kev123456 | 30.12.2018 00:14 | hier noch der Repport des TDSS Killers
hier noch in code format Code:
00:07:07.0069 0x136c TDSS rootkit removing tool 3.1.0.24 Dec 3 2018 16:46:46
00:07:07.0069 0x136c UEFI system
00:07:21.0911 0x136c ============================================================
00:07:21.0911 0x136c Current date / time: 2018/12/30 00:07:21.0911
00:07:21.0911 0x136c SystemInfo:
00:07:21.0911 0x136c
00:07:21.0911 0x136c OS Version: 10.0.17134 ServicePack: 0.0
00:07:21.0911 0x136c Product type: Workstation
00:07:21.0911 0x136c ComputerName: TOM
00:07:21.0911 0x136c UserName: tom
00:07:21.0911 0x136c Windows directory: C:\WINDOWS
00:07:21.0911 0x136c System windows directory: C:\WINDOWS
00:07:21.0911 0x136c Running under WOW64
00:07:21.0911 0x136c Processor architecture: Intel x64
00:07:21.0911 0x136c Number of processors: 4
00:07:21.0911 0x136c Page size: 0x1000
00:07:21.0911 0x136c Boot type: Normal boot
00:07:21.0911 0x136c CodeIntegrityOptions = 0x0000C001
00:07:21.0911 0x136c ============================================================
00:07:22.0521 0x136c KLMD registered as C:\WINDOWS\system32\drivers\56836444.sys
00:07:22.0521 0x136c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 17134.1, osProperties = 0x19
00:07:22.0771 0x136c System UUID: {170F64A3-0DB5-7348-15B7-12D3D4926BF1}
00:07:23.0380 0x136c Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
00:07:23.0396 0x136c ============================================================
00:07:23.0396 0x136c \Device\Harddisk0\DR0:
00:07:23.0396 0x136c GPT partitions:
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {8E78C41A-B8D6-4992-9466-95D3B4DCF1FB}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {0F3B8CF1-F6C3-45D9-BD27-ABC07E7A7CAB}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {F2B6EFA2-F3A2-4214-AC96-2429C08FEE20}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {56E85A45-478D-4640-B8F1-CCD10316A392}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {23AA78FD-8BCC-4664-BCE9-865AFF76523B}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x351A0800
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {39A5C9D1-43B4-4D35-A855-331200EFE985}, Name: Basic data partition, StartLBA 0x3564B000, BlocksNum 0x3200000
00:07:23.0396 0x136c \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {6AB7146D-4473-4458-AB04-2653E77BED7B}, Name: Basic data partition, StartLBA 0x3884B000, BlocksNum 0x1B3B000
00:07:23.0396 0x136c MBR partitions:
00:07:23.0396 0x136c ============================================================
00:07:23.0411 0x136c C: <-> \Device\Harddisk0\DR0\Partition5
00:07:23.0458 0x136c D: <-> \Device\Harddisk0\DR0\Partition6
00:07:23.0458 0x136c ============================================================
00:07:23.0458 0x136c Initialize success
00:07:23.0458 0x136c ============================================================
00:07:26.0302 0x041c ============================================================
00:07:26.0302 0x041c Scan started
00:07:26.0302 0x041c Mode: Manual;
00:07:26.0302 0x041c ============================================================
00:07:26.0302 0x041c KSN ping started
00:07:26.0411 0x041c KSN ping finished: true
00:07:29.0802 0x041c ================ Scan BIOS =================================
00:07:29.0802 0x041c BIOS info: vendor = LENOVO, version = B0CN80WW, releaseDate = 05/18/2015
00:07:29.0802 0x041c Base board info: manufacturer = LENOVO, product = Lenovo G50-80, version = 31900058 WIN
00:07:33.0161 0x041c [ EC57C2327B24C7205F224C41533F355F, 9DC97998E1C869BD4D4A1A0E8F51CE63E5FF88151585D31850E505F4496D6B29 ] BIOS
00:07:33.0989 0x041c BIOS - ok
00:07:34.0004 0x041c ================ Scan system memory ========================
00:07:34.0004 0x041c System memory - ok
00:07:34.0004 0x041c ================ Scan services =============================
00:07:34.0223 0x041c 1394ohci - ok
00:07:34.0239 0x041c 3ware - ok
00:07:34.0254 0x041c ACPI - ok
00:07:34.0270 0x041c AcpiDev - ok
00:07:34.0270 0x041c acpiex - ok
00:07:34.0286 0x041c acpipagr - ok
00:07:34.0286 0x041c AcpiPmi - ok
00:07:34.0286 0x041c acpitime - ok
00:07:34.0317 0x041c [ 28271590EF5F38E396BFB494075CBE6E, 0A731CA3287BE73F3543DB81CAF59B61BDBD89D71C27FD770E9926997879662C ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
00:07:34.0317 0x041c ACPIVPC - ok
00:07:34.0489 0x041c [ 696A8431DD22EDE385D7AB84E0EAF4C9, E5892B346904C7A392A0B1C8F4C9066BC535A2C70307123C8E1F2157353333F0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
00:07:34.0489 0x041c AdobeARMservice - ok
00:07:34.0645 0x041c [ 6601FB715EB1F6A873B48EAF3844E7D4, 55F29D6CC836C15F133E1950D7672D1539735AA564132B1A0220459C4FC8C3EF ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
00:07:34.0661 0x041c AdobeFlashPlayerUpdateSvc - ok
00:07:34.0692 0x041c ADP80XX - ok
00:07:34.0707 0x041c AFD - ok
00:07:34.0723 0x041c afunix - ok
00:07:34.0739 0x041c ahcache - ok
00:07:34.0754 0x041c AJRouter - ok
00:07:34.0770 0x041c ALG - ok
00:07:34.0786 0x041c AmdK8 - ok
00:07:34.0786 0x041c AmdPPM - ok
00:07:34.0801 0x041c amdsata - ok
00:07:34.0817 0x041c amdsbs - ok
00:07:34.0832 0x041c amdxata - ok
00:07:34.0848 0x041c AppID - ok
00:07:34.0848 0x041c AppIDSvc - ok
00:07:34.0864 0x041c Appinfo - ok
00:07:34.0879 0x041c applockerfltr - ok
00:07:34.0911 0x041c AppReadiness - ok
00:07:34.0942 0x041c AppXSvc - ok
00:07:34.0973 0x041c arcsas - ok
00:07:34.0989 0x041c AsyncMac - ok
00:07:34.0989 0x041c atapi - ok
00:07:35.0036 0x041c AudioEndpointBuilder - ok
00:07:35.0051 0x041c Audiosrv - ok
00:07:35.0082 0x041c AxInstSV - ok
00:07:35.0098 0x041c b06bdrv - ok
00:07:35.0114 0x041c bam - ok
00:07:35.0114 0x041c BasicDisplay - ok
00:07:35.0129 0x041c BasicRender - ok
00:07:35.0145 0x041c BcastDVRUserService - ok
00:07:35.0207 0x041c bcmfn2 - ok
00:07:35.0239 0x041c BDESVC - ok
00:07:35.0254 0x041c Beep - ok
00:07:35.0270 0x041c BFE - ok
00:07:35.0286 0x041c bindflt - ok
00:07:35.0317 0x041c BITS - ok
00:07:35.0332 0x041c BluetoothUserService - ok
00:07:35.0364 0x041c bowser - ok
00:07:35.0379 0x041c BrokerInfrastructure - ok
00:07:35.0411 0x041c BTAGService - ok
00:07:35.0426 0x041c BthAvctpSvc - ok
00:07:35.0457 0x041c BthEnum - ok
00:07:35.0473 0x041c BthHFEnum - ok
00:07:35.0520 0x041c BthLEEnum - ok
00:07:35.0551 0x041c BTHMODEM - ok
00:07:35.0567 0x041c BthPan - ok
00:07:35.0582 0x041c BTHPORT - ok
00:07:35.0598 0x041c bthserv - ok
00:07:35.0676 0x041c BTHUSB - ok
00:07:35.0692 0x041c bttflt - ok
00:07:35.0707 0x041c buttonconverter - ok
00:07:35.0707 0x041c CAD - ok
00:07:35.0754 0x041c camsvc - ok
00:07:35.0754 0x041c CapImg - ok
00:07:35.0770 0x041c cdfs - ok
00:07:35.0785 0x041c CDPSvc - ok
00:07:35.0801 0x041c CDPUserSvc - ok
00:07:35.0848 0x041c cdrom - ok
00:07:35.0864 0x041c CertPropSvc - ok
00:07:35.0895 0x041c cht4iscsi - ok
00:07:35.0895 0x041c cht4vbd - ok
00:07:35.0910 0x041c circlass - ok
00:07:35.0926 0x041c CldFlt - ok
00:07:35.0942 0x041c CLFS - ok
00:07:36.0692 0x041c [ 679F8982514E2FCF52E3A0E2DEC24A69, 2D607E39EBBAA870A222CECB770FE0B3382F4206D778E12F9E4DAA572A37173A ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
00:07:37.0265 0x041c ClickToRunSvc - ok
00:07:37.0312 0x041c ClipSVC - ok
00:07:37.0328 0x041c CmBatt - ok
00:07:37.0359 0x041c CNG - ok
00:07:37.0359 0x041c cnghwassist - ok
00:07:37.0515 0x041c [ DCFB422B756D7BA67FF0915957F94D3A, EA18E2E3ABC8857428688B71D7D909C01B363C122C282DC3491DF59E8259B029 ] CnxtHdAudService C:\WINDOWS\system32\drivers\CHDRT64.sys
00:07:37.0593 0x041c CnxtHdAudService - ok
00:07:37.0656 0x041c CompositeBus - ok
00:07:37.0671 0x041c COMSysApp - ok
00:07:37.0687 0x041c condrv - ok
00:07:37.0718 0x041c CoreMessagingRegistrar - ok
00:07:37.0859 0x041c [ 800D39A148B543A4C9D8A0873CAB7D46, 955746E986F005F25CA5D9DA6D5046AD5A51CBB4492313A0972305F2E1B0AF5A ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
00:07:38.0078 0x041c cphs - ok
00:07:38.0124 0x041c CryptSvc - ok
00:07:38.0171 0x041c [ 07F3534C07C5110E9A424C04634C4A8D, 39F97C8A8610A4EFB83A41E490BBDC19261A52DC9827645C1331EFC958F2EDF1 ] CxAudMsg C:\WINDOWS\system32\CxAudMsg64.exe
00:07:38.0281 0x041c CxAudMsg - ok
00:07:38.0312 0x041c dam - ok
00:07:38.0328 0x041c DcomLaunch - ok
00:07:38.0359 0x041c defragsvc - ok
00:07:38.0390 0x041c DeviceAssociationService - ok
00:07:38.0406 0x041c DeviceInstall - ok
00:07:38.0421 0x041c DevicePickerUserSvc - ok
00:07:38.0453 0x041c DevicesFlowUserSvc - ok
00:07:38.0468 0x041c DevQueryBroker - ok
00:07:38.0484 0x041c Dfsc - ok
00:07:38.0515 0x041c Dhcp - ok
00:07:38.0609 0x041c diagnosticshub.standardcollector.service - ok
00:07:38.0624 0x041c diagsvc - ok
00:07:38.0656 0x041c DiagTrack - ok
00:07:38.0687 0x041c Disk - ok
00:07:38.0718 0x041c DmEnrollmentSvc - ok
00:07:38.0718 0x041c dmvsc - ok
00:07:38.0734 0x041c dmwappushservice - ok
00:07:38.0765 0x041c Dnscache - ok
00:07:38.0781 0x041c dot3svc - ok
00:07:38.0796 0x041c DPS - ok
00:07:38.0812 0x041c drmkaud - ok
00:07:38.0859 0x041c DsmSvc - ok
00:07:38.0890 0x041c DsSvc - ok
00:07:38.0890 0x041c DusmSvc - ok
00:07:38.0921 0x041c DXGKrnl - ok
00:07:38.0953 0x041c Eaphost - ok
00:07:38.0968 0x041c ebdrv - ok
00:07:38.0999 0x041c EFS - ok
00:07:39.0031 0x041c EhStorClass - ok
00:07:39.0046 0x041c EhStorTcgDrv - ok
00:07:39.0062 0x041c embeddedmode - ok
00:07:39.0093 0x041c EntAppSvc - ok
00:07:39.0109 0x041c ErrDev - ok
00:07:39.0187 0x041c [ 0AC122FAC3D51A9610C607E6B51A1FA5, E26983738B6C642033A8B46890700754635D0B32386DB3B5DDC2C5EEFBA9E31E ] ETD C:\WINDOWS\system32\DRIVERS\ETD.sys
00:07:39.0249 0x041c ETD - ok
00:07:39.0312 0x041c [ 32B13B0B505EF1512632519DE3E721E4, BB7E7B119872827F9BA000082FB1E2089231F5F9FDC705852E291045FD84F05B ] ETDService C:\Program Files\Elantech\ETDService.exe
00:07:39.0312 0x041c ETDService - ok
00:07:39.0343 0x041c [ F77EBC9A1DD3CA58C211B8AB99CFDC6E, 5C53BB73E06760A7A50F6DBA4B1BDE85CCC959B048DAA879443D0C9D5BD38826 ] ETDSMBus C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys
00:07:39.0343 0x041c ETDSMBus - ok
00:07:39.0390 0x041c EventSystem - ok
00:07:39.0406 0x041c exfat - ok
00:07:39.0421 0x041c fastfat - ok
00:07:39.0437 0x041c Fax - ok
00:07:39.0452 0x041c fdc - ok
00:07:39.0468 0x041c fdPHost - ok
00:07:39.0484 0x041c FDResPub - ok
00:07:39.0484 0x041c fhsvc - ok
00:07:39.0484 0x041c FileCrypt - ok
00:07:39.0515 0x041c FileInfo - ok
00:07:39.0546 0x041c Filetrace - ok
00:07:39.0562 0x041c flpydisk - ok
00:07:39.0562 0x041c FltMgr - ok
00:07:39.0593 0x041c FontCache - ok
00:07:39.0624 0x041c FrameServer - ok
00:07:39.0624 0x041c FsDepends - ok
00:07:39.0640 0x041c Fs_Rec - ok
00:07:39.0656 0x041c fvevol - ok
00:07:39.0671 0x041c gencounter - ok
00:07:39.0687 0x041c genericusbfn - ok
00:07:39.0827 0x041c [ DDD204D449710B6A54E42F9630A10A29, 8C18C0E2C32111D2166B36B710FFDB09DA176E6339445F92BA3195AD4987A247 ] GoogleChromeElevationService C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\elevation_service.exe
00:07:39.0859 0x041c GoogleChromeElevationService - ok
00:07:39.0890 0x041c GPIOClx0101 - ok
00:07:39.0906 0x041c gpsvc - ok
00:07:39.0921 0x041c GpuEnergyDrv - ok
00:07:39.0937 0x041c GraphicsPerfSvc - ok
00:07:40.0030 0x041c [ 92EE791A630830452485E8E375F8DB35, 542294724926B0E156224B9EBD33E6354D79DA4C828FB52F7F4233DF45E3F624 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
00:07:40.0046 0x041c gupdate - ok
00:07:40.0062 0x041c [ 92EE791A630830452485E8E375F8DB35, 542294724926B0E156224B9EBD33E6354D79DA4C828FB52F7F4233DF45E3F624 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
00:07:40.0062 0x041c gupdatem - ok
00:07:40.0124 0x041c HdAudAddService - ok
00:07:40.0156 0x041c HDAudBus - ok
00:07:40.0156 0x041c HidBatt - ok
00:07:40.0171 0x041c HidBth - ok
00:07:40.0202 0x041c hidi2c - ok
00:07:40.0202 0x041c hidinterrupt - ok
00:07:40.0218 0x041c HidIr - ok
00:07:40.0234 0x041c hidserv - ok
00:07:40.0265 0x041c HidUsb - ok
00:07:40.0280 0x041c HpSAMD - ok
00:07:40.0312 0x041c HTTP - ok
00:07:40.0327 0x041c hvcrash - ok
00:07:40.0343 0x041c HvHost - ok
00:07:40.0374 0x041c hvservice - ok
00:07:40.0406 0x041c HwNClx0101 - ok
00:07:40.0421 0x041c hwpolicy - ok
00:07:40.0421 0x041c hyperkbd - ok
00:07:40.0437 0x041c HyperVideo - ok
00:07:40.0452 0x041c i8042prt - ok
00:07:40.0468 0x041c iagpio - ok
00:07:40.0484 0x041c iai2c - ok
00:07:40.0484 0x041c iaLPSS2i_GPIO2 - ok
00:07:40.0515 0x041c iaLPSS2i_GPIO2_BXT_P - ok
00:07:40.0515 0x041c iaLPSS2i_I2C - ok
00:07:40.0530 0x041c iaLPSS2i_I2C_BXT_P - ok
00:07:40.0546 0x041c iaLPSSi_GPIO - ok
00:07:40.0546 0x041c iaLPSSi_I2C - ok
00:07:40.0655 0x041c [ 9E47BCE5F240C13331A493E156270589, 21BCBB18CAD5BC5CED3A8D9C3868D4AB4B781A2F8E40A49AABFD4AC8DC2FBC9F ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
00:07:40.0687 0x041c iaStorA - ok
00:07:40.0702 0x041c iaStorAVC - ok
00:07:40.0702 0x041c iaStorV - ok
00:07:40.0718 0x041c ibbus - ok
00:07:40.0718 0x041c ibtsiva - ok
00:07:40.0780 0x041c [ 3501750E1D543A5C6A32D1ED5BBAA125, 95D351DEB154BC4B5A4F4D477D945845218736E35C776264BA549471E37D3CF4 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys
00:07:40.0780 0x041c ibtusb - ok
00:07:40.0812 0x041c icssvc - ok
00:07:41.0155 0x041c [ 154DEDDED0BB11F000DAE3F61EF2F70F, FF2AF7B1C35F5C09D1E96F50F6CF96F2951370CB7CE3F21C830A47B8EFCCC8BC ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
00:07:41.0468 0x041c igfx - ok
00:07:41.0499 0x041c [ 8068888314A8B67C08195855D16B7586, C402E0CEEA0642CADD1FB5CA49DDB9E9802729F1718535FFD3F6A0DD2A6A5512 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
00:07:41.0702 0x041c igfxCUIService2.0.0.0 - ok
00:07:41.0734 0x041c IKEEXT - ok
00:07:41.0734 0x041c IndirectKmd - ok
00:07:41.0796 0x041c InstallService - ok
00:07:41.0874 0x041c [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
00:07:41.0890 0x041c IntcDAud - ok
00:07:41.0905 0x041c intelide - ok
00:07:41.0905 0x041c intelpep - ok
00:07:41.0937 0x041c intelppm - ok
00:07:41.0952 0x041c iorate - ok
00:07:41.0968 0x041c IpFilterDriver - ok
00:07:41.0999 0x041c iphlpsvc - ok
00:07:41.0999 0x041c IPMIDRV - ok
00:07:42.0015 0x041c IPNAT - ok
00:07:42.0030 0x041c IPT - ok
00:07:42.0046 0x041c IpxlatCfgSvc - ok
00:07:42.0046 0x041c irda - ok
00:07:42.0046 0x041c IRENUM - ok
00:07:42.0062 0x041c irmon - ok
00:07:42.0062 0x041c isapnp - ok
00:07:42.0077 0x041c iScsiPrt - ok
00:07:42.0077 0x041c ItSas35i - ok
00:07:42.0093 0x041c kbdclass - ok
00:07:42.0093 0x041c kbdhid - ok
00:07:42.0093 0x041c kdnic - ok
00:07:42.0108 0x041c KeyIso - ok
00:07:42.0124 0x041c KSecDD - ok
00:07:42.0140 0x041c KSecPkg - ok
00:07:42.0140 0x041c ksthunk - ok
00:07:42.0155 0x041c KtmRm - ok
00:07:42.0155 0x041c LanmanServer - ok
00:07:42.0187 0x041c LanmanWorkstation - ok
00:07:42.0202 0x041c lfsvc - ok
00:07:42.0202 0x041c LicenseManager - ok
00:07:42.0218 0x041c lltdio - ok
00:07:42.0218 0x041c lltdsvc - ok
00:07:42.0233 0x041c lmhosts - ok
00:07:42.0249 0x041c LSI_SAS - ok
00:07:42.0249 0x041c LSI_SAS2i - ok
00:07:42.0265 0x041c LSI_SAS3i - ok
00:07:42.0265 0x041c LSI_SSS - ok
00:07:42.0265 0x041c LSM - ok
00:07:42.0280 0x041c luafv - ok
00:07:42.0280 0x041c LxpSvc - ok
00:07:42.0327 0x041c MapsBroker - ok
00:07:42.0327 0x041c mausbhost - ok
00:07:42.0343 0x041c mausbip - ok
00:07:42.0358 0x041c megasas - ok
00:07:42.0358 0x041c megasas2i - ok
00:07:42.0374 0x041c megasas35i - ok
00:07:42.0390 0x041c megasr - ok
00:07:42.0437 0x041c [ 034338E2F6F123727F7C351152B084AF, B1E120E838CC8A882FC0C4C5F6D6016E11DD3D067E31B27E532BAD11A5976230 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
00:07:42.0452 0x041c MEIx64 - ok
00:07:42.0484 0x041c MessagingService - ok
00:07:42.0499 0x041c mlx4_bus - ok
00:07:42.0530 0x041c MMCSS - ok
00:07:42.0546 0x041c Modem - ok
00:07:42.0546 0x041c monitor - ok
00:07:42.0577 0x041c mouclass - ok
00:07:42.0593 0x041c mouhid - ok
00:07:42.0593 0x041c mountmgr - ok
00:07:42.0655 0x041c [ 96959E7C586523B04F54C867B242E35C, 91B021EC1A776FE273496CDA385B42438F597BEF62010BB41D25BBEB809EC0F7 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
00:07:42.0671 0x041c MozillaMaintenance - ok
00:07:42.0702 0x041c mpsdrv - ok
00:07:42.0702 0x041c mpssvc - ok
00:07:42.0749 0x041c MRxDAV - ok
00:07:42.0765 0x041c mrxsmb - ok
00:07:42.0765 0x041c mrxsmb20 - ok
00:07:42.0796 0x041c MsBridge - ok
00:07:42.0812 0x041c MSDTC - ok
00:07:42.0827 0x041c Msfs - ok
00:07:42.0827 0x041c msgpiowin32 - ok
00:07:42.0843 0x041c mshidkmdf - ok
00:07:42.0858 0x041c mshidumdf - ok
00:07:42.0874 0x041c msisadrv - ok
00:07:42.0890 0x041c MSiSCSI - ok
00:07:42.0890 0x041c msiserver - ok
00:07:42.0921 0x041c MSKSSRV - ok
00:07:42.0921 0x041c MsLldp - ok
00:07:42.0921 0x041c MSPCLOCK - ok
00:07:42.0937 0x041c MSPQM - ok
00:07:42.0952 0x041c MsRPC - ok
00:07:42.0968 0x041c mssmbios - ok
00:07:42.0968 0x041c MSTEE - ok
00:07:42.0983 0x041c MTConfig - ok
00:07:42.0983 0x041c Mup - ok
00:07:42.0999 0x041c mvumis - ok
00:07:42.0999 0x041c NativeWifiP - ok
00:07:43.0030 0x041c NaturalAuthentication - ok
00:07:43.0030 0x041c NcaSvc - ok
00:07:43.0046 0x041c NcbService - ok
00:07:43.0062 0x041c NcdAutoSetup - ok
00:07:43.0062 0x041c ndfltr - ok
00:07:43.0077 0x041c NDIS - ok
00:07:43.0077 0x041c NdisCap - ok
00:07:43.0093 0x041c NdisImPlatform - ok
00:07:43.0093 0x041c NdisTapi - ok
00:07:43.0108 0x041c Ndisuio - ok
00:07:43.0124 0x041c NdisVirtualBus - ok
00:07:43.0140 0x041c NdisWan - ok
00:07:43.0155 0x041c ndiswanlegacy - ok
00:07:43.0155 0x041c ndproxy - ok
00:07:43.0171 0x041c Ndu - ok
00:07:43.0171 0x041c NetAdapterCx - ok
00:07:43.0171 0x041c NetBIOS - ok
00:07:43.0202 0x041c NetBT - ok
00:07:43.0202 0x041c Netlogon - ok
00:07:43.0218 0x041c Netman - ok
00:07:43.0265 0x041c netprofm - ok
00:07:43.0296 0x041c NetSetupSvc - ok
00:07:43.0421 0x041c NetTcpPortSharing - ok
00:07:43.0437 0x041c netvsc - ok
00:07:43.0608 0x041c [ 89017196324ABC97B4A02A06919C12AC, 10F4271CCAC06984BBE38C7636D6841E71E1EBA2BC6BE3E8B0C7542CEA5204C1 ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys
00:07:43.0796 0x041c NETwNb64 - ok
00:07:43.0843 0x041c NgcCtnrSvc - ok
00:07:43.0858 0x041c NgcSvc - ok
00:07:43.0952 0x041c [ 91D3BCA53A7E6CC61AE81F8EB556D885, E6013E0D27A4DDDA45195B55C218F77F6CA43AE44CB3D39A478AA61AF3750AD8 ] NitroDriverReadSpool10 C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe
00:07:43.0968 0x041c NitroDriverReadSpool10 - ok
00:07:44.0015 0x041c [ A6DF138E66DA14BBDFDB60C81E687A4E, CCE575FBE865138B5B7F2D30D3E4262A9E12FF56A7808FBD3AB25EAE74F57D58 ] NitroUpdateService C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe
00:07:44.0030 0x041c NitroUpdateService - ok
00:07:44.0061 0x041c NlaSvc - ok
00:07:44.0061 0x041c Npfs - ok
00:07:44.0077 0x041c npsvctrig - ok
00:07:44.0108 0x041c nsi - ok
00:07:44.0108 0x041c nsiproxy - ok
00:07:44.0124 0x041c Ntfs - ok
00:07:44.0124 0x041c Null - ok
00:07:44.0140 0x041c nvdimm - ok
00:07:44.0140 0x041c nvraid - ok
00:07:44.0155 0x041c nvstor - ok
00:07:44.0171 0x041c OneSyncSvc - ok
00:07:44.0280 0x041c [ 0248107A87BB059ED176FDCC8ED49C82, D74CD025D6911FEDE0B00F8A1705560FC1DF2013CB9C96A3EE0403FD606DB629 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
00:07:44.0405 0x041c ose - ok
00:07:44.0437 0x041c p2pimsvc - ok
00:07:44.0452 0x041c p2psvc - ok
00:07:44.0452 0x041c Parport - ok
00:07:44.0483 0x041c partmgr - ok
00:07:44.0499 0x041c PcaSvc - ok
00:07:44.0530 0x041c pci - ok
00:07:44.0546 0x041c pciide - ok
00:07:44.0577 0x041c pcmcia - ok
00:07:44.0577 0x041c pcw - ok
00:07:44.0593 0x041c pdc - ok
00:07:44.0608 0x041c PEAUTH - ok
00:07:44.0624 0x041c percsas2i - ok
00:07:44.0624 0x041c percsas3i - ok
00:07:44.0702 0x041c PerfHost - ok
00:07:44.0749 0x041c PhoneSvc - ok
00:07:44.0765 0x041c PimIndexMaintenanceSvc - ok
00:07:44.0780 0x041c pla - ok
00:07:44.0796 0x041c PlugPlay - ok
00:07:44.0827 0x041c pmem - ok
00:07:44.0843 0x041c PNPMEM - ok
00:07:44.0858 0x041c PNRPAutoReg - ok
00:07:44.0858 0x041c PNRPsvc - ok
00:07:44.0905 0x041c PolicyAgent - ok
00:07:44.0921 0x041c Power - ok
00:07:44.0921 0x041c PptpMiniport - ok
00:07:45.0140 0x041c [ AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4, 6372FC5E78A2DDB8AE6EB73BEB5C0D4056FB6BE9F231A36BAC37AE970F5EB247 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
00:07:45.0265 0x041c PrintNotify - ok
00:07:45.0311 0x041c PrintWorkflowUserSvc - ok
00:07:45.0311 0x041c Processor - ok
00:07:45.0327 0x041c ProfSvc - ok
00:07:45.0327 0x041c Psched - ok
00:07:45.0343 0x041c PushToInstall - ok
00:07:45.0358 0x041c QWAVE - ok
00:07:45.0358 0x041c QWAVEdrv - ok
00:07:45.0358 0x041c Ramdisk - ok
00:07:45.0374 0x041c RasAcd - ok
00:07:45.0390 0x041c RasAgileVpn - ok
00:07:45.0405 0x041c RasAuto - ok
00:07:45.0405 0x041c Rasl2tp - ok
00:07:45.0436 0x041c RasMan - ok
00:07:45.0436 0x041c RasPppoe - ok
00:07:45.0452 0x041c RasSstp - ok
00:07:45.0452 0x041c rdbss - ok
00:07:45.0483 0x041c rdpbus - ok
00:07:45.0499 0x041c RDPDR - ok
00:07:45.0514 0x041c RdpVideoMiniport - ok
00:07:45.0530 0x041c rdyboost - ok
00:07:45.0546 0x041c ReFS - ok
00:07:45.0561 0x041c ReFSv1 - ok
00:07:45.0593 0x041c RemoteAccess - ok
00:07:45.0608 0x041c RemoteRegistry - ok
00:07:45.0624 0x041c RetailDemo - ok
00:07:45.0655 0x041c RFCOMM - ok
00:07:45.0671 0x041c rhproxy - ok
00:07:45.0702 0x041c RmSvc - ok
00:07:45.0718 0x041c RpcEptMapper - ok
00:07:45.0749 0x041c RpcLocator - ok
00:07:45.0780 0x041c RpcSs - ok
00:07:45.0796 0x041c rspndr - ok
00:07:45.0874 0x041c [ CF0F908B50CD8FB12B7B69DA56A44681, F35FFF3F6BFBC3B2452C5E0A63D94575236EEB49665BE0FBBB26ADAF189F777E ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
00:07:45.0905 0x041c rt640x64 - ok
00:07:45.0968 0x041c [ D5C3918E3EF787A41172B8E5348247F0, 033E5E6037CDFE65D26AD834ACD2B652EEED66BA48753F7B319C9FD41CE4F180 ] RTL8168 C:\WINDOWS\System32\drivers\Rt630x64.sys
00:07:45.0999 0x041c RTL8168 - ok
00:07:46.0061 0x041c [ 87CCF37EC2858FCF7689F8FC0B72F39A, 60B71BDC7388887AC7EB2C869DEAF86DD06B7EB9DEE3CF4F4DFE2D1BCE3BDAA8 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
00:07:46.0093 0x041c RTSUER - ok
00:07:46.0249 0x041c [ E7303619F9A06AF5A3AC6A1DCD2AAB3C, B4AF2AEA77FDADD6CF914920E1906B35D936002BC6F70F5292AE1D850C4D6F97 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
00:07:46.0374 0x041c rtsuvc - ok
00:07:46.0468 0x041c s3cap - ok
00:07:46.0499 0x041c SamSs - ok
00:07:46.0514 0x041c SAService - ok
00:07:46.0561 0x041c sbp2port - ok
00:07:46.0593 0x041c SCardSvr - ok
00:07:46.0608 0x041c ScDeviceEnum - ok
00:07:46.0624 0x041c scfilter - ok
00:07:46.0671 0x041c Schedule - ok
00:07:46.0686 0x041c scmbus - ok
00:07:46.0718 0x041c SCPolicySvc - ok
00:07:46.0749 0x041c sdbus - ok
00:07:46.0764 0x041c SDFRd - ok
00:07:46.0780 0x041c SDRSVC - ok
00:07:46.0796 0x041c sdstor - ok
00:07:46.0827 0x041c seclogon - ok
00:07:46.0858 0x041c SecurityHealthService - ok
00:07:46.0952 0x041c [ 271E64A1E7FFFEC74DEB31BA99842A25, B4300129F80FA484BB83181F1B970143D167DA528849BBC0FD02EF0F0E103CD7 ] sedsvc C:\Program Files\rempl\sedsvc.exe
00:07:47.0014 0x041c sedsvc - ok
00:07:47.0046 0x041c SEMgrSvc - ok
00:07:47.0061 0x041c SENS - ok
00:07:47.0077 0x041c SensorDataService - ok
00:07:47.0093 0x041c SensorService - ok
00:07:47.0139 0x041c SensrSvc - ok
00:07:47.0155 0x041c SerCx - ok
00:07:47.0186 0x041c SerCx2 - ok
00:07:47.0202 0x041c Serenum - ok
00:07:47.0218 0x041c Serial - ok
00:07:47.0233 0x041c sermouse - ok
00:07:47.0233 0x041c SessionEnv - ok
00:07:47.0249 0x041c sfloppy - ok
00:07:47.0264 0x041c SgrmAgent - ok
00:07:47.0264 0x041c SgrmBroker - ok
00:07:47.0327 0x041c SharedAccess - ok
00:07:47.0358 0x041c SharedRealitySvc - ok
00:07:47.0374 0x041c ShellHWDetection - ok
00:07:47.0514 0x041c shpamsvc - ok
00:07:47.0514 0x041c SiSRaid2 - ok
00:07:47.0546 0x041c SiSRaid4 - ok
00:07:47.0546 0x041c smphost - ok
00:07:47.0577 0x041c SmsRouter - ok
00:07:47.0592 0x041c SNMPTRAP - ok
00:07:47.0624 0x041c spaceport - ok
00:07:47.0639 0x041c SpatialGraphFilter - ok
00:07:47.0655 0x041c SpbCx - ok
00:07:47.0718 0x041c spectrum - ok
00:07:47.0718 0x041c Spooler - ok
00:07:47.0764 0x041c sppsvc - ok
00:07:47.0764 0x041c srv2 - ok
00:07:47.0811 0x041c srvnet - ok
00:07:47.0827 0x041c SSDPSRV - ok
00:07:47.0889 0x041c ssh-agent - ok
00:07:47.0905 0x041c SstpSvc - ok
00:07:47.0921 0x041c StateRepository - ok
00:07:47.0952 0x041c stexstor - ok
00:07:47.0967 0x041c stisvc - ok
00:07:47.0983 0x041c storahci - ok
00:07:47.0999 0x041c storflt - ok
00:07:48.0014 0x041c stornvme - ok
00:07:48.0046 0x041c storqosflt - ok
00:07:48.0061 0x041c StorSvc - ok
00:07:48.0093 0x041c storufs - ok
00:07:48.0108 0x041c storvsc - ok
00:07:48.0124 0x041c svsvc - ok
00:07:48.0186 0x041c swenum - ok
00:07:48.0202 0x041c swprv - ok
00:07:48.0217 0x041c Synth3dVsc - ok
00:07:48.0233 0x041c SysMain - ok
00:07:48.0280 0x041c SystemEventsBroker - ok
00:07:48.0280 0x041c TabletInputService - ok
00:07:48.0296 0x041c TapiSrv - ok
00:07:48.0327 0x041c Tcpip - ok
00:07:48.0327 0x041c Tcpip6 - ok
00:07:48.0374 0x041c tcpipreg - ok
00:07:48.0389 0x041c tdx - ok
00:07:48.0405 0x041c terminpt - ok
00:07:48.0421 0x041c TermService - ok
00:07:48.0452 0x041c Themes - ok
00:07:48.0467 0x041c TieringEngineService - ok
00:07:48.0483 0x041c TimeBrokerSvc - ok
00:07:48.0483 0x041c TokenBroker - ok
00:07:48.0499 0x041c TPM - ok
00:07:48.0499 0x041c TrkWks - ok
00:07:48.0561 0x041c TrustedInstaller - ok
00:07:48.0592 0x041c TsUsbFlt - ok
00:07:48.0608 0x041c TsUsbGD - ok
00:07:48.0624 0x041c tunnel - ok
00:07:48.0671 0x041c tzautoupdate - ok
00:07:48.0671 0x041c UASPStor - ok
00:07:48.0686 0x041c UcmCx0101 - ok
00:07:48.0702 0x041c UcmTcpciCx0101 - ok
00:07:48.0717 0x041c UcmUcsi - ok
00:07:48.0749 0x041c Ucx01000 - ok
00:07:48.0764 0x041c UdeCx - ok
00:07:48.0780 0x041c udfs - ok
00:07:48.0796 0x041c UEFI - ok
00:07:48.0796 0x041c Ufx01000 - ok
00:07:48.0811 0x041c UfxChipidea - ok
00:07:48.0827 0x041c ufxsynopsys - ok
00:07:48.0858 0x041c umbus - ok
00:07:48.0874 0x041c UmPass - ok
00:07:48.0889 0x041c UmRdpService - ok
00:07:48.0905 0x041c UnistoreSvc - ok
00:07:48.0952 0x041c upnphost - ok
00:07:48.0967 0x041c UrsChipidea - ok
00:07:48.0983 0x041c UrsCx01000 - ok
00:07:48.0983 0x041c UrsSynopsys - ok
00:07:48.0999 0x041c usbccgp - ok
00:07:49.0014 0x041c usbcir - ok
00:07:49.0030 0x041c usbehci - ok
00:07:49.0046 0x041c usbhub - ok
00:07:49.0077 0x041c USBHUB3 - ok
00:07:49.0077 0x041c usbohci - ok
00:07:49.0092 0x041c usbprint - ok
00:07:49.0092 0x041c usbser - ok
00:07:49.0108 0x041c USBSTOR - ok
00:07:49.0108 0x041c usbuhci - ok
00:07:49.0139 0x041c usbvideo - ok
00:07:49.0139 0x041c USBXHCI - ok
00:07:49.0171 0x041c UserDataSvc - ok
00:07:49.0186 0x041c UserManager - ok
00:07:49.0217 0x041c UsoSvc - ok
00:07:49.0233 0x041c VacSvc - ok
00:07:49.0249 0x041c VaultSvc - ok
00:07:49.0264 0x041c vdrvroot - ok
00:07:49.0280 0x041c vds - ok
00:07:49.0311 0x041c VerifierExt - ok
00:07:49.0342 0x041c vhdmp - ok
00:07:49.0358 0x041c vhf - ok
00:07:49.0389 0x041c vmbus - ok
00:07:49.0405 0x041c VMBusHID - ok
00:07:49.0420 0x041c vmgid - ok
00:07:49.0452 0x041c vmicguestinterface - ok
00:07:49.0467 0x041c vmicheartbeat - ok
00:07:49.0483 0x041c vmickvpexchange - ok
00:07:49.0499 0x041c vmicrdv - ok
00:07:49.0514 0x041c vmicshutdown - ok
00:07:49.0530 0x041c vmictimesync - ok
00:07:49.0530 0x041c vmicvmsession - ok
00:07:49.0545 0x041c vmicvss - ok
00:07:49.0561 0x041c volmgr - ok
00:07:49.0577 0x041c volmgrx - ok
00:07:49.0592 0x041c volsnap - ok
00:07:49.0608 0x041c volume - ok
00:07:49.0608 0x041c vpci - ok
00:07:49.0624 0x041c vpnva - ok
00:07:49.0639 0x041c vsmraid - ok
00:07:49.0655 0x041c VSS - ok
00:07:49.0670 0x041c VSTXRAID - ok
00:07:49.0670 0x041c vwifibus - ok
00:07:49.0686 0x041c vwififlt - ok
00:07:49.0702 0x041c vwifimp - ok
00:07:49.0749 0x041c W32Time - ok
00:07:49.0780 0x041c WaaSMedicSvc - ok
00:07:49.0780 0x041c WacomPen - ok
00:07:49.0811 0x041c WalletService - ok
00:07:49.0827 0x041c wanarp - ok
00:07:49.0842 0x041c wanarpv6 - ok
00:07:49.0842 0x041c WarpJITSvc - ok
00:07:49.0889 0x041c wbengine - ok
00:07:49.0936 0x041c WbioSrvc - ok
00:07:49.0952 0x041c wcifs - ok
00:07:49.0983 0x041c Wcmsvc - ok
00:07:50.0014 0x041c wcncsvc - ok
00:07:50.0046 0x041c wcnfs - ok
00:07:50.0092 0x041c WdBoot - ok
00:07:50.0108 0x041c Wdf01000 - ok
00:07:50.0124 0x041c WdFilter - ok
00:07:50.0155 0x041c WdiServiceHost - ok
00:07:50.0155 0x041c WdiSystemHost - ok
00:07:50.0202 0x041c wdiwifi - ok
00:07:50.0249 0x041c WdmCompanionFilter - ok
00:07:50.0264 0x041c WdNisDrv - ok
00:07:50.0374 0x041c WdNisSvc - ok
00:07:50.0389 0x041c WebClient - ok
00:07:50.0405 0x041c Wecsvc - ok
00:07:50.0436 0x041c WEPHOSTSVC - ok
00:07:50.0452 0x041c wercplsupport - ok
00:07:50.0452 0x041c WerSvc - ok
00:07:50.0499 0x041c WFDSConMgrSvc - ok
00:07:50.0514 0x041c WFPLWFS - ok
00:07:50.0530 0x041c WiaRpc - ok
00:07:50.0545 0x041c WIMMount - ok
00:07:50.0577 0x041c WinDefend - ok
00:07:50.0624 0x041c WindowsTrustedRT - ok
00:07:50.0655 0x041c WindowsTrustedRTProxy - ok
00:07:50.0686 0x041c WinHttpAutoProxySvc - ok
00:07:50.0702 0x041c WinMad - ok
00:07:50.0764 0x041c Winmgmt - ok
00:07:50.0795 0x041c WinNat - ok
00:07:50.0827 0x041c WinRM - ok
00:07:50.0874 0x041c WINUSB - ok
00:07:50.0874 0x041c WinVerbs - ok
00:07:50.0905 0x041c wisvc - ok
00:07:50.0936 0x041c WlanSvc - ok
00:07:50.0967 0x041c wlidsvc - ok
00:07:50.0983 0x041c wlpasvc - ok
00:07:50.0998 0x041c WmiAcpi - ok
00:07:51.0045 0x041c wmiApSrv - ok
00:07:51.0092 0x041c WMPNetworkSvc - ok
00:07:51.0155 0x041c [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof C:\WINDOWS\system32\drivers\Wof.sys
00:07:51.0170 0x041c Wof - ok
00:07:51.0217 0x041c workfolderssvc - ok
00:07:51.0249 0x041c WpcMonSvc - ok
00:07:51.0280 0x041c WPDBusEnum - ok
00:07:51.0295 0x041c WpdUpFltr - ok
00:07:51.0311 0x041c WpnService - ok
00:07:51.0311 0x041c WpnUserService - ok
00:07:51.0342 0x041c ws2ifsl - ok
00:07:51.0358 0x041c wscsvc - ok
00:07:51.0373 0x041c WSDPrintDevice - ok
00:07:51.0436 0x041c WSDScan - ok
00:07:51.0436 0x041c WSearch - ok
00:07:51.0498 0x041c wuauserv - ok
00:07:51.0530 0x041c WudfPf - ok
00:07:51.0545 0x041c WUDFRd - ok
00:07:51.0561 0x041c WUDFWpdFs - ok
00:07:51.0577 0x041c WUDFWpdMtp - ok
00:07:51.0608 0x041c WwanSvc - ok
00:07:51.0639 0x041c xbgm - ok
00:07:51.0655 0x041c XblAuthManager - ok
00:07:51.0670 0x041c XblGameSave - ok
00:07:51.0686 0x041c xboxgip - ok
00:07:51.0702 0x041c XboxGipSvc - ok
00:07:51.0717 0x041c XboxNetApiSvc - ok
00:07:51.0748 0x041c xinputhid - ok
00:07:51.0936 0x041c [ 5476780170B1CB9CE62F50BAD8343B9F, 4746C03872D3979306141926AB1D20338AFC1EE2AAD028B9CC0DDEF6F5451F01 ] XperiaCompanionService C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
00:07:52.0108 0x041c XperiaCompanionService - ok
00:07:52.0108 0x041c ================ Scan global ===============================
00:07:52.0202 0x041c [ Global ] - ok
00:07:52.0202 0x041c ================ Scan MBR ==================================
00:07:52.0233 0x041c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
00:07:52.0295 0x041c \Device\Harddisk0\DR0 - ok
00:07:52.0295 0x041c ================ Scan VBR ==================================
00:07:52.0295 0x041c [ 92149FFEAA2E2EDC99CF7B4EC9E033BC ] \Device\Harddisk0\DR0\Partition1
00:07:52.0295 0x041c \Device\Harddisk0\DR0\Partition1 - ok
00:07:52.0311 0x041c [ DBBE13FA9D10A1A8E6AE4C541A2BEB38 ] \Device\Harddisk0\DR0\Partition2
00:07:52.0311 0x041c \Device\Harddisk0\DR0\Partition2 - ok
00:07:52.0327 0x041c [ A6184951AC84534008CD0CBC36FC75C8 ] \Device\Harddisk0\DR0\Partition3
00:07:52.0327 0x041c \Device\Harddisk0\DR0\Partition3 - ok
00:07:52.0342 0x041c [ 66B5FA6F03728DFEEF88DA4EE7C73E58 ] \Device\Harddisk0\DR0\Partition4
00:07:52.0342 0x041c \Device\Harddisk0\DR0\Partition4 - ok
00:07:52.0358 0x041c [ F7AC4F4002A51064BC2B0449943D9B23 ] \Device\Harddisk0\DR0\Partition5
00:07:52.0358 0x041c \Device\Harddisk0\DR0\Partition5 - ok
00:07:52.0405 0x041c [ 9EBFD94AB376A820F0A1874FBFC2DA54 ] \Device\Harddisk0\DR0\Partition6
00:07:52.0405 0x041c \Device\Harddisk0\DR0\Partition6 - ok
00:07:52.0420 0x041c [ 85406619B9079277FB03F52432CEE4D8 ] \Device\Harddisk0\DR0\Partition7
00:07:52.0420 0x041c \Device\Harddisk0\DR0\Partition7 - ok
00:07:52.0436 0x041c ================ Scan generic autorun ======================
00:07:52.0483 0x041c SecurityHealth - ok
00:07:52.0577 0x041c [ 42361B4BD80768E82B80285851037665, A555A6BF8016645B838FEA993AD273D1F472586F3600619DC243B1C33438FA07 ] C:\Program Files\Conexant\ForteConfig\fmapp.exe
00:07:52.0577 0x041c ForteConfig - ok
00:07:52.0623 0x041c [ B58355B1B1C91433B4B119083C7F28B3, CE8272FB392C519D3F1921CE11AF12E0CEE3F96141DCCBF5C40110DA3F9B92BD ] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
00:07:52.0655 0x041c cAudioFilterAgent - ok
00:07:52.0795 0x041c [ 4F8B94EC4D4FFA0712CCADF8145F28D1, 6CED9332100CA71FB17930AAC4ED1798E6F3A83CEBEE0A3412EFA01F6F1A6F22 ] C:\Program Files\CONEXANT\SAII\SACpl.exe
00:07:52.0873 0x041c SmartAudio - ok
00:07:53.0123 0x041c [ CBBB9715AFD99222EEB5C1DEBDDD495C, DA5BD77C7685D5D8721A240503EA59724907920AE486156D2F98FC861BC9EB96 ] C:\WINDOWS\RTFTrack.exe
00:07:53.0326 0x041c RtsFT - ok
00:07:53.0467 0x041c [ A33833D1CB24AA28372CE0D43D4F5112, D1FDE1418094B29D680CAC4E1D9C67DF6880378552EDC9E52948F67D5CCFF805 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
00:07:53.0498 0x041c AdobeAAMUpdater-1.0 - ok
00:07:53.0576 0x041c [ E61AF850E805B723EAB756E821C7696D, 9F604B803E843F691A279D8EF0B34C0F461F5C7054D3CBA49F76C091D4574D5C ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
00:07:53.0608 0x041c SunJavaUpdateSched - ok
00:07:53.0701 0x041c OneDriveSetup - ok
00:07:53.0701 0x041c OneDriveSetup - ok
00:07:53.0936 0x041c [ 8FA40C01CCD239C0CA7F747015E336B1, 2DDF8B08DC46FA84C04AAD18E7AA73B7E13AF07C20A69EFF6CC9160E11969ACC ] C:\Users\tom\AppData\Local\Microsoft\OneDrive\OneDrive.exe
00:07:53.0983 0x041c OneDrive - ok
00:07:54.0233 0x041c [ FB2402FA37525B7FCDC37A8C691AFF05, 4BFE07B75FEA87FD20F9B65D21A0CC7A36498E84C5DADBEF4B63750A4BEEAF73 ] C:\Users\tom\AppData\Roaming\uTorrent Web\utweb.exe
00:07:54.0483 0x041c utweb - ok
00:07:54.0686 0x041c [ 69866EF709148083948D8C8F3C4DD675, 835E1042230FE590890798E87879591E66D6BE487EED097D2206243239B2A350 ] C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
00:07:54.0826 0x041c XperiaCompanionAgent - ok
00:07:54.0826 0x041c OneDriveSetup - ok
00:07:54.0842 0x041c OneDriveSetup - ok
00:07:54.0842 0x041c Waiting for KSN requests completion. In queue: 11
00:07:55.0889 0x041c AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated )
00:07:55.0951 0x041c Win FW state via NFP2: enabled ( trusted )
00:07:56.0061 0x041c ============================================================
00:07:56.0061 0x041c Scan finished
00:07:56.0061 0x041c ============================================================
00:07:56.0061 0x2974 Detected object count: 0
00:07:56.0061 0x2974 Actual detected object count: 0 |