TheUnknown98 | 25.09.2016 12:41 | TDSSKiller Code:
13:31:38.0154 0x30f4 TDSS rootkit removing tool 3.1.0.11 Aug 5 2016 12:13:31
13:31:41.0879 0x30f4 ============================================================
13:31:41.0879 0x30f4 Current date / time: 2016/09/25 13:31:41.0879
13:31:41.0879 0x30f4 SystemInfo:
13:31:41.0925 0x30f4
13:31:41.0925 0x30f4 OS Version: 10.0.14393 ServicePack: 0.0
13:31:41.0925 0x30f4 Product type: Workstation
13:31:41.0925 0x30f4 ComputerName: ROBERT-PC
13:31:41.0926 0x30f4 UserName: Robert
13:31:41.0926 0x30f4 Windows directory: C:\WINDOWS
13:31:41.0926 0x30f4 System windows directory: C:\WINDOWS
13:31:41.0926 0x30f4 Running under WOW64
13:31:41.0926 0x30f4 Processor architecture: Intel x64
13:31:41.0926 0x30f4 Number of processors: 8
13:31:41.0926 0x30f4 Page size: 0x1000
13:31:41.0926 0x30f4 Boot type: Normal boot
13:31:41.0926 0x30f4 CodeIntegrityOptions = 0x00000001
13:31:41.0926 0x30f4 ============================================================
13:31:42.0364 0x30f4 KLMD registered as C:\WINDOWS\system32\drivers\28225751.sys
13:31:42.0364 0x30f4 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.187, osProperties = 0x19
13:31:42.0580 0x30f4 System UUID: {D08ED60C-316D-8E51-2F18-7B3B42B29918}
13:31:43.0114 0x30f4 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:31:43.0130 0x30f4 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:31:43.0130 0x30f4 ============================================================
13:31:43.0130 0x30f4 \Device\Harddisk0\DR0:
13:31:43.0130 0x30f4 MBR partitions:
13:31:43.0130 0x30f4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x1F23E000
13:31:43.0130 0x30f4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1F400800, BlocksNum 0x55305800
13:31:43.0130 0x30f4 \Device\Harddisk1\DR1:
13:31:43.0130 0x30f4 MBR partitions:
13:31:43.0130 0x30f4 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:31:43.0130 0x30f4 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
13:31:43.0130 0x30f4 ============================================================
13:31:43.0130 0x30f4 C: <-> \Device\Harddisk0\DR0\Partition1
13:31:43.0165 0x30f4 D: <-> \Device\Harddisk0\DR0\Partition2
13:31:43.0167 0x30f4 E: <-> \Device\Harddisk1\DR1\Partition2
13:31:43.0182 0x30f4 G: <-> \Device\Harddisk1\DR1\Partition1
13:31:43.0182 0x30f4 ============================================================
13:31:43.0182 0x30f4 Initialize success
13:31:43.0182 0x30f4 ============================================================
13:32:32.0419 0x2fd0 ============================================================
13:32:32.0419 0x2fd0 Scan started
13:32:32.0419 0x2fd0 Mode: Manual; SigCheck; TDLFS;
13:32:32.0419 0x2fd0 ============================================================
13:32:32.0419 0x2fd0 KSN ping started
13:32:32.0499 0x2fd0 KSN ping finished: true
13:32:35.0202 0x2fd0 ================ Scan system memory ========================
13:32:35.0202 0x2fd0 System memory - ok
13:32:35.0204 0x2fd0 ================ Scan services =============================
13:32:35.0335 0x2fd0 1394ohci - ok
13:32:35.0335 0x2fd0 3ware - ok
13:32:35.0351 0x2fd0 ACPI - ok
13:32:35.0351 0x2fd0 AcpiDev - ok
13:32:35.0367 0x2fd0 acpiex - ok
13:32:35.0367 0x2fd0 acpipagr - ok
13:32:35.0404 0x2fd0 AcpiPmi - ok
13:32:35.0404 0x2fd0 acpitime - ok
13:32:35.0404 0x2fd0 ADP80XX - ok
13:32:35.0420 0x2fd0 AFD - ok
13:32:35.0420 0x2fd0 ahcache - ok
13:32:35.0436 0x2fd0 AJRouter - ok
13:32:35.0451 0x2fd0 ALG - ok
13:32:35.0482 0x2fd0 [ 571C226116E9508398739CB47DA6D6EA, CBAE8DA4C305A643DF269DC9A3C4D9AD0F1837A105702A30C2844D5939417CD9 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
13:32:35.0551 0x2fd0 AMD External Events Utility - ok
13:32:35.0567 0x2fd0 [ 8DE4A1A4CAE62E688D7592936BDA6CD4, 1FD38706613A9B1EEE3B7FF769B2699AFC61C1F886C5CB90D8F7A62E40787E70 ] amdacpksd C:\WINDOWS\system32\drivers\amdacpksd.sys
13:32:35.0582 0x2fd0 amdacpksd - ok
13:32:35.0651 0x2fd0 [ 0850D67FFD53D228E107E0E56F4851CC, 8A5973B68EDE3A1B723FAC509B02826AD839CB3C496B3FAEC3006EE5B5CEBD20 ] amdacpusrsvc C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
13:32:35.0682 0x2fd0 amdacpusrsvc - detected UnsignedFile.Multi.Generic ( 1 )
13:32:35.0736 0x2fd0 Detect skipped due to KSN trusted
13:32:35.0736 0x2fd0 amdacpusrsvc - ok
13:32:35.0767 0x2fd0 AmdK8 - ok
13:32:35.0799 0x2fd0 [ B28145E732EDEBBEDABC311DBA56D52A, 43745C17A3AC2A7A6FB0DBF1A2158C6B365198581E8E3B1F7E7E9EE9763A2735 ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
13:32:35.0804 0x2fd0 amdkmafd - ok
13:32:35.0804 0x2fd0 amdkmdag - ok
13:32:35.0836 0x2fd0 [ 9CC52BB8D02B76BB7841FB8FF210DD83, 9F419D7084D60B55FB47E1EF5D31F1D71A4D7A2F81DE8CC4C2C864D171BEA444 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
13:32:35.0867 0x2fd0 amdkmdap - ok
13:32:35.0867 0x2fd0 AmdPPM - ok
13:32:35.0867 0x2fd0 amdsata - ok
13:32:35.0867 0x2fd0 amdsbs - ok
13:32:35.0867 0x2fd0 amdxata - ok
13:32:35.0883 0x2fd0 AppID - ok
13:32:35.0898 0x2fd0 AppIDSvc - ok
13:32:35.0900 0x2fd0 Appinfo - ok
13:32:35.0904 0x2fd0 applockerfltr - ok
13:32:35.0920 0x2fd0 AppReadiness - ok
13:32:35.0936 0x2fd0 AppXSvc - ok
13:32:35.0936 0x2fd0 arcsas - ok
13:32:36.0004 0x2fd0 [ 75D6C3469347DE1CDFA3B1B9F1544208, 2AA1B08F47FBB1E2BD2E4A492F5D616968E703E1359A921F62B38B8E4662F0C4 ] AsrAutoChkUpdDrv C:\WINDOWS\SysWOW64\Drivers\AsrAutoChkUpdDrv.sys
13:32:36.0036 0x2fd0 AsrAutoChkUpdDrv - ok
13:32:36.0036 0x2fd0 AsyncMac - ok
13:32:36.0067 0x2fd0 atapi - ok
13:32:36.0104 0x2fd0 [ C5A4F2317DCD5004F1CF3E6B0102554F, DA777780BFDC48A53BE2876AFBB02CA29FB38903F8E03EB6458315EA2978F663 ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
13:32:36.0120 0x2fd0 AtiHDAudioService - ok
13:32:36.0136 0x2fd0 AudioEndpointBuilder - ok
13:32:36.0152 0x2fd0 Audiosrv - ok
13:32:36.0205 0x2fd0 [ 50C3C62FFE6337E6E4F2F01CB07DF63C, CC9C7D2827E872F22A2A79D42195530F61DF6EA6A1C8F520E25DB35537574FAB ] AVP16.0.0 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
13:32:36.0236 0x2fd0 AVP16.0.0 - ok
13:32:36.0236 0x2fd0 AxInstSV - ok
13:32:36.0251 0x2fd0 b06bdrv - ok
13:32:36.0255 0x2fd0 BasicDisplay - ok
13:32:36.0260 0x2fd0 BasicRender - ok
13:32:36.0265 0x2fd0 bcmfn - ok
13:32:36.0267 0x2fd0 bcmfn2 - ok
13:32:36.0274 0x2fd0 BDESVC - ok
13:32:36.0277 0x2fd0 Beep - ok
13:32:36.0295 0x2fd0 BFE - ok
13:32:36.0312 0x2fd0 [ 1C5E0DA5E19A854D24FD1BCCFE98D67A, 3FE041CB33FD7BD63BC54DF7ED520C485F8C11E2205FADD2A2F122250036BA85 ] BfLwf C:\WINDOWS\system32\DRIVERS\bwcW10x64.sys
13:32:36.0320 0x2fd0 BfLwf - ok
13:32:36.0327 0x2fd0 BITS - ok
13:32:36.0327 0x2fd0 bowser - ok
13:32:36.0327 0x2fd0 BrokerInfrastructure - ok
13:32:36.0343 0x2fd0 Browser - ok
13:32:36.0343 0x2fd0 BthAvrcpTg - ok
13:32:36.0343 0x2fd0 BthHFEnum - ok
13:32:36.0359 0x2fd0 bthhfhid - ok
13:32:36.0359 0x2fd0 BthHFSrv - ok
13:32:36.0359 0x2fd0 BTHMODEM - ok
13:32:36.0359 0x2fd0 bthserv - ok
13:32:36.0374 0x2fd0 buttonconverter - ok
13:32:36.0374 0x2fd0 CapImg - ok
13:32:36.0394 0x2fd0 cdfs - ok
13:32:36.0396 0x2fd0 CDPSvc - ok
13:32:36.0397 0x2fd0 CDPUserSvc - ok
13:32:36.0405 0x2fd0 cdrom - ok
13:32:36.0421 0x2fd0 CertPropSvc - ok
13:32:36.0421 0x2fd0 cht4iscsi - ok
13:32:36.0421 0x2fd0 cht4vbd - ok
13:32:36.0421 0x2fd0 circlass - ok
13:32:36.0421 0x2fd0 CLFS - ok
13:32:36.0421 0x2fd0 ClipSVC - ok
13:32:36.0421 0x2fd0 clreg - ok
13:32:36.0437 0x2fd0 CmBatt - ok
13:32:36.0452 0x2fd0 [ B2A6D2A30E93B6F215F74AC7E1733C9C, 960299F7BF2501B46296EDEA050BF30313C17A9B785574B56B79C070BD1B6E1A ] cm_km C:\WINDOWS\system32\DRIVERS\cm_km.sys
13:32:36.0468 0x2fd0 cm_km - ok
13:32:36.0484 0x2fd0 CNG - ok
13:32:36.0484 0x2fd0 cnghwassist - ok
13:32:36.0521 0x2fd0 CompositeBus - ok
13:32:36.0537 0x2fd0 COMSysApp - ok
13:32:36.0537 0x2fd0 condrv - ok
13:32:36.0555 0x2fd0 CoreMessagingRegistrar - ok
13:32:36.0668 0x2fd0 [ 00431929A879841E642A626DBD8311C6, E77C3CE24DA8748F96A0F6F8E410BAC484A6393EC969EF30D79E0D71FF36967A ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
13:32:36.0705 0x2fd0 cphs - ok
13:32:36.0721 0x2fd0 CryptSvc - ok
13:32:36.0737 0x2fd0 dam - ok
13:32:36.0752 0x2fd0 DcomLaunch - ok
13:32:36.0768 0x2fd0 DcpSvc - ok
13:32:36.0768 0x2fd0 defragsvc - ok
13:32:36.0784 0x2fd0 DeviceAssociationService - ok
13:32:36.0784 0x2fd0 DeviceInstall - ok
13:32:36.0784 0x2fd0 DevQueryBroker - ok
13:32:36.0805 0x2fd0 Dfsc - ok
13:32:36.0836 0x2fd0 [ 0F4A5D01156B948B54550375498B08A2, 1CAE3D744429A06E9C9EC46AC6B216AB68154EF8FACDD0721C47902B83820F56 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
13:32:36.0869 0x2fd0 dg_ssudbus - ok
13:32:36.0876 0x2fd0 Dhcp - ok
13:32:36.0900 0x2fd0 diagnosticshub.standardcollector.service - ok
13:32:36.0903 0x2fd0 DiagTrack - ok
13:32:36.0905 0x2fd0 disk - ok
13:32:36.0921 0x2fd0 DmEnrollmentSvc - ok
13:32:36.0937 0x2fd0 dmvsc - ok
13:32:36.0937 0x2fd0 dmwappushservice - ok
13:32:36.0937 0x2fd0 Dnscache - ok
13:32:36.0937 0x2fd0 dot3svc - ok
13:32:36.0937 0x2fd0 DPS - ok
13:32:36.0937 0x2fd0 drmkaud - ok
13:32:36.0937 0x2fd0 DsmSvc - ok
13:32:36.0952 0x2fd0 DsSvc - ok
13:32:36.0952 0x2fd0 DXGKrnl - ok
13:32:36.0952 0x2fd0 EapHost - ok
13:32:36.0952 0x2fd0 ebdrv - ok
13:32:36.0968 0x2fd0 EFS - ok
13:32:36.0968 0x2fd0 EhStorClass - ok
13:32:36.0968 0x2fd0 EhStorTcgDrv - ok
13:32:36.0984 0x2fd0 embeddedmode - ok
13:32:36.0984 0x2fd0 EntAppSvc - ok
13:32:36.0984 0x2fd0 ErrDev - ok
13:32:36.0984 0x2fd0 EventSystem - ok
13:32:36.0984 0x2fd0 exfat - ok
13:32:37.0000 0x2fd0 fastfat - ok
13:32:37.0001 0x2fd0 Fax - ok
13:32:37.0003 0x2fd0 fdc - ok
13:32:37.0005 0x2fd0 fdPHost - ok
13:32:37.0006 0x2fd0 FDResPub - ok
13:32:37.0006 0x2fd0 fhsvc - ok
13:32:37.0021 0x2fd0 FileCrypt - ok
13:32:37.0021 0x2fd0 FileInfo - ok
13:32:37.0021 0x2fd0 Filetrace - ok
13:32:37.0021 0x2fd0 flpydisk - ok
13:32:37.0021 0x2fd0 FltMgr - ok
13:32:37.0021 0x2fd0 FontCache - ok
13:32:37.0084 0x2fd0 FontCache3.0.0.0 - ok
13:32:37.0121 0x2fd0 FrameServer - ok
13:32:37.0121 0x2fd0 FsDepends - ok
13:32:37.0137 0x2fd0 Fs_Rec - ok
13:32:37.0201 0x2fd0 [ 4FE59CCAC4916CEF02DAFA58B6A7E10E, 27B7AA6108F175A4636E4E8455C5FFC17D98872517335A89D3DA2BD4A9A8E7C8 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
13:32:37.0237 0x2fd0 Futuremark SystemInfo Service - ok
13:32:37.0237 0x2fd0 fvevol - ok
13:32:37.0253 0x2fd0 gencounter - ok
13:32:37.0253 0x2fd0 genericusbfn - ok
13:32:37.0268 0x2fd0 GPIOClx0101 - ok
13:32:37.0268 0x2fd0 gpsvc - ok
13:32:37.0268 0x2fd0 GpuEnergyDrv - ok
13:32:37.0306 0x2fd0 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:32:37.0337 0x2fd0 gupdate - ok
13:32:37.0353 0x2fd0 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:32:37.0368 0x2fd0 gupdatem - ok
13:32:37.0368 0x2fd0 HDAudBus - ok
13:32:37.0368 0x2fd0 HidBatt - ok
13:32:37.0384 0x2fd0 HidBth - ok
13:32:37.0384 0x2fd0 hidi2c - ok
13:32:37.0384 0x2fd0 hidinterrupt - ok
13:32:37.0384 0x2fd0 HidIr - ok
13:32:37.0400 0x2fd0 hidserv - ok
13:32:37.0406 0x2fd0 HidUsb - ok
13:32:37.0406 0x2fd0 HomeGroupListener - ok
13:32:37.0421 0x2fd0 HomeGroupProvider - ok
13:32:37.0421 0x2fd0 HpSAMD - ok
13:32:37.0421 0x2fd0 HTTP - ok
13:32:37.0437 0x2fd0 HvHost - ok
13:32:37.0437 0x2fd0 hvservice - ok
13:32:37.0452 0x2fd0 hwpolicy - ok
13:32:37.0452 0x2fd0 hyperkbd - ok
13:32:37.0452 0x2fd0 i8042prt - ok
13:32:37.0452 0x2fd0 iagpio - ok
13:32:37.0452 0x2fd0 iai2c - ok
13:32:37.0452 0x2fd0 iaLPSS2i_GPIO2 - ok
13:32:37.0452 0x2fd0 iaLPSS2i_I2C - ok
13:32:37.0452 0x2fd0 iaLPSSi_GPIO - ok
13:32:37.0468 0x2fd0 iaLPSSi_I2C - ok
13:32:37.0468 0x2fd0 iaStorAV - ok
13:32:37.0468 0x2fd0 iaStorV - ok
13:32:37.0468 0x2fd0 ibbus - ok
13:32:37.0484 0x2fd0 icssvc - ok
13:32:37.0684 0x2fd0 [ DCADFA880DF77BB103F7A034A4B33577, 4AA267EE18104AEBA40A98A1D2DE2E10F1BB84F6FB4C5496600A45C072E18EC9 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
13:32:37.0800 0x2fd0 igfx - ok
13:32:37.0826 0x2fd0 [ E1C55B9A0BC573F95CBB0FE981C390D2, C19BAB0E55DD23F0CC106D73DAA1154D359D8033E065832E41B9D710E241FCF0 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
13:32:37.0831 0x2fd0 igfxCUIService2.0.0.0 - ok
13:32:37.0846 0x2fd0 IKEEXT - ok
13:32:37.0846 0x2fd0 IndirectKmd - ok
13:32:37.0947 0x2fd0 [ 7F08B78B1516626869FB44A61EFDF566, C585902D4F6E36A44097C192CCF19F1947F99C86A7BB77E83C0BE475F0151161 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
13:32:38.0030 0x2fd0 IntcAzAudAddService - ok
13:32:38.0047 0x2fd0 [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
13:32:38.0062 0x2fd0 IntcDAud - ok
13:32:38.0078 0x2fd0 intelide - ok
13:32:38.0078 0x2fd0 intelpep - ok
13:32:38.0078 0x2fd0 intelppm - ok
13:32:38.0094 0x2fd0 iorate - ok
13:32:38.0094 0x2fd0 IpFilterDriver - ok
13:32:38.0109 0x2fd0 iphlpsvc - ok
13:32:38.0109 0x2fd0 IPMIDRV - ok
13:32:38.0109 0x2fd0 IPNAT - ok
13:32:38.0128 0x2fd0 irda - ok
13:32:38.0131 0x2fd0 IRENUM - ok
13:32:38.0131 0x2fd0 irmon - ok
13:32:38.0131 0x2fd0 isapnp - ok
13:32:38.0131 0x2fd0 iScsiPrt - ok
13:32:38.0131 0x2fd0 kbdclass - ok
13:32:38.0147 0x2fd0 kbdhid - ok
13:32:38.0147 0x2fd0 kdnic - ok
13:32:38.0163 0x2fd0 KeyIso - ok
13:32:38.0228 0x2fd0 [ AAA45FAA95D2F54923C694BBACDEBB23, 57959CAA7824409DAFDB64AA5D6AFDA8A7600A73BCDB8C51D723E4BB4DD99917 ] Killer Service V2 C:\Program Files\Killer Networking\Network Manager\KillerService.exe
13:32:38.0247 0x2fd0 Killer Service V2 - detected UnsignedFile.Multi.Generic ( 1 )
13:32:38.0410 0x2fd0 Killer Service V2 ( UnsignedFile.Multi.Generic ) - warning
13:32:38.0532 0x2fd0 [ C94FB70AA81EF5D64B11E61B567F5AF2, 6488014691F19FE8E8EAE9C540A6C7791AA96715D9A5720B2B84360D834F6963 ] KillerEth C:\WINDOWS\System32\drivers\e22w10x64.sys
13:32:38.0563 0x2fd0 KillerEth - ok
13:32:38.0595 0x2fd0 [ BEE1682DA217A4AD46C36896769AA580, 4D853D78E459F7BFE4F4217FCAD47CDACFAC19C2F6CF8261FBAA46BDB387FFDC ] kl1 C:\WINDOWS\system32\DRIVERS\kl1.sys
13:32:38.0628 0x2fd0 kl1 - ok
13:32:38.0632 0x2fd0 [ 86F40D79CE80ACBE6BEBAC8CE89D75A0, 8B800425160D1AF3C32EF7B5CA794658EE09CD3EE782473D8D38E1C7706076B3 ] klbackupdisk C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys
13:32:38.0648 0x2fd0 klbackupdisk - ok
13:32:38.0648 0x2fd0 [ 2B4BC41223326FF440E2DB32B9239138, E95D5BB3388D6B219A4C175D5DA77CEB620A27A13F5AA4E7E2C05694B6E26947 ] klbackupflt C:\WINDOWS\system32\DRIVERS\klbackupflt.sys
13:32:38.0664 0x2fd0 klbackupflt - ok
13:32:38.0695 0x2fd0 [ 80D7529E1CF09261FADF55E69EFDA90B, 2FE5EC38866E12D78AE3F4AD8CF647BDED616E8A36D9D737F9B6564DDA4685E7 ] kldisk C:\WINDOWS\system32\DRIVERS\kldisk.sys
13:32:38.0695 0x2fd0 kldisk - ok
13:32:38.0711 0x2fd0 [ E2097C8F18F1E8E3B7D09F12B51843A3, 0506A99BD0962AAE64692BD7F080DB080F8B678DC59685CF22830A47B486430C ] klelam C:\WINDOWS\system32\DRIVERS\klelam.sys
13:32:38.0731 0x2fd0 klelam - ok
13:32:38.0748 0x2fd0 [ BACE50477C184A3AA0755702C23B8B27, 5708A1B7C22702AD2E5DD4491A911A51D2FB768E46857639C0C5D8736E487D0F ] klflt C:\WINDOWS\system32\DRIVERS\klflt.sys
13:32:38.0748 0x2fd0 klflt - ok
13:32:38.0780 0x2fd0 [ BE1DF4E950FF00A19BB72FA29CAEE32E, 24D8111B8782B4FB8612AB9DCE6A3A5EA63CE4B75DC717D0ECC5C6BCBCCF01AA ] klhk C:\WINDOWS\system32\DRIVERS\klhk.sys
13:32:38.0780 0x2fd0 klhk - ok
13:32:38.0833 0x2fd0 [ B72D1864B3EC6E429DB127A642CFB8BB, 43954F7E04158D79D44D0D6866838043A2B49B49EBF15A57DB120DB7AC3C19CE ] KLIF C:\WINDOWS\system32\DRIVERS\klif.sys
13:32:38.0864 0x2fd0 KLIF - ok
13:32:38.0896 0x2fd0 [ 161573B8BE82D24ED8B5B8EBA01245EA, 3CC124C717C2484A4DE0D415A2564D62D1A4B6E9DED65136B094304FCDE74CE0 ] KLIM6 C:\WINDOWS\system32\DRIVERS\klim6.sys
13:32:38.0896 0x2fd0 KLIM6 - ok
13:32:38.0911 0x2fd0 [ DAE5768E6FD34A36E3B9D1AF1FCA682B, 24DA0B71E3B4AC0FABEE0BF687DF8D35283DBF808CA3AB6F86E72B37471F6B33 ] klkbdflt C:\WINDOWS\system32\DRIVERS\klkbdflt.sys
13:32:38.0933 0x2fd0 klkbdflt - ok
13:32:38.0949 0x2fd0 [ FD47C92A63B6EADEA830BFA96C06EAEE, C15C39B6FA53CBD01A2F95243845C4B706B4229F8FFB75C7128819B9CEE5B2CB ] klmouflt C:\WINDOWS\system32\DRIVERS\klmouflt.sys
13:32:38.0965 0x2fd0 klmouflt - ok
13:32:38.0980 0x2fd0 [ F610F5F17BC87D61EF8954CCD793BAE4, A77FE26B4A474FE799C3D569BDD7858319C57FC14C1BB43ECFAB1FDB19AF5DC6 ] klpd C:\WINDOWS\system32\DRIVERS\klpd.sys
13:32:38.0980 0x2fd0 klpd - ok
13:32:38.0996 0x2fd0 [ 8334692AFEB3289984B40898B6B30C06, 6A337CC33B0EFC3B61BFCABFDFE305BE1D334620FB4D87DDEDBC8214966D6DDE ] klwfp C:\WINDOWS\system32\DRIVERS\klwfp.sys
13:32:39.0011 0x2fd0 klwfp - ok
13:32:39.0033 0x2fd0 [ 91234D71CEED29F2DBA16942CABDCA4F, 5D71BAC86C33BC77EEBF1ECB8F372DFE631991E4C5F36EAF0C8C957150BD6D52 ] Klwtp C:\WINDOWS\system32\DRIVERS\klwtp.sys
13:32:39.0034 0x2fd0 Klwtp - ok
13:32:39.0049 0x2fd0 [ 1686DE8288052316EFDD49EEA8929065, AD43D6ACCD8693BD76F218E1A4EE088BA061C1309A3E7DAA7EC94D875985D895 ] kneps C:\WINDOWS\system32\DRIVERS\kneps.sys
13:32:39.0049 0x2fd0 kneps - ok
13:32:39.0065 0x2fd0 KSecDD - ok
13:32:39.0080 0x2fd0 KSecPkg - ok
13:32:39.0080 0x2fd0 ksthunk - ok
13:32:39.0096 0x2fd0 KtmRm - ok
13:32:39.0096 0x2fd0 LanmanServer - ok
13:32:39.0112 0x2fd0 LanmanWorkstation - ok
13:32:39.0127 0x2fd0 lfsvc - ok
13:32:39.0133 0x2fd0 LicenseManager - ok
13:32:39.0133 0x2fd0 lltdio - ok
13:32:39.0133 0x2fd0 lltdsvc - ok
13:32:39.0149 0x2fd0 lmhosts - ok
13:32:39.0196 0x2fd0 [ 513E3588C0ACAB09AD4DA933E7554C63, 29522D921683228FF31E6161A2F6AA536D23FC5F7E692873D44BC633638F41F1 ] LolScreenSaverService C:\Riot Games\LolScreenSaver\service\service.exe
13:32:39.0212 0x2fd0 LolScreenSaverService - detected UnsignedFile.Multi.Generic ( 1 )
13:32:39.0296 0x2fd0 Detect skipped due to KSN trusted
13:32:39.0296 0x2fd0 LolScreenSaverService - ok
13:32:39.0312 0x2fd0 LSI_SAS - ok
13:32:39.0329 0x2fd0 LSI_SAS2i - ok
13:32:39.0334 0x2fd0 LSI_SAS3i - ok
13:32:39.0334 0x2fd0 LSI_SSS - ok
13:32:39.0334 0x2fd0 LSM - ok
13:32:39.0350 0x2fd0 luafv - ok
13:32:39.0366 0x2fd0 MapsBroker - ok
13:32:39.0366 0x2fd0 megasas - ok
13:32:39.0381 0x2fd0 megasr - ok
13:32:39.0381 0x2fd0 [ 5AC258A5845A72B91C675F44050058B2, 69D298B5774F299DE2EECF7B9238BFD36CDC0BAFB167FD0927398E4A89A5D63B ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
13:32:39.0413 0x2fd0 MEIx64 - ok
13:32:39.0413 0x2fd0 MessagingService - ok
13:32:39.0413 0x2fd0 mlx4_bus - ok
13:32:39.0431 0x2fd0 MMCSS - ok
13:32:39.0434 0x2fd0 Modem - ok
13:32:39.0435 0x2fd0 monitor - ok
13:32:39.0435 0x2fd0 mouclass - ok
13:32:39.0450 0x2fd0 mouhid - ok
13:32:39.0450 0x2fd0 mountmgr - ok
13:32:39.0466 0x2fd0 [ 69E23C730974BAC8C11DF2B7C4C9D37B, 8DC4448EC9C9647381952D7822B39C89E0997B4B964A785AE274144FADEE3C02 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:32:39.0482 0x2fd0 MozillaMaintenance - ok
13:32:39.0497 0x2fd0 mpsdrv - ok
13:32:39.0497 0x2fd0 MpsSvc - ok
13:32:39.0513 0x2fd0 MRxDAV - ok
13:32:39.0535 0x2fd0 mrxsmb - ok
13:32:39.0535 0x2fd0 mrxsmb10 - ok
13:32:39.0555 0x2fd0 mrxsmb20 - ok
13:32:39.0570 0x2fd0 MsBridge - ok
13:32:39.0586 0x2fd0 MSDTC - ok
13:32:39.0601 0x2fd0 Msfs - ok
13:32:39.0617 0x2fd0 msgpiowin32 - ok
13:32:39.0617 0x2fd0 mshidkmdf - ok
13:32:39.0617 0x2fd0 mshidumdf - ok
13:32:39.0635 0x2fd0 msisadrv - ok
13:32:39.0635 0x2fd0 MSiSCSI - ok
13:32:39.0651 0x2fd0 msiserver - ok
13:32:39.0651 0x2fd0 MSKSSRV - ok
13:32:39.0651 0x2fd0 MsLldp - ok
13:32:39.0651 0x2fd0 MSPCLOCK - ok
13:32:39.0666 0x2fd0 MSPQM - ok
13:32:39.0666 0x2fd0 MsRPC - ok
13:32:39.0666 0x2fd0 mssmbios - ok
13:32:39.0682 0x2fd0 MSTEE - ok
13:32:39.0682 0x2fd0 MTConfig - ok
13:32:39.0682 0x2fd0 Mup - ok
13:32:39.0682 0x2fd0 mvumis - ok
13:32:39.0698 0x2fd0 NativeWifiP - ok
13:32:39.0698 0x2fd0 NcaSvc - ok
13:32:39.0713 0x2fd0 NcbService - ok
13:32:39.0713 0x2fd0 NcdAutoSetup - ok
13:32:39.0713 0x2fd0 ndfltr - ok
13:32:39.0713 0x2fd0 NDIS - ok
13:32:39.0713 0x2fd0 NdisCap - ok
13:32:39.0713 0x2fd0 NdisImPlatform - ok
13:32:39.0713 0x2fd0 NdisTapi - ok
13:32:39.0731 0x2fd0 Ndisuio - ok
13:32:39.0733 0x2fd0 NdisVirtualBus - ok
13:32:39.0735 0x2fd0 NdisWan - ok
13:32:39.0735 0x2fd0 ndiswanlegacy - ok
13:32:39.0735 0x2fd0 ndproxy - ok
13:32:39.0735 0x2fd0 Ndu - ok
13:32:39.0735 0x2fd0 NetAdapterCx - ok
13:32:39.0735 0x2fd0 NetBIOS - ok
13:32:39.0735 0x2fd0 NetBT - ok
13:32:39.0735 0x2fd0 Netlogon - ok
13:32:39.0751 0x2fd0 Netman - ok
13:32:39.0751 0x2fd0 netprofm - ok
13:32:39.0766 0x2fd0 NetSetupSvc - ok
13:32:39.0784 0x2fd0 NetTcpPortSharing - ok
13:32:39.0784 0x2fd0 NgcCtnrSvc - ok
13:32:39.0800 0x2fd0 NgcSvc - ok
13:32:39.0800 0x2fd0 NlaSvc - ok
13:32:39.0800 0x2fd0 Npfs - ok
13:32:39.0800 0x2fd0 npsvctrig - ok
13:32:39.0800 0x2fd0 nsi - ok
13:32:39.0815 0x2fd0 nsiproxy - ok
13:32:39.0815 0x2fd0 NTFS - ok
13:32:39.0815 0x2fd0 Null - ok
13:32:39.0815 0x2fd0 nvraid - ok
13:32:39.0815 0x2fd0 nvstor - ok
13:32:39.0850 0x2fd0 OneSyncSvc - ok
13:32:39.0982 0x2fd0 [ BCD6A1F2A5653572225BE9E001DABD8B, ED85B6775BAE1D8C321C42DDB4EBCEDDC25958F1E8FF63E313F1D5C7BA477B67 ] Origin Client Service D:\Programme\Origin\OriginClientService.exe
13:32:40.0013 0x2fd0 Origin Client Service - ok
13:32:40.0113 0x2fd0 [ B689AC2D3E1F80D6D72A9699D35ABA5A, C77E2AB0899B6A4FE1C6DE9CBCB6E89A20A4AC5A4D2B4C308FD362E976F0034A ] Origin Web Helper Service D:\Programme\Origin\OriginWebHelperService.exe
13:32:40.0150 0x2fd0 Origin Web Helper Service - ok
13:32:40.0150 0x2fd0 p2pimsvc - ok
13:32:40.0150 0x2fd0 p2psvc - ok
13:32:40.0150 0x2fd0 Parport - ok
13:32:40.0166 0x2fd0 partmgr - ok
13:32:40.0182 0x2fd0 PcaSvc - ok
13:32:40.0197 0x2fd0 pci - ok
13:32:40.0197 0x2fd0 pciide - ok
13:32:40.0213 0x2fd0 pcmcia - ok
13:32:40.0213 0x2fd0 pcw - ok
13:32:40.0213 0x2fd0 pdc - ok
13:32:40.0234 0x2fd0 PEAUTH - ok
13:32:40.0234 0x2fd0 percsas2i - ok
13:32:40.0234 0x2fd0 percsas3i - ok
13:32:40.0297 0x2fd0 PerfHost - ok
13:32:40.0333 0x2fd0 PhoneSvc - ok
13:32:40.0335 0x2fd0 PimIndexMaintenanceSvc - ok
13:32:40.0350 0x2fd0 pla - ok
13:32:40.0397 0x2fd0 [ 4808ACE4B2C161AF2667F6C1AC45B434, 7C8F570721BA9827D2F4E5E48545D8A062484783091D7B1340BEE1F78AC90117 ] PlaysService C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
13:32:40.0435 0x2fd0 PlaysService - ok
13:32:40.0435 0x2fd0 PlugPlay - ok
13:32:40.0450 0x2fd0 PNRPAutoReg - ok
13:32:40.0450 0x2fd0 PNRPsvc - ok
13:32:40.0466 0x2fd0 PolicyAgent - ok
13:32:40.0466 0x2fd0 Power - ok
13:32:40.0482 0x2fd0 PptpMiniport - ok
13:32:40.0635 0x2fd0 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
13:32:40.0697 0x2fd0 PrintNotify - ok
13:32:40.0713 0x2fd0 Processor - ok
13:32:40.0713 0x2fd0 ProfSvc - ok
13:32:40.0713 0x2fd0 Psched - ok
13:32:40.0732 0x2fd0 QWAVE - ok
13:32:40.0735 0x2fd0 QWAVEdrv - ok
13:32:40.0735 0x2fd0 RasAcd - ok
13:32:40.0735 0x2fd0 RasAgileVpn - ok
13:32:40.0751 0x2fd0 RasAuto - ok
13:32:40.0751 0x2fd0 Rasl2tp - ok
13:32:40.0751 0x2fd0 RasMan - ok
13:32:40.0751 0x2fd0 RasPppoe - ok
13:32:40.0751 0x2fd0 RasSstp - ok
13:32:40.0766 0x2fd0 rdbss - ok
13:32:40.0766 0x2fd0 rdpbus - ok
13:32:40.0766 0x2fd0 RDPDR - ok
13:32:40.0782 0x2fd0 RdpVideoMiniport - ok
13:32:40.0798 0x2fd0 rdyboost - ok
13:32:40.0798 0x2fd0 ReFSv1 - ok
13:32:40.0813 0x2fd0 RemoteAccess - ok
13:32:40.0813 0x2fd0 RemoteRegistry - ok
13:32:40.0851 0x2fd0 RetailDemo - ok
13:32:40.0851 0x2fd0 RmSvc - ok
13:32:40.0866 0x2fd0 RpcEptMapper - ok
13:32:40.0885 0x2fd0 RpcLocator - ok
13:32:40.0885 0x2fd0 RpcSs - ok
13:32:40.0900 0x2fd0 rspndr - ok
13:32:40.0916 0x2fd0 s3cap - ok
13:32:40.0951 0x2fd0 [ AFF8A812F0FAD0DA5438AB1F5D72DF50, 563692B9C30737519010CB082EFFA0BAFCC6A1604FBCA601D20941AB306F6E1A ] SaiK1112 C:\WINDOWS\system32\DRIVERS\SaiK1112.sys
13:32:40.0982 0x2fd0 SaiK1112 - ok
13:32:40.0998 0x2fd0 [ BF5926AD4050E29CDD8787CC1112010A, 3A7D8A476B491A74F862718096D8E1CC8C2DAEB85C6925D69A9D45AFDD0E225D ] SaiMini C:\WINDOWS\System32\drivers\SaiMini.sys
13:32:41.0014 0x2fd0 SaiMini - ok
13:32:41.0034 0x2fd0 [ 59128BF5C72885109ECF8EC40A3B4DA8, 07E4CFA141039D5078C29C5309F516B6F1F19C6DF521DEE25866217016B43E95 ] SaiNtBus C:\WINDOWS\system32\drivers\SaiBus.sys
13:32:41.0036 0x2fd0 SaiNtBus - ok
13:32:41.0051 0x2fd0 SamSs - ok
13:32:41.0067 0x2fd0 sbp2port - ok
13:32:41.0083 0x2fd0 SCardSvr - ok
13:32:41.0083 0x2fd0 ScDeviceEnum - ok
13:32:41.0098 0x2fd0 scfilter - ok
13:32:41.0098 0x2fd0 Schedule - ok
13:32:41.0098 0x2fd0 scmbus - ok
13:32:41.0098 0x2fd0 scmdisk0101 - ok
13:32:41.0114 0x2fd0 SCPolicySvc - ok
13:32:41.0134 0x2fd0 sdbus - ok
13:32:41.0136 0x2fd0 SDRSVC - ok
13:32:41.0236 0x2fd0 [ D777F1417D9BB9F66CD9D9C3B61F730F, 0CBD830EB9D2B0F1946131F20907793B2D68A3BCEEC3EA5416972149F73DC815 ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
13:32:41.0268 0x2fd0 SDScannerService - ok
13:32:41.0268 0x2fd0 sdstor - ok
13:32:41.0414 0x2fd0 [ 94653C9CFDC15B30EEECD94BA7219654, 59F54AC9BC79C1BFBEA84992181C58AF434A3DDDF473C9BE942D3462875A8375 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
13:32:41.0483 0x2fd0 SDUpdateService - ok
13:32:41.0499 0x2fd0 [ 9B9B368A8FF5CAF91D7A333CF62CD2CC, A4AE7FFBBAF983BFDE15B521ED162CBC4E6FC85BCDB200C75D45878B3FFDFA68 ] SDWSCService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
13:32:41.0499 0x2fd0 SDWSCService - ok
13:32:41.0499 0x2fd0 seclogon - ok
13:32:41.0499 0x2fd0 SENS - ok
13:32:41.0515 0x2fd0 SensorDataService - ok
13:32:41.0552 0x2fd0 SensorService - ok
13:32:41.0552 0x2fd0 SensrSvc - ok
13:32:41.0568 0x2fd0 SerCx - ok
13:32:41.0583 0x2fd0 SerCx2 - ok
13:32:41.0583 0x2fd0 Serenum - ok
13:32:41.0583 0x2fd0 Serial - ok
13:32:41.0583 0x2fd0 sermouse - ok
13:32:41.0599 0x2fd0 SessionEnv - ok
13:32:41.0614 0x2fd0 sfloppy - ok
13:32:41.0637 0x2fd0 SharedAccess - ok
13:32:41.0652 0x2fd0 ShellHWDetection - ok
13:32:41.0652 0x2fd0 shpamsvc - ok
13:32:41.0668 0x2fd0 SiSRaid2 - ok
13:32:41.0677 0x2fd0 SiSRaid4 - ok
13:32:41.0715 0x2fd0 [ 9A66A87BBC0EC4463042959B7C0D4AC1, 2E61DC50AD4A4D4782F3271BAD010137DA9A6AFC46C7568C709F68C7621DCD40 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
13:32:41.0753 0x2fd0 SkypeUpdate - ok
13:32:41.0769 0x2fd0 smphost - ok
13:32:41.0769 0x2fd0 SmsRouter - ok
13:32:41.0784 0x2fd0 SNMPTRAP - ok
13:32:41.0787 0x2fd0 spaceport - ok
13:32:41.0787 0x2fd0 SpbCx - ok
13:32:41.0787 0x2fd0 Spooler - ok
13:32:41.0803 0x2fd0 sppsvc - ok
13:32:41.0819 0x2fd0 srv - ok
13:32:41.0835 0x2fd0 srv2 - ok
13:32:41.0838 0x2fd0 srvnet - ok
13:32:41.0853 0x2fd0 [ AFC159BDB8CD5A804D015D8A3624ECC6, 863150170D7F84D793C7CECD40439A5B46D337A8B904183ED8C53FDA9FB71091 ] ssdevfactory C:\WINDOWS\System32\drivers\ssdevfactory.sys
13:32:41.0869 0x2fd0 ssdevfactory - ok
13:32:41.0869 0x2fd0 SSDPSRV - ok
13:32:41.0900 0x2fd0 [ B7A505796AFBBC11987C6B9DF87994B3, 25D1AE78F80C661135B52DDCAA020933F802D85EA305082B4C91FF8D850D2146 ] sshid C:\WINDOWS\System32\drivers\sshid.sys
13:32:41.0916 0x2fd0 sshid - ok
13:32:41.0936 0x2fd0 SstpSvc - ok
13:32:41.0954 0x2fd0 [ 9B74226E10CD57E965F87014841016F9, 95C76049DBBF3B31A9B01CFD0EDAAC47DE9A1F096B61D05C47FB85E1AFC07288 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
13:32:41.0969 0x2fd0 ssudmdm - ok
13:32:41.0985 0x2fd0 StateRepository - ok
13:32:42.0085 0x2fd0 [ 04F9B53224689BB3638CC2D3DA721E5C, D073C8D5CEFD59CC3D4834A6B92EA8FE113A73C400C27BB6B3D215522FAE17C3 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
13:32:42.0101 0x2fd0 Steam Client Service - ok
13:32:42.0116 0x2fd0 stexstor - ok
13:32:42.0138 0x2fd0 stisvc - ok
13:32:42.0138 0x2fd0 storahci - ok
13:32:42.0138 0x2fd0 storflt - ok
13:32:42.0153 0x2fd0 stornvme - ok
13:32:42.0153 0x2fd0 storqosflt - ok
13:32:42.0169 0x2fd0 StorSvc - ok
13:32:42.0169 0x2fd0 storufs - ok
13:32:42.0169 0x2fd0 storvsc - ok
13:32:42.0169 0x2fd0 svsvc - ok
13:32:42.0169 0x2fd0 swenum - ok
13:32:42.0169 0x2fd0 swprv - ok
13:32:42.0200 0x2fd0 Synth3dVsc - ok
13:32:42.0200 0x2fd0 SysMain - ok
13:32:42.0216 0x2fd0 SystemEventsBroker - ok
13:32:42.0233 0x2fd0 TabletInputService - ok
13:32:42.0238 0x2fd0 TapiSrv - ok
13:32:42.0238 0x2fd0 Tcpip - ok
13:32:42.0254 0x2fd0 Tcpip6 - ok
13:32:42.0254 0x2fd0 tcpipreg - ok
13:32:42.0270 0x2fd0 tdx - ok
13:32:42.0270 0x2fd0 terminpt - ok
13:32:42.0270 0x2fd0 TermService - ok
13:32:42.0285 0x2fd0 Themes - ok
13:32:42.0301 0x2fd0 TieringEngineService - ok
13:32:42.0301 0x2fd0 tiledatamodelsvc - ok
13:32:42.0301 0x2fd0 TimeBrokerSvc - ok
13:32:42.0317 0x2fd0 TPM - ok
13:32:42.0317 0x2fd0 TrkWks - ok
13:32:42.0338 0x2fd0 TrustedInstaller - ok
13:32:42.0338 0x2fd0 tsusbflt - ok
13:32:42.0338 0x2fd0 TsUsbGD - ok
13:32:42.0338 0x2fd0 tunnel - ok
13:32:42.0338 0x2fd0 tzautoupdate - ok
13:32:42.0354 0x2fd0 UASPStor - ok
13:32:42.0354 0x2fd0 UcmCx0101 - ok
13:32:42.0354 0x2fd0 UcmTcpciCx0101 - ok
13:32:42.0354 0x2fd0 UcmUcsi - ok
13:32:42.0354 0x2fd0 Ucx01000 - ok
13:32:42.0354 0x2fd0 UdeCx - ok
13:32:42.0354 0x2fd0 udfs - ok
13:32:42.0369 0x2fd0 UEFI - ok
13:32:42.0369 0x2fd0 Ufx01000 - ok
13:32:42.0369 0x2fd0 UfxChipidea - ok
13:32:42.0369 0x2fd0 ufxsynopsys - ok
13:32:42.0369 0x2fd0 UI0Detect - ok
13:32:42.0369 0x2fd0 umbus - ok
13:32:42.0385 0x2fd0 UmPass - ok
13:32:42.0385 0x2fd0 UmRdpService - ok
13:32:42.0385 0x2fd0 UnistoreSvc - ok
13:32:42.0385 0x2fd0 upnphost - ok
13:32:42.0385 0x2fd0 UrsChipidea - ok
13:32:42.0385 0x2fd0 UrsCx01000 - ok
13:32:42.0385 0x2fd0 UrsSynopsys - ok
13:32:42.0400 0x2fd0 usbccgp - ok
13:32:42.0400 0x2fd0 usbcir - ok
13:32:42.0400 0x2fd0 usbehci - ok
13:32:42.0400 0x2fd0 usbhub - ok
13:32:42.0400 0x2fd0 USBHUB3 - ok
13:32:42.0400 0x2fd0 usbohci - ok
13:32:42.0400 0x2fd0 usbprint - ok
13:32:42.0416 0x2fd0 usbrndis6 - ok
13:32:42.0416 0x2fd0 usbser - ok
13:32:42.0416 0x2fd0 USBSTOR - ok
13:32:42.0416 0x2fd0 usbuhci - ok
13:32:42.0432 0x2fd0 USBXHCI - ok
13:32:42.0435 0x2fd0 UserDataSvc - ok
13:32:42.0438 0x2fd0 UserManager - ok
13:32:42.0438 0x2fd0 UsoSvc - ok
13:32:42.0438 0x2fd0 VaultSvc - ok
13:32:42.0438 0x2fd0 vdrvroot - ok
13:32:42.0438 0x2fd0 vds - ok
13:32:42.0438 0x2fd0 VerifierExt - ok
13:32:42.0438 0x2fd0 vhdmp - ok
13:32:42.0438 0x2fd0 vhf - ok
13:32:42.0454 0x2fd0 vmbus - ok
13:32:42.0454 0x2fd0 VMBusHID - ok
13:32:42.0454 0x2fd0 vmgid - ok
13:32:42.0469 0x2fd0 vmicguestinterface - ok
13:32:42.0469 0x2fd0 vmicheartbeat - ok
13:32:42.0469 0x2fd0 vmickvpexchange - ok
13:32:42.0469 0x2fd0 vmicrdv - ok
13:32:42.0469 0x2fd0 vmicshutdown - ok
13:32:42.0469 0x2fd0 vmictimesync - ok
13:32:42.0485 0x2fd0 vmicvmsession - ok
13:32:42.0485 0x2fd0 vmicvss - ok
13:32:42.0485 0x2fd0 volmgr - ok
13:32:42.0485 0x2fd0 volmgrx - ok
13:32:42.0485 0x2fd0 volsnap - ok
13:32:42.0485 0x2fd0 volume - ok
13:32:42.0485 0x2fd0 vpci - ok
13:32:42.0501 0x2fd0 vsmraid - ok
13:32:42.0501 0x2fd0 VSS - ok
13:32:42.0538 0x2fd0 [ 79F4D90FAA0ACC1866F2F3E03E39CA89, EE08BCBF29A7E4AFFF520B8DF067281425F433EC275F8C86CE8F20F000E92E3D ] vssbrigde64 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe
13:32:42.0569 0x2fd0 vssbrigde64 - ok
13:32:42.0585 0x2fd0 VSTXRAID - ok
13:32:42.0600 0x2fd0 vwifibus - ok
13:32:42.0616 0x2fd0 vwififlt - ok
13:32:42.0632 0x2fd0 W32Time - ok
13:32:42.0637 0x2fd0 WacomPen - ok
13:32:42.0670 0x2fd0 WalletService - ok
13:32:42.0670 0x2fd0 wanarp - ok
13:32:42.0686 0x2fd0 wanarpv6 - ok
13:32:42.0686 0x2fd0 wbengine - ok
13:32:42.0686 0x2fd0 WbioSrvc - ok
13:32:42.0686 0x2fd0 wcifs - ok
13:32:42.0701 0x2fd0 Wcmsvc - ok
13:32:42.0701 0x2fd0 wcncsvc - ok
13:32:42.0701 0x2fd0 wcnfs - ok
13:32:42.0717 0x2fd0 WdBoot - ok
13:32:42.0717 0x2fd0 Wdf01000 - ok
13:32:42.0717 0x2fd0 WdFilter - ok
13:32:42.0717 0x2fd0 WdiServiceHost - ok
13:32:42.0717 0x2fd0 WdiSystemHost - ok
13:32:42.0717 0x2fd0 wdiwifi - ok
13:32:42.0717 0x2fd0 WdNisDrv - ok
13:32:42.0738 0x2fd0 WdNisSvc - ok
13:32:42.0754 0x2fd0 WebClient - ok
13:32:42.0754 0x2fd0 Wecsvc - ok
13:32:42.0754 0x2fd0 WEPHOSTSVC - ok
13:32:42.0754 0x2fd0 wercplsupport - ok
13:32:42.0754 0x2fd0 WerSvc - ok
13:32:42.0754 0x2fd0 WFPLWFS - ok
13:32:42.0754 0x2fd0 WiaRpc - ok
13:32:42.0770 0x2fd0 WIMMount - ok
13:32:42.0770 0x2fd0 WinDefend - ok
13:32:42.0785 0x2fd0 WindowsTrustedRT - ok
13:32:42.0785 0x2fd0 WindowsTrustedRTProxy - ok
13:32:42.0801 0x2fd0 WinHttpAutoProxySvc - ok
13:32:42.0801 0x2fd0 WinMad - ok
13:32:42.0817 0x2fd0 Winmgmt - ok
13:32:42.0817 0x2fd0 WinRM - ok
13:32:42.0839 0x2fd0 WINUSB - ok
13:32:42.0854 0x2fd0 WinVerbs - ok
13:32:42.0870 0x2fd0 wisvc - ok
13:32:42.0890 0x2fd0 WlanSvc - ok
13:32:42.0890 0x2fd0 wlidsvc - ok
13:32:42.0906 0x2fd0 WmiAcpi - ok
13:32:42.0906 0x2fd0 wmiApSrv - ok
13:32:42.0922 0x2fd0 WMPNetworkSvc - ok
13:32:42.0939 0x2fd0 Wof - ok
13:32:42.0970 0x2fd0 workfolderssvc - ok
13:32:42.0970 0x2fd0 WPDBusEnum - ok
13:32:42.0986 0x2fd0 WpdUpFltr - ok
13:32:43.0001 0x2fd0 WpnService - ok
13:32:43.0001 0x2fd0 WpnUserService - ok
13:32:43.0001 0x2fd0 ws2ifsl - ok
13:32:43.0017 0x2fd0 wscsvc - ok
13:32:43.0017 0x2fd0 WSearch - ok
13:32:43.0034 0x2fd0 wuauserv - ok
13:32:43.0036 0x2fd0 WudfPf - ok
13:32:43.0039 0x2fd0 WUDFRd - ok
13:32:43.0040 0x2fd0 wudfsvc - ok
13:32:43.0040 0x2fd0 WUDFWpdFs - ok
13:32:43.0040 0x2fd0 WUDFWpdMtp - ok
13:32:43.0040 0x2fd0 WwanSvc - ok
13:32:43.0055 0x2fd0 XblAuthManager - ok
13:32:43.0055 0x2fd0 XblGameSave - ok
13:32:43.0055 0x2fd0 xboxgip - ok
13:32:43.0055 0x2fd0 XboxNetApiSvc - ok
13:32:43.0071 0x2fd0 xinputhid - ok
13:32:43.0071 0x2fd0 ================ Scan global ===============================
13:32:43.0102 0x2fd0 [ Global ] - ok
13:32:43.0102 0x2fd0 ================ Scan MBR ==================================
13:32:43.0118 0x2fd0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:32:43.0233 0x2fd0 \Device\Harddisk0\DR0 - ok
13:32:43.0239 0x2fd0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
13:32:43.0502 0x2fd0 \Device\Harddisk1\DR1 - ok
13:32:43.0502 0x2fd0 ================ Scan VBR ==================================
13:32:43.0502 0x2fd0 [ 8125EB08668304D4B6C7F49322B9F29E ] \Device\Harddisk0\DR0\Partition1
13:32:43.0502 0x2fd0 \Device\Harddisk0\DR0\Partition1 - ok
13:32:43.0518 0x2fd0 [ 405843A6CE5CA3BBA02D3127B8A88E90 ] \Device\Harddisk0\DR0\Partition2
13:32:43.0518 0x2fd0 \Device\Harddisk0\DR0\Partition2 - ok
13:32:43.0518 0x2fd0 [ 17B8C9379CA087F13E13D18A19BC6C47 ] \Device\Harddisk1\DR1\Partition1
13:32:43.0518 0x2fd0 \Device\Harddisk1\DR1\Partition1 - ok
13:32:43.0535 0x2fd0 [ 222FCFBBDE9000E92207A9030B722463 ] \Device\Harddisk1\DR1\Partition2
13:32:43.0536 0x2fd0 \Device\Harddisk1\DR1\Partition2 - ok
13:32:43.0537 0x2fd0 ================ Scan generic autorun ======================
13:32:43.0841 0x2fd0 [ 4878D4D36D683EBE2F1E5F83C6A3BDB3, 82DA7BFED5F61DF4B679B06339E4065CCE0DA0D6741287F93A2EF1BCC85AB1E1 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
13:32:44.0036 0x2fd0 RTHDVCPL - ok
13:32:44.0057 0x2fd0 [ 40ACF2393D2E19F5F5A02E70C41417B8, C02BF28B7F4ED95D87381EC2B9BC45AEB29D26D9DCF2EE745D587A6E1A4C176B ] C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe
13:32:44.0073 0x2fd0 S.T.R.I.K.E.3 - detected UnsignedFile.Multi.Generic ( 1 )
13:32:44.0237 0x2fd0 S.T.R.I.K.E.3 ( UnsignedFile.Multi.Generic ) - warning
13:32:44.0237 0x2fd0 Force sending object to P2P due to detect: C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe
13:32:44.0404 0x2fd0 Object send P2P result: true
13:32:44.0558 0x2fd0 [ 6EE3715365088DEA045C3435980D7898, 188882D7C2385DDAAD2C717A2198BF8B23C6BF772D96912FEF3CAF72D8442E7B ] C:\Program Files\SmartTechnology\Software\ProfilerU.exe
13:32:44.0589 0x2fd0 ProfilerU - detected UnsignedFile.Multi.Generic ( 1 )
13:32:44.0721 0x2fd0 Detect skipped due to KSN trusted
13:32:44.0721 0x2fd0 ProfilerU - ok
13:32:44.0743 0x2fd0 [ 7AB0F78E4A11AA37B1E58F613F4164F6, FF6238EAACBF0F50889BE964C8DA0D715B5975351F87EB97A3C90F810DB09734 ] C:\Program Files\SmartTechnology\Software\SaiMfd.exe
13:32:44.0790 0x2fd0 SaiMfd - detected UnsignedFile.Multi.Generic ( 1 )
13:32:44.0921 0x2fd0 Detect skipped due to KSN trusted
13:32:44.0921 0x2fd0 SaiMfd - ok
13:32:45.0144 0x2fd0 [ 0F920C5990215DE2EB370C7C8F39B6CE, 5B1C7450AA949261D0659AAE2CCB7AE56A3919F641AEF800BA6B1714336AB295 ] C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
13:32:45.0222 0x2fd0 StartCN - ok
13:32:45.0275 0x2fd0 [ 8AB64F458494D8606BC5C9D0A9CE9362, 36E286E4850806E893F2B7B2A6111C9AB14F768F1BD4C1260478B6E62F71D30F ] C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe
13:32:45.0290 0x2fd0 PlaysTV - ok
13:32:45.0306 0x2fd0 [ 5F4FE49E3C07C1D0F0A98FB8CE066D50, 90AA7422C21C3DB3D9433F24F558D975735C6CC5C548398B2CE26113AF510BDD ] C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe
13:32:45.0322 0x2fd0 Raptr - ok
13:32:45.0374 0x2fd0 [ 059B8158C08C82C78DC6A8153A2467A4, 8E88DBC785CF679D238DC5CCBF0C79B03B30F742CF0FC6427AD0AD2AD5943169 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
13:32:45.0390 0x2fd0 SunJavaUpdateSched - ok
13:32:45.0544 0x2fd0 [ 7EE68A122ED08E4AAD8DA551E34D2515, B3C9AB270AF595D3DBAFBF4A312B96CBF00C16F0A03CCC86BE56825CD1EB7143 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
13:32:45.0593 0x2fd0 SDTray - ok
13:32:45.0674 0x2fd0 OneDriveSetup - ok
13:32:45.0674 0x2fd0 OneDriveSetup - ok
13:32:45.0794 0x2fd0 [ 1D7DD340E13DF9585EABB849CFC3E11B, 31CCD9753402DC030C641214B4ECB48A757BCD9F427A143A88745C62EFF87766 ] C:\Users\Robert\AppData\Local\Microsoft\OneDrive\OneDrive.exe
13:32:45.0825 0x2fd0 OneDrive - ok
13:32:45.0960 0x2fd0 [ 6F4E4E5B2C2B9922ED022CBA4266B375, 6B646D7ED0E14F21DC52FB6701837A8C1553AE4F4BD89682F21BB8B23161BB03 ] D:\Programme\Steam\steam.exe
13:32:46.0007 0x2fd0 Steam - ok
13:32:46.0075 0x2fd0 [ F51BB12D8977D26C1A4CDA348770D9F1, DDA35CD8F8A6591B83821B5180D457740E0B820CCE000BC7FB1B78FB4AEAD3BA ] C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe
13:32:46.0106 0x2fd0 SpybotPostWindows10UpgradeReInstall - detected UnsignedFile.Multi.Generic ( 1 )
13:32:46.0175 0x2fd0 Detect skipped due to KSN trusted
13:32:46.0175 0x2fd0 SpybotPostWindows10UpgradeReInstall - ok
13:32:46.0291 0x2fd0 Uninstall C:\Users\Robert\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64 - ok
13:32:46.0291 0x2fd0 Waiting for KSN requests completion. In queue: 60
13:32:47.0343 0x2fd0 AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x41000 ( enabled : updated )
13:32:47.0345 0x2fd0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x62100 ( disabled : updated )
13:32:47.0347 0x2fd0 FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x41010 ( enabled )
13:32:47.0463 0x2fd0 ============================================================
13:32:47.0463 0x2fd0 Scan finished
13:32:47.0463 0x2fd0 ============================================================
13:32:47.0479 0x254c Detected object count: 2
13:32:47.0479 0x254c Actual detected object count: 2
13:33:18.0199 0x254c Killer Service V2 ( UnsignedFile.Multi.Generic ) - skipped by user
13:33:18.0199 0x254c Killer Service V2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:33:18.0199 0x254c S.T.R.I.K.E.3 ( UnsignedFile.Multi.Generic ) - skipped by user
13:33:18.0199 0x254c S.T.R.I.K.E.3 ( UnsignedFile.Multi.Generic ) - User select action: Skip |