Hate-Trojan | 27.11.2016 17:20 | Der Scanner hat nichts gefunden: Code:
17:17:24.0854 0x1674 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
17:17:24.0854 0x1674 UEFI system
17:17:29.0339 0x1674 ============================================================
17:17:29.0339 0x1674 Current date / time: 2016/11/27 17:17:29.0339
17:17:29.0339 0x1674 SystemInfo:
17:17:29.0339 0x1674
17:17:29.0339 0x1674 OS Version: 10.0.14393 ServicePack: 0.0
17:17:29.0339 0x1674 Product type: Workstation
17:17:29.0339 0x1674 ComputerName: DESKTOP-7TN4ENU
17:17:29.0339 0x1674 UserName: Maik
17:17:29.0339 0x1674 Windows directory: C:\WINDOWS
17:17:29.0339 0x1674 System windows directory: C:\WINDOWS
17:17:29.0339 0x1674 Running under WOW64
17:17:29.0339 0x1674 Processor architecture: Intel x64
17:17:29.0339 0x1674 Number of processors: 4
17:17:29.0339 0x1674 Page size: 0x1000
17:17:29.0339 0x1674 Boot type: Normal boot
17:17:29.0339 0x1674 CodeIntegrityOptions = 0x00000001
17:17:29.0339 0x1674 ============================================================
17:17:29.0619 0x1674 KLMD registered as C:\WINDOWS\system32\drivers\31510117.sys
17:17:29.0619 0x1674 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.447, osProperties = 0x19
17:17:29.0774 0x1674 System UUID: {C0B6B3AE-6351-27FE-58E3-80FDE42F3206}
17:17:30.0139 0x1674 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:17:30.0149 0x1674 Drive \Device\Harddisk1\DR5 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
17:17:30.0151 0x1674 ============================================================
17:17:30.0151 0x1674 \Device\Harddisk0\DR0:
17:17:30.0151 0x1674 GPT partitions:
17:17:30.0152 0x1674 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {132EE83E-1B02-4C32-9CEB-976AC61A9E44}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xE1000
17:17:30.0152 0x1674 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {9ABFC870-FE73-451D-A093-9501BEE46451}, Name: EFI system partition, StartLBA 0xE1800, BlocksNum 0x32000
17:17:30.0152 0x1674 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {368EAE53-5453-4649-B0B5-C31FB0EABAE7}, Name: Microsoft reserved partition, StartLBA 0x113800, BlocksNum 0x8000
17:17:30.0152 0x1674 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {1BC8AE00-6E28-43BD-927F-B597A2C73BE7}, Name: Basic data partition, StartLBA 0x11B800, BlocksNum 0x745EB000
17:17:30.0152 0x1674 MBR partitions:
17:17:30.0152 0x1674 \Device\Harddisk1\DR5:
17:17:30.0152 0x1674 MBR partitions:
17:17:30.0152 0x1674 \Device\Harddisk1\DR5\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
17:17:30.0152 0x1674 ============================================================
17:17:30.0176 0x1674 C: <-> \Device\Harddisk0\DR0\Partition4
17:17:30.0178 0x1674 Z: <-> \Device\Harddisk1\DR5\Partition1
17:17:30.0178 0x1674 ============================================================
17:17:30.0178 0x1674 Initialize success
17:17:30.0178 0x1674 ============================================================
17:18:22.0768 0x1c80 ============================================================
17:18:22.0768 0x1c80 Scan started
17:18:22.0768 0x1c80 Mode: Manual; SigCheck; TDLFS;
17:18:22.0768 0x1c80 ============================================================
17:18:22.0768 0x1c80 KSN ping started
17:18:22.0821 0x1c80 KSN ping finished: true
17:18:23.0632 0x1c80 ================ Scan system memory ========================
17:18:23.0632 0x1c80 System memory - ok
17:18:23.0633 0x1c80 ================ Scan services =============================
17:18:23.0748 0x1c80 1394ohci - ok
17:18:23.0751 0x1c80 3ware - ok
17:18:23.0763 0x1c80 ACPI - ok
17:18:23.0767 0x1c80 AcpiDev - ok
17:18:23.0770 0x1c80 acpiex - ok
17:18:23.0773 0x1c80 acpipagr - ok
17:18:23.0799 0x1c80 AcpiPmi - ok
17:18:23.0803 0x1c80 acpitime - ok
17:18:23.0807 0x1c80 ADP80XX - ok
17:18:23.0821 0x1c80 AFD - ok
17:18:23.0831 0x1c80 ahcache - ok
17:18:23.0849 0x1c80 AJRouter - ok
17:18:23.0856 0x1c80 ALG - ok
17:18:23.0859 0x1c80 AmdK8 - ok
17:18:23.0862 0x1c80 AmdPPM - ok
17:18:23.0865 0x1c80 amdsata - ok
17:18:23.0868 0x1c80 amdsbs - ok
17:18:23.0871 0x1c80 amdxata - ok
17:18:23.0874 0x1c80 AppID - ok
17:18:23.0877 0x1c80 AppIDSvc - ok
17:18:23.0886 0x1c80 Appinfo - ok
17:18:23.0889 0x1c80 applockerfltr - ok
17:18:23.0892 0x1c80 AppMgmt - ok
17:18:23.0908 0x1c80 AppReadiness - ok
17:18:23.0916 0x1c80 AppVClient - ok
17:18:23.0919 0x1c80 AppvStrm - ok
17:18:23.0946 0x1c80 AppvVemgr - ok
17:18:23.0957 0x1c80 AppvVfs - ok
17:18:23.0973 0x1c80 AppXSvc - ok
17:18:23.0990 0x1c80 arcsas - ok
17:18:24.0065 0x1c80 [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
17:18:24.0107 0x1c80 asComSvc - ok
17:18:24.0161 0x1c80 [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\WINDOWS\syswow64\drivers\AsIO.sys
17:18:24.0173 0x1c80 AsIO - ok
17:18:24.0196 0x1c80 [ 9B480B472D6826E7257C90E2D0EE2954, C52C198602D180011A9345AE6F108EC4B1FD91234AF2E6296B2E39C1888B0D4D ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
17:18:24.0208 0x1c80 aswHwid - ok
17:18:24.0218 0x1c80 [ 1BB00571CC2C78463ABD7E9C32970758, BF523468754CB1628D66F28B06FAF7C545C5724801B04888517A2FB4BF9582BF ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
17:18:24.0231 0x1c80 aswMonFlt - ok
17:18:24.0235 0x1c80 [ 7010B57D708DA5C9686A5923EE621776, 5A554B8941C156EC341C602F34679A7475802B19EE6A99AA29AE2628A123ECB1 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
17:18:24.0248 0x1c80 aswRdr - ok
17:18:24.0259 0x1c80 [ 937885085BFE5BD08EC1BC0245DD203B, 6DDD89245EEA3B8106C5F2EB6FA8CF525F3B42AA7032276DE78953E06FE7F4B4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
17:18:24.0272 0x1c80 aswRvrt - ok
17:18:24.0306 0x1c80 [ 0B6352251C5D84130DF4252D33D266C2, C6A2E0074A7FCFB5799949431F5660B9AF6441001EA9B609F7B3900F4007EBD0 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
17:18:24.0340 0x1c80 aswSnx - ok
17:18:24.0363 0x1c80 [ 28213B34725B18387CC1B8C3D73858A1, D86113D89C62F090B393B68B522581248AEF3568F8FD0FF86B3625F2E6DD4DB8 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
17:18:24.0388 0x1c80 aswSP - ok
17:18:24.0411 0x1c80 [ 9C58B6E9663D0A76D00D83E43C765BDF, 3F474932E77318CD450A3A9C89667D2B26A7E3FAB9AA95D97FF3B1979623A7F2 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
17:18:24.0421 0x1c80 aswStm - ok
17:18:24.0439 0x1c80 [ D60D9201739400F0FBDB9E36A3212D91, 01A17516AB7F4D2C72E2DC51F7B49D1C4F50F564992F78A71E73821D7F8220E7 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
17:18:24.0457 0x1c80 aswVmm - ok
17:18:24.0460 0x1c80 AsyncMac - ok
17:18:24.0463 0x1c80 atapi - ok
17:18:24.0473 0x1c80 AudioEndpointBuilder - ok
17:18:24.0483 0x1c80 Audiosrv - ok
17:18:24.0526 0x1c80 [ F4E0580B5789474385E7ACB189C4AF2C, DB5BE2C852AC102AB8EB186362E582E250B843BA52B3B71AF08A5FDA8A6F91AF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
17:18:24.0535 0x1c80 avast! Antivirus - ok
17:18:24.0550 0x1c80 AxInstSV - ok
17:18:24.0558 0x1c80 b06bdrv - ok
17:18:24.0565 0x1c80 BasicDisplay - ok
17:18:24.0567 0x1c80 BasicRender - ok
17:18:24.0570 0x1c80 bcmfn - ok
17:18:24.0573 0x1c80 bcmfn2 - ok
17:18:24.0583 0x1c80 BDESVC - ok
17:18:24.0600 0x1c80 Beep - ok
17:18:24.0607 0x1c80 BFE - ok
17:18:24.0622 0x1c80 BITS - ok
17:18:24.0625 0x1c80 bowser - ok
17:18:24.0630 0x1c80 BrokerInfrastructure - ok
17:18:24.0632 0x1c80 Browser - ok
17:18:24.0658 0x1c80 [ 63A00CDBEB300522C49EC7CA77324060, 99CB6D37C7D898982A192AAA8DE5CE255E6FA482E19FE9032BAA7069E652F6F5 ] BrSerIb C:\WINDOWS\system32\DRIVERS\BrSerIb.sys
17:18:24.0670 0x1c80 BrSerIb - ok
17:18:24.0693 0x1c80 [ BBCFD6C6EF66449F55AF1BFDB08C9B12, D6D5D408FCFFF9ED69D095948E786C08EEECD5F55905A3D8FE2BB08944C5E1F2 ] BrUsbSIb C:\WINDOWS\system32\DRIVERS\BrUsbSIb.sys
17:18:24.0703 0x1c80 BrUsbSIb - ok
17:18:24.0738 0x1c80 [ DB109DA005B6FE2A350C5DD7CA768DFD, 241A0BFAEFB1B165C00EE75E8CA382B5935F5DF447DAD5AE9022B2B78317668E ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
17:18:24.0751 0x1c80 BrYNSvc - detected UnsignedFile.Multi.Generic ( 1 )
17:18:24.0840 0x1c80 Detect skipped due to KSN trusted
17:18:24.0840 0x1c80 BrYNSvc - ok
17:18:24.0857 0x1c80 BthAvrcpTg - ok
17:18:24.0874 0x1c80 BthHFEnum - ok
17:18:24.0879 0x1c80 bthhfhid - ok
17:18:24.0900 0x1c80 BthHFSrv - ok
17:18:24.0906 0x1c80 BTHMODEM - ok
17:18:24.0912 0x1c80 bthserv - ok
17:18:24.0924 0x1c80 buttonconverter - ok
17:18:24.0939 0x1c80 CapImg - ok
17:18:24.0944 0x1c80 cdfs - ok
17:18:24.0952 0x1c80 CDPSvc - ok
17:18:24.0961 0x1c80 CDPUserSvc - ok
17:18:25.0015 0x1c80 cdrom - ok
17:18:25.0027 0x1c80 CertPropSvc - ok
17:18:25.0031 0x1c80 cht4iscsi - ok
17:18:25.0036 0x1c80 cht4vbd - ok
17:18:25.0057 0x1c80 circlass - ok
17:18:25.0076 0x1c80 CLFS - ok
17:18:25.0081 0x1c80 ClipSVC - ok
17:18:25.0087 0x1c80 clreg - ok
17:18:25.0102 0x1c80 CmBatt - ok
17:18:25.0119 0x1c80 CNG - ok
17:18:25.0122 0x1c80 cnghwassist - ok
17:18:25.0170 0x1c80 CompositeBus - ok
17:18:25.0174 0x1c80 COMSysApp - ok
17:18:25.0191 0x1c80 condrv - ok
17:18:25.0208 0x1c80 CoreMessagingRegistrar - ok
17:18:25.0225 0x1c80 CryptSvc - ok
17:18:25.0227 0x1c80 CSC - ok
17:18:25.0237 0x1c80 CscService - ok
17:18:25.0256 0x1c80 dam - ok
17:18:25.0260 0x1c80 DcomLaunch - ok
17:18:25.0263 0x1c80 DcpSvc - ok
17:18:25.0276 0x1c80 defragsvc - ok
17:18:25.0291 0x1c80 DeviceAssociationService - ok
17:18:25.0295 0x1c80 DeviceInstall - ok
17:18:25.0313 0x1c80 DevQueryBroker - ok
17:18:25.0331 0x1c80 Dfsc - ok
17:18:25.0340 0x1c80 Dhcp - ok
17:18:25.0407 0x1c80 diagnosticshub.standardcollector.service - ok
17:18:25.0423 0x1c80 DiagTrack - ok
17:18:25.0449 0x1c80 disk - ok
17:18:25.0479 0x1c80 DmEnrollmentSvc - ok
17:18:25.0489 0x1c80 dmvsc - ok
17:18:25.0505 0x1c80 dmwappushservice - ok
17:18:25.0525 0x1c80 Dnscache - ok
17:18:25.0528 0x1c80 dot3svc - ok
17:18:25.0530 0x1c80 DPS - ok
17:18:25.0547 0x1c80 drmkaud - ok
17:18:25.0550 0x1c80 DsmSvc - ok
17:18:25.0553 0x1c80 DsSvc - ok
17:18:25.0564 0x1c80 DXGKrnl - ok
17:18:25.0566 0x1c80 EapHost - ok
17:18:25.0569 0x1c80 ebdrv - ok
17:18:25.0583 0x1c80 EFS - ok
17:18:25.0586 0x1c80 EhStorClass - ok
17:18:25.0593 0x1c80 EhStorTcgDrv - ok
17:18:25.0607 0x1c80 embeddedmode - ok
17:18:25.0610 0x1c80 EntAppSvc - ok
17:18:25.0612 0x1c80 ErrDev - ok
17:18:25.0617 0x1c80 EventSystem - ok
17:18:25.0620 0x1c80 exfat - ok
17:18:25.0623 0x1c80 fastfat - ok
17:18:25.0634 0x1c80 Fax - ok
17:18:25.0637 0x1c80 fdc - ok
17:18:25.0640 0x1c80 fdPHost - ok
17:18:25.0650 0x1c80 FDResPub - ok
17:18:25.0664 0x1c80 fhsvc - ok
17:18:25.0682 0x1c80 FileCrypt - ok
17:18:25.0685 0x1c80 FileInfo - ok
17:18:25.0687 0x1c80 Filetrace - ok
17:18:25.0700 0x1c80 flpydisk - ok
17:18:25.0703 0x1c80 FltMgr - ok
17:18:25.0725 0x1c80 FontCache - ok
17:18:25.0815 0x1c80 FontCache3.0.0.0 - ok
17:18:25.0840 0x1c80 FrameServer - ok
17:18:25.0842 0x1c80 FsDepends - ok
17:18:25.0844 0x1c80 Fs_Rec - ok
17:18:25.0864 0x1c80 fvevol - ok
17:18:25.0867 0x1c80 gencounter - ok
17:18:25.0882 0x1c80 genericusbfn - ok
17:18:25.0884 0x1c80 GPIOClx0101 - ok
17:18:25.0887 0x1c80 gpsvc - ok
17:18:25.0891 0x1c80 GpuEnergyDrv - ok
17:18:25.0895 0x1c80 HDAudBus - ok
17:18:25.0899 0x1c80 HidBatt - ok
17:18:25.0902 0x1c80 HidBth - ok
17:18:25.0906 0x1c80 hidi2c - ok
17:18:25.0908 0x1c80 hidinterrupt - ok
17:18:25.0912 0x1c80 HidIr - ok
17:18:25.0950 0x1c80 hidserv - ok
17:18:25.0969 0x1c80 HidUsb - ok
17:18:25.0984 0x1c80 HomeGroupListener - ok
17:18:26.0005 0x1c80 HomeGroupProvider - ok
17:18:26.0011 0x1c80 HpSAMD - ok
17:18:26.0030 0x1c80 HTTP - ok
17:18:26.0052 0x1c80 HvHost - ok
17:18:26.0075 0x1c80 hvservice - ok
17:18:26.0092 0x1c80 hwpolicy - ok
17:18:26.0096 0x1c80 hyperkbd - ok
17:18:26.0124 0x1c80 i8042prt - ok
17:18:26.0129 0x1c80 iagpio - ok
17:18:26.0133 0x1c80 iai2c - ok
17:18:26.0139 0x1c80 iaLPSS2i_GPIO2 - ok
17:18:26.0146 0x1c80 iaLPSS2i_I2C - ok
17:18:26.0151 0x1c80 iaLPSSi_GPIO - ok
17:18:26.0156 0x1c80 iaLPSSi_I2C - ok
17:18:26.0191 0x1c80 [ 57CD95DEB3529181BCC931DD2DFB2341, 03ACF906E4C3CF954F503900F42C7A60FCD5624772B90A956F032484146E42B7 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
17:18:26.0209 0x1c80 iaStorA - ok
17:18:26.0213 0x1c80 iaStorAV - ok
17:18:26.0294 0x1c80 [ 20E83F4632E15A5E9E716FF2E8AC7FAE, 7CA1A4924F432AD30ED7FA6247C6513DA173EE31132AE115E85C0ED7E5971029 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
17:18:26.0299 0x1c80 IAStorDataMgrSvc - ok
17:18:26.0302 0x1c80 iaStorV - ok
17:18:26.0332 0x1c80 ibbus - ok
17:18:26.0343 0x1c80 icssvc - ok
17:18:26.0350 0x1c80 IKEEXT - ok
17:18:26.0356 0x1c80 IndirectKmd - ok
17:18:26.0484 0x1c80 [ 9FCA186B88991BFD1BBBBC53059DC615, 91A1A13F0D3B64CD1961B558C3C4E6108719CB59ABFB21EBA2C5091C34E01C82 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
17:18:26.0614 0x1c80 IntcAzAudAddService - ok
17:18:26.0648 0x1c80 intelide - ok
17:18:26.0651 0x1c80 intelpep - ok
17:18:26.0659 0x1c80 intelppm - ok
17:18:26.0677 0x1c80 iorate - ok
17:18:26.0692 0x1c80 IpFilterDriver - ok
17:18:26.0711 0x1c80 iphlpsvc - ok
17:18:26.0714 0x1c80 IPMIDRV - ok
17:18:26.0716 0x1c80 IPNAT - ok
17:18:26.0718 0x1c80 irda - ok
17:18:26.0720 0x1c80 IRENUM - ok
17:18:26.0737 0x1c80 irmon - ok
17:18:26.0740 0x1c80 isapnp - ok
17:18:26.0743 0x1c80 iScsiPrt - ok
17:18:26.0746 0x1c80 kbdclass - ok
17:18:26.0759 0x1c80 kbdhid - ok
17:18:26.0772 0x1c80 kdnic - ok
17:18:26.0775 0x1c80 KeyIso - ok
17:18:26.0789 0x1c80 KSecDD - ok
17:18:26.0792 0x1c80 KSecPkg - ok
17:18:26.0795 0x1c80 ksthunk - ok
17:18:26.0798 0x1c80 KtmRm - ok
17:18:26.0814 0x1c80 LanmanServer - ok
17:18:26.0817 0x1c80 LanmanWorkstation - ok
17:18:26.0820 0x1c80 lfsvc - ok
17:18:26.0835 0x1c80 LicenseManager - ok
17:18:26.0867 0x1c80 lltdio - ok
17:18:26.0874 0x1c80 lltdsvc - ok
17:18:26.0893 0x1c80 lmhosts - ok
17:18:26.0924 0x1c80 LSI_SAS - ok
17:18:26.0934 0x1c80 LSI_SAS2i - ok
17:18:26.0939 0x1c80 LSI_SAS3i - ok
17:18:26.0942 0x1c80 LSI_SSS - ok
17:18:26.0946 0x1c80 LSM - ok
17:18:26.0949 0x1c80 luafv - ok
17:18:26.0987 0x1c80 [ A0A527569856B9814E8920F52EBB67F5, 4347277C84B47E4CC048850BDEFB258CFB3B476AA99FD503FD71FBB70FFF5ACF ] lvrs64 C:\WINDOWS\system32\DRIVERS\lvrs64.sys
17:18:27.0000 0x1c80 lvrs64 - ok
17:18:27.0096 0x1c80 [ 415E344294D1C0D04627B29146F68481, B4A1A05BDF07E8F226A98E51F62BE18BE2C046A084C495BD8A95CABC79FD0614 ] LVUVC64 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys
17:18:27.0183 0x1c80 LVUVC64 - ok
17:18:27.0219 0x1c80 [ 60DC593BA44E433DF97EBC8940703D08, 253B6892D7FCBD647D6FA645670871A76A38CD379FCC1F66F1181949740C72EA ] ManyCam C:\WINDOWS\system32\DRIVERS\mcvidrv.sys
17:18:27.0231 0x1c80 ManyCam - ok
17:18:27.0248 0x1c80 MapsBroker - ok
17:18:27.0252 0x1c80 [ 7382E4A888A7D4333DFF8A30B6850EE9, 3F63680A96438DF841FD46F99DA9670520ED3295176820DEDC9D5C770CA659D0 ] mcaudrv_simple C:\WINDOWS\system32\drivers\mcaudrv_x64.sys
17:18:27.0259 0x1c80 mcaudrv_simple - ok
17:18:27.0275 0x1c80 megasas - ok
17:18:27.0303 0x1c80 megasas2i - ok
17:18:27.0316 0x1c80 megasr - ok
17:18:27.0335 0x1c80 [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
17:18:27.0353 0x1c80 MEIx64 - ok
17:18:27.0373 0x1c80 MessagingService - ok
17:18:27.0422 0x1c80 mlx4_bus - ok
17:18:27.0433 0x1c80 MMCSS - ok
17:18:27.0436 0x1c80 Modem - ok
17:18:27.0441 0x1c80 monitor - ok
17:18:27.0457 0x1c80 mouclass - ok
17:18:27.0460 0x1c80 mouhid - ok
17:18:27.0464 0x1c80 mountmgr - ok
17:18:27.0519 0x1c80 [ C1A273141F13434647AC7CE37D2C18EC, F36D1A12DB8289949528F4BC81E077B33709F9B14A01537EEA63F27FFA17092D ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
17:18:27.0529 0x1c80 MozillaMaintenance - ok
17:18:27.0533 0x1c80 mpsdrv - ok
17:18:27.0543 0x1c80 MpsSvc - ok
17:18:27.0555 0x1c80 MRxDAV - ok
17:18:27.0567 0x1c80 mrxsmb - ok
17:18:27.0574 0x1c80 mrxsmb10 - ok
17:18:27.0586 0x1c80 mrxsmb20 - ok
17:18:27.0608 0x1c80 MsBridge - ok
17:18:27.0618 0x1c80 MSDTC - ok
17:18:27.0623 0x1c80 Msfs - ok
17:18:27.0632 0x1c80 msgpiowin32 - ok
17:18:27.0641 0x1c80 mshidkmdf - ok
17:18:27.0644 0x1c80 mshidumdf - ok
17:18:27.0646 0x1c80 msisadrv - ok
17:18:27.0665 0x1c80 MSiSCSI - ok
17:18:27.0668 0x1c80 msiserver - ok
17:18:27.0670 0x1c80 MSKSSRV - ok
17:18:27.0673 0x1c80 MsLldp - ok
17:18:27.0684 0x1c80 MSPCLOCK - ok
17:18:27.0686 0x1c80 MSPQM - ok
17:18:27.0689 0x1c80 MsRPC - ok
17:18:27.0692 0x1c80 MsSecFlt - ok
17:18:27.0694 0x1c80 mssmbios - ok
17:18:27.0696 0x1c80 MSTEE - ok
17:18:27.0699 0x1c80 MTConfig - ok
17:18:27.0701 0x1c80 Mup - ok
17:18:27.0704 0x1c80 mvumis - ok
17:18:27.0716 0x1c80 NativeWifiP - ok
17:18:27.0732 0x1c80 NcaSvc - ok
17:18:27.0741 0x1c80 NcbService - ok
17:18:27.0744 0x1c80 NcdAutoSetup - ok
17:18:27.0747 0x1c80 ndfltr - ok
17:18:27.0763 0x1c80 NDIS - ok
17:18:27.0766 0x1c80 NdisCap - ok
17:18:27.0769 0x1c80 NdisImPlatform - ok
17:18:27.0771 0x1c80 NdisTapi - ok
17:18:27.0774 0x1c80 Ndisuio - ok
17:18:27.0777 0x1c80 NdisVirtualBus - ok
17:18:27.0779 0x1c80 NdisWan - ok
17:18:27.0781 0x1c80 ndiswanlegacy - ok
17:18:27.0783 0x1c80 ndproxy - ok
17:18:27.0786 0x1c80 Ndu - ok
17:18:27.0788 0x1c80 NetAdapterCx - ok
17:18:27.0791 0x1c80 NetBIOS - ok
17:18:27.0795 0x1c80 NetBT - ok
17:18:27.0797 0x1c80 Netlogon - ok
17:18:27.0810 0x1c80 Netman - ok
17:18:27.0814 0x1c80 netprofm - ok
17:18:27.0831 0x1c80 NetSetupSvc - ok
17:18:27.0861 0x1c80 NetTcpPortSharing - ok
17:18:27.0865 0x1c80 NgcCtnrSvc - ok
17:18:27.0880 0x1c80 NgcSvc - ok
17:18:27.0882 0x1c80 NlaSvc - ok
17:18:27.0885 0x1c80 Npfs - ok
17:18:27.0899 0x1c80 npsvctrig - ok
17:18:27.0902 0x1c80 nsi - ok
17:18:27.0904 0x1c80 nsiproxy - ok
17:18:27.0922 0x1c80 NTFS - ok
17:18:27.0934 0x1c80 Null - ok
17:18:27.0986 0x1c80 [ A6ED2E5E268D83B77D15348591CB8AE5, 12E2FE967AA46422393E82F112DA0153A2BC86F8B5034187FEF6D37FE51D6562 ] NvContainerLocalSystem C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
17:18:28.0000 0x1c80 NvContainerLocalSystem - ok
17:18:28.0009 0x1c80 [ A6ED2E5E268D83B77D15348591CB8AE5, 12E2FE967AA46422393E82F112DA0153A2BC86F8B5034187FEF6D37FE51D6562 ] NvContainerNetworkService C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
17:18:28.0021 0x1c80 NvContainerNetworkService - ok
17:18:28.0043 0x1c80 [ 64DA1993B1973F049C1347DA1B05185E, 2A04E263DB13751D033E2F9B9518820CF4942EEAFA5A32488570EEB699EE2A96 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
17:18:28.0053 0x1c80 NVHDA - ok
17:18:28.0118 0x1c80 [ 6AEBC7136C17478CBC9A772F1E60EB9E, D059A9134A6C7117B70302FF853485614E1E632C6F002F3D11C111C450B2F647 ] NVIDIA Wireless Controller Service C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
17:18:28.0147 0x1c80 NVIDIA Wireless Controller Service - ok
17:18:28.0458 0x1c80 [ 70BC7D732B4AA50EC77D262A89E63E08, 781507DB55582F8BD367020DA844DA6A5D75005E416A2E843255E0F4CA8F896D ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_410e5247be0e5f00\nvlddmkm.sys
17:18:28.0779 0x1c80 nvlddmkm - ok
17:18:28.0816 0x1c80 nvraid - ok
17:18:28.0818 0x1c80 nvstor - ok
17:18:28.0964 0x1c80 [ 06C7DAD44F4B95AA02BE2107486274BC, DBCC2E29F1BEAEFEC5BBD767F71C30FBAA3425E4E88A5C6BAF626661C350CF11 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
17:18:28.0974 0x1c80 NvStreamKms - ok
17:18:28.0995 0x1c80 [ 9F3F8D255C2D1ED457487CF1FAD56399, 9C75677937D1930AB422EFD653D47034E83E02A10BF713C19CC1B8239CD1AC9C ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
17:18:29.0007 0x1c80 nvvad_WaveExtensible - ok
17:18:29.0039 0x1c80 OneSyncSvc - ok
17:18:29.0062 0x1c80 p2pimsvc - ok
17:18:29.0065 0x1c80 p2psvc - ok
17:18:29.0082 0x1c80 Parport - ok
17:18:29.0094 0x1c80 partmgr - ok
17:18:29.0111 0x1c80 PcaSvc - ok
17:18:29.0123 0x1c80 pci - ok
17:18:29.0135 0x1c80 pciide - ok
17:18:29.0137 0x1c80 pcmcia - ok
17:18:29.0140 0x1c80 pcw - ok
17:18:29.0143 0x1c80 pdc - ok
17:18:29.0158 0x1c80 PEAUTH - ok
17:18:29.0161 0x1c80 PeerDistSvc - ok
17:18:29.0164 0x1c80 percsas2i - ok
17:18:29.0166 0x1c80 percsas3i - ok
17:18:29.0219 0x1c80 PerfHost - ok
17:18:29.0238 0x1c80 PhoneSvc - ok
17:18:29.0253 0x1c80 PimIndexMaintenanceSvc - ok
17:18:29.0270 0x1c80 pla - ok
17:18:29.0280 0x1c80 PlugPlay - ok
17:18:29.0284 0x1c80 PNRPAutoReg - ok
17:18:29.0286 0x1c80 PNRPsvc - ok
17:18:29.0292 0x1c80 PolicyAgent - ok
17:18:29.0296 0x1c80 Power - ok
17:18:29.0301 0x1c80 PptpMiniport - ok
17:18:29.0418 0x1c80 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
17:18:29.0540 0x1c80 PrintNotify - ok
17:18:29.0566 0x1c80 Processor - ok
17:18:29.0577 0x1c80 ProfSvc - ok
17:18:29.0592 0x1c80 Psched - ok
17:18:29.0605 0x1c80 QWAVE - ok
17:18:29.0608 0x1c80 QWAVEdrv - ok
17:18:29.0611 0x1c80 RasAcd - ok
17:18:29.0624 0x1c80 RasAgileVpn - ok
17:18:29.0636 0x1c80 RasAuto - ok
17:18:29.0639 0x1c80 Rasl2tp - ok
17:18:29.0654 0x1c80 RasMan - ok
17:18:29.0657 0x1c80 RasPppoe - ok
17:18:29.0660 0x1c80 RasSstp - ok
17:18:29.0668 0x1c80 rdbss - ok
17:18:29.0684 0x1c80 rdpbus - ok
17:18:29.0686 0x1c80 RDPDR - ok
17:18:29.0712 0x1c80 RdpVideoMiniport - ok
17:18:29.0714 0x1c80 rdyboost - ok
17:18:29.0717 0x1c80 ReFSv1 - ok
17:18:29.0720 0x1c80 RemoteAccess - ok
17:18:29.0726 0x1c80 RemoteRegistry - ok
17:18:29.0733 0x1c80 RetailDemo - ok
17:18:29.0736 0x1c80 RmSvc - ok
17:18:29.0738 0x1c80 RpcEptMapper - ok
17:18:29.0759 0x1c80 RpcLocator - ok
17:18:29.0762 0x1c80 RpcSs - ok
17:18:29.0767 0x1c80 rspndr - ok
17:18:29.0777 0x1c80 rt640x64 - ok
17:18:29.0783 0x1c80 s3cap - ok
17:18:29.0799 0x1c80 SamSs - ok
17:18:29.0824 0x1c80 sbp2port - ok
17:18:29.0831 0x1c80 SCardSvr - ok
17:18:29.0841 0x1c80 ScDeviceEnum - ok
17:18:29.0844 0x1c80 scfilter - ok
17:18:29.0847 0x1c80 Schedule - ok
17:18:29.0849 0x1c80 scmbus - ok
17:18:29.0851 0x1c80 scmdisk0101 - ok
17:18:29.0859 0x1c80 SCPolicySvc - ok
17:18:29.0871 0x1c80 sdbus - ok
17:18:29.0875 0x1c80 SDRSVC - ok
17:18:29.0878 0x1c80 sdstor - ok
17:18:29.0881 0x1c80 seclogon - ok
17:18:29.0891 0x1c80 SENS - ok
17:18:29.0933 0x1c80 Sense - ok
17:18:29.0946 0x1c80 SensorDataService - ok
17:18:29.0953 0x1c80 SensorService - ok
17:18:29.0956 0x1c80 SensrSvc - ok
17:18:29.0960 0x1c80 SerCx - ok
17:18:29.0962 0x1c80 SerCx2 - ok
17:18:29.0965 0x1c80 Serenum - ok
17:18:29.0967 0x1c80 Serial - ok
17:18:29.0970 0x1c80 sermouse - ok
17:18:29.0985 0x1c80 SessionEnv - ok
17:18:29.0988 0x1c80 sfloppy - ok
17:18:30.0017 0x1c80 SharedAccess - ok
17:18:30.0020 0x1c80 ShellHWDetection - ok
17:18:30.0032 0x1c80 shpamsvc - ok
17:18:30.0035 0x1c80 SiSRaid2 - ok
17:18:30.0037 0x1c80 SiSRaid4 - ok
17:18:30.0082 0x1c80 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF195B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
17:18:30.0095 0x1c80 SkypeUpdate - ok
17:18:30.0111 0x1c80 smphost - ok
17:18:30.0126 0x1c80 SmsRouter - ok
17:18:30.0136 0x1c80 SNMPTRAP - ok
17:18:30.0215 0x1c80 spaceport - ok
17:18:30.0234 0x1c80 SpbCx - ok
17:18:30.0246 0x1c80 Spooler - ok
17:18:30.0259 0x1c80 sppsvc - ok
17:18:30.0266 0x1c80 srv - ok
17:18:30.0276 0x1c80 srv2 - ok
17:18:30.0284 0x1c80 srvnet - ok
17:18:30.0300 0x1c80 SSDPSRV - ok
17:18:30.0313 0x1c80 SstpSvc - ok
17:18:30.0337 0x1c80 StateRepository - ok
17:18:30.0349 0x1c80 stexstor - ok
17:18:30.0371 0x1c80 stisvc - ok
17:18:30.0376 0x1c80 storahci - ok
17:18:30.0382 0x1c80 storflt - ok
17:18:30.0388 0x1c80 stornvme - ok
17:18:30.0392 0x1c80 storqosflt - ok
17:18:30.0403 0x1c80 StorSvc - ok
17:18:30.0406 0x1c80 storufs - ok
17:18:30.0410 0x1c80 storvsc - ok
17:18:30.0414 0x1c80 svsvc - ok
17:18:30.0417 0x1c80 swenum - ok
17:18:30.0420 0x1c80 swprv - ok
17:18:30.0441 0x1c80 Synth3dVsc - ok
17:18:30.0444 0x1c80 SysMain - ok
17:18:30.0455 0x1c80 SystemEventsBroker - ok
17:18:30.0465 0x1c80 TabletInputService - ok
17:18:30.0467 0x1c80 TapiSrv - ok
17:18:30.0470 0x1c80 Tcpip - ok
17:18:30.0473 0x1c80 Tcpip6 - ok
17:18:30.0477 0x1c80 tcpipreg - ok
17:18:30.0481 0x1c80 tdx - ok
17:18:30.0483 0x1c80 terminpt - ok
17:18:30.0486 0x1c80 TermService - ok
17:18:30.0492 0x1c80 Themes - ok
17:18:30.0512 0x1c80 TieringEngineService - ok
17:18:30.0515 0x1c80 tiledatamodelsvc - ok
17:18:30.0517 0x1c80 TimeBrokerSvc - ok
17:18:30.0535 0x1c80 TPM - ok
17:18:30.0538 0x1c80 TrkWks - ok
17:18:30.0564 0x1c80 [ 370A6907DDF79532A39319492B1FA38A, 46AECC5160F04FC3FFE4D37B404CCBBD1C5DC1501C2CEEE8284FF544DBDF10F8 ] truecrypt C:\WINDOWS\system32\drivers\truecrypt.sys
17:18:30.0582 0x1c80 truecrypt - ok
17:18:30.0624 0x1c80 TrustedInstaller - ok
17:18:30.0628 0x1c80 tsusbflt - ok
17:18:30.0631 0x1c80 TsUsbGD - ok
17:18:30.0634 0x1c80 tsusbhub - ok
17:18:30.0636 0x1c80 tunnel - ok
17:18:30.0654 0x1c80 tzautoupdate - ok
17:18:30.0674 0x1c80 UASPStor - ok
17:18:30.0677 0x1c80 UcmCx0101 - ok
17:18:30.0680 0x1c80 UcmTcpciCx0101 - ok
17:18:30.0682 0x1c80 UcmUcsi - ok
17:18:30.0685 0x1c80 Ucx01000 - ok
17:18:30.0687 0x1c80 UdeCx - ok
17:18:30.0691 0x1c80 udfs - ok
17:18:30.0694 0x1c80 UEFI - ok
17:18:30.0697 0x1c80 UevAgentDriver - ok
17:18:30.0706 0x1c80 UevAgentService - ok
17:18:30.0708 0x1c80 Ufx01000 - ok
17:18:30.0711 0x1c80 UfxChipidea - ok
17:18:30.0714 0x1c80 ufxsynopsys - ok
17:18:30.0720 0x1c80 UI0Detect - ok
17:18:30.0723 0x1c80 umbus - ok
17:18:30.0726 0x1c80 UmPass - ok
17:18:30.0729 0x1c80 UmRdpService - ok
17:18:30.0732 0x1c80 UnistoreSvc - ok
17:18:30.0736 0x1c80 upnphost - ok
17:18:30.0739 0x1c80 UrsChipidea - ok
17:18:30.0742 0x1c80 UrsCx01000 - ok
17:18:30.0745 0x1c80 UrsSynopsys - ok
17:18:30.0757 0x1c80 usbaudio - ok
17:18:30.0760 0x1c80 usbccgp - ok
17:18:30.0762 0x1c80 usbcir - ok
17:18:30.0765 0x1c80 usbehci - ok
17:18:30.0768 0x1c80 usbhub - ok
17:18:30.0770 0x1c80 USBHUB3 - ok
17:18:30.0774 0x1c80 usbohci - ok
17:18:30.0776 0x1c80 usbprint - ok
17:18:30.0787 0x1c80 [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:18:30.0803 0x1c80 usbscan - ok
17:18:30.0806 0x1c80 usbser - ok
17:18:30.0809 0x1c80 USBSTOR - ok
17:18:30.0812 0x1c80 usbuhci - ok
17:18:30.0818 0x1c80 USBXHCI - ok
17:18:30.0821 0x1c80 UserDataSvc - ok
17:18:30.0825 0x1c80 UserManager - ok
17:18:30.0831 0x1c80 UsoSvc - ok
17:18:30.0833 0x1c80 VaultSvc - ok
17:18:30.0837 0x1c80 vdrvroot - ok
17:18:30.0840 0x1c80 vds - ok
17:18:30.0844 0x1c80 VerifierExt - ok
17:18:30.0875 0x1c80 [ 46ADD0CD4473AAEF1C68266A803F704D, D521E46891253884CF8285E864FAE63F2E8E0974AD8D2EB4D910E8A35350844F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
17:18:30.0908 0x1c80 vhdmp - ok
17:18:30.0912 0x1c80 vhf - ok
17:18:30.0915 0x1c80 vmbus - ok
17:18:30.0918 0x1c80 VMBusHID - ok
17:18:30.0933 0x1c80 vmgid - ok
17:18:30.0949 0x1c80 vmicguestinterface - ok
17:18:30.0952 0x1c80 vmicheartbeat - ok
17:18:30.0954 0x1c80 vmickvpexchange - ok
17:18:30.0969 0x1c80 vmicrdv - ok
17:18:30.0971 0x1c80 vmicshutdown - ok
17:18:30.0974 0x1c80 vmictimesync - ok
17:18:30.0977 0x1c80 vmicvmsession - ok
17:18:30.0980 0x1c80 vmicvss - ok
17:18:30.0982 0x1c80 volmgr - ok
17:18:30.0986 0x1c80 volmgrx - ok
17:18:30.0988 0x1c80 volsnap - ok
17:18:30.0992 0x1c80 volume - ok
17:18:31.0001 0x1c80 vpci - ok
17:18:31.0003 0x1c80 vsmraid - ok
17:18:31.0016 0x1c80 VSS - ok
17:18:31.0025 0x1c80 VSTXRAID - ok
17:18:31.0034 0x1c80 vwifibus - ok
17:18:31.0036 0x1c80 vwififlt - ok
17:18:31.0049 0x1c80 W32Time - ok
17:18:31.0052 0x1c80 WacomPen - ok
17:18:31.0071 0x1c80 WalletService - ok
17:18:31.0076 0x1c80 wanarp - ok
17:18:31.0089 0x1c80 wanarpv6 - ok
17:18:31.0092 0x1c80 wbengine - ok
17:18:31.0101 0x1c80 WbioSrvc - ok
17:18:31.0104 0x1c80 wcifs - ok
17:18:31.0107 0x1c80 Wcmsvc - ok
17:18:31.0110 0x1c80 wcncsvc - ok
17:18:31.0113 0x1c80 wcnfs - ok
17:18:31.0116 0x1c80 WdBoot - ok
17:18:31.0119 0x1c80 Wdf01000 - ok
17:18:31.0122 0x1c80 WdFilter - ok
17:18:31.0125 0x1c80 WdiServiceHost - ok
17:18:31.0129 0x1c80 WdiSystemHost - ok
17:18:31.0132 0x1c80 wdiwifi - ok
17:18:31.0135 0x1c80 WdNisDrv - ok
17:18:31.0163 0x1c80 WdNisSvc - ok
17:18:31.0166 0x1c80 WebClient - ok
17:18:31.0169 0x1c80 Wecsvc - ok
17:18:31.0172 0x1c80 WEPHOSTSVC - ok
17:18:31.0175 0x1c80 wercplsupport - ok
17:18:31.0177 0x1c80 WerSvc - ok
17:18:31.0180 0x1c80 WFPLWFS - ok
17:18:31.0194 0x1c80 WiaRpc - ok
17:18:31.0198 0x1c80 WIMMount - ok
17:18:31.0200 0x1c80 WinDefend - ok
17:18:31.0208 0x1c80 WindowsTrustedRT - ok
17:18:31.0210 0x1c80 WindowsTrustedRTProxy - ok
17:18:31.0226 0x1c80 WinHttpAutoProxySvc - ok
17:18:31.0229 0x1c80 WinMad - ok
17:18:31.0272 0x1c80 Winmgmt - ok
17:18:31.0298 0x1c80 WinRM - ok
17:18:31.0306 0x1c80 WINUSB - ok
17:18:31.0310 0x1c80 WinVerbs - ok
17:18:31.0323 0x1c80 wisvc - ok
17:18:31.0338 0x1c80 WlanSvc - ok
17:18:31.0347 0x1c80 wlidsvc - ok
17:18:31.0359 0x1c80 WmiAcpi - ok
17:18:31.0363 0x1c80 wmiApSrv - ok
17:18:31.0375 0x1c80 WMPNetworkSvc - ok
17:18:31.0383 0x1c80 Wof - ok
17:18:31.0409 0x1c80 workfolderssvc - ok
17:18:31.0413 0x1c80 WPDBusEnum - ok
17:18:31.0426 0x1c80 WpdUpFltr - ok
17:18:31.0429 0x1c80 WpnService - ok
17:18:31.0432 0x1c80 WpnUserService - ok
17:18:31.0443 0x1c80 ws2ifsl - ok
17:18:31.0446 0x1c80 wscsvc - ok
17:18:31.0448 0x1c80 WSearch - ok
17:18:31.0470 0x1c80 wuauserv - ok
17:18:31.0473 0x1c80 WudfPf - ok
17:18:31.0475 0x1c80 WUDFRd - ok
17:18:31.0493 0x1c80 wudfsvc - ok
17:18:31.0496 0x1c80 WUDFWpdFs - ok
17:18:31.0498 0x1c80 WUDFWpdMtp - ok
17:18:31.0502 0x1c80 WwanSvc - ok
17:18:31.0520 0x1c80 XblAuthManager - ok
17:18:31.0532 0x1c80 XblGameSave - ok
17:18:31.0536 0x1c80 xboxgip - ok
17:18:31.0539 0x1c80 XboxNetApiSvc - ok
17:18:31.0551 0x1c80 xinputhid - ok
17:18:31.0558 0x1c80 xusb22 - ok
17:18:31.0558 0x1c80 ================ Scan global ===============================
17:18:31.0607 0x1c80 [ Global ] - ok
17:18:31.0607 0x1c80 ================ Scan MBR ==================================
17:18:31.0619 0x1c80 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
17:18:31.0689 0x1c80 \Device\Harddisk0\DR0 - ok
17:18:31.0694 0x1c80 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR5
17:18:31.0755 0x1c80 \Device\Harddisk1\DR5 - ok
17:18:31.0756 0x1c80 ================ Scan VBR ==================================
17:18:31.0790 0x1c80 [ 136D8478DFA55F5A8587395F39AA43BE ] \Device\Harddisk0\DR0\Partition1
17:18:31.0792 0x1c80 \Device\Harddisk0\DR0\Partition1 - ok
17:18:31.0805 0x1c80 [ 05A4F1124BA359CD1FF1A3A004C71898 ] \Device\Harddisk0\DR0\Partition2
17:18:31.0806 0x1c80 \Device\Harddisk0\DR0\Partition2 - ok
17:18:31.0813 0x1c80 [ A1C29D874F2DFA5C23CD727FC67627FB ] \Device\Harddisk0\DR0\Partition3
17:18:31.0814 0x1c80 \Device\Harddisk0\DR0\Partition3 - ok
17:18:31.0826 0x1c80 [ EC1C2C18BAB9513BF5AD7B87D64DDA1F ] \Device\Harddisk0\DR0\Partition4
17:18:31.0827 0x1c80 \Device\Harddisk0\DR0\Partition4 - ok
17:18:31.0831 0x1c80 [ FB45A4FC8571FFD94607B1DCAE2E5D5A ] \Device\Harddisk1\DR5\Partition1
17:18:31.0835 0x1c80 \Device\Harddisk1\DR5\Partition1 - ok
17:18:31.0835 0x1c80 ================ Scan generic autorun ======================
17:18:32.0084 0x1c80 [ DF5963027136784BA0DC035F68973F4F, 4069FA7ED921782AF03B9930CDE03AD47C8CCDA649310274CCA6F8E0FD874EE6 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
17:18:32.0221 0x1c80 RTHDVCPL - ok
17:18:32.0264 0x1c80 [ 4A0477ADCD07EC9D21257A2E456B16C5, CEF9C81730C12283A7600C3D921D89A62B14D1C46544B493F3AF7520DD2D1F79 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
17:18:32.0268 0x1c80 IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
17:18:32.0348 0x1c80 Detect skipped due to KSN trusted
17:18:32.0348 0x1c80 IAStorIcon - ok
17:18:32.0367 0x1c80 Wondershare Helper Compact.exe - ok
17:18:32.0382 0x1c80 ShadowPlay - ok
17:18:32.0418 0x1c80 [ 5D666FC778E7754CC7103402D814809B, 7E9B205B74440D455155014EE8D6FD0D1C647B016D72A28F16709F50BC005D3F ] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe
17:18:32.0425 0x1c80 ControlCenter4 - detected UnsignedFile.Multi.Generic ( 1 )
17:18:32.0493 0x1c80 Detect skipped due to KSN trusted
17:18:32.0493 0x1c80 ControlCenter4 - ok
17:18:32.0576 0x1c80 [ 63E9C23A386FFFA84B5E03BFF9B628F0, A370962791EFC4B10548AAD31F89A2B288FBD5BDBF5749323C2D98C14DFB8B49 ] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
17:18:32.0662 0x1c80 BrStsMon00 - detected UnsignedFile.Multi.Generic ( 1 )
17:18:32.0769 0x1c80 Detect skipped due to KSN trusted
17:18:32.0769 0x1c80 BrStsMon00 - ok
17:18:32.0853 0x1c80 [ C6BDF0F7C7354CE2073BAB2C8B1BE845, AF2B54FBFEC942E8B76DF194E97A4EEE2F8CEAA17FBA7A924C6C01728CCE8F8A ] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
17:18:32.0893 0x1c80 Wondershare Helper Compact.exe - ok
17:18:33.0114 0x1c80 [ CE99AA11D0274BE5BDEF3991508852E9, C129B50010508603C6F2CDB4442ACA4E7FC6CD44DBDB6153D5E1D37E1BC32036 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
17:18:33.0323 0x1c80 AvastUI.exe - ok
17:18:33.0359 0x1c80 [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
17:18:33.0374 0x1c80 SunJavaUpdateSched - ok
17:18:33.0426 0x1c80 OneDriveSetup - ok
17:18:33.0427 0x1c80 OneDriveSetup - ok
17:18:33.0527 0x1c80 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Maik\AppData\Local\Microsoft\OneDrive\OneDrive.exe
17:18:33.0543 0x1c80 OneDrive - ok
17:18:33.0563 0x1c80 Skype - ok
17:18:33.0742 0x1c80 [ 0B5C25E963B1475EDDBEE458F4C01ECE, 04482FD61944196BF5723C3509D2D68A8CA19EC4B0D6C110F7251B2499EF4E35 ] C:\Program Files\CCleaner\CCleaner64.exe
17:18:33.0896 0x1c80 CCleaner Monitoring - ok
17:18:33.0904 0x1c80 Waiting for KSN requests completion. In queue: 40
17:18:34.0917 0x1c80 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
17:18:34.0918 0x1c80 AV detected via SS2: Avast Antivirus, C:\Program Files\AVAST Software\Avast\wsc_proxy.exe ( 12.3.3154.0 ), 0x41000 ( enabled : updated )
17:18:34.0922 0x1c80 Win FW state via NFP2: enabled ( trusted )
17:18:35.0026 0x1c80 ============================================================
17:18:35.0026 0x1c80 Scan finished
17:18:35.0026 0x1c80 ============================================================
17:18:35.0036 0x19dc Detected object count: 0
17:18:35.0036 0x19dc Actual detected object count: 0 |