Code:
13:52:13.0267 0x2a54 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
13:52:13.0267 0x2a54 UEFI system
13:52:19.0292 0x2a54 ============================================================
13:52:19.0292 0x2a54 Current date / time: 2017/02/12 13:52:19.0292
13:52:19.0293 0x2a54 SystemInfo:
13:52:19.0293 0x2a54
13:52:19.0293 0x2a54 OS Version: 10.0.14393 ServicePack: 0.0
13:52:19.0293 0x2a54 Product type: Workstation
13:52:19.0293 0x2a54 ComputerName: MEDIA
13:52:19.0293 0x2a54 UserName: HP
13:52:19.0293 0x2a54 Windows directory: C:\WINDOWS
13:52:19.0293 0x2a54 System windows directory: C:\WINDOWS
13:52:19.0293 0x2a54 Running under WOW64
13:52:19.0293 0x2a54 Processor architecture: Intel x64
13:52:19.0293 0x2a54 Number of processors: 4
13:52:19.0293 0x2a54 Page size: 0x1000
13:52:19.0293 0x2a54 Boot type: Normal boot
13:52:19.0293 0x2a54 CodeIntegrityOptions = 0x00000001
13:52:19.0293 0x2a54 ============================================================
13:52:19.0345 0x2a54 KLMD registered as C:\WINDOWS\system32\drivers\16442010.sys
13:52:19.0345 0x2a54 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
13:52:19.0522 0x2a54 System UUID: {84C71F79-313F-3A1F-60BC-6621D110A875}
13:52:19.0892 0x2a54 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:52:19.0896 0x2a54 ============================================================
13:52:19.0896 0x2a54 \Device\Harddisk0\DR0:
13:52:19.0896 0x2a54 GPT partitions:
13:52:19.0909 0x2a54 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {C76A2262-14B4-419E-AD5C-7DC3D66DB54E}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x145000
13:52:19.0909 0x2a54 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {C9AF6823-F10A-4C5E-A032-6F16BD879672}, Name: EFI system partition, StartLBA 0x145800, BlocksNum 0x82000
13:52:19.0909 0x2a54 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {1FACBC19-4979-4F36-89AE-916BC7208D2E}, Name: Microsoft reserved partition, StartLBA 0x1C7800, BlocksNum 0x40000
13:52:19.0910 0x2a54 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {DCDBD398-7443-47B6-A948-B037536697CB}, Name: Basic data partition, StartLBA 0x207800, BlocksNum 0x71B3101F
13:52:19.0910 0x2a54 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {92FCF72D-AC61-43A1-9F69-3B2DB0AD1640}, Name: , StartLBA 0x71D39000, BlocksNum 0x1B1000
13:52:19.0910 0x2a54 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {384AFAA3-3FCD-4311-898F-2C9D5E0835F1}, Name: Basic data partition, StartLBA 0x71EEA000, BlocksNum 0x281A000
13:52:19.0910 0x2a54 MBR partitions:
13:52:19.0910 0x2a54 ============================================================
13:52:19.0912 0x2a54 C: <-> \Device\Harddisk0\DR0\Partition4
13:52:19.0935 0x2a54 D: <-> \Device\Harddisk0\DR0\Partition6
13:52:19.0935 0x2a54 ============================================================
13:52:19.0935 0x2a54 Initialize success
13:52:19.0935 0x2a54 ============================================================
13:53:11.0584 0x3cc0 ============================================================
13:53:11.0584 0x3cc0 Scan started
13:53:11.0584 0x3cc0 Mode: Manual;
13:53:11.0584 0x3cc0 ============================================================
13:53:11.0584 0x3cc0 KSN ping started
13:53:11.0792 0x3cc0 KSN ping finished: true
13:53:14.0542 0x3cc0 ================ Scan system memory ========================
13:53:14.0542 0x3cc0 System memory - ok
13:53:14.0543 0x3cc0 ================ Scan services =============================
13:53:14.0695 0x3cc0 1394ohci - ok
13:53:14.0700 0x3cc0 3ware - ok
13:53:14.0715 0x3cc0 [ 36E8D1E627D422241D903305B4008E9B, BD4BB52E98302A71A217DDE85102DBFBD04A59CEE9BAD7AF1138BF453889D6EA ] Accelerometer C:\WINDOWS\system32\DRIVERS\Accelerometer.sys
13:53:14.0717 0x3cc0 Accelerometer - ok
13:53:14.0747 0x3cc0 [ A3769020F7E8A70FD3E824C050F33306, BAAB18DD28C753EC90E9552BD5FFC316AD8815505A7998BCE51D21448B373D86 ] acedrv11 C:\WINDOWS\system32\drivers\acedrv11.sys
13:53:14.0751 0x3cc0 acedrv11 - ok
13:53:14.0758 0x3cc0 ACPI - ok
13:53:14.0763 0x3cc0 AcpiDev - ok
13:53:14.0767 0x3cc0 acpiex - ok
13:53:14.0774 0x3cc0 acpipagr - ok
13:53:14.0780 0x3cc0 AcpiPmi - ok
13:53:14.0784 0x3cc0 acpitime - ok
13:53:14.0834 0x3cc0 [ BF3818B441955E4D438EC72F06F1FE61, 091A80D6A8887B4B5AFF8D12CB5A96AF4A04B125C13BED815B3A776778CD3190 ] AdobeActiveFileMonitor11.0 C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
13:53:14.0838 0x3cc0 AdobeActiveFileMonitor11.0 - ok
13:53:14.0941 0x3cc0 [ CA363F172E1978FD155764F2840B0BE8, CB14E2C94ABB8C8809F4E96472F6D1A9A3A0860217631F592E0F62F043165575 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:53:14.0947 0x3cc0 AdobeFlashPlayerUpdateSvc - ok
13:53:14.0956 0x3cc0 ADP80XX - ok
13:53:14.0970 0x3cc0 AFD - ok
13:53:15.0069 0x3cc0 [ F2EB8EB5FC46FB849498BBEF2AD6539D, 6BC9938B3E432963FFAB6A13E9237DA7888A3595522BBE99F2AA556ED06F5651 ] AGSService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
13:53:15.0113 0x3cc0 AGSService - ok
13:53:15.0122 0x3cc0 ahcache - ok
13:53:15.0127 0x3cc0 AJRouter - ok
13:53:15.0131 0x3cc0 ALG - ok
13:53:15.0137 0x3cc0 AmdK8 - ok
13:53:15.0141 0x3cc0 AmdPPM - ok
13:53:15.0146 0x3cc0 amdsata - ok
13:53:15.0150 0x3cc0 amdsbs - ok
13:53:15.0155 0x3cc0 amdxata - ok
13:53:15.0239 0x3cc0 [ 98D7647EF729503A60EF870DA5C21D0D, 7E36E8E3D9D0BD940DC225E1DB7EFD90F76F7BE8DCAD9782255556C31D6FD476 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
13:53:15.0262 0x3cc0 AntiVirMailService - ok
13:53:15.0290 0x3cc0 [ 229E752A26B53E155524D6530B95CDD4, B4D3DEA52860143D16A57EBA31CD3394B8B4FEA642EB3A736C8388447AB7E0E9 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
13:53:15.0301 0x3cc0 AntiVirSchedulerService - ok
13:53:15.0326 0x3cc0 [ 229E752A26B53E155524D6530B95CDD4, B4D3DEA52860143D16A57EBA31CD3394B8B4FEA642EB3A736C8388447AB7E0E9 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe
13:53:15.0337 0x3cc0 AntiVirService - ok
13:53:15.0390 0x3cc0 [ F2B26CD2305E917B1EA1BF49E0C59E31, 8CCE64C68B80D56C7604DB6ABD187F66C624462328F4886C607F0A46D8E9DE92 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
13:53:15.0421 0x3cc0 AntiVirWebService - ok
13:53:15.0429 0x3cc0 AppHostSvc - ok
13:53:15.0435 0x3cc0 AppID - ok
13:53:15.0439 0x3cc0 AppIDSvc - ok
13:53:15.0455 0x3cc0 Appinfo - ok
13:53:15.0461 0x3cc0 applockerfltr - ok
13:53:15.0466 0x3cc0 AppReadiness - ok
13:53:15.0471 0x3cc0 AppXSvc - ok
13:53:15.0488 0x3cc0 arcsas - ok
13:53:15.0514 0x3cc0 aspnet_state - ok
13:53:15.0519 0x3cc0 AsyncMac - ok
13:53:15.0524 0x3cc0 atapi - ok
13:53:15.0529 0x3cc0 AudioEndpointBuilder - ok
13:53:15.0534 0x3cc0 Audiosrv - ok
13:53:15.0559 0x3cc0 [ 19A629CC661BBB49E25203B9626354F9, 9FDE67E19CE0B5973441A11EB0D5CD8187C1B47B3A2C866FD6BD939D31F42924 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
13:53:15.0563 0x3cc0 avgntflt - ok
13:53:15.0586 0x3cc0 [ B34C86461D03F33E9B1A57699DCABED3, 127A63A3AEC796DDF7E19432CAF523CA23051058752B9772244655797B3B4CDB ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
13:53:15.0589 0x3cc0 avipbb - ok
13:53:15.0624 0x3cc0 [ 2AEE4D1D7E668F1CCF97EDE93509B0EE, B082B3BBB27D3C8B26A754508C3B98BA803FEA707898FF18A120D6A2679098DF ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
13:53:15.0632 0x3cc0 Avira.ServiceHost - ok
13:53:15.0638 0x3cc0 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
13:53:15.0640 0x3cc0 avkmgr - ok
13:53:15.0653 0x3cc0 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
13:53:15.0655 0x3cc0 avnetflt - ok
13:53:15.0660 0x3cc0 AxInstSV - ok
13:53:15.0665 0x3cc0 b06bdrv - ok
13:53:15.0671 0x3cc0 BasicDisplay - ok
13:53:15.0676 0x3cc0 BasicRender - ok
13:53:15.0683 0x3cc0 bcmfn - ok
13:53:15.0687 0x3cc0 bcmfn2 - ok
13:53:15.0691 0x3cc0 BDESVC - ok
13:53:15.0696 0x3cc0 Beep - ok
13:53:15.0702 0x3cc0 BFE - ok
13:53:15.0706 0x3cc0 BITS - ok
13:53:15.0711 0x3cc0 bowser - ok
13:53:15.0716 0x3cc0 BrokerInfrastructure - ok
13:53:15.0721 0x3cc0 Browser - ok
13:53:15.0725 0x3cc0 BthAvrcpTg - ok
13:53:15.0730 0x3cc0 BthHFEnum - ok
13:53:15.0735 0x3cc0 bthhfhid - ok
13:53:15.0740 0x3cc0 BthHFSrv - ok
13:53:15.0745 0x3cc0 BTHMODEM - ok
13:53:15.0751 0x3cc0 BTHPORT - ok
13:53:15.0756 0x3cc0 bthserv - ok
13:53:15.0778 0x3cc0 BTHUSB - ok
13:53:15.0784 0x3cc0 buttonconverter - ok
13:53:15.0832 0x3cc0 [ 94C0138BBD974E4ED444D11ADBF820FA, 9F2D678254BDAC6C3C890294CF96C66A97F425CE6AFA425E503FA1668ABE82E0 ] ByteFenceService C:\Program Files\ByteFence\ByteFenceService.exe
13:53:15.0835 0x3cc0 ByteFenceService - ok
13:53:15.0840 0x3cc0 CapImg - ok
13:53:15.0845 0x3cc0 cdfs - ok
13:53:15.0850 0x3cc0 CDPSvc - ok
13:53:15.0855 0x3cc0 CDPUserSvc - ok
13:53:15.0935 0x3cc0 cdrom - ok
13:53:15.0950 0x3cc0 CertPropSvc - ok
13:53:15.0955 0x3cc0 cht4iscsi - ok
13:53:15.0964 0x3cc0 cht4vbd - ok
13:53:15.0969 0x3cc0 circlass - ok
13:53:15.0973 0x3cc0 CLFS - ok
13:53:15.0992 0x3cc0 ClipSVC - ok
13:53:15.0998 0x3cc0 clreg - ok
13:53:16.0025 0x3cc0 [ 9731DAFDC7B690B2C7752FDFF045BFD8, 9DDBDC4FE519AF38993EAB2F16602B2B71CF8675BDD1F651F22DFA8C5C2C80F7 ] clwvd C:\WINDOWS\system32\DRIVERS\clwvd.sys
13:53:16.0027 0x3cc0 clwvd - ok
13:53:16.0032 0x3cc0 CmBatt - ok
13:53:16.0037 0x3cc0 CNG - ok
13:53:16.0042 0x3cc0 cnghwassist - ok
13:53:16.0078 0x3cc0 CompositeBus - ok
13:53:16.0083 0x3cc0 COMSysApp - ok
13:53:16.0088 0x3cc0 condrv - ok
13:53:16.0103 0x3cc0 CoreMessagingRegistrar - ok
13:53:16.0184 0x3cc0 [ A717F389ED125855847EDFD9841031C3, B515056B8F0356409F189D35099B783750BC8BBDE3CE9B3EDF67C13DEC92C80A ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
13:53:16.0194 0x3cc0 cphs - ok
13:53:16.0203 0x3cc0 CryptSvc - ok
13:53:16.0207 0x3cc0 dam - ok
13:53:16.0215 0x3cc0 DcomLaunch - ok
13:53:16.0219 0x3cc0 DcpSvc - ok
13:53:16.0224 0x3cc0 defragsvc - ok
13:53:16.0229 0x3cc0 DeviceAssociationService - ok
13:53:16.0233 0x3cc0 DeviceInstall - ok
13:53:16.0238 0x3cc0 DevQueryBroker - ok
13:53:16.0242 0x3cc0 Dfsc - ok
13:53:16.0281 0x3cc0 Dhcp - ok
13:53:16.0298 0x3cc0 diagnosticshub.standardcollector.service - ok
13:53:16.0303 0x3cc0 DiagTrack - ok
13:53:16.0361 0x3cc0 [ BEFAFF2DB70CD9E10E27C32E9C43B279, D89B43EBCD05662327D5851BDF1A8CB4C6E5FA7C6BD1241C230F50057BD35189 ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
13:53:16.0371 0x3cc0 DigitalWave.Update.Service - ok
13:53:16.0376 0x3cc0 disk - ok
13:53:16.0381 0x3cc0 DmEnrollmentSvc - ok
13:53:16.0385 0x3cc0 dmvsc - ok
13:53:16.0390 0x3cc0 dmwappushservice - ok
13:53:16.0396 0x3cc0 Dnscache - ok
13:53:16.0403 0x3cc0 dot3svc - ok
13:53:16.0409 0x3cc0 DPS - ok
13:53:16.0415 0x3cc0 drmkaud - ok
13:53:16.0420 0x3cc0 DsmSvc - ok
13:53:16.0423 0x3cc0 DsSvc - ok
13:53:16.0438 0x3cc0 DXGKrnl - ok
13:53:16.0444 0x3cc0 EapHost - ok
13:53:16.0449 0x3cc0 EasyAntiCheat - ok
13:53:16.0455 0x3cc0 ebdrv - ok
13:53:16.0462 0x3cc0 EFS - ok
13:53:16.0467 0x3cc0 EhStorClass - ok
13:53:16.0472 0x3cc0 EhStorTcgDrv - ok
13:53:16.0479 0x3cc0 embeddedmode - ok
13:53:16.0485 0x3cc0 EntAppSvc - ok
13:53:16.0489 0x3cc0 ErrDev - ok
13:53:16.0502 0x3cc0 EventSystem - ok
13:53:16.0507 0x3cc0 exfat - ok
13:53:16.0512 0x3cc0 fastfat - ok
13:53:16.0518 0x3cc0 Fax - ok
13:53:16.0522 0x3cc0 fdc - ok
13:53:16.0527 0x3cc0 fdPHost - ok
13:53:16.0531 0x3cc0 FDResPub - ok
13:53:16.0537 0x3cc0 fhsvc - ok
13:53:16.0541 0x3cc0 FileCrypt - ok
13:53:16.0547 0x3cc0 FileInfo - ok
13:53:16.0552 0x3cc0 Filetrace - ok
13:53:16.0557 0x3cc0 flpydisk - ok
13:53:16.0562 0x3cc0 FltMgr - ok
13:53:16.0568 0x3cc0 FontCache - ok
13:53:16.0583 0x3cc0 FontCache3.0.0.0 - ok
13:53:16.0588 0x3cc0 FrameServer - ok
13:53:16.0593 0x3cc0 FsDepends - ok
13:53:16.0598 0x3cc0 Fs_Rec - ok
13:53:16.0623 0x3cc0 fvevol - ok
13:53:16.0629 0x3cc0 gencounter - ok
13:53:16.0633 0x3cc0 genericusbfn - ok
13:53:16.0637 0x3cc0 GPIOClx0101 - ok
13:53:16.0642 0x3cc0 gpsvc - ok
13:53:16.0647 0x3cc0 GpuEnergyDrv - ok
13:53:16.0651 0x3cc0 HDAudBus - ok
13:53:16.0656 0x3cc0 HidBatt - ok
13:53:16.0662 0x3cc0 HidBth - ok
13:53:16.0667 0x3cc0 hidi2c - ok
13:53:16.0670 0x3cc0 hidinterrupt - ok
13:53:16.0676 0x3cc0 HidIr - ok
13:53:16.0680 0x3cc0 hidserv - ok
13:53:16.0686 0x3cc0 HidUsb - ok
13:53:16.0690 0x3cc0 HomeGroupListener - ok
13:53:16.0707 0x3cc0 HomeGroupProvider - ok
13:53:16.0713 0x3cc0 [ 3E28EE56DEC5678EC088752B91C05ADF, 1F80E7162BF80C66C5E58DD40513877579324FE4387044DC2A335F4320E8DFC7 ] hpdskflt C:\WINDOWS\system32\DRIVERS\hpdskflt.sys
13:53:16.0715 0x3cc0 hpdskflt - ok
13:53:16.0778 0x3cc0 [ 7B7DE6B3DC30F3246958F42C67A6F7BB, 4B66B90CFEC2231B905B21DECC4EC7C6500E546F080A452EF67E724EDF37ADD9 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
13:53:16.0801 0x3cc0 hpqwmiex - ok
13:53:16.0807 0x3cc0 HpSAMD - ok
13:53:16.0825 0x3cc0 [ 2456CAA57C1DBF8DD4AAB89A293F9F26, 8996E639C3FB13D90DC6304563C69F7C46EC5E053BAFEE0E0A9F999093FC31E9 ] hpsrv C:\WINDOWS\system32\Hpservice.exe
13:53:16.0832 0x3cc0 hpsrv - ok
13:53:16.0845 0x3cc0 [ EC80F3ECC5F8543E22BBCB037D837CA9, 23A4AE80A6C317CE77BD9D352CD9CED8649E3AD98A7C0A2044138BB20B46F398 ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
13:53:16.0846 0x3cc0 HPSupportSolutionsFrameworkService - ok
13:53:16.0896 0x3cc0 [ 316CE4F4D31F105534DA16B83F6A44C1, 6CD64E9E1EE8101BB4858C27AD70F0F7FEB65932ADDC7A01331472835085FFD0 ] HPWMISVC c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
13:53:16.0909 0x3cc0 HPWMISVC - ok
13:53:16.0915 0x3cc0 HTTP - ok
13:53:16.0919 0x3cc0 HvHost - ok
13:53:16.0924 0x3cc0 hvservice - ok
13:53:16.0929 0x3cc0 hwpolicy - ok
13:53:16.0933 0x3cc0 hyperkbd - ok
13:53:16.0938 0x3cc0 i8042prt - ok
13:53:16.0942 0x3cc0 iagpio - ok
13:53:16.0947 0x3cc0 iai2c - ok
13:53:16.0951 0x3cc0 iaLPSS2i_GPIO2 - ok
13:53:16.0956 0x3cc0 iaLPSS2i_I2C - ok
13:53:16.0960 0x3cc0 iaLPSSi_GPIO - ok
13:53:16.0965 0x3cc0 iaLPSSi_I2C - ok
13:53:17.0022 0x3cc0 [ 12859E1215AA083A42E7ADCDE5C061D1, 262F9C65C3FA7EB69C4FA7C6547E1C79DB49697A083309909BC78726A116557F ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
13:53:17.0052 0x3cc0 iaStorA - ok
13:53:17.0059 0x3cc0 iaStorAV - ok
13:53:17.0083 0x3cc0 [ 14E3DB5ADA7E2187A404129F4E5CE336, 5925C8E9DC00A6C682D6A3B37C6EBF2C325D37C8E4BF584F0B5AAC5A7B666E47 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
13:53:17.0084 0x3cc0 IAStorDataMgrSvc - ok
13:53:17.0089 0x3cc0 iaStorV - ok
13:53:17.0094 0x3cc0 ibbus - ok
13:53:17.0098 0x3cc0 ibtsiva - ok
13:53:17.0117 0x3cc0 [ 17CF9460BCF23BB4F96EAE3E160D7DB9, 68ABB485CBFCC22B9A5A5847557424937E5001086AB30EE5A717B18EDB81DE18 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys
13:53:17.0124 0x3cc0 ibtusb - ok
13:53:17.0129 0x3cc0 icssvc - ok
13:53:17.0342 0x3cc0 [ AEFF8BE94EBA58138962BE3F448F55D4, F7E431A780555A547989A62D3088DB71633EE92C5BF3767588EE6E2DB285254A ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
13:53:17.0471 0x3cc0 igfx - ok
13:53:17.0502 0x3cc0 [ 0D245FD51498FE7072FD66422DECE8A3, 3115BBA0386A4C0383B88CB7215467D3C174DC86113FA77D89020771D2E6ED4C ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
13:53:17.0513 0x3cc0 igfxCUIService2.0.0.0 - ok
13:53:17.0519 0x3cc0 [ E71AC94964ED675B3ED0727059B7F97B, 5468B5E9B75B10EA0BFBD81827FFC9CABFC69A4065CC5A5792DBC289D4DA27EE ] ikbevent C:\WINDOWS\system32\DRIVERS\ikbevent.sys
13:53:17.0520 0x3cc0 ikbevent - ok
13:53:17.0526 0x3cc0 IKEEXT - ok
13:53:17.0532 0x3cc0 [ 2FDB67F5B9F4E96B40FDC9D1AA0B686F, B556328D54F886792A89588F3FEFE38F7129E3D7A417CDC012778FA4EF37A8C1 ] imsevent C:\WINDOWS\system32\DRIVERS\imsevent.sys
13:53:17.0533 0x3cc0 imsevent - ok
13:53:17.0539 0x3cc0 IndirectKmd - ok
13:53:17.0565 0x3cc0 [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
13:53:17.0567 0x3cc0 intaud_WaveExtensible - ok
13:53:17.0713 0x3cc0 [ D172E06EFE08DF148155A59DB716C1B6, F059B0B37C5E944D70626E9F029BC6311029E0A9D778C9C75DDDDC59A5AF1605 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
13:53:17.0805 0x3cc0 IntcAzAudAddService - ok
13:53:17.0849 0x3cc0 [ C8D2B9B619E5A1E33C0A5CA8F0870298, F61941F2B6C65BDEF17514F0D991EA11D8F3D4B959DAA47C483277C63E910733 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
13:53:17.0860 0x3cc0 IntcDAud - ok
13:53:17.0903 0x3cc0 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
13:53:17.0921 0x3cc0 Intel(R) Capability Licensing Service TCP IP Interface - ok
13:53:17.0947 0x3cc0 [ 00D44FD91DFA18DD2A3B05AEE676E9DE, 332EBE0C522103D0B97A506EB12EC0E46D690C5801D7BB3158C0849778A7C0C4 ] Intel(R) TA SAM C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
13:53:17.0948 0x3cc0 Intel(R) TA SAM - ok
13:53:17.0988 0x3cc0 [ 8FC1304D14CA88CD5B46567D4842A14E, 09209F2276C8B2E78A5DE504A3BB23BE8AB690EAAC923E5229A13EA7AAA051FE ] Intel(R) TechnologyAccessLegacyCSLoader C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
13:53:17.0991 0x3cc0 Intel(R) TechnologyAccessLegacyCSLoader - ok
13:53:18.0021 0x3cc0 [ 3160EA50294C423524EF4E2AAC39A3B0, 379C9E3F3429DE46CAD9D2670C53697A35058736DB944C4BA0476EE2733C9929 ] Intel(R) TechnologyAccessService C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
13:53:18.0031 0x3cc0 Intel(R) TechnologyAccessService - ok
13:53:18.0038 0x3cc0 intelide - ok
13:53:18.0043 0x3cc0 intelpep - ok
13:53:18.0047 0x3cc0 intelppm - ok
13:53:18.0053 0x3cc0 iorate - ok
13:53:18.0057 0x3cc0 IpFilterDriver - ok
13:53:18.0066 0x3cc0 iphlpsvc - ok
13:53:18.0071 0x3cc0 IPMIDRV - ok
13:53:18.0076 0x3cc0 IPNAT - ok
13:53:18.0080 0x3cc0 irda - ok
13:53:18.0085 0x3cc0 IRENUM - ok
13:53:18.0090 0x3cc0 irmon - ok
13:53:18.0094 0x3cc0 isapnp - ok
13:53:18.0109 0x3cc0 iScsiPrt - ok
13:53:18.0124 0x3cc0 [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT C:\WINDOWS\System32\drivers\ISCTD64.sys
13:53:18.0126 0x3cc0 ISCT - ok
13:53:18.0137 0x3cc0 [ 622BF9C46A47CF17608C501320E8EFBD, 059F99D4306216324E100FCDAF02093B2CD662F2C6BE8565A4281E7760F8B575 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
13:53:18.0141 0x3cc0 iumsvc - ok
13:53:18.0158 0x3cc0 [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
13:53:18.0160 0x3cc0 iwdbus - ok
13:53:18.0179 0x3cc0 [ 832F7C2747F04D1294AEF46A2CE5B63B, ABAECEFCAD9B526C3D98681A874966B924EB99AF61CDFAC6D5E767BE2FAF6CFA ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
13:53:18.0184 0x3cc0 jhi_service - ok
13:53:18.0190 0x3cc0 kbdclass - ok
13:53:18.0194 0x3cc0 kbdhid - ok
13:53:18.0200 0x3cc0 kdnic - ok
13:53:18.0204 0x3cc0 KeyIso - ok
13:53:18.0208 0x3cc0 KSecDD - ok
13:53:18.0212 0x3cc0 KSecPkg - ok
13:53:18.0217 0x3cc0 ksthunk - ok
13:53:18.0222 0x3cc0 KtmRm - ok
13:53:18.0227 0x3cc0 LanmanServer - ok
13:53:18.0232 0x3cc0 LanmanWorkstation - ok
13:53:18.0238 0x3cc0 lfsvc - ok
13:53:18.0243 0x3cc0 LicenseManager - ok
13:53:18.0247 0x3cc0 lltdio - ok
13:53:18.0253 0x3cc0 lltdsvc - ok
13:53:18.0258 0x3cc0 lmhosts - ok
13:53:18.0274 0x3cc0 LSI_SAS - ok
13:53:18.0280 0x3cc0 LSI_SAS2i - ok
13:53:18.0285 0x3cc0 LSI_SAS3i - ok
13:53:18.0289 0x3cc0 LSI_SSS - ok
13:53:18.0293 0x3cc0 LSM - ok
13:53:18.0299 0x3cc0 luafv - ok
13:53:18.0303 0x3cc0 MapsBroker - ok
13:53:18.0309 0x3cc0 megasas - ok
13:53:18.0316 0x3cc0 megasas2i - ok
13:53:18.0335 0x3cc0 megasr - ok
13:53:18.0348 0x3cc0 [ 0CAEA11CEC2EEC7511385A467FD464D1, C84DD82374D551C90CCB274AB7F8CE4A503042CC8D1337A1F6498B2538E1793A ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
13:53:18.0352 0x3cc0 MEIx64 - ok
13:53:18.0358 0x3cc0 MessagingService - ok
13:53:18.0394 0x3cc0 mlx4_bus - ok
13:53:18.0399 0x3cc0 MMCSS - ok
13:53:18.0405 0x3cc0 Modem - ok
13:53:18.0420 0x3cc0 monitor - ok
13:53:18.0424 0x3cc0 mouclass - ok
13:53:18.0430 0x3cc0 mouhid - ok
13:53:18.0435 0x3cc0 mountmgr - ok
13:53:18.0444 0x3cc0 [ ADF79A49E942C91D1FC9863CBFDD6B58, C2B2A792C4717133DCAE6297EE3F5D985B11D3C1E68A8DC23985AC6B78ACDE98 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:53:18.0447 0x3cc0 MozillaMaintenance - ok
13:53:18.0452 0x3cc0 mpsdrv - ok
13:53:18.0457 0x3cc0 MpsSvc - ok
13:53:18.0463 0x3cc0 MRxDAV - ok
13:53:18.0472 0x3cc0 mrxsmb - ok
13:53:18.0477 0x3cc0 mrxsmb10 - ok
13:53:18.0483 0x3cc0 mrxsmb20 - ok
13:53:18.0489 0x3cc0 MsBridge - ok
13:53:18.0493 0x3cc0 MSDTC - ok
13:53:18.0504 0x3cc0 Msfs - ok
13:53:18.0509 0x3cc0 msgpiowin32 - ok
13:53:18.0516 0x3cc0 mshidkmdf - ok
13:53:18.0520 0x3cc0 mshidumdf - ok
13:53:18.0526 0x3cc0 msisadrv - ok
13:53:18.0533 0x3cc0 MSiSCSI - ok
13:53:18.0539 0x3cc0 msiserver - ok
13:53:18.0544 0x3cc0 MSKSSRV - ok
13:53:18.0550 0x3cc0 MsLldp - ok
13:53:18.0554 0x3cc0 MSPCLOCK - ok
13:53:18.0558 0x3cc0 MSPQM - ok
13:53:18.0564 0x3cc0 MsRPC - ok
13:53:18.0570 0x3cc0 mssmbios - ok
13:53:18.0574 0x3cc0 MSTEE - ok
13:53:18.0579 0x3cc0 MTConfig - ok
13:53:18.0583 0x3cc0 Mup - ok
13:53:18.0588 0x3cc0 mvumis - ok
13:53:18.0594 0x3cc0 NativeWifiP - ok
13:53:18.0599 0x3cc0 NcaSvc - ok
13:53:18.0611 0x3cc0 NcbService - ok
13:53:18.0617 0x3cc0 NcdAutoSetup - ok
13:53:18.0622 0x3cc0 ndfltr - ok
13:53:18.0627 0x3cc0 NDIS - ok
13:53:18.0632 0x3cc0 NdisCap - ok
13:53:18.0651 0x3cc0 NdisImPlatform - ok
13:53:18.0666 0x3cc0 [ 93052B06C5E4F33B0A459DD3CDA0E8D4, 3A3C8D8F5D733E4E7D44DB026DDE88A1C117A9AA5275C42A5B16CE1EBE8CE908 ] ndisrd C:\WINDOWS\system32\DRIVERS\ndisrfl.sys
13:53:18.0667 0x3cc0 ndisrd - ok
13:53:18.0672 0x3cc0 NdisTapi - ok
13:53:18.0678 0x3cc0 Ndisuio - ok
13:53:18.0684 0x3cc0 NdisVirtualBus - ok
13:53:18.0689 0x3cc0 NdisWan - ok
13:53:18.0695 0x3cc0 ndiswanlegacy - ok
13:53:18.0700 0x3cc0 ndproxy - ok
13:53:18.0704 0x3cc0 Ndu - ok
13:53:18.0709 0x3cc0 NetAdapterCx - ok
13:53:18.0714 0x3cc0 NetBIOS - ok
13:53:18.0727 0x3cc0 NetBT - ok
13:53:18.0737 0x3cc0 Netlogon - ok
13:53:18.0747 0x3cc0 Netman - ok
13:53:18.0751 0x3cc0 netprofm - ok
13:53:18.0756 0x3cc0 NetSetupSvc - ok
13:53:18.0780 0x3cc0 [ 3C3FEBD9D5CA88A92B8BCA720218D0BD, 394E9A4A9003F729B22C49FB4D63EFD044DF5263782500EB9DBB09BCC4884A41 ] NetTap630 C:\WINDOWS\system32\DRIVERS\nettap630.sys
13:53:18.0783 0x3cc0 NetTap630 - ok
13:53:18.0797 0x3cc0 NetTcpPortSharing - ok
13:53:18.0914 0x3cc0 [ C191C4C3255576E5B4EA1A9E35A94CA4, 062A80FCD1703DFCD7D7CE02EB0A3681D931B23E6648BA0FCD08B755D2EC058B ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys
13:53:18.0989 0x3cc0 NETwNb64 - ok
13:53:18.0999 0x3cc0 NgcCtnrSvc - ok
13:53:19.0003 0x3cc0 NgcSvc - ok
13:53:19.0007 0x3cc0 NlaSvc - ok
13:53:19.0012 0x3cc0 Npfs - ok
13:53:19.0017 0x3cc0 npsvctrig - ok
13:53:19.0021 0x3cc0 nsi - ok
13:53:19.0025 0x3cc0 nsiproxy - ok
13:53:19.0033 0x3cc0 NTFS - ok
13:53:19.0037 0x3cc0 Null - ok
13:53:19.0507 0x3cc0 [ 4D56E475D32437ECF663CE944D7E0D3F, 22F4E20D066A750ECC1C2566A0D93FE059CA16CF8A0D26002A1B721E26D443D7 ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nvhmwu.inf_amd64_6cdbe0c0630ed4a3\nvlddmkm.sys
13:53:19.0794 0x3cc0 nvlddmkm - ok
13:53:19.0893 0x3cc0 [ B6BF397F3AAE84A90B4AD2E5AC7E59E4, 12264346E8866317B36D4A0F34B57E94E7598770433E2CB824ADC7FFFF6BCEDF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
13:53:19.0930 0x3cc0 NvNetworkService - ok
13:53:19.0938 0x3cc0 nvraid - ok
13:53:19.0942 0x3cc0 nvstor - ok
13:53:19.0967 0x3cc0 [ 1A861F6D367B3F21C61F40CFFAAE4289, 9162458087CC41C767396E7399D7AB84CD4C1CABCBCDA4870EFF804771436BC9 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
13:53:19.0968 0x3cc0 NvStreamKms - ok
13:53:20.0530 0x3cc0 [ 895130A7E7060AE8B120987940264063, 9C7A0CAE7EB3EF32C91BCA70BD83E765782629784AC309BFFB0DD9DC226C8106 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
13:53:20.0920 0x3cc0 NvStreamSvc - ok
13:53:20.0967 0x3cc0 [ 1AF619620613869C07F9C147BC37520F, 0AD4E100354E201D5E72BA236C1464F5083A7E3B58C4AC6BA712489D258955F5 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
13:53:20.0969 0x3cc0 nvvad_WaveExtensible - ok
13:53:21.0009 0x3cc0 [ 6363650D553572A305CDBF90F452C1BF, 15A499D8F403D66FDD2FA5AD607606E93FD82B845FBB6ECC63DF58EFC13CBA57 ] omniserv C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
13:53:21.0012 0x3cc0 omniserv - ok
13:53:21.0017 0x3cc0 OneSyncSvc - ok
13:53:21.0084 0x3cc0 [ 3E498CE04DD40C60769854DF2CE8D21D, 28B9331787FE598A79E40DA839B022D353280BE0E8F0D20CE4AAB6284866DE48 ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe
13:53:21.0127 0x3cc0 Origin Client Service - ok
13:53:21.0214 0x3cc0 [ B66980E730FEF1E31BE39B09F55514A1, 756F7695AB112FB2FEBA905F5F9E7C9435823195DE164AF60071457BC047535E ] Origin Web Helper Service C:\Program Files (x86)\Origin\OriginWebHelperService.exe
13:53:21.0256 0x3cc0 Origin Web Helper Service - ok
13:53:21.0277 0x3cc0 p2pimsvc - ok
13:53:21.0282 0x3cc0 p2psvc - ok
13:53:21.0288 0x3cc0 Parport - ok
13:53:21.0292 0x3cc0 partmgr - ok
13:53:21.0298 0x3cc0 PcaSvc - ok
13:53:21.0303 0x3cc0 pci - ok
13:53:21.0308 0x3cc0 pciide - ok
13:53:21.0313 0x3cc0 pcmcia - ok
13:53:21.0317 0x3cc0 pcw - ok
13:53:21.0322 0x3cc0 pdc - ok
13:53:21.0327 0x3cc0 PEAUTH - ok
13:53:21.0331 0x3cc0 percsas2i - ok
13:53:21.0337 0x3cc0 percsas3i - ok
13:53:21.0412 0x3cc0 PerfHost - ok
13:53:21.0425 0x3cc0 PhoneSvc - ok
13:53:21.0431 0x3cc0 PimIndexMaintenanceSvc - ok
13:53:21.0497 0x3cc0 pla - ok
13:53:21.0501 0x3cc0 PlugPlay - ok
13:53:21.0507 0x3cc0 PNRPAutoReg - ok
13:53:21.0511 0x3cc0 PNRPsvc - ok
13:53:21.0517 0x3cc0 PolicyAgent - ok
13:53:21.0522 0x3cc0 Power - ok
13:53:21.0528 0x3cc0 PptpMiniport - ok
13:53:21.0670 0x3cc0 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
13:53:21.0736 0x3cc0 PrintNotify - ok
13:53:21.0745 0x3cc0 Processor - ok
13:53:21.0749 0x3cc0 ProfSvc - ok
13:53:21.0753 0x3cc0 Psched - ok
13:53:21.0760 0x3cc0 [ 07D57B890DD5693A6AB660CBAE8F91B4, 934895A41C116056E22FE3298418332A9F4280F96E96EEE06C977A4925395674 ] PxHlpa64 C:\WINDOWS\system32\Drivers\PxHlpa64.sys
13:53:21.0762 0x3cc0 PxHlpa64 - ok
13:53:21.0767 0x3cc0 QWAVE - ok
13:53:21.0771 0x3cc0 QWAVEdrv - ok
13:53:21.0776 0x3cc0 RasAcd - ok
13:53:21.0782 0x3cc0 RasAgileVpn - ok
13:53:21.0787 0x3cc0 RasAuto - ok
13:53:21.0793 0x3cc0 Rasl2tp - ok
13:53:21.0798 0x3cc0 RasMan - ok
13:53:21.0802 0x3cc0 RasPppoe - ok
13:53:21.0807 0x3cc0 RasSstp - ok
13:53:21.0812 0x3cc0 rdbss - ok
13:53:21.0819 0x3cc0 rdpbus - ok
13:53:21.0823 0x3cc0 RDPDR - ok
13:53:21.0833 0x3cc0 RdpVideoMiniport - ok
13:53:21.0837 0x3cc0 rdyboost - ok
13:53:21.0841 0x3cc0 ReFSv1 - ok
13:53:21.0847 0x3cc0 RemoteAccess - ok
13:53:21.0852 0x3cc0 RemoteRegistry - ok
13:53:21.0857 0x3cc0 RetailDemo - ok
13:53:21.0870 0x3cc0 RmSvc - ok
13:53:21.0878 0x3cc0 RpcEptMapper - ok
13:53:21.0882 0x3cc0 RpcLocator - ok
13:53:21.0887 0x3cc0 RpcSs - ok
13:53:21.0892 0x3cc0 rspndr - ok
13:53:21.0930 0x3cc0 [ 12A3D1530E3F67B8664EBA923A3981E4, 8670C39EB0A7C37C17D014A8917493B776DE0829B55EFED13D91B6FA7B81CA11 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
13:53:21.0952 0x3cc0 rt640x64 - ok
13:53:21.0986 0x3cc0 [ C397166D21F4CD59D5AF339F8938CD0D, AC65C3238B0793BDDB43992AF1FF09CC70DA1DB89B8722A312FC1EF8BC97E272 ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
13:53:21.0993 0x3cc0 RtkAudioService - ok
13:53:22.0024 0x3cc0 [ A8FBDF79F7BFF18AC1E55D41EE6A5030, 9319649ABA8649A6DAB4A2F3D9968AE5C13D786F6950B91A0E06BB044CB0F6ED ] rtop C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe
13:53:22.0031 0x3cc0 rtop - ok
13:53:22.0070 0x3cc0 [ 965AA0535F1D6EA6174B2429D7F4D073, D7DB79B7BAC130C74376D78712BB13039F5AF5205DB1DD8D55B4745AEB6AF727 ] RTSPER C:\WINDOWS\system32\DRIVERS\RtsPer.sys
13:53:22.0086 0x3cc0 RTSPER - ok
13:53:22.0092 0x3cc0 s3cap - ok
13:53:22.0098 0x3cc0 SamSs - ok
13:53:22.0102 0x3cc0 sbp2port - ok
13:53:22.0108 0x3cc0 SCardSvr - ok
13:53:22.0118 0x3cc0 ScDeviceEnum - ok
13:53:22.0124 0x3cc0 scfilter - ok
13:53:22.0128 0x3cc0 Schedule - ok
13:53:22.0132 0x3cc0 scmbus - ok
13:53:22.0137 0x3cc0 scmdisk0101 - ok
13:53:22.0143 0x3cc0 SCPolicySvc - ok
13:53:22.0147 0x3cc0 sdbus - ok
13:53:22.0152 0x3cc0 SDRSVC - ok
13:53:22.0157 0x3cc0 sdstor - ok
13:53:22.0162 0x3cc0 seclogon - ok
13:53:22.0167 0x3cc0 SENS - ok
13:53:22.0172 0x3cc0 SensorDataService - ok
13:53:22.0177 0x3cc0 SensorService - ok
13:53:22.0198 0x3cc0 SensrSvc - ok
13:53:22.0202 0x3cc0 SerCx - ok
13:53:22.0207 0x3cc0 SerCx2 - ok
13:53:22.0212 0x3cc0 Serenum - ok
13:53:22.0217 0x3cc0 Serial - ok
13:53:22.0221 0x3cc0 sermouse - ok
13:53:22.0232 0x3cc0 SessionEnv - ok
13:53:22.0236 0x3cc0 sfloppy - ok
13:53:22.0244 0x3cc0 SharedAccess - ok
13:53:22.0249 0x3cc0 ShellHWDetection - ok
13:53:22.0270 0x3cc0 shpamsvc - ok
13:53:22.0276 0x3cc0 SiSRaid2 - ok
13:53:22.0281 0x3cc0 SiSRaid4 - ok
13:53:22.0306 0x3cc0 [ 13DFE743C3AF65458F5C7777A9B16CCC, 47BA69856E008756CF9168F809DB0B0728CE7945B3323114578A94B70313CE79 ] SmbDrv C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys
13:53:22.0308 0x3cc0 SmbDrv - ok
13:53:22.0327 0x3cc0 [ 5ABAB1FF9E0174C96AE711803D0B49A1, C037D7C5EBDD3276A689EE81EA8E5881624D20DC3751DE6FBB2870198F502D8A ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
13:53:22.0329 0x3cc0 SmbDrvI - ok
13:53:22.0345 0x3cc0 smphost - ok
13:53:22.0368 0x3cc0 SmsRouter - ok
13:53:22.0377 0x3cc0 SNMPTRAP - ok
13:53:22.0382 0x3cc0 spaceport - ok
13:53:22.0389 0x3cc0 SpbCx - ok
13:53:22.0395 0x3cc0 Spooler - ok
13:53:22.0401 0x3cc0 sppsvc - ok
13:53:22.0406 0x3cc0 srv - ok
13:53:22.0411 0x3cc0 srv2 - ok
13:53:22.0433 0x3cc0 srvnet - ok
13:53:22.0438 0x3cc0 SSDPSRV - ok
13:53:22.0442 0x3cc0 SstpSvc - ok
13:53:22.0448 0x3cc0 StateRepository - ok
13:53:22.0544 0x3cc0 [ 596DC69BB40A96FCA4B19D9D1E221E34, 3469D3B2E9A88E39C14AE2E3DD5EC3D91FBB88CA568D794555B397B50E64AB15 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
13:53:22.0574 0x3cc0 Steam Client Service - ok
13:53:22.0581 0x3cc0 stexstor - ok
13:53:22.0586 0x3cc0 stisvc - ok
13:53:22.0592 0x3cc0 storahci - ok
13:53:22.0603 0x3cc0 storflt - ok
13:53:22.0608 0x3cc0 stornvme - ok
13:53:22.0613 0x3cc0 storqosflt - ok
13:53:22.0619 0x3cc0 StorSvc - ok
13:53:22.0624 0x3cc0 storufs - ok
13:53:22.0629 0x3cc0 storvsc - ok
13:53:22.0634 0x3cc0 svsvc - ok
13:53:22.0640 0x3cc0 swenum - ok
13:53:22.0645 0x3cc0 swprv - ok
13:53:22.0650 0x3cc0 Synth3dVsc - ok
13:53:22.0693 0x3cc0 [ FFFCCD161BBCFDFD89E6D531AB904EFB, D442D0F44FFF555FEDCF004E723A1CBD4F80F2F0E0A127A104FB4778C8738864 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
13:53:22.0712 0x3cc0 SynTP - ok
13:53:22.0761 0x3cc0 [ FDC86D27886D4F6FC860C2FB7AE1FC52, 52E676495C6C115D356AF4613D779C982E24B770695413F7E46E1BD8F14A977A ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
13:53:22.0767 0x3cc0 SynTPEnhService - ok
13:53:22.0773 0x3cc0 SysMain - ok
13:53:22.0778 0x3cc0 SystemEventsBroker - ok
13:53:22.0792 0x3cc0 TabletInputService - ok
13:53:22.0798 0x3cc0 TapiSrv - ok
13:53:22.0803 0x3cc0 Tcpip - ok
13:53:22.0808 0x3cc0 Tcpip6 - ok
13:53:22.0815 0x3cc0 tcpipreg - ok
13:53:22.0823 0x3cc0 tdx - ok
13:53:22.0828 0x3cc0 terminpt - ok
13:53:22.0832 0x3cc0 TermService - ok
13:53:22.0839 0x3cc0 Themes - ok
13:53:22.0843 0x3cc0 TieringEngineService - ok
13:53:22.0849 0x3cc0 tiledatamodelsvc - ok
13:53:22.0854 0x3cc0 TimeBrokerSvc - ok
13:53:22.0860 0x3cc0 TPM - ok
13:53:22.0865 0x3cc0 TrkWks - ok
13:53:22.0878 0x3cc0 TrustedInstaller - ok
13:53:22.0886 0x3cc0 tsusbflt - ok
13:53:22.0894 0x3cc0 TsUsbGD - ok
13:53:22.0899 0x3cc0 tunnel - ok
13:53:22.0905 0x3cc0 tzautoupdate - ok
13:53:22.0910 0x3cc0 UASPStor - ok
13:53:22.0914 0x3cc0 UcmCx0101 - ok
13:53:22.0921 0x3cc0 UcmTcpciCx0101 - ok
13:53:22.0925 0x3cc0 UcmUcsi - ok
13:53:22.0930 0x3cc0 Ucx01000 - ok
13:53:22.0935 0x3cc0 UdeCx - ok
13:53:22.0940 0x3cc0 udfs - ok
13:53:22.0944 0x3cc0 UEFI - ok
13:53:22.0950 0x3cc0 Ufx01000 - ok
13:53:22.0956 0x3cc0 UfxChipidea - ok
13:53:22.0961 0x3cc0 ufxsynopsys - ok
13:53:22.0971 0x3cc0 UI0Detect - ok
13:53:22.0976 0x3cc0 umbus - ok
13:53:22.0980 0x3cc0 UmPass - ok
13:53:22.0986 0x3cc0 UmRdpService - ok
13:53:22.0990 0x3cc0 UnistoreSvc - ok
13:53:22.0999 0x3cc0 upnphost - ok
13:53:23.0005 0x3cc0 UrsChipidea - ok
13:53:23.0010 0x3cc0 UrsCx01000 - ok
13:53:23.0015 0x3cc0 UrsSynopsys - ok
13:53:23.0021 0x3cc0 usbccgp - ok
13:53:23.0026 0x3cc0 usbcir - ok
13:53:23.0031 0x3cc0 usbehci - ok
13:53:23.0036 0x3cc0 usbhub - ok
13:53:23.0041 0x3cc0 USBHUB3 - ok
13:53:23.0045 0x3cc0 usbohci - ok
13:53:23.0050 0x3cc0 usbprint - ok
13:53:23.0056 0x3cc0 usbser - ok
13:53:23.0060 0x3cc0 USBSTOR - ok
13:53:23.0064 0x3cc0 usbuhci - ok
13:53:23.0077 0x3cc0 usbvideo - ok
13:53:23.0081 0x3cc0 USBXHCI - ok
13:53:23.0087 0x3cc0 UserDataSvc - ok
13:53:23.0094 0x3cc0 UserManager - ok
13:53:23.0115 0x3cc0 UsoSvc - ok
13:53:23.0130 0x3cc0 [ D0DE93EF93643EDAEB9D277B14750C46, 0DC84E51B8E5491D0D370517C935E299D1EF46D1EA61D4171907818A62A5CF53 ] valWBFPolicyService C:\Windows\system32\valWBFPolicyService.exe
13:53:23.0144 0x3cc0 valWBFPolicyService - ok
13:53:23.0148 0x3cc0 VaultSvc - ok
13:53:23.0154 0x3cc0 vdrvroot - ok
13:53:23.0159 0x3cc0 vds - ok
13:53:23.0163 0x3cc0 VerifierExt - ok
13:53:23.0168 0x3cc0 vhdmp - ok
13:53:23.0173 0x3cc0 vhf - ok
13:53:23.0177 0x3cc0 vmbus - ok
13:53:23.0182 0x3cc0 VMBusHID - ok
13:53:23.0188 0x3cc0 vmgid - ok
13:53:23.0206 0x3cc0 vmicguestinterface - ok
13:53:23.0210 0x3cc0 vmicheartbeat - ok
13:53:23.0214 0x3cc0 vmickvpexchange - ok
13:53:23.0220 0x3cc0 vmicrdv - ok
13:53:23.0224 0x3cc0 vmicshutdown - ok
13:53:23.0228 0x3cc0 vmictimesync - ok
13:53:23.0234 0x3cc0 vmicvmsession - ok
13:53:23.0238 0x3cc0 vmicvss - ok
13:53:23.0267 0x3cc0 [ AE3A5225AA7F4FC644288505E33D575C, 3D424D5DAC6F87348AC3C895C1EB8F95770AA3D65945115B7F49AD7CB7E5CB7B ] VMLiteUSB C:\WINDOWS\System32\Drivers\VMLiteUSB.sys
13:53:23.0271 0x3cc0 VMLiteUSB - ok
13:53:23.0276 0x3cc0 volmgr - ok
13:53:23.0286 0x3cc0 volmgrx - ok
13:53:23.0291 0x3cc0 volsnap - ok
13:53:23.0297 0x3cc0 volume - ok
13:53:23.0302 0x3cc0 vpci - ok
13:53:23.0308 0x3cc0 vsmraid - ok
13:53:23.0320 0x3cc0 VSS - ok
13:53:23.0325 0x3cc0 VSTXRAID - ok
13:53:23.0330 0x3cc0 vwifibus - ok
13:53:23.0335 0x3cc0 vwififlt - ok
13:53:23.0339 0x3cc0 vwifimp - ok
13:53:23.0345 0x3cc0 W32Time - ok
13:53:23.0352 0x3cc0 w3logsvc - ok
13:53:23.0356 0x3cc0 WacomPen - ok
13:53:23.0362 0x3cc0 WalletService - ok
13:53:23.0367 0x3cc0 wanarp - ok
13:53:23.0373 0x3cc0 wanarpv6 - ok
13:53:23.0379 0x3cc0 WAS - ok
13:53:23.0385 0x3cc0 wbengine - ok
13:53:23.0393 0x3cc0 WbioSrvc - ok
13:53:23.0399 0x3cc0 wcifs - ok
13:53:23.0406 0x3cc0 Wcmsvc - ok
13:53:23.0412 0x3cc0 wcncsvc - ok
13:53:23.0418 0x3cc0 wcnfs - ok
13:53:23.0425 0x3cc0 WdBoot - ok
13:53:23.0432 0x3cc0 Wdf01000 - ok
13:53:23.0439 0x3cc0 WdFilter - ok
13:53:23.0447 0x3cc0 WdiServiceHost - ok
13:53:23.0452 0x3cc0 WdiSystemHost - ok
13:53:23.0474 0x3cc0 wdiwifi - ok
13:53:23.0480 0x3cc0 WdNisDrv - ok
13:53:23.0496 0x3cc0 WdNisSvc - ok
13:53:23.0503 0x3cc0 WebClient - ok
13:53:23.0507 0x3cc0 Wecsvc - ok
13:53:23.0512 0x3cc0 WEPHOSTSVC - ok
13:53:23.0519 0x3cc0 wercplsupport - ok
13:53:23.0524 0x3cc0 WerSvc - ok
13:53:23.0528 0x3cc0 WFPLWFS - ok
13:53:23.0533 0x3cc0 WiaRpc - ok
13:53:23.0538 0x3cc0 WIMMount - ok
13:53:23.0541 0x3cc0 WinDefend - ok
13:53:23.0553 0x3cc0 WindowsTrustedRT - ok
13:53:23.0559 0x3cc0 WindowsTrustedRTProxy - ok
13:53:23.0566 0x3cc0 WinHttpAutoProxySvc - ok
13:53:23.0570 0x3cc0 WinMad - ok
13:53:23.0587 0x3cc0 Winmgmt - ok
13:53:23.0592 0x3cc0 WinRM - ok
13:53:23.0621 0x3cc0 WINUSB - ok
13:53:23.0625 0x3cc0 WinVerbs - ok
13:53:23.0648 0x3cc0 [ BD19E2065A51E5E72A58729EE8CAA944, 2E5304B69A0D3ECCF9A1DEA152120493ACC3A77670380CDB24979BF5B56CAC26 ] WirelessButtonDriver64 C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys
13:53:23.0651 0x3cc0 WirelessButtonDriver64 - ok
13:53:23.0656 0x3cc0 wisvc - ok
13:53:23.0661 0x3cc0 WlanSvc - ok
13:53:23.0667 0x3cc0 wlidsvc - ok
13:53:23.0673 0x3cc0 WmiAcpi - ok
13:53:23.0680 0x3cc0 wmiApSrv - ok
13:53:23.0694 0x3cc0 WMPNetworkSvc - ok
13:53:23.0699 0x3cc0 Wof - ok
13:53:23.0709 0x3cc0 workfolderssvc - ok
13:53:23.0716 0x3cc0 WPDBusEnum - ok
13:53:23.0722 0x3cc0 WpdUpFltr - ok
13:53:23.0728 0x3cc0 WpnService - ok
13:53:23.0733 0x3cc0 WpnUserService - ok
13:53:23.0741 0x3cc0 ws2ifsl - ok
13:53:23.0747 0x3cc0 wscsvc - ok
13:53:23.0752 0x3cc0 WSearch - ok
13:53:23.0774 0x3cc0 wuauserv - ok
13:53:23.0780 0x3cc0 WudfPf - ok
13:53:23.0785 0x3cc0 WUDFRd - ok
13:53:23.0792 0x3cc0 wudfsvc - ok
13:53:23.0798 0x3cc0 WUDFWpdFs - ok
13:53:23.0803 0x3cc0 WUDFWpdMtp - ok
13:53:23.0808 0x3cc0 WwanSvc - ok
13:53:23.0814 0x3cc0 XblAuthManager - ok
13:53:23.0820 0x3cc0 XblGameSave - ok
13:53:23.0825 0x3cc0 xboxgip - ok
13:53:23.0831 0x3cc0 XboxNetApiSvc - ok
13:53:23.0854 0x3cc0 xinputhid - ok
13:53:23.0857 0x3cc0 ================ Scan global ===============================
13:53:23.0894 0x3cc0 [ Global ] - ok
13:53:23.0895 0x3cc0 ================ Scan MBR ==================================
13:53:23.0910 0x3cc0 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
13:53:23.0920 0x3cc0 \Device\Harddisk0\DR0 - ok
13:53:23.0921 0x3cc0 ================ Scan VBR ==================================
13:53:23.0929 0x3cc0 [ BE1E7D00A0483E831190837466C878FE ] \Device\Harddisk0\DR0\Partition1
13:53:23.0932 0x3cc0 \Device\Harddisk0\DR0\Partition1 - ok
13:53:23.0943 0x3cc0 [ 363DCD7ECA9E40A9FEFA75E4BF32F9B8 ] \Device\Harddisk0\DR0\Partition2
13:53:23.0944 0x3cc0 \Device\Harddisk0\DR0\Partition2 - ok
13:53:23.0960 0x3cc0 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
13:53:23.0961 0x3cc0 \Device\Harddisk0\DR0\Partition3 - ok
13:53:23.0965 0x3cc0 [ 8A3FFB1B2270C3D4589D478AAE9A93FD ] \Device\Harddisk0\DR0\Partition4
13:53:23.0967 0x3cc0 \Device\Harddisk0\DR0\Partition4 - ok
13:53:23.0978 0x3cc0 [ 90A5BA21244305F12FF3186E88FE6BAD ] \Device\Harddisk0\DR0\Partition5
13:53:23.0980 0x3cc0 \Device\Harddisk0\DR0\Partition5 - ok
13:53:23.0984 0x3cc0 [ 6042FA99B30A3C8EF7630F8C86C1F458 ] \Device\Harddisk0\DR0\Partition6
13:53:23.0986 0x3cc0 \Device\Harddisk0\DR0\Partition6 - ok
13:53:23.0986 0x3cc0 ================ Scan generic autorun ======================
13:53:24.0239 0x3cc0 [ 890C5393F1E7775A38FA73DC554A379E, 16A01ABF2E6C070156E0A92642496F33BE9A5A923B41FD538C532A52B92E74C4 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
13:53:24.0404 0x3cc0 RTHDVCPL - ok
13:53:24.0512 0x3cc0 [ 8370179ACE961B0DAD1022C00ABCC3D7, 8DE9213DE687340C859E165EFCCD36330AF99BB825AED0F6EA7D23B2614DDF73 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
13:53:24.0559 0x3cc0 NvBackend - ok
13:53:24.0612 0x3cc0 [ 63B913AAB1244D8DED54CF0EFC8A56BD, 639830E9ECB004F09EA968EDF68C0037B5DFF7CCFF007DE5D11DEF2166707341 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
13:53:24.0622 0x3cc0 AdobeAAMUpdater-1.0 - ok
13:53:24.0683 0x3cc0 [ 1BC31F797516DC7B7446B62A849D5905, 49B35A41F1C3739800CBA2A559C2AEFE89FBC090F8305681AF3B379B639E16AA ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
13:53:24.0701 0x3cc0 avgnt - ok
13:53:24.0721 0x3cc0 [ F4BC46AD4FC1F2F3372EBF8505D00436, 94F752406AC4968A917691A2E2A09C2EBAAA24E549E3BC0F5F256A8233DF86D5 ] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
13:53:24.0724 0x3cc0 AccelerometerSysTrayApplet - ok
13:53:24.0778 0x3cc0 [ C055411BF5412576E0191A61854C3671, 1D8FA9A922C6C954D8DB48344D7DC391EBD6DD5A19F8AF639569C6AE151AF1E7 ] C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
13:53:24.0792 0x3cc0 HPMessageService - ok
13:53:24.0810 0x3cc0 [ 258E2CD2C4984A977106C9EF7CA8AF69, D8F6409D5F5782CC27D159D18E914A3DB59D8644D7017CA6F84F0CF30E95174C ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
13:53:24.0812 0x3cc0 Avira SystrayStartTrigger - ok
13:53:24.0902 0x3cc0 [ 26E79192C72F57FD787BBF6DAF21BBB1, B748BE8F6A2AA34234D5BA212DC1BA7C425642D800D5CB23445745F2B010D302 ] C:\Program Files (x86)\WEB.DE MailCheck\IE\WEB.DE_MailCheck_Broker.exe
13:53:24.0948 0x3cc0 MailCheck IE Broker - ok
13:53:25.0018 0x3cc0 OneDriveSetup - ok
13:53:25.0021 0x3cc0 OneDriveSetup - ok
13:53:25.0135 0x3cc0 [ 5710E80EAB62305C4FD4D968567448D2, BDC26F7A2313AB637FDBEEFCA705C5DF5C6F73F28F4BBB4C5FF2BB6B3F551CE6 ] C:\Program Files (x86)\Steam\steam.exe
13:53:25.0191 0x3cc0 Steam - ok
13:53:25.0330 0x3cc0 [ CD7DC286D2FDFACB965C3E10967B2199, 30FFB133E70D694BE6968E86E999C797EE7349DCC4E9ACFB338412C039374388 ] C:\Users\HP\AppData\Local\Microsoft\OneDrive\OneDrive.exe
13:53:25.0359 0x3cc0 OneDrive - ok
13:53:25.0444 0x3cc0 [ 0C2D8CBA28E12D170FC5343F03E6D20C, 73A66AEF5D89E69E6B19172328AC043542FD7628DD44A569B23625261A0B56FB ] C:\Users\HP\AppData\Roaming\Spotify\SpotifyWebHelper.exe
13:53:25.0473 0x3cc0 Spotify Web Helper - ok
13:53:25.0690 0x3cc0 [ C654101E928F9C1EC19A3C3AA78D4482, 925C51A2B1DD082EA5F7035CDAD481F6017DD943B005042703CCE1D5F9572AF2 ] C:\Users\HP\AppData\Roaming\Spotify\Spotify.exe
13:53:25.0827 0x3cc0 Spotify - ok
13:53:25.0860 0x3cc0 icq.desktop - ok
13:53:25.0862 0x3cc0 Waiting for KSN requests completion. In queue: 52
13:53:26.0875 0x3cc0 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.24.143 ), 0x41000 ( enabled : updated )
13:53:26.0876 0x3cc0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
13:53:26.0899 0x3cc0 Win FW state via NFP2: enabled ( trusted )
13:53:27.0038 0x3cc0 ============================================================
13:53:27.0038 0x3cc0 Scan finished
13:53:27.0038 0x3cc0 ============================================================
13:53:27.0048 0x39b8 Detected object count: 0
13:53:27.0048 0x39b8 Actual detected object count: 0
13:53:48.0714 0x2c24 Deinitialize success Hab ich alles gemacht. Danke für die schnelle Antwort
aso musste den windows defender kurz ausmachen er hätte sonst nicht die sachen runtergeladen |