Martin.9008 | 28.08.2016 16:04 | TDSSKller Code:
16:41:53.0484 0x1154 TDSS rootkit removing tool 3.1.0.11 Aug 5 2016 12:13:31
16:41:53.0484 0x1154 UEFI system
16:41:58.0034 0x1154 ============================================================
16:41:58.0034 0x1154 Current date / time: 2016/08/28 16:41:58.0034
16:41:58.0035 0x1154 SystemInfo:
16:41:58.0035 0x1154
16:41:58.0035 0x1154 OS Version: 10.0.10586 ServicePack: 0.0
16:41:58.0035 0x1154 Product type: Workstation
16:41:58.0035 0x1154 ComputerName: LAPTOP-MARTIN
16:41:58.0035 0x1154 UserName: Martin
16:41:58.0035 0x1154 Windows directory: C:\WINDOWS
16:41:58.0035 0x1154 System windows directory: C:\WINDOWS
16:41:58.0035 0x1154 Running under WOW64
16:41:58.0035 0x1154 Processor architecture: Intel x64
16:41:58.0035 0x1154 Number of processors: 4
16:41:58.0035 0x1154 Page size: 0x1000
16:41:58.0035 0x1154 Boot type: Normal boot
16:41:58.0035 0x1154 CodeIntegrityOptions = 0x00000001
16:41:58.0035 0x1154 ============================================================
16:41:58.0951 0x1154 KLMD registered as C:\WINDOWS\system32\drivers\74074566.sys
16:41:58.0951 0x1154 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 10586.545, osProperties = 0x19
16:42:00.0262 0x1154 System UUID: {34B26B61-8220-4638-323C-40A5C5B2118A}
16:42:01.0659 0x1154 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:42:01.0676 0x1154 ============================================================
16:42:01.0676 0x1154 \Device\Harddisk0\DR0:
16:42:01.0676 0x1154 GPT partitions:
16:42:01.0678 0x1154 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {47C292F1-3DC7-4D8F-9757-DD19AF73B9F5}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xC8000
16:42:01.0678 0x1154 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {FA027F16-B37B-4383-AC62-CE169939C995}, Name: EFI system partition, StartLBA 0xC8800, BlocksNum 0x82000
16:42:01.0678 0x1154 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {65E97C67-0B5A-47AD-9659-AFD4D17118D6}, Name: Microsoft reserved partition, StartLBA 0x14A800, BlocksNum 0x40000
16:42:01.0678 0x1154 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {9C553705-B9C3-43D6-B865-07BDEE7ADF77}, Name: Basic data partition, StartLBA 0x18A800, BlocksNum 0x38069800
16:42:01.0678 0x1154 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C11FE4C5-89D8-4908-8813-B0A1C6440898}, Name: Basic data partition, StartLBA 0x381F4000, BlocksNum 0x2192000
16:42:01.0678 0x1154 MBR partitions:
16:42:01.0678 0x1154 ============================================================
16:42:01.0766 0x1154 C: <-> \Device\Harddisk0\DR0\Partition4
16:42:01.0821 0x1154 D: <-> \Device\Harddisk0\DR0\Partition5
16:42:01.0821 0x1154 ============================================================
16:42:01.0821 0x1154 Initialize success
16:42:01.0821 0x1154 ============================================================
16:45:02.0397 0x1dcc ============================================================
16:45:02.0397 0x1dcc Scan started
16:45:02.0397 0x1dcc Mode: Manual; SigCheck; TDLFS;
16:45:02.0397 0x1dcc ============================================================
16:45:02.0397 0x1dcc KSN ping started
16:45:02.0951 0x1dcc KSN ping finished: true
16:45:09.0323 0x1dcc ================ Scan system memory ========================
16:45:09.0323 0x1dcc System memory - ok
16:45:09.0324 0x1dcc ================ Scan services =============================
16:45:09.0808 0x1dcc 1394ohci - ok
16:45:09.0815 0x1dcc 3ware - ok
16:45:09.0855 0x1dcc [ 899B7E724BF19F17978B6A37B864A277, F7D166DC5F7642D4B834B1E0D956929BA94F3E4D402989FC1A681A08FA1F86B6 ] Accelerometer C:\WINDOWS\system32\DRIVERS\Accelerometer.sys
16:45:10.0035 0x1dcc Accelerometer - ok
16:45:10.0070 0x1dcc ACPI - ok
16:45:10.0074 0x1dcc acpiex - ok
16:45:10.0079 0x1dcc acpipagr - ok
16:45:10.0096 0x1dcc AcpiPmi - ok
16:45:10.0100 0x1dcc acpitime - ok
16:45:10.0321 0x1dcc [ 68E7DEA59FDEF410BAF29FDB5B7A6EEF, B808FCF0C30B465A1330E47947B84FC722A3B4C46260E261C54B1EED725A288F ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:45:10.0370 0x1dcc AdobeARMservice - ok
16:45:10.0599 0x1dcc [ 32B31B696CB8E8F380831DFEB80A67E4, 8C8F6E16F2FB3E8F10569261B7712BBC931A2924B6C27D561E7F828041C4F3E6 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:45:10.0626 0x1dcc AdobeFlashPlayerUpdateSvc - ok
16:45:10.0707 0x1dcc ADP80XX - ok
16:45:10.0717 0x1dcc AFD - ok
16:45:10.0723 0x1dcc agp440 - ok
16:45:10.0750 0x1dcc ahcache - ok
16:45:10.0772 0x1dcc AJRouter - ok
16:45:10.0826 0x1dcc ALG - ok
16:45:10.0871 0x1dcc [ BBADD85854BFB5D43C60B7AC8EEA3DBA, 968C043ABEA46F5C79525863B3FE2681AC0FA4202036C9EFD20B408DECF407E2 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
16:45:10.0962 0x1dcc AMD External Events Utility - ok
16:45:10.0967 0x1dcc AmdK8 - ok
16:45:11.0012 0x1dcc amdkmdag - ok
16:45:11.0118 0x1dcc [ 17BA5C907E14947574CBB788F4CEB85F, EAA3DBF436637C58666A91905E388287FC54334EBB2589A00727EB09AC4870E3 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
16:45:11.0155 0x1dcc amdkmdap - ok
16:45:11.0259 0x1dcc [ 82D7250133CF669A294AF189910C8744, D6448B86B36FD777084755BB653452ACA72D1D0A41227B27E0073BC4A2DF9C8B ] amdkmpfd C:\WINDOWS\system32\drivers\amdkmpfd.sys
16:45:11.0381 0x1dcc amdkmpfd - ok
16:45:11.0388 0x1dcc AmdPPM - ok
16:45:11.0395 0x1dcc amdsata - ok
16:45:11.0402 0x1dcc amdsbs - ok
16:45:11.0409 0x1dcc amdxata - ok
16:45:11.0517 0x1dcc AppHostSvc - ok
16:45:11.0533 0x1dcc AppID - ok
16:45:11.0550 0x1dcc AppIDSvc - ok
16:45:11.0556 0x1dcc Appinfo - ok
16:45:11.0597 0x1dcc AppReadiness - ok
16:45:11.0694 0x1dcc AppXSvc - ok
16:45:11.0700 0x1dcc arcsas - ok
16:45:11.0853 0x1dcc aspnet_state - ok
16:45:11.0956 0x1dcc [ 1694434F5B9AB16772C7A8E2EF9134CA, B84FA624EB6D438BB01AB886AE85FA42BEA46F2E33454C6C4D9078015813CDB5 ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
16:45:12.0027 0x1dcc aswHwid - ok
16:45:12.0095 0x1dcc [ 786E8BCDFF674068F3C950615FC2E71C, B5803960297F9622F594EC113FF6C89221606FC6B26B02EA6F021BE38AA66794 ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
16:45:12.0193 0x1dcc aswKbd - ok
16:45:12.0212 0x1dcc [ 33D0DD0471FDF449C81338863FC63978, D5898B51B3BCE43E62D459CE808888085D82A4B9B284F90E3301CEF7C33C03E4 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
16:45:12.0281 0x1dcc aswMonFlt - ok
16:45:12.0378 0x1dcc [ DF190688D993A3DB227BFB0BB40BD7D4, C7EDA64AE84001089AE2085B8336B7572DEDDCC80EAAA05D73C9C675CAD8C511 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
16:45:12.0420 0x1dcc aswRdr - ok
16:45:12.0487 0x1dcc [ D873455DFA27680585AE238503917DF5, CAD9CBCD24F33FF8E49C77C795F8FE0540243E455A6FC9E3035B8C15C9EEBD6C ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
16:45:12.0599 0x1dcc aswRvrt - ok
16:45:12.0701 0x1dcc [ A371A06EC8F4830C263D3F5CA5A11B65, 62E55DD439C106184F3AF73198D5CEAB5828A0EE1E30A13C35103B1B57966AB6 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
16:45:12.0820 0x1dcc aswSnx - ok
16:45:12.0870 0x1dcc [ 6B7F6CE19A16240EE9DE2C528897ED9C, 3B7C24F5B152B408D87DA70B01AD2E744DCB877D46602C0620931FCADB275E17 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
16:45:12.0948 0x1dcc aswSP - ok
16:45:12.0988 0x1dcc [ 3575F9226251DE48E065ED5C384A21EF, 032F53FEEB0BB43F1AD673EE13F507D3A8AC10F78543EA1294C40BAA918ED323 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
16:45:13.0008 0x1dcc aswStm - ok
16:45:13.0069 0x1dcc [ 5C557767CFC14676DFBA5276BED228EB, 5DAEDCE074EC994947CE4B628717D056D2F5DA4EB1ADAA3E9BD62C56B18E2000 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
16:45:13.0201 0x1dcc aswVmm - ok
16:45:13.0208 0x1dcc AsyncMac - ok
16:45:13.0213 0x1dcc atapi - ok
16:45:13.0291 0x1dcc [ B4BDE3F758A34658A37DFED3D9783CD8, BC9F6B9BDD639457894DE0F596AB3A655374E078796762FE5E8E5414F0481208 ] atksgt C:\WINDOWS\system32\DRIVERS\atksgt.sys
16:45:13.0422 0x1dcc atksgt - ok
16:45:13.0477 0x1dcc AudioEndpointBuilder - ok
16:45:13.0555 0x1dcc Audiosrv - ok
16:45:13.0673 0x1dcc [ 3817558D8D5BBC8B0F190CF0D7C4720F, 7CD250DD22BE0E6CF6BEA639EA8220E46158CA7DF33FF803967CEAEA7FBD14E5 ] Autodesk Content Service C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
16:45:13.0693 0x1dcc Autodesk Content Service - detected UnsignedFile.Multi.Generic ( 1 )
16:45:13.0948 0x1dcc Detect skipped due to KSN trusted
16:45:13.0949 0x1dcc Autodesk Content Service - ok
16:45:14.0097 0x1dcc [ A24AF1F8186B4B69D54DCC4B059CA695, 882338FEF206231B9FD83787A8685A7B69D76A414923B511A8D6A7619CB86F87 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:45:14.0116 0x1dcc avast! Antivirus - ok
16:45:14.0179 0x1dcc AX88772 - ok
16:45:14.0191 0x1dcc AxInstSV - ok
16:45:14.0197 0x1dcc b06bdrv - ok
16:45:14.0210 0x1dcc BasicDisplay - ok
16:45:14.0217 0x1dcc BasicRender - ok
16:45:14.0227 0x1dcc bcmfn - ok
16:45:14.0234 0x1dcc bcmfn2 - ok
16:45:14.0258 0x1dcc BDESVC - ok
16:45:14.0267 0x1dcc Beep - ok
16:45:14.0277 0x1dcc BFE - ok
16:45:14.0330 0x1dcc BITS - ok
16:45:14.0427 0x1dcc [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
16:45:14.0449 0x1dcc Bonjour Service - ok
16:45:14.0452 0x1dcc bowser - ok
16:45:14.0476 0x1dcc BrokerInfrastructure - ok
16:45:14.0479 0x1dcc Browser - ok
16:45:14.0492 0x1dcc BthAvrcpTg - ok
16:45:14.0495 0x1dcc BthHFEnum - ok
16:45:14.0499 0x1dcc bthhfhid - ok
16:45:14.0514 0x1dcc BthHFSrv - ok
16:45:14.0517 0x1dcc BTHMODEM - ok
16:45:14.0566 0x1dcc bthserv - ok
16:45:14.0587 0x1dcc buttonconverter - ok
16:45:14.0593 0x1dcc CapImg - ok
16:45:14.0600 0x1dcc cdfs - ok
16:45:14.0663 0x1dcc CDPSvc - ok
16:45:14.0723 0x1dcc cdrom - ok
16:45:14.0731 0x1dcc CertPropSvc - ok
16:45:14.0778 0x1dcc circlass - ok
16:45:14.0877 0x1dcc [ 10831D30FF7FB1D9963C96AB0CAF925B, 17DCB70D9A7497F77BB3FAEAE6A1309E50930C2857068C6F6DAE54A46341CF64 ] cktSvc C:\Program Files (x86)\Uncheckit\cktSvc.exe
16:45:14.0897 0x1dcc cktSvc - ok
16:45:14.0901 0x1dcc CLFS - ok
16:45:14.0933 0x1dcc ClipSVC - ok
16:45:15.0032 0x1dcc [ 075CCE75090786F124573A788C8656E6, AA188CFF2F8EE2D9F50701AB2315D24E15D7715FD84F5054D3FC175D4BD35734 ] CLVirtualDrive C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys
16:45:15.0087 0x1dcc CLVirtualDrive - ok
16:45:15.0091 0x1dcc CmBatt - ok
16:45:15.0138 0x1dcc CNG - ok
16:45:15.0145 0x1dcc cnghwassist - ok
16:45:15.0368 0x1dcc [ 8B6521F722A6C81333E42BD87FDDB61B, F6E507A0885011B75F0FEE3E324265626A18B01C33D76F6A42F2945A78409DB2 ] CodeMeter.exe C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
16:45:15.0471 0x1dcc CodeMeter.exe - ok
16:45:15.0655 0x1dcc CompositeBus - ok
16:45:15.0662 0x1dcc COMSysApp - ok
16:45:15.0710 0x1dcc condrv - ok
16:45:15.0765 0x1dcc CoreMessagingRegistrar - ok
16:45:15.0921 0x1dcc [ BB812787B838A74943DEF209350C3883, 2C168F48A68644AA3CB6167BEC2A260E3E9C78D0766A15AA0FAA39CDBD7FA040 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
16:45:15.0956 0x1dcc cphs - ok
16:45:15.0987 0x1dcc CryptSvc - ok
16:45:15.0990 0x1dcc dam - ok
16:45:16.0172 0x1dcc [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
16:45:16.0194 0x1dcc dbupdate - ok
16:45:16.0204 0x1dcc [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
16:45:16.0218 0x1dcc dbupdatem - ok
16:45:16.0240 0x1dcc DcomLaunch - ok
16:45:16.0251 0x1dcc DcpSvc - ok
16:45:16.0263 0x1dcc defragsvc - ok
16:45:16.0266 0x1dcc DeviceAssociationService - ok
16:45:16.0324 0x1dcc DeviceInstall - ok
16:45:16.0327 0x1dcc DevQueryBroker - ok
16:45:16.0343 0x1dcc Dfsc - ok
16:45:16.0361 0x1dcc Dhcp - ok
16:45:16.0450 0x1dcc diagnosticshub.standardcollector.service - ok
16:45:16.0512 0x1dcc DiagTrack - ok
16:45:16.0531 0x1dcc disk - ok
16:45:16.0552 0x1dcc DmEnrollmentSvc - ok
16:45:16.0560 0x1dcc dmvsc - ok
16:45:16.0575 0x1dcc dmwappushservice - ok
16:45:16.0596 0x1dcc Dnscache - ok
16:45:16.0638 0x1dcc dot3svc - ok
16:45:16.0749 0x1dcc [ C0AA415718DDD13A136E353844628A65, 7E2F2A139E897EAE56038B920BDA9381094BC0AE9E626F6634E6B444B8B0C91F ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
16:45:16.0841 0x1dcc dot4 - ok
16:45:16.0911 0x1dcc [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
16:45:17.0129 0x1dcc Dot4Print - ok
16:45:17.0168 0x1dcc [ 292ADB7C57B5457F18F2FC06934B0B40, 12FFDF5F48A79B1B4ADBB88BA2CB6C59DD6719554E8EA6BEEFE99B3E3C66F1AC ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
16:45:17.0209 0x1dcc dot4usb - ok
16:45:17.0253 0x1dcc DPS - ok
16:45:17.0305 0x1dcc drmkaud - ok
16:45:17.0329 0x1dcc DsmSvc - ok
16:45:17.0345 0x1dcc DsSvc - ok
16:45:17.0357 0x1dcc DXGKrnl - ok
16:45:17.0373 0x1dcc Eaphost - ok
16:45:17.0475 0x1dcc ebdrv - ok
16:45:17.0505 0x1dcc EFS - ok
16:45:17.0513 0x1dcc EhStorClass - ok
16:45:17.0527 0x1dcc EhStorTcgDrv - ok
16:45:17.0532 0x1dcc embeddedmode - ok
16:45:17.0554 0x1dcc EntAppSvc - ok
16:45:17.0558 0x1dcc ErrDev - ok
16:45:17.0613 0x1dcc EventSystem - ok
16:45:17.0618 0x1dcc exfat - ok
16:45:17.0730 0x1dcc fastfat - ok
16:45:17.0741 0x1dcc Fax - ok
16:45:17.0752 0x1dcc fdc - ok
16:45:17.0758 0x1dcc fdPHost - ok
16:45:17.0764 0x1dcc FDResPub - ok
16:45:17.0784 0x1dcc fhsvc - ok
16:45:17.0806 0x1dcc FileCrypt - ok
16:45:17.0813 0x1dcc FileInfo - ok
16:45:17.0820 0x1dcc Filetrace - ok
16:45:18.0056 0x1dcc [ 96A89625E34EC8B5F05A9D01AAD04759, B64B7E7AD5D02D4C91A2A45FB9F523A162482A37F784625233FE4AD8B2601453 ] FlexNet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
16:45:18.0091 0x1dcc FlexNet Licensing Service 64 - ok
16:45:18.0095 0x1dcc flpydisk - ok
16:45:18.0099 0x1dcc FltMgr - ok
16:45:18.0127 0x1dcc FontCache - ok
16:45:18.0364 0x1dcc FontCache3.0.0.0 - ok
16:45:18.0384 0x1dcc FsDepends - ok
16:45:18.0390 0x1dcc Fs_Rec - ok
16:45:18.0407 0x1dcc fvevol - ok
16:45:18.0414 0x1dcc gagp30kx - ok
16:45:18.0432 0x1dcc gencounter - ok
16:45:18.0449 0x1dcc genericusbfn - ok
16:45:18.0455 0x1dcc GPIOClx0101 - ok
16:45:18.0469 0x1dcc gpsvc - ok
16:45:18.0473 0x1dcc GpuEnergyDrv - ok
16:45:18.0636 0x1dcc [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:45:18.0657 0x1dcc gupdate - ok
16:45:18.0667 0x1dcc [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:45:18.0677 0x1dcc gupdatem - ok
16:45:18.0737 0x1dcc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
16:45:18.0746 0x1dcc gusvc - ok
16:45:18.0750 0x1dcc HDAudBus - ok
16:45:18.0753 0x1dcc HidBatt - ok
16:45:18.0756 0x1dcc HidBth - ok
16:45:18.0759 0x1dcc hidi2c - ok
16:45:18.0763 0x1dcc hidinterrupt - ok
16:45:18.0766 0x1dcc HidIr - ok
16:45:18.0817 0x1dcc hidserv - ok
16:45:18.0954 0x1dcc HidUsb - ok
16:45:19.0020 0x1dcc HomeGroupListener - ok
16:45:19.0066 0x1dcc HomeGroupProvider - ok
16:45:19.0112 0x1dcc [ D104FF402FC3DDB686E6DEF00334DB26, 6CCE56587C02ECE474C6BF959C4A6F752A1FF0B718FBE8EE4FD9755313A207C1 ] hpdskflt C:\WINDOWS\system32\DRIVERS\hpdskflt.sys
16:45:19.0130 0x1dcc hpdskflt - ok
16:45:19.0362 0x1dcc [ 7B7DE6B3DC30F3246958F42C67A6F7BB, 4B66B90CFEC2231B905B21DECC4EC7C6500E546F080A452EF67E724EDF37ADD9 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
16:45:19.0390 0x1dcc hpqwmiex - ok
16:45:19.0394 0x1dcc HpSAMD - ok
16:45:19.0459 0x1dcc [ 55FFCBB036D7BE4BCA6FA1421203A27F, 5BB865FC631390F59AF5F2452D4D2DA47E34A49E194C8010E942F5A2013F3895 ] hpsrv C:\WINDOWS\system32\Hpservice.exe
16:45:19.0482 0x1dcc hpsrv - ok
16:45:19.0588 0x1dcc [ 83B7C57901235297A702348394B460A5, FE47A2C19BD5DFEBC0830944E7F3FB67BAC0F09265DD56C74C2CB8000883ABBF ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
16:45:19.0612 0x1dcc HPSupportSolutionsFrameworkService - ok
16:45:19.0741 0x1dcc [ 3C5B2067338E4EFDADE94E4A72728F23, 72E21FA1E660F9405A5E39B0F89AB21C60F20BAC13247567EF7139AC130F1897 ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
16:45:19.0754 0x1dcc HPWMISVC - ok
16:45:19.0784 0x1dcc HTTP - ok
16:45:19.0902 0x1dcc hwpolicy - ok
16:45:19.0926 0x1dcc hyperkbd - ok
16:45:19.0934 0x1dcc HyperVideo - ok
16:45:19.0941 0x1dcc i8042prt - ok
16:45:19.0948 0x1dcc iai2c - ok
16:45:19.0959 0x1dcc iaLPSS2i_I2C - ok
16:45:19.0964 0x1dcc iaLPSSi_GPIO - ok
16:45:19.0969 0x1dcc iaLPSSi_I2C - ok
16:45:20.0026 0x1dcc [ 050F2539E14F9D5E90A4B61738EC29BD, 0E65468B9F452FA7DB6DF2C1B2B2E9439C79031E27054FBDBDFE28A9F98721D7 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
16:45:20.0202 0x1dcc iaStorA - ok
16:45:20.0207 0x1dcc iaStorAV - ok
16:45:20.0213 0x1dcc iaStorV - ok
16:45:20.0217 0x1dcc ibbus - ok
16:45:20.0349 0x1dcc [ ABEFA4BD23329FD9BD47496BF2E58774, 9689D4C6380735EE1CC7F480696CDDC229E0FA511942AC813314D353584D82DD ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
16:45:20.0427 0x1dcc IconMan_R - detected UnsignedFile.Multi.Generic ( 1 )
16:45:20.0591 0x1dcc Detect skipped due to KSN trusted
16:45:20.0591 0x1dcc IconMan_R - ok
16:45:20.0628 0x1dcc icssvc - ok
16:45:20.0773 0x1dcc [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
16:45:20.0789 0x1dcc IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
16:45:21.0036 0x1dcc Detect skipped due to KSN trusted
16:45:21.0036 0x1dcc IDriverT - ok
16:45:21.0043 0x1dcc IEEtwCollectorService - ok
16:45:21.0186 0x1dcc [ CEFA6BDB4789F3DA003ACBDCC64F5877, 0FE78AEFA9A75B4A99AD6B73AC3252E4C6DFA9D306FEC02D26C1FD574108BFBA ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
16:45:21.0261 0x1dcc igfx - ok
16:45:21.0331 0x1dcc [ 75909533EECD0CD9D5974B59474AA6C0, F81D0F949F1F01D09C91735C79288395B82C27B8FB78804752E5A678D7EF3860 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
16:45:21.0358 0x1dcc igfxCUIService1.0.0.0 - ok
16:45:21.0412 0x1dcc IKEEXT - ok
16:45:21.0448 0x1dcc [ B1F193AB8FB72E9FC34B3A39314ED872, 408E98D9C8ABB928090DD9E5D1BB227EFBC997BF168437BAEF0461EB0D1DAE3D ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
16:45:21.0579 0x1dcc intaud_WaveExtensible - ok
16:45:21.0637 0x1dcc [ 87871AB7AC797F922A6F3D4C874CED96, 2BCD89911E42827CD294DD7D1486A7845D1F98019E51958E0F488384401B2944 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
16:45:21.0672 0x1dcc IntcDAud - ok
16:45:21.0848 0x1dcc [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
16:45:21.0871 0x1dcc Intel(R) Capability Licensing Service Interface - ok
16:45:22.0111 0x1dcc [ 30E9FAC23E2537D82F2836CB81AEE186, 03E5072D43ECED70EF004D2E6E654B4CCCE059825CC3C641C0534E4C0BC0C7E8 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
16:45:22.0125 0x1dcc Intel(R) ME Service - ok
16:45:22.0157 0x1dcc intelide - ok
16:45:22.0176 0x1dcc intelpep - ok
16:45:22.0181 0x1dcc intelppm - ok
16:45:22.0187 0x1dcc IoQos - ok
16:45:22.0191 0x1dcc IpFilterDriver - ok
16:45:22.0217 0x1dcc iphlpsvc - ok
16:45:22.0220 0x1dcc IPMIDRV - ok
16:45:22.0265 0x1dcc IPNAT - ok
16:45:22.0269 0x1dcc IRENUM - ok
16:45:22.0303 0x1dcc iSafeKrnl - ok
16:45:22.0422 0x1dcc [ 6010A31C6290AE0C8C6B55FEA74F2D7C, F14CC86E6B52243913F80BAD241D7714610F9EE964850349A15B97984E193A9A ] iSafeKrnlBoot C:\WINDOWS\system32\DRIVERS\iSafeKrnlBoot.sys
16:45:22.0462 0x1dcc iSafeKrnlBoot - ok
16:45:22.0465 0x1dcc iSafeKrnlKit - ok
16:45:22.0513 0x1dcc [ 60BF5D4AC1E6D465A91456DF16191254, CB83849470070356AF68BB93EA9E628EC573128F8FF7AECC2786A726D4796972 ] iSafeKrnlMon C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys
16:45:22.0568 0x1dcc iSafeKrnlMon - ok
16:45:22.0644 0x1dcc [ 9FB02FBA90F6AF59537A30C3DB9777C8, 6597D4994D0D6262B853F64A6E828C5D411225624F137901F6DCF3D3BA81BB80 ] iSafeNetFilter C:\WINDOWS\system32\DRIVERS\iSafeNetFilter.sys
16:45:22.0704 0x1dcc iSafeNetFilter - ok
16:45:22.0708 0x1dcc iSafeService - ok
16:45:22.0723 0x1dcc isapnp - ok
16:45:22.0727 0x1dcc iScsiPrt - ok
16:45:22.0762 0x1dcc [ DD1F43B86AD84E53203F92FD3EF3AEB6, 9DE2BA80B315E56DF2E74EAA65F4ECB8324DFC19E30EB56EDDF08340AB100E87 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
16:45:22.0817 0x1dcc iwdbus - ok
16:45:22.0874 0x1dcc [ 3C4002D339491AF73D663FFC7F6E5ECB, 0B53047989BDB781572253BC3AA757912FE54366870C1955E687972CE210C285 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
16:45:22.0901 0x1dcc jhi_service - ok
16:45:22.0905 0x1dcc kbdclass - ok
16:45:22.0909 0x1dcc kbdhid - ok
16:45:22.0913 0x1dcc kdnic - ok
16:45:22.0917 0x1dcc KeyIso - ok
16:45:22.0921 0x1dcc KSecDD - ok
16:45:22.0948 0x1dcc KSecPkg - ok
16:45:22.0951 0x1dcc ksthunk - ok
16:45:22.0960 0x1dcc KtmRm - ok
16:45:22.0966 0x1dcc LanmanServer - ok
16:45:22.0971 0x1dcc LanmanWorkstation - ok
16:45:23.0100 0x1dcc [ 8FB6D64CB42E660C4534D38013D64A03, 11A6A914E8588DDFDE32D12A858BA8A31783B5DDB42C9E7FD0F237D57A437976 ] LavasoftTcpService C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
16:45:23.0154 0x1dcc LavasoftTcpService - ok
16:45:23.0257 0x1dcc [ 0557D50CC6515EEBEABD6BC9AD3E54FC, 75D67645D5373CBB6EBEBA6B96C20306218528F0F7392D6076BC488655637DDA ] LegpatP C:\ProgramData\Legpat\Legpat.exe
16:45:23.0274 0x1dcc LegpatP - ok
16:45:23.0295 0x1dcc lfsvc - ok
16:45:23.0298 0x1dcc LicenseManager - ok
16:45:23.0324 0x1dcc [ 955982BF4421B77722196552B62E8DC2, 3732449ACDBB78E1ED8436DF153C899C28573F458FDCFE345DFA1B305D085033 ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys
16:45:23.0403 0x1dcc lirsgt - ok
16:45:23.0430 0x1dcc lltdio - ok
16:45:23.0437 0x1dcc lltdsvc - ok
16:45:23.0457 0x1dcc lmhosts - ok
16:45:23.0499 0x1dcc [ 4269D44BB47A6DA5D80B11F4C8536458, 7A8FFC8F851DD9E5C43986BE0888831CB71D188138DF3CF7F787DADDA70915B0 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
16:45:23.0525 0x1dcc LMS - ok
16:45:23.0555 0x1dcc LSI_SAS - ok
16:45:23.0563 0x1dcc LSI_SAS2i - ok
16:45:23.0567 0x1dcc LSI_SAS3i - ok
16:45:23.0571 0x1dcc LSI_SSS - ok
16:45:23.0575 0x1dcc LSM - ok
16:45:23.0580 0x1dcc luafv - ok
16:45:23.0594 0x1dcc MapsBroker - ok
16:45:23.0597 0x1dcc megasas - ok
16:45:23.0600 0x1dcc megasr - ok
16:45:23.0639 0x1dcc [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
16:45:23.0773 0x1dcc MEIx64 - ok
16:45:24.0083 0x1dcc [ 6F62B8758B0C164E6D9BA7CACF9476C6, 1BBACED2FDB1190E54E2BB6E9281CBD9EB2A1640A3837F7F63D270933421062D ] MemeoBackgroundService C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
16:45:24.0095 0x1dcc MemeoBackgroundService - ok
16:45:24.0120 0x1dcc MessagingService - ok
16:45:24.0289 0x1dcc Microsoft SharePoint Workspace Audit Service - ok
16:45:24.0321 0x1dcc mlx4_bus - ok
16:45:24.0352 0x1dcc MMCSS - ok
16:45:24.0358 0x1dcc Modem - ok
16:45:24.0365 0x1dcc monitor - ok
16:45:24.0372 0x1dcc mouclass - ok
16:45:24.0379 0x1dcc mouhid - ok
16:45:24.0388 0x1dcc mountmgr - ok
16:45:24.0446 0x1dcc [ 096C5D009C554DBC8F2E2EFEDFE10A47, D72F1286807FE471755D992AAF398D519680A160D71DB6327019F6DC5A9DEFFC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:45:24.0461 0x1dcc MozillaMaintenance - ok
16:45:24.0464 0x1dcc mpsdrv - ok
16:45:24.0487 0x1dcc MpsSvc - ok
16:45:24.0490 0x1dcc MRxDAV - ok
16:45:24.0535 0x1dcc mrxsmb - ok
16:45:24.0550 0x1dcc mrxsmb10 - ok
16:45:24.0553 0x1dcc mrxsmb20 - ok
16:45:24.0568 0x1dcc MsBridge - ok
16:45:24.0579 0x1dcc MSDTC - ok
16:45:24.0584 0x1dcc Msfs - ok
16:45:24.0598 0x1dcc msgpiowin32 - ok
16:45:24.0601 0x1dcc mshidkmdf - ok
16:45:24.0604 0x1dcc mshidumdf - ok
16:45:24.0608 0x1dcc msisadrv - ok
16:45:24.0641 0x1dcc MSiSCSI - ok
16:45:24.0644 0x1dcc msiserver - ok
16:45:24.0647 0x1dcc MSKSSRV - ok
16:45:24.0651 0x1dcc MsLldp - ok
16:45:24.0653 0x1dcc MSPCLOCK - ok
16:45:24.0657 0x1dcc MSPQM - ok
16:45:24.0660 0x1dcc MsRPC - ok
16:45:24.0665 0x1dcc mssmbios - ok
16:45:24.0668 0x1dcc MSTEE - ok
16:45:24.0671 0x1dcc MTConfig - ok
16:45:24.0675 0x1dcc Mup - ok
16:45:24.0678 0x1dcc mvumis - ok
16:45:24.0713 0x1dcc NativeWifiP - ok
16:45:24.0828 0x1dcc [ 988CDC4DAE2186F3A5ED6EE7D3E6B5CA, DB40F7705F0475FF774452E365152EBEDDC77D8ACE48419DABE02DD385C6B725 ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
16:45:24.0861 0x1dcc NAUpdate - ok
16:45:24.0887 0x1dcc NcaSvc - ok
16:45:24.0907 0x1dcc NcbService - ok
16:45:24.0909 0x1dcc NcdAutoSetup - ok
16:45:24.0916 0x1dcc ndfltr - ok
16:45:24.0923 0x1dcc NDIS - ok
16:45:24.0929 0x1dcc NdisCap - ok
16:45:24.0937 0x1dcc NdisImPlatform - ok
16:45:24.0942 0x1dcc NdisTapi - ok
16:45:24.0946 0x1dcc Ndisuio - ok
16:45:24.0950 0x1dcc NdisVirtualBus - ok
16:45:24.0954 0x1dcc NdisWan - ok
16:45:24.0958 0x1dcc ndiswanlegacy - ok
16:45:24.0962 0x1dcc ndproxy - ok
16:45:24.0982 0x1dcc Ndu - ok
16:45:25.0008 0x1dcc [ 6D1D9124B78C96CB5B98AAC511D6E853, 6D8082C11454672D37E1389B455B9806B40FC3A71358FE10869065D06EAF494A ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
16:45:25.0033 0x1dcc Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:45:25.0195 0x1dcc Detect skipped due to KSN trusted
16:45:25.0195 0x1dcc Net Driver HPZ12 - ok
16:45:25.0202 0x1dcc NetBIOS - ok
16:45:25.0233 0x1dcc NetBT - ok
16:45:25.0239 0x1dcc Netlogon - ok
16:45:25.0258 0x1dcc Netman - ok
16:45:25.0265 0x1dcc netprofm - ok
16:45:25.0272 0x1dcc netr28x - ok
16:45:25.0316 0x1dcc NetSetupSvc - ok
16:45:25.0477 0x1dcc NetTcpPortSharing - ok
16:45:25.0508 0x1dcc netvsc - ok
16:45:25.0575 0x1dcc NgcCtnrSvc - ok
16:45:25.0582 0x1dcc NgcSvc - ok
16:45:25.0589 0x1dcc NlaSvc - ok
16:45:25.0595 0x1dcc Npfs - ok
16:45:25.0619 0x1dcc npsvctrig - ok
16:45:25.0625 0x1dcc nsi - ok
16:45:25.0633 0x1dcc nsiproxy - ok
16:45:25.0653 0x1dcc NTFS - ok
16:45:25.0661 0x1dcc Null - ok
16:45:25.0666 0x1dcc nvraid - ok
16:45:25.0672 0x1dcc nvstor - ok
16:45:25.0676 0x1dcc nv_agp - ok
16:45:25.0700 0x1dcc OneSyncSvc - ok
16:45:25.0820 0x1dcc [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:45:25.0830 0x1dcc ose - ok
16:45:26.0067 0x1dcc [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:45:26.0165 0x1dcc osppsvc - ok
16:45:26.0196 0x1dcc p2pimsvc - ok
16:45:26.0204 0x1dcc p2psvc - ok
16:45:26.0264 0x1dcc Parport - ok
16:45:26.0282 0x1dcc partmgr - ok
16:45:26.0289 0x1dcc PcaSvc - ok
16:45:26.0308 0x1dcc pci - ok
16:45:26.0315 0x1dcc pciide - ok
16:45:26.0321 0x1dcc pcmcia - ok
16:45:26.0330 0x1dcc pcw - ok
16:45:26.0337 0x1dcc pdc - ok
16:45:26.0349 0x1dcc PEAUTH - ok
16:45:26.0378 0x1dcc [ 8B028BB7546947C93B5D7DD3C6B39444, AC6C11ED8F23F9B15082A15F5DF1A8A44D14EBDA0F90592B40F8631F970E600A ] pelmouse C:\WINDOWS\system32\DRIVERS\pelmouse.sys
16:45:26.0412 0x1dcc pelmouse - ok
16:45:26.0429 0x1dcc [ B09DF176603C4609BFB370F4F4973300, 0AF4E66557346A99C1AFCA483822BB934CA20076ADDEDBC03F965E79E76CFFFA ] pelusblf C:\WINDOWS\system32\DRIVERS\pelusblf.sys
16:45:26.0490 0x1dcc pelusblf - ok
16:45:26.0514 0x1dcc percsas2i - ok
16:45:26.0520 0x1dcc percsas3i - ok
16:45:26.0601 0x1dcc PerfHost - ok
16:45:26.0616 0x1dcc PhoneSvc - ok
16:45:26.0646 0x1dcc PimIndexMaintenanceSvc - ok
16:45:26.0699 0x1dcc pla - ok
16:45:26.0718 0x1dcc PlugPlay - ok
16:45:26.0746 0x1dcc [ 6A5C18184E4CF60A963BDD9CB67243BA, 78F6FFB4B504E6C138176181F21EE4D775976DDA9CBEE46219459061645B023C ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
16:45:26.0761 0x1dcc Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:45:26.0933 0x1dcc Detect skipped due to KSN trusted
16:45:26.0933 0x1dcc Pml Driver HPZ12 - ok
16:45:26.0941 0x1dcc PNRPAutoReg - ok
16:45:26.0948 0x1dcc PNRPsvc - ok
16:45:26.0983 0x1dcc PolicyAgent - ok
16:45:26.0989 0x1dcc Power - ok
16:45:27.0006 0x1dcc PptpMiniport - ok
16:45:27.0218 0x1dcc [ C9908063F90F5541098BF19EA63E1327, AA6B5E4D01CD8061D5953FDE3025FE4AF01B265C182B8818107A035E4FFAD0DF ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:45:27.0391 0x1dcc PrintNotify - ok
16:45:27.0405 0x1dcc Processor - ok
16:45:27.0425 0x1dcc ProfSvc - ok
16:45:27.0435 0x1dcc Psched - ok
16:45:27.0594 0x1dcc [ CA54F472755305BB7261CFFE2639E7E7, 58CADDCDDFAEE2C17D3E021BC4F2510C33B62A542E6EBAAEB8B47EE8910D6734 ] qkseeService C:\Program Files (x86)\qksee\qkseeSvc.exe
16:45:27.0630 0x1dcc qkseeService - detected UnsignedFile.Multi.Generic ( 1 )
16:45:28.0510 0x1dcc qkseeService ( UnsignedFile.Multi.Generic ) - warning
16:45:28.0730 0x1dcc QWAVE - ok
16:45:28.0737 0x1dcc QWAVEdrv - ok
16:45:28.0745 0x1dcc RasAcd - ok
16:45:28.0778 0x1dcc RasAgileVpn - ok
16:45:28.0797 0x1dcc RasAuto - ok
16:45:28.0814 0x1dcc Rasl2tp - ok
16:45:28.0821 0x1dcc RasMan - ok
16:45:28.0827 0x1dcc RasPppoe - ok
16:45:28.0835 0x1dcc RasSstp - ok
16:45:28.0855 0x1dcc rdbss - ok
16:45:28.0861 0x1dcc rdpbus - ok
16:45:28.0866 0x1dcc RDPDR - ok
16:45:28.0922 0x1dcc RdpVideoMiniport - ok
16:45:28.0926 0x1dcc rdyboost - ok
16:45:28.0936 0x1dcc ReFSv1 - ok
16:45:28.0953 0x1dcc RemoteAccess - ok
16:45:28.0958 0x1dcc RemoteRegistry - ok
16:45:28.0979 0x1dcc RetailDemo - ok
16:45:28.0984 0x1dcc RpcEptMapper - ok
16:45:28.0993 0x1dcc RpcLocator - ok
16:45:28.0998 0x1dcc RpcSs - ok
16:45:29.0036 0x1dcc [ D38250F459BF60D6F4B69B79DCD948CC, E68C864C1A4C9352EA939062F28789ADE9F0672E8CB3F3909D2891786C76F06F ] RSP2STOR C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys
16:45:29.0075 0x1dcc RSP2STOR - ok
16:45:29.0079 0x1dcc rspndr - ok
16:45:29.0082 0x1dcc rt640x64 - ok
16:45:29.0112 0x1dcc s3cap - ok
16:45:29.0120 0x1dcc SamSs - ok
16:45:29.0123 0x1dcc sbp2port - ok
16:45:29.0138 0x1dcc SCardSvr - ok
16:45:29.0141 0x1dcc ScDeviceEnum - ok
16:45:29.0144 0x1dcc scfilter - ok
16:45:29.0162 0x1dcc Schedule - ok
16:45:29.0180 0x1dcc SCPolicySvc - ok
16:45:29.0194 0x1dcc sdbus - ok
16:45:29.0197 0x1dcc SDRSVC - ok
16:45:29.0200 0x1dcc sdstor - ok
16:45:29.0276 0x1dcc [ 8658BEDD11B13C56607EE0BE437693E5, E86546071DD68D0F07D0475151D5233CDF1171B01209580FC8EA8A86FC0C2215 ] SearchProtectionService C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
16:45:29.0289 0x1dcc SearchProtectionService - ok
16:45:29.0325 0x1dcc seclogon - ok
16:45:29.0332 0x1dcc SENS - ok
16:45:29.0347 0x1dcc SensorDataService - ok
16:45:29.0375 0x1dcc SensorService - ok
16:45:29.0416 0x1dcc SensrSvc - ok
16:45:29.0423 0x1dcc SerCx - ok
16:45:29.0455 0x1dcc SerCx2 - ok
16:45:29.0503 0x1dcc Serenum - ok
16:45:29.0519 0x1dcc Serial - ok
16:45:29.0528 0x1dcc sermouse - ok
16:45:29.0551 0x1dcc SessionEnv - ok
16:45:29.0556 0x1dcc sfloppy - ok
16:45:29.0569 0x1dcc SharedAccess - ok
16:45:29.0592 0x1dcc ShellHWDetection - ok
16:45:29.0596 0x1dcc SiSRaid2 - ok
16:45:29.0601 0x1dcc SiSRaid4 - ok
16:45:29.0663 0x1dcc [ E00BA977EA507FB19BDD9594AFA13C47, 78A07DD3E9258AC49B815BF5E4CCA1184F8708CC7B96C2A910270608C4D8B153 ] SKYNETU2C C:\WINDOWS\System32\drivers\SkyNetU2C_AMD64.SYS
16:45:29.0739 0x1dcc SKYNETU2C - ok
16:45:29.0813 0x1dcc [ 0229E0BB503D7D58355EE30823CDA701, F19AC8A5F2F5C45D1914DA60C6EE2075145AA72B29E0D8AF77F3647C89AFFA2E ] SkyNetU2CBDA_AMD64 C:\WINDOWS\system32\DRIVERS\SkyNetU2CBDA_AMD64.sys
16:45:29.0867 0x1dcc SkyNetU2CBDA_AMD64 - ok
16:45:29.0887 0x1dcc [ AF5CC3F9B88F140D78FC967ABF0F4EC7, 7CE3AB7B0A36635CF00E35E84C14B8661FAF794ABCFA61AE45A0E5E8EA996A3B ] SmbDrv C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys
16:45:29.0895 0x1dcc SmbDrv - ok
16:45:29.0945 0x1dcc [ C67697A38E6D646F97EFF462DED68CF3, C6A8B2BAAC830D59E05949485F77E6803ED0138FEEAB6C2DA58A3D0BF5361A3E ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
16:45:29.0994 0x1dcc SmbDrvI - ok
16:45:30.0043 0x1dcc smphost - ok
16:45:30.0068 0x1dcc SmsRouter - ok
16:45:30.0092 0x1dcc SNMPTRAP - ok
16:45:30.0109 0x1dcc spaceport - ok
16:45:30.0117 0x1dcc SpbCx - ok
16:45:30.0140 0x1dcc Spooler - ok
16:45:30.0151 0x1dcc sppsvc - ok
16:45:30.0168 0x1dcc srv - ok
16:45:30.0172 0x1dcc srv2 - ok
16:45:30.0188 0x1dcc srvnet - ok
16:45:30.0205 0x1dcc SSDPSRV - ok
16:45:30.0209 0x1dcc SstpSvc - ok
16:45:30.0334 0x1dcc [ 098185E9B7C417CF7480BB9F839DB652, 5573CB98057DC2F01E8958780165A32AFD08E4C768F5625250628CB8A4C509D3 ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
16:45:30.0388 0x1dcc STacSV - ok
16:45:30.0416 0x1dcc StateRepository - ok
16:45:30.0434 0x1dcc stexstor - ok
16:45:30.0488 0x1dcc [ 32BE0B7CCA47A5BE30E7E43DC54B54F3, D4667E88E14393311F93D787C902B993B9451A94D332A65B0E22A8C40C3DFF44 ] STHDA C:\WINDOWS\system32\DRIVERS\stwrt64.sys
16:45:30.0612 0x1dcc STHDA - ok
16:45:30.0633 0x1dcc stisvc - ok
16:45:30.0636 0x1dcc storahci - ok
16:45:30.0642 0x1dcc storflt - ok
16:45:30.0646 0x1dcc stornvme - ok
16:45:30.0650 0x1dcc storqosflt - ok
16:45:30.0665 0x1dcc StorSvc - ok
16:45:30.0669 0x1dcc storufs - ok
16:45:30.0673 0x1dcc storvsc - ok
16:45:30.0687 0x1dcc svsvc - ok
16:45:30.0690 0x1dcc swenum - ok
16:45:30.0694 0x1dcc swprv - ok
16:45:30.0711 0x1dcc Synth3dVsc - ok
16:45:30.0762 0x1dcc [ 46062E452891A8D6D3B96DCAADDCC084, 0A4D4B16B7F8C751D3887FFD9977BAA8B76B321CCA06F024D93E2867D22B4F8D ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
16:45:30.0781 0x1dcc SynTP - ok
16:45:30.0805 0x1dcc SysMain - ok
16:45:30.0820 0x1dcc SystemEventsBroker - ok
16:45:30.0828 0x1dcc TabletInputService - ok
16:45:30.0832 0x1dcc TapiSrv - ok
16:45:30.0848 0x1dcc Tcpip - ok
16:45:30.0852 0x1dcc Tcpip6 - ok
16:45:30.0859 0x1dcc tcpipreg - ok
16:45:30.0878 0x1dcc tdx - ok
16:45:30.0882 0x1dcc terminpt - ok
16:45:30.0888 0x1dcc TermService - ok
16:45:30.0893 0x1dcc Themes - ok
16:45:31.0008 0x1dcc [ A2731C202E21BC940F9230FFBD15BD67, 217B1F1720E3DBAF413685294600B5A636C555246962FFA70A29F9A3BBAC3BC4 ] ThnAdpsrv C:\Program Files (x86)\Thunshprerusp\ThnAdpsrv.exe
16:45:31.0042 0x1dcc ThnAdpsrv - ok
16:45:31.0093 0x1dcc TieringEngineService - ok
16:45:31.0115 0x1dcc tiledatamodelsvc - ok
16:45:31.0142 0x1dcc TimeBroker - ok
16:45:31.0189 0x1dcc TPM - ok
16:45:31.0208 0x1dcc TrkWks - ok
16:45:31.0285 0x1dcc TrustedInstaller - ok
16:45:31.0295 0x1dcc tsusbflt - ok
16:45:31.0303 0x1dcc TsUsbGD - ok
16:45:31.0310 0x1dcc tunnel - ok
16:45:31.0344 0x1dcc tzautoupdate - ok
16:45:31.0355 0x1dcc uagp35 - ok
16:45:31.0362 0x1dcc UASPStor - ok
16:45:31.0374 0x1dcc UcmCx0101 - ok
16:45:31.0381 0x1dcc UcmUcsi - ok
16:45:31.0390 0x1dcc Ucx01000 - ok
16:45:31.0395 0x1dcc UdeCx - ok
16:45:31.0400 0x1dcc udfs - ok
16:45:31.0405 0x1dcc UEFI - ok
16:45:31.0415 0x1dcc Ufx01000 - ok
16:45:31.0429 0x1dcc UfxChipidea - ok
16:45:31.0432 0x1dcc ufxsynopsys - ok
16:45:31.0439 0x1dcc UI0Detect - ok
16:45:31.0442 0x1dcc uliagpkx - ok
16:45:31.0445 0x1dcc umbus - ok
16:45:31.0448 0x1dcc UmPass - ok
16:45:31.0457 0x1dcc UmRdpService - ok
16:45:31.0557 0x1dcc [ B57877104D8D30B4538CA6D01E98B825, F124AC9E22F652AE49E67D5F084CFC149BB7BB989401E9AF589650F709438C4B ] UncheckitSvc C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe
16:45:31.0576 0x1dcc UncheckitSvc - ok
16:45:31.0608 0x1dcc UnistoreSvc - ok
16:45:31.0793 0x1dcc [ DBE2E6388379D5CC78099650541E9566, 1914BC929F109A49FB18ED31F239A9813A010B0A3914BC8CD0D6A94A67A072D7 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
16:45:31.0815 0x1dcc UNS - ok
16:45:31.0818 0x1dcc upnphost - ok
16:45:31.0855 0x1dcc UrsChipidea - ok
16:45:31.0858 0x1dcc UrsCx01000 - ok
16:45:31.0861 0x1dcc UrsSynopsys - ok
16:45:31.0877 0x1dcc usbccgp - ok
16:45:31.0880 0x1dcc usbcir - ok
16:45:31.0885 0x1dcc usbehci - ok
16:45:31.0888 0x1dcc usbhub - ok
16:45:31.0896 0x1dcc USBHUB3 - ok
16:45:31.0900 0x1dcc usbohci - ok
16:45:31.0903 0x1dcc usbprint - ok
16:45:31.0908 0x1dcc usbser - ok
16:45:31.0922 0x1dcc USBSTOR - ok
16:45:31.0925 0x1dcc usbuhci - ok
16:45:31.0928 0x1dcc usbvideo - ok
16:45:31.0940 0x1dcc USBXHCI - ok
16:45:31.0964 0x1dcc UserDataSvc - ok
16:45:31.0998 0x1dcc UserManager - ok
16:45:32.0010 0x1dcc UsoSvc - ok
16:45:32.0014 0x1dcc VaultSvc - ok
16:45:32.0019 0x1dcc vdrvroot - ok
16:45:32.0039 0x1dcc vds - ok
16:45:32.0042 0x1dcc VerifierExt - ok
16:45:32.0046 0x1dcc vhdmp - ok
16:45:32.0050 0x1dcc vhf - ok
16:45:32.0053 0x1dcc vmbus - ok
16:45:32.0056 0x1dcc VMBusHID - ok
16:45:32.0066 0x1dcc vmicguestinterface - ok
16:45:32.0069 0x1dcc vmicheartbeat - ok
16:45:32.0074 0x1dcc vmickvpexchange - ok
16:45:32.0077 0x1dcc vmicrdv - ok
16:45:32.0080 0x1dcc vmicshutdown - ok
16:45:32.0084 0x1dcc vmictimesync - ok
16:45:32.0088 0x1dcc vmicvmsession - ok
16:45:32.0092 0x1dcc vmicvss - ok
16:45:32.0095 0x1dcc volmgr - ok
16:45:32.0121 0x1dcc volmgrx - ok
16:45:32.0125 0x1dcc volsnap - ok
16:45:32.0162 0x1dcc vpci - ok
16:45:32.0165 0x1dcc vsmraid - ok
16:45:32.0169 0x1dcc VSS - ok
16:45:32.0172 0x1dcc VSTXRAID - ok
16:45:32.0176 0x1dcc vwifibus - ok
16:45:32.0179 0x1dcc vwififlt - ok
16:45:32.0184 0x1dcc vwifimp - ok
16:45:32.0190 0x1dcc W32Time - ok
16:45:32.0295 0x1dcc w3logsvc - ok
16:45:32.0304 0x1dcc WacomPen - ok
16:45:32.0339 0x1dcc WalletService - ok
16:45:32.0343 0x1dcc wanarp - ok
16:45:32.0349 0x1dcc wanarpv6 - ok
16:45:32.0385 0x1dcc WAS - ok
16:45:32.0407 0x1dcc wbengine - ok
16:45:32.0415 0x1dcc WbioSrvc - ok
16:45:32.0432 0x1dcc Wcmsvc - ok
16:45:32.0439 0x1dcc wcncsvc - ok
16:45:32.0445 0x1dcc WcsPlugInService - ok
16:45:32.0473 0x1dcc WdBoot - ok
16:45:32.0499 0x1dcc Wdf01000 - ok
16:45:32.0504 0x1dcc WdFilter - ok
16:45:32.0515 0x1dcc WdiServiceHost - ok
16:45:32.0527 0x1dcc WdiSystemHost - ok
16:45:32.0538 0x1dcc wdiwifi - ok
16:45:32.0542 0x1dcc WdNisDrv - ok
16:45:32.0570 0x1dcc WdNisSvc - ok
16:45:32.0596 0x1dcc WebClient - ok
16:45:32.0602 0x1dcc Wecsvc - ok
16:45:32.0607 0x1dcc WEPHOSTSVC - ok
16:45:32.0653 0x1dcc wercplsupport - ok
16:45:32.0662 0x1dcc WerSvc - ok
16:45:32.0711 0x1dcc WFPLWFS - ok
16:45:32.0718 0x1dcc WiaRpc - ok
16:45:32.0726 0x1dcc WIMMount - ok
16:45:32.0733 0x1dcc WinDefend - ok
16:45:32.0746 0x1dcc WindowsTrustedRT - ok
16:45:32.0787 0x1dcc WindowsTrustedRTProxy - ok
16:45:32.0802 0x1dcc WinHttpAutoProxySvc - ok
16:45:32.0807 0x1dcc WinMad - ok
16:45:32.0909 0x1dcc Winmgmt - ok
16:45:32.0923 0x1dcc WinRM - ok
16:45:32.0971 0x1dcc WINUSB - ok
16:45:32.0980 0x1dcc WinVerbs - ok
16:45:33.0138 0x1dcc [ 6B14008F9BF49B3B24CBB0A5D8F18D7F, FDC348F881FFD46F070B7E9733758A02C8726D5621314E1B68E1BE4B65A54E5B ] winzipersvc C:\Program Files (x86)\WinZipper\winzipersvc.exe
16:45:33.0171 0x1dcc winzipersvc - ok
16:45:33.0222 0x1dcc [ 4F2A80D65AE6F845776E2F06AE6782ED, 2455537C048115435D9EDE4B18F9F54C43912076AEF36BDEFEC35AF2140B8B2E ] WirelessButtonDriver C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys
16:45:33.0538 0x1dcc WirelessButtonDriver - ok
16:45:33.0607 0x1dcc WlanSvc - ok
16:45:33.0641 0x1dcc wlidsvc - ok
16:45:33.0648 0x1dcc WmiAcpi - ok
16:45:33.0671 0x1dcc wmiApSrv - ok
16:45:33.0699 0x1dcc WMPNetworkSvc - ok
16:45:33.0763 0x1dcc [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
16:45:33.0870 0x1dcc Wof - ok
16:45:33.0918 0x1dcc workfolderssvc - ok
16:45:33.0937 0x1dcc wpcfltr - ok
16:45:33.0964 0x1dcc WPDBusEnum - ok
16:45:33.0968 0x1dcc WpdUpFltr - ok
16:45:33.0975 0x1dcc WpnService - ok
16:45:33.0979 0x1dcc ws2ifsl - ok
16:45:33.0986 0x1dcc wscsvc - ok
16:45:33.0990 0x1dcc WSDPrintDevice - ok
16:45:33.0994 0x1dcc WSearch - ok
16:45:34.0021 0x1dcc WSService - ok
16:45:34.0039 0x1dcc wuauserv - ok
16:45:34.0056 0x1dcc WudfPf - ok
16:45:34.0069 0x1dcc WUDFRd - ok
16:45:34.0080 0x1dcc wudfsvc - ok
16:45:34.0083 0x1dcc WUDFWpdFs - ok
16:45:34.0088 0x1dcc WUDFWpdMtp - ok
16:45:34.0092 0x1dcc WwanSvc - ok
16:45:34.0113 0x1dcc XblAuthManager - ok
16:45:34.0131 0x1dcc XblGameSave - ok
16:45:34.0143 0x1dcc xboxgip - ok
16:45:34.0169 0x1dcc XboxNetApiSvc - ok
16:45:34.0187 0x1dcc xinputhid - ok
16:45:34.0192 0x1dcc ================ Scan global ===============================
16:45:34.0291 0x1dcc [ Global ] - ok
16:45:34.0292 0x1dcc ================ Scan MBR ==================================
16:45:34.0318 0x1dcc [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
16:45:34.0397 0x1dcc \Device\Harddisk0\DR0 - ok
16:45:34.0397 0x1dcc ================ Scan VBR ==================================
16:45:34.0425 0x1dcc [ CE3C593D8B9821FE39405DA5E71D6B6F ] \Device\Harddisk0\DR0\Partition1
16:45:34.0426 0x1dcc \Device\Harddisk0\DR0\Partition1 - ok
16:45:34.0439 0x1dcc [ 45DB0828650CFF28AC387F721DA99868 ] \Device\Harddisk0\DR0\Partition2
16:45:34.0440 0x1dcc \Device\Harddisk0\DR0\Partition2 - ok
16:45:34.0447 0x1dcc [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
16:45:34.0447 0x1dcc \Device\Harddisk0\DR0\Partition3 - ok
16:45:34.0456 0x1dcc [ CE0F7F3F0EC30463376B92DEB1842280 ] \Device\Harddisk0\DR0\Partition4
16:45:34.0457 0x1dcc \Device\Harddisk0\DR0\Partition4 - ok
16:45:34.0496 0x1dcc [ 547DBA75702140C56BFC3BED916F2A63 ] \Device\Harddisk0\DR0\Partition5
16:45:34.0497 0x1dcc \Device\Harddisk0\DR0\Partition5 - ok
16:45:34.0498 0x1dcc ================ Scan generic autorun ======================
16:45:34.0623 0x1dcc [ 210875E72C45D712120904128F357233, 4998BF27D28D4DDE79F9B06E0562E28A9D433DBFC0D3D4144A7A97EBF5110091 ] C:\Program Files\IDT\WDM\sttray64.exe
16:45:34.0681 0x1dcc SysTrayApp - ok
16:45:34.0683 0x1dcc SynTPEnh - ok
16:45:34.0827 0x1dcc [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
16:45:34.0843 0x1dcc RemoteControl10 - ok
16:45:35.0024 0x1dcc [ D1C8B0DC04347B6B9B5B3B9204DF6756, DA4D1CC98DCDFDF674F83164843A6B4E8830232700BE13CC755F94638351DA8B ] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
16:45:35.0053 0x1dcc HP CoolSense - ok
16:45:35.0206 0x1dcc [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
16:45:35.0231 0x1dcc BCSSync - ok
16:45:35.0345 0x1dcc [ BCBE8AEB8C6014A694062968F21BC0C4, 294D7BAA92121C7F647C0066A4D7E10F75C39C3EF12A0ECD5CAAF99F99A7C64A ] C:\Program Files (x86)\Memeo\AutoBackup\MemeoLauncher2.exe
16:45:35.0362 0x1dcc Memeo Instant Backup - ok
16:45:35.0473 0x1dcc [ 6198A9BC15ED77F318D5DDD1918CF1D1, 6C7E619BB053F09021F5867E3A70A3A2890E2318CF1A5CE294A5F894CB3A4890 ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
16:45:35.0495 0x1dcc HP Quick Launch - ok
16:45:35.0793 0x1dcc [ 1E06B301F4FA22A01B8CC314FC7A7E1C, D8E7DC35BF60FD5A1169BA6C127747D7928758071E37043891C24821F8BFFD19 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
16:45:35.0944 0x1dcc AvastUI.exe - ok
16:45:36.0072 0x1dcc [ 4C6AAABB264526A9C845A39AEBB79B69, B27F869E8B44CC5F1F9ADCA53AA848C16D706587ED9C7F995AE59BF9B0426523 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe
16:45:36.0091 0x1dcc StartCCC - ok
16:45:36.0209 0x1dcc Dropbox - ok
16:45:36.0307 0x1dcc [ 6EACC43D0542EF88226FB34B0B12EDB0, 6345E4B49D7F804F6DE042F981AB172822B6AB74C42209BEFB0582B019430884 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
16:45:36.0327 0x1dcc SunJavaUpdateSched - ok
16:45:36.0429 0x1dcc OneDriveSetup - ok
16:45:36.0432 0x1dcc OneDriveSetup - ok
16:45:36.0591 0x1dcc [ A49BDAAE58D3FFFEF42886F9CDA17861, 71CE5FF6F12938E3973A7052851C9645EB6852BC662A5B07A0F75F475E04DC40 ] C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe
16:45:36.0627 0x1dcc Power2GoExpress8 - ok
16:45:36.0987 0x1dcc [ 10E89F598469C60D8C87A8218089A87D, BE40B0DAB9F19E325086605A795469FC8A501FA66E05AD4D990E3C1A0326BAEF ] C:\Users\Martin\AppData\Local\Akamai\netsession_win.exe
16:45:37.0073 0x1dcc Akamai NetSession Interface - ok
16:45:37.0235 0x1dcc [ 6C7122316FE67D7EF1C470DBFDEBE65D, 498EA6B8E9F4482FE5FEEC174000FD4EF68287C72EBE1D0D0AFAEF6AD3850F4B ] C:\Users\Martin\AppData\Roaming\Browser-Security\safe_url__2.exe
16:45:37.0295 0x1dcc safe_url__2 - ok
16:45:37.0457 0x1dcc [ 2AB653E11A18FB6E88A3E8974C2E084D, 8CAAC651B37CA4D31AB436ACED6239C8338F3D692D8ABC851BF99F282215E349 ] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe
16:45:37.0486 0x1dcc Web Companion - ok
16:45:37.0669 0x1dcc [ A5D4129CEA4D3B75839E071C12185BD9, 7DC1A91F9D8AEBD7C684C30AB6D9983E6D3B6F105042FE8D5A21A3FB360C1FD4 ] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
16:45:37.0700 0x1dcc Autodesk Sync - ok
16:45:37.0841 0x1dcc [ 1D7DD340E13DF9585EABB849CFC3E11B, 31CCD9753402DC030C641214B4ECB48A757BCD9F427A143A88745C62EFF87766 ] C:\Users\Martin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
16:45:37.0870 0x1dcc OneDrive - ok
16:45:37.0971 0x1dcc Uninstall C:\Users\Martin\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64 - ok
16:45:37.0972 0x1dcc Waiting for KSN requests completion. In queue: 91
16:45:39.0047 0x1dcc AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.494 ), 0x60100 ( disabled : updated )
16:45:39.0064 0x1dcc AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.2.2738.0 ), 0x41000 ( enabled : updated )
16:45:39.0072 0x1dcc Win FW state via NFP2: enabled ( trusted )
16:45:39.0267 0x1dcc ============================================================
16:45:39.0267 0x1dcc Scan finished
16:45:39.0267 0x1dcc ============================================================
16:45:39.0280 0x19dc Detected object count: 1
16:45:39.0280 0x19dc Actual detected object count: 1
16:48:45.0501 0x19dc qkseeService ( UnsignedFile.Multi.Generic ) - skipped by user
16:48:45.0501 0x19dc qkseeService ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:52:14.0682 0x15b8 Deinitialize success |