![]() |
Makrovirus "Berger Antriebstechnik" Hallo Helfer, am 19.12.15 habe ich eine mail mit dem Betreff "Bestellung" von der Firma Berges Antriebstechnik erhalten. Im Anhang befand sich ein word-Dokument, welches ich dummerweise geöffnet habe (ohne Textinhalt).Im Anschluß email gelöscht und Rechner Neustart. Habe dann erst zwei tage später erfahren dass ev. ein Makrovirus im Anhang beigefügt war. Habe in dieser Zeit öfters mal mit Word gearbeitet und einmal auch onlinebanking getätigt. einziges problem Adobe Reader hat nicht mehr funktioniert. ev wegen update da es nach Neustart wieder gut war weitere Probleme sind keine aufgetaucht bin dann nach langer suche ohne brauchbare Ergebnisse glücklicher weise auf euer Board gestoße. Jürgen , deeprybka hatte am 23.12.2015 die gleiche Anfrage und da sie auch für mich als Laie gut beschrieben waren bin ich den Anweisungen von ihm gefolgt. meinen Virenscanner (Avira free antivirus Produktversion 15.0.15.129 03.12.2015) Spybot zusätzlich überprüft. FRST 64bit erzeugt Adw Cleaner Protokoll Adw Cleaner ausgeführt TDSSKiller + Protokoll Anti-Malware ESTE Onlinescanner Problem: Wie kann ich sicher sein, dass ich mir keine Schadsoftware eingefangen habe? Welchen Schaden kann ein möglicher Trojaner anrichten? Könnte es beim Online-banking gefährlich werden?habe es ja benutzt (1-2 Tage danach) Sollte ich den Zugang von meiner Bank sperren lassen. Wäre über eine helfende Hand dankbar Mit freundlichen Grüßen Andreas Im Absatz FRST (die Erste) Addition ( die Erste) Code: Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015 Addition Code: Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:31-12-2015 |
Die aktuellen Schädlinge in Word-Dateien sind Erpresser (ransoms) die deine Daten verschlüsseln siehe Gefährliches Duo: Erpressungstrojaner kommt mit Word-Datei | heise Security Sind deine Daten zerstört/verschlüsselt? |
Hallo, Habe mir gerade den link angeschaut und das viedeo dazu das ganze macht mir nun doch große Sorgen und Angst habe einige verschiedene Dateien angeschaut weder zerstört noch verschlüssel wie schon erwähnt war nur im ersten moment der Adobe Reader der nicht funktioniert hat Tags darauf nach neustart war er wieder ok Sollte ich möglichst bald einen Backab auf eine externe Festplatte machen oder besteht die gefahr das schadhafte Dateien die festplatt befallen? Kann man davon ausgehen daß ich mir mit dem öffnen dieser dok datei (geöffnet und nach ca 3-4 sekunden wieder geschlossen) automatisch ein Makrovirus geholt habe? Kann ein Helfer aus den verschiedenen Protokollen die ich aus den folgenden Scannern habe herausfinden ob da überhaupt was auf dem Rechner ist FRST 64bit erzeugt Adw Cleaner Protokoll Adw Cleaner ausgeführt TDSSKiller + Protokoll Anti-Malware ESTE Onlinescanner Protokolle würde ich reinstellen wenn sich einer meldet mit freundlichen Grüßen Andreas |
Ja, poste bitte alle Logs ![]() Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
|
Hallo, erst mal ein Dankeschön das hier einer ist der mir weiterhelfen kann Habe mir eben noch eine Backup-Platte besorgt So ich habe jetzt alle Protokolle zusammen und werde sie nacheinander posten Es kann recht viel werden da ich manche scanns habe 2x laufen lassen Ich hoffe ihr habt da den Durchblick da ich mit den Produkollen rein garnichts anfangen kann Ich nehme auch an daß da hir und da noch rest Mülldateien vorhanden sind Aber bei email anhängen habe ich bis dato eigentlich nie etwas fragwürdiges geöffnet Also erstes FRST+Addition schon gepostet im ersten beitrag Code: # AdwCleaner v5.027 - Bericht erstellt am 04/01/2016 um 17:04:22 Code: # AdwCleaner v5.027 - Bericht erstellt am 04/01/2016 um 17:52:03 Code: C:\Program Files (x86)\myfree codec\1.0b beta\avcodec-52.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\myfree codec\1.0b beta\avcodec-52.dll.vir [CODE]17:26:43.0373 0x1f5c TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12 17:26:43.0373 0x1f5c UEFI system 17:27:23.0367 0x1f5c ============================================================ 17:27:23.0367 0x1f5c Current date / time: 2016/01/04 17:27:23.0367 17:27:23.0367 0x1f5c SystemInfo: 17:27:23.0367 0x1f5c 17:27:23.0367 0x1f5c OS Version: 6.3.9600 ServicePack: 0.0 17:27:23.0367 0x1f5c Product type: Workstation 17:27:23.0367 0x1f5c ComputerName: OLIVER 17:27:23.0367 0x1f5c UserName: Andreas 17:27:23.0367 0x1f5c Windows directory: C:\WINDOWS 17:27:23.0367 0x1f5c System windows directory: C:\WINDOWS 17:27:23.0367 0x1f5c Running under WOW64 17:27:23.0367 0x1f5c Processor architecture: Intel x64 17:27:23.0367 0x1f5c Number of processors: 4 17:27:23.0367 0x1f5c Page size: 0x1000 17:27:23.0367 0x1f5c Boot type: Normal boot 17:27:23.0367 0x1f5c ============================================================ 17:27:23.0951 0x1f5c KLMD registered as C:\WINDOWS\system32\drivers\37226856.sys 17:27:24.0466 0x1f5c System UUID: {14213991-BD6C-C597-0C07-B5A934EF09F8} 17:27:25.0533 0x1f5c Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 17:27:25.0579 0x1f5c ============================================================ 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0: 17:27:25.0579 0x1f5c GPT partitions: 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {D2EE9E62-8450-43C6-9E1F-5D8E7CB4241A}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xFA000 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {959B4564-8338-47E7-9CBC-6FB02C36D795}, Name: EFI system partition, StartLBA 0xFA800, BlocksNum 0x96000 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {26EEE887-6542-41EC-8FC6-A0772B36D6AF}, Name: Microsoft reserved partition, StartLBA 0x190800, BlocksNum 0x40000 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C457E945-495B-40A8-921C-BC3B1A18CD6E}, Name: Basic data partition, StartLBA 0x1D0800, BlocksNum 0x2F5E0001 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {80DA5BB7-84DA-4C1C-A36B-011C102EB589}, Name: , StartLBA 0x2F7B1000, BlocksNum 0xAF000 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {514DEC35-ABFC-450A-BE91-7DC537C7C79F}, Name: Basic data partition, StartLBA 0x2F860000, BlocksNum 0x249EF800 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {C7D1520F-5523-4CBA-89AF-4B2375ACEF5C}, Name: Basic data partition, StartLBA 0x5424F801, BlocksNum 0x30F6800 17:27:25.0579 0x1f5c \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {0D1B812C-3112-484F-4173-636C65706975}, Name: Basic data partition, StartLBA 0x57346001, BlocksNum 0x200000 17:27:25.0579 0x1f5c MBR partitions: 17:27:25.0579 0x1f5c ============================================================ 17:27:25.0611 0x1f5c C: <-> \Device\Harddisk0\DR0\Partition4 17:27:25.0642 0x1f5c D: <-> \Device\Harddisk0\DR0\Partition6 17:27:25.0642 0x1f5c ============================================================ 17:27:25.0642 0x1f5c Initialize success 17:27:25.0642 0x1f5c ============================================================ 17:27:38.0361 0x1f6c ============================================================ 17:27:38.0361 0x1f6c Scan started 17:27:38.0361 0x1f6c Mode: Manual; 17:27:38.0361 0x1f6c ============================================================ 17:27:38.0361 0x1f6c KSN ping started 17:27:40.0748 0x1f6c KSN ping finished: true 17:27:43.0151 0x1f6c ================ Scan system memory ======================== 17:27:43.0151 0x1f6c System memory - ok 17:27:43.0151 0x1f6c ================ Scan services ============================= 17:27:43.0338 0x1f6c [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 17:27:43.0338 0x1f6c 1394ohci - ok 17:27:43.0354 0x1f6c [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 17:27:43.0354 0x1f6c 3ware - ok 17:27:43.0385 0x1f6c [ A3769020F7E8A70FD3E824C050F33306, BAAB18DD28C753EC90E9552BD5FFC316AD8815505A7998BCE51D21448B373D86 ] acedrv11 C:\WINDOWS\system32\drivers\acedrv11.sys 17:27:43.0385 0x1f6c acedrv11 - ok 17:27:43.0428 0x1f6c [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 17:27:43.0428 0x1f6c ACPI - ok 17:27:43.0444 0x1f6c [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 17:27:43.0444 0x1f6c acpiex - ok 17:27:43.0475 0x1f6c [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 17:27:43.0475 0x1f6c acpipagr - ok 17:27:43.0507 0x1f6c [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 17:27:43.0507 0x1f6c AcpiPmi - ok 17:27:43.0507 0x1f6c [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 17:27:43.0522 0x1f6c acpitime - ok 17:27:43.0596 0x1f6c [ 5DB2C6B908C50767E2EDAA294A7566B5, 13AE4879D679BB0C6B2A5A5B13910359815A9D2E569BC1DE740B5A387A78CF33 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 17:27:43.0596 0x1f6c AdobeARMservice - ok 17:27:43.0736 0x1f6c [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 17:27:43.0752 0x1f6c AdobeFlashPlayerUpdateSvc - ok 17:27:43.0814 0x1f6c [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 17:27:43.0846 0x1f6c ADP80XX - ok 17:27:43.0877 0x1f6c [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll 17:27:43.0877 0x1f6c AeLookupSvc - ok 17:27:43.0924 0x1f6c [ A460C3AF3755A2A79A3C8EFE72E147B5, 62CEA85DA53D86D3E7B5D79F94095C6126FFF3DEE1427BBF3DEF5EA366B4513B ] AFD C:\WINDOWS\system32\drivers\afd.sys 17:27:43.0939 0x1f6c AFD - ok 17:27:43.0955 0x1f6c [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 17:27:43.0955 0x1f6c agp440 - ok 17:27:44.0002 0x1f6c [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 17:27:44.0002 0x1f6c ahcache - ok 17:27:44.0049 0x1f6c [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG C:\WINDOWS\System32\alg.exe 17:27:44.0049 0x1f6c ALG - ok 17:27:44.0080 0x1f6c [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 17:27:44.0096 0x1f6c AmdK8 - ok 17:27:44.0111 0x1f6c [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 17:27:44.0111 0x1f6c AmdPPM - ok 17:27:44.0142 0x1f6c [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 17:27:44.0142 0x1f6c amdsata - ok 17:27:44.0174 0x1f6c [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 17:27:44.0174 0x1f6c amdsbs - ok 17:27:44.0189 0x1f6c [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 17:27:44.0189 0x1f6c amdxata - ok 17:27:44.0221 0x1f6c [ FB88245C1815EB1588DBC364A8D24522, 8DF136DE523EB39199FC993C48D850AD5B57FD9808B778FEF77FDC737F1A0026 ] AMPPAL C:\WINDOWS\System32\drivers\AMPPAL.sys 17:27:44.0221 0x1f6c AMPPAL - ok 17:27:44.0299 0x1f6c [ A73CEA1B1B0A4F6D10BFD3B9AD9DC5F9, A2A4C8FA566BE06A64A34DEBF2647AA40B31BEBA677D548CAE3100EF20632EB7 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe 17:27:44.0314 0x1f6c AMPPALR3 - ok 17:27:44.0408 0x1f6c [ 81E02299B534F61E104C1235519C37B3, B389458C13A0E0717365B7CE371A6B768EB2F98C4CDBAA6DCBBBDE3A2B1D8B14 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe 17:27:44.0424 0x1f6c AntiVirMailService - ok 17:27:44.0465 0x1f6c [ 3CBE5047BB08BD363420D68364F9E829, 7A6C59E9B98C1A50CB5FB895050127C5A433BA825D3832FC6DDA2A41AE986543 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 17:27:44.0465 0x1f6c AntiVirSchedulerService - ok 17:27:44.0481 0x1f6c [ 3CBE5047BB08BD363420D68364F9E829, 7A6C59E9B98C1A50CB5FB895050127C5A433BA825D3832FC6DDA2A41AE986543 ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 17:27:44.0497 0x1f6c AntiVirService - ok 17:27:44.0544 0x1f6c [ CAA9D66CA6D21AF0AE7DA01D5AC6CC2F, 827400CFB53026757B3D75B6C5AC7BBECE7E62B335160C18CBF6A41047F4A400 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe 17:27:44.0559 0x1f6c AntiVirWebService - ok 17:27:44.0596 0x1f6c [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID C:\WINDOWS\system32\drivers\appid.sys 17:27:44.0596 0x1f6c AppID - ok 17:27:44.0627 0x1f6c [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 17:27:44.0627 0x1f6c AppIDSvc - ok 17:27:44.0674 0x1f6c [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo C:\WINDOWS\System32\appinfo.dll 17:27:44.0674 0x1f6c Appinfo - ok 17:27:44.0721 0x1f6c [ 1A8EA3500576DD4B43E9318F10709E0E, 85F8581C319DE241B223366F08A5F9301858DA9DA1A0CAA10ED387A2B99EC216 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 17:27:44.0721 0x1f6c AppMgmt - ok 17:27:44.0768 0x1f6c [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 17:27:44.0799 0x1f6c AppReadiness - ok 17:27:44.0846 0x1f6c [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 17:27:44.0862 0x1f6c AppXSvc - ok 17:27:44.0909 0x1f6c [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 17:27:44.0909 0x1f6c arcsas - ok 17:27:44.0924 0x1f6c [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 17:27:44.0924 0x1f6c atapi - ok 17:27:44.0971 0x1f6c [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 17:27:44.0971 0x1f6c AudioEndpointBuilder - ok 17:27:45.0034 0x1f6c [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 17:27:45.0049 0x1f6c Audiosrv - ok 17:27:45.0112 0x1f6c [ F431DC5D94F4B2FDBC927655D8A9B10E, FA16A95E5B83D08F0FD76FDAB03FC7CD4B6917BFE15F2F1D9F3B781F6A1888D8 ] Autodesk Content Service C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe 17:27:45.0112 0x1f6c Autodesk Content Service - ok 17:27:45.0174 0x1f6c [ EA2D28BBE98256654397CD1F6EAEBDD8, 97BBE5A2C9F2AE4675E6652AD79B1FCAEA76064FB37DBF238947ACA81D3017DF ] Autodesk Licensing Service C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe 17:27:45.0190 0x1f6c Autodesk Licensing Service - ok 17:27:45.0221 0x1f6c [ CF233C89DEFF6BCA1F65BE3DA0C1A306, B718A59CFC0E3A9ED4E8C690390F54C96828C5A4C2790C2E98075DB4484240D6 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 17:27:45.0221 0x1f6c avgntflt - ok 17:27:45.0252 0x1f6c [ 4764D299855174D6B5C7DA853B490029, 6E2C8E25DC3C38EEAAA1221E515AC06C2EDC0A71CF2F7762E8DFCC55938D59B3 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 17:27:45.0268 0x1f6c avipbb - ok 17:27:45.0299 0x1f6c [ 2027E82463B6F6BB4D2A5BAF09202BA8, 7E61DEAC45F710F62C388177B43D99F3C39B89CEFCEFCC581DF12201C8CDB23C ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 17:27:45.0315 0x1f6c Avira.ServiceHost - ok 17:27:45.0331 0x1f6c [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 17:27:45.0331 0x1f6c avkmgr - ok 17:27:45.0362 0x1f6c [ E477AF94ACCCF99A0E56D71D450DCCCB, C97756A4E82EC7EF8268967B10DEBAAEDB746B2846CA2BFD68E1B7DBBAE7901A ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 17:27:45.0362 0x1f6c avnetflt - ok 17:27:45.0393 0x1f6c [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 17:27:45.0393 0x1f6c AxInstSV - ok 17:27:45.0440 0x1f6c [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 17:27:45.0440 0x1f6c b06bdrv - ok 17:27:45.0456 0x1f6c [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 17:27:45.0456 0x1f6c BasicDisplay - ok 17:27:45.0500 0x1f6c [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 17:27:45.0500 0x1f6c BasicRender - ok 17:27:45.0515 0x1f6c [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 17:27:45.0515 0x1f6c bcmfn2 - ok 17:27:45.0546 0x1f6c [ 4B6F61BD394DCEDA9B06D702836531C2, 83C739467BD9A00FE09BCE83BB9409EA2DA62FCDD2384F9EE98626226223E918 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 17:27:45.0562 0x1f6c BDESVC - ok 17:27:45.0578 0x1f6c [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys 17:27:45.0578 0x1f6c Beep - ok 17:27:45.0634 0x1f6c [ 8F2AD111B47A190F325EE7495D3C1803, C61F1506E74A9EFBB61B8A06B30886B6E891C33211F755F30B924EBA202ECEC5 ] BFE C:\WINDOWS\System32\bfe.dll 17:27:45.0634 0x1f6c BFE - ok 17:27:45.0697 0x1f6c [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS C:\WINDOWS\System32\qmgr.dll 17:27:45.0712 0x1f6c BITS - ok 17:27:45.0822 0x1f6c [ 4D87518BA68C308299441337C55F5427, AE46F847EE605213A3AE9BEFE5EB0B7B8D877340EA1A6CF9EF5683A02ECFE399 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe 17:27:45.0853 0x1f6c Bluetooth Device Monitor - ok 17:27:45.0884 0x1f6c [ 19786E2114E2FCB4EAA30808E9D4FB9A, FCBD15EA7CB0B22DA9ABFACF95DE877042201C85EBC219F5204E12F76E8DBC09 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe 17:27:45.0900 0x1f6c Bluetooth OBEX Service - ok 17:27:45.0931 0x1f6c [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 17:27:45.0931 0x1f6c bowser - ok 17:27:45.0978 0x1f6c [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 17:27:45.0994 0x1f6c BrokerInfrastructure - ok 17:27:46.0025 0x1f6c [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser C:\WINDOWS\System32\browser.dll 17:27:46.0040 0x1f6c Browser - ok 17:27:46.0072 0x1f6c [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 17:27:46.0087 0x1f6c BthAvrcpTg - ok 17:27:46.0134 0x1f6c [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys 17:27:46.0134 0x1f6c BthEnum - ok 17:27:46.0165 0x1f6c [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 17:27:46.0181 0x1f6c BthHFEnum - ok 17:27:46.0181 0x1f6c [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 17:27:46.0181 0x1f6c bthhfhid - ok 17:27:46.0244 0x1f6c [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 17:27:46.0244 0x1f6c BthHFSrv - ok 17:27:46.0306 0x1f6c [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys 17:27:46.0306 0x1f6c BthLEEnum - ok 17:27:46.0337 0x1f6c [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 17:27:46.0353 0x1f6c BTHMODEM - ok 17:27:46.0384 0x1f6c [ FEA8FC81431AD93F44D5FBFBBF096AA7, C0581DF6B2AD24836604B083F4866F93A3F4D9091D382029948A5E6221EDF788 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 17:27:46.0384 0x1f6c BthPan - ok 17:27:46.0462 0x1f6c [ 0CC00ADC1B84C93FB46E1A0974E956E1, 64C759244651B916901F4D0C82C3D6034532A20714A72FD26FC9D050B99E230B ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys 17:27:46.0478 0x1f6c BTHPORT - ok 17:27:46.0526 0x1f6c [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv C:\WINDOWS\system32\bthserv.dll 17:27:46.0528 0x1f6c bthserv - ok 17:27:46.0541 0x1f6c [ 9310C81BE4D5EA33798A99355BB53E94, 127D1CC281996FD7B4359858A7B3EDB6FF4987EF463406259DA04D6F65DA1478 ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe 17:27:46.0541 0x1f6c BTHSSecurityMgr - ok 17:27:46.0588 0x1f6c [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys 17:27:46.0603 0x1f6c BTHUSB - ok 17:27:46.0640 0x1f6c [ 4428C299BE7B9841ECFA82044B69FA6A, F8AB607D6CACBF2DDE3C392F9756B9F32CB99664A75F3140365CB916450660EC ] btmaux C:\WINDOWS\system32\DRIVERS\btmaux.sys 17:27:46.0643 0x1f6c btmaux - ok 17:27:46.0665 0x1f6c [ 7B31A8A9DC95B3634D896FD0F2814F19, 8FD5FBC61968F4BB8C2BAD0D432D5B86DCFED38CCF6F559F9EFB71AADD25474F ] btmhsf C:\WINDOWS\system32\DRIVERS\btmhsf.sys 17:27:46.0696 0x1f6c btmhsf - ok 17:27:46.0712 0x1f6c [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 17:27:46.0712 0x1f6c cdfs - ok 17:27:46.0728 0x1f6c [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 17:27:46.0743 0x1f6c cdrom - ok 17:27:46.0759 0x1f6c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 17:27:46.0759 0x1f6c CertPropSvc - ok 17:27:46.0790 0x1f6c [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys 17:27:46.0790 0x1f6c circlass - ok 17:27:46.0853 0x1f6c [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 17:27:46.0853 0x1f6c CLFS - ok 17:27:46.0900 0x1f6c [ 075CCE75090786F124573A788C8656E6, AA188CFF2F8EE2D9F50701AB2315D24E15D7715FD84F5054D3FC175D4BD35734 ] CLVirtualDrive C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys 17:27:46.0900 0x1f6c CLVirtualDrive - ok 17:27:46.0931 0x1f6c [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 17:27:46.0946 0x1f6c CmBatt - ok 17:27:46.0978 0x1f6c [ 0DE32A0BB1FE2A773666572F79584520, C417C12476B937265BEDC9A2C3C3F6C50FD19AEC096362337B0921627A2A92EA ] CNG C:\WINDOWS\system32\Drivers\cng.sys 17:27:46.0993 0x1f6c CNG - ok 17:27:47.0009 0x1f6c [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys 17:27:47.0009 0x1f6c CompositeBus - ok 17:27:47.0009 0x1f6c COMSysApp - ok 17:27:47.0025 0x1f6c [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys 17:27:47.0025 0x1f6c condrv - ok 17:27:47.0040 0x1dac Object required for P2P: [ 81E02299B534F61E104C1235519C37B3 ] AntiVirMailService 17:27:47.0118 0x1f6c [ 034643AFE2973A175E782AE530A0683C, C488572B971144D8A10F6EC8480175868913942896144D38BF49E3D8D1BC54F3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 17:27:47.0118 0x1f6c cphs - ok 17:27:47.0150 0x1f6c [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 17:27:47.0150 0x1f6c CryptSvc - ok 17:27:47.0196 0x1f6c [ 9DBC32A45CFA67074432D2AF6C2832B6, B3B26302961A95EDFD4F994D56B1E5A8452266E0C2161D15C1213BBE376227A2 ] CSC C:\WINDOWS\system32\drivers\csc.sys 17:27:47.0196 0x1f6c CSC - ok 17:27:47.0228 0x1f6c [ 86079FF8A3B625ABAEB68841D2BF6FE6, 49FF4D458DF8FAB4ECA8CAD9BBF88C929C8B9AB7F063938A6A332B31F2C0F8EB ] CscService C:\WINDOWS\System32\cscsvc.dll 17:27:47.0243 0x1f6c CscService - ok 17:27:47.0275 0x1f6c [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys 17:27:47.0275 0x1f6c dam - ok 17:27:47.0353 0x1f6c [ 5A639B2B630B572FFE9B72448A8A514D, C61C72BC85AD4E2A2AD12E1404601B5FFC26AABB0D9D9CDF48D926443FF91F50 ] DBService C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe 17:27:47.0353 0x1f6c DBService - ok 17:27:47.0431 0x1f6c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 17:27:47.0447 0x1f6c DcomLaunch - ok 17:27:47.0493 0x1f6c [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc C:\WINDOWS\System32\defragsvc.dll 17:27:47.0493 0x1f6c defragsvc - ok 17:27:47.0540 0x1f6c [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 17:27:47.0556 0x1f6c DeviceAssociationService - ok 17:27:47.0593 0x1f6c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 17:27:47.0593 0x1f6c DeviceInstall - ok 17:27:47.0609 0x1f6c [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 17:27:47.0609 0x1f6c Dfsc - ok 17:27:47.0640 0x1f6c [ 5492F6FB1F32E10AEF02679872AFD194, 470A0C39734E261DC7443C8E59ECE89A7E367ABCFC15AA325EB995452C3973AA ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys 17:27:47.0640 0x1f6c dg_ssudbus - ok 17:27:47.0697 0x1f6c [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 17:27:47.0713 0x1f6c Dhcp - ok 17:27:47.0775 0x1f6c [ 21EDAD8188372C912B7BB9B1C6CB0D38, 4A102745DE8A2A82D2C069B30503BF9FF2312A035A82854F84EF9C27E3533CEE ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 17:27:47.0791 0x1f6c DiagTrack - ok 17:27:47.0838 0x1f6c [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys 17:27:47.0838 0x1f6c disk - ok 17:27:47.0885 0x1f6c [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 17:27:47.0885 0x1f6c dmvsc - ok 17:27:47.0932 0x1f6c [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 17:27:47.0932 0x1f6c Dnscache - ok 17:27:47.0963 0x1f6c [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 17:27:47.0979 0x1f6c dot3svc - ok 17:27:48.0010 0x1f6c [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS C:\WINDOWS\system32\dps.dll 17:27:48.0010 0x1f6c DPS - ok 17:27:48.0041 0x1f6c [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 17:27:48.0041 0x1f6c drmkaud - ok 17:27:48.0072 0x1f6c [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 17:27:48.0088 0x1f6c DsmSvc - ok 17:27:48.0135 0x1f6c [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 17:27:48.0166 0x1f6c DXGKrnl - ok 17:27:48.0182 0x1f6c [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost C:\WINDOWS\System32\eapsvc.dll 17:27:48.0182 0x1f6c Eaphost - ok 17:27:48.0307 0x1f6c [ E8A3102296B412EBE14801733474816B, 5B88E0A8DE37D09E6A8E86347E7F69BACF9C87B2C053A92518DE60852728BDEC ] Easy Launcher C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe 17:27:48.0322 0x0db4 Object required for P2P: [ 4764D299855174D6B5C7DA853B490029 ] avipbb 17:27:48.0338 0x1f6c Easy Launcher - ok 17:27:48.0447 0x1f6c [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 17:27:48.0494 0x1f6c ebdrv - ok 17:27:48.0526 0x1f6c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS C:\WINDOWS\System32\lsass.exe 17:27:48.0526 0x1f6c EFS - ok 17:27:48.0630 0x1f6c [ 44C5F3F4B70D1C8D21C90E724E249796, 49B31B9E7E45A2E42BDA803D9CDC3837E0CB73A1E1E6DA00CF4282573D60526F ] ehRecvr C:\WINDOWS\ehome\ehRecvr.exe 17:27:48.0646 0x1f6c ehRecvr - ok 17:27:48.0662 0x1f6c [ 8EFB35A528A48D682C5322A5A07D4352, 5886991ECA449C48A89A3BB2950468EA7CCBD0998774C4C77A1194866827D267 ] ehSched C:\WINDOWS\ehome\ehsched.exe 17:27:48.0662 0x1f6c ehSched - ok 17:27:48.0693 0x1f6c [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 17:27:48.0693 0x1f6c EhStorClass - ok 17:27:48.0709 0x1f6c [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 17:27:48.0709 0x1f6c EhStorTcgDrv - ok 17:27:48.0724 0x1f6c [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 17:27:48.0724 0x1f6c ErrDev - ok 17:27:48.0773 0x1f6c [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem C:\WINDOWS\system32\es.dll 17:27:48.0789 0x1f6c EventSystem - ok 17:27:48.0867 0x1f6c [ 21FFB87A70019E9B39C5A8469695ACBA, B41BEDB737CFD33707181DA0B69FC47C01C897AF8B42211A46B54A9FDB2B9004 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe 17:27:48.0867 0x1f6c EvtEng - ok 17:27:48.0914 0x1f6c [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 17:27:48.0914 0x1f6c exfat - ok 17:27:48.0929 0x1f6c [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 17:27:48.0929 0x1f6c fastfat - ok 17:27:49.0054 0x1f6c [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax C:\WINDOWS\system32\fxssvc.exe 17:27:49.0054 0x1f6c Fax - ok 17:27:49.0070 0x1f6c [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 17:27:49.0070 0x1f6c fdc - ok 17:27:49.0101 0x1f6c [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 17:27:49.0101 0x1f6c fdPHost - ok 17:27:49.0132 0x1f6c [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 17:27:49.0132 0x1f6c FDResPub - ok 17:27:49.0164 0x1f6c [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc C:\WINDOWS\system32\fhsvc.dll 17:27:49.0164 0x1f6c fhsvc - ok 17:27:49.0210 0x1f6c [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 17:27:49.0210 0x1f6c FileInfo - ok 17:27:49.0257 0x1f6c [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 17:27:49.0257 0x1f6c Filetrace - ok 17:27:49.0367 0x1f6c [ 64AB6F28047744B9B19C97459C2AB31B, B1F3FEE6DF1E72003DEAC8712C3E29D82DF67A095C4AC16A379BCD995C2F3833 ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe 17:27:49.0382 0x1f6c FLEXnet Licensing Service 64 - ok 17:27:49.0398 0x1f6c [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 17:27:49.0398 0x1f6c flpydisk - ok 17:27:49.0429 0x1f6c [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 17:27:49.0445 0x1f6c FltMgr - ok 17:27:49.0507 0x1f6c [ 2F225BC85B84C04EA01BAB8D8DACFA83, 1F6E20C8F0FFD3FA60BDF556FB8392FE014E6519C3F314D1D22D394DB2A040CA ] FontCache C:\WINDOWS\system32\FntCache.dll 17:27:49.0539 0x1dac Object send P2P result: true 17:27:49.0539 0x1dac Object required for P2P: [ 3CBE5047BB08BD363420D68364F9E829 ] AntiVirSchedulerService 17:27:49.0539 0x1f6c FontCache - ok 17:27:49.0668 0x1f6c [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 17:27:49.0668 0x1f6c FontCache3.0.0.0 - ok 17:27:49.0699 0x1f6c [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 17:27:49.0715 0x1f6c FsDepends - ok 17:27:49.0748 0x1f6c [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 17:27:49.0750 0x1f6c Fs_Rec - ok 17:27:49.0772 0x1f6c [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 17:27:49.0788 0x1f6c fvevol - ok 17:27:49.0803 0x1f6c [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys 17:27:49.0803 0x1f6c FxPPM - ok 17:27:49.0835 0x1f6c [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 17:27:49.0835 0x1f6c gagp30kx - ok 17:27:49.0866 0x1f6c [ E99CF7AD8704278B7C8A8FB84BE4B3B6, F269C385513903385FDADC0E57325234062CF790484ADEFF206B20DEAFC69952 ] Garmin Core Update Service C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe 17:27:49.0882 0x1f6c Garmin Core Update Service - ok 17:27:49.0913 0x1f6c [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 17:27:49.0913 0x1f6c gencounter - ok 17:27:49.0944 0x1f6c [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 17:27:49.0944 0x1f6c GPIOClx0101 - ok 17:27:50.0007 0x1f6c [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 17:27:50.0022 0x1f6c gpsvc - ok 17:27:50.0069 0x1f6c [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 17:27:50.0069 0x1f6c HDAudBus - ok 17:27:50.0100 0x1f6c [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 17:27:50.0100 0x1f6c HidBatt - ok 17:27:50.0147 0x1f6c [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 17:27:50.0147 0x1f6c HidBth - ok 17:27:50.0163 0x1f6c [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 17:27:50.0178 0x1f6c hidi2c - ok 17:27:50.0210 0x1f6c [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 17:27:50.0210 0x1f6c HidIr - ok 17:27:50.0241 0x1f6c [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv C:\WINDOWS\system32\hidserv.dll 17:27:50.0257 0x1f6c hidserv - ok 17:27:50.0272 0x1f6c [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 17:27:50.0272 0x1f6c HidUsb - ok 17:27:50.0319 0x1f6c [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc C:\WINDOWS\system32\kmsvc.dll 17:27:50.0319 0x1f6c hkmsvc - ok 17:27:50.0350 0x1f6c [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 17:27:50.0366 0x1f6c HomeGroupListener - ok 17:27:50.0413 0x1f6c [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 17:27:50.0413 0x1f6c HomeGroupProvider - ok 17:27:50.0444 0x1f6c [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 17:27:50.0444 0x1f6c HpSAMD - ok 17:27:50.0507 0x1f6c [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 17:27:50.0538 0x1f6c HTTP - ok 17:27:50.0569 0x1f6c [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 17:27:50.0569 0x1f6c hwpolicy - ok 17:27:50.0632 0x1f6c [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 17:27:50.0632 0x1f6c hyperkbd - ok 17:27:50.0647 0x1f6c [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys 17:27:50.0647 0x1f6c HyperVideo - ok 17:27:50.0690 0x1f6c [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 17:27:50.0690 0x1f6c i8042prt - ok 17:27:50.0706 0x1f6c [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 17:27:50.0706 0x1f6c iaLPSSi_GPIO - ok 17:27:50.0737 0x1f6c [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 17:27:50.0737 0x1f6c iaLPSSi_I2C - ok 17:27:50.0768 0x0db4 Object send P2P result: true 17:27:50.0768 0x0db4 Object required for P2P: [ 2027E82463B6F6BB4D2A5BAF09202BA8 ] Avira.ServiceHost 17:27:50.0809 0x1f6c [ 57CD95DEB3529181BCC931DD2DFB2341, 03ACF906E4C3CF954F503900F42C7A60FCD5624772B90A956F032484146E42B7 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 17:27:50.0825 0x1f6c iaStorA - ok 17:27:50.0856 0x1f6c [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 17:27:50.0872 0x1f6c iaStorAV - ok 17:27:50.0919 0x1f6c [ 20E83F4632E15A5E9E716FF2E8AC7FAE, 7CA1A4924F432AD30ED7FA6247C6513DA173EE31132AE115E85C0ED7E5971029 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 17:27:50.0919 0x1f6c IAStorDataMgrSvc - ok 17:27:50.0950 0x1f6c [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 17:27:50.0966 0x1f6c iaStorV - ok 17:27:50.0997 0x1f6c [ 23E22B130EFE5A225E279467BE146317, 2302C119FE9C57F3A71DFE504489423B6F7140E2DFF5D501883AD971CB671CB4 ] iBtFltCoex C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys 17:27:50.0997 0x1f6c iBtFltCoex - ok 17:27:50.0997 0x1f6c IEEtwCollectorService - ok 17:27:51.0138 0x1f6c [ 7A5A61997B5404C8EDDFCC62378164DC, C2BCA8A2AA2DFCCF3489FC7F0F366ABBDC8606CFC6397CD7B17C8CD4A28DD17F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 17:27:51.0200 0x1f6c igfx - ok 17:27:51.0231 0x1f6c [ C5B04409186A27409BD069580208A6D3, CAD4B07EB498BBDF730A8362BFDF02CF3A40B28001097CB8DBB5BE20D79581BA ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 17:27:51.0231 0x1f6c IJPLMSVC - ok 17:27:51.0278 0x1f6c [ AF8A43C376F83A4A1E7DA16461EDE114, EBA10519B074888355A4FC11D52FF1E6A52F88F754B7F1F9863A8313638645CB ] IKEEXT C:\WINDOWS\System32\ikeext.dll 17:27:51.0294 0x1f6c IKEEXT - ok 17:27:51.0325 0x1f6c [ 4011430BC9DA46ADFAE9915EFEC312FB, 925DDDA187AE7C46C94FBBFA18FC602260957B6BA891D65DFC09385B6DDEAB58 ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 17:27:51.0325 0x1f6c intaud_WaveExtensible - ok 17:27:51.0466 0x1f6c [ E3FEE528E5E232BB173E07E5AA29406A, AC0E6862CEC92933C64EA716D81598247A8BCDB346FCE3780C6083D80F07FA3F ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 17:27:51.0528 0x1f6c IntcAzAudAddService - ok 17:27:51.0575 0x1f6c [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 17:27:51.0575 0x1f6c IntcDAud - ok 17:27:51.0622 0x1f6c [ DAE6C3099D291EED8922A65C29ABCF52, AD0A932345382824122F84AF97A8609BAE1B916A3B9FD608779A1411E37D3643 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 17:27:51.0638 0x1f6c Intel(R) Capability Licensing Service Interface - ok 17:27:51.0684 0x1f6c [ D45226E3E7A25F1E7CE8DF8FD0A2A098, 7BD74E9E3CB0A83D26BA3FD8177C6B9BA46A8695B6569CF7887FDC87947DA2D6 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 17:27:51.0716 0x1f6c Intel(R) Capability Licensing Service TCP IP Interface - ok 17:27:51.0774 0x1f6c [ 441D5FAF24CC2EC115B654A55C52F0AF, 5BF5299DAD9A7076C43D68C70E02AEC8DBFD89C1AFDF7CD6AB95550EE25EEB36 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe 17:27:51.0789 0x1f6c Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok 17:27:51.0831 0x1f6c [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys 17:27:51.0831 0x1f6c intelide - ok 17:27:51.0862 0x1f6c [ A4DE7F75F20762A1C360E48B36F3B498, D194B7E16837E5AE7F0E3FC3B0F9A5CB2E1F7D4C2D5BDC6AC6D3DF09CE5334C1 ] IntelliMemory C:\Program Files\Condusiv Technologies\IntelliMemory\IntelliMem.exe 17:27:51.0862 0x1f6c IntelliMemory - ok 17:27:51.0894 0x1f6c [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 17:27:51.0894 0x1f6c intelpep - ok 17:27:51.0925 0x1f6c [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 17:27:51.0925 0x1f6c intelppm - ok 17:27:51.0925 0x1f6c [ 188D1B5837948CE932353C1FB26BF301, 5E08144063D3AE3AD2D5285DA524BC862971303533BFA18ED6BC49476C029A28 ] intmfs C:\WINDOWS\system32\DRIVERS\intmfs.sys 17:27:51.0925 0x1f6c intmfs - ok 17:27:51.0941 0x1f6c [ EB0169B38D94A4BC575724ABBA58DF36, F8FA133813595B48E220499C3841BD11E2127B3BEE52A0988EFD5502877AE0A2 ] intmsd C:\WINDOWS\system32\DRIVERS\intmsd.sys 17:27:51.0941 0x1f6c intmsd - ok 17:27:51.0972 0x1f6c [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 17:27:51.0972 0x1f6c IpFilterDriver - ok 17:27:52.0003 0x1dac Object send P2P result: true 17:27:52.0003 0x1dac Object required for P2P: [ 3CBE5047BB08BD363420D68364F9E829 ] AntiVirService 17:27:52.0019 0x1f6c [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 17:27:52.0034 0x1f6c iphlpsvc - ok 17:27:52.0081 0x1f6c [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 17:27:52.0081 0x1f6c IPMIDRV - ok 17:27:52.0144 0x1f6c [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 17:27:52.0159 0x1f6c IPNAT - ok 17:27:52.0175 0x1f6c [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 17:27:52.0175 0x1f6c IRENUM - ok 17:27:52.0237 0x1f6c [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 17:27:52.0237 0x1f6c isapnp - ok 17:27:52.0284 0x1f6c [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 17:27:52.0284 0x1f6c iScsiPrt - ok 17:27:52.0378 0x1f6c [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe 17:27:52.0394 0x1f6c iumsvc - ok 17:27:52.0425 0x1f6c [ EE03564B7FAFE2E44EDA33D52E83B4A3, 53C917EEC92B813EB0C86B225E9887C9CDFDD7708AEA71BFAC0A3039E26D7BEB ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 17:27:52.0425 0x1f6c iwdbus - ok 17:27:52.0472 0x1f6c [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 17:27:52.0472 0x1f6c jhi_service - ok 17:27:52.0487 0x1f6c [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 17:27:52.0487 0x1f6c kbdclass - ok 17:27:52.0519 0x1f6c [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 17:27:52.0534 0x1f6c kbdhid - ok 17:27:52.0550 0x1f6c [ DB7A09BC90DF20F44F16F8B0F9ED3491, 2DF5E042284D61368A5801B2557351B2C4B1044AA6F966DF4DDCE7B453D1B9AE ] kbldfltr C:\WINDOWS\system32\drivers\kbldfltr.sys 17:27:52.0550 0x1f6c kbldfltr - ok 17:27:52.0581 0x1f6c [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys 17:27:52.0581 0x1f6c kdnic - ok 17:27:52.0597 0x1f6c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso C:\WINDOWS\system32\lsass.exe 17:27:52.0597 0x1f6c KeyIso - ok 17:27:52.0644 0x1f6c [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 17:27:52.0644 0x1f6c KSecDD - ok 17:27:52.0691 0x1f6c [ 35C19AF2116F67914712D7C4CBE47B8C, 5F976726880A6E51D7ABFA7E3EF7294C6FB7F383DC5710A2C2EC8DD26DAEC204 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 17:27:52.0691 0x1f6c KSecPkg - ok 17:27:52.0706 0x1f6c [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 17:27:52.0706 0x1f6c ksthunk - ok 17:27:52.0737 0x1f6c [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 17:27:52.0737 0x1f6c KtmRm - ok 17:27:52.0796 0x1f6c [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 17:27:52.0796 0x1f6c LanmanServer - ok 17:27:52.0843 0x1f6c [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 17:27:52.0861 0x1f6c LanmanWorkstation - ok 17:27:52.0917 0x1f6c [ 4B778E7F0389963BAE8A0AE0370496CC, 4E27D6E62B09B9D4A125545BC44A5124EBA49C6E5CA7A5E9392CE1220A57D59C ] launcherservice C:\Program Files (x86)\WEKA\WEKA Launcher\launcherservice.exe 17:27:52.0917 0x1f6c launcherservice - ok 17:27:52.0963 0x1f6c [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll 17:27:52.0963 0x1f6c lfsvc - ok 17:27:52.0995 0x1f6c [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys 17:27:52.0995 0x1f6c lltdio - ok 17:27:53.0026 0x1f6c [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 17:27:53.0026 0x1f6c lltdsvc - ok 17:27:53.0073 0x1f6c [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 17:27:53.0073 0x1f6c lmhosts - ok 17:27:53.0120 0x1f6c [ 3DE66F47365AA8CEB18B1EE272F4FEBA, 8DDD6AB4AEDE3B2FEA0D3B63DD24E3F3422D6ADE067756A3919FCED53C349167 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 17:27:53.0135 0x1f6c LMS - ok 17:27:53.0167 0x1f6c [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 17:27:53.0167 0x1f6c LSI_SAS - ok 17:27:53.0182 0x1f6c [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys 17:27:53.0198 0x1f6c LSI_SAS2 - ok 17:27:53.0213 0x0db4 Object send P2P result: true 17:27:53.0213 0x0db4 Object required for P2P: [ E477AF94ACCCF99A0E56D71D450DCCCB ] avnetflt 17:27:53.0213 0x1f6c [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys 17:27:53.0213 0x1f6c LSI_SAS3 - ok 17:27:53.0229 0x1f6c [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 17:27:53.0229 0x1f6c LSI_SSS - ok 17:27:53.0292 0x1f6c [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM C:\WINDOWS\System32\lsm.dll 17:27:53.0307 0x1f6c LSM - ok 17:27:53.0338 0x1f6c [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 17:27:53.0338 0x1f6c luafv - ok 17:27:53.0370 0x1f6c [ 9D2252224DF2213E1B44FA608E6A1D14, E2C644C5FDCCA7BD2547ADC110FDDB26EA91C734AB53CD4196266C746BFDFAA4 ] Mcx2Svc C:\WINDOWS\system32\Mcx2Svc.dll 17:27:53.0370 0x1f6c Mcx2Svc - ok 17:27:53.0417 0x1f6c [ 7CF1B716372B89568AE4C0FE769F5869, 0D70A7A594BCFBB26D7249C0F4B0AF9EF874F2318B3FDCE44648CC61279594ED ] MDM C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe 17:27:53.0432 0x1f6c MDM - ok 17:27:53.0463 0x1f6c [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys 17:27:53.0479 0x1f6c megasas - ok 17:27:53.0495 0x1f6c [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys 17:27:53.0510 0x1f6c megasr - ok 17:27:53.0526 0x1f6c [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys 17:27:53.0526 0x1f6c MEIx64 - ok 17:27:53.0557 0x1f6c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS C:\WINDOWS\system32\mmcss.dll 17:27:53.0557 0x1f6c MMCSS - ok 17:27:53.0588 0x1f6c [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys 17:27:53.0588 0x1f6c Modem - ok 17:27:53.0604 0x1f6c [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys 17:27:53.0604 0x1f6c monitor - ok 17:27:53.0620 0x1f6c [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 17:27:53.0620 0x1f6c mouclass - ok 17:27:53.0635 0x1f6c [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 17:27:53.0651 0x1f6c mouhid - ok 17:27:53.0682 0x1f6c [ 9A788037D768809DFD677F4BA08A224A, E0686B3318F924E440ADA439D6671D44D3FF97C13D45C2E0A3A7B9E23DA38350 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 17:27:53.0682 0x1f6c mountmgr - ok 17:27:53.0729 0x1f6c [ A48479D7010ED54BB6AE3D5937A36C53, AE23673ABAB297DEFFC58A756C0667CA8F335BECCD31BF8E81BF1AEAAB9E86E8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 17:27:53.0745 0x1f6c MozillaMaintenance - ok 17:27:53.0776 0x1f6c [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 17:27:53.0776 0x1f6c mpsdrv - ok 17:27:53.0862 0x1f6c [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 17:27:53.0878 0x1f6c MpsSvc - ok 17:27:53.0903 0x1f6c [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 17:27:53.0903 0x1f6c MRxDAV - ok 17:27:53.0950 0x1f6c [ 89DE71940A0E7F5BA617AE08321EF5C3, BD056C9E18E902D6F118E59A6AC68415BFA0690A02D2B360F6C111CE3B5EAC67 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 17:27:53.0966 0x1f6c mrxsmb - ok 17:27:53.0997 0x1f6c [ BCBD64220AD85C26823453FF1DC3EFBD, 0245E3659E9135B9276F3CCFBEA0CEFFC4F4C0826F6D19B6329057620235F087 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 17:27:54.0013 0x1f6c mrxsmb10 - ok 17:27:54.0029 0x1f6c [ EE16457030175F449BAB0ABD279F4B6A, DF627054136079553A24AD12DC7374F1ACEEAD782EFFDC278996AD7BCCE98877 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 17:27:54.0029 0x1f6c mrxsmb20 - ok 17:27:54.0060 0x1f6c [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys 17:27:54.0060 0x1f6c MsBridge - ok 17:27:54.0107 0x1f6c [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC C:\WINDOWS\System32\msdtc.exe 17:27:54.0107 0x1f6c MSDTC - ok 17:27:54.0154 0x1f6c [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 17:27:54.0154 0x1f6c Msfs - ok 17:27:54.0185 0x1f6c [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 17:27:54.0200 0x1f6c msgpiowin32 - ok 17:27:54.0216 0x1f6c [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 17:27:54.0216 0x1f6c mshidkmdf - ok 17:27:54.0232 0x1f6c [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 17:27:54.0232 0x1f6c mshidumdf - ok 17:27:54.0247 0x1f6c [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 17:27:54.0247 0x1f6c msisadrv - ok 17:27:54.0279 0x1f6c [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 17:27:54.0279 0x1f6c MSiSCSI - ok 17:27:54.0294 0x1f6c msiserver - ok 17:27:54.0325 0x1f6c [ 4C1A0E9B4C6CC09E8C68FD33998013AA, 190ADFCCAE844DB9F807BD9668EB90BE0C9887719DF2820E66D121655AF27614 ] MsKeyboardFilter C:\WINDOWS\System32\KeyboardFilterSvc.dll 17:27:54.0325 0x1f6c MsKeyboardFilter - ok 17:27:54.0357 0x1f6c [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 17:27:54.0357 0x1f6c MSKSSRV - ok 17:27:54.0388 0x1f6c [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys 17:27:54.0388 0x1f6c MsLldp - ok 17:27:54.0419 0x1f6c [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 17:27:54.0419 0x1f6c MSPCLOCK - ok 17:27:54.0435 0x1dac Object send P2P result: true 17:27:54.0450 0x1dac Object required for P2P: [ CAA9D66CA6D21AF0AE7DA01D5AC6CC2F ] AntiVirWebService 17:27:54.0450 0x1f6c [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 17:27:54.0450 0x1f6c MSPQM - ok 17:27:54.0482 0x1f6c [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 17:27:54.0497 0x1f6c MsRPC - ok 17:27:54.0529 0x1f6c [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 17:27:54.0529 0x1f6c mssmbios - ok 17:27:54.0591 0x1f6c [ 3AE13C9869B7CE1135BCF21C0AAA68ED, 3E917376199B13523DFB4FCC445583D9DF0606AD0A6A02B111D8A3EE6B71E117 ] MSSQL$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\sqlservr.exe 17:27:54.0607 0x1f6c MSSQL$SQLEXPRESS - ok 17:27:54.0622 0x1f6c [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 17:27:54.0622 0x1f6c MSTEE - ok 17:27:54.0638 0x1f6c [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 17:27:54.0638 0x1f6c MTConfig - ok 17:27:54.0669 0x1f6c [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys 17:27:54.0685 0x1f6c Mup - ok 17:27:54.0716 0x1f6c [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 17:27:54.0716 0x1f6c mvumis - ok 17:27:54.0763 0x1f6c [ 53EE034F83E9A7A8E421572E385F67CD, 29F718B95B9D6CBDA49D5DE14FEC46DA64D7977131D585C975B3D703559D0988 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe 17:27:54.0779 0x1f6c MyWiFiDHCPDNS - ok 17:27:54.0831 0x1f6c [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent C:\WINDOWS\system32\qagentRT.dll 17:27:54.0839 0x1f6c napagent - ok 17:27:54.0902 0x1f6c [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 17:27:54.0918 0x1f6c NativeWifiP - ok 17:27:54.0959 0x1f6c [ E0E4A1F81A7D69C595A8A9DDAD084C19, 8F55F3637AE8BFFB0ACE37AFC5122026525137E0B2923899B779C1BD08DF0E22 ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe 17:27:54.0975 0x1f6c NAUpdate - ok 17:27:55.0006 0x1f6c [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 17:27:55.0022 0x1f6c NcaSvc - ok 17:27:55.0053 0x1f6c [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService C:\WINDOWS\System32\ncbservice.dll 17:27:55.0053 0x1f6c NcbService - ok 17:27:55.0069 0x1f6c [ 0813B71EAF097208DC76CE0605B48AF0, A93A2E6A8FB77B58AC4D580E6F8BF307A25BADC9493994F9BE235EBFB0E1DB22 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 17:27:55.0084 0x1f6c NcdAutoSetup - ok 17:27:55.0147 0x1f6c [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 17:27:55.0178 0x1f6c NDIS - ok 17:27:55.0209 0x1f6c [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys 17:27:55.0209 0x1f6c NdisCap - ok 17:27:55.0241 0x1f6c [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys 17:27:55.0241 0x1f6c NdisImPlatform - ok 17:27:55.0256 0x1f6c [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 17:27:55.0256 0x1f6c NdisTapi - ok 17:27:55.0288 0x1f6c [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 17:27:55.0303 0x1f6c Ndisuio - ok 17:27:55.0319 0x1f6c [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 17:27:55.0319 0x1f6c NdisVirtualBus - ok 17:27:55.0334 0x1f6c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 17:27:55.0350 0x1f6c NdisWan - ok 17:27:55.0366 0x1f6c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 17:27:55.0366 0x1f6c NdisWanLegacy - ok 17:27:55.0397 0x1f6c [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 17:27:55.0397 0x1f6c NDProxy - ok 17:27:55.0444 0x1f6c [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 17:27:55.0444 0x1f6c Ndu - ok 17:27:55.0491 0x1f6c [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 17:27:55.0491 0x1f6c NetBIOS - ok 17:27:55.0538 0x1f6c [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 17:27:55.0553 0x1f6c NetBT - ok 17:27:55.0553 0x1f6c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon C:\WINDOWS\system32\lsass.exe 17:27:55.0569 0x1f6c Netlogon - ok 17:27:55.0600 0x1f6c [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman C:\WINDOWS\System32\netman.dll 17:27:55.0616 0x1f6c Netman - ok 17:27:55.0647 0x0db4 Object send P2P result: true 17:27:55.0663 0x1f6c [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 17:27:55.0663 0x1f6c netprofm - ok 17:27:55.0725 0x1f6c [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 17:27:55.0725 0x1f6c NetTcpPortSharing - ok 17:27:55.0772 0x1f6c [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc C:\WINDOWS\System32\drivers\netvsc63.sys 17:27:55.0772 0x1f6c netvsc - ok 17:27:55.0910 0x1f6c [ 75B9B86878CC159FBC40C4F9202ADBE3, 80D9176112BAFB42E6568E723781E5C03BD5472AB382496C1BD784DB9B2FB6E6 ] NETwNe64 C:\WINDOWS\system32\DRIVERS\Netwew00.sys 17:27:55.0957 0x1f6c NETwNe64 - ok 17:27:55.0988 0x1f6c [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 17:27:56.0003 0x1f6c NlaSvc - ok 17:27:56.0092 0x1f6c [ EBA1B4BF2E2375ABDADEDB649F283541, 8B27AE794678C55791F95F34E67E12BAD5BE753F812C49D6511BB657CF453B52 ] NMIndexingService C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe 17:27:56.0107 0x1f6c NMIndexingService - ok 17:27:56.0139 0x1f6c [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 17:27:56.0139 0x1f6c Npfs - ok 17:27:56.0170 0x1f6c [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 17:27:56.0170 0x1f6c npsvctrig - ok 17:27:56.0201 0x1f6c [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi C:\WINDOWS\system32\nsisvc.dll 17:27:56.0201 0x1f6c nsi - ok 17:27:56.0217 0x1f6c [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 17:27:56.0217 0x1f6c nsiproxy - ok 17:27:56.0295 0x1f6c [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 17:27:56.0342 0x1f6c Ntfs - ok 17:27:56.0373 0x1f6c [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys 17:27:56.0373 0x1f6c Null - ok 17:27:56.0654 0x1f6c [ C769B999721DEF6E59FF579AEDFB2693, 05FC56F88515787533BC8E14A8556BDC3FE0B50AC9EB51C8C0A2187FA1761C89 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys 17:27:56.0810 0x1f6c nvlddmkm - ok 17:27:56.0873 0x1f6c [ 1C7CF80FE7E4B18BC46EA5C7ADC7339C, 671D634E8AF33DAF8E926CDE0C54A10142A989D8358E2827A7EB78026D25763B ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys 17:27:56.0873 0x1f6c nvpciflt - ok 17:27:56.0908 0x1dac Object send P2P result: true 17:27:56.0914 0x1f6c [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 17:27:56.0930 0x1f6c nvraid - ok 17:27:56.0946 0x1f6c [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 17:27:56.0946 0x1f6c nvstor - ok 17:27:56.0977 0x1f6c [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 17:27:56.0977 0x1f6c nv_agp - ok 17:27:57.0049 0x1f6c [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 17:27:57.0065 0x1f6c odserv - ok 17:27:57.0174 0x1f6c [ 880CD3C9ACE342F29AB2F90C751B91A4, 7882ED604EE443E182B323D9A38E35B49FD8C28EDC1196B65EDFABB22CBF6161 ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe 17:27:57.0190 0x1f6c Origin Client Service - ok 17:27:57.0221 0x1f6c [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 17:27:57.0221 0x1f6c ose - ok 17:27:57.0268 0x1f6c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 17:27:57.0268 0x1f6c p2pimsvc - ok 17:27:57.0315 0x1f6c [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc C:\WINDOWS\system32\p2psvc.dll 17:27:57.0331 0x1f6c p2psvc - ok 17:27:57.0346 0x1f6c [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys 17:27:57.0346 0x1f6c Parport - ok 17:27:57.0378 0x1f6c [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 17:27:57.0378 0x1f6c partmgr - ok 17:27:57.0424 0x1f6c [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 17:27:57.0440 0x1f6c PcaSvc - ok 17:27:57.0471 0x1f6c [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\WINDOWS\system32\drivers\pci.sys 17:27:57.0471 0x1f6c pci - ok 17:27:57.0487 0x1f6c [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 17:27:57.0487 0x1f6c pciide - ok 17:27:57.0503 0x1f6c [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 17:27:57.0503 0x1f6c pcmcia - ok 17:27:57.0503 0x1f6c [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 17:27:57.0518 0x1f6c pcw - ok 17:27:57.0549 0x1f6c [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc C:\WINDOWS\system32\drivers\pdc.sys 17:27:57.0549 0x1f6c pdc - ok 17:27:57.0565 0x1f6c [ 958754A37C85E18EB53FA2139787113C, A58B39CFD7B0A36EA12965A24A384B7B1E2A980CA8D2F33B72FA72B00E68EC0C ] pe3ah4nc C:\WINDOWS\system32\drivers\pe3ah4nc.sys 17:27:57.0565 0x1f6c pe3ah4nc - ok 17:27:57.0612 0x1f6c [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 17:27:57.0628 0x1f6c PEAUTH - ok 17:27:57.0721 0x1f6c [ A35EC8F902475350DA31BDF0E1402A91, 5AB43B4BD70B44A62FFD21A9D3CB8D1BC035B6E001DBB1BAC30D6D7A07475D83 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll 17:27:57.0753 0x1f6c PeerDistSvc - ok 17:27:57.0878 0x1f6c [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 17:27:57.0878 0x1f6c PerfHost - ok 17:27:57.0965 0x1f6c [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla C:\WINDOWS\system32\pla.dll 17:27:57.0981 0x1f6c pla - ok 17:27:58.0012 0x1f6c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 17:27:58.0028 0x1f6c PlugPlay - ok 17:27:58.0059 0x1f6c [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 17:27:58.0059 0x1f6c PNRPAutoReg - ok 17:27:58.0093 0x1f6c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 17:27:58.0100 0x1f6c PNRPsvc - ok 17:27:58.0132 0x1f6c [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 17:27:58.0132 0x1f6c PolicyAgent - ok 17:27:58.0179 0x1f6c [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power C:\WINDOWS\system32\umpo.dll 17:27:58.0179 0x1f6c Power - ok 17:27:58.0195 0x1f6c pr2ah4nc - ok 17:27:58.0382 0x1f6c [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 17:27:58.0413 0x1f6c PrintNotify - ok 17:27:58.0476 0x1f6c [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys 17:27:58.0476 0x1f6c Processor - ok 17:27:58.0523 0x1f6c [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc C:\WINDOWS\system32\profsvc.dll 17:27:58.0523 0x1f6c ProfSvc - ok 17:27:58.0554 0x1f6c [ 0E998144E0C05AFFBB6CC66B5999958C, 6EED570FCBDD4FD9746C5E72AB83261D826CF68A54411FD82DF917DADAF23FD7 ] ps6ah4nc C:\WINDOWS\system32\drivers\ps6ah4nc.sys 17:27:58.0554 0x1f6c ps6ah4nc - ok 17:27:58.0601 0x1f6c [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys 17:27:58.0601 0x1f6c Psched - ok 17:27:58.0632 0x1f6c [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE C:\WINDOWS\system32\qwave.dll 17:27:58.0648 0x1f6c QWAVE - ok 17:27:58.0663 0x1f6c [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 17:27:58.0663 0x1f6c QWAVEdrv - ok 17:27:58.0695 0x1f6c [ 194ED3C117525613E701FF257882303E, F9D771B573078C6335F352812E24918CB79529BAE2262117E8E0DD4C57AA64C1 ] RadioHIDMini C:\WINDOWS\System32\drivers\RadioHIDMini.sys 17:27:58.0695 0x1f6c RadioHIDMini - ok 17:27:58.0710 0x1f6c [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 17:27:58.0710 0x1f6c RasAcd - ok 17:27:58.0741 0x1f6c [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto C:\WINDOWS\System32\rasauto.dll 17:27:58.0757 0x1f6c RasAuto - ok 17:27:58.0804 0x1f6c [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan C:\WINDOWS\System32\rasmans.dll 17:27:58.0804 0x1f6c RasMan - ok 17:27:58.0851 0x1f6c [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 17:27:58.0851 0x1f6c RasPppoe - ok 17:27:58.0882 0x1f6c [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 17:27:58.0882 0x1f6c rdbss - ok 17:27:58.0913 0x1f6c [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 17:27:58.0913 0x1f6c rdpbus - ok 17:27:58.0945 0x1f6c [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 17:27:58.0945 0x1f6c RDPDR - ok 17:27:58.0976 0x1f6c [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 17:27:58.0976 0x1f6c RdpVideoMiniport - ok 17:27:59.0008 0x1f6c [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 17:27:59.0008 0x1f6c rdyboost - ok 17:27:59.0054 0x1f6c [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys 17:27:59.0070 0x1f6c ReFS - ok 17:27:59.0175 0x1f6c [ 1791B1C8C72E13D193ADE659E7DB87C1, F0C1EA05283BB89ACBE721D0CDBB30FD8F1E75D5545158D29D6EC11E41B145BA ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe 17:27:59.0175 0x1f6c RegSrvc - ok 17:27:59.0221 0x1f6c [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 17:27:59.0237 0x1f6c RemoteAccess - ok 17:27:59.0268 0x1f6c [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 17:27:59.0268 0x1f6c RemoteRegistry - ok 17:27:59.0315 0x1f6c [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 17:27:59.0315 0x1f6c RFCOMM - ok 17:27:59.0362 0x1f6c [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 17:27:59.0362 0x1f6c RpcEptMapper - ok 17:27:59.0393 0x1f6c [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator C:\WINDOWS\system32\locator.exe 17:27:59.0409 0x1f6c RpcLocator - ok 17:27:59.0503 0x1f6c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs C:\WINDOWS\system32\rpcss.dll 17:27:59.0503 0x1f6c RpcSs - ok 17:27:59.0550 0x1f6c [ 5AA85332CB1694871B2F0704E0FC9113, 18E11C4E966DEE53FA0E482C55769A35C6C746EB3347DF171A1978D22BC7990B ] RsFx0200 C:\WINDOWS\system32\DRIVERS\RsFx0200.sys 17:27:59.0550 0x1f6c RsFx0200 - ok 17:27:59.0581 0x1f6c [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys 17:27:59.0581 0x1f6c rspndr - ok 17:27:59.0612 0x1f6c [ 9F2A38C1170594CF493283CE0B987B70, 1CE15815DD54227C3C8ED4B2E4FA09EB3EB91D55379DC286AAC7A6001850CA98 ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys 17:27:59.0628 0x1f6c RTL8168 - ok 17:27:59.0643 0x1f6c [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 17:27:59.0643 0x1f6c s3cap - ok 17:27:59.0675 0x1f6c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs C:\WINDOWS\system32\lsass.exe 17:27:59.0675 0x1f6c SamSs - ok 17:27:59.0800 0x1f6c SBIOSIO - ok 17:27:59.0831 0x1f6c [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 17:27:59.0831 0x1f6c sbp2port - ok 17:27:59.0862 0x1f6c [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 17:27:59.0878 0x1f6c SCardSvr - ok 17:27:59.0909 0x1f6c [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 17:27:59.0909 0x1f6c ScDeviceEnum - ok 17:27:59.0956 0x1f6c [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 17:27:59.0956 0x1f6c scfilter - ok 17:28:00.0003 0x1f6c [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule C:\WINDOWS\system32\schedsvc.dll 17:28:00.0026 0x1f6c Schedule - ok 17:28:00.0042 0x1f6c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 17:28:00.0058 0x1f6c SCPolicySvc - ok 17:28:00.0073 0x1f6c [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 17:28:00.0089 0x1f6c sdbus - ok 17:28:00.0193 0x1f6c [ D777F1417D9BB9F66CD9D9C3B61F730F, 0CBD830EB9D2B0F1946131F20907793B2D68A3BCEEC3EA5416972149F73DC815 ] SDScannerService C:\Tools\System\Spybot - Search & Destroy 2\SDFSSvc.exe 17:28:00.0224 0x1f6c SDScannerService - ok 17:28:00.0255 0x1f6c [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 17:28:00.0255 0x1f6c sdstor - ok 17:28:00.0365 0x1f6c [ 68D6C7F99BC73B88954D844FCCBEB2A0, F746861B103C8BE8EA234B9FCFBBDD2412C79FB65F2F1E0F5E6EBC0B34905FF1 ] SDUpdateService C:\Tools\System\Spybot - Search & Destroy 2\SDUpdSvc.exe 17:28:00.0380 0x1f6c SDUpdateService - ok 17:28:00.0412 0x1f6c [ 9B9B368A8FF5CAF91D7A333CF62CD2CC, A4AE7FFBBAF983BFDE15B521ED162CBC4E6FC85BCDB200C75D45878B3FFDFA68 ] SDWSCService C:\Tools\System\Spybot - Search & Destroy 2\SDWSCSvc.exe 17:28:00.0412 0x1f6c SDWSCService - ok 17:28:00.0443 0x1f6c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys 17:28:00.0443 0x1f6c secdrv - ok 17:28:00.0474 0x1f6c [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon C:\WINDOWS\system32\seclogon.dll 17:28:00.0474 0x1f6c seclogon - ok 17:28:00.0505 0x1f6c [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS C:\WINDOWS\System32\sens.dll 17:28:00.0505 0x1f6c SENS - ok 17:28:00.0552 0x1f6c [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 17:28:00.0552 0x1f6c SensrSvc - ok 17:28:00.0584 0x1f6c [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 17:28:00.0584 0x1f6c SerCx - ok 17:28:00.0615 0x1f6c [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 17:28:00.0630 0x1f6c SerCx2 - ok 17:28:00.0646 0x1f6c [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 17:28:00.0646 0x1f6c Serenum - ok 17:28:00.0662 0x1f6c [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys 17:28:00.0662 0x1f6c Serial - ok 17:28:00.0693 0x1f6c [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 17:28:00.0693 0x1f6c sermouse - ok 17:28:00.0740 0x1f6c [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv C:\WINDOWS\system32\sessenv.dll 17:28:00.0756 0x1f6c SessionEnv - ok 17:28:00.0802 0x1f6c [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 17:28:00.0802 0x1f6c sfloppy - ok 17:28:00.0834 0x1f6c [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 17:28:00.0834 0x1f6c SharedAccess - ok 17:28:00.0881 0x1f6c [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 17:28:00.0881 0x1f6c ShellHWDetection - ok 17:28:00.0912 0x1f6c [ 8C61B219882C9C9ECA09BEDB82B0DDB1, 711681040D9CD93D603F55AB8D62371F5D51917C14818F27859E23E2D60EB18F ] silabenm C:\WINDOWS\system32\DRIVERS\silabenm.sys 17:28:00.0912 0x1f6c silabenm - ok 17:28:00.0927 0x1f6c [ 2641655FAD6C1EA0F3677978E2BF28C1, E703CE74D09E901BF531589E181DCF95B9C63E09FE1B99E38DEA9EE47EE458BA ] silabser C:\WINDOWS\system32\DRIVERS\silabser.sys 17:28:00.0943 0x1f6c silabser - ok 17:28:00.0959 0x1f6c [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 17:28:00.0959 0x1f6c SiSRaid2 - ok 17:28:00.0974 0x1f6c [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 17:28:00.0974 0x1f6c SiSRaid4 - ok 17:28:01.0006 0x1f6c [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost C:\WINDOWS\System32\smphost.dll 17:28:01.0021 0x1f6c smphost - ok 17:28:01.0037 0x1f6c [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 17:28:01.0037 0x1f6c SNMPTRAP - ok 17:28:01.0079 0x1f6c [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 17:28:01.0095 0x1f6c spaceport - ok 17:28:01.0110 0x1f6c [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 17:28:01.0110 0x1f6c SpbCx - ok 17:28:01.0183 0x1f6c [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler C:\WINDOWS\System32\spoolsv.exe 17:28:01.0183 0x1f6c Spooler - ok 17:28:01.0371 0x1f6c [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe 17:28:01.0464 0x1f6c sppsvc - ok 17:28:01.0574 0x1f6c [ B70FAF0C7C5737AA6973E14B45477730, 48D835D64D36A46BD2ED6080A0D733B92960DA3EA459005F536587BB19B16A7E ] SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL11.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE 17:28:01.0574 0x1f6c SQLAgent$SQLEXPRESS - ok 17:28:01.0668 0x1f6c [ E9254892A2D74E537BAD3092F0F8EE40, BEB715404B799F3181C699E233F98B2A913BEB677E94ABE8E2872499FC755385 ] SQLBrowser c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe 17:28:01.0668 0x1f6c SQLBrowser - ok 17:28:01.0683 0x1f6c [ EAD5300C93946B0250A309E2BF2BE4CF, 6B9131D94ED31F838B1820EE67F068C4741B69D5C655587C89C9477986BD270F ] SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe 17:28:01.0683 0x1f6c SQLWriter - ok 17:28:01.0730 0x1f6c [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 17:28:01.0746 0x1f6c srv - ok 17:28:01.0777 0x1f6c [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 17:28:01.0793 0x1f6c srv2 - ok 17:28:01.0808 0x1f6c [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 17:28:01.0808 0x1f6c srvnet - ok 17:28:01.0839 0x1f6c [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 17:28:01.0855 0x1f6c SSDPSRV - ok 17:28:01.0886 0x1f6c [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 17:28:01.0902 0x1f6c SstpSvc - ok 17:28:01.0918 0x1f6c [ 627FFBE52FEDF0460C3D7259FC0EDF50, 92CB006CA91E4AF0CAA3ECD74D9329C349650EAFF70D847E62D9D8F2BE38B3B1 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys 17:28:01.0918 0x1f6c ssudmdm - ok 17:28:02.0043 0x1f6c [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe 17:28:02.0058 0x1f6c ss_conn_service - ok 17:28:02.0095 0x1f6c [ 30D7CE5C0B812BAF4F2FB5F47820C76A, 5C9D67637485F67A720D8582D54D880D8364108C593A020682D4695397284989 ] stdriver C:\WINDOWS\system32\DRIVERS\stdriverx64.sys 17:28:02.0096 0x1f6c stdriver - ok 17:28:02.0146 0x1f6c [ 2A6EDC2FBB4B9C11BB21BE3881C7A692, 74482CA4EC2B98C069A32C224BA5449AE10A8B41BFC053A4C23B6F65113A97A4 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 17:28:02.0161 0x1f6c Steam Client Service - ok 17:28:02.0203 0x1f6c [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 17:28:02.0203 0x1f6c stexstor - ok 17:28:02.0250 0x1f6c [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc C:\WINDOWS\System32\wiaservc.dll 17:28:02.0250 0x1f6c stisvc - ok 17:28:02.0266 0x1f6c [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 17:28:02.0266 0x1f6c storahci - ok 17:28:02.0297 0x1f6c [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 17:28:02.0297 0x1f6c storflt - ok 17:28:02.0329 0x1f6c [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 17:28:02.0329 0x1f6c stornvme - ok 17:28:02.0360 0x1f6c [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc C:\WINDOWS\system32\storsvc.dll 17:28:02.0360 0x1f6c StorSvc - ok 17:28:02.0391 0x1f6c [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 17:28:02.0407 0x1f6c storvsc - ok 17:28:02.0438 0x1f6c [ 7D123389FCD97D84881BA9C07012BA0C, 044442D8FCFE7935A025602F817C726576BA1C515CB594C4320A8AC6D8DA8F41 ] storvsp C:\WINDOWS\System32\drivers\storvsp.sys 17:28:02.0438 0x1f6c storvsp - ok 17:28:02.0485 0x1f6c [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc C:\WINDOWS\system32\svsvc.dll 17:28:02.0485 0x1f6c svsvc - ok 17:28:02.0532 0x1f6c [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum C:\WINDOWS\System32\drivers\swenum.sys 17:28:02.0532 0x1f6c swenum - ok 17:28:02.0672 0x1f6c [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 17:28:02.0688 0x1f6c SwitchBoard - ok 17:28:02.0735 0x1f6c [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv C:\WINDOWS\System32\swprv.dll 17:28:02.0750 0x1f6c swprv - ok 17:28:02.0829 0x1f6c SWUpdateService - ok 17:28:02.0891 0x1f6c [ 092506B413EA5CCA425B31DCC776D2DC, D9DAB4299657BFD7F176C94F988FD8359E2CE62071457AF5F7EF3722FD3EC0A8 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 17:28:02.0907 0x1f6c SynTP - ok 17:28:02.0969 0x1f6c [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain C:\WINDOWS\system32\sysmain.dll 17:28:02.0985 0x1f6c SysMain - ok 17:28:03.0016 0x1f6c [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 17:28:03.0016 0x1f6c SystemEventsBroker - ok 17:28:03.0047 0x1f6c [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 17:28:03.0047 0x1f6c TabletInputService - ok 17:28:03.0079 0x1f6c [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 17:28:03.0094 0x1f6c TapiSrv - ok 17:28:03.0187 0x1f6c [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 17:28:03.0218 0x1f6c Tcpip - ok 17:28:03.0384 0x1f6c [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys 17:28:03.0415 0x1f6c TCPIP6 - ok 17:28:03.0431 0x1f6c [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 17:28:03.0431 0x1f6c tcpipreg - ok 17:28:03.0478 0x1f6c [ E0BD2D83875464FEEEB242CBA8B7E073, A3067165128F36035FA9F3CBA55CFED736E180C495497FA7332B3D97908C3D90 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 17:28:03.0478 0x1f6c tdx - ok 17:28:03.0509 0x1f6c [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 17:28:03.0509 0x1f6c terminpt - ok 17:28:03.0572 0x1f6c [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService C:\WINDOWS\System32\termsrv.dll 17:28:03.0587 0x1f6c TermService - ok 17:28:03.0619 0x1f6c [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes C:\WINDOWS\system32\themeservice.dll 17:28:03.0634 0x1f6c Themes - ok 17:28:03.0650 0x1f6c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER C:\WINDOWS\system32\mmcss.dll 17:28:03.0650 0x1f6c THREADORDER - ok 17:28:03.0665 0x1f6c [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 17:28:03.0681 0x1f6c TimeBroker - ok 17:28:03.0712 0x1f6c [ 80A2FC1A089A71F2DBE5D8394FFB009F, DEA30E751F6EA42E43E16869713FC7E37832B15DAFA0062B1798DFA476981385 ] TPM C:\WINDOWS\system32\drivers\tpm.sys 17:28:03.0712 0x1f6c TPM - ok 17:28:03.0744 0x1f6c [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks C:\WINDOWS\System32\trkwks.dll 17:28:03.0744 0x1f6c TrkWks - ok 17:28:03.0806 0x1f6c [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 17:28:03.0822 0x1f6c TrustedInstaller - ok 17:28:03.0853 0x1f6c [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 17:28:03.0853 0x1f6c TsUsbFlt - ok 17:28:03.0884 0x1f6c [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 17:28:03.0884 0x1f6c TsUsbGD - ok 17:28:03.0931 0x1f6c [ E85916632CD3B9E9B546968DB950BF42, DECE3852C763CC6293C7D1B772296C43A0AE1E47BBCC4979C96B3B2AD70413F3 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys 17:28:03.0931 0x1f6c tunnel - ok 17:28:03.0962 0x1f6c [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 17:28:03.0962 0x1f6c uagp35 - ok 17:28:03.0994 0x1f6c [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 17:28:03.0994 0x1f6c UASPStor - ok 17:28:04.0041 0x1f6c [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys 17:28:04.0056 0x1f6c UCX01000 - ok 17:28:04.0119 0x1f6c [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 17:28:04.0119 0x1f6c udfs - ok 17:28:04.0134 0x1f6c [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 17:28:04.0134 0x1f6c UEFI - ok 17:28:04.0177 0x1f6c [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 17:28:04.0193 0x1f6c UI0Detect - ok 17:28:04.0208 0x1f6c [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 17:28:04.0208 0x1f6c uliagpkx - ok 17:28:04.0240 0x1f6c [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 17:28:04.0240 0x1f6c umbus - ok 17:28:04.0281 0x1f6c [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 17:28:04.0281 0x1f6c UmPass - ok 17:28:04.0328 0x1f6c [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 17:28:04.0328 0x1f6c UmRdpService - ok 17:28:04.0375 0x1f6c [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost C:\WINDOWS\System32\upnphost.dll 17:28:04.0391 0x1f6c upnphost - ok 17:28:04.0438 0x1f6c [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 17:28:04.0438 0x1f6c usbccgp - ok 17:28:04.0484 0x1f6c [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 17:28:04.0484 0x1f6c usbcir - ok 17:28:04.0531 0x1f6c [ BBFD17B6B954FC9FA02E62D604052069, 47D2B7228EABA7F37F69A1756B69FFFB19F0C2CC2869C5BF674E4FD9257488A2 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 17:28:04.0531 0x1f6c usbehci - ok 17:28:04.0578 0x1f6c [ CD81683F4553677B9BF5163A922153EB, 6B304B0D68B9BFF0245EC755CDAAF9DF59DF3A081727E32CB66672929F0DBC50 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 17:28:04.0594 0x1f6c usbhub - ok 17:28:04.0609 0x1f6c [ 5C90D5379B53590FBB24BBAD4FA682EE, DC036340510C1C0999AB1CB845F8E6EB8B7696BAC9BBE6E936454C0000D1E9D4 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 17:28:04.0625 0x1f6c USBHUB3 - ok 17:28:04.0641 0x1f6c [ A0F0484C97D6441ED6A75D7426ECCC9E, FF928ADE1C5464E581BF929F7383D5762D110EA6C7E31A6F0887EA7357ADBEFE ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 17:28:04.0641 0x1f6c usbohci - ok 17:28:04.0672 0x1f6c [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 17:28:04.0688 0x1f6c usbprint - ok 17:28:04.0719 0x1f6c [ 0F030491BA4A27BD46F8B8ACEEE83F1A, 7063855611BEF94D4D229BA1BE507ECBDD89F5861641A407EB3E2919A352F9D4 ] usbscan C:\WINDOWS\System32\drivers\usbscan.sys 17:28:04.0719 0x1f6c usbscan - ok 17:28:04.0766 0x1f6c [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 17:28:04.0766 0x1f6c USBSTOR - ok 17:28:04.0797 0x1f6c [ FC974B03C8B87455F44F734C8F31A3C8, D69F6EE8030F7DF96FF151D9EAA6AE65417ACAC5A267C7DB96E9611D5BC42D2C ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 17:28:04.0797 0x1f6c usbuhci - ok 17:28:04.0844 0x1f6c [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 17:28:04.0844 0x1f6c usbvideo - ok 17:28:04.0875 0x1f6c [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 17:28:04.0875 0x1f6c USBXHCI - ok 17:28:04.0922 0x1f6c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc C:\WINDOWS\system32\lsass.exe 17:28:04.0922 0x1f6c VaultSvc - ok 17:28:04.0953 0x1f6c [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 17:28:04.0953 0x1f6c vdrvroot - ok |
Nochmals TDSS Killer muß ihn Aufteilen Code: 17:26:43.0373 0x1f5c TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12 |
Teil 2 Code: 17:28:05.0000 0x1f6c [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds C:\WINDOWS\System32\vds.exe |
Teil 3 Code: 17:30:50.0047 0x18dc [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc C:\WINDOWS\system32\mpssvc.dll die Ausführung angeklickt danach nochmals durlaufen lassen dann hat er 7 Dateien gefunden Code: 19:19:35.0163 0x1844 Scan finished Code: # AdwCleaner v5.028 - Bericht erstellt am 05/01/2016 um 13:31:19 Code: # AdwCleaner v5.028 - Bericht erstellt am 05/01/2016 um 13:27:46 Code: Malwarebytes Anti-Malware Code: ESETSmartInstaller@High as downloader log: Code: C:\AdwCleaner\Quarantine\C\Program Files (x86)\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir Win32/Toolbar.Conduit.S evtl. unerwünschte Anwendung |
Abschließend noch die letzten FRST von Heute Ich hoffe ich habe soweit alles richtig verstanden und ausgeführt leider etwas viel lese-text geworden mit freundlichen Grüßen Andreas und Dank im Vorraus Code: Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:06-01-2015 Code: Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:06-01-2015 |
Zitat:
![]() Illegale Software: Cracks, Keygens und Co Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html Es geht weiter wenn du alles Illegale entfernt hast. Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems. |
Hallo cosinus, Danke für die Info Adobe Programm war drauf und wurde komplett deinstaliert Adobe Reader XI , Adobe Air und Adobe Flash player wurde beibehalten Neue FRST und Addition hänge ich an (allerdings ist der Info-Code den du mir als hinweis gegeben hast noch immer vorhanden) noch zur info: email mit dok-word Dokument wurde nicht am 19.12.2015 geöffnet sondern vermutlich 21.12 oder 22.12.2015 da habe ich im Download-Ordner ein unbekante Datei gefunden ViewProduktAttrachment-OpenFile 22.12.2015 15:03 Datei 358KB Mit freundlichen Grüßen Andreas Code: Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:06-01-2015 Code: Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:06-01-2015 |
Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte ![]()
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers |
Hallo cosinus, Danke für deine Hilfe Bin deinen Anweisungen gefolgt Habe - Malwarebytes Anti-Rootkit- durchlaufen lassen Ergebnis -kein Befund--Siehe Anhang Code: Malwarebytes Anti-Rootkit BETA 1.9.3.1001 Code: Malwarebytes Anti-Rootkit BETA 1.9.3.1001 Fall 1: Kann es vielleicht sein daß mit dem öffnen der dok-Datei so ein Erpressungstrojaner gar nicht mit gekommen ist Fall 2: Trojaner wurde gefunden und gelöscht von einem Programm welches ich benutzt habe zB Adw-cleaner Fall 3: Trojaner hält sich noch versteckt Am Rechner selbst merke ich keine Veränderungen alles soweit in Ordnung Mir ist wohl bekannt daß es keine absolute gewissheit gibt außer halt Neu Instalation Aber es würde mich schon beruhigen wenn so erfahrene Leute wie ihr, die sich mit solchen Trojanern auskennen die analyse erstellen "möglichstes getan - sieht soweit gut aus" Kann ich gefahrenlos Sicherungskopien von meinen Daten machen (Word/Exel/PDF/Bilder)? Sollte ich beim onlinebanking änderungen vornehmen(habe jetzt SMS-Tan) gibt ja auch Tan-codierungsgeräte für zuhause Was mache ich mit den gefundenen Dateien aus TDSS_Killer Ich hoffe ich strapaziere deine Freie-Zeit nicht allzusehr Mit freundlichen Grüßen Andreas |
Alle Zeitangaben in WEZ +1. Es ist jetzt 09:48 Uhr. |
Copyright ©2000-2025, Trojaner-Board