE5B911F767C388D5A56A73D9E93, 7C845A6E9D706BC7CDFD32F9BDEA52BF2FD3D90D45BCF2D48CE704D58F00D23D ] PDF Architect 4 C:\Program Files\PDF Architect 4\ws.exe
14:28:00.0537 0x1518 PDF Architect 4 - ok
14:28:00.0556 0x1518 [ 9049B0504C1CB438C0154F72FD7ABC28, 882141B00074CB2EDD3CB7DA745DF4347DA62A90A7E104719DBC13A8BA56B253 ] PDF Architect 4 CrashHandler C:\Program Files\PDF Architect 4\crash-handler-ws.exe
14:28:00.0613 0x1518 PDF Architect 4 CrashHandler - ok
14:28:00.0622 0x1518 [ 5F83EDC4A22BC7CC9507E43335C3524E, E349816313DA261C1787159085D920CE975B122DB9FEEBAA132D6593B6DD03EC ] PDF Architect 4 Creator C:\Program Files\PDF Architect 4\creator-ws.exe
14:28:00.0681 0x1518 PDF Architect 4 Creator - ok
14:28:00.0702 0x1518 [ 06B2368D9B342AE8E02C929B72E07804, 4EBCFCE5FFE934369ADD035A804BC24160BF94A796A42592B328A35A26DAB79E ] PDF Architect 4 Manager C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
14:28:00.0901 0x1518 PDF Architect 4 Manager - ok
14:28:00.0909 0x1518 PEAUTH - ok
14:28:00.0914 0x1518 PeerDistSvc - ok
14:28:00.0920 0x1518 percsas2i - ok
14:28:00.0923 0x1518 percsas3i - ok
14:28:00.0986 0x1518 PerfHost - ok
14:28:01.0004 0x1518 PhoneSvc - ok
14:28:01.0010 0x1518 PimIndexMaintenanceSvc - ok
14:28:01.0021 0x1518 pla - ok
14:28:01.0026 0x1518 PlugPlay - ok
14:28:01.0038 0x1518 pmem - ok
14:28:01.0038 0x1518 PNPMEM - ok
14:28:01.0051 0x1518 PNRPAutoReg - ok
14:28:01.0057 0x1518 PNRPsvc - ok
14:28:01.0064 0x1518 PolicyAgent - ok
14:28:01.0066 0x1518 Power - ok
14:28:01.0077 0x1518 PptpMiniport - ok
14:28:01.0176 0x1518 [ FAA5FBD37C00DE72573F9BF6B6E64BAD, AEF599C9D47ED197FAC54326E99114AD7EAA107A0248C77997D353A7B5C06FBB ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
14:28:01.0294 0x1518 PrintNotify - ok
14:28:01.0298 0x1518 PrintWorkflowUserSvc - ok
14:28:01.0307 0x1518 Processor - ok
14:28:01.0310 0x1518 ProfSvc - ok
14:28:01.0314 0x1518 Psched - ok
14:28:01.0318 0x1518 PushToInstall - ok
14:28:01.0347 0x1518 [ 7D4418C0C8506A420EDB33DC9DD3259A, 75C898F124DDD92149009A76D8F7EC3626DF321AA8335C7D46CD00B9795C280B ] Qcamain10x64 C:\WINDOWS\System32\drivers\Qcamain10x64.sys
14:28:01.0430 0x1518 Qcamain10x64 - ok
14:28:01.0440 0x1518 [ 86B203D70D3B87B5E5C2AB47D502259B, 6AE2BF2A5C23D8C61A83AAEB8DFF59645B1C4CD136118642A9FADD7FEC68A230 ] QcomWlanSrv C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe
14:28:01.0479 0x1518 QcomWlanSrv - ok
14:28:01.0483 0x1518 QWAVE - ok
14:28:01.0486 0x1518 QWAVEdrv - ok
14:28:01.0490 0x1518 Ramdisk - ok
14:28:01.0494 0x1518 RasAcd - ok
14:28:01.0498 0x1518 RasAgileVpn - ok
14:28:01.0502 0x1518 RasAuto - ok
14:28:01.0506 0x1518 Rasl2tp - ok
14:28:01.0510 0x1518 RasMan - ok
14:28:01.0514 0x1518 RasPppoe - ok
14:28:01.0518 0x1518 RasSstp - ok
14:28:01.0520 0x1518 rdbss - ok
14:28:01.0527 0x1518 rdpbus - ok
14:28:01.0531 0x1518 RDPDR - ok
14:28:01.0539 0x1518 RdpVideoMiniport - ok
14:28:01.0543 0x1518 rdyboost - ok
14:28:01.0547 0x1518 ReFS - ok
14:28:01.0550 0x1518 ReFSv1 - ok
14:28:01.0556 0x1518 RemoteAccess - ok
14:28:01.0560 0x1518 RemoteRegistry - ok
14:28:01.0563 0x1518 RetailDemo - ok
14:28:01.0567 0x1518 RFCOMM - ok
14:28:01.0571 0x1518 rhproxy - ok
14:28:01.0575 0x1518 RmSvc - ok
14:28:01.0579 0x1518 RpcEptMapper - ok
14:28:01.0583 0x1518 RpcLocator - ok
14:28:01.0587 0x1518 RpcSs - ok
14:28:01.0591 0x1518 rspndr - ok
14:28:01.0598 0x1518 rt640x64 - ok
14:28:01.0654 0x1518 [ 42BE49D04EEEA4B0576070109B8EBD01, B09002F627F68116FFDB866F00D073A6017264ED1BC60F0134E48A084836B7FF ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
14:28:01.0853 0x1518 rtsuvc - ok
14:28:01.0861 0x1518 s3cap - ok
14:28:01.0864 0x1518 SamSs - ok
14:28:01.0873 0x1518 [ 87044F5F607FF52DA93F4A1AF9A18937, 34939518E75E11B18150CAE24C488C10D6D1D5056986B2692050A543EEC16C9D ] SAService C:\WINDOWS\system32\SAsrv.exe
14:28:01.0963 0x1518 SAService - detected UnsignedFile.Multi.Generic ( 1 )
14:28:02.0404 0x1518 Detect skipped due to KSN trusted
14:28:02.0404 0x1518 SAService - ok
14:28:02.0409 0x1518 sbp2port - ok
14:28:02.0430 0x1518 SCardSvr - ok
14:28:02.0439 0x1518 ScDeviceEnum - ok
14:28:02.0451 0x1518 scfilter - ok
14:28:02.0460 0x1518 Schedule - ok
14:28:02.0463 0x1518 scmbus - ok
14:28:02.0480 0x1518 SCPolicySvc - ok
14:28:02.0483 0x1518 sdbus - ok
14:28:02.0493 0x1518 SDFRd - ok
14:28:02.0508 0x1518 SDRSVC - ok
14:28:02.0514 0x1518 sdstor - ok
14:28:02.0526 0x1518 seclogon - ok
14:28:02.0538 0x1518 SecurityHealthService - ok
14:28:02.0549 0x1518 SEMgrSvc - ok
14:28:02.0556 0x1518 SENS - ok
14:28:02.0568 0x1518 Sense - ok
14:28:02.0577 0x1518 SensorDataService - ok
14:28:02.0588 0x1518 SensorService - ok
14:28:02.0595 0x1518 SensrSvc - ok
14:28:02.0597 0x1518 SerCx - ok
14:28:02.0603 0x1518 SerCx2 - ok
14:28:02.0608 0x1518 Serenum - ok
14:28:02.0618 0x1518 Serial - ok
14:28:02.0624 0x1518 sermouse - ok
14:28:02.0635 0x1518 SessionEnv - ok
14:28:02.0639 0x1518 sfloppy - ok
14:28:02.0644 0x1518 SharedAccess - ok
14:28:02.0649 0x1518 SharedRealitySvc - ok
14:28:02.0653 0x1518 ShellHWDetection - ok
14:28:02.0659 0x1518 shpamsvc - ok
14:28:02.0663 0x1518 SiSRaid2 - ok
14:28:02.0667 0x1518 SiSRaid4 - ok
14:28:02.0674 0x1518 [ 51C799BBF3FAEF365E36C7F50F85819A, 54E70CEF762F563649AD7BE74A8B5E2A8C356EF347350DE397C40535FCE64FEA ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
14:28:02.0722 0x1518 SmbDrvI - ok
14:28:02.0727 0x1518 smphost - ok
14:28:02.0732 0x1518 SmsRouter - ok
14:28:02.0740 0x1518 SNMPTRAP - ok
14:28:02.0744 0x1518 spaceport - ok
14:28:02.0748 0x1518 SpatialGraphFilter - ok
14:28:02.0751 0x1518 SpbCx - ok
14:28:02.0756 0x1518 spectrum - ok
14:28:02.0760 0x1518 Spooler - ok
14:28:02.0765 0x1518 sppsvc - ok
14:28:02.0769 0x1518 srv - ok
14:28:02.0773 0x1518 srv2 - ok
14:28:02.0777 0x1518 srvnet - ok
14:28:02.0781 0x1518 SSDPSRV - ok
14:28:02.0785 0x1518 SstpSvc - ok
14:28:02.0792 0x1518 [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
14:28:02.0841 0x1518 ssudmdm - ok
14:28:02.0848 0x1518 StateRepository - ok
14:28:02.0871 0x1518 [ 596DC69BB40A96FCA4B19D9D1E221E34, 3469D3B2E9A88E39C14AE2E3DD5EC3D91FBB88CA568D794555B397B50E64AB15 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
14:28:03.0138 0x1518 Steam Client Service - ok
14:28:03.0144 0x1518 stexstor - ok
14:28:03.0148 0x1518 stisvc - ok
14:28:03.0152 0x1518 storahci - ok
14:28:03.0157 0x1518 storflt - ok
14:28:03.0161 0x1518 stornvme - ok
14:28:03.0165 0x1518 storqosflt - ok
14:28:03.0168 0x1518 StorSvc - ok
14:28:03.0173 0x1518 storufs - ok
14:28:03.0177 0x1518 storvsc - ok
14:28:03.0182 0x1518 svsvc - ok
14:28:03.0186 0x1518 swenum - ok
14:28:03.0189 0x1518 swprv - ok
14:28:03.0194 0x1518 Synth3dVsc - ok
14:28:03.0203 0x1518 [ 329E1EF3897150458F33D4DCCA4884E4, EF5FFFBA3AEE9B04B779C31063D79B93B0E99C93398E55F94CBA5D18F80E9CA8 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
14:28:03.0309 0x1518 SynTP - ok
14:28:03.0327 0x1518 [ 6987930E76BC1601BD8B6D28C230038C, 4D2C322956AB5895FD1B6DF1DE5EB6186B76B1553D2B56F586067D20926D1CF8 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
14:28:03.0485 0x1518 SynTPEnhService - ok
14:28:03.0490 0x1518 SysMain - ok
14:28:03.0494 0x1518 SystemEventsBroker - ok
14:28:03.0498 0x1518 TabletInputService - ok
14:28:03.0502 0x1518 TapiSrv - ok
14:28:03.0506 0x1518 Tcpip - ok
14:28:03.0510 0x1518 Tcpip6 - ok
14:28:03.0517 0x1518 tcpipreg - ok
14:28:03.0523 0x1518 tdx - ok
14:28:03.0758 0x1518 [ F5A7D2558C98E31AF03885822CD60789, 577CDDC3211008DE5D5E740BB326E85807CDFA33769CEF1278DA8F689A94852F ] TeamViewer D:\Teamviewer\TeamViewer_Service.exe
14:28:06.0314 0x1518 TeamViewer - ok
14:28:06.0331 0x1518 terminpt - ok
14:28:06.0335 0x1518 TermService - ok
14:28:06.0339 0x1518 Themes - ok
14:28:06.0343 0x1518 TieringEngineService - ok
14:28:06.0347 0x1518 tiledatamodelsvc - ok
14:28:06.0352 0x1518 TimeBrokerSvc - ok
14:28:06.0356 0x1518 TokenBroker - ok
14:28:06.0360 0x1518 TPM - ok
14:28:06.0364 0x1518 TrkWks - ok
14:28:06.0368 0x1518 TrustedInstaller - ok
14:28:06.0374 0x1518 tsusbflt - ok
14:28:06.0378 0x1518 TsUsbGD - ok
14:28:06.0382 0x1518 tsusbhub - ok
14:28:06.0386 0x1518 tunnel - ok
14:28:06.0389 0x1518 tzautoupdate - ok
14:28:06.0394 0x1518 UASPStor - ok
14:28:06.0394 0x1518 UcmCx0101 - ok
14:28:06.0406 0x1518 UcmTcpciCx0101 - ok
14:28:06.0411 0x1518 UcmUcsi - ok
14:28:06.0417 0x1518 Ucx01000 - ok
14:28:06.0421 0x1518 UdeCx - ok
14:28:06.0425 0x1518 udfs - ok
14:28:06.0429 0x1518 UEFI - ok
14:28:06.0433 0x1518 UevAgentDriver - ok
14:28:06.0437 0x1518 UevAgentService - ok
14:28:06.0443 0x1518 Ufx01000 - ok
14:28:06.0448 0x1518 UfxChipidea - ok
14:28:06.0453 0x1518 ufxsynopsys - ok
14:28:06.0462 0x1518 UI0Detect - ok
14:28:06.0465 0x1518 umbus - ok
14:28:06.0469 0x1518 UmPass - ok
14:28:06.0474 0x1518 UmRdpService - ok
14:28:06.0478 0x1518 UnistoreSvc - ok
14:28:06.0484 0x1518 upnphost - ok
14:28:06.0489 0x1518 UrsChipidea - ok
14:28:06.0493 0x1518 UrsCx01000 - ok
14:28:06.0497 0x1518 UrsSynopsys - ok
14:28:06.0503 0x1518 [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
14:28:06.0550 0x1518 USBAAPL64 - ok
14:28:06.0555 0x1518 usbccgp - ok
14:28:06.0560 0x1518 usbcir - ok
14:28:06.0565 0x1518 usbehci - ok
14:28:06.0571 0x1518 usbhub - ok
14:28:06.0576 0x1518 USBHUB3 - ok
14:28:06.0580 0x1518 usbohci - ok
14:28:06.0584 0x1518 usbprint - ok
14:28:06.0589 0x1518 [ E55C9AF5EE8905879048118824B06816, F431ABF555E09BE64AF7EA0B2573C7F5E5634408E03DC3FAC4A5CC7D48CAF0EC ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
14:28:06.0634 0x1518 usbscan - ok
14:28:06.0640 0x1518 usbser - ok
14:28:06.0640 0x1518 USBSTOR - ok
14:28:06.0655 0x1518 usbuhci - ok
14:28:06.0660 0x1518 USBXHCI - ok
14:28:06.0670 0x1518 UserDataSvc - ok
14:28:06.0680 0x1518 UserManager - ok
14:28:06.0683 0x1518 UsoSvc - ok
14:28:06.0693 0x1518 VaultSvc - ok
14:28:06.0703 0x1518 vdrvroot - ok
14:28:06.0708 0x1518 vds - ok
14:28:06.0712 0x1518 VerifierExt - ok
14:28:06.0723 0x1518 vhdmp - ok
14:28:06.0727 0x1518 vhf - ok
14:28:06.0737 0x1518 vmbus - ok
14:28:06.0742 0x1518 VMBusHID - ok
14:28:06.0747 0x1518 vmgid - ok
14:28:06.0751 0x1518 vmicguestinterface - ok
14:28:06.0757 0x1518 vmicheartbeat - ok
14:28:06.0761 0x1518 vmickvpexchange - ok
14:28:06.0767 0x1518 vmicrdv - ok
14:28:06.0770 0x1518 vmicshutdown - ok
14:28:06.0774 0x1518 vmictimesync - ok
14:28:06.0775 0x1518 vmicvmsession - ok
14:28:06.0782 0x1518 vmicvss - ok
14:28:06.0787 0x1518 vnvdimm - ok
14:28:06.0791 0x1518 volmgr - ok
14:28:06.0791 0x1518 volmgrx - ok
14:28:06.0799 0x1518 volsnap - ok
14:28:06.0806 0x1518 volume - ok
14:28:06.0810 0x1518 vpci - ok
14:28:06.0823 0x1518 [ CED5750ECF0D60F76727BE53CE05ED68, 192E7767BED6C1EA925F5A790EC75A1C2BC4FF20F6C832A1C910D515AA565B69 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
14:28:06.0843 0x1518 vpnagent - ok
14:28:06.0849 0x1518 [ 0F42C39016F82F345C0F2DB2D5B90EB4, 2E957E72BB8D0293F61FA7385BA9400DF7759E1E3D35FE24F3877A6460988F4D ] vpnva C:\WINDOWS\System32\drivers\vpnva64-6.sys
14:28:06.0902 0x1518 vpnva - ok
14:28:06.0911 0x1518 vsmraid - ok
14:28:06.0919 0x1518 VSS - ok
14:28:06.0924 0x1518 VSTXRAID - ok
14:28:06.0934 0x1518 vwifibus - ok
14:28:06.0941 0x1518 vwififlt - ok
14:28:06.0947 0x1518 vwifimp - ok
14:28:06.0952 0x1518 W32Time - ok
14:28:06.0961 0x1518 WacomPen - ok
14:28:06.0973 0x1518 WalletService - ok
14:28:06.0974 0x1518 wanarp - ok
14:28:06.0981 0x1518 wanarpv6 - ok
14:28:06.0994 0x1518 WarpJITSvc - ok
14:28:06.0996 0x1518 wbengine - ok
14:28:07.0010 0x1518 WbioSrvc - ok
14:28:07.0016 0x1518 wcifs - ok
14:28:07.0017 0x1518 Wcmsvc - ok
14:28:07.0022 0x1518 wcncsvc - ok
14:28:07.0031 0x1518 wcnfs - ok
14:28:07.0038 0x1518 [ EF2B6F9152F6F79D00BF7DCBE2081951, 1DEDD6C3FCDE9A5DBEE6594940037633C1BB09286690B8D29528EC119C835D3B ] WdBoot C:\WINDOWS\system32\drivers\wd\WdBoot.sys
14:28:07.0053 0x1518 WdBoot - ok
14:28:07.0058 0x1518 Wdf01000 - ok
14:28:07.0071 0x1518 [ 273B2EE5A3CA626D4A1D299CB27A7FC8, 7056A0223E67E280EDED8E60B7F45BECCD49752CA8F179A4BAEE37A75014BAC1 ] WdFilter C:\WINDOWS\system32\drivers\wd\WdFilter.sys
14:28:07.0090 0x1518 WdFilter - ok
14:28:07.0096 0x1518 WdiServiceHost - ok
14:28:07.0097 0x1518 WdiSystemHost - ok
14:28:07.0102 0x1518 wdiwifi - ok
14:28:07.0112 0x1518 [ 85641F5E6761F9A9B8E4ABC319BE68B5, 8AA96547EA4BAC6EA26FEE29AC2C70EAB987D3391091C5564243B905AB80C8E4 ] WdNisDrv C:\WINDOWS\system32\drivers\wd\WdNisDrv.sys
14:28:07.0125 0x1518 WdNisDrv - ok
14:28:07.0201 0x1518 [ 9A92286431EC4AAD197D7F2F648969CB, 0CD2301E27F4304C0EEBDEA61CCAB03738425FBF174801A5BAAF9DBD6B73C0D3 ] WdNisSvc C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\NisSrv.exe
14:28:07.0290 0x1518 WdNisSvc - ok
14:28:07.0302 0x1518 wdnsfltr - ok
14:28:07.0308 0x1518 WebClient - ok
14:28:07.0313 0x1518 Wecsvc - ok
14:28:07.0318 0x1518 WEPHOSTSVC - ok
14:28:07.0322 0x1518 wercplsupport - ok
14:28:07.0328 0x1518 WerSvc - ok
14:28:07.0335 0x1518 WFDSConMgrSvc - ok
14:28:07.0341 0x1518 WFPLWFS - ok
14:28:07.0349 0x1518 WiaRpc - ok
14:28:07.0356 0x1518 WIMMount - ok
14:28:07.0364 0x1518 [ 115CFC73B2DA6A30424EB5229CA8D398, 03E286F9E054756D81C7EB5BB6D280602147F2E6465B817315FAF8AD11286343 ] WinDefend C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1809.2-0\MsMpEng.exe
14:28:07.0399 0x1518 WinDefend - ok
14:28:07.0413 0x1518 WindowsTrustedRT - ok
14:28:07.0418 0x1518 WindowsTrustedRTProxy - ok
14:28:07.0423 0x1518 WinHttpAutoProxySvc - ok
14:28:07.0429 0x1518 WinMad - ok
14:28:07.0439 0x1518 Winmgmt - ok
14:28:07.0443 0x1518 WinNat - ok
14:28:07.0448 0x1518 WinRM - ok
14:28:07.0457 0x1518 WINUSB - ok
14:28:07.0461 0x1518 WinVerbs - ok
14:28:07.0465 0x1518 wisvc - ok
14:28:07.0470 0x1518 WlanSvc - ok
14:28:07.0476 0x1518 wlidsvc - ok
14:28:07.0480 0x1518 wlpasvc - ok
14:28:07.0484 0x1518 WmiAcpi - ok
14:28:07.0491 0x1518 wmiApSrv - ok
14:28:07.0494 0x1518 WMPNetworkSvc - ok
14:28:07.0502 0x1518 [ 8D6E6F6C233AF450C50FA615530B44D2, 1BF6CD93B97920500F5FD0E9D8395ACCAAA2D126FD9C256148797B292D5F9A6C ] Wof C:\WINDOWS\system32\drivers\Wof.sys
14:28:07.0521 0x1518 Wof - ok
14:28:07.0527 0x1518 workfolderssvc - ok
14:28:07.0531 0x1518 WPDBusEnum - ok
14:28:07.0537 0x1518 WpdUpFltr - ok
14:28:07.0542 0x1518 WpnService - ok
14:28:07.0546 0x1518 WpnUserService - ok
14:28:07.0553 0x1518 ws2ifsl - ok
14:28:07.0558 0x1518 wscsvc - ok
14:28:07.0562 0x1518 WSearch - ok
14:28:07.0569 0x1518 wuauserv - ok
14:28:07.0573 0x1518 WudfPf - ok
14:28:07.0578 0x1518 WUDFRd - ok
14:28:07.0578 0x1518 WUDFWpdFs - ok
14:28:07.0583 0x1518 WUDFWpdMtp - ok
14:28:07.0583 0x1518 WwanSvc - ok
14:28:07.0592 0x1518 xbgm - ok
14:28:07.0600 0x1518 XblAuthManager - ok
14:28:07.0605 0x1518 XblGameSave - ok
14:28:07.0607 0x1518 xboxgip - ok
14:28:07.0614 0x1518 XboxGipSvc - ok
14:28:07.0618 0x1518 XboxNetApiSvc - ok
14:28:07.0623 0x1518 xinputhid - ok
14:28:07.0626 0x1518 ================ Scan global ===============================
14:28:07.0641 0x1518 [ Global ] - ok
14:28:07.0641 0x1518 ================ Scan MBR ==================================
14:28:07.0643 0x1518 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:28:10.0920 0x1518 \Device\Harddisk0\DR0 - ok
14:28:10.0921 0x1518 ================ Scan VBR ==================================
14:28:10.0924 0x1518 [ 33A53CA3277717E77D5BD7FC2E9829F6 ] \Device\Harddisk0\DR0\Partition1
14:28:10.0925 0x1518 \Device\Harddisk0\DR0\Partition1 - ok
14:28:10.0929 0x1518 [ 30166C321EB396E2396EAA050B0F01F0 ] \Device\Harddisk0\DR0\Partition2
14:28:10.0931 0x1518 \Device\Harddisk0\DR0\Partition2 - ok
14:28:10.0935 0x1518 [ FF49EF7567DA04D3FFCB3F1DDBE3F52C ] \Device\Harddisk0\DR0\Partition3
14:28:10.0937 0x1518 \Device\Harddisk0\DR0\Partition3 - ok
14:28:10.0941 0x1518 [ 6EFCDFF12971082F2F650002D6DD3FC7 ] \Device\Harddisk0\DR0\Partition4
14:28:10.0943 0x1518 \Device\Harddisk0\DR0\Partition4 - ok
14:28:10.0944 0x1518 ================ Scan generic autorun ======================
14:28:10.0946 0x1518 SecurityHealth - ok
14:28:10.0952 0x1518 [ 64D89BDA981ECD2BC9B547E4210CA6E0, 403F685FBC8A71896F550476C3E3CAAC0D593F7CF25D4A2F61ED62D576E62F12 ] D:\Itunes\iTunesHelper.exe
14:28:11.0026 0x1518 iTunesHelper - ok
14:28:11.0160 0x1518 [ 8F1242761AD5C749001494B96AA1B874, AE23F82DEC8F3AB38369C55A8A0ECCCA4873581959CB040B075B8F1E55A3C4FF ] C:\WINDOWS\RTFTrack.EXE
14:28:11.0290 0x1518 RtsFT - ok
14:28:11.0383 0x1518 [ 8CFB97A15870E5BB2D25B719E8AFA45E, 88C2947A9C1994B248ABECC4951757C7E1DCC63FA5E20009A77119752A3D0E5C ] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
14:28:11.0476 0x1518 Dropbox - ok
14:28:11.0484 0x1518 [ 46E91D8F23069D12CB990FE8A9B05CAA, 54C3677D42463DBE33C2390D72AB35C1FB76B0DB919F0237ED5DB03D08FA004E ] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
14:28:11.0501 0x1518 IJNetworkScanUtility - ok
14:28:11.0520 0x1518 [ C4FFD238884D74241C9DD3CD9BD1B5F7, AB6C54313A75BB7FF7FAEEC0CC6C4D67805AF89B0692DE2A112928C5F62763EA ] C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
14:28:11.0545 0x1518 Cisco AnyConnect Secure Mobility Agent for Windows - ok
14:28:11.0556 0x1518 [ DF5A2FF9B46C998C9697A17BBCA32EDD, 34FFFA1AE38A08FCFBA7597D9BDEEA1D0D30D748508D467386116AF5BB7288FD ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
14:28:11.0711 0x1518 SunJavaUpdateSched - ok
14:28:11.0753 0x1518 OneDriveSetup - ok
14:28:11.0755 0x1518 OneDriveSetup - ok
14:28:11.0757 0x1518 OneDriveSetup - ok
14:28:11.0758 0x1518 WAB Migrate - ok
14:28:11.0761 0x1518 OneDriveSetup - ok
14:28:11.0838 0x1518 [ 5710E80EAB62305C4FD4D968567448D2, BDC26F7A2313AB637FDBEEFCA705C5DF5C6F73F28F4BBB4C5FF2BB6B3F551CE6 ] E:\Steam\steam.exe
14:28:12.0320 0x1518 Steam - ok
14:28:12.0435 0x1518 [ 6A86DD196C0CFB9B0DB8C2F1681492EE, 1E63714F2EE9EFFDC605B0F537EBC96A1D7CF5C1AE388FF255E1C0DEF914A76F ] D:\Daemon Tools\DAEMON Tools Lite\DTAgent.exe
14:28:12.0651 0x1518 DAEMON Tools Lite Automount - ok
14:28:12.0665 0x1518 Lync - ok
14:28:12.0668 0x1518 analogue-8 - ok
14:28:12.0668 0x1518 Waiting for KSN requests completion. In queue: 75
14:28:13.0736 0x1518 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated )
14:28:13.0770 0x1518 Win FW state via NFP2: enabled ( trusted )
14:28:14.0364 0x1518 ============================================================
14:28:14.0364 0x1518 Scan finished
14:28:14.0364 0x1518 ============================================================
14:28:14.0382 0x28c0 Detected object count: 0
14:28:14.0382 0x28c0 Actual detected object count: 0 |