Asmoteus | 08.03.2016 22:42 | Kaspersky: Code:
22:40:25.0135 0x0548 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
22:40:25.0135 0x0548 UEFI system
22:40:30.0691 0x0548 ============================================================
22:40:30.0691 0x0548 Current date / time: 2016/03/08 22:40:30.0691
22:40:30.0691 0x0548 SystemInfo:
22:40:30.0692 0x0548
22:40:30.0692 0x0548 OS Version: 10.0.10586 ServicePack: 0.0
22:40:30.0692 0x0548 Product type: Workstation
22:40:30.0692 0x0548 ComputerName: NUTZER-PC
22:40:30.0693 0x0548 UserName: Nutzer
22:40:30.0693 0x0548 Windows directory: C:\WINDOWS
22:40:30.0693 0x0548 System windows directory: C:\WINDOWS
22:40:30.0693 0x0548 Running under WOW64
22:40:30.0693 0x0548 Processor architecture: Intel x64
22:40:30.0693 0x0548 Number of processors: 8
22:40:30.0693 0x0548 Page size: 0x1000
22:40:30.0693 0x0548 Boot type: Normal boot
22:40:30.0693 0x0548 ============================================================
22:40:30.0761 0x0548 KLMD registered as C:\WINDOWS\system32\drivers\41502501.sys
22:40:31.0495 0x0548 System UUID: {248914FA-6665-5F4E-FC81-E6CFD449DD45}
22:40:32.0182 0x0548 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:40:32.0183 0x0548 Drive \Device\Harddisk1\DR1 - Size: 0x2BAA1476000 ( 2794.52 Gb ), SectorSize: 0x200, Cylinders: 0x59101, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:40:32.0208 0x0548 ============================================================
22:40:32.0208 0x0548 \Device\Harddisk0\DR0:
22:40:32.0208 0x0548 GPT partitions:
22:40:32.0208 0x0548 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {47A0B8E9-3B9B-4709-B8C1-A00D25CD7091}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
22:40:32.0208 0x0548 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {E25C5647-104B-4C38-8929-C96E3DB3D88F}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x40000
22:40:32.0208 0x0548 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {5B734ACB-D605-4075-905D-5ACD7F3785C8}, Name: Basic data partition, StartLBA 0x72800, BlocksNum 0xDE41000
22:40:32.0208 0x0548 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {7FEB6D84-C265-4280-A9F5-E17434CE090D}, Name: , StartLBA 0xDEB3800, BlocksNum 0xE1000
22:40:32.0208 0x0548 MBR partitions:
22:40:32.0208 0x0548 \Device\Harddisk1\DR1:
22:40:32.0208 0x0548 GPT partitions:
22:40:32.0209 0x0548 \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {1D7423DE-8FBE-4533-9DF8-36EEAB23E921}, Name: Microsoft reserved partition, StartLBA 0x22, BlocksNum 0x40000
22:40:32.0209 0x0548 \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {02E9DCFC-F9E8-4ADB-A114-61720A877B2F}, Name: Basic data partition, StartLBA 0x40800, BlocksNum 0x5D4C9800
22:40:32.0209 0x0548 MBR partitions:
22:40:32.0209 0x0548 ============================================================
22:40:32.0210 0x0548 C: <-> \Device\Harddisk0\DR0\Partition3
22:40:32.0637 0x0548 K: <-> \Device\Harddisk1\DR1\Partition2
22:40:32.0637 0x0548 ============================================================
22:40:32.0637 0x0548 Initialize success
22:40:32.0637 0x0548 ============================================================
22:41:15.0333 0x1ed8 ============================================================
22:41:15.0333 0x1ed8 Scan started
22:41:15.0333 0x1ed8 Mode: Manual; SigCheck; TDLFS;
22:41:15.0333 0x1ed8 ============================================================
22:41:15.0333 0x1ed8 KSN ping started
22:41:17.0649 0x1ed8 KSN ping finished: true
22:41:18.0617 0x1ed8 ================ Scan system memory ========================
22:41:18.0617 0x1ed8 System memory - ok
22:41:18.0617 0x1ed8 ================ Scan services =============================
22:41:18.0665 0x1ed8 1394ohci - ok
22:41:18.0668 0x1ed8 3ware - ok
22:41:18.0677 0x1ed8 [ ADC420616C501B45D26C0FD3EF1E54E4, 29FC41D40A35AC5476E2A673CE5B12684E0CFA12A1AEBEEBE5883FBA5CA68B67 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
22:41:18.0728 0x1ed8 ACDaemon - ok
22:41:18.0737 0x1ed8 ACPI - ok
22:41:18.0741 0x1ed8 acpiex - ok
22:41:18.0745 0x1ed8 acpipagr - ok
22:41:18.0749 0x1ed8 AcpiPmi - ok
22:41:18.0752 0x1ed8 acpitime - ok
22:41:18.0757 0x1ed8 [ 5A8104D0DDA7C48D967F6A66AFF35CC5, 07E27BE72DAEABFA98B9A6AF3CCE706695D33A496F2308F7BAFFA86CF62E2B86 ] ADExchange C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe
22:41:18.0764 0x1ed8 ADExchange - ok
22:41:18.0770 0x1ed8 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
22:41:18.0778 0x1ed8 AdobeARMservice - ok
22:41:18.0812 0x1ed8 [ 7FCC00F1AB44098D5FBDEDB2A9D5384A, 81F04B77964B8A1C744BB432842CC10747F61FF1739AEDA4A91B6C342EEBCEDF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:41:18.0824 0x1ed8 AdobeFlashPlayerUpdateSvc - ok
22:41:18.0830 0x1ed8 ADP80XX - ok
22:41:18.0835 0x1ed8 AFD - ok
22:41:18.0839 0x1ed8 agp440 - ok
22:41:18.0843 0x1ed8 ahcache - ok
22:41:18.0847 0x1ed8 AJRouter - ok
22:41:18.0852 0x1ed8 ALG - ok
22:41:18.0861 0x1ed8 [ 410D4F98F5FE639B138E6FCD2AA59350, D806420FE9038FEAB1701284CD4EB21FCF8FACDEF4485D7B8EBB5E0DADE073BE ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
22:41:18.0880 0x1ed8 AMD External Events Utility - ok
22:41:18.0886 0x1ed8 [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64 C:\WINDOWS\System32\drivers\amdiox64.sys
22:41:18.0892 0x1ed8 amdiox64 - ok
22:41:18.0896 0x1ed8 AmdK8 - ok
22:41:18.0901 0x1ed8 [ B28145E732EDEBBEDABC311DBA56D52A, 43745C17A3AC2A7A6FB0DBF1A2158C6B365198581E8E3B1F7E7E9EE9763A2735 ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
22:41:18.0909 0x1ed8 amdkmafd - ok
22:41:18.0913 0x1ed8 amdkmdag - ok
22:41:18.0932 0x1ed8 [ FBA2E3005CEF307923064FDB6A38394B, E778588C02612397E0F5C978BD5CCBCE45F93405F00789A0E13E2E23E77FA8AF ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
22:41:18.0960 0x1ed8 amdkmdap - ok
22:41:18.0965 0x1ed8 AmdPPM - ok
22:41:18.0969 0x1ed8 amdsata - ok
22:41:18.0973 0x1ed8 amdsbs - ok
22:41:18.0978 0x1ed8 amdxata - ok
22:41:18.0984 0x1ed8 [ B934322C68C30DCECA96C0274A51F7B0, 5A0B10A9E662A0B0EEB951FFD2A82CC71D30939A78DAEBD26B3F58BB24351AC9 ] AODDriver C:\Program Files (x86)\Gigabyte\ET6\amd64\AODDriver.sys
22:41:18.0990 0x1ed8 AODDriver - ok
22:41:18.0996 0x1ed8 [ C3D487827E48CC5EC17994FEC5BDFF87, 5FCEA3EEA583755D0C9F6005ED3032E9DFECB57F504DC67701AE7D2D2631C30E ] AODDriver4.01 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
22:41:19.0002 0x1ed8 AODDriver4.01 - ok
22:41:19.0007 0x1ed8 AppHostSvc - ok
22:41:19.0010 0x1ed8 AppID - ok
22:41:19.0014 0x1ed8 AppIDSvc - ok
22:41:19.0018 0x1ed8 Appinfo - ok
22:41:19.0022 0x1ed8 AppReadiness - ok
22:41:19.0026 0x1ed8 AppXSvc - ok
22:41:19.0030 0x1ed8 arcsas - ok
22:41:19.0050 0x1ed8 aspnet_state - ok
22:41:19.0053 0x1ed8 AsyncMac - ok
22:41:19.0057 0x1ed8 atapi - ok
22:41:19.0066 0x1ed8 [ F06A4C6E131FD7D6E253FC0B6844298C, 431FEFB929D984C2573E186C65CE35385808FDB9795C776870AF39305E9465FA ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
22:41:19.0082 0x1ed8 AtiHDAudioService - ok
22:41:19.0094 0x1ed8 [ FC0E8778C000291CAF60EB88C011E931, 09BCCA3DE01021AEF76DFB46F01D21BA6FF409E816FA7547E5C3DFBF3A615ED2 ] atksgt C:\WINDOWS\system32\DRIVERS\atksgt.sys
22:41:19.0107 0x1ed8 atksgt - ok
22:41:19.0111 0x1ed8 AudioEndpointBuilder - ok
22:41:19.0115 0x1ed8 Audiosrv - ok
22:41:19.0119 0x1ed8 AxInstSV - ok
22:41:19.0125 0x1ed8 b06bdrv - ok
22:41:19.0128 0x1ed8 BasicDisplay - ok
22:41:19.0132 0x1ed8 BasicRender - ok
22:41:19.0138 0x1ed8 bcmfn - ok
22:41:19.0143 0x1ed8 bcmfn2 - ok
22:41:19.0147 0x1ed8 BDESVC - ok
22:41:19.0151 0x1ed8 Beep - ok
22:41:19.0155 0x1ed8 BFE - ok
22:41:19.0160 0x1ed8 BITS - ok
22:41:19.0163 0x1ed8 bowser - ok
22:41:19.0167 0x1ed8 BrokerInfrastructure - ok
22:41:19.0171 0x1ed8 Browser - ok
22:41:19.0185 0x1ed8 [ 448917845F097FCE9D4554C3D2001EF3, BDCBEC01579D7CF28963E4E13CDC5B26E4B69CA24FA2CC4D6E24CAE0DDBCB3FE ] BRSptStub C:\ProgramData\BitRaider\BRSptStub.exe
22:41:19.0199 0x1ed8 BRSptStub - ok
22:41:19.0213 0x1ed8 [ 78561B78811A147B99CB47EBBD2D2847, 4EF1ED64CAF0549B43A660FF70D5035DFD59CCD22E7353150E8A13944C936520 ] BRSptSvc C:\ProgramData\BitRaider\BRSptSvc.exe
22:41:19.0229 0x1ed8 BRSptSvc - ok
22:41:19.0235 0x1ed8 BthAvrcpTg - ok
22:41:19.0238 0x1ed8 BthHFEnum - ok
22:41:19.0242 0x1ed8 bthhfhid - ok
22:41:19.0246 0x1ed8 BthHFSrv - ok
22:41:19.0250 0x1ed8 BTHMODEM - ok
22:41:19.0258 0x1ed8 bthserv - ok
22:41:19.0262 0x1ed8 buttonconverter - ok
22:41:19.0266 0x1ed8 CapImg - ok
22:41:19.0270 0x1ed8 cdfs - ok
22:41:19.0275 0x1ed8 CDPSvc - ok
22:41:19.0279 0x1ed8 cdrom - ok
22:41:19.0283 0x1ed8 CertPropSvc - ok
22:41:19.0287 0x1ed8 circlass - ok
22:41:19.0292 0x1ed8 CLFS - ok
22:41:19.0296 0x1ed8 ClipSVC - ok
22:41:19.0309 0x1ed8 CmBatt - ok
22:41:19.0312 0x1ed8 CNG - ok
22:41:19.0316 0x1ed8 cnghwassist - ok
22:41:19.0333 0x1ed8 CompositeBus - ok
22:41:19.0337 0x1ed8 COMSysApp - ok
22:41:19.0341 0x1ed8 condrv - ok
22:41:19.0345 0x1ed8 CoreMessagingRegistrar - ok
22:41:19.0353 0x1ed8 CryptSvc - ok
22:41:19.0358 0x1ed8 dam - ok
22:41:19.0364 0x1ed8 [ A4700D1F78539C0ED32FA50E64F9C692, 5CB03B5F36307BA152245BAD29CB2AC703BBE8197ABC0338A7092ADEA1C3221A ] dc3d C:\WINDOWS\System32\drivers\dc3d.sys
22:41:19.0377 0x1ed8 dc3d - ok
22:41:19.0382 0x1ed8 DcomLaunch - ok
22:41:19.0386 0x1ed8 DcpSvc - ok
22:41:19.0390 0x1ed8 defragsvc - ok
22:41:19.0394 0x1ed8 DeviceAssociationService - ok
22:41:19.0398 0x1ed8 DeviceInstall - ok
22:41:19.0402 0x1ed8 DevQueryBroker - ok
22:41:19.0406 0x1ed8 Dfsc - ok
22:41:19.0411 0x1ed8 Dhcp - ok
22:41:19.0415 0x1ed8 diagnosticshub.standardcollector.service - ok
22:41:19.0419 0x1ed8 DiagTrack - ok
22:41:19.0423 0x1ed8 disk - ok
22:41:19.0427 0x1ed8 DmEnrollmentSvc - ok
22:41:19.0431 0x1ed8 dmvsc - ok
22:41:19.0435 0x1ed8 dmwappushservice - ok
22:41:19.0439 0x1ed8 Dnscache - ok
22:41:19.0446 0x1ed8 dot3svc - ok
22:41:19.0450 0x1ed8 DPS - ok
22:41:19.0454 0x1ed8 drmkaud - ok
22:41:19.0459 0x1ed8 DsmSvc - ok
22:41:19.0463 0x1ed8 DsSvc - ok
22:41:19.0467 0x1ed8 DXGKrnl - ok
22:41:19.0471 0x1ed8 Eaphost - ok
22:41:19.0476 0x1ed8 ebdrv - ok
22:41:19.0480 0x1ed8 EFS - ok
22:41:19.0484 0x1ed8 EhStorClass - ok
22:41:19.0488 0x1ed8 EhStorTcgDrv - ok
22:41:19.0492 0x1ed8 embeddedmode - ok
22:41:19.0496 0x1ed8 EntAppSvc - ok
22:41:19.0500 0x1ed8 ErrDev - ok
22:41:19.0506 0x1ed8 [ B8FA96995726D1FA58476E352C02AD82, 6BBD49B16A19CC3C3337707EFBEB6BC355CB077CBBBC99D8985A3FBB6E871A89 ] ES lite Service C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
22:41:19.0513 0x1ed8 ES lite Service - ok
22:41:19.0520 0x1ed8 EventSystem - ok
22:41:19.0526 0x1ed8 exfat - ok
22:41:19.0529 0x1ed8 fastfat - ok
22:41:19.0533 0x1ed8 Fax - ok
22:41:19.0537 0x1ed8 fdc - ok
22:41:19.0543 0x1ed8 fdPHost - ok
22:41:19.0546 0x1ed8 FDResPub - ok
22:41:19.0550 0x1ed8 fhsvc - ok
22:41:19.0554 0x1ed8 FileCrypt - ok
22:41:19.0559 0x1ed8 FileInfo - ok
22:41:19.0563 0x1ed8 Filetrace - ok
22:41:19.0567 0x1ed8 flpydisk - ok
22:41:19.0571 0x1ed8 FltMgr - ok
22:41:19.0576 0x1ed8 FontCache - ok
22:41:19.0579 0x1ed8 FontCache3.0.0.0 - ok
22:41:19.0584 0x1ed8 FsDepends - ok
22:41:19.0587 0x1ed8 Fs_Rec - ok
22:41:19.0592 0x1ed8 fvevol - ok
22:41:19.0596 0x1ed8 gagp30kx - ok
22:41:19.0600 0x1ed8 [ 7907E14F9BCF3A4689C9A74A1A873CB6, 17927B93B2D6AB4271C158F039CAE2D60591D6A14458F5A5690AEC86F5D54229 ] gdrv C:\Windows\gdrv.sys
22:41:19.0606 0x1ed8 gdrv - ok
22:41:19.0610 0x1ed8 gencounter - ok
22:41:19.0613 0x1ed8 genericusbfn - ok
22:41:19.0617 0x1ed8 GPIOClx0101 - ok
22:41:19.0621 0x1ed8 gpsvc - ok
22:41:19.0625 0x1ed8 GpuEnergyDrv - ok
22:41:19.0632 0x1ed8 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:41:19.0641 0x1ed8 gupdate - ok
22:41:19.0647 0x1ed8 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:41:19.0655 0x1ed8 gupdatem - ok
22:41:19.0658 0x1ed8 [ 8126331FBD4ED29EB3B356F9C905064D, A58BCE904591DD762410E99960FD956FB579C2CE78FA7BF1406075D29537EF82 ] GVTDrv64 C:\Windows\GVTDrv64.sys
22:41:19.0665 0x1ed8 GVTDrv64 - ok
22:41:19.0668 0x1ed8 HDAudBus - ok
22:41:19.0673 0x1ed8 HidBatt - ok
22:41:19.0677 0x1ed8 HidBth - ok
22:41:19.0680 0x1ed8 hidi2c - ok
22:41:19.0685 0x1ed8 hidinterrupt - ok
22:41:19.0689 0x1ed8 HidIr - ok
22:41:19.0693 0x1ed8 hidserv - ok
22:41:19.0697 0x1ed8 HidUsb - ok
22:41:19.0701 0x1ed8 HomeGroupListener - ok
22:41:19.0704 0x1ed8 HomeGroupProvider - ok
22:41:19.0708 0x1ed8 HpSAMD - ok
22:41:19.0713 0x1ed8 [ CB5A8B34FA37AE53053F2D3DF05AC1E6, 2C7357079A66AE609F49900181B013E735B4A01C45DA316CD1E8698F93DE6EA8 ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
22:41:19.0722 0x1ed8 HPSupportSolutionsFrameworkService - ok
22:41:19.0726 0x1ed8 HTTP - ok
22:41:19.0730 0x1ed8 hwpolicy - ok
22:41:19.0734 0x1ed8 hyperkbd - ok
22:41:19.0737 0x1ed8 i8042prt - ok
22:41:19.0742 0x1ed8 iai2c - ok
22:41:19.0746 0x1ed8 iaLPSS2i_I2C - ok
22:41:19.0750 0x1ed8 iaLPSSi_GPIO - ok
22:41:19.0754 0x1ed8 iaLPSSi_I2C - ok
22:41:19.0758 0x1ed8 iaStorAV - ok
22:41:19.0763 0x1ed8 iaStorV - ok
22:41:19.0767 0x1ed8 ibbus - ok
22:41:19.0771 0x1ed8 icssvc - ok
22:41:19.0777 0x1ed8 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
22:41:19.0783 0x1ed8 IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
22:41:22.0105 0x1ed8 Detect skipped due to KSN trusted
22:41:22.0105 0x1ed8 IDriverT - ok
22:41:22.0120 0x1ed8 IEEtwCollectorService - ok
22:41:22.0131 0x1ed8 IKEEXT - ok
22:41:22.0264 0x1ed8 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
22:41:22.0371 0x1ed8 IntcAzAudAddService - ok
22:41:22.0381 0x1ed8 intelide - ok
22:41:22.0385 0x1ed8 intelpep - ok
22:41:22.0389 0x1ed8 intelppm - ok
22:41:22.0395 0x1ed8 IoQos - ok
22:41:22.0398 0x1ed8 IpFilterDriver - ok
22:41:22.0402 0x1ed8 iphlpsvc - ok
22:41:22.0406 0x1ed8 IPMIDRV - ok
22:41:22.0410 0x1ed8 IPNAT - ok
22:41:22.0414 0x1ed8 IRENUM - ok
22:41:22.0418 0x1ed8 isapnp - ok
22:41:22.0422 0x1ed8 iScsiPrt - ok
22:41:22.0426 0x1ed8 kbdclass - ok
22:41:22.0430 0x1ed8 kbdhid - ok
22:41:22.0434 0x1ed8 kdnic - ok
22:41:22.0438 0x1ed8 KeyIso - ok
22:41:22.0442 0x1ed8 KSecDD - ok
22:41:22.0446 0x1ed8 KSecPkg - ok
22:41:22.0450 0x1ed8 ksthunk - ok
22:41:22.0454 0x1ed8 KtmRm - ok
22:41:22.0458 0x1ed8 LanmanServer - ok
22:41:22.0462 0x1ed8 LanmanWorkstation - ok
22:41:22.0468 0x1ed8 lfsvc - ok
22:41:22.0471 0x1ed8 LicenseManager - ok
22:41:22.0477 0x1ed8 [ 156AB2E56DC3CA0B582E3362E07CDED7, 7B03929273861690DC42E4C686E655BE5A1C60136AE5E739D7E62306AFD4AB9A ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys
22:41:22.0484 0x1ed8 lirsgt - ok
22:41:22.0487 0x1ed8 lltdio - ok
22:41:22.0491 0x1ed8 lltdsvc - ok
22:41:22.0498 0x1ed8 lmhosts - ok
22:41:22.0503 0x1ed8 LSI_SAS - ok
22:41:22.0507 0x1ed8 LSI_SAS2i - ok
22:41:22.0511 0x1ed8 LSI_SAS3i - ok
22:41:22.0516 0x1ed8 LSI_SSS - ok
22:41:22.0520 0x1ed8 LSM - ok
22:41:22.0524 0x1ed8 luafv - ok
22:41:22.0528 0x1ed8 [ 4CB64D7458ABD8396BCD389A69C8FC80, 99B363E6A3C3920002F9FA98E2AAE42C24F072CA03CD5DD9DC8881EC495F3C93 ] lvpepf64 C:\WINDOWS\system32\DRIVERS\lv302a64.sys
22:41:22.0535 0x1ed8 lvpepf64 - ok
22:41:22.0540 0x1ed8 [ 0034F69D0007D3F77F6B96FA51228E85, 2A8B4ABF4AFE5E5F272678053399E3664D32F6CE2AEE34C8944C4E79973712A3 ] LVUSBS64 C:\WINDOWS\system32\drivers\LVUSBS64.sys
22:41:22.0546 0x1ed8 LVUSBS64 - ok
22:41:22.0550 0x1ed8 MapsBroker - ok
22:41:22.0555 0x1ed8 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
22:41:22.0561 0x1ed8 MBAMProtector - ok
22:41:22.0598 0x1ed8 [ AB176B9E59C0435499D83047D84EDD59, 85B826A3972CE9AD885313B69B9C60328B850257667D0EB65DDE890D0BB06361 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
22:41:22.0636 0x1ed8 MBAMScheduler - ok
22:41:22.0667 0x1ed8 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
22:41:22.0697 0x1ed8 MBAMService - ok
22:41:22.0707 0x1ed8 [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
22:41:22.0716 0x1ed8 MBAMSwissArmy - ok
22:41:22.0722 0x1ed8 [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
22:41:22.0728 0x1ed8 MBAMWebAccessControl - ok
22:41:22.0741 0x1ed8 [ 11F714F85530A2BD134074DC30E99FCA, BDB5FD3B2DF4ADD19B31965B3E789768B59E872B3EA85912B1FFB32B2AF9D5D8 ] MDM C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
22:41:22.0753 0x1ed8 MDM - ok
22:41:22.0758 0x1ed8 megasas - ok
22:41:22.0762 0x1ed8 megasr - ok
22:41:22.0766 0x1ed8 MessagingService - ok
22:41:22.0776 0x1ed8 mlx4_bus - ok
22:41:22.0779 0x1ed8 MMCSS - ok
22:41:22.0783 0x1ed8 Modem - ok
22:41:22.0787 0x1ed8 monitor - ok
22:41:22.0790 0x1ed8 mouclass - ok
22:41:22.0795 0x1ed8 mouhid - ok
22:41:22.0798 0x1ed8 mountmgr - ok
22:41:22.0806 0x1ed8 [ CC11EEB7AF4617D65DF0E9A21FC1ABD0, A683A5FB26E1B9FB4EEB40A9C7186F8433E3FB0A45848DF6102EF07B4DC75AC8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
22:41:22.0817 0x1ed8 MozillaMaintenance - ok
22:41:22.0820 0x1ed8 mpsdrv - ok
22:41:22.0823 0x1ed8 MpsSvc - ok
22:41:22.0828 0x1ed8 MQAC - ok
22:41:22.0832 0x1ed8 MRxDAV - ok
22:41:22.0836 0x1ed8 mrxsmb - ok
22:41:22.0840 0x1ed8 mrxsmb10 - ok
22:41:22.0844 0x1ed8 mrxsmb20 - ok
22:41:22.0850 0x1ed8 MsBridge - ok
22:41:22.0854 0x1ed8 MSDTC - ok
22:41:22.0861 0x1ed8 Msfs - ok
22:41:22.0867 0x1ed8 msgpiowin32 - ok
22:41:22.0870 0x1ed8 mshidkmdf - ok
22:41:22.0874 0x1ed8 mshidumdf - ok
22:41:22.0878 0x1ed8 msisadrv - ok
22:41:22.0883 0x1ed8 MSiSCSI - ok
22:41:22.0886 0x1ed8 msiserver - ok
22:41:22.0890 0x1ed8 MSKSSRV - ok
22:41:22.0894 0x1ed8 MsLldp - ok
22:41:22.0900 0x1ed8 MSMQ - ok
22:41:22.0903 0x1ed8 MSPCLOCK - ok
22:41:22.0907 0x1ed8 MSPQM - ok
22:41:22.0911 0x1ed8 MsRPC - ok
22:41:22.0918 0x1ed8 mssmbios - ok
22:41:22.0922 0x1ed8 MSTEE - ok
22:41:22.0926 0x1ed8 MTConfig - ok
22:41:22.0930 0x1ed8 Mup - ok
22:41:22.0934 0x1ed8 mvumis - ok
22:41:22.0940 0x1ed8 NativeWifiP - ok
22:41:22.0956 0x1ed8 [ 9D1CCE440552500DED3A62F9D779CDB4, C6B3B1C891A8BA3F91CC1EC21919C4F80F4C9CAF88971AB6CA11F09820601EBD ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
22:41:22.0972 0x1ed8 NAUpdate - ok
22:41:22.0977 0x1ed8 NcaSvc - ok
22:41:22.0980 0x1ed8 NcbService - ok
22:41:22.0985 0x1ed8 NcdAutoSetup - ok
22:41:22.0988 0x1ed8 ndfltr - ok
22:41:22.0992 0x1ed8 NDIS - ok
22:41:22.0996 0x1ed8 NdisCap - ok
22:41:23.0000 0x1ed8 NdisImPlatform - ok
22:41:23.0004 0x1ed8 NdisTapi - ok
22:41:23.0008 0x1ed8 Ndisuio - ok
22:41:23.0012 0x1ed8 NdisVirtualBus - ok
22:41:23.0016 0x1ed8 NdisWan - ok
22:41:23.0020 0x1ed8 ndiswanlegacy - ok
22:41:23.0024 0x1ed8 ndproxy - ok
22:41:23.0028 0x1ed8 Ndu - ok
22:41:23.0033 0x1ed8 NetBIOS - ok
22:41:23.0038 0x1ed8 NetBT - ok
22:41:23.0042 0x1ed8 Netlogon - ok
22:41:23.0046 0x1ed8 Netman - ok
22:41:23.0054 0x1ed8 NetMsmqActivator - ok
22:41:23.0057 0x1ed8 NetPipeActivator - ok
22:41:23.0062 0x1ed8 netprofm - ok
22:41:23.0065 0x1ed8 NetSetupSvc - ok
22:41:23.0068 0x1ed8 NetTcpActivator - ok
22:41:23.0072 0x1ed8 NetTcpPortSharing - ok
22:41:23.0079 0x1ed8 NgcCtnrSvc - ok
22:41:23.0082 0x1ed8 NgcSvc - ok
22:41:23.0086 0x1ed8 NlaSvc - ok
22:41:23.0090 0x1ed8 Npfs - ok
22:41:23.0094 0x1ed8 npsvctrig - ok
22:41:23.0099 0x1ed8 nsi - ok
22:41:23.0103 0x1ed8 nsiproxy - ok
22:41:23.0110 0x1ed8 NTFS - ok
22:41:23.0114 0x1ed8 Null - ok
22:41:23.0118 0x1ed8 nvraid - ok
22:41:23.0122 0x1ed8 nvstor - ok
22:41:23.0126 0x1ed8 nv_agp - ok
22:41:23.0130 0x1ed8 OneSyncSvc - ok
22:41:23.0139 0x1ed8 [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:41:23.0146 0x1ed8 ose - ok
22:41:23.0152 0x1ed8 p2pimsvc - ok
22:41:23.0156 0x1ed8 p2psvc - ok
22:41:23.0160 0x1ed8 Parport - ok
22:41:23.0166 0x1ed8 partmgr - ok
22:41:23.0170 0x1ed8 PcaSvc - ok
22:41:23.0173 0x1ed8 pci - ok
22:41:23.0177 0x1ed8 pciide - ok
22:41:23.0183 0x1ed8 pcmcia - ok
22:41:23.0186 0x1ed8 pcw - ok
22:41:23.0190 0x1ed8 pdc - ok
22:41:23.0194 0x1ed8 PEAUTH - ok
22:41:23.0200 0x1ed8 percsas2i - ok
22:41:23.0203 0x1ed8 percsas3i - ok
22:41:23.0232 0x1ed8 PerfHost - ok
22:41:23.0241 0x1ed8 PhoneSvc - ok
22:41:23.0269 0x1ed8 [ 37EA62238E17AE88E4713D9246CA1C1C, 3D0D62472C00526702F4FF699A06A9C944DF7618EBF59A44CBBC0EE6154BE64B ] PID_PEPI C:\WINDOWS\system32\DRIVERS\LV302V64.SYS
22:41:23.0300 0x1ed8 PID_PEPI - ok
22:41:23.0307 0x1ed8 PimIndexMaintenanceSvc - ok
22:41:23.0314 0x1ed8 pla - ok
22:41:23.0318 0x1ed8 PlugPlay - ok
22:41:23.0322 0x1ed8 PNRPAutoReg - ok
22:41:23.0325 0x1ed8 PNRPsvc - ok
22:41:23.0331 0x1ed8 [ 4F0878FD62D5F7444C5F1C4C66D9D293, B381217D6202C06EE992EBDE061FA20376FF71F698022D0A80168CCD1059453C ] Point64 C:\WINDOWS\System32\drivers\point64.sys
22:41:23.0339 0x1ed8 Point64 - ok
22:41:23.0342 0x1ed8 PolicyAgent - ok
22:41:23.0348 0x1ed8 Power - ok
22:41:23.0352 0x1ed8 PptpMiniport - ok
22:41:23.0439 0x1ed8 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
22:41:23.0566 0x1ed8 PrintNotify - ok
22:41:23.0576 0x1ed8 Processor - ok
22:41:23.0580 0x1ed8 ProfSvc - ok
22:41:23.0584 0x1ed8 Psched - ok
22:41:23.0588 0x1ed8 QWAVE - ok
22:41:23.0592 0x1ed8 QWAVEdrv - ok
22:41:23.0596 0x1ed8 RasAcd - ok
22:41:23.0600 0x1ed8 RasAgileVpn - ok
22:41:23.0604 0x1ed8 RasAuto - ok
22:41:23.0607 0x1ed8 Rasl2tp - ok
22:41:23.0611 0x1ed8 RasMan - ok
22:41:23.0615 0x1ed8 RasPppoe - ok
22:41:23.0619 0x1ed8 RasSstp - ok
22:41:23.0623 0x1ed8 rdbss - ok
22:41:23.0629 0x1ed8 rdpbus - ok
22:41:23.0633 0x1ed8 RDPDR - ok
22:41:23.0641 0x1ed8 RdpVideoMiniport - ok
22:41:23.0644 0x1ed8 rdyboost - ok
22:41:23.0649 0x1ed8 ReFSv1 - ok
22:41:23.0653 0x1ed8 RemoteAccess - ok
22:41:23.0657 0x1ed8 RemoteRegistry - ok
22:41:23.0660 0x1ed8 RetailDemo - ok
22:41:23.0664 0x1ed8 RpcEptMapper - ok
22:41:23.0669 0x1ed8 RpcLocator - ok
22:41:23.0673 0x1ed8 RpcSs - ok
22:41:23.0677 0x1ed8 rspndr - ok
22:41:23.0682 0x1ed8 rt640x64 - ok
22:41:23.0686 0x1ed8 s3cap - ok
22:41:23.0690 0x1ed8 SamSs - ok
22:41:23.0694 0x1ed8 sbp2port - ok
22:41:23.0698 0x1ed8 SCardSvr - ok
22:41:23.0703 0x1ed8 ScDeviceEnum - ok
22:41:23.0707 0x1ed8 scfilter - ok
22:41:23.0711 0x1ed8 Schedule - ok
22:41:23.0714 0x1ed8 SCPolicySvc - ok
22:41:23.0720 0x1ed8 sdbus - ok
22:41:23.0723 0x1ed8 SDRSVC - ok
22:41:23.0727 0x1ed8 sdstor - ok
22:41:23.0731 0x1ed8 seclogon - ok
22:41:23.0736 0x1ed8 SENS - ok
22:41:23.0740 0x1ed8 SensorDataService - ok
22:41:23.0744 0x1ed8 SensorService - ok
22:41:23.0748 0x1ed8 SensrSvc - ok
22:41:23.0753 0x1ed8 SerCx - ok
22:41:23.0757 0x1ed8 SerCx2 - ok
22:41:23.0760 0x1ed8 Serenum - ok
22:41:23.0764 0x1ed8 Serial - ok
22:41:23.0769 0x1ed8 sermouse - ok
22:41:23.0779 0x1ed8 SessionEnv - ok
22:41:23.0788 0x1ed8 sfloppy - ok
22:41:23.0792 0x1ed8 SharedAccess - ok
22:41:23.0796 0x1ed8 ShellHWDetection - ok
22:41:23.0801 0x1ed8 SiSRaid2 - ok
22:41:23.0805 0x1ed8 SiSRaid4 - ok
22:41:23.0817 0x1ed8 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:41:23.0832 0x1ed8 SkypeUpdate - ok
22:41:23.0836 0x1ed8 smphost - ok
22:41:23.0840 0x1ed8 SmsRouter - ok
22:41:23.0850 0x1ed8 SNMPTRAP - ok
22:41:23.0854 0x1ed8 spaceport - ok
22:41:23.0857 0x1ed8 SpbCx - ok
22:41:23.0862 0x1ed8 Spooler - ok
22:41:23.0866 0x1ed8 sppsvc - ok
22:41:23.0870 0x1ed8 srv - ok
22:41:23.0873 0x1ed8 srv2 - ok
22:41:23.0878 0x1ed8 srvnet - ok
22:41:23.0883 0x1ed8 SSDPSRV - ok
22:41:23.0887 0x1ed8 SstpSvc - ok
22:41:23.0891 0x1ed8 StateRepository - ok
22:41:23.0912 0x1ed8 [ 3013B9B3791A4843FADF5CEFED399B1D, 52BCA3A59F435CE57076DA64C2BD959C9A16A7F5BC1FA0D312186E5C0B82C025 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
22:41:23.0936 0x1ed8 Steam Client Service - ok
22:41:23.0941 0x1ed8 stexstor - ok
22:41:23.0945 0x1ed8 stisvc - ok
22:41:23.0948 0x1ed8 storahci - ok
22:41:23.0953 0x1ed8 storflt - ok
22:41:23.0957 0x1ed8 stornvme - ok
22:41:23.0961 0x1ed8 storqosflt - ok
22:41:23.0966 0x1ed8 StorSvc - ok
22:41:23.0969 0x1ed8 storufs - ok
22:41:23.0973 0x1ed8 storvsc - ok
22:41:23.0977 0x1ed8 svsvc - ok
22:41:23.0981 0x1ed8 swenum - ok
22:41:23.0985 0x1ed8 swprv - ok
22:41:23.0989 0x1ed8 Synth3dVsc - ok
22:41:23.0993 0x1ed8 SysMain - ok
22:41:23.0997 0x1ed8 SystemEventsBroker - ok
22:41:24.0001 0x1ed8 TabletInputService - ok
22:41:24.0004 0x1ed8 TapiSrv - ok
22:41:24.0008 0x1ed8 Tcpip - ok
22:41:24.0012 0x1ed8 Tcpip6 - ok
22:41:24.0018 0x1ed8 tcpipreg - ok
22:41:24.0024 0x1ed8 tdx - ok
22:41:24.0028 0x1ed8 terminpt - ok
22:41:24.0032 0x1ed8 TermService - ok
22:41:24.0037 0x1ed8 Themes - ok
22:41:24.0041 0x1ed8 TieringEngineService - ok
22:41:24.0045 0x1ed8 tiledatamodelsvc - ok
22:41:24.0049 0x1ed8 TimeBroker - ok
22:41:24.0053 0x1ed8 TPM - ok
22:41:24.0057 0x1ed8 TrkWks - ok
22:41:24.0060 0x1ed8 TrustedInstaller - ok
22:41:24.0068 0x1ed8 tsusbflt - ok
22:41:24.0073 0x1ed8 TsUsbGD - ok
22:41:24.0076 0x1ed8 tunnel - ok
22:41:24.0080 0x1ed8 tzautoupdate - ok
22:41:24.0085 0x1ed8 uagp35 - ok
22:41:24.0088 0x1ed8 UASPStor - ok
22:41:24.0092 0x1ed8 UcmCx0101 - ok
22:41:24.0096 0x1ed8 UcmUcsi - ok
22:41:24.0102 0x1ed8 Ucx01000 - ok
22:41:24.0106 0x1ed8 UdeCx - ok
22:41:24.0110 0x1ed8 udfs - ok
22:41:24.0114 0x1ed8 UEFI - ok
22:41:24.0119 0x1ed8 Ufx01000 - ok
22:41:24.0123 0x1ed8 UfxChipidea - ok
22:41:24.0127 0x1ed8 ufxsynopsys - ok
22:41:24.0136 0x1ed8 UI0Detect - ok
22:41:24.0139 0x1ed8 uliagpkx - ok
22:41:24.0143 0x1ed8 umbus - ok
22:41:24.0147 0x1ed8 UmPass - ok
22:41:24.0152 0x1ed8 UmRdpService - ok
22:41:24.0156 0x1ed8 UnistoreSvc - ok
22:41:24.0164 0x1ed8 upnphost - ok
22:41:24.0169 0x1ed8 UrsChipidea - ok
22:41:24.0173 0x1ed8 UrsCx01000 - ok
22:41:24.0177 0x1ed8 UrsSynopsys - ok
22:41:24.0181 0x1ed8 usbaudio - ok
22:41:24.0185 0x1ed8 usbccgp - ok
22:41:24.0189 0x1ed8 usbcir - ok
22:41:24.0192 0x1ed8 usbehci - ok
22:41:24.0196 0x1ed8 usbhub - ok
22:41:24.0202 0x1ed8 USBHUB3 - ok
22:41:24.0206 0x1ed8 usbohci - ok
22:41:24.0210 0x1ed8 usbprint - ok
22:41:24.0215 0x1ed8 [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
22:41:24.0229 0x1ed8 usbscan - ok
22:41:24.0233 0x1ed8 usbser - ok
22:41:24.0237 0x1ed8 USBSTOR - ok
22:41:24.0241 0x1ed8 usbuhci - ok
22:41:24.0245 0x1ed8 USBXHCI - ok
22:41:24.0250 0x1ed8 UserDataSvc - ok
22:41:24.0259 0x1ed8 UserManager - ok
22:41:24.0263 0x1ed8 UsoSvc - ok
22:41:24.0269 0x1ed8 VaultSvc - ok
22:41:24.0272 0x1ed8 vdrvroot - ok
22:41:24.0277 0x1ed8 vds - ok
22:41:24.0280 0x1ed8 VerifierExt - ok
22:41:24.0286 0x1ed8 vhdmp - ok
22:41:24.0289 0x1ed8 vhf - ok
22:41:24.0293 0x1ed8 vmbus - ok
22:41:24.0297 0x1ed8 VMBusHID - ok
22:41:24.0302 0x1ed8 vmicguestinterface - ok
22:41:24.0305 0x1ed8 vmicheartbeat - ok
22:41:24.0309 0x1ed8 vmickvpexchange - ok
22:41:24.0313 0x1ed8 vmicrdv - ok
22:41:24.0319 0x1ed8 vmicshutdown - ok
22:41:24.0322 0x1ed8 vmictimesync - ok
22:41:24.0326 0x1ed8 vmicvmsession - ok
22:41:24.0330 0x1ed8 vmicvss - ok
22:41:24.0335 0x1ed8 volmgr - ok
22:41:24.0340 0x1ed8 volmgrx - ok
22:41:24.0344 0x1ed8 volsnap - ok
22:41:24.0348 0x1ed8 vpci - ok
22:41:24.0352 0x1ed8 vsmraid - ok
22:41:24.0356 0x1ed8 VSS - ok
22:41:24.0360 0x1ed8 VSTXRAID - ok
22:41:24.0364 0x1ed8 vwifibus - ok
22:41:24.0369 0x1ed8 vwififlt - ok
22:41:24.0373 0x1ed8 W32Time - ok
22:41:24.0377 0x1ed8 w3logsvc - ok
22:41:24.0381 0x1ed8 W3SVC - ok
22:41:24.0385 0x1ed8 WacomPen - ok
22:41:24.0389 0x1ed8 WalletService - ok
22:41:24.0393 0x1ed8 wanarp - ok
22:41:24.0397 0x1ed8 wanarpv6 - ok
22:41:24.0402 0x1ed8 WAS - ok
22:41:24.0406 0x1ed8 wbengine - ok
22:41:24.0410 0x1ed8 WbioSrvc - ok
22:41:24.0414 0x1ed8 Wcmsvc - ok
22:41:24.0419 0x1ed8 wcncsvc - ok
22:41:24.0423 0x1ed8 WcsPlugInService - ok
22:41:24.0427 0x1ed8 WdBoot - ok
22:41:24.0431 0x1ed8 Wdf01000 - ok
22:41:24.0436 0x1ed8 WdFilter - ok
22:41:24.0440 0x1ed8 WdiServiceHost - ok
22:41:24.0443 0x1ed8 WdiSystemHost - ok
22:41:24.0447 0x1ed8 wdiwifi - ok
22:41:24.0452 0x1ed8 WdNisDrv - ok
22:41:24.0455 0x1ed8 WdNisSvc - ok
22:41:24.0460 0x1ed8 WebClient - ok
22:41:24.0464 0x1ed8 Wecsvc - ok
22:41:24.0469 0x1ed8 WEPHOSTSVC - ok
22:41:24.0473 0x1ed8 wercplsupport - ok
22:41:24.0477 0x1ed8 WerSvc - ok
22:41:24.0481 0x1ed8 WFPLWFS - ok
22:41:24.0486 0x1ed8 WiaRpc - ok
22:41:24.0490 0x1ed8 WIMMount - ok
22:41:24.0493 0x1ed8 WinDefend - ok
22:41:24.0502 0x1ed8 WindowsTrustedRT - ok
22:41:24.0506 0x1ed8 WindowsTrustedRTProxy - ok
22:41:24.0510 0x1ed8 WinHttpAutoProxySvc - ok
22:41:24.0514 0x1ed8 WinMad - ok
22:41:24.0523 0x1ed8 Winmgmt - ok
22:41:24.0527 0x1ed8 WinRM - ok
22:41:24.0534 0x1ed8 WINUSB - ok
22:41:24.0538 0x1ed8 WinVerbs - ok
22:41:24.0542 0x1ed8 WlanSvc - ok
22:41:24.0546 0x1ed8 wlidsvc - ok
22:41:24.0550 0x1ed8 WmiAcpi - ok
22:41:24.0557 0x1ed8 wmiApSrv - ok
22:41:24.0560 0x1ed8 WMPNetworkSvc - ok
22:41:24.0569 0x1ed8 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
22:41:24.0584 0x1ed8 Wof - ok
22:41:24.0590 0x1ed8 workfolderssvc - ok
22:41:24.0594 0x1ed8 wpcfltr - ok
22:41:24.0598 0x1ed8 WPDBusEnum - ok
22:41:24.0603 0x1ed8 WpdUpFltr - ok
22:41:24.0607 0x1ed8 WpnService - ok
22:41:24.0611 0x1ed8 ws2ifsl - ok
22:41:24.0616 0x1ed8 wscsvc - ok
22:41:24.0620 0x1ed8 WSearch - ok
22:41:24.0626 0x1ed8 WSService - ok
22:41:24.0630 0x1ed8 wuauserv - ok
22:41:24.0634 0x1ed8 WudfPf - ok
22:41:24.0638 0x1ed8 WUDFRd - ok
22:41:24.0643 0x1ed8 wudfsvc - ok
22:41:24.0646 0x1ed8 WUDFWpdFs - ok
22:41:24.0651 0x1ed8 WwanSvc - ok
22:41:24.0655 0x1ed8 XblAuthManager - ok
22:41:24.0659 0x1ed8 XblGameSave - ok
22:41:24.0663 0x1ed8 xboxgip - ok
22:41:24.0668 0x1ed8 XboxNetApiSvc - ok
22:41:24.0672 0x1ed8 xinputhid - ok
22:41:24.0675 0x1ed8 ================ Scan global ===============================
22:41:24.0688 0x1ed8 [ Global ] - ok
22:41:24.0688 0x1ed8 ================ Scan MBR ==================================
22:41:24.0690 0x1ed8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:41:24.0709 0x1ed8 \Device\Harddisk0\DR0 - ok
22:41:24.0711 0x1ed8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
22:41:25.0222 0x1ed8 \Device\Harddisk1\DR1 - ok
22:41:25.0223 0x1ed8 ================ Scan VBR ==================================
22:41:25.0228 0x1ed8 [ D60CF777AB1CCCD5133A138BD5BE44E8 ] \Device\Harddisk0\DR0\Partition1
22:41:25.0230 0x1ed8 \Device\Harddisk0\DR0\Partition1 - ok
22:41:25.0238 0x1ed8 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition2
22:41:25.0238 0x1ed8 \Device\Harddisk0\DR0\Partition2 - ok
22:41:25.0247 0x1ed8 [ A4821B582435528D1A82E09545CD302C ] \Device\Harddisk0\DR0\Partition3
22:41:25.0250 0x1ed8 \Device\Harddisk0\DR0\Partition3 - ok
22:41:25.0256 0x1ed8 [ CA800C05831F7192EA3658F2D929C5AD ] \Device\Harddisk0\DR0\Partition4
22:41:25.0259 0x1ed8 \Device\Harddisk0\DR0\Partition4 - ok
22:41:25.0266 0x1ed8 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition1
22:41:25.0266 0x1ed8 \Device\Harddisk1\DR1\Partition1 - ok
22:41:25.0270 0x1ed8 [ 0D7E1DF21403A5E2D0DEF328DE3CCF44 ] \Device\Harddisk1\DR1\Partition2
22:41:25.0343 0x1ed8 \Device\Harddisk1\DR1\Partition2 - ok
22:41:25.0344 0x1ed8 ================ Scan generic autorun ======================
22:41:25.0706 0x1ed8 [ 65E8545F1297CD83534C354A7BED1848, 19B3F3C17A335837454DC1851C6436D0BB2D8B1595AEB4DC71265FB20868B48F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
22:41:26.0012 0x1ed8 RtHDVCpl - ok
22:41:26.0064 0x1ed8 [ 31821EC63BDEDE18E64C11F7248B32AB, 6982AE866F8EC7943FDB3E4B77B03542A2E3E07F080B8D806C4ED903DE3368CE ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
22:41:26.0101 0x1ed8 RtHDVBg_Dolby - ok
22:41:26.0165 0x1ed8 [ 5B72629C8144D1A96490D4C090D28DA1, 114891B9E7E05D2B86C8E3CD7B4096088491E338C3B1902F9352D40B47DD418C ] C:\Program Files\Microsoft IntelliPoint\ipoint.exe
22:41:26.0223 0x1ed8 IntelliPoint - ok
22:41:26.0337 0x1ed8 [ E250A6257C93C9C504497D85BBF9AB7A, 4CD2E5958A7658E3A533E26DDD29C843640C9086A11AA925DDB8F983D2AC0F25 ] C:\Program Files\AMD\CNext\CNext\cnext.exe
22:41:26.0447 0x1ed8 StartCN - ok
22:41:26.0493 0x1ed8 [ 470C28CC2368F1CB784255D0092CFDF1, 14105898E4BB4856D9EB3219EF5E851BFA2552FAB7170D1970D2EFFEF0ABC5B1 ] C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe
22:41:26.0529 0x1ed8 NBAgent - ok
22:41:26.0536 0x1ed8 [ 1F3FF6C062B311FE410EC89F6BFAC213, E7DCD366568321BDE5B801680B5D0DE30548C36CE58E326DA6C74537DCCAA49B ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
22:41:26.0543 0x1ed8 APSDaemon - ok
22:41:26.0555 0x1ed8 [ AF43C4F7F3C8BC95DAD95024F96CDC4A, 6348F6D8F301C5F7290B963D6923E389414ADFBCF6AED562A32245BCADC05580 ] C:\Program Files (x86)\QuickTime\QTTask.exe
22:41:26.0573 0x1ed8 QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
22:41:28.0894 0x1ed8 Detect skipped due to KSN trusted
22:41:28.0895 0x1ed8 QuickTime Task - ok
22:41:28.0963 0x1ed8 [ D658AB1B55127D18DCFBCAC8CAAEA522, 9FB818F3899542CB7F1B979644423A66842D98D1762B1C38AE04AEE23320DA8E ] K:\Programme\Scanjet200\HP Software Update\HPWuSchd2.exe
22:41:28.0981 0x1ed8 HP Software Update - ok
22:41:29.0010 0x1ed8 OneDriveSetup - ok
22:41:29.0013 0x1ed8 OneDriveSetup - ok
22:41:29.0035 0x1ed8 [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\Nutzer\AppData\Local\Microsoft\OneDrive\OneDrive.exe
22:41:29.0057 0x1ed8 OneDrive - ok
22:41:29.0064 0x1ed8 Uninstall C:\Users\Nutzer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64 - ok
22:41:29.0067 0x1ed8 OneDriveSetup - ok
22:41:29.0068 0x1ed8 WAB Migrate - ok
22:41:29.0069 0x1ed8 Waiting for KSN requests completion. In queue: 49
22:41:30.0070 0x1ed8 Waiting for KSN requests completion. In queue: 49
22:41:31.0070 0x1ed8 Waiting for KSN requests completion. In queue: 49
22:41:32.0114 0x1ed8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x61100 ( enabled : updated )
22:41:32.0122 0x1ed8 Win FW state via NFP2: enabled ( trusted )
22:41:34.0493 0x1ed8 ============================================================
22:41:34.0493 0x1ed8 Scan finished
22:41:34.0493 0x1ed8 ============================================================
22:41:34.0512 0x2268 Detected object count: 0
22:41:34.0512 0x2268 Actual detected object count: 0 |