1. Schritt: Malwarebytes Anti-Rootkit Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2016.12.22.05
rootkit: v2016.11.20.01
Windows 10 x64 NTFS
Internet Explorer 11.0.10240.17202
Hänschen :: DESKTOP-OU89B9O [administrator]
22.12.2016 14:19:22
mbar-log-2016-12-22 (14-19-22).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 296578
Time elapsed: 7 minute(s), 35 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) 2. Schritt: Kaspersky TDSS-Killer Code:
14:40:35.0001 0x184c TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
14:40:58.0883 0x184c ============================================================
14:40:58.0883 0x184c Current date / time: 2016/12/22 14:40:58.0883
14:40:58.0883 0x184c SystemInfo:
14:40:58.0883 0x184c
14:40:58.0883 0x184c OS Version: 10.0.10240 ServicePack: 0.0
14:40:58.0883 0x184c Product type: Workstation
14:40:58.0883 0x184c ComputerName: DESKTOP-OU89B9O
14:40:58.0883 0x184c UserName: Hänschen
14:40:58.0883 0x184c Windows directory: C:\WINDOWS
14:40:58.0883 0x184c System windows directory: C:\WINDOWS
14:40:58.0883 0x184c Running under WOW64
14:40:58.0883 0x184c Processor architecture: Intel x64
14:40:58.0883 0x184c Number of processors: 12
14:40:58.0883 0x184c Page size: 0x1000
14:40:58.0883 0x184c Boot type: Normal boot
14:40:58.0883 0x184c CodeIntegrityOptions = 0x00000001
14:40:58.0883 0x184c ============================================================
14:40:58.0934 0x184c KLMD registered as C:\WINDOWS\system32\drivers\98481098.sys
14:40:58.0934 0x184c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 10240.17202, osProperties = 0x19
14:40:59.0450 0x184c System UUID: {59D24C11-D352-967E-738B-AE3DC68DEEDF}
14:40:59.0872 0x184c Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:40:59.0872 0x184c Drive \Device\Harddisk2\DR2 - Size: 0xDF99E6000 ( 55.90 Gb ), SectorSize: 0x200, Cylinders: 0x1C81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:40:59.0872 0x184c Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:40:59.0872 0x184c ============================================================
14:40:59.0872 0x184c \Device\Harddisk1\DR1:
14:40:59.0872 0x184c GPT partitions:
14:40:59.0872 0x184c \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {7836FFF7-97FB-4790-BC80-C88BDD5EDC90}, Name: Microsoft reserved partition, StartLBA 0x22, BlocksNum 0x40000
14:40:59.0872 0x184c \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {79B888B0-8295-4111-97C8-8E7CA103E506}, Name: Basic data partition, StartLBA 0x40800, BlocksNum 0x1D185000
14:40:59.0872 0x184c MBR partitions:
14:40:59.0872 0x184c \Device\Harddisk2\DR2:
14:40:59.0872 0x184c MBR partitions:
14:40:59.0872 0x184c \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
14:40:59.0872 0x184c \Device\Harddisk2\DR2\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0x6ED1800
14:40:59.0872 0x184c \Device\Harddisk0\DR0:
14:40:59.0872 0x184c MBR partitions:
14:40:59.0872 0x184c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x1D1C4800
14:40:59.0872 0x184c ============================================================
14:40:59.0872 0x184c C: <-> \Device\Harddisk2\DR2\Partition2
14:40:59.0872 0x184c D: <-> \Device\Harddisk1\DR1\Partition2
14:40:59.0872 0x184c E: <-> \Device\Harddisk2\DR2\Partition1
14:40:59.0872 0x184c ============================================================
14:40:59.0872 0x184c Initialize success
14:40:59.0872 0x184c ============================================================
14:41:09.0464 0x118c ============================================================
14:41:09.0464 0x118c Scan started
14:41:09.0464 0x118c Mode: Manual;
14:41:09.0464 0x118c ============================================================
14:41:09.0464 0x118c KSN ping started
14:41:09.0667 0x118c KSN ping finished: true
14:41:10.0288 0x118c ================ Scan system memory ========================
14:41:10.0288 0x118c System memory - ok
14:41:10.0288 0x118c ================ Scan services =============================
14:41:10.0335 0x118c 1394ohci - ok
14:41:10.0335 0x118c 3ware - ok
14:41:10.0350 0x118c ACPI - ok
14:41:10.0350 0x118c acpiex - ok
14:41:10.0350 0x118c acpipagr - ok
14:41:10.0366 0x118c AcpiPmi - ok
14:41:10.0366 0x118c acpitime - ok
14:41:10.0382 0x118c [ B3C96DC286A6566185660E0760488725, D1833862E214E07C081A765C3AC9788632E133A56C67A19D27B8E79999D18B0C ] AdaptiveSleepService C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
14:41:10.0382 0x118c AdaptiveSleepService - ok
14:41:10.0382 0x118c ADP80XX - ok
14:41:10.0397 0x118c AFD - ok
14:41:10.0397 0x118c agp440 - ok
14:41:10.0397 0x118c ahcache - ok
14:41:10.0413 0x118c AJRouter - ok
14:41:10.0413 0x118c ALG - ok
14:41:10.0413 0x118c [ 264B9AE7F91280A3A99560BE562CEEA8, 2FE338C2E9CA65C81DFE851873D7B2D3CB108E1F7CD4491FF6AA7874B0578528 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
14:41:10.0429 0x118c AMD External Events Utility - ok
14:41:10.0429 0x118c [ E155A2889537A748CB3EB2DC3EF2F439, EF75565953AB05F91F28D831D868EB54C95959525B0D987A02764F749DB3B8C6 ] amdacpksd C:\WINDOWS\system32\drivers\amdacpksd.sys
14:41:10.0444 0x118c amdacpksd - ok
14:41:10.0444 0x118c AmdK8 - ok
14:41:10.0444 0x118c [ 275B6F698CBEC36C42D3ABD7EE049BA1, C6CE3514947F67410B34E8973C87996A14FF485A2E5C7E5BA4FE276FB893D51C ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
14:41:10.0444 0x118c amdkmafd - ok
14:41:10.0444 0x118c amdkmdag - ok
14:41:10.0460 0x118c [ D63F23E361FB774EDA3A5179E19CB64F, 8A72DA4C295748BB469F7D94D563219464E928114E7028FD49C6896351C92FA3 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
14:41:10.0475 0x118c amdkmdap - ok
14:41:10.0475 0x118c AmdPPM - ok
14:41:10.0475 0x118c amdsata - ok
14:41:10.0475 0x118c amdsbs - ok
14:41:10.0475 0x118c amdxata - ok
14:41:10.0491 0x118c AppID - ok
14:41:10.0491 0x118c AppIDSvc - ok
14:41:10.0491 0x118c Appinfo - ok
14:41:10.0491 0x118c AppReadiness - ok
14:41:10.0491 0x118c AppXSvc - ok
14:41:10.0491 0x118c arcsas - ok
14:41:10.0538 0x118c [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
14:41:10.0538 0x118c asComSvc - ok
14:41:10.0569 0x118c [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\WINDOWS\syswow64\drivers\AsIO.sys
14:41:10.0569 0x118c AsIO - ok
14:41:10.0569 0x118c [ 530E8E15034B5A0BD28FB1919E1A01FD, 569E90DE3BF40101A9A8891124C4ED7B81F3EADF5D102E3DF9BDE0DDEDFFCEA7 ] asmthub3 C:\WINDOWS\System32\drivers\asmthub3.sys
14:41:10.0585 0x118c asmthub3 - ok
14:41:10.0585 0x118c [ 48E2237B58C7BBC5F50891546B374B20, 0493A4162566F64B7027CA247D875856E2A9DB0703A5D3C220326C4FC6476075 ] asmtxhci C:\WINDOWS\System32\drivers\asmtxhci.sys
14:41:10.0600 0x118c asmtxhci - ok
14:41:10.0600 0x118c [ 4EECB97091693E7B7DC785B152687697, 33752CC8BF5813914AC919ED3915B6CA4503BC8E1B9BFBA0D3DB5ED33B1FAF95 ] asstor64 C:\WINDOWS\system32\drivers\asstor64.sys
14:41:10.0600 0x118c asstor64 - ok
14:41:10.0632 0x118c [ 37F7DD839A711B5706B1264F4D8D4BDC, C949A7BB236C6C03E197EF7F9A6DF53E34EC35D925034351B5FD5D7DB62A770E ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
14:41:10.0647 0x118c AsSysCtrlService - ok
14:41:10.0647 0x118c AsyncMac - ok
14:41:10.0647 0x118c atapi - ok
14:41:10.0663 0x118c [ 555757DC434423B4B2A680204C05F43E, 46793679C435A4BE9358ECA4BF2C789854210E2DF291D2143790D43972B7BA6B ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
14:41:10.0663 0x118c AtiHDAudioService - ok
14:41:10.0663 0x118c AudioEndpointBuilder - ok
14:41:10.0663 0x118c Audiosrv - ok
14:41:10.0663 0x118c AxInstSV - ok
14:41:10.0679 0x118c b06bdrv - ok
14:41:10.0681 0x118c BasicDisplay - ok
14:41:10.0684 0x118c BasicRender - ok
14:41:10.0690 0x118c [ F8FE7E12F8151E0A17C23CF840599F9A, 5D1AA3A5DAC08B521A7BE775F32434AFF1F5F19B69CD16D2D94B0D399E61C371 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys
14:41:10.0692 0x118c bcbtums - ok
14:41:10.0751 0x118c [ 43907773F7563AF4DF0999D47522E802, 2563666842008E202B6A64435F06169A259D6DC56D16AF7359114C20A4FA4400 ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe
14:41:10.0779 0x118c BcmBtRSupport - ok
14:41:10.0784 0x118c bcmfn2 - ok
14:41:10.0980 0x118c [ D756B4E351DDAE9BC2880C5BC9A8DF1F, 53EDC90462A43D2FAECAFCE7EFE1D0763E55CAD3C8AB29026EBA4544CB05E738 ] BCMWL63A C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys
14:41:11.0108 0x118c BCMWL63A - ok
14:41:11.0124 0x118c BDESVC - ok
14:41:11.0124 0x118c Beep - ok
14:41:11.0124 0x118c BFE - ok
14:41:11.0140 0x118c BITS - ok
14:41:11.0140 0x118c bowser - ok
14:41:11.0140 0x118c BrokerInfrastructure - ok
14:41:11.0140 0x118c Browser - ok
14:41:11.0140 0x118c BthAvrcpTg - ok
14:41:11.0155 0x118c BthEnum - ok
14:41:11.0155 0x118c BthHFEnum - ok
14:41:11.0155 0x118c bthhfhid - ok
14:41:11.0155 0x118c BthHFSrv - ok
14:41:11.0171 0x118c BthLEEnum - ok
14:41:11.0174 0x118c BTHMODEM - ok
14:41:11.0176 0x118c BthPan - ok
14:41:11.0178 0x118c BTHPORT - ok
14:41:11.0181 0x118c bthserv - ok
14:41:11.0183 0x118c BTHUSB - ok
14:41:11.0188 0x118c [ 8A44414F20A086D6C4F4CF6CA51E02F9, D360454AD7F20AFFD79BBD618CD8BE162DE59EBA9BC8D01D5C2480C9F3845EEB ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys
14:41:11.0191 0x118c btwampfl - ok
14:41:11.0191 0x118c [ 8B092498F1A98FB1DC0C331007B2CAE2, 1073700A137D4E1E7B351EB8541CB36057207CC821021D3E04C0D88FD0328C10 ] btwaudio C:\WINDOWS\system32\drivers\btwaudio.sys
14:41:11.0191 0x118c btwaudio - ok
14:41:11.0191 0x118c [ 4B86046A90D2F46AE710FFE16D30B90B, 6AC52E78FBCC1824366EF28CBA2F1783A694647DA839374F6A038A89D2B58B3E ] btwavdt C:\WINDOWS\system32\drivers\btwavdt.sys
14:41:11.0207 0x118c btwavdt - ok
14:41:11.0223 0x118c [ EB2FCDBE3D9E5C575F6F71BC92AC624B, 2BD5F04277926E906EF6D360A6DFEA0E41CCADE8B9E6839AA8A04B96BFE6DF89 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
14:41:11.0238 0x118c btwdins - ok
14:41:11.0238 0x118c [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap C:\WINDOWS\system32\DRIVERS\btwl2cap.sys
14:41:11.0238 0x118c btwl2cap - ok
14:41:11.0238 0x118c [ 4C8895543813CC6F86629F4696222FEF, 9863127C8AFC9A44BFA0E8292885C7210E26738D3D900267D25F4F182AB6A5B8 ] btwrchid C:\WINDOWS\System32\drivers\btwrchid.sys
14:41:11.0238 0x118c btwrchid - ok
14:41:11.0238 0x118c buttonconverter - ok
14:41:11.0254 0x118c CapImg - ok
14:41:11.0254 0x118c cdfs - ok
14:41:11.0254 0x118c CDPSvc - ok
14:41:11.0254 0x118c cdrom - ok
14:41:11.0254 0x118c CertPropSvc - ok
14:41:11.0254 0x118c circlass - ok
14:41:11.0254 0x118c CLFS - ok
14:41:11.0270 0x118c ClipSVC - ok
14:41:11.0270 0x118c CmBatt - ok
14:41:11.0270 0x118c CNG - ok
14:41:11.0285 0x118c cnghwassist - ok
14:41:11.0301 0x118c CompositeBus - ok
14:41:11.0301 0x118c COMSysApp - ok
14:41:11.0301 0x118c condrv - ok
14:41:11.0301 0x118c CoreMessagingRegistrar - ok
14:41:11.0301 0x118c [ 29872C7376C42E2A64FA838DAD98AA11, A072197177AAD26C31960694E38E2CAE85AFBAB070929E67E331B99D3A418CF4 ] cpuz140 C:\WINDOWS\TEMP\cpuz140\cpuz140_x64.sys
14:41:11.0301 0x118c cpuz140 - ok
14:41:11.0316 0x118c CryptSvc - ok
14:41:11.0316 0x118c dam - ok
14:41:11.0316 0x118c [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:41:11.0316 0x118c dbupdate - ok
14:41:11.0316 0x118c [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:41:11.0332 0x118c dbupdatem - ok
14:41:11.0332 0x118c dbx - ok
14:41:11.0332 0x118c [ BC8C3896575B06303564265742142775, 38F64F215755E410F69F5BD88FCE6011093665F4C29DEE60A70632221D0C2BB3 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
14:41:11.0332 0x118c DbxSvc - ok
14:41:11.0332 0x118c DcomLaunch - ok
14:41:11.0332 0x118c DcpSvc - ok
14:41:11.0348 0x118c defragsvc - ok
14:41:11.0348 0x118c DeviceAssociationService - ok
14:41:11.0348 0x118c DeviceInstall - ok
14:41:11.0363 0x118c DevQueryBroker - ok
14:41:11.0363 0x118c Dfsc - ok
14:41:11.0363 0x118c [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
14:41:11.0379 0x118c dg_ssudbus - ok
14:41:11.0379 0x118c Dhcp - ok
14:41:11.0379 0x118c diagnosticshub.standardcollector.service - ok
14:41:11.0379 0x118c DiagTrack - ok
14:41:11.0395 0x118c disk - ok
14:41:11.0395 0x118c DmEnrollmentSvc - ok
14:41:11.0395 0x118c dmvsc - ok
14:41:11.0410 0x118c dmwappushservice - ok
14:41:11.0410 0x118c Dnscache - ok
14:41:11.0410 0x118c dot3svc - ok
14:41:11.0426 0x118c DPS - ok
14:41:11.0426 0x118c drmkaud - ok
14:41:11.0426 0x118c DsmSvc - ok
14:41:11.0442 0x118c DsSvc - ok
14:41:11.0442 0x118c DXGKrnl - ok
14:41:11.0442 0x118c [ ABFC5D28535E4FC109CD623E84A553B1, 525CC64F14BF66C944F2651ABA7CC927A9B9D27841D81A5E4AD6187DE3DE7459 ] e1dexpress C:\WINDOWS\system32\DRIVERS\e1d64x64.sys
14:41:11.0457 0x118c e1dexpress - ok
14:41:11.0457 0x118c e1iexpress - ok
14:41:11.0457 0x118c Eaphost - ok
14:41:11.0457 0x118c ebdrv - ok
14:41:11.0457 0x118c EFS - ok
14:41:11.0473 0x118c EhStorClass - ok
14:41:11.0473 0x118c EhStorTcgDrv - ok
14:41:11.0473 0x118c embeddedmode - ok
14:41:11.0473 0x118c EntAppSvc - ok
14:41:11.0473 0x118c ErrDev - ok
14:41:11.0488 0x118c EventSystem - ok
14:41:11.0488 0x118c exfat - ok
14:41:11.0504 0x118c fastfat - ok
14:41:11.0504 0x118c Fax - ok
14:41:11.0504 0x118c fcvsc - ok
14:41:11.0504 0x118c fdc - ok
14:41:11.0520 0x118c fdPHost - ok
14:41:11.0520 0x118c FDResPub - ok
14:41:11.0520 0x118c fhsvc - ok
14:41:11.0520 0x118c FileCrypt - ok
14:41:11.0520 0x118c FileInfo - ok
14:41:11.0520 0x118c Filetrace - ok
14:41:11.0520 0x118c flpydisk - ok
14:41:11.0535 0x118c FltMgr - ok
14:41:11.0535 0x118c FontCache - ok
14:41:11.0535 0x118c FsDepends - ok
14:41:11.0535 0x118c Fs_Rec - ok
14:41:11.0535 0x118c fvevol - ok
14:41:11.0535 0x118c gagp30kx - ok
14:41:11.0551 0x118c gencounter - ok
14:41:11.0551 0x118c genericusbfn - ok
14:41:11.0551 0x118c GPIOClx0101 - ok
14:41:11.0567 0x118c gpsvc - ok
14:41:11.0567 0x118c GpuEnergyDrv - ok
14:41:11.0567 0x118c [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:41:11.0567 0x118c gupdate - ok
14:41:11.0582 0x118c [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:41:11.0582 0x118c gupdatem - ok
14:41:11.0582 0x118c HdAudAddService - ok
14:41:11.0582 0x118c HDAudBus - ok
14:41:11.0598 0x118c HidBatt - ok
14:41:11.0598 0x118c HidBth - ok
14:41:11.0598 0x118c hidi2c - ok
14:41:11.0613 0x118c hidinterrupt - ok
14:41:11.0613 0x118c HidIr - ok
14:41:11.0613 0x118c hidserv - ok
14:41:11.0613 0x118c HidUsb - ok
14:41:11.0629 0x118c HomeGroupListener - ok
14:41:11.0629 0x118c HomeGroupProvider - ok
14:41:11.0629 0x118c HpSAMD - ok
14:41:11.0645 0x118c HTTP - ok
14:41:11.0645 0x118c hwpolicy - ok
14:41:11.0645 0x118c hyperkbd - ok
14:41:11.0645 0x118c HyperVideo - ok
14:41:11.0645 0x118c i8042prt - ok
14:41:11.0645 0x118c iaLPSSi_GPIO - ok
14:41:11.0660 0x118c iaLPSSi_I2C - ok
14:41:11.0676 0x118c [ 9EBE1AE8B3DA91D06BE1971EB37F7DA0, 55B0E66139C966AF0D4955B44363123198C559968C864DA85F6610CF1C844E8D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
14:41:11.0676 0x118c iaStorA - ok
14:41:11.0692 0x118c iaStorAV - ok
14:41:11.0692 0x118c [ D524B034148F14C60F1CA66D267EE56A, 18045270C5CA718501285EE05EDED8B0EF998A881ACF19D9602F91A2A30E40AB ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:41:11.0692 0x118c IAStorDataMgrSvc - ok
14:41:11.0692 0x118c iaStorV - ok
14:41:11.0692 0x118c ibbus - ok
14:41:11.0692 0x118c icssvc - ok
14:41:11.0692 0x118c IEEtwCollectorService - ok
14:41:11.0707 0x118c IKEEXT - ok
14:41:11.0770 0x118c [ C44251AF46727BA1A4D2A703255C9071, 64CD535324D5462136DC8E00F09FA89D89D8D9A71FA32FD615ADFF09F3A566CF ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
14:41:11.0817 0x118c IntcAzAudAddService - ok
14:41:11.0832 0x118c [ E42505363945956ECB5D38A4EB21CB39, C6A46A7621721EB1EA46E5F7D2E560D8022A97241F0792814015F803D96A2C92 ] Intel(R) PROSet Monitoring Service C:\WINDOWS\system32\IProsetMonitor.exe
14:41:11.0832 0x118c Intel(R) PROSet Monitoring Service - ok
14:41:11.0848 0x118c intelide - ok
14:41:11.0848 0x118c intelpep - ok
14:41:11.0848 0x118c intelppm - ok
14:41:11.0848 0x118c IoQos - ok
14:41:11.0848 0x118c IpFilterDriver - ok
14:41:11.0848 0x118c iphlpsvc - ok
14:41:11.0848 0x118c IPMIDRV - ok
14:41:11.0863 0x118c IPNAT - ok
14:41:11.0863 0x118c IRENUM - ok
14:41:11.0863 0x118c isapnp - ok
14:41:11.0863 0x118c iScsiPrt - ok
14:41:11.0863 0x118c kbdclass - ok
14:41:11.0863 0x118c kbdhid - ok
14:41:11.0863 0x118c kdnic - ok
14:41:11.0863 0x118c KeyIso - ok
14:41:11.0880 0x118c KSecDD - ok
14:41:11.0882 0x118c KSecPkg - ok
14:41:11.0885 0x118c ksthunk - ok
14:41:11.0890 0x118c KtmRm - ok
14:41:11.0894 0x118c LanmanServer - ok
14:41:11.0898 0x118c LanmanWorkstation - ok
14:41:11.0904 0x118c lfsvc - ok
14:41:11.0907 0x118c LicenseManager - ok
14:41:11.0909 0x118c lltdio - ok
14:41:11.0911 0x118c lltdsvc - ok
14:41:11.0913 0x118c lmhosts - ok
14:41:11.0915 0x118c LSI_SAS - ok
14:41:11.0917 0x118c LSI_SAS2i - ok
14:41:11.0919 0x118c LSI_SAS3i - ok
14:41:11.0921 0x118c LSI_SSS - ok
14:41:11.0923 0x118c LSM - ok
14:41:11.0925 0x118c luafv - ok
14:41:11.0927 0x118c MapsBroker - ok
14:41:11.0929 0x118c megasas - ok
14:41:11.0931 0x118c megasr - ok
14:41:11.0936 0x118c [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
14:41:11.0939 0x118c MEIx64 - ok
14:41:11.0941 0x118c mlx4_bus - ok
14:41:11.0943 0x118c MMCSS - ok
14:41:11.0946 0x118c Modem - ok
14:41:11.0951 0x118c monitor - ok
14:41:11.0956 0x118c mouclass - ok
14:41:11.0960 0x118c mouhid - ok
14:41:11.0965 0x118c mountmgr - ok
14:41:11.0969 0x118c mpsdrv - ok
14:41:11.0971 0x118c MpsSvc - ok
14:41:11.0973 0x118c MRxDAV - ok
14:41:11.0975 0x118c mrxsmb - ok
14:41:11.0977 0x118c mrxsmb10 - ok
14:41:11.0979 0x118c mrxsmb20 - ok
14:41:11.0981 0x118c MsBridge - ok
14:41:11.0983 0x118c MSDTC - ok
14:41:11.0986 0x118c Msfs - ok
14:41:11.0988 0x118c msgpiowin32 - ok
14:41:11.0989 0x118c mshidkmdf - ok
14:41:11.0994 0x118c mshidumdf - ok
14:41:11.0999 0x118c msisadrv - ok
14:41:12.0004 0x118c MSiSCSI - ok
14:41:12.0005 0x118c msiserver - ok
14:41:12.0007 0x118c MSKSSRV - ok
14:41:12.0009 0x118c MsLldp - ok
14:41:12.0012 0x118c MSPCLOCK - ok
14:41:12.0014 0x118c MSPQM - ok
14:41:12.0016 0x118c MsRPC - ok
14:41:12.0026 0x118c mssmbios - ok
14:41:12.0028 0x118c MSTEE - ok
14:41:12.0030 0x118c MTConfig - ok
14:41:12.0032 0x118c Mup - ok
14:41:12.0034 0x118c mvumis - ok
14:41:12.0039 0x118c [ 1898CEDA3247213C084F43637EF163B3, 4429F32DB1CC70567919D7D47B844A91CF1329A6CD116F582305F3B7B60CD60B ] NAL C:\WINDOWS\system32\Drivers\iqvw64e.sys
14:41:12.0040 0x118c NAL - ok
14:41:12.0043 0x118c NativeWifiP - ok
14:41:12.0045 0x118c NcaSvc - ok
14:41:12.0047 0x118c NcbService - ok
14:41:12.0049 0x118c NcdAutoSetup - ok
14:41:12.0050 0x118c ndfltr - ok
14:41:12.0052 0x118c NDIS - ok
14:41:12.0054 0x118c NdisCap - ok
14:41:12.0056 0x118c NdisImPlatform - ok
14:41:12.0058 0x118c NdisTapi - ok
14:41:12.0060 0x118c Ndisuio - ok
14:41:12.0062 0x118c NdisVirtualBus - ok
14:41:12.0064 0x118c NdisWan - ok
14:41:12.0066 0x118c ndiswanlegacy - ok
14:41:12.0068 0x118c ndproxy - ok
14:41:12.0070 0x118c Ndu - ok
14:41:12.0072 0x118c NetBIOS - ok
14:41:12.0075 0x118c NetBT - ok
14:41:12.0076 0x118c Netlogon - ok
14:41:12.0078 0x118c Netman - ok
14:41:12.0080 0x118c netprofm - ok
14:41:12.0082 0x118c NetSetupSvc - ok
14:41:12.0089 0x118c NetTcpPortSharing - ok
14:41:12.0090 0x118c netvsc - ok
14:41:12.0093 0x118c NgcCtnrSvc - ok
14:41:12.0095 0x118c NgcSvc - ok
14:41:12.0097 0x118c NlaSvc - ok
14:41:12.0099 0x118c Npfs - ok
14:41:12.0101 0x118c npsvctrig - ok
14:41:12.0103 0x118c nsi - ok
14:41:12.0104 0x118c nsiproxy - ok
14:41:12.0107 0x118c NTFS - ok
14:41:12.0109 0x118c Null - ok
14:41:12.0111 0x118c nvraid - ok
14:41:12.0113 0x118c nvstor - ok
14:41:12.0115 0x118c nv_agp - ok
14:41:12.0117 0x118c OneSyncSvc - ok
14:41:12.0122 0x118c p2pimsvc - ok
14:41:12.0124 0x118c p2psvc - ok
14:41:12.0126 0x118c Parport - ok
14:41:12.0127 0x118c partmgr - ok
14:41:12.0130 0x118c PcaSvc - ok
14:41:12.0132 0x118c pci - ok
14:41:12.0134 0x118c pciide - ok
14:41:12.0136 0x118c pcmcia - ok
14:41:12.0138 0x118c pcw - ok
14:41:12.0140 0x118c pdc - ok
14:41:12.0141 0x118c PEAUTH - ok
14:41:12.0143 0x118c percsas2i - ok
14:41:12.0145 0x118c percsas3i - ok
14:41:12.0167 0x118c PerfHost - ok
14:41:12.0171 0x118c PimIndexMaintenanceSvc - ok
14:41:12.0179 0x118c pla - ok
14:41:12.0181 0x118c PlugPlay - ok
14:41:12.0183 0x118c PNRPAutoReg - ok
14:41:12.0185 0x118c PNRPsvc - ok
14:41:12.0187 0x118c PolicyAgent - ok
14:41:12.0189 0x118c Power - ok
14:41:12.0191 0x118c PptpMiniport - ok
14:41:12.0251 0x118c [ E083F434F6632EC0F241804D33C38FD9, CA8945786BEFD33C8FB9A887957DA4B4F8137F6C534718C6BA37D8B0965AE528 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
14:41:12.0284 0x118c PrintNotify - ok
14:41:12.0292 0x118c Processor - ok
14:41:12.0296 0x118c ProfSvc - ok
14:41:12.0301 0x118c Psched - ok
14:41:12.0305 0x118c QWAVE - ok
14:41:12.0310 0x118c QWAVEdrv - ok
14:41:12.0314 0x118c RasAcd - ok
14:41:12.0319 0x118c RasAgileVpn - ok
14:41:12.0324 0x118c RasAuto - ok
14:41:12.0329 0x118c Rasl2tp - ok
14:41:12.0331 0x118c RasMan - ok
14:41:12.0333 0x118c RasPppoe - ok
14:41:12.0335 0x118c RasSstp - ok
14:41:12.0337 0x118c Razer Game Scanner Service - ok
14:41:12.0339 0x118c rdbss - ok
14:41:12.0342 0x118c rdpbus - ok
14:41:12.0344 0x118c RDPDR - ok
14:41:12.0349 0x118c RdpVideoMiniport - ok
14:41:12.0351 0x118c rdyboost - ok
14:41:12.0353 0x118c ReFSv1 - ok
14:41:12.0355 0x118c RemoteAccess - ok
14:41:12.0357 0x118c RemoteRegistry - ok
14:41:12.0359 0x118c RetailDemo - ok
14:41:12.0361 0x118c RFCOMM - ok
14:41:12.0363 0x118c RpcEptMapper - ok
14:41:12.0365 0x118c RpcLocator - ok
14:41:12.0367 0x118c RpcSs - ok
14:41:12.0368 0x118c rspndr - ok
14:41:12.0371 0x118c [ 30A186D6A2A2853EEFAD7011E212E41B, 367B8FCCF29470C9237FC1F0EAEB59AE51E33778BC9914A2730AC7DDBC84942B ] rzpmgrk C:\WINDOWS\system32\drivers\rzpmgrk.sys
14:41:12.0372 0x118c rzpmgrk - ok
14:41:12.0376 0x118c [ 2229D5A9A92B62DF4DF9CF51F48436F7, 0507D893E3FD2917C81C1DC13CCB22AE5402AB6CA9FB8D89485010838050D08D ] rzpnk C:\WINDOWS\system32\drivers\rzpnk.sys
14:41:12.0378 0x118c rzpnk - ok
14:41:12.0383 0x118c [ 421497E425AFB40502013F362E4FA230, 20E2372BEE4BFB21138CA574C9806EC399DDA9D3439F3C391E34ABB2E518106D ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys
14:41:12.0385 0x118c rzudd - ok
14:41:12.0387 0x118c s3cap - ok
14:41:12.0389 0x118c SamSs - ok
14:41:12.0391 0x118c sbp2port - ok
14:41:12.0393 0x118c SCardSvr - ok
14:41:12.0395 0x118c ScDeviceEnum - ok
14:41:12.0397 0x118c scfilter - ok
14:41:12.0399 0x118c Schedule - ok
14:41:12.0401 0x118c SCPolicySvc - ok
14:41:12.0405 0x118c sdbus - ok
14:41:12.0410 0x118c SDRSVC - ok
14:41:12.0414 0x118c sdstor - ok
14:41:12.0419 0x118c seclogon - ok
14:41:12.0421 0x118c SENS - ok
14:41:12.0423 0x118c SensorDataService - ok
14:41:12.0425 0x118c SensorService - ok
14:41:12.0426 0x118c SensrSvc - ok
14:41:12.0428 0x118c SerCx - ok
14:41:12.0430 0x118c SerCx2 - ok
14:41:12.0432 0x118c Serenum - ok
14:41:12.0434 0x118c Serial - ok
14:41:12.0436 0x118c sermouse - ok
14:41:12.0438 0x118c SessionEnv - ok
14:41:12.0440 0x118c sfloppy - ok
14:41:12.0442 0x118c SharedAccess - ok
14:41:12.0445 0x118c ShellHWDetection - ok
14:41:12.0450 0x118c SiSRaid2 - ok
14:41:12.0454 0x118c SiSRaid4 - ok
14:41:12.0459 0x118c smphost - ok
14:41:12.0462 0x118c SmsRouter - ok
14:41:12.0465 0x118c SNMPTRAP - ok
14:41:12.0467 0x118c spaceport - ok
14:41:12.0469 0x118c SpbCx - ok
14:41:12.0470 0x118c SpeedupService - ok
14:41:12.0473 0x118c Spooler - ok
14:41:12.0475 0x118c sppsvc - ok
14:41:12.0477 0x118c srv - ok
14:41:12.0478 0x118c srv2 - ok
14:41:12.0480 0x118c srvnet - ok
14:41:12.0482 0x118c SSDPSRV - ok
14:41:12.0484 0x118c SstpSvc - ok
14:41:12.0489 0x118c [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
14:41:12.0491 0x118c ssudmdm - ok
14:41:12.0493 0x118c StateRepository - ok
14:41:12.0495 0x118c stexstor - ok
14:41:12.0498 0x118c stisvc - ok
14:41:12.0499 0x118c storahci - ok
14:41:12.0501 0x118c storflt - ok
14:41:12.0503 0x118c stornvme - ok
14:41:12.0505 0x118c storqosflt - ok
14:41:12.0507 0x118c StorSvc - ok
14:41:12.0509 0x118c storufs - ok
14:41:12.0511 0x118c storvsc - ok
14:41:12.0513 0x118c svsvc - ok
14:41:12.0527 0x118c swenum - ok
14:41:12.0529 0x118c swprv - ok
14:41:12.0531 0x118c Synth3dVsc - ok
14:41:12.0533 0x118c SysMain - ok
14:41:12.0535 0x118c SystemEventsBroker - ok
14:41:12.0537 0x118c TabletInputService - ok
14:41:12.0539 0x118c [ BB3F041ACE6FF23FD8F51B4CDDAB111B, A74544001291AB5E03E4B728CE7A336B17AA351C5E57C48536F62EAA756DFF7B ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys
14:41:12.0540 0x118c tap0901 - ok
14:41:12.0542 0x118c TapiSrv - ok
14:41:12.0545 0x118c Tcpip - ok
14:41:12.0550 0x118c Tcpip6 - ok
14:41:12.0557 0x118c tcpipreg - ok
14:41:12.0564 0x118c tdx - ok
14:41:12.0568 0x118c terminpt - ok
14:41:12.0573 0x118c TermService - ok
14:41:12.0578 0x118c Themes - ok
14:41:12.0583 0x118c tiledatamodelsvc - ok
14:41:12.0587 0x118c TimeBroker - ok
14:41:12.0592 0x118c TPM - ok
14:41:12.0597 0x118c TrkWks - ok
14:41:12.0600 0x118c TrustedInstaller - ok
14:41:12.0600 0x118c TsUsbFlt - ok
14:41:12.0600 0x118c TsUsbGD - ok
14:41:12.0616 0x118c tunnel - ok
14:41:12.0616 0x118c uagp35 - ok
14:41:12.0616 0x118c UASPStor - ok
14:41:12.0616 0x118c UcmCx0101 - ok
14:41:12.0631 0x118c UcmUcsi - ok
14:41:12.0631 0x118c Ucx01000 - ok
14:41:12.0631 0x118c UdeCx - ok
14:41:12.0631 0x118c udfs - ok
14:41:12.0647 0x118c UEFI - ok
14:41:12.0647 0x118c Ufx01000 - ok
14:41:12.0647 0x118c UfxChipidea - ok
14:41:12.0663 0x118c ufxsynopsys - ok
14:41:12.0663 0x118c UI0Detect - ok
14:41:12.0663 0x118c uliagpkx - ok
14:41:12.0678 0x118c umbus - ok
14:41:12.0678 0x118c UmPass - ok
14:41:12.0678 0x118c UmRdpService - ok
14:41:12.0694 0x118c UnistoreSvc - ok
14:41:12.0694 0x118c upnphost - ok
14:41:12.0694 0x118c UrsChipidea - ok
14:41:12.0709 0x118c UrsCx01000 - ok
14:41:12.0709 0x118c UrsSynopsys - ok
14:41:12.0709 0x118c usbccgp - ok
14:41:12.0709 0x118c usbcir - ok
14:41:12.0725 0x118c usbehci - ok
14:41:12.0725 0x118c usbhub - ok
14:41:12.0725 0x118c USBHUB3 - ok
14:41:12.0741 0x118c usbohci - ok
14:41:12.0741 0x118c usbprint - ok
14:41:12.0741 0x118c usbser - ok
14:41:12.0741 0x118c USBSTOR - ok
14:41:12.0741 0x118c usbuhci - ok
14:41:12.0756 0x118c USBXHCI - ok
14:41:12.0756 0x118c UserDataSvc - ok
14:41:12.0756 0x118c UserManager - ok
14:41:12.0756 0x118c UsoSvc - ok
14:41:12.0772 0x118c VaultSvc - ok
14:41:12.0772 0x118c vdrvroot - ok
14:41:12.0772 0x118c vds - ok
14:41:12.0788 0x118c VerifierExt - ok
14:41:12.0788 0x118c vhdmp - ok
14:41:12.0788 0x118c vhf - ok
14:41:12.0788 0x118c vmbus - ok
14:41:12.0788 0x118c VMBusHID - ok
14:41:12.0788 0x118c vmicguestinterface - ok
14:41:12.0788 0x118c vmicheartbeat - ok
14:41:12.0803 0x118c vmickvpexchange - ok
14:41:12.0803 0x118c vmicrdv - ok
14:41:12.0803 0x118c vmicshutdown - ok
14:41:12.0819 0x118c vmictimesync - ok
14:41:12.0819 0x118c vmicvmsession - ok
14:41:12.0819 0x118c vmicvss - ok
14:41:12.0819 0x118c volmgr - ok
14:41:12.0819 0x118c volmgrx - ok
14:41:12.0828 0x118c volsnap - ok
14:41:12.0830 0x118c vpci - ok
14:41:12.0832 0x118c vsmraid - ok
14:41:12.0834 0x118c VSS - ok
14:41:12.0837 0x118c VSTXRAID - ok
14:41:12.0838 0x118c vwifibus - ok
14:41:12.0840 0x118c vwififlt - ok
14:41:12.0842 0x118c vwifimp - ok
14:41:12.0844 0x118c W32Time - ok
14:41:12.0848 0x118c WacomPen - ok
14:41:12.0853 0x118c WalletService - ok
14:41:12.0857 0x118c wanarp - ok
14:41:12.0861 0x118c wanarpv6 - ok
14:41:12.0863 0x118c wbengine - ok
14:41:12.0864 0x118c WbioSrvc - ok
14:41:12.0866 0x118c Wcmsvc - ok
14:41:12.0868 0x118c wcncsvc - ok
14:41:12.0870 0x118c WcsPlugInService - ok
14:41:12.0872 0x118c WdBoot - ok
14:41:12.0874 0x118c Wdf01000 - ok
14:41:12.0876 0x118c WdFilter - ok
14:41:12.0880 0x118c WdiServiceHost - ok
14:41:12.0882 0x118c WdiSystemHost - ok
14:41:12.0884 0x118c wdiwifi - ok
14:41:12.0885 0x118c WdNisDrv - ok
14:41:12.0887 0x118c WdNisSvc - ok
14:41:12.0890 0x118c WebClient - ok
14:41:12.0891 0x118c Wecsvc - ok
14:41:12.0893 0x118c WEPHOSTSVC - ok
14:41:12.0895 0x118c wercplsupport - ok
14:41:12.0897 0x118c WerSvc - ok
14:41:12.0899 0x118c wfpcapture - ok
14:41:12.0901 0x118c WFPLWFS - ok
14:41:12.0903 0x118c WiaRpc - ok
14:41:12.0905 0x118c WIMMount - ok
14:41:12.0906 0x118c WinDefend - ok
14:41:12.0910 0x118c WindowsTrustedRT - ok
14:41:12.0912 0x118c WindowsTrustedRTProxy - ok
14:41:12.0914 0x118c WinHttpAutoProxySvc - ok
14:41:12.0916 0x118c WinMad - ok
14:41:12.0921 0x118c Winmgmt - ok
14:41:12.0923 0x118c WinRM - ok
14:41:12.0927 0x118c WINUSB - ok
14:41:12.0929 0x118c WinVerbs - ok
14:41:12.0931 0x118c WlanSvc - ok
14:41:12.0933 0x118c wlidsvc - ok
14:41:12.0934 0x118c WmiAcpi - ok
14:41:12.0937 0x118c wmiApSrv - ok
14:41:12.0939 0x118c WMPNetworkSvc - ok
14:41:12.0974 0x118c [ 099E476B28B6BAA4B8209155564472AA, 33E2512D24C2662E5976548BDD5980C822AB55AAA83D8CCACFFAD680D4841266 ] WNDA3100v3 C:\WINDOWS\system32\DRIVERS\WNDA3100v3.sys
14:41:12.0985 0x118c WNDA3100v3 - ok
14:41:12.0985 0x118c Wof - ok
14:41:13.0000 0x118c workfolderssvc - ok
14:41:13.0000 0x118c wpcfltr - ok
14:41:13.0000 0x118c WPDBusEnum - ok
14:41:13.0000 0x118c WpdUpFltr - ok
14:41:13.0020 0x118c WpnService - ok
14:41:13.0020 0x118c ws2ifsl - ok
14:41:13.0020 0x118c wscsvc - ok
14:41:13.0020 0x118c WSearch - ok
14:41:13.0020 0x118c WSService - ok
14:41:13.0020 0x118c wuauserv - ok
14:41:13.0036 0x118c WudfPf - ok
14:41:13.0036 0x118c WUDFRd - ok
14:41:13.0036 0x118c wudfsvc - ok
14:41:13.0036 0x118c WUDFWpdMtp - ok
14:41:13.0036 0x118c WwanSvc - ok
14:41:13.0036 0x118c XblAuthManager - ok
14:41:13.0036 0x118c XblGameSave - ok
14:41:13.0036 0x118c xboxgip - ok
14:41:13.0052 0x118c XboxNetApiSvc - ok
14:41:13.0052 0x118c xinputhid - ok
14:41:13.0052 0x118c ================ Scan global ===============================
14:41:13.0052 0x118c [ Global ] - ok
14:41:13.0052 0x118c ================ Scan MBR ==================================
14:41:13.0067 0x118c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
14:41:13.0067 0x118c \Device\Harddisk1\DR1 - ok
14:41:13.0067 0x118c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2
14:41:13.0067 0x118c \Device\Harddisk2\DR2 - ok
14:41:13.0083 0x118c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:41:13.0098 0x118c \Device\Harddisk0\DR0 - ok
14:41:13.0098 0x118c ================ Scan VBR ==================================
14:41:13.0114 0x118c [ C206A53347BB9556D6777E286DB1510C ] \Device\Harddisk1\DR1\Partition1
14:41:13.0114 0x118c \Device\Harddisk1\DR1\Partition1 - ok
14:41:13.0114 0x118c [ 718C5DAF98340E167FA3387898A4644D ] \Device\Harddisk1\DR1\Partition2
14:41:13.0114 0x118c \Device\Harddisk1\DR1\Partition2 - ok
14:41:13.0114 0x118c [ 6C3B5D0C042C60C18C89DFD64B1B163F ] \Device\Harddisk2\DR2\Partition1
14:41:13.0114 0x118c \Device\Harddisk2\DR2\Partition1 - ok
14:41:13.0114 0x118c [ 7A355D190D9B7DC12EFF9B4B868F3C8D ] \Device\Harddisk2\DR2\Partition2
14:41:13.0130 0x118c \Device\Harddisk2\DR2\Partition2 - ok
14:41:13.0130 0x118c [ DB641D60939AEDACC31836DB2E9A0E87 ] \Device\Harddisk0\DR0\Partition1
14:41:13.0130 0x118c \Device\Harddisk0\DR0\Partition1 - ok
14:41:13.0130 0x118c ================ Scan generic autorun ======================
14:41:13.0255 0x118c [ 7EBA7411AD59C564CC9AC4C4946B3342, 4256D2E20D104E526C66BC4273993FC70AC79D9B13A5FF49AEC720CFA083931F ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
14:41:13.0348 0x118c RTHDVCPL - ok
14:41:13.0348 0x118c [ F14327BA386AAA2246585BFADD8FE8E8, 2804D7985B116C808942B4501362D4F4BAE4B540E9A6AC9B176B30DD448BA5AC ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
14:41:13.0348 0x118c IAStorIcon - ok
14:41:13.0505 0x118c [ D1B65D57E6DDCB32DA3689D02A8488C4, 43345C754840A89DD080CC267A798E2648BEFE97BE6556A7DC327D274BAE8280 ] C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
14:41:13.0598 0x118c StartCN - ok
14:41:13.0614 0x118c PlaysTV - ok
14:41:13.0630 0x118c OneDriveSetup - ok
14:41:13.0630 0x118c OneDriveSetup - ok
14:41:13.0692 0x118c [ 44348495F9D6ED21F4EFB3FF80677D99, 05B76248764B2BF7F9229626D7EFAFF96B724D38A82969EBE376CBE879E30450 ] C:\Users\Hänschen\AppData\Local\Microsoft\OneDrive\OneDrive.exe
14:41:13.0708 0x118c OneDrive - ok
14:41:13.0708 0x118c [ AB3FF5AA877505B82C6F0B917CF5839B, 909006733CE97377AAD15D45C250054FCBB7A5942E28674E74373C213D2AC042 ] C:\Program Files (x86)\detektor.fm-Rekorder\phonostarTimer.exe
14:41:13.0708 0x118c detektor.fm-RekorderTimer - ok
14:41:13.0708 0x118c Waiting for KSN requests completion. In queue: 18
14:41:14.0743 0x118c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.17184 ), 0x61100 ( enabled : updated )
14:41:14.0743 0x118c Win FW state via NFP2: enabled ( trusted )
14:41:14.0900 0x118c ============================================================
14:41:14.0900 0x118c Scan finished
14:41:14.0900 0x118c ============================================================
14:41:14.0900 0x12cc Detected object count: 0
14:41:14.0900 0x12cc Actual detected object count: 0
14:41:41.0525 0x0854 ============================================================
14:41:41.0525 0x0854 Scan started
14:41:41.0525 0x0854 Mode: Manual; SigCheck; TDLFS;
14:41:41.0525 0x0854 ============================================================
14:41:41.0525 0x0854 KSN ping started
14:41:41.0650 0x0854 KSN ping finished: true
14:41:42.0088 0x0854 ================ Scan system memory ========================
14:41:42.0088 0x0854 System memory - ok
14:41:42.0088 0x0854 ================ Scan services =============================
14:41:42.0135 0x0854 1394ohci - ok
14:41:42.0135 0x0854 3ware - ok
14:41:42.0135 0x0854 ACPI - ok
14:41:42.0150 0x0854 acpiex - ok
14:41:42.0150 0x0854 acpipagr - ok
14:41:42.0150 0x0854 AcpiPmi - ok
14:41:42.0166 0x0854 acpitime - ok
14:41:42.0166 0x0854 [ B3C96DC286A6566185660E0760488725, D1833862E214E07C081A765C3AC9788632E133A56C67A19D27B8E79999D18B0C ] AdaptiveSleepService C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
14:41:42.0197 0x0854 AdaptiveSleepService - ok
14:41:42.0197 0x0854 ADP80XX - ok
14:41:42.0213 0x0854 AFD - ok
14:41:42.0213 0x0854 agp440 - ok
14:41:42.0213 0x0854 ahcache - ok
14:41:42.0228 0x0854 AJRouter - ok
14:41:42.0228 0x0854 ALG - ok
14:41:42.0228 0x0854 [ 264B9AE7F91280A3A99560BE562CEEA8, 2FE338C2E9CA65C81DFE851873D7B2D3CB108E1F7CD4491FF6AA7874B0578528 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
14:41:42.0244 0x0854 AMD External Events Utility - ok
14:41:42.0244 0x0854 [ E155A2889537A748CB3EB2DC3EF2F439, EF75565953AB05F91F28D831D868EB54C95959525B0D987A02764F749DB3B8C6 ] amdacpksd C:\WINDOWS\system32\drivers\amdacpksd.sys
14:41:42.0264 0x0854 amdacpksd - ok
14:41:42.0264 0x0854 AmdK8 - ok
14:41:42.0264 0x0854 [ 275B6F698CBEC36C42D3ABD7EE049BA1, C6CE3514947F67410B34E8973C87996A14FF485A2E5C7E5BA4FE276FB893D51C ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
14:41:42.0279 0x0854 amdkmafd - ok
14:41:42.0279 0x0854 amdkmdag - ok
14:41:42.0295 0x0854 [ D63F23E361FB774EDA3A5179E19CB64F, 8A72DA4C295748BB469F7D94D563219464E928114E7028FD49C6896351C92FA3 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
14:41:42.0295 0x0854 amdkmdap - ok
14:41:42.0295 0x0854 AmdPPM - ok
14:41:42.0311 0x0854 amdsata - ok
14:41:42.0311 0x0854 amdsbs - ok
14:41:42.0311 0x0854 amdxata - ok
14:41:42.0311 0x0854 AppID - ok
14:41:42.0326 0x0854 AppIDSvc - ok
14:41:42.0326 0x0854 Appinfo - ok
14:41:42.0326 0x0854 AppReadiness - ok
14:41:42.0326 0x0854 AppXSvc - ok
14:41:42.0343 0x0854 arcsas - ok
14:41:42.0360 0x0854 [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
14:41:42.0369 0x0854 asComSvc - ok
14:41:42.0384 0x0854 [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\WINDOWS\syswow64\drivers\AsIO.sys
14:41:42.0400 0x0854 AsIO - ok
14:41:42.0400 0x0854 [ 530E8E15034B5A0BD28FB1919E1A01FD, 569E90DE3BF40101A9A8891124C4ED7B81F3EADF5D102E3DF9BDE0DDEDFFCEA7 ] asmthub3 C:\WINDOWS\System32\drivers\asmthub3.sys
14:41:42.0400 0x0854 asmthub3 - ok
14:41:42.0415 0x0854 [ 48E2237B58C7BBC5F50891546B374B20, 0493A4162566F64B7027CA247D875856E2A9DB0703A5D3C220326C4FC6476075 ] asmtxhci C:\WINDOWS\System32\drivers\asmtxhci.sys
14:41:42.0415 0x0854 asmtxhci - ok
14:41:42.0431 0x0854 [ 4EECB97091693E7B7DC785B152687697, 33752CC8BF5813914AC919ED3915B6CA4503BC8E1B9BFBA0D3DB5ED33B1FAF95 ] asstor64 C:\WINDOWS\system32\drivers\asstor64.sys
14:41:42.0431 0x0854 asstor64 - ok
14:41:42.0447 0x0854 [ 37F7DD839A711B5706B1264F4D8D4BDC, C949A7BB236C6C03E197EF7F9A6DF53E34EC35D925034351B5FD5D7DB62A770E ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
14:41:42.0494 0x0854 AsSysCtrlService - detected UnsignedFile.Multi.Generic ( 1 )
14:41:42.0494 0x0854 Detect skipped due to KSN trusted
14:41:42.0494 0x0854 AsSysCtrlService - ok
14:41:42.0494 0x0854 AsyncMac - ok
14:41:42.0494 0x0854 atapi - ok
14:41:42.0509 0x0854 [ 555757DC434423B4B2A680204C05F43E, 46793679C435A4BE9358ECA4BF2C789854210E2DF291D2143790D43972B7BA6B ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
14:41:42.0525 0x0854 AtiHDAudioService - ok
14:41:42.0525 0x0854 AudioEndpointBuilder - ok
14:41:42.0525 0x0854 Audiosrv - ok
14:41:42.0525 0x0854 AxInstSV - ok
14:41:42.0540 0x0854 b06bdrv - ok
14:41:42.0540 0x0854 BasicDisplay - ok
14:41:42.0540 0x0854 BasicRender - ok
14:41:42.0540 0x0854 [ F8FE7E12F8151E0A17C23CF840599F9A, 5D1AA3A5DAC08B521A7BE775F32434AFF1F5F19B69CD16D2D94B0D399E61C371 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys
14:41:42.0556 0x0854 bcbtums - ok
14:41:42.0587 0x0854 [ 43907773F7563AF4DF0999D47522E802, 2563666842008E202B6A64435F06169A259D6DC56D16AF7359114C20A4FA4400 ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe
14:41:42.0650 0x0854 BcmBtRSupport - ok
14:41:42.0650 0x0854 bcmfn2 - ok
14:41:42.0869 0x0854 [ D756B4E351DDAE9BC2880C5BC9A8DF1F, 53EDC90462A43D2FAECAFCE7EFE1D0763E55CAD3C8AB29026EBA4544CB05E738 ] BCMWL63A C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys
14:41:43.0009 0x0854 BCMWL63A - ok
14:41:43.0025 0x0854 BDESVC - ok
14:41:43.0025 0x0854 Beep - ok
14:41:43.0040 0x0854 BFE - ok
14:41:43.0040 0x0854 BITS - ok
14:41:43.0040 0x0854 bowser - ok
14:41:43.0040 0x0854 BrokerInfrastructure - ok
14:41:43.0056 0x0854 Browser - ok
14:41:43.0056 0x0854 BthAvrcpTg - ok
14:41:43.0056 0x0854 BthEnum - ok
14:41:43.0072 0x0854 BthHFEnum - ok
14:41:43.0072 0x0854 bthhfhid - ok
14:41:43.0072 0x0854 BthHFSrv - ok
14:41:43.0072 0x0854 BthLEEnum - ok
14:41:43.0072 0x0854 BTHMODEM - ok
14:41:43.0087 0x0854 BthPan - ok
14:41:43.0087 0x0854 BTHPORT - ok
14:41:43.0087 0x0854 bthserv - ok
14:41:43.0103 0x0854 BTHUSB - ok
14:41:43.0103 0x0854 [ 8A44414F20A086D6C4F4CF6CA51E02F9, D360454AD7F20AFFD79BBD618CD8BE162DE59EBA9BC8D01D5C2480C9F3845EEB ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys
14:41:43.0103 0x0854 btwampfl - ok
14:41:43.0119 0x0854 [ 8B092498F1A98FB1DC0C331007B2CAE2, 1073700A137D4E1E7B351EB8541CB36057207CC821021D3E04C0D88FD0328C10 ] btwaudio C:\WINDOWS\system32\drivers\btwaudio.sys
14:41:43.0119 0x0854 btwaudio - ok
14:41:43.0134 0x0854 [ 4B86046A90D2F46AE710FFE16D30B90B, 6AC52E78FBCC1824366EF28CBA2F1783A694647DA839374F6A038A89D2B58B3E ] btwavdt C:\WINDOWS\system32\drivers\btwavdt.sys
14:41:43.0134 0x0854 btwavdt - ok
14:41:43.0150 0x0854 [ EB2FCDBE3D9E5C575F6F71BC92AC624B, 2BD5F04277926E906EF6D360A6DFEA0E41CCADE8B9E6839AA8A04B96BFE6DF89 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
14:41:43.0165 0x0854 btwdins - ok
14:41:43.0181 0x0854 [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap C:\WINDOWS\system32\DRIVERS\btwl2cap.sys
14:41:43.0181 0x0854 btwl2cap - ok
14:41:43.0181 0x0854 [ 4C8895543813CC6F86629F4696222FEF, 9863127C8AFC9A44BFA0E8292885C7210E26738D3D900267D25F4F182AB6A5B8 ] btwrchid C:\WINDOWS\System32\drivers\btwrchid.sys
14:41:43.0181 0x0854 btwrchid - ok
14:41:43.0197 0x0854 buttonconverter - ok
14:41:43.0197 0x0854 CapImg - ok
14:41:43.0197 0x0854 cdfs - ok
14:41:43.0212 0x0854 CDPSvc - ok
14:41:43.0212 0x0854 cdrom - ok
14:41:43.0212 0x0854 CertPropSvc - ok
14:41:43.0212 0x0854 circlass - ok
14:41:43.0212 0x0854 CLFS - ok
14:41:43.0212 0x0854 ClipSVC - ok
14:41:43.0212 0x0854 CmBatt - ok
14:41:43.0228 0x0854 CNG - ok
14:41:43.0228 0x0854 cnghwassist - ok
14:41:43.0244 0x0854 CompositeBus - ok
14:41:43.0244 0x0854 COMSysApp - ok
14:41:43.0244 0x0854 condrv - ok
14:41:43.0244 0x0854 CoreMessagingRegistrar - ok
14:41:43.0244 0x0854 [ 29872C7376C42E2A64FA838DAD98AA11, A072197177AAD26C31960694E38E2CAE85AFBAB070929E67E331B99D3A418CF4 ] cpuz140 C:\WINDOWS\TEMP\cpuz140\cpuz140_x64.sys
14:41:43.0259 0x0854 cpuz140 - ok
14:41:43.0259 0x0854 CryptSvc - ok
14:41:43.0259 0x0854 dam - ok
14:41:43.0259 0x0854 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:41:43.0259 0x0854 dbupdate - ok
14:41:43.0279 0x0854 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
14:41:43.0279 0x0854 dbupdatem - ok
14:41:43.0279 0x0854 dbx - ok
14:41:43.0279 0x0854 [ BC8C3896575B06303564265742142775, 38F64F215755E410F69F5BD88FCE6011093665F4C29DEE60A70632221D0C2BB3 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
14:41:43.0295 0x0854 DbxSvc - ok
14:41:43.0295 0x0854 DcomLaunch - ok
14:41:43.0295 0x0854 DcpSvc - ok
14:41:43.0295 0x0854 defragsvc - ok
14:41:43.0310 0x0854 DeviceAssociationService - ok
14:41:43.0310 0x0854 DeviceInstall - ok
14:41:43.0310 0x0854 DevQueryBroker - ok
14:41:43.0310 0x0854 Dfsc - ok
14:41:43.0310 0x0854 [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
14:41:43.0326 0x0854 dg_ssudbus - ok
14:41:43.0326 0x0854 Dhcp - ok
14:41:43.0326 0x0854 diagnosticshub.standardcollector.service - ok
14:41:43.0326 0x0854 DiagTrack - ok
14:41:43.0326 0x0854 disk - ok
14:41:43.0326 0x0854 DmEnrollmentSvc - ok
14:41:43.0326 0x0854 dmvsc - ok
14:41:43.0342 0x0854 dmwappushservice - ok
14:41:43.0342 0x0854 Dnscache - ok
14:41:43.0342 0x0854 dot3svc - ok
14:41:43.0342 0x0854 DPS - ok
14:41:43.0342 0x0854 drmkaud - ok
14:41:43.0342 0x0854 DsmSvc - ok
14:41:43.0342 0x0854 DsSvc - ok
14:41:43.0358 0x0854 DXGKrnl - ok
14:41:43.0366 0x0854 [ ABFC5D28535E4FC109CD623E84A553B1, 525CC64F14BF66C944F2651ABA7CC927A9B9D27841D81A5E4AD6187DE3DE7459 ] e1dexpress C:\WINDOWS\system32\DRIVERS\e1d64x64.sys
14:41:43.0369 0x0854 e1dexpress - ok
14:41:43.0369 0x0854 e1iexpress - ok
14:41:43.0369 0x0854 Eaphost - ok
14:41:43.0369 0x0854 ebdrv - ok
14:41:43.0369 0x0854 EFS - ok
14:41:43.0384 0x0854 EhStorClass - ok
14:41:43.0384 0x0854 EhStorTcgDrv - ok
14:41:43.0384 0x0854 embeddedmode - ok
14:41:43.0384 0x0854 EntAppSvc - ok
14:41:43.0384 0x0854 ErrDev - ok
14:41:43.0384 0x0854 EventSystem - ok
14:41:43.0400 0x0854 exfat - ok
14:41:43.0400 0x0854 fastfat - ok
14:41:43.0400 0x0854 Fax - ok
14:41:43.0416 0x0854 fcvsc - ok
14:41:43.0416 0x0854 fdc - ok
14:41:43.0416 0x0854 fdPHost - ok
14:41:43.0416 0x0854 FDResPub - ok
14:41:43.0416 0x0854 fhsvc - ok
14:41:43.0416 0x0854 FileCrypt - ok
14:41:43.0416 0x0854 FileInfo - ok
14:41:43.0416 0x0854 Filetrace - ok
14:41:43.0431 0x0854 flpydisk - ok
14:41:43.0431 0x0854 FltMgr - ok
14:41:43.0431 0x0854 FontCache - ok
14:41:43.0431 0x0854 FsDepends - ok
14:41:43.0431 0x0854 Fs_Rec - ok
14:41:43.0431 0x0854 fvevol - ok
14:41:43.0431 0x0854 gagp30kx - ok
14:41:43.0431 0x0854 gencounter - ok
14:41:43.0447 0x0854 genericusbfn - ok
14:41:43.0447 0x0854 GPIOClx0101 - ok
14:41:43.0447 0x0854 gpsvc - ok
14:41:43.0447 0x0854 GpuEnergyDrv - ok
14:41:43.0447 0x0854 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:41:43.0462 0x0854 gupdate - ok
14:41:43.0462 0x0854 [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:41:43.0462 0x0854 gupdatem - ok
14:41:43.0462 0x0854 HdAudAddService - ok
14:41:43.0462 0x0854 HDAudBus - ok
14:41:43.0462 0x0854 HidBatt - ok
14:41:43.0478 0x0854 HidBth - ok
14:41:43.0478 0x0854 hidi2c - ok
14:41:43.0478 0x0854 hidinterrupt - ok
14:41:43.0478 0x0854 HidIr - ok
14:41:43.0478 0x0854 hidserv - ok
14:41:43.0494 0x0854 HidUsb - ok
14:41:43.0494 0x0854 HomeGroupListener - ok
14:41:43.0494 0x0854 HomeGroupProvider - ok
14:41:43.0494 0x0854 HpSAMD - ok
14:41:43.0494 0x0854 HTTP - ok
14:41:43.0494 0x0854 hwpolicy - ok
14:41:43.0494 0x0854 hyperkbd - ok
14:41:43.0494 0x0854 HyperVideo - ok
14:41:43.0509 0x0854 i8042prt - ok
14:41:43.0509 0x0854 iaLPSSi_GPIO - ok
14:41:43.0509 0x0854 iaLPSSi_I2C - ok
14:41:43.0526 0x0854 [ 9EBE1AE8B3DA91D06BE1971EB37F7DA0, 55B0E66139C966AF0D4955B44363123198C559968C864DA85F6610CF1C844E8D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
14:41:43.0539 0x0854 iaStorA - ok
14:41:43.0541 0x0854 iaStorAV - ok
14:41:43.0548 0x0854 [ D524B034148F14C60F1CA66D267EE56A, 18045270C5CA718501285EE05EDED8B0EF998A881ACF19D9602F91A2A30E40AB ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:41:43.0551 0x0854 IAStorDataMgrSvc - ok
14:41:43.0555 0x0854 iaStorV - ok
14:41:43.0559 0x0854 ibbus - ok
14:41:43.0565 0x0854 icssvc - ok
14:41:43.0569 0x0854 IEEtwCollectorService - ok
14:41:43.0572 0x0854 IKEEXT - ok
14:41:43.0634 0x0854 [ C44251AF46727BA1A4D2A703255C9071, 64CD535324D5462136DC8E00F09FA89D89D8D9A71FA32FD615ADFF09F3A566CF ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
14:41:43.0688 0x0854 IntcAzAudAddService - ok
14:41:43.0689 0x0854 [ E42505363945956ECB5D38A4EB21CB39, C6A46A7621721EB1EA46E5F7D2E560D8022A97241F0792814015F803D96A2C92 ] Intel(R) PROSet Monitoring Service C:\WINDOWS\system32\IProsetMonitor.exe
14:41:43.0704 0x0854 Intel(R) PROSet Monitoring Service - ok
14:41:43.0704 0x0854 intelide - ok
14:41:43.0720 0x0854 intelpep - ok
14:41:43.0720 0x0854 intelppm - ok
14:41:43.0720 0x0854 IoQos - ok
14:41:43.0720 0x0854 IpFilterDriver - ok
14:41:43.0736 0x0854 iphlpsvc - ok
14:41:43.0736 0x0854 IPMIDRV - ok
14:41:43.0736 0x0854 IPNAT - ok
14:41:43.0736 0x0854 IRENUM - ok
14:41:43.0736 0x0854 isapnp - ok
14:41:43.0736 0x0854 iScsiPrt - ok
14:41:43.0736 0x0854 kbdclass - ok
14:41:43.0736 0x0854 kbdhid - ok
14:41:43.0751 0x0854 kdnic - ok
14:41:43.0751 0x0854 KeyIso - ok
14:41:43.0751 0x0854 KSecDD - ok
14:41:43.0751 0x0854 KSecPkg - ok
14:41:43.0751 0x0854 ksthunk - ok
14:41:43.0751 0x0854 KtmRm - ok
14:41:43.0751 0x0854 LanmanServer - ok
14:41:43.0751 0x0854 LanmanWorkstation - ok
14:41:43.0767 0x0854 lfsvc - ok
14:41:43.0767 0x0854 LicenseManager - ok
14:41:43.0767 0x0854 lltdio - ok
14:41:43.0782 0x0854 lltdsvc - ok
14:41:43.0782 0x0854 lmhosts - ok
14:41:43.0782 0x0854 LSI_SAS - ok
14:41:43.0782 0x0854 LSI_SAS2i - ok
14:41:43.0782 0x0854 LSI_SAS3i - ok
14:41:43.0782 0x0854 LSI_SSS - ok
14:41:43.0782 0x0854 LSM - ok
14:41:43.0782 0x0854 luafv - ok
14:41:43.0798 0x0854 MapsBroker - ok
14:41:43.0798 0x0854 megasas - ok
14:41:43.0798 0x0854 megasr - ok
14:41:43.0810 0x0854 [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
14:41:43.0818 0x0854 MEIx64 - ok
14:41:43.0820 0x0854 mlx4_bus - ok
14:41:43.0822 0x0854 MMCSS - ok
14:41:43.0823 0x0854 Modem - ok
14:41:43.0825 0x0854 monitor - ok
14:41:43.0827 0x0854 mouclass - ok
14:41:43.0830 0x0854 mouhid - ok
14:41:43.0832 0x0854 mountmgr - ok
14:41:43.0834 0x0854 mpsdrv - ok
14:41:43.0836 0x0854 MpsSvc - ok
14:41:43.0838 0x0854 MRxDAV - ok
14:41:43.0840 0x0854 mrxsmb - ok
14:41:43.0842 0x0854 mrxsmb10 - ok
14:41:43.0843 0x0854 mrxsmb20 - ok
14:41:43.0846 0x0854 MsBridge - ok
14:41:43.0848 0x0854 MSDTC - ok
14:41:43.0854 0x0854 Msfs - ok
14:41:43.0858 0x0854 msgpiowin32 - ok
14:41:43.0863 0x0854 mshidkmdf - ok
14:41:43.0868 0x0854 mshidumdf - ok
14:41:43.0871 0x0854 msisadrv - ok
14:41:43.0873 0x0854 MSiSCSI - ok
14:41:43.0875 0x0854 msiserver - ok
14:41:43.0877 0x0854 MSKSSRV - ok
14:41:43.0879 0x0854 MsLldp - ok
14:41:43.0884 0x0854 MSPCLOCK - ok
14:41:43.0889 0x0854 MSPQM - ok
14:41:43.0894 0x0854 MsRPC - ok
14:41:43.0899 0x0854 mssmbios - ok
14:41:43.0901 0x0854 MSTEE - ok
14:41:43.0905 0x0854 MTConfig - ok
14:41:43.0907 0x0854 Mup - ok
14:41:43.0909 0x0854 mvumis - ok
14:41:43.0912 0x0854 [ 1898CEDA3247213C084F43637EF163B3, 4429F32DB1CC70567919D7D47B844A91CF1329A6CD116F582305F3B7B60CD60B ] NAL C:\WINDOWS\system32\Drivers\iqvw64e.sys
14:41:43.0916 0x0854 NAL - ok
14:41:43.0919 0x0854 NativeWifiP - ok
14:41:43.0921 0x0854 NcaSvc - ok
14:41:43.0922 0x0854 NcbService - ok
14:41:43.0924 0x0854 NcdAutoSetup - ok
14:41:43.0926 0x0854 ndfltr - ok
14:41:43.0928 0x0854 NDIS - ok
14:41:43.0930 0x0854 NdisCap - ok
14:41:43.0932 0x0854 NdisImPlatform - ok
14:41:43.0934 0x0854 NdisTapi - ok
14:41:43.0936 0x0854 Ndisuio - ok
14:41:43.0938 0x0854 NdisVirtualBus - ok
14:41:43.0940 0x0854 NdisWan - ok
14:41:43.0942 0x0854 ndiswanlegacy - ok
14:41:43.0944 0x0854 ndproxy - ok
14:41:43.0945 0x0854 Ndu - ok
14:41:43.0950 0x0854 NetBIOS - ok
14:41:43.0953 0x0854 NetBT - ok
14:41:43.0954 0x0854 Netlogon - ok
14:41:43.0956 0x0854 Netman - ok
14:41:43.0958 0x0854 netprofm - ok
14:41:43.0960 0x0854 NetSetupSvc - ok
14:41:43.0967 0x0854 NetTcpPortSharing - ok
14:41:43.0968 0x0854 netvsc - ok
14:41:43.0971 0x0854 NgcCtnrSvc - ok
14:41:43.0973 0x0854 NgcSvc - ok
14:41:43.0975 0x0854 NlaSvc - ok
14:41:43.0977 0x0854 Npfs - ok
14:41:43.0979 0x0854 npsvctrig - ok
14:41:43.0981 0x0854 nsi - ok
14:41:43.0984 0x0854 nsiproxy - ok
14:41:43.0990 0x0854 NTFS - ok
14:41:43.0992 0x0854 Null - ok
14:41:43.0994 0x0854 nvraid - ok
14:41:43.0997 0x0854 nvstor - ok
14:41:43.0999 0x0854 nv_agp - ok
14:41:44.0001 0x0854 OneSyncSvc - ok
14:41:44.0009 0x0854 p2pimsvc - ok
14:41:44.0013 0x0854 p2psvc - ok
14:41:44.0017 0x0854 Parport - ok
14:41:44.0019 0x0854 partmgr - ok
14:41:44.0021 0x0854 PcaSvc - ok
14:41:44.0023 0x0854 pci - ok
14:41:44.0025 0x0854 pciide - ok
14:41:44.0027 0x0854 pcmcia - ok
14:41:44.0028 0x0854 pcw - ok
14:41:44.0031 0x0854 pdc - ok
14:41:44.0033 0x0854 PEAUTH - ok
14:41:44.0035 0x0854 percsas2i - ok
14:41:44.0037 0x0854 percsas3i - ok
14:41:44.0060 0x0854 PerfHost - ok
14:41:44.0064 0x0854 PimIndexMaintenanceSvc - ok
14:41:44.0068 0x0854 pla - ok
14:41:44.0070 0x0854 PlugPlay - ok
14:41:44.0072 0x0854 PNRPAutoReg - ok
14:41:44.0074 0x0854 PNRPsvc - ok
14:41:44.0076 0x0854 PolicyAgent - ok
14:41:44.0078 0x0854 Power - ok
14:41:44.0080 0x0854 PptpMiniport - ok
14:41:44.0137 0x0854 [ E083F434F6632EC0F241804D33C38FD9, CA8945786BEFD33C8FB9A887957DA4B4F8137F6C534718C6BA37D8B0965AE528 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
14:41:44.0209 0x0854 PrintNotify - ok
14:41:44.0224 0x0854 Processor - ok
14:41:44.0224 0x0854 ProfSvc - ok
14:41:44.0240 0x0854 Psched - ok
14:41:44.0240 0x0854 QWAVE - ok
14:41:44.0240 0x0854 QWAVEdrv - ok
14:41:44.0240 0x0854 RasAcd - ok
14:41:44.0240 0x0854 RasAgileVpn - ok
14:41:44.0240 0x0854 RasAuto - ok
14:41:44.0256 0x0854 Rasl2tp - ok
14:41:44.0256 0x0854 RasMan - ok
14:41:44.0256 0x0854 RasPppoe - ok
14:41:44.0256 0x0854 RasSstp - ok
14:41:44.0256 0x0854 Razer Game Scanner Service - ok
14:41:44.0256 0x0854 rdbss - ok
14:41:44.0271 0x0854 rdpbus - ok
14:41:44.0271 0x0854 RDPDR - ok
14:41:44.0271 0x0854 RdpVideoMiniport - ok
14:41:44.0271 0x0854 rdyboost - ok
14:41:44.0291 0x0854 ReFSv1 - ok
14:41:44.0291 0x0854 RemoteAccess - ok
14:41:44.0291 0x0854 RemoteRegistry - ok
14:41:44.0291 0x0854 RetailDemo - ok
14:41:44.0291 0x0854 RFCOMM - ok
14:41:44.0291 0x0854 RpcEptMapper - ok
14:41:44.0291 0x0854 RpcLocator - ok
14:41:44.0291 0x0854 RpcSs - ok
14:41:44.0307 0x0854 rspndr - ok
14:41:44.0307 0x0854 [ 30A186D6A2A2853EEFAD7011E212E41B, 367B8FCCF29470C9237FC1F0EAEB59AE51E33778BC9914A2730AC7DDBC84942B ] rzpmgrk C:\WINDOWS\system32\drivers\rzpmgrk.sys
14:41:44.0307 0x0854 rzpmgrk - ok
14:41:44.0307 0x0854 [ 2229D5A9A92B62DF4DF9CF51F48436F7, 0507D893E3FD2917C81C1DC13CCB22AE5402AB6CA9FB8D89485010838050D08D ] rzpnk C:\WINDOWS\system32\drivers\rzpnk.sys
14:41:44.0322 0x0854 rzpnk - ok
14:41:44.0322 0x0854 [ 421497E425AFB40502013F362E4FA230, 20E2372BEE4BFB21138CA574C9806EC399DDA9D3439F3C391E34ABB2E518106D ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys
14:41:44.0322 0x0854 rzudd - ok
14:41:44.0322 0x0854 s3cap - ok
14:41:44.0338 0x0854 SamSs - ok
14:41:44.0338 0x0854 sbp2port - ok
14:41:44.0338 0x0854 SCardSvr - ok
14:41:44.0338 0x0854 ScDeviceEnum - ok
14:41:44.0338 0x0854 scfilter - ok
14:41:44.0354 0x0854 Schedule - ok
14:41:44.0354 0x0854 SCPolicySvc - ok
14:41:44.0354 0x0854 sdbus - ok
14:41:44.0354 0x0854 SDRSVC - ok
14:41:44.0369 0x0854 sdstor - ok
14:41:44.0369 0x0854 seclogon - ok
14:41:44.0369 0x0854 SENS - ok
14:41:44.0385 0x0854 SensorDataService - ok
14:41:44.0385 0x0854 SensorService - ok
14:41:44.0385 0x0854 SensrSvc - ok
14:41:44.0385 0x0854 SerCx - ok
14:41:44.0401 0x0854 SerCx2 - ok
14:41:44.0401 0x0854 Serenum - ok
14:41:44.0401 0x0854 Serial - ok
14:41:44.0416 0x0854 sermouse - ok
14:41:44.0416 0x0854 SessionEnv - ok
14:41:44.0416 0x0854 sfloppy - ok
14:41:44.0416 0x0854 SharedAccess - ok
14:41:44.0416 0x0854 ShellHWDetection - ok
14:41:44.0416 0x0854 SiSRaid2 - ok
14:41:44.0416 0x0854 SiSRaid4 - ok
14:41:44.0432 0x0854 smphost - ok
14:41:44.0432 0x0854 SmsRouter - ok
14:41:44.0432 0x0854 SNMPTRAP - ok
14:41:44.0432 0x0854 spaceport - ok
14:41:44.0432 0x0854 SpbCx - ok
14:41:44.0432 0x0854 SpeedupService - ok
14:41:44.0432 0x0854 Spooler - ok
14:41:44.0447 0x0854 sppsvc - ok
14:41:44.0447 0x0854 srv - ok
14:41:44.0447 0x0854 srv2 - ok
14:41:44.0447 0x0854 srvnet - ok
14:41:44.0447 0x0854 SSDPSRV - ok
14:41:44.0447 0x0854 SstpSvc - ok
14:41:44.0447 0x0854 [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
14:41:44.0463 0x0854 ssudmdm - ok
14:41:44.0463 0x0854 StateRepository - ok
14:41:44.0463 0x0854 stexstor - ok
14:41:44.0463 0x0854 stisvc - ok
14:41:44.0463 0x0854 storahci - ok
14:41:44.0479 0x0854 storflt - ok
14:41:44.0479 0x0854 stornvme - ok
14:41:44.0479 0x0854 storqosflt - ok
14:41:44.0494 0x0854 StorSvc - ok
14:41:44.0494 0x0854 storufs - ok
14:41:44.0494 0x0854 storvsc - ok
14:41:44.0494 0x0854 svsvc - ok
14:41:44.0510 0x0854 swenum - ok
14:41:44.0510 0x0854 swprv - ok
14:41:44.0526 0x0854 Synth3dVsc - ok
14:41:44.0526 0x0854 SysMain - ok
14:41:44.0526 0x0854 SystemEventsBroker - ok
14:41:44.0526 0x0854 TabletInputService - ok
14:41:44.0526 0x0854 [ BB3F041ACE6FF23FD8F51B4CDDAB111B, A74544001291AB5E03E4B728CE7A336B17AA351C5E57C48536F62EAA756DFF7B ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys
14:41:44.0526 0x0854 tap0901 - ok
14:41:44.0541 0x0854 TapiSrv - ok
14:41:44.0541 0x0854 Tcpip - ok
14:41:44.0541 0x0854 Tcpip6 - ok
14:41:44.0541 0x0854 tcpipreg - ok
14:41:44.0541 0x0854 tdx - ok
14:41:44.0541 0x0854 terminpt - ok
14:41:44.0541 0x0854 TermService - ok
14:41:44.0557 0x0854 Themes - ok
14:41:44.0557 0x0854 tiledatamodelsvc - ok
14:41:44.0557 0x0854 TimeBroker - ok
14:41:44.0557 0x0854 TPM - ok
14:41:44.0572 0x0854 TrkWks - ok
14:41:44.0572 0x0854 TrustedInstaller - ok
14:41:44.0572 0x0854 TsUsbFlt - ok
14:41:44.0572 0x0854 TsUsbGD - ok
14:41:44.0572 0x0854 tunnel - ok
14:41:44.0572 0x0854 uagp35 - ok
14:41:44.0572 0x0854 UASPStor - ok
14:41:44.0572 0x0854 UcmCx0101 - ok
14:41:44.0588 0x0854 UcmUcsi - ok
14:41:44.0588 0x0854 Ucx01000 - ok
14:41:44.0588 0x0854 UdeCx - ok
14:41:44.0588 0x0854 udfs - ok
14:41:44.0588 0x0854 UEFI - ok
14:41:44.0604 0x0854 Ufx01000 - ok
14:41:44.0604 0x0854 UfxChipidea - ok
14:41:44.0604 0x0854 ufxsynopsys - ok
14:41:44.0604 0x0854 UI0Detect - ok
14:41:44.0604 0x0854 uliagpkx - ok
14:41:44.0604 0x0854 umbus - ok
14:41:44.0604 0x0854 UmPass - ok
14:41:44.0619 0x0854 UmRdpService - ok
14:41:44.0619 0x0854 UnistoreSvc - ok
14:41:44.0619 0x0854 upnphost - ok
14:41:44.0619 0x0854 UrsChipidea - ok
14:41:44.0619 0x0854 UrsCx01000 - ok
14:41:44.0619 0x0854 UrsSynopsys - ok
14:41:44.0619 0x0854 usbccgp - ok
14:41:44.0635 0x0854 usbcir - ok
14:41:44.0635 0x0854 usbehci - ok
14:41:44.0635 0x0854 usbhub - ok
14:41:44.0635 0x0854 USBHUB3 - ok
14:41:44.0651 0x0854 usbohci - ok
14:41:44.0651 0x0854 usbprint - ok
14:41:44.0651 0x0854 usbser - ok
14:41:44.0666 0x0854 USBSTOR - ok
14:41:44.0666 0x0854 usbuhci - ok
14:41:44.0666 0x0854 USBXHCI - ok
14:41:44.0682 0x0854 UserDataSvc - ok
14:41:44.0682 0x0854 UserManager - ok
14:41:44.0682 0x0854 UsoSvc - ok
14:41:44.0682 0x0854 VaultSvc - ok
14:41:44.0682 0x0854 vdrvroot - ok
14:41:44.0682 0x0854 vds - ok
14:41:44.0697 0x0854 VerifierExt - ok
14:41:44.0697 0x0854 vhdmp - ok
14:41:44.0697 0x0854 vhf - ok
14:41:44.0697 0x0854 vmbus - ok
14:41:44.0697 0x0854 VMBusHID - ok
14:41:44.0697 0x0854 vmicguestinterface - ok
14:41:44.0697 0x0854 vmicheartbeat - ok
14:41:44.0713 0x0854 vmickvpexchange - ok
14:41:44.0713 0x0854 vmicrdv - ok
14:41:44.0713 0x0854 vmicshutdown - ok
14:41:44.0713 0x0854 vmictimesync - ok
14:41:44.0713 0x0854 vmicvmsession - ok
14:41:44.0713 0x0854 vmicvss - ok
14:41:44.0713 0x0854 volmgr - ok
14:41:44.0713 0x0854 volmgrx - ok
14:41:44.0713 0x0854 volsnap - ok
14:41:44.0729 0x0854 vpci - ok
14:41:44.0729 0x0854 vsmraid - ok
14:41:44.0729 0x0854 VSS - ok
14:41:44.0729 0x0854 VSTXRAID - ok
14:41:44.0729 0x0854 vwifibus - ok
14:41:44.0729 0x0854 vwififlt - ok
14:41:44.0729 0x0854 vwifimp - ok
14:41:44.0729 0x0854 W32Time - ok
14:41:44.0744 0x0854 WacomPen - ok
14:41:44.0744 0x0854 WalletService - ok
14:41:44.0744 0x0854 wanarp - ok
14:41:44.0744 0x0854 wanarpv6 - ok
14:41:44.0744 0x0854 wbengine - ok
14:41:44.0744 0x0854 WbioSrvc - ok
14:41:44.0744 0x0854 Wcmsvc - ok
14:41:44.0744 0x0854 wcncsvc - ok
14:41:44.0760 0x0854 WcsPlugInService - ok
14:41:44.0760 0x0854 WdBoot - ok
14:41:44.0760 0x0854 Wdf01000 - ok
14:41:44.0760 0x0854 WdFilter - ok
14:41:44.0760 0x0854 WdiServiceHost - ok
14:41:44.0760 0x0854 WdiSystemHost - ok
14:41:44.0760 0x0854 wdiwifi - ok
14:41:44.0776 0x0854 WdNisDrv - ok
14:41:44.0776 0x0854 WdNisSvc - ok
14:41:44.0776 0x0854 WebClient - ok
14:41:44.0776 0x0854 Wecsvc - ok
14:41:44.0791 0x0854 WEPHOSTSVC - ok
14:41:44.0791 0x0854 wercplsupport - ok
14:41:44.0791 0x0854 WerSvc - ok
14:41:44.0791 0x0854 wfpcapture - ok
14:41:44.0807 0x0854 WFPLWFS - ok
14:41:44.0807 0x0854 WiaRpc - ok
14:41:44.0807 0x0854 WIMMount - ok
14:41:44.0817 0x0854 WinDefend - ok
14:41:44.0824 0x0854 WindowsTrustedRT - ok
14:41:44.0829 0x0854 WindowsTrustedRTProxy - ok
14:41:44.0832 0x0854 WinHttpAutoProxySvc - ok
14:41:44.0834 0x0854 WinMad - ok
14:41:44.0840 0x0854 Winmgmt - ok
14:41:44.0842 0x0854 WinRM - ok
14:41:44.0845 0x0854 WINUSB - ok
14:41:44.0847 0x0854 WinVerbs - ok
14:41:44.0849 0x0854 WlanSvc - ok
14:41:44.0851 0x0854 wlidsvc - ok
14:41:44.0853 0x0854 WmiAcpi - ok
14:41:44.0856 0x0854 wmiApSrv - ok
14:41:44.0858 0x0854 WMPNetworkSvc - ok
14:41:44.0892 0x0854 [ 099E476B28B6BAA4B8209155564472AA, 33E2512D24C2662E5976548BDD5980C822AB55AAA83D8CCACFFAD680D4841266 ] WNDA3100v3 C:\WINDOWS\system32\DRIVERS\WNDA3100v3.sys
14:41:44.0944 0x0854 WNDA3100v3 - ok
14:41:44.0953 0x0854 Wof - ok
14:41:44.0956 0x0854 workfolderssvc - ok
14:41:44.0960 0x0854 wpcfltr - ok
14:41:44.0962 0x0854 WPDBusEnum - ok
14:41:44.0964 0x0854 WpdUpFltr - ok
14:41:44.0967 0x0854 WpnService - ok
14:41:44.0968 0x0854 ws2ifsl - ok
14:41:44.0971 0x0854 wscsvc - ok
14:41:44.0972 0x0854 WSearch - ok
14:41:44.0976 0x0854 WSService - ok
14:41:44.0978 0x0854 wuauserv - ok
14:41:44.0980 0x0854 WudfPf - ok
14:41:44.0982 0x0854 WUDFRd - ok
14:41:44.0986 0x0854 wudfsvc - ok
14:41:44.0990 0x0854 WUDFWpdMtp - ok
14:41:44.0995 0x0854 WwanSvc - ok
14:41:44.0999 0x0854 XblAuthManager - ok
14:41:45.0004 0x0854 XblGameSave - ok
14:41:45.0008 0x0854 xboxgip - ok
14:41:45.0012 0x0854 XboxNetApiSvc - ok
14:41:45.0015 0x0854 xinputhid - ok
14:41:45.0016 0x0854 ================ Scan global ===============================
14:41:45.0024 0x0854 [ Global ] - ok
14:41:45.0024 0x0854 ================ Scan MBR ==================================
14:41:45.0026 0x0854 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
14:41:45.0048 0x0854 \Device\Harddisk1\DR1 - ok
14:41:45.0050 0x0854 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2
14:41:45.0066 0x0854 \Device\Harddisk2\DR2 - ok
14:41:45.0070 0x0854 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:41:45.0111 0x0854 \Device\Harddisk0\DR0 - ok
14:41:45.0112 0x0854 ================ Scan VBR ==================================
14:41:45.0115 0x0854 [ C206A53347BB9556D6777E286DB1510C ] \Device\Harddisk1\DR1\Partition1
14:41:45.0115 0x0854 \Device\Harddisk1\DR1\Partition1 - ok
14:41:45.0119 0x0854 [ 718C5DAF98340E167FA3387898A4644D ] \Device\Harddisk1\DR1\Partition2
14:41:45.0120 0x0854 \Device\Harddisk1\DR1\Partition2 - ok
14:41:45.0125 0x0854 [ 6C3B5D0C042C60C18C89DFD64B1B163F ] \Device\Harddisk2\DR2\Partition1
14:41:45.0126 0x0854 \Device\Harddisk2\DR2\Partition1 - ok
14:41:45.0129 0x0854 [ 7A355D190D9B7DC12EFF9B4B868F3C8D ] \Device\Harddisk2\DR2\Partition2
14:41:45.0130 0x0854 \Device\Harddisk2\DR2\Partition2 - ok
14:41:45.0132 0x0854 [ DB641D60939AEDACC31836DB2E9A0E87 ] \Device\Harddisk0\DR0\Partition1
14:41:45.0133 0x0854 \Device\Harddisk0\DR0\Partition1 - ok
14:41:45.0134 0x0854 ================ Scan generic autorun ======================
14:41:45.0251 0x0854 [ 7EBA7411AD59C564CC9AC4C4946B3342, 4256D2E20D104E526C66BC4273993FC70AC79D9B13A5FF49AEC720CFA083931F ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
14:41:45.0365 0x0854 RTHDVCPL - ok
14:41:45.0381 0x0854 [ F14327BA386AAA2246585BFADD8FE8E8, 2804D7985B116C808942B4501362D4F4BAE4B540E9A6AC9B176B30DD448BA5AC ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
14:41:45.0381 0x0854 IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
14:41:45.0381 0x0854 Detect skipped due to KSN trusted
14:41:45.0381 0x0854 IAStorIcon - ok
14:41:45.0552 0x0854 [ D1B65D57E6DDCB32DA3689D02A8488C4, 43345C754840A89DD080CC267A798E2648BEFE97BE6556A7DC327D274BAE8280 ] C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
14:41:45.0662 0x0854 StartCN - ok
14:41:45.0677 0x0854 PlaysTV - ok
14:41:45.0693 0x0854 OneDriveSetup - ok
14:41:45.0709 0x0854 OneDriveSetup - ok
14:41:45.0724 0x0854 [ 44348495F9D6ED21F4EFB3FF80677D99, 05B76248764B2BF7F9229626D7EFAFF96B724D38A82969EBE376CBE879E30450 ] C:\Users\Hänschen\AppData\Local\Microsoft\OneDrive\OneDrive.exe
14:41:45.0787 0x0854 OneDrive - ok
14:41:45.0787 0x0854 [ AB3FF5AA877505B82C6F0B917CF5839B, 909006733CE97377AAD15D45C250054FCBB7A5942E28674E74373C213D2AC042 ] C:\Program Files (x86)\detektor.fm-Rekorder\phonostarTimer.exe
14:41:45.0787 0x0854 detektor.fm-RekorderTimer - detected UnsignedFile.Multi.Generic ( 1 )
14:41:45.0787 0x0854 Detect skipped due to KSN trusted
14:41:45.0787 0x0854 detektor.fm-RekorderTimer - ok
14:41:45.0787 0x0854 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.17184 ), 0x61100 ( enabled : updated )
14:41:45.0802 0x0854 Win FW state via NFP2: enabled ( trusted )
14:41:45.0959 0x0854 ============================================================
14:41:45.0959 0x0854 Scan finished
14:41:45.0959 0x0854 ============================================================
14:41:45.0959 0x0fe0 Detected object count: 0
14:41:45.0959 0x0fe0 Actual detected object count: 0 |