Kaskadeking | 06.03.2016 13:54 | Code:
13:50:46.0221 0x1e14 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
13:50:49.0552 0x1e14 ============================================================
13:50:49.0553 0x1e14 Current date / time: 2016/03/06 13:50:49.0552
13:50:49.0553 0x1e14 SystemInfo:
13:50:49.0553 0x1e14
13:50:49.0553 0x1e14 OS Version: 10.0.10586 ServicePack: 0.0
13:50:49.0553 0x1e14 Product type: Workstation
13:50:49.0553 0x1e14 ComputerName: KASKADEKING-PC
13:50:49.0553 0x1e14 UserName: KaskadekingDE
13:50:49.0553 0x1e14 Windows directory: C:\WINDOWS
13:50:49.0553 0x1e14 System windows directory: C:\WINDOWS
13:50:49.0553 0x1e14 Running under WOW64
13:50:49.0553 0x1e14 Processor architecture: Intel x64
13:50:49.0553 0x1e14 Number of processors: 4
13:50:49.0553 0x1e14 Page size: 0x1000
13:50:49.0553 0x1e14 Boot type: Normal boot
13:50:49.0553 0x1e14 ============================================================
13:50:49.0856 0x1e14 KLMD registered as C:\WINDOWS\system32\drivers\96934519.sys
13:50:50.0090 0x1e14 System UUID: {0F7950E4-C068-B77D-9D9C-525E1276903C}
13:50:50.0849 0x1e14 Drive \Device\Harddisk0\DR0 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:50:50.0867 0x1e14 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:50:50.0885 0x1e14 Drive \Device\Harddisk3\DR3 - Size: 0x1E0000000 ( 7.50 Gb ), SectorSize: 0x200, Cylinders: 0x3D3, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:50:50.0887 0x1e14 ============================================================
13:50:50.0887 0x1e14 \Device\Harddisk0\DR0:
13:50:50.0887 0x1e14 MBR partitions:
13:50:50.0887 0x1e14 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
13:50:50.0887 0x1e14 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0xD7BA000
13:50:50.0887 0x1e14 \Device\Harddisk1\DR1:
13:50:50.0887 0x1e14 MBR partitions:
13:50:50.0887 0x1e14 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x5B705000
13:50:50.0887 0x1e14 \Device\Harddisk3\DR3:
13:50:50.0889 0x1e14 MBR partitions:
13:50:50.0889 0x1e14 ============================================================
13:50:50.0890 0x1e14 C: <-> \Device\Harddisk0\DR0\Partition2
13:50:50.0901 0x1e14 D: <-> \Device\Harddisk1\DR1\Partition1
13:50:50.0901 0x1e14 ============================================================
13:50:50.0901 0x1e14 Initialize success
13:50:50.0901 0x1e14 ============================================================
13:51:15.0561 0x2154 ============================================================
13:51:15.0561 0x2154 Scan started
13:51:15.0561 0x2154 Mode: Manual; SigCheck; TDLFS;
13:51:15.0561 0x2154 ============================================================
13:51:15.0561 0x2154 KSN ping started
13:51:17.0996 0x2154 KSN ping finished: true
13:51:18.0426 0x2154 ================ Scan system memory ========================
13:51:18.0426 0x2154 System memory - ok
13:51:18.0426 0x2154 ================ Scan services =============================
13:51:18.0460 0x2154 1394ohci - ok
13:51:18.0465 0x2154 3ware - ok
13:51:18.0470 0x2154 ACPI - ok
13:51:18.0477 0x2154 acpiex - ok
13:51:18.0482 0x2154 acpipagr - ok
13:51:18.0486 0x2154 AcpiPmi - ok
13:51:18.0491 0x2154 acpitime - ok
13:51:18.0499 0x2154 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:51:18.0558 0x2154 AdobeARMservice - ok
13:51:18.0579 0x2154 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:51:18.0634 0x2154 AdobeFlashPlayerUpdateSvc - ok
13:51:18.0642 0x2154 ADP80XX - ok
13:51:18.0649 0x2154 AFD - ok
13:51:18.0654 0x2154 agp440 - ok
13:51:18.0660 0x2154 ahcache - ok
13:51:18.0664 0x2154 AJRouter - ok
13:51:18.0669 0x2154 ALG - ok
13:51:18.0680 0x2154 [ BBADD85854BFB5D43C60B7AC8EEA3DBA, 968C043ABEA46F5C79525863B3FE2681AC0FA4202036C9EFD20B408DECF407E2 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
13:51:18.0709 0x2154 AMD External Events Utility - ok
13:51:18.0720 0x2154 [ DE51F5BB5C05D4C831ECB6E1A70E1B5E, 465834210ACE469481F75EDBB8532386029BD5277C41D084134E9E71B9BD8371 ] AMD FUEL Service C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
13:51:18.0751 0x2154 AMD FUEL Service - ok
13:51:18.0756 0x2154 AmdK8 - ok
13:51:18.0762 0x2154 [ BE258C17CFD09F4210602105432E784A, FD38B50785206D6E5EADE65396030E18C8B9D993D7225057B0C24F3256BCE2E3 ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
13:51:18.0782 0x2154 amdkmafd - ok
13:51:18.0788 0x2154 amdkmdag - ok
13:51:18.0806 0x2154 [ 17BA5C907E14947574CBB788F4CEB85F, EAA3DBF436637C58666A91905E388287FC54334EBB2589A00727EB09AC4870E3 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
13:51:19.0056 0x2154 amdkmdap - ok
13:51:19.0063 0x2154 [ EF4680F07516F6D61F6E0BA1D34B3A3A, C367B323B26CF56AA6260E41129AE5F2DC97CFD0A9D984D9D5C051BE61ACD247 ] amdkmpfd C:\WINDOWS\system32\drivers\amdkmpfd.sys
13:51:19.0077 0x2154 amdkmpfd - ok
13:51:19.0082 0x2154 AmdPPM - ok
13:51:19.0087 0x2154 amdsata - ok
13:51:19.0093 0x2154 amdsbs - ok
13:51:19.0098 0x2154 amdxata - ok
13:51:19.0109 0x2154 [ 7DCA2C59491D420947A0B529DB37C7CF, 4673DD141F02801A61FF057BE9DA7FD214C1F9ED31BCB035A8C4E44C579799E4 ] amdxhc C:\WINDOWS\System32\drivers\amdxhc.sys
13:51:19.0136 0x2154 amdxhc - ok
13:51:19.0143 0x2154 [ 172C69FE64D07BDF5CE24146274F8CB8, 0A36069BA7B1E2C8B00E8E611E5F2AEF3A7571FAEA252752577EF9DE11F343DA ] amd_sata C:\WINDOWS\system32\drivers\amd_sata.sys
13:51:19.0157 0x2154 amd_sata - ok
13:51:19.0163 0x2154 [ A8FD2F5F3E70BE8FF66D2AFC6B6FB051, E5C9CDBEA96B008F2B73E5151B85867128479FBEEADF2500AB16E3B0692AC030 ] amd_xata C:\WINDOWS\system32\drivers\amd_xata.sys
13:51:19.0176 0x2154 amd_xata - ok
13:51:19.0181 0x2154 [ C3D487827E48CC5EC17994FEC5BDFF87, 5FCEA3EEA583755D0C9F6005ED3032E9DFECB57F504DC67701AE7D2D2631C30E ] AODDriver4.3 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
13:51:19.0202 0x2154 AODDriver4.3 - ok
13:51:19.0207 0x2154 AppID - ok
13:51:19.0212 0x2154 AppIDSvc - ok
13:51:19.0217 0x2154 Appinfo - ok
13:51:19.0223 0x2154 AppReadiness - ok
13:51:19.0227 0x2154 AppXSvc - ok
13:51:19.0238 0x2154 [ CF6E96336D3B247AB48F28CC570B83D8, B606BE7A2127E8FD3C7DFFEE844EFC8ABCBD08FE48384692B7B5928970AD54E3 ] APXACC C:\WINDOWS\system32\DRIVERS\appexDrv.sys
13:51:19.0266 0x2154 APXACC - ok
13:51:19.0272 0x2154 arcsas - ok
13:51:19.0286 0x2154 aspnet_state - ok
13:51:19.0292 0x2154 AsyncMac - ok
13:51:19.0296 0x2154 atapi - ok
13:51:19.0307 0x2154 [ FD9A5BCC3AFB02E87668B749546B6229, 4BE969A11CEE8033F40EDE7E06A5904B328D3FC1842855C0DB38D5EEF458219C ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
13:51:19.0337 0x2154 AtiHDAudioService - ok
13:51:19.0342 0x2154 AudioEndpointBuilder - ok
13:51:19.0346 0x2154 Audiosrv - ok
13:51:19.0353 0x2154 AxInstSV - ok
13:51:19.0357 0x2154 b06bdrv - ok
13:51:19.0363 0x2154 BasicDisplay - ok
13:51:19.0368 0x2154 BasicRender - ok
13:51:19.0376 0x2154 bcmfn - ok
13:51:19.0381 0x2154 bcmfn2 - ok
13:51:19.0388 0x2154 BDESVC - ok
13:51:19.0393 0x2154 Beep - ok
13:51:19.0398 0x2154 BFE - ok
13:51:19.0516 0x2154 [ 67EC059D86749294C5F228EE17276BAA, 1B68A5A9391AEA52DE00BD0AED3BEFAF5457ACA0B14E6C7AEA23D8579A69B812 ] BitBoxService D:\Programme\BitBox\bin\BitBoxService.exe
13:51:19.0578 0x2154 BitBoxService - detected UnsignedFile.Multi.Generic ( 1 )
13:51:22.0004 0x2154 Detect skipped due to KSN trusted
13:51:22.0004 0x2154 BitBoxService - ok
13:51:22.0012 0x2154 BITS - ok
13:51:22.0032 0x2154 [ C34F17588D07AF45E8718AD0CE3192B9, 16951D12809CAB931D2317D37EE02370C84E94BB1E8E015F2F7DA3F0A89A5F50 ] Bonjour Service C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
13:51:22.0103 0x2154 Bonjour Service - detected UnsignedFile.Multi.Generic ( 1 )
13:51:24.0532 0x2154 Detect skipped due to KSN trusted
13:51:24.0533 0x2154 Bonjour Service - ok
13:51:24.0540 0x2154 bowser - ok
13:51:24.0547 0x2154 BrokerInfrastructure - ok
13:51:24.0556 0x2154 Browser - ok
13:51:24.0571 0x2154 [ 56923A5C69593C0F09B6ABBCB3F2A316, 0943E1BC09DCECC67FED099DFBC657CB3A379F623DC894E768BD7D8EA3E8294D ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
13:51:24.0669 0x2154 BstHdAndroidSvc - ok
13:51:24.0676 0x2154 [ 431418FF64C8301D7F390C01F5AE0A8A, AB6D684BD4B5D413E56DBE743B95E6734B64813C958D5D252EB226AFFFA7D719 ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
13:51:24.0699 0x2154 BstHdDrv - ok
13:51:24.0710 0x2154 [ 1A3E73E34A1C5A9C183B297CAE067BE3, A68436B35807B96E088E66156BFCFE404C2ECA31FE4A90EFBDAF08D7FFF00415 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
13:51:24.0799 0x2154 BstHdLogRotatorSvc - ok
13:51:24.0818 0x2154 [ 8D348914BC6262CC2CA16980406B6A5D, 6B3747D93AD0C29E560F71E10268B54BE6BCC8EDE3501142193A6FF284C8F833 ] BstHdUpdaterSvc C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
13:51:24.0960 0x2154 BstHdUpdaterSvc - ok
13:51:24.0966 0x2154 BthAvrcpTg - ok
13:51:24.0971 0x2154 BthHFEnum - ok
13:51:24.0977 0x2154 bthhfhid - ok
13:51:24.0983 0x2154 BthHFSrv - ok
13:51:24.0988 0x2154 BTHMODEM - ok
13:51:24.0995 0x2154 bthserv - ok
13:51:25.0001 0x2154 buttonconverter - ok
13:51:25.0006 0x2154 CapImg - ok
13:51:25.0011 0x2154 cdfs - ok
13:51:25.0016 0x2154 CDPSvc - ok
13:51:25.0020 0x2154 cdrom - ok
13:51:25.0026 0x2154 CertPropSvc - ok
13:51:25.0031 0x2154 [ 6FED735D3B808D51C725C886E8F53116, 7DABDFA995C1323E222D7D5AE7F3AE28E11703E21430EA7B7B16B12DF0102B86 ] CGVPNCliService C:\Program Files\CyberGhost 5\Service.exe
13:51:25.0073 0x2154 CGVPNCliService - ok
13:51:25.0078 0x2154 circlass - ok
13:51:25.0083 0x2154 CLFS - ok
13:51:25.0089 0x2154 ClipSVC - ok
13:51:25.0104 0x2154 CmBatt - ok
13:51:25.0110 0x2154 CNG - ok
13:51:25.0115 0x2154 cnghwassist - ok
13:51:25.0126 0x2154 CompositeBus - ok
13:51:25.0132 0x2154 COMSysApp - ok
13:51:25.0137 0x2154 condrv - ok
13:51:25.0141 0x2154 CoreMessagingRegistrar - ok
13:51:25.0151 0x2154 CryptSvc - ok
13:51:25.0155 0x2154 dam - ok
13:51:25.0164 0x2154 DcomLaunch - ok
13:51:25.0168 0x2154 DcpSvc - ok
13:51:25.0173 0x2154 defragsvc - ok
13:51:25.0178 0x2154 DeviceAssociationService - ok
13:51:25.0184 0x2154 DeviceInstall - ok
13:51:25.0189 0x2154 DevQueryBroker - ok
13:51:25.0194 0x2154 Dfsc - ok
13:51:25.0204 0x2154 [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
13:51:25.0231 0x2154 dg_ssudbus - ok
13:51:25.0235 0x2154 Dhcp - ok
13:51:25.0241 0x2154 diagnosticshub.standardcollector.service - ok
13:51:25.0247 0x2154 DiagTrack - ok
13:51:25.0251 0x2154 disk - ok
13:51:25.0256 0x2154 DmEnrollmentSvc - ok
13:51:25.0262 0x2154 dmvsc - ok
13:51:25.0268 0x2154 dmwappushservice - ok
13:51:25.0272 0x2154 Dnscache - ok
13:51:25.0280 0x2154 dot3svc - ok
13:51:25.0285 0x2154 DPS - ok
13:51:25.0291 0x2154 drmkaud - ok
13:51:25.0296 0x2154 DsmSvc - ok
13:51:25.0301 0x2154 DsSvc - ok
13:51:25.0307 0x2154 [ 496C3C6BC3D930D0960C9E75AA30F4A7, 3FE0E86DA8C2C6A990BB2F1B92C22BD3483882B8D69FF8025BB68A199362C234 ] dtlitescsibus C:\WINDOWS\System32\drivers\dtlitescsibus.sys
13:51:25.0332 0x2154 dtlitescsibus - ok
13:51:25.0337 0x2154 DXGKrnl - ok
13:51:25.0341 0x2154 Eaphost - ok
13:51:25.0397 0x2154 [ 09036ED65D41B334CF541D3F3E982EAB, 7B68E0D732ADA2C15A7C3AEC62105076132F71B653467A793729D893366AA76B ] EaseUS Agent D:\Programme\EaseUS Todo Backup\Todo Backup\bin\Agent.exe
13:51:25.0627 0x2154 EaseUS Agent - ok
13:51:25.0635 0x2154 ebdrv - ok
13:51:25.0643 0x2154 EFS - ok
13:51:25.0651 0x2154 EhStorClass - ok
13:51:25.0659 0x2154 EhStorTcgDrv - ok
13:51:25.0668 0x2154 [ BDD265EEB37DF5953A547FE412E2472F, 17EB4FD54D62207937F8CA7454837DBF1EEC867AEDAF201FC2E839A3ED357F4F ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
13:51:25.0692 0x2154 ElbyCDIO - ok
13:51:25.0697 0x2154 embeddedmode - ok
13:51:25.0702 0x2154 EntAppSvc - ok
13:51:25.0707 0x2154 [ 1B677389760689A11241884C700B48E0, 75EC4D16F3F6004D2697AE25E029B95D8B9611911039777B781C5707DA6048C6 ] epmntdrv C:\WINDOWS\system32\epmntdrv.sys
13:51:25.0733 0x2154 epmntdrv - ok
13:51:25.0737 0x2154 ErrDev - ok
13:51:25.0747 0x2154 [ E47A0ECA90AF393983EF30E458606BB5, 1EB07711968ADBAB63A993FC54795DAAA9514F6E58FDED9EE9CA2DA3CCD620E1 ] EUBAKUP C:\WINDOWS\system32\drivers\eubakup.sys
13:51:25.0760 0x2154 EUBAKUP - ok
13:51:25.0766 0x2154 [ 17696B5ACDBDFFC7D26C4B56BF132AD5, 3D2499FE2406300357B746AF82F69CBF1A1039B1F2DD755018F2185FDE26EA7E ] EUBKMON C:\WINDOWS\system32\drivers\EUBKMON.sys
13:51:25.0779 0x2154 EUBKMON - ok
13:51:25.0784 0x2154 [ FCFD172899D0A026E5BD29F4775BFA76, CC651EAA870D9107B9FAC84B2FA2B8F166C5CA8FBDA803AFBDE07F523FA8C667 ] EUDSKACS C:\Windows\system32\drivers\eudskacs.sys
13:51:25.0803 0x2154 EUDSKACS - ok
13:51:25.0811 0x2154 [ 1D866B50C9B1BA3FE90CC81E0DBC0E15, 07606693CA155EC3BA2FEF6B1C70263AD0F6C2935E1C99572BB2152260F33E28 ] EUFDDISK C:\Windows\system32\drivers\EuFdDisk.sys
13:51:25.0837 0x2154 EUFDDISK - ok
13:51:25.0843 0x2154 [ 08C997734B2CECE882656BB2855E6E76, B3C1DEF26C9C9123D34395717220B450C705B5FA9FC8E321ADC444A4D63E6F36 ] EuGdiDrv C:\WINDOWS\system32\EuGdiDrv.sys
13:51:25.0865 0x2154 EuGdiDrv - ok
13:51:25.0871 0x2154 EventSystem - ok
13:51:25.0877 0x2154 exfat - ok
13:51:25.0882 0x2154 fastfat - ok
13:51:25.0887 0x2154 Fax - ok
13:51:25.0893 0x2154 fdc - ok
13:51:25.0898 0x2154 fdPHost - ok
13:51:25.0902 0x2154 FDResPub - ok
13:51:25.0908 0x2154 fhsvc - ok
13:51:25.0913 0x2154 FileCrypt - ok
13:51:25.0919 0x2154 FileInfo - ok
13:51:25.0924 0x2154 Filetrace - ok
13:51:25.0929 0x2154 flpydisk - ok
13:51:25.0933 0x2154 FltMgr - ok
13:51:25.0939 0x2154 FontCache - ok
13:51:25.0945 0x2154 FontCache3.0.0.0 - ok
13:51:25.0950 0x2154 FsDepends - ok
13:51:25.0954 0x2154 Fs_Rec - ok
13:51:25.0964 0x2154 [ 38F3CF15321DC2B47C7907EB222B637A, C2CE4F62BD7C93566C36B7290DA3E804FB79A18A18E2544E2B6404B473483D4E ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe
13:51:25.0981 0x2154 fussvc - detected UnsignedFile.Multi.Generic ( 1 )
13:51:28.0410 0x2154 Detect skipped due to KSN trusted
13:51:28.0410 0x2154 fussvc - ok
13:51:28.0428 0x2154 [ DD20EE28F6A5B0B9CCA98C2070C718FF, C4630692ECEE311F7F35C459D1AD194EA754964354A5D581DBD30EEF36B4D4EB ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
13:51:28.0491 0x2154 Futuremark SystemInfo Service - ok
13:51:28.0496 0x2154 fvevol - ok
13:51:28.0501 0x2154 gagp30kx - ok
13:51:28.0568 0x2154 [ 6D18B1088696CF96CBEBD31B8A519BD4, 4B47EECD18C12749FBEFA9C20B466F1A501F238166BBAE5B1793C918305A3348 ] GalaxyClientService D:\Programme\GalaxyClient\GalaxyClientService.exe
13:51:28.0793 0x2154 GalaxyClientService - ok
13:51:28.0929 0x2154 [ C6B53600271EA23A03D5C23316407013, A2B672134EC6415D689F5F1BDF0500B876CB3BA2BA022E4C7FF4C15215AF7BC2 ] GalaxyCommunication C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
13:51:29.0976 0x2154 GalaxyCommunication - ok
13:51:29.0994 0x2154 gencounter - ok
13:51:29.0999 0x2154 genericusbfn - ok
13:51:30.0005 0x2154 GPIOClx0101 - ok
13:51:30.0011 0x2154 gpsvc - ok
13:51:30.0018 0x2154 GpuEnergyDrv - ok
13:51:30.0026 0x2154 [ 88FBBB1C601A6BC42054E57C2897FA45, 928C5BAB515035DE659C4255C209D33C407716DA325798951B2E8DA9BB230A9F ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:51:30.0063 0x2154 gupdate - ok
13:51:30.0068 0x2154 [ 88FBBB1C601A6BC42054E57C2897FA45, 928C5BAB515035DE659C4255C209D33C407716DA325798951B2E8DA9BB230A9F ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:51:30.0105 0x2154 gupdatem - ok
13:51:30.0111 0x2154 [ 3F95931AEEA6DEF9FC02C565D2EFC145, A77CE97B0143A035D7C2655C2BF31008D4D555EF63CCF188EC58D5611782E635 ] hcmon C:\WINDOWS\system32\drivers\hcmon.sys
13:51:30.0133 0x2154 hcmon - ok
13:51:30.0138 0x2154 HDAudBus - ok
13:51:30.0151 0x2154 [ D95AAA765E0DF05DA881D259D3EF5B84, 9FF0305323AA04B7622CBC065D27BAD347D7C5B757A0B82F0A2AA99B517F9606 ] HerculesWiFi C:\WINDOWS\SysWOW64\\HerculesWiFiService.exe
13:51:30.0195 0x2154 HerculesWiFi - ok
13:51:30.0199 0x2154 HidBatt - ok
13:51:30.0204 0x2154 HidBth - ok
13:51:30.0209 0x2154 hidi2c - ok
13:51:30.0215 0x2154 hidinterrupt - ok
13:51:30.0219 0x2154 HidIr - ok
13:51:30.0224 0x2154 hidserv - ok
13:51:30.0230 0x2154 HidUsb - ok
13:51:30.0299 0x2154 [ 7D8A3C3D22CE3826693DC7E600EFC1D7, C7B4585BEBB9E0E3628D922859DA3BFE6CCC2612ED31C7FDCB541116483F3046 ] HiPatchService D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
13:51:30.0319 0x2154 HiPatchService - detected UnsignedFile.Multi.Generic ( 1 )
13:51:32.0777 0x2154 Detect skipped due to KSN trusted
13:51:32.0777 0x2154 HiPatchService - ok
13:51:32.0782 0x2154 HomeGroupListener - ok
13:51:32.0788 0x2154 HomeGroupProvider - ok
13:51:32.0793 0x2154 HpSAMD - ok
13:51:32.0799 0x2154 HTTP - ok
13:51:32.0805 0x2154 hwpolicy - ok
13:51:32.0812 0x2154 hyperkbd - ok
13:51:32.0817 0x2154 i8042prt - ok
13:51:32.0822 0x2154 iai2c - ok
13:51:32.0828 0x2154 iaLPSS2i_I2C - ok
13:51:32.0833 0x2154 iaLPSSi_GPIO - ok
13:51:32.0838 0x2154 iaLPSSi_I2C - ok
13:51:32.0844 0x2154 iaStorAV - ok
13:51:32.0848 0x2154 iaStorV - ok
13:51:32.0854 0x2154 ibbus - ok
13:51:32.0858 0x2154 icssvc - ok
13:51:32.0864 0x2154 IEEtwCollectorService - ok
13:51:32.0869 0x2154 IKEEXT - ok
13:51:32.0958 0x2154 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
13:51:33.0127 0x2154 IntcAzAudAddService - ok
13:51:33.0139 0x2154 intelide - ok
13:51:33.0144 0x2154 intelpep - ok
13:51:33.0150 0x2154 intelppm - ok
13:51:33.0154 0x2154 IoQos - ok
13:51:33.0161 0x2154 IpFilterDriver - ok
13:51:33.0166 0x2154 iphlpsvc - ok
13:51:33.0171 0x2154 IPMIDRV - ok
13:51:33.0176 0x2154 IPNAT - ok
13:51:33.0182 0x2154 [ 30228DC3268ADAA214B03A3948CA85BC, 0F1F8898A64FFD61B84E9B2E2A4E5FF468295F6A55FCE95748957DFC5D94D56A ] IpOverUsbSvc C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe
13:51:33.0212 0x2154 IpOverUsbSvc - ok
13:51:33.0217 0x2154 IRENUM - ok
13:51:33.0221 0x2154 isapnp - ok
13:51:33.0227 0x2154 iScsiPrt - ok
13:51:33.0257 0x2154 [ 68AD877758CEB893FABC6D85F9CD0E04, 54C28C9FEB1C87E3634EB08735A8E82CACFDAC858D2B18E5C45598D2785B9115 ] jetbrainsetw.103.0.20150818.191753 C:\Program Files (x86)\JetBrains\ETW Host\JetBrains.ETW.Collector.Host.exe
13:51:33.0310 0x2154 jetbrainsetw.103.0.20150818.191753 - ok
13:51:33.0317 0x2154 kbdclass - ok
13:51:33.0323 0x2154 kbdhid - ok
13:51:33.0328 0x2154 kdnic - ok
13:51:33.0334 0x2154 KeyIso - ok
13:51:33.0338 0x2154 KSecDD - ok
13:51:33.0344 0x2154 KSecPkg - ok
13:51:33.0348 0x2154 ksthunk - ok
13:51:33.0354 0x2154 KtmRm - ok
13:51:33.0359 0x2154 LanmanServer - ok
13:51:33.0364 0x2154 LanmanWorkstation - ok
13:51:33.0371 0x2154 lfsvc - ok
13:51:33.0377 0x2154 LicenseManager - ok
13:51:33.0382 0x2154 lltdio - ok
13:51:33.0387 0x2154 lltdsvc - ok
13:51:33.0392 0x2154 lmhosts - ok
13:51:33.0399 0x2154 LSI_SAS - ok
13:51:33.0404 0x2154 LSI_SAS2i - ok
13:51:33.0409 0x2154 LSI_SAS3i - ok
13:51:33.0414 0x2154 LSI_SSS - ok
13:51:33.0420 0x2154 LSM - ok
13:51:33.0426 0x2154 luafv - ok
13:51:33.0432 0x2154 [ 60DC593BA44E433DF97EBC8940703D08, 253B6892D7FCBD647D6FA645670871A76A38CD379FCC1F66F1181949740C72EA ] ManyCam C:\WINDOWS\system32\DRIVERS\mcvidrv.sys
13:51:33.0455 0x2154 ManyCam - ok
13:51:33.0460 0x2154 MapsBroker - ok
13:51:33.0465 0x2154 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
13:51:33.0479 0x2154 MBAMProtector - ok
13:51:33.0576 0x2154 [ AB176B9E59C0435499D83047D84EDD59, 85B826A3972CE9AD885313B69B9C60328B850257667D0EB65DDE890D0BB06361 ] MBAMScheduler D:\Programme\Malwarebytes Anti-Malware\mbamscheduler.exe
13:51:33.0643 0x2154 MBAMScheduler - ok
13:51:33.0681 0x2154 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService D:\Programme\Malwarebytes Anti-Malware\mbamservice.exe
13:51:33.0737 0x2154 MBAMService - ok
13:51:33.0748 0x2154 [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
13:51:33.0766 0x2154 MBAMSwissArmy - ok
13:51:33.0773 0x2154 [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
13:51:33.0788 0x2154 MBAMWebAccessControl - ok
13:51:33.0793 0x2154 [ 7382E4A888A7D4333DFF8A30B6850EE9, 3F63680A96438DF841FD46F99DA9670520ED3295176820DEDC9D5C770CA659D0 ] mcaudrv_simple C:\WINDOWS\system32\drivers\mcaudrv_x64.sys
13:51:33.0814 0x2154 mcaudrv_simple - ok
13:51:33.0818 0x2154 megasas - ok
13:51:33.0824 0x2154 megasr - ok
13:51:33.0828 0x2154 MessagingService - ok
13:51:33.0844 0x2154 mlx4_bus - ok
13:51:33.0849 0x2154 MMCSS - ok
13:51:33.0854 0x2154 Modem - ok
13:51:33.0860 0x2154 monitor - ok
13:51:33.0865 0x2154 mouclass - ok
13:51:33.0873 0x2154 mouhid - ok
13:51:33.0877 0x2154 mountmgr - ok
13:51:33.0885 0x2154 [ 5961C5D8EDD2E2A3B99F1782AE1AC21F, C383A4724A335737C4C7C3211AFCFB82D373267EC634BC47EE078A1C66E1F62A ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:51:33.0917 0x2154 MozillaMaintenance - ok
13:51:33.0922 0x2154 mpsdrv - ok
13:51:33.0927 0x2154 MpsSvc - ok
13:51:33.0932 0x2154 MRxDAV - ok
13:51:33.0938 0x2154 mrxsmb - ok
13:51:33.0944 0x2154 mrxsmb10 - ok
13:51:33.0949 0x2154 mrxsmb20 - ok
13:51:33.0954 0x2154 MsBridge - ok
13:51:33.0959 0x2154 MSDTC - ok
13:51:33.0968 0x2154 Msfs - ok
13:51:33.0974 0x2154 msgpiowin32 - ok
13:51:33.0979 0x2154 mshidkmdf - ok
13:51:33.0983 0x2154 mshidumdf - ok
13:51:33.0989 0x2154 msisadrv - ok
13:51:33.0993 0x2154 MSiSCSI - ok
13:51:33.0998 0x2154 msiserver - ok
13:51:34.0002 0x2154 MSKSSRV - ok
13:51:34.0008 0x2154 MsLldp - ok
13:51:34.0012 0x2154 MSPCLOCK - ok
13:51:34.0018 0x2154 MSPQM - ok
13:51:34.0024 0x2154 MsRPC - ok
13:51:34.0031 0x2154 mssmbios - ok
13:51:34.0038 0x2154 MSTEE - ok
13:51:34.0043 0x2154 MTConfig - ok
13:51:34.0048 0x2154 Mup - ok
13:51:34.0054 0x2154 mvumis - ok
13:51:34.0060 0x2154 NativeWifiP - ok
13:51:34.0066 0x2154 [ 873005BF5DE7EEC41FCE697CB0FC5FF2, 7C72B3FE77CBD177116C7033EAE72708BD3B38F8AE455E2560E9D306127BCDAB ] nbdrv C:\WINDOWS\system32\DRIVERS\nbdrv.sys
13:51:34.0090 0x2154 nbdrv - ok
13:51:34.0095 0x2154 NcaSvc - ok
13:51:34.0098 0x2154 NcbService - ok
13:51:34.0104 0x2154 NcdAutoSetup - ok
13:51:34.0109 0x2154 ndfltr - ok
13:51:34.0115 0x2154 NDIS - ok
13:51:34.0120 0x2154 NdisCap - ok
13:51:34.0125 0x2154 NdisImPlatform - ok
13:51:34.0129 0x2154 NdisTapi - ok
13:51:34.0135 0x2154 Ndisuio - ok
13:51:34.0140 0x2154 NdisVirtualBus - ok
13:51:34.0145 0x2154 NdisWan - ok
13:51:34.0151 0x2154 ndiswanlegacy - ok
13:51:34.0156 0x2154 ndproxy - ok
13:51:34.0161 0x2154 Ndu - ok
13:51:34.0205 0x2154 [ 5E84EDE47F715B6248B39E70229F8497, BFB4C7066F2459F60F1C2C50B743E1D02793A769F00D49626F125A6A754F9DE8 ] NetBalancerService D:\Programme\NetBalancer\SeriousBit.NetBalancer.Service.exe
13:51:34.0235 0x2154 NetBalancerService - ok
13:51:34.0240 0x2154 NetBIOS - ok
13:51:34.0248 0x2154 NetBT - ok
13:51:34.0255 0x2154 Netlogon - ok
13:51:34.0260 0x2154 Netman - ok
13:51:34.0268 0x2154 netprofm - ok
13:51:34.0273 0x2154 NetSetupSvc - ok
13:51:34.0280 0x2154 NetTcpPortSharing - ok
13:51:34.0288 0x2154 NgcCtnrSvc - ok
13:51:34.0294 0x2154 NgcSvc - ok
13:51:34.0302 0x2154 NlaSvc - ok
13:51:34.0306 0x2154 Npfs - ok
13:51:34.0312 0x2154 npggsvc - ok
13:51:34.0318 0x2154 npsvctrig - ok
13:51:34.0323 0x2154 nsi - ok
13:51:34.0328 0x2154 nsiproxy - ok
13:51:34.0336 0x2154 NTFS - ok
13:51:34.0341 0x2154 Null - ok
13:51:34.0346 0x2154 nvraid - ok
13:51:34.0351 0x2154 nvstor - ok
13:51:34.0358 0x2154 nv_agp - ok
13:51:34.0363 0x2154 OneSyncSvc - ok
13:51:34.0448 0x2154 [ A309633A4BA2DE3FC30468C3103E0BA5, 530C707A4FCD36A45E9D370D20105356C8019DE41EF1C1F1A728A523D5FBEE25 ] Origin Client Service D:\Programme\Origin\OriginClientService.exe
13:51:34.0583 0x2154 Origin Client Service - ok
13:51:34.0594 0x2154 [ 11E0B35479C895888BA3D7F619DCFFF3, 6ED82C19898101EC00BD64A9F90595C3D20AD2D2902AA8765B740FB3B9312DDF ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:51:34.0617 0x2154 ose64 - ok
13:51:34.0672 0x2154 [ 4E05A50D300FF558613064C92F0667AC, F853F386AFB02C06CC84EDA9A2256F9B4734EB1D50725EB6CA34F7D53AD21E79 ] OverwolfUpdater D:\Programme\Overwolf\OverwolfUpdater.exe
13:51:35.0010 0x29ac Object required for P2P: [ C6B53600271EA23A03D5C23316407013 ] GalaxyCommunication
13:51:35.0363 0x2154 OverwolfUpdater - ok
13:51:35.0373 0x2154 p2pimsvc - ok
13:51:35.0381 0x2154 p2psvc - ok
13:51:35.0391 0x2154 Parport - ok
13:51:35.0398 0x2154 partmgr - ok
13:51:35.0403 0x2154 PcaSvc - ok
13:51:35.0408 0x2154 pci - ok
13:51:35.0414 0x2154 pciide - ok
13:51:35.0419 0x2154 pcmcia - ok
13:51:35.0424 0x2154 pcw - ok
13:51:35.0430 0x2154 pdc - ok
13:51:35.0435 0x2154 PEAUTH - ok
13:51:35.0440 0x2154 percsas2i - ok
13:51:35.0445 0x2154 percsas3i - ok
13:51:35.0461 0x2154 PerfHost - ok
13:51:35.0472 0x2154 PhoneSvc - ok
13:51:35.0478 0x2154 PimIndexMaintenanceSvc - ok
13:51:35.0494 0x2154 pla - ok
13:51:35.0498 0x2154 PlugPlay - ok
13:51:35.0504 0x2154 PnkBstrA - ok
13:51:35.0509 0x2154 PNRPAutoReg - ok
13:51:35.0515 0x2154 PNRPsvc - ok
13:51:35.0520 0x2154 PolicyAgent - ok
13:51:35.0527 0x2154 Power - ok
13:51:35.0532 0x2154 PptpMiniport - ok
13:51:35.0598 0x2154 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
13:51:35.0731 0x2154 PrintNotify - ok
13:51:35.0742 0x2154 Processor - ok
13:51:35.0747 0x2154 ProfSvc - ok
13:51:35.0752 0x2154 Psched - ok
13:51:35.0757 0x2154 QWAVE - ok
13:51:35.0763 0x2154 QWAVEdrv - ok
13:51:35.0767 0x2154 RasAcd - ok
13:51:35.0773 0x2154 RasAgileVpn - ok
13:51:35.0777 0x2154 RasAuto - ok
13:51:35.0782 0x2154 Rasl2tp - ok
13:51:35.0787 0x2154 RasMan - ok
13:51:35.0793 0x2154 RasPppoe - ok
13:51:35.0797 0x2154 RasSstp - ok
13:51:35.0802 0x2154 rdbss - ok
13:51:35.0811 0x2154 rdpbus - ok
13:51:35.0815 0x2154 RDPDR - ok
13:51:35.0826 0x2154 RdpVideoMiniport - ok
13:51:35.0831 0x2154 rdyboost - ok
13:51:35.0836 0x2154 ReFSv1 - ok
13:51:35.0842 0x2154 RemoteAccess - ok
13:51:35.0846 0x2154 RemoteRegistry - ok
13:51:35.0851 0x2154 RetailDemo - ok
13:51:35.0857 0x2154 RpcEptMapper - ok
13:51:35.0863 0x2154 RpcLocator - ok
13:51:35.0868 0x2154 RpcSs - ok
13:51:35.0874 0x2154 rspndr - ok
13:51:35.0897 0x2154 [ 6969DAC0C978A78E63DE59C6D5E2421C, 424DB0E2C185294D2C6646F53A83FC4A232939622B557845DF2E3F73BFC355AB ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
13:51:35.0948 0x2154 rt640x64 - ok
13:51:35.0971 0x2154 [ EF91E0806C01806C3CF62AF006901127, 1F49D57B6598EF0923DF70FD31B755B29D5ED4D38840D7619D3399B759FD579F ] RTL8167 C:\WINDOWS\system32\DRIVERS\Rt64win7.sys
13:51:36.0023 0x2154 RTL8167 - ok
13:51:36.0031 0x2154 [ C66F68E501687573B6EAA66F3F0AB285, C028CD68C4C41D3B388681FD577176F94EF2BCE8C1C5E3EBB4CA18F7E20BA715 ] rtlss C:\WINDOWS\System32\Drivers\rtlss.sys
13:51:36.0054 0x2154 rtlss - ok
13:51:36.0127 0x2154 [ 844CB9DBE08797A2A875DF9E2AF108D7, 53463064C2F34DB9C5E1484FA370AC00C4A3486713EC80E2323B07150A27DD1F ] RtlWlanu C:\WINDOWS\System32\drivers\rtwlanu.sys
13:51:36.0275 0x2154 RtlWlanu - ok
13:51:36.0287 0x2154 s3cap - ok
13:51:36.0292 0x2154 SamSs - ok
13:51:36.0303 0x2154 [ A96A6B13ADE213E57F488718CE6C51BC, 0E5DE674CC80A4B3D0131EAD65D15F121E362A5B01FBC92EEA78C6AA5D73ACEB ] SAVAdminService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
13:51:36.0350 0x2154 SAVAdminService - ok
13:51:36.0358 0x2154 [ 389609560D81988DA2B78F7AFE1384F0, 3AE26F2E4018D45027AA0DE09A0E58BF5F93A7E036AB73188B57C530869B0189 ] SAVOnAccess C:\WINDOWS\system32\DRIVERS\savonaccess.sys
13:51:36.0376 0x2154 SAVOnAccess - ok
13:51:36.0383 0x2154 [ EF41D930DBD91684640390EFC623CC4F, 02D0F6C4229F567745FC6E4C500062771345EC904CC6CD14514C75748C46C90A ] SAVService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
13:51:36.0465 0x2154 SAVService - ok
13:51:36.0473 0x2154 [ 5A4DE7A65657965208296635F2C01E94, 8028303C7098B2C42DF6172DB39070AD4BF69B16E19EBC85B9AD6865C732C322 ] SbieDrv C:\Program Files\Sandboxie\SbieDrv.sys
13:51:36.0501 0x2154 SbieDrv - ok
13:51:36.0507 0x2154 [ 75AE2224F4427B737C1DEF1A4F2DFDA8, 71C4B60B0C1AC4A5684C6718A65C4275ECEE300C99085E4490934DDB0DC3784E ] SbieSvc C:\Program Files\Sandboxie\SbieSvc.exe
13:51:36.0817 0x2154 SbieSvc - ok
13:51:36.0825 0x2154 sbp2port - ok
13:51:36.0833 0x2154 SCardSvr - ok
13:51:36.0841 0x2154 ScDeviceEnum - ok
13:51:36.0849 0x2154 scfilter - ok
13:51:36.0858 0x2154 Schedule - ok
13:51:36.0864 0x2154 SCPolicySvc - ok
13:51:36.0871 0x2154 sdbus - ok
13:51:36.0876 0x2154 [ 75B98959013B22F8F40C08095B8AB73C, EF608EFBF72AF48EFC9352FCEDF0523BDBA6055612FFD22654E3B241AA9C8033 ] sdcfilter C:\WINDOWS\system32\DRIVERS\sdcfilter.sys
13:51:36.0899 0x2154 sdcfilter - ok
13:51:36.0904 0x2154 SDRSVC - ok
13:51:36.0909 0x2154 sdstor - ok
13:51:36.0913 0x2154 seclogon - ok
13:51:36.0919 0x2154 SENS - ok
13:51:36.0923 0x2154 SensorDataService - ok
13:51:36.0929 0x2154 SensorService - ok
13:51:36.0934 0x2154 SensorsSimulatorDriver - ok
13:51:36.0940 0x2154 SensrSvc - ok
13:51:36.0946 0x2154 SerCx - ok
13:51:36.0952 0x2154 SerCx2 - ok
13:51:36.0956 0x2154 Serenum - ok
13:51:36.0962 0x2154 Serial - ok
13:51:36.0967 0x2154 sermouse - ok
13:51:36.0977 0x2154 SessionEnv - ok
13:51:36.0984 0x2154 sfloppy - ok
13:51:36.0988 0x2154 SharedAccess - ok
13:51:36.0994 0x2154 ShellHWDetection - ok
13:51:36.0998 0x2154 SiSRaid2 - ok
13:51:37.0004 0x2154 SiSRaid4 - ok
13:51:37.0009 0x2154 smphost - ok
13:51:37.0014 0x2154 SmsRouter - ok
13:51:37.0023 0x2154 SNMPTRAP - ok
13:51:37.0036 0x2154 [ 61A8AD202BF438D9A4BDADAA6AE4C9BB, D8FBC9F088686FDEB8A72D5294F1D94543E9F9CDA4B575F034A287CE30F9E125 ] Sophos AutoUpdate Service C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
13:51:37.0083 0x2154 Sophos AutoUpdate Service - ok
13:51:37.0093 0x2154 [ 25E219807DDD9D6E3F6755361FED65D6, 47162ED76E607C66DDBC30CD6A183995CDA662FE63F28B7D09EA0FA27EA7B9FA ] Sophos MCS Agent C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe
13:51:37.0221 0x2154 Sophos MCS Agent - ok
13:51:37.0240 0x2154 [ 93BC9C07ABCEF9DF8564D3570F6F5C6A, A3F4B3E4AE8EECB532F41454B0A19D147ED87810C3A9B724BCA4C29F810FDCF4 ] Sophos MCS Client C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe
13:51:37.0291 0x2154 Sophos MCS Client - ok
13:51:37.0304 0x2154 [ CE9EA0AEF9A8A2E86CDCC7B76ECD97E1, F0EACC60C6912C58B596D4EE6D218772BD8C8FC6E652CFF6A2B08395896B0D6C ] Sophos Web Control Service C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe
13:51:37.0375 0x2154 Sophos Web Control Service - ok
13:51:37.0382 0x2154 [ FFD056D55C46946ACA218F0A61DA2743, A9E3910EBEFC8674704F42C6D43A12A521C212B911D46FCD669D8AAFA8381C55 ] SophosBootDriver C:\WINDOWS\system32\DRIVERS\SophosBootDriver.sys
13:51:37.0403 0x2154 SophosBootDriver - ok
13:51:37.0408 0x2154 spaceport - ok
13:51:37.0413 0x2154 SpbCx - ok
13:51:37.0419 0x2154 Spooler - ok
13:51:37.0424 0x2154 sppsvc - ok
13:51:37.0430 0x2154 [ 8FD8EE71D7D639F85805EEE4ADB2AA15, 027E680BE49F705843B0117A72FAFC7681798B99685B91989928EF03767CD7A5 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
13:51:37.0449 0x2154 SQLWriter - ok
13:51:37.0454 0x2154 srv - ok
13:51:37.0458 0x2154 srv2 - ok
13:51:37.0464 0x2154 srvnet - ok
13:51:37.0469 0x2154 SSDPSRV - ok
13:51:37.0474 0x2154 SstpSvc - ok
13:51:37.0485 0x2154 [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
13:51:37.0515 0x2154 ssudmdm - ok
13:51:37.0519 0x2154 StateRepository - ok
13:51:37.0538 0x2154 [ 591249EA969797C2A24629AF7C71A6F8, 61F28FB495657916514DE2A7FFD4AD833A1B2BBA5591616BE0C9CCD7DAFA40B7 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
13:51:37.0601 0x2154 Steam Client Service - ok
13:51:37.0607 0x2154 stexstor - ok
13:51:37.0613 0x2154 stisvc - ok
13:51:37.0618 0x2154 storahci - ok
13:51:37.0623 0x2154 storflt - ok
13:51:37.0629 0x2154 stornvme - ok
13:51:37.0634 0x2154 storqosflt - ok
13:51:37.0640 0x2154 StorSvc - ok
13:51:37.0647 0x2154 storufs - ok
13:51:37.0653 0x2154 storvsc - ok
13:51:37.0660 0x2154 svsvc - ok
13:51:37.0667 0x2154 swenum - ok
13:51:37.0674 0x2154 [ 6E08BD408572E27A6BD1ED615A2AFA84, FACA5D621F34B6DA9B18096D817531A268EC1DC07B03B68D740BC8095EB1083C ] swi_callout C:\WINDOWS\system32\DRIVERS\swi_callout.sys
13:51:37.0699 0x2154 swi_callout - ok
13:51:37.0709 0x2154 [ 395E6CF07B90379442B555F28A7CF857, D2C9B4826284B52DB95715038F7ECF47AF03500B280CA4FE6DBD6FA83F943AAF ] swi_filter C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe
13:51:37.0876 0x2154 swi_filter - ok
13:51:37.0942 0x2154 [ 3355E3E4F86C67BDD342EF211602C9AC, 232EAFCD8DC793AABCCEFD4EC72267F7045315CF6C5D6826BF24E31C580922DB ] swi_service C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
13:51:38.0069 0x2154 swi_service - ok
13:51:38.0080 0x2154 swprv - ok
13:51:38.0132 0x2154 [ DC675E90D41B261D78E04877F3A8B51D, DE6B1E245B3AC10FBD0ACAA4817CD92946319648329C5F9537EB38CB24D2B41D ] Synergy D:\Programme\Synergy\synergyd.exe
13:51:38.0155 0x2154 Synergy - ok
13:51:38.0161 0x2154 Synth3dVsc - ok
13:51:38.0166 0x2154 SysMain - ok
13:51:38.0171 0x2154 SystemEventsBroker - ok
13:51:38.0177 0x2154 TabletInputService - ok
13:51:38.0183 0x2154 [ 3C32FF010F869BC184DF71290477384E, 55CFCEC7F026C6E2E96A2FBE846AB513BB12BB0348735274FE1B71AF019C837B ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys
13:51:38.0207 0x2154 tap0901 - ok
13:51:38.0212 0x2154 TapiSrv - ok
13:51:38.0218 0x2154 [ B0181B7C8F1495AC45F3A834CEDD2772, 7B07ED181CE7B8206171B02B468C2DFF8381FF33AB52BCA6806DE3C0119DEE4D ] tapse01 C:\WINDOWS\System32\drivers\tapse01.sys
13:51:38.0242 0x2154 tapse01 - ok
13:51:38.0247 0x2154 Tcpip - ok
13:51:38.0252 0x2154 Tcpip6 - ok
13:51:38.0260 0x2154 tcpipreg - ok
13:51:38.0268 0x2154 tdx - ok
13:51:38.0275 0x2154 [ 950AD1AE7498A492126FB9F9B2E27DB5, C4C9A972015F567FC87A4094C86835B2DD3476426AB8B40CD4872A725CA89CFC ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe
13:51:38.0291 0x2154 Te.Service - detected UnsignedFile.Multi.Generic ( 1 )
13:51:38.0599 0x29ac Object send P2P result: true
13:51:40.0799 0x2154 Detect skipped due to KSN trusted
13:51:40.0799 0x2154 Te.Service - ok
13:51:40.0940 0x2154 [ E72B44F86082DFE649CD991E3CD2F8B6, C5A1E53E41E48D3465A7D96886A1E5D1C3145C7E1A40FB74E3A05EDC2DA04F84 ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
13:51:41.0657 0x2154 TeamViewer - ok
13:51:41.0674 0x2154 terminpt - ok
13:51:41.0678 0x2154 TermService - ok
13:51:41.0684 0x2154 Themes - ok
13:51:41.0689 0x2154 TieringEngineService - ok
13:51:41.0694 0x2154 tiledatamodelsvc - ok
13:51:41.0699 0x2154 TimeBroker - ok
13:51:41.0704 0x2154 TPM - ok
13:51:41.0709 0x2154 TrkWks - ok
13:51:41.0713 0x2154 TrustedInstaller - ok
13:51:41.0721 0x2154 tsusbflt - ok
13:51:41.0726 0x2154 TsUsbGD - ok
13:51:41.0731 0x2154 tunnel - ok
13:51:41.0736 0x2154 tzautoupdate - ok
13:51:41.0742 0x2154 uagp35 - ok
13:51:41.0746 0x2154 UASPStor - ok
13:51:41.0752 0x2154 UcmCx0101 - ok
13:51:41.0757 0x2154 UcmUcsi - ok
13:51:41.0762 0x2154 Ucx01000 - ok
13:51:41.0768 0x2154 UdeCx - ok
13:51:41.0772 0x2154 udfs - ok
13:51:41.0777 0x2154 UEFI - ok
13:51:41.0782 0x2154 Ufx01000 - ok
13:51:41.0788 0x2154 UfxChipidea - ok
13:51:41.0793 0x2154 ufxsynopsys - ok
13:51:41.0803 0x2154 UI0Detect - ok
13:51:41.0808 0x2154 uliagpkx - ok
13:51:41.0813 0x2154 umbus - ok
13:51:41.0820 0x2154 UmPass - ok
13:51:41.0825 0x2154 UmRdpService - ok
13:51:41.0830 0x2154 UnistoreSvc - ok
13:51:41.0846 0x2154 upnphost - ok
13:51:41.0853 0x2154 UrsChipidea - ok
13:51:41.0857 0x2154 UrsCx01000 - ok
13:51:41.0862 0x2154 UrsSynopsys - ok
13:51:41.0868 0x2154 usbccgp - ok
13:51:41.0872 0x2154 usbcir - ok
13:51:41.0877 0x2154 usbehci - ok
13:51:41.0882 0x2154 usbhub - ok
13:51:41.0889 0x2154 USBHUB3 - ok
13:51:41.0893 0x2154 usbohci - ok
13:51:41.0900 0x2154 usbprint - ok
13:51:41.0904 0x2154 usbscan - ok
13:51:41.0910 0x2154 usbser - ok
13:51:41.0916 0x2154 USBSTOR - ok
13:51:41.0922 0x2154 usbuhci - ok
13:51:41.0926 0x2154 USBXHCI - ok
13:51:41.0933 0x2154 UserDataSvc - ok
13:51:41.0948 0x2154 UserManager - ok
13:51:41.0954 0x2154 UsoSvc - ok
13:51:41.0958 0x2154 VaultSvc - ok
13:51:41.0980 0x2154 [ C261181C2F59ED42A71D76CF702B8CB3, CDCAFBB4EC0FC80C55E559DF4A36F30F137C788268BB0BD54E0406AABF92C7E4 ] VBoxDrv C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys
13:51:42.0039 0x2154 VBoxDrv - ok
13:51:42.0051 0x2154 [ ABB918FECFD7D19B090580D265B8B81E, D9F9119004E18FCB702913D8886682301C69955780CD44B329CC98C8B01F5F51 ] VBoxNetLwf C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys
13:51:42.0080 0x2154 VBoxNetLwf - ok
13:51:42.0088 0x2154 [ BC72D35ABDFE0F7F70D77F04C81D1567, C60B2BC9A3ECED25E6878E739FAF4C297FDB5DCB2D920238BA90C64AF1478CE9 ] VBoxUSBMon C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys
13:51:42.0116 0x2154 VBoxUSBMon - ok
13:51:42.0122 0x2154 [ 3C8E2C591345F38149C69FE8E5DF8C90, 9F4BB9BDA09CB2E99A6A888B288F322AE5C460B5D124CD714C6F00FF5029144B ] VClone C:\WINDOWS\System32\drivers\VClone.sys
13:51:42.0145 0x2154 VClone - ok
13:51:42.0152 0x2154 vdrvroot - ok
13:51:42.0158 0x2154 vds - ok
13:51:42.0166 0x2154 [ C0BB7F0C789AC778549DCC20B18A8DC0, 6C985B008488EB9766C4CE6709C37AF6ECCEDA7A69EB45627B1871D891D925DF ] veracrypt C:\WINDOWS\system32\drivers\veracrypt.sys
13:51:42.0193 0x2154 veracrypt - ok
13:51:42.0198 0x2154 VerifierExt - ok
13:51:42.0203 0x2154 vhdmp - ok
13:51:42.0209 0x2154 vhf - ok
13:51:42.0266 0x2154 [ 225E1E03B2AABE2D493FCDB459303701, 6123280A48E973AC9696954879CF5F791E6D52CBE0BD07F291437D1A82413891 ] VMAuthdService D:\Programme\VMware\vmware-authd.exe
13:51:42.0307 0x2154 VMAuthdService - ok
13:51:42.0312 0x2154 vmbus - ok
13:51:42.0317 0x2154 VMBusHID - ok
13:51:42.0324 0x2154 [ BE8E5E5D53ACF71D4E8E686B68C99B04, 4F30A360095FCB2627068FA6A65A951688058E8FDDF5CE895E2AE39500A413B1 ] vmci C:\WINDOWS\system32\drivers\vmci.sys
13:51:42.0340 0x2154 vmci - ok
13:51:42.0345 0x2154 vmicguestinterface - ok
13:51:42.0350 0x2154 vmicheartbeat - ok
13:51:42.0356 0x2154 vmickvpexchange - ok
13:51:42.0361 0x2154 vmicrdv - ok
13:51:42.0366 0x2154 vmicshutdown - ok
13:51:42.0372 0x2154 vmictimesync - ok
13:51:42.0376 0x2154 vmicvmsession - ok
13:51:42.0382 0x2154 vmicvss - ok
13:51:42.0387 0x2154 [ B6DE5224D881BF17ADDE4C88AE553423, AC9C113080313855BC93E99BEFAC4B942E93D8E4CF024607F596CA9D7F8F8A14 ] vmkbd C:\WINDOWS\system32\drivers\VMkbd.sys
13:51:42.0408 0x2154 vmkbd - ok
13:51:42.0415 0x2154 [ A3412EC3FF7A5AC2CA3A3951476BFA9C, 8A3D241168205B6B5348F44DF89875067CDD5B29BE8CF14ADA8403225AE2A379 ] VMnetAdapter C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
13:51:42.0435 0x2154 VMnetAdapter - ok
13:51:42.0441 0x2154 [ F76AD463DBE8D30CB715A09DF9FF2BE9, 5B2184582496ED0EE8582C6AD3BCF49674690C585439B6F57B43ADC12DF941F6 ] VMnetBridge C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
13:51:42.0463 0x2154 VMnetBridge - ok
13:51:42.0481 0x2154 [ 98E73D79FCD3D48E31EE999B5DF1B0ED, FBDC884BD9376C7E8727BACCF6482207166634F4B2644C8C794295094B29426E ] VMnetDHCP C:\WINDOWS\SysWOW64\vmnetdhcp.exe
13:51:42.0667 0x2154 VMnetDHCP - ok
13:51:42.0673 0x2154 [ B564A598B9B31E9358B2D6C9BC96D710, 19A9EFC08AE11A31169F712C577EBAFFF0A37311271FD46F02873286C8281DB7 ] VMnetuserif C:\WINDOWS\system32\drivers\vmnetuserif.sys
13:51:42.0694 0x2154 VMnetuserif - ok
13:51:42.0714 0x2154 [ 15D702F235BD1077007A180EEFB9DBB8, 610794EB9AF68789F46D193EF11B406D190096DF9EC557563798D625806D5704 ] VMUSBArbService C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
13:51:42.0752 0x2154 VMUSBArbService - ok
13:51:42.0768 0x2154 [ 0769FDF4C15D9EDD3CAAC148A8EDC2E5, 65E5CA9461C47491E83EBD755C10AE1665E71D2B73F2CE97A59B9E7380D42E8D ] VMware NAT Service C:\WINDOWS\SysWOW64\vmnat.exe
13:51:43.0003 0x2154 VMware NAT Service - ok
13:51:43.0009 0x2154 [ 8FCCBE30DC217C244CE38DD7F9B673C3, C1E6E65A435D764695C4B9411ED623D626D8A744E3E09752FBB66260D9ACE8D6 ] vmx86 C:\WINDOWS\system32\drivers\vmx86.sys
13:51:43.0029 0x2a90 Object required for P2P: [ DC675E90D41B261D78E04877F3A8B51D ] Synergy
13:51:43.0037 0x2154 vmx86 - ok
13:51:43.0043 0x2154 volmgr - ok
13:51:43.0049 0x2154 volmgrx - ok
13:51:43.0054 0x2154 volsnap - ok
13:51:43.0059 0x2154 vpci - ok
13:51:43.0064 0x2154 vsmraid - ok
13:51:43.0071 0x2154 [ 1C7DC94FDCABD06D24C3A532DC33FB34, 5403724E70ABBE1070958CA58496DB2237F35CAB37296E1ECB64D4A0FE432AC1 ] vsock C:\WINDOWS\system32\drivers\vsock.sys
13:51:43.0087 0x2154 vsock - ok
13:51:43.0092 0x2154 VSS - ok
13:51:43.0149 0x2154 [ 19D2D8B9F506193A191A8CFD14435ED1, 3359D167B314E14D6E99CA5C79BB5A1C2CEE88823346DD96C4F1B7CD4A2A5D2E ] VSStandardCollectorService140 D:\Programme\Visual Studio\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe
13:51:43.0187 0x2154 VSStandardCollectorService140 - ok
13:51:43.0195 0x2154 VSTXRAID - ok
13:51:43.0202 0x2154 vwifibus - ok
13:51:43.0210 0x2154 vwififlt - ok
13:51:43.0217 0x2154 vwifimp - ok
13:51:43.0225 0x2154 W32Time - ok
13:51:43.0231 0x2154 WacomPen - ok
13:51:43.0235 0x2154 WalletService - ok
13:51:43.0243 0x2154 wanarp - ok
13:51:43.0247 0x2154 wanarpv6 - ok
13:51:43.0252 0x2154 wbengine - ok
13:51:43.0259 0x2154 WbioSrvc - ok
13:51:43.0264 0x2154 Wcmsvc - ok
13:51:43.0270 0x2154 wcncsvc - ok
13:51:43.0276 0x2154 WcsPlugInService - ok
13:51:43.0280 0x2154 WdBoot - ok
13:51:43.0286 0x2154 Wdf01000 - ok
13:51:43.0291 0x2154 WdFilter - ok
13:51:43.0296 0x2154 WdiServiceHost - ok
13:51:43.0301 0x2154 WdiSystemHost - ok
13:51:43.0308 0x2154 wdiwifi - ok
13:51:43.0313 0x2154 WdNisDrv - ok
13:51:43.0317 0x2154 WdNisSvc - ok
13:51:43.0324 0x2154 WebClient - ok
13:51:43.0329 0x2154 Wecsvc - ok
13:51:43.0333 0x2154 WEPHOSTSVC - ok
13:51:43.0340 0x2154 wercplsupport - ok
13:51:43.0346 0x2154 WerSvc - ok
13:51:43.0351 0x2154 WFPLWFS - ok
13:51:43.0357 0x2154 WiaRpc - ok
13:51:43.0362 0x2154 WIMMount - ok
13:51:43.0365 0x2154 WinDefend - ok
13:51:43.0370 0x2154 WinDivert1.1 - ok
13:51:43.0381 0x2154 WindowsTrustedRT - ok
13:51:43.0386 0x2154 WindowsTrustedRTProxy - ok
13:51:43.0393 0x2154 WinHttpAutoProxySvc - ok
13:51:43.0397 0x2154 WinMad - ok
13:51:43.0404 0x2154 Winmgmt - ok
13:51:43.0410 0x2154 WinRM - ok
13:51:43.0419 0x2154 WINUSB - ok
13:51:43.0425 0x2154 WinVerbs - ok
13:51:43.0430 0x2154 WlanSvc - ok
13:51:43.0435 0x2154 wlidsvc - ok
13:51:43.0440 0x2154 WmiAcpi - ok
13:51:43.0448 0x2154 wmiApSrv - ok
13:51:43.0452 0x2154 WMPNetworkSvc - ok
13:51:43.0463 0x2154 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
13:51:43.0673 0x2154 Wof - ok
13:51:43.0688 0x2154 workfolderssvc - ok
13:51:43.0696 0x2154 wpcfltr - ok
13:51:43.0705 0x2154 WPDBusEnum - ok
13:51:43.0711 0x2154 WpdUpFltr - ok
13:51:43.0716 0x2154 WpnService - ok
13:51:43.0722 0x2154 ws2ifsl - ok
13:51:43.0727 0x2154 wscsvc - ok
13:51:43.0732 0x2154 WSDPrintDevice - ok
13:51:43.0739 0x2154 WSearch - ok
13:51:43.0745 0x2154 WSService - ok
13:51:43.0751 0x2154 wuauserv - ok
13:51:43.0757 0x2154 WudfPf - ok
13:51:43.0761 0x2154 WUDFRd - ok
13:51:43.0766 0x2154 wudfsvc - ok
13:51:43.0772 0x2154 WUDFWpdFs - ok
13:51:43.0777 0x2154 WwanSvc - ok
13:51:43.0783 0x2154 XblAuthManager - ok
13:51:43.0789 0x2154 XblGameSave - ok
13:51:43.0794 0x2154 xboxgip - ok
13:51:43.0799 0x2154 XboxNetApiSvc - ok
13:51:43.0806 0x2154 xinputhid - ok
13:51:43.0814 0x2154 XSplit_Dummy - ok
13:51:43.0842 0x2154 ================ Scan global ===============================
13:51:43.0862 0x2154 [ Global ] - ok
13:51:43.0863 0x2154 ================ Scan MBR ==================================
13:51:43.0865 0x2154 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:51:43.0954 0x2154 \Device\Harddisk0\DR0 - ok
13:51:43.0977 0x2154 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
13:51:44.0047 0x2154 \Device\Harddisk1\DR1 - ok
13:51:44.0053 0x2154 [ 95CCC4DFCFB56093C9B019159268F03A ] \Device\Harddisk3\DR3
13:51:44.0146 0x2154 \Device\Harddisk3\DR3 - ok
13:51:44.0146 0x2154 ================ Scan VBR ==================================
13:51:44.0149 0x2154 [ 5763B6991C41E832EEC52143A786E2B0 ] \Device\Harddisk0\DR0\Partition1
13:51:44.0151 0x2154 \Device\Harddisk0\DR0\Partition1 - ok
13:51:44.0154 0x2154 [ BA549B2FBE1D3C214BBD52B875C4157E ] \Device\Harddisk0\DR0\Partition2
13:51:44.0155 0x2154 \Device\Harddisk0\DR0\Partition2 - ok
13:51:44.0159 0x2154 [ BD7FD0C25B193E8A1AC367628716C57F ] \Device\Harddisk1\DR1\Partition1
13:51:44.0200 0x2154 \Device\Harddisk1\DR1\Partition1 - ok
13:51:44.0201 0x2154 ================ Scan generic autorun ======================
13:51:44.0377 0x2154 [ 22EBD5AE3B3220D713E544D1D3AB3FEE, 9EF058B096DAA5C6242FBEB3DF509108180B1EB1EA252E63C437CF6C1B743BE0 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
13:51:44.0621 0x2154 RTHDVCPL - ok
13:51:44.0663 0x2154 [ 93787FF75E6323CF1D5467CA119CF76D, 9CBD2B9BF44FCE78AA87FD7A26A65AEE9DD04C43991142528F57FF9A0E2FC4A4 ] D:\Programme\Greenshot\Greenshot.exe
13:51:44.0757 0x2154 Greenshot - detected UnsignedFile.Multi.Generic ( 1 )
13:51:45.0572 0x2a90 Object send P2P result: true
13:51:47.0192 0x2154 Object required for P2P: [ 93787FF75E6323CF1D5467CA119CF76D ] D:\Programme\Greenshot\Greenshot.exe
13:51:49.0796 0x2154 Object send P2P result: true
13:51:49.0796 0x2154 Detect skipped due to KSN trusted
13:51:49.0796 0x2154 Greenshot - ok
13:51:49.0799 0x2154 [ 1E2B7E1F256CBC4B55DDD622FF5604EF, C25BF91080A382AAE78FB52C1E05737CC7ECE575D6243D0DC91769C4BAF36489 ] C:\Program Files (x86)\Raptr\raptrstub.exe
13:51:49.0830 0x2154 Raptr - ok
13:51:49.0936 0x2154 [ E76F43260D050DE1D5370AEF266EB3C8, DB30811E46BB55B03BEE97414A561B8DE2136E16764514CC3A4DF056BD5E0859 ] D:\Programme\EaseUS Partition Master 10.8\bin\EpmNews.exe
13:51:50.0068 0x2154 EaseUS EPM tray - ok
13:51:50.0090 0x2154 [ B8968E6FDADE1F0E4566E0A948A12176, 2677B3D16C1B090DDB07C2939A6B7D20B08364A2CBCA5A1A40575A5678C5498E ] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
13:51:50.0231 0x2154 BlueStacks Agent - ok
13:51:50.0246 0x2154 [ 1BFC269826DF9E8340796BFF5EBC6C87, 60817E6FA576E8981C15D4BA7BB031E6BAFA57F8DC8A438A2E1F8C137B289A3E ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
13:51:50.0528 0x2154 SunJavaUpdateSched - ok
13:51:50.0547 0x2154 [ EA4F9B19B3614349C79CC97DCA4C23A8, EC330F2E4F002FE450CDC1FC84AC0122C21C7912A483A99143450822004795E3 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe
13:51:50.0580 0x2154 StartCCC - ok
13:51:50.0677 0x2154 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] D:\Programme\VirtualCloneDrive\VCDDaemon.exe
13:51:50.0733 0x2154 VirtualCloneDrive - ok
13:51:50.0762 0x2154 [ 525F5D4EC803FA5B03CF7E51FF7A71A1, 8A7961897469F1631CEE5AF66937ED73011928B627897C9794611A02912AB8F6 ] C:\Program Files (x86)\Sophos\AutoUpdate\almon.exe
13:51:50.0887 0x2154 Sophos AutoUpdate Monitor - ok
13:51:50.0900 0x2154 OneDriveSetup - ok
13:51:50.0903 0x2154 OneDriveSetup - ok
13:51:50.0955 0x2154 [ 192B8235DEBCE406086D798874D57FEF, 5C82653D0255BE54B55E2A016D17068683375F88882B471B998C161ABD953F92 ] D:\Programme\WinPatrol\winpatrol.exe
13:51:50.0999 0x1fac Object required for P2P: [ C0BB7F0C789AC778549DCC20B18A8DC0 ] veracrypt
13:51:51.0022 0x2154 WinPatrol - ok
13:51:51.0307 0x2154 [ 3207A86C13347CE6DE26D06BCBFE0E02, A5F9B0B03844FA51B345BAAB16F7AD80272C061CE00447ACD1B8292B8C7D0C6E ] C:\Program Files (x86)\eM Client\MailClient.exe
13:51:52.0489 0x2154 eM Client - ok
13:51:52.0757 0x2154 [ F8C53D4AD87A2955C3DB857545B0E3DE, B3652296CB7C1310E8544539029DDD2BF8B6164E8ACEE7F3EBC936F83C80C7BC ] D:\Programme\FileHippo.com\FileHippo.AppManager.exe
13:51:53.0576 0x1fac Object send P2P result: true
13:51:53.0953 0x2154 FileHippo.com - ok
13:51:54.0004 0x2154 [ 8FE478638E87F790EF1BBE01BD60D22C, 71DC3E183BDBE5A3F38210B1B069522802288542E007F307D4E27940BF52F504 ] C:\Users\Fabian\AppData\Roaming\BitTorrent\BitTorrent.exe
13:51:55.0637 0x2154 BitTorrent - ok
13:51:55.0670 0x2154 [ FDE87ECFEBD958C22EE96C83C75CFD68, EA521538A177A676291DB9E5FA4373E799059E47D1A60C170FD6B69E7CD6F58E ] C:\Users\Fabian\AppData\Roaming\Spotify\SpotifyWebHelper.exe
13:51:55.0818 0x2154 Spotify Web Helper - ok
13:51:55.0837 0x2154 [ 85456F8A40C3248C63E34A733AE96833, 1548FB3A219363D552ED408E1A9067E5710E209CEF3803201B9931A131E4603C ] C:\Program Files\Sandboxie\SbieCtrl.exe
13:51:55.0876 0x2154 SandboxieControl - ok
13:51:55.0888 0x2154 [ 0A81DF13C4AEAC053C0DCE6240DC05D4, 13900D6FA1E9221236E79567DB0C6143AB7FECD4431CA295C33A039D1170E06B ] C:\Program Files\CyberGhost 5\CyberGhost.exe
13:51:55.0991 0x2154 CyberGhost - ok
13:51:55.0994 0x2154 Waiting for KSN requests completion. In queue: 14
13:51:56.0995 0x2154 Waiting for KSN requests completion. In queue: 14
13:51:57.0995 0x2154 Waiting for KSN requests completion. In queue: 14
13:51:59.0043 0x2154 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x62100 ( disabled : updated )
13:51:59.0045 0x2154 AV detected via SS2: Sophos Home, C:\Program Files (x86)\Sophos\Sophos Anti-Virus\WSCClient.exe ( 10.5.1.0 ), 0x51000 ( enabled : updated )
13:51:59.0050 0x2154 Win FW state via NFP2: enabled ( trusted )
13:52:01.0562 0x2154 ============================================================
13:52:01.0562 0x2154 Scan finished
13:52:01.0562 0x2154 ============================================================
13:52:01.0578 0x230c Detected object count: 0
13:52:01.0579 0x230c Actual detected object count: 0 |