Studnik85 | 24.02.2017 21:21 | TDSSKiller: Code:
21:11:03.0004 0x213c TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
21:11:03.0004 0x213c UEFI system
21:11:09.0064 0x213c ============================================================
21:11:09.0064 0x213c Current date / time: 2017/02/24 21:11:09.0064
21:11:09.0064 0x213c SystemInfo:
21:11:09.0064 0x213c
21:11:09.0064 0x213c OS Version: 10.0.14393 ServicePack: 0.0
21:11:09.0064 0x213c Product type: Workstation
21:11:09.0064 0x213c ComputerName: NOVI
21:11:09.0064 0x213c UserName: Friederike
21:11:09.0064 0x213c Windows directory: C:\WINDOWS
21:11:09.0064 0x213c System windows directory: C:\WINDOWS
21:11:09.0064 0x213c Running under WOW64
21:11:09.0064 0x213c Processor architecture: Intel x64
21:11:09.0064 0x213c Number of processors: 4
21:11:09.0064 0x213c Page size: 0x1000
21:11:09.0064 0x213c Boot type: Normal boot
21:11:09.0064 0x213c CodeIntegrityOptions = 0x00000001
21:11:09.0064 0x213c ============================================================
21:11:09.0823 0x213c KLMD registered as C:\WINDOWS\system32\drivers\23717029.sys
21:11:09.0823 0x213c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
21:11:10.0271 0x213c System UUID: {237AE3E3-1E9C-3C9A-DCD5-8D9F1A004AE6}
21:11:11.0158 0x213c Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:11:11.0189 0x213c ============================================================
21:11:11.0189 0x213c \Device\Harddisk0\DR0:
21:11:11.0189 0x213c GPT partitions:
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {34738206-ABC1-4DF0-8713-990710EB9609}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {7F76260C-9FBF-482E-BAC8-A0BB6407B1F8}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {6BC7B73D-8B88-4F38-BF8B-F1CA63A8ABC8}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {C18B2BB1-9D98-4B66-A2F3-65B52CC43384}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {8D09A890-AC38-44B6-84C2-02E190376404}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x354E8000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {05B9C901-3B94-4AC0-9509-2C0A497746F1}, Name: Basic data partition, StartLBA 0x35992800, BlocksNum 0x3200000
21:11:11.0205 0x213c \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {7A7F1CED-44F8-4F96-8CAD-66DB3CF1FAC2}, Name: Basic data partition, StartLBA 0x38B92800, BlocksNum 0x17F3800
21:11:11.0205 0x213c MBR partitions:
21:11:11.0205 0x213c ============================================================
21:11:11.0205 0x213c C: <-> \Device\Harddisk0\DR0\Partition5
21:11:11.0205 0x213c D: <-> \Device\Harddisk0\DR0\Partition6
21:11:11.0205 0x213c ============================================================
21:11:11.0205 0x213c Initialize success
21:11:11.0205 0x213c ============================================================
21:11:50.0053 0x2770 ============================================================
21:11:50.0053 0x2770 Scan started
21:11:50.0053 0x2770 Mode: Manual; SigCheck; TDLFS;
21:11:50.0053 0x2770 ============================================================
21:11:50.0053 0x2770 KSN ping started
21:11:50.0153 0x2770 KSN ping finished: true
21:11:51.0385 0x2770 ================ Scan system memory ========================
21:11:51.0385 0x2770 System memory - ok
21:11:51.0385 0x2770 ================ Scan services =============================
21:11:51.0538 0x2770 1394ohci - ok
21:11:51.0538 0x2770 3ware - ok
21:11:51.0570 0x2770 ACPI - ok
21:11:51.0570 0x2770 AcpiDev - ok
21:11:51.0585 0x2770 acpiex - ok
21:11:51.0601 0x2770 acpipagr - ok
21:11:51.0601 0x2770 AcpiPmi - ok
21:11:51.0601 0x2770 acpitime - ok
21:11:51.0617 0x2770 [ E5D1706CE2BFC9127655B194839BEDB5, 742AB5BF63314DF6156523039E442F6F174FF2A57C5FA31835E368D2C5485C63 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
21:11:51.0701 0x2770 ACPIVPC - ok
21:11:51.0737 0x2770 [ 8B46D5A1D3EF08232C04D0EAFB871FB2, 5306F8452EF675851CB0015F9E5C5EB750137D6D65C9CB7E47F8EF5B10A44D10 ] Adobe LM Service C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
21:11:51.0755 0x2770 Adobe LM Service - detected UnsignedFile.Multi.Generic ( 1 )
21:11:51.0871 0x2770 Detect skipped due to KSN trusted
21:11:51.0871 0x2770 Adobe LM Service - ok
21:11:51.0940 0x2770 [ 89ECFB35517F62C3802B227F288B750E, 47B329FEC98DC634A9068D6B88A331B323D99E9C21D3FE330352210841E715CA ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:11:51.0971 0x2770 AdobeFlashPlayerUpdateSvc - ok
21:11:51.0971 0x2770 ADP80XX - ok
21:11:51.0987 0x2770 AFD - ok
21:11:51.0987 0x2770 ahcache - ok
21:11:52.0002 0x2770 AJRouter - ok
21:11:52.0002 0x2770 ALG - ok
21:11:52.0002 0x2770 AmdK8 - ok
21:11:52.0018 0x2770 AmdPPM - ok
21:11:52.0018 0x2770 amdsata - ok
21:11:52.0036 0x2770 amdsbs - ok
21:11:52.0039 0x2770 amdxata - ok
21:11:52.0071 0x2770 [ C53B7AE56F2000232733765F9FFCD13F, 99FF2ABA0FC862B727A2F88E2A7E5F30BD22460EA7B53386CAD7FEF3B1BC7C4C ] ApfiltrService C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
21:11:52.0102 0x2770 ApfiltrService - ok
21:11:52.0118 0x2770 [ C4FB3512EA10AD146E3B18F5F8E7836E, 9F0CF4EB17133FB49B5B6230B7010B2BFB9B4B084A3AFA64AEF76EAC5F39710B ] ApHidMonitorService C:\Program Files\Apoint2K\HidMonitorSvc.exe
21:11:52.0140 0x2770 ApHidMonitorService - ok
21:11:52.0140 0x2770 AppID - ok
21:11:52.0140 0x2770 AppIDSvc - ok
21:11:52.0140 0x2770 Appinfo - ok
21:11:52.0171 0x2770 [ 7D811EA7A2AAA49B0446D42CBC1CD338, AFECE5E44E48F756C7EB81D95C9237552AF8A9C02CBE756E0F3D3C6524DE49AD ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
21:11:52.0187 0x2770 Apple Mobile Device Service - ok
21:11:52.0187 0x2770 applockerfltr - ok
21:11:52.0187 0x2770 AppReadiness - ok
21:11:52.0187 0x2770 AppXSvc - ok
21:11:52.0203 0x2770 arcsas - ok
21:11:52.0457 0x2770 [ E706BB5F8E5887CC3F45A66068AEB465, 98DD5961FE2E46C19F5F476D929FF33A6EBAB3724B9EC2485540E2E1CC3EC6B8 ] aswbIDSAgent C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
21:11:52.0609 0x2770 aswbIDSAgent - ok
21:11:52.0637 0x2770 [ 6F75DD4F4FD75123D25A0617EECE6FDE, F58C08B2FB0E096D707AEB24B4DFDD6039D09858D66452243D30ABD2A1DA90B3 ] aswbidsdriver C:\WINDOWS\system32\drivers\aswbidsdrivera.sys
21:11:52.0684 0x2770 aswbidsdriver - ok
21:11:52.0699 0x2770 [ 40C2E8C97ECA864335FA3F0078B6B5EF, 4269F0DB1DC2CD49E23F344C6289F9474FE74119F262645B4478EF6DD1D0A577 ] aswbidsh C:\WINDOWS\system32\drivers\aswbidsha.sys
21:11:52.0753 0x2770 aswbidsh - ok
21:11:52.0768 0x2770 [ 92CF5055E25B608B54B42A88F805ACD4, 4C33AFE136FDD1EC5E67006720A2BD9B00501135805C1A9E69550505134AF294 ] aswblog C:\WINDOWS\system32\drivers\aswbloga.sys
21:11:52.0822 0x2770 aswblog - ok
21:11:52.0837 0x2770 [ B322161C7CFC1F81B77CC87AD5D85BBA, 348198F7FA06C3729B87388A1782E982C8D4ED2AE6E424A0568AA68851585A21 ] aswbuniv C:\WINDOWS\system32\drivers\aswbuniva.sys
21:11:52.0869 0x2770 aswbuniv - ok
21:11:52.0869 0x2770 [ 1CB55C233334A3A3DACDD99647753055, BE4A23F38BD5233346DB01FA6E9387B3B3FAC3669AEF3E8DEF89F5464FFCF0D9 ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
21:11:52.0900 0x2770 aswHwid - ok
21:11:52.0919 0x2770 [ 18ABFE3C4878E2F410A23383DB850CF6, 9F348C071FCAE2595FBFD0488050393900AEFDDEAD898514AB68C9CDE7409A07 ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
21:11:52.0938 0x2770 aswKbd - ok
21:11:52.0969 0x2770 [ 7534937F601E1CF6D63BCFD3768982F0, 8A509E2B2A0A176ACE7C7302C55566171F244F49C011CF42881F79088304059B ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
21:11:53.0000 0x2770 aswMonFlt - ok
21:11:53.0019 0x2770 [ 29EF51E9D17276AFAA354AE09A543688, 9BB26119F876AA67C637B7642687555DB5B1D61683BCF30F0BF1C8C53EA17340 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
21:11:53.0054 0x2770 aswRdr - ok
21:11:53.0054 0x2770 [ EF03E68187720D35092E3D6858064170, C81B7005C50D7CFC0FED24DB42BA435F3C04898C0F7C4A58772D0439F45B5AA4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
21:11:53.0085 0x2770 aswRvrt - ok
21:11:53.0123 0x2770 [ 9A95D9A2726393975C3DD50751085B83, 37187F8BF05F7C6EA33B798F92282109DEF5C1806D5CFAB334DB1F9FD429CE49 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
21:11:53.0201 0x2770 aswSnx - ok
21:11:53.0223 0x2770 [ 11DF322991B0E54278D5EBB7C7E3BCC8, CF133C27E740DD3D1BA84DFDFC668B279832995E8CE21F029CE978CA0575425F ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
21:11:53.0285 0x2770 aswSP - ok
21:11:53.0323 0x2770 [ 69AE094434DCDB5ABE292F4EBD261C9B, CBD3D8216B8C4D4A6A6A5D5BDCC7E77EC3F4BD4428C231E2C406A0205504BE44 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
21:11:53.0339 0x2770 aswStm - ok
21:11:53.0354 0x2770 [ FF7843417D319B14F96AC4D883D5BEEA, 3283AD20E23F8C15A1C35B0431B32A9EB8B79D8AD6CAF0C5305E26C43DA10B97 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
21:11:53.0401 0x2770 aswVmm - ok
21:11:53.0401 0x2770 AsyncMac - ok
21:11:53.0423 0x2770 atapi - ok
21:11:53.0454 0x2770 [ C345E697B68BE9A45BB6CBD03F1E66F2, F50E0CC874A67A9EED3C792599ADA92C888348E7256663F7C784FBBF51D19EAC ] AtherosSvc C:\WINDOWS\system32\AdminService.exe
21:11:53.0501 0x2770 AtherosSvc - ok
21:11:53.0501 0x2770 AudioEndpointBuilder - ok
21:11:53.0518 0x2770 Audiosrv - ok
21:11:53.0539 0x2770 [ EE5315059F4F7AF1E0E2082CF914839C, 4B41A3A1E19A3E14E11BD9F8A9FE97465E01E8F9B7DE7580F689BF723C246A42 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
21:11:53.0554 0x2770 avast! Antivirus - ok
21:11:53.0601 0x2770 [ E42BCCE03A0A4CECC0C5A86600DF5070, 0DB3C32CA8373CE744C90DD3B37D91BE706A2D4AE5041731D73B4EAC076228EF ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
21:11:53.0655 0x2770 AVControlCenter - ok
21:11:53.0655 0x2770 [ 2CBA09A7983B1D39531B768BCED08C20, B40968DFE1A648CCB9260033E1EA57B5D496274A335B000354156B0DB740EDE0 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
21:11:53.0702 0x2770 avkmgr - ok
21:11:53.0724 0x2770 [ D50D54178CA7BF63BD60ABEC8E7772CC, 19EFE0808C2660A22DD69158FEC30F8CB83167D832C3EBE12C99261C6FB79ADF ] avusbflt C:\WINDOWS\system32\Drivers\avusbflt.sys
21:11:53.0755 0x2770 avusbflt - ok
21:11:53.0755 0x2770 AxInstSV - ok
21:11:53.0771 0x2770 b06bdrv - ok
21:11:53.0771 0x2770 BasicDisplay - ok
21:11:53.0786 0x2770 BasicRender - ok
21:11:53.0786 0x2770 bcmfn - ok
21:11:53.0786 0x2770 bcmfn2 - ok
21:11:53.0802 0x2770 BDESVC - ok
21:11:53.0802 0x2770 Beep - ok
21:11:53.0802 0x2770 BFE - ok
21:11:53.0819 0x2770 BITS - ok
21:11:53.0839 0x2770 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
21:11:53.0855 0x2770 Bonjour Service - ok
21:11:53.0870 0x2770 bowser - ok
21:11:53.0870 0x2770 BrokerInfrastructure - ok
21:11:53.0923 0x2770 Browser - ok
21:11:53.0955 0x2770 [ 7170961E98A4F47175972D7F096AA7C5, 8D060277A7C1371DBA1CAFBFB23632664FFFFD3FA2B512F811A25C1871E5CE7D ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
21:11:54.0024 0x2770 BtFilter - ok
21:11:54.0039 0x2770 BthAvrcpTg - ok
21:11:54.0071 0x2770 BthEnum - ok
21:11:54.0071 0x2770 BthHFEnum - ok
21:11:54.0086 0x2770 bthhfhid - ok
21:11:54.0102 0x2770 BthHFSrv - ok
21:11:54.0102 0x2770 BthLEEnum - ok
21:11:54.0122 0x2770 BTHMODEM - ok
21:11:54.0124 0x2770 BthPan - ok
21:11:54.0124 0x2770 BTHPORT - ok
21:11:54.0140 0x2770 bthserv - ok
21:11:54.0155 0x2770 BTHUSB - ok
21:11:54.0171 0x2770 buttonconverter - ok
21:11:54.0171 0x2770 CapImg - ok
21:11:54.0224 0x2770 [ 01E4118E5850159F988EB4C54069B4CC, 980773022D70440FBEF5D8B747C5D40E6496F1CBCD886DE9F441E171507A48C5 ] CCSDK C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
21:11:54.0287 0x2770 CCSDK - ok
21:11:54.0287 0x2770 cdfs - ok
21:11:54.0303 0x2770 CDPSvc - ok
21:11:54.0303 0x2770 CDPUserSvc - ok
21:11:54.0322 0x2770 cdrom - ok
21:11:54.0324 0x2770 CertPropSvc - ok
21:11:54.0324 0x2770 cht4iscsi - ok
21:11:54.0324 0x2770 cht4vbd - ok
21:11:54.0340 0x2770 circlass - ok
21:11:54.0356 0x2770 CLFS - ok
21:11:54.0356 0x2770 ClipSVC - ok
21:11:54.0356 0x2770 clreg - ok
21:11:54.0371 0x2770 CmBatt - ok
21:11:54.0387 0x2770 CNG - ok
21:11:54.0387 0x2770 cnghwassist - ok
21:11:54.0455 0x2770 CompositeBus - ok
21:11:54.0455 0x2770 COMSysApp - ok
21:11:54.0471 0x2770 condrv - ok
21:11:54.0487 0x2770 CoreMessagingRegistrar - ok
21:11:54.0540 0x2770 [ 75C568E62A2BD89A869C34119A66D19B, 2954F25E511947728FE50AA76ACECE0B6952D1984301027F499E2F3DAAEB65D3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
21:11:54.0586 0x2770 cphs - ok
21:11:54.0602 0x2770 CryptSvc - ok
21:11:54.0602 0x2770 dam - ok
21:11:54.0620 0x2770 DcomLaunch - ok
21:11:54.0624 0x2770 DcpSvc - ok
21:11:54.0624 0x2770 defragsvc - ok
21:11:54.0624 0x2770 DeviceAssociationService - ok
21:11:54.0640 0x2770 DeviceInstall - ok
21:11:54.0640 0x2770 DevQueryBroker - ok
21:11:54.0656 0x2770 Dfsc - ok
21:11:54.0687 0x2770 [ D722BC26F7431A4DA9A183E56CA9FEE3, 86AB717431CB3DDAF6213A1CFE8DF3684080BAAD569731A90AA1AA198E97506D ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
21:11:54.0741 0x2770 dg_ssudbus - ok
21:11:54.0756 0x2770 Dhcp - ok
21:11:54.0772 0x2770 diagnosticshub.standardcollector.service - ok
21:11:54.0787 0x2770 DiagTrack - ok
21:11:54.0787 0x2770 disk - ok
21:11:54.0803 0x2770 DmEnrollmentSvc - ok
21:11:54.0803 0x2770 dmvsc - ok
21:11:54.0803 0x2770 dmwappushservice - ok
21:11:54.0822 0x2770 Dnscache - ok
21:11:54.0825 0x2770 dot3svc - ok
21:11:54.0841 0x2770 [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
21:11:54.0888 0x2770 dot4 - ok
21:11:54.0888 0x2770 [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
21:11:54.0925 0x2770 Dot4Print - ok
21:11:54.0941 0x2770 [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
21:11:54.0972 0x2770 dot4usb - ok
21:11:54.0988 0x2770 DPS - ok
21:11:54.0988 0x2770 drmkaud - ok
21:11:55.0003 0x2770 DsmSvc - ok
21:11:55.0003 0x2770 DsSvc - ok
21:11:55.0025 0x2770 DXGKrnl - ok
21:11:55.0025 0x2770 EapHost - ok
21:11:55.0041 0x2770 ebdrv - ok
21:11:55.0041 0x2770 EFS - ok
21:11:55.0041 0x2770 EhStorClass - ok
21:11:55.0056 0x2770 EhStorTcgDrv - ok
21:11:55.0056 0x2770 embeddedmode - ok
21:11:55.0072 0x2770 EntAppSvc - ok
21:11:55.0088 0x2770 [ 859DF918E0B44E764D394E940C4717AD, 818E6C4D08FCDCA9B2B90EDE68E093359A03E20F368B4484618FC356700DB125 ] EpsonScanSvc C:\WINDOWS\system32\EscSvc64.exe
21:11:55.0103 0x2770 EpsonScanSvc - ok
21:11:55.0103 0x2770 ErrDev - ok
21:11:55.0121 0x2770 EventSystem - ok
21:11:55.0125 0x2770 exfat - ok
21:11:55.0125 0x2770 [ F003B437645009FDA04AB266EAD240EB, 5E72BC2A88584CCA1CDC3BC55F8E73419605EFFED7BF266230F9CDA7014C4C6B ] Fastboot C:\WINDOWS\system32\DRIVERS\Fastboot.sys
21:11:55.0157 0x2770 Fastboot - ok
21:11:55.0172 0x2770 [ 56CA8297F6F97DF3FF2898D5A738E426, 59562702D06B4E2BF634D91B4FE5AC9D6D084C77C6D5A724A41AA8BE63A5E3D4 ] FastbootService C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe
21:11:55.0188 0x2770 FastbootService - ok
21:11:55.0188 0x2770 fastfat - ok
21:11:55.0188 0x2770 Fax - ok
21:11:55.0204 0x2770 fdc - ok
21:11:55.0204 0x2770 fdPHost - ok
21:11:55.0204 0x2770 FDResPub - ok
21:11:55.0225 0x2770 fhsvc - ok
21:11:55.0225 0x2770 FileCrypt - ok
21:11:55.0225 0x2770 FileInfo - ok
21:11:55.0241 0x2770 Filetrace - ok
21:11:55.0241 0x2770 flpydisk - ok
21:11:55.0241 0x2770 FltMgr - ok
21:11:55.0256 0x2770 FontCache - ok
21:11:55.0272 0x2770 FontCache3.0.0.0 - ok
21:11:55.0272 0x2770 FrameServer - ok
21:11:55.0272 0x2770 FsDepends - ok
21:11:55.0288 0x2770 Fs_Rec - ok
21:11:55.0288 0x2770 fvevol - ok
21:11:55.0288 0x2770 GDPkIcpt - ok
21:11:55.0303 0x2770 gencounter - ok
21:11:55.0303 0x2770 genericusbfn - ok
21:11:55.0303 0x2770 GPIOClx0101 - ok
21:11:55.0319 0x2770 gpsvc - ok
21:11:55.0324 0x2770 GpuEnergyDrv - ok
21:11:55.0341 0x2770 [ 2D8BBF6C7241AAD9EDE7708EBB7B43A4, 51AF8150C6CF738AF14F502E6BDAD1035773DD45980770E06393814B75259EF8 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:11:55.0372 0x2770 gupdate - ok
21:11:55.0388 0x2770 [ 2D8BBF6C7241AAD9EDE7708EBB7B43A4, 51AF8150C6CF738AF14F502E6BDAD1035773DD45980770E06393814B75259EF8 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:11:55.0426 0x2770 gupdatem - ok
21:11:55.0426 0x2770 HDAudBus - ok
21:11:55.0442 0x2770 HidBatt - ok
21:11:55.0442 0x2770 HidBth - ok
21:11:55.0457 0x2770 hidi2c - ok
21:11:55.0457 0x2770 hidinterrupt - ok
21:11:55.0473 0x2770 HidIr - ok
21:11:55.0473 0x2770 hidserv - ok
21:11:55.0489 0x2770 HidUsb - ok
21:11:55.0504 0x2770 HomeGroupListener - ok
21:11:55.0526 0x2770 HomeGroupProvider - ok
21:11:55.0589 0x2770 [ 0D0213498683414DDE29B1686A4C08D5, E9B64406C04B6E55CBD17E7C47B023CEA11FEE07B791154129D6F4F29D15AB7F ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
21:11:55.0626 0x2770 hpqcxs08 - ok
21:11:55.0642 0x2770 [ EE281DD6843F3F697C1AD7933EEB1E9B, 1ECE31C2150B92DDC1DCBBCECFE3E979F2C60B3F106280E3167BEC0269BF7A41 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
21:11:55.0673 0x2770 hpqddsvc - ok
21:11:55.0673 0x2770 HpSAMD - ok
21:11:55.0726 0x2770 [ C995EA1C6915D897E06D41AF95B9312C, 65DE6599F1C735BBDCCE4728F7F98167BCA0BF1B8D4218BBF7546B025C9A38BD ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
21:11:55.0773 0x2770 HPSLPSVC - detected UnsignedFile.Multi.Generic ( 1 )
21:11:57.0828 0x2770 Detect skipped due to KSN trusted
21:11:57.0828 0x2770 HPSLPSVC - ok
21:11:57.0828 0x2770 [ EC80F3ECC5F8543E22BBCB037D837CA9, 23A4AE80A6C317CE77BD9D352CD9CED8649E3AD98A7C0A2044138BB20B46F398 ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
21:11:57.0875 0x2770 HPSupportSolutionsFrameworkService - ok
21:11:57.0890 0x2770 HTTP - ok
21:11:57.0923 0x2770 HvHost - ok
21:11:57.0928 0x2770 hvservice - ok
21:11:57.0928 0x2770 hwpolicy - ok
21:11:57.0943 0x2770 hyperkbd - ok
21:11:57.0959 0x2770 i8042prt - ok
21:11:57.0959 0x2770 iagpio - ok
21:11:57.0975 0x2770 iai2c - ok
21:11:57.0990 0x2770 iaLPSS2i_GPIO2 - ok
21:11:57.0990 0x2770 iaLPSS2i_I2C - ok
21:11:57.0990 0x2770 iaLPSSi_GPIO - ok
21:11:58.0006 0x2770 iaLPSSi_I2C - ok
21:11:58.0106 0x2770 [ D815CB48C5B33543381D4E14F7BCFD98, 8C2129F58B431B773D01ED1492D644C1CBD82638AE9ADCA40F7CB801108DB490 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
21:11:58.0191 0x2770 iaStorA - ok
21:11:58.0206 0x2770 iaStorAV - ok
21:11:58.0244 0x2770 [ 02E491B7F25529026836EB36DAC7045C, 9A4FCD7A22B4EF7B3A71F4A03757F4F9B3B0EC5DB8FEC2AD7A71DDC3C3AE3D70 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:11:58.0259 0x2770 IAStorDataMgrSvc - ok
21:11:58.0275 0x2770 iaStorV - ok
21:11:58.0275 0x2770 ibbus - ok
21:11:58.0306 0x2770 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
21:11:58.0344 0x2770 ICCS - ok
21:11:58.0344 0x2770 icssvc - ok
21:11:58.0676 0x2770 [ 658287D76E8D77C08AE98989F99B8948, DBA67B5772E1FE43ABDB3908A1CF86D76F2774BABC20359D2511F06A2A8CAC57 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
21:11:58.0876 0x2770 igfx - ok
21:11:58.0907 0x2770 [ A105AD05696D55E6E4F078ED850F6305, 8121A4226D2941EDD4809D516E7684E5C7164ADCF5AA4C8BC6620110625D3E8D ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
21:11:58.0929 0x2770 igfxCUIService2.0.0.0 - ok
21:11:58.0945 0x2770 IKEEXT - ok
21:11:58.0945 0x2770 IndirectKmd - ok
21:11:59.0108 0x2770 [ 73C483AD71F15BD66C4E5A9DB7DE018A, 16AA7B3CC224659E72E779E2D9C8028BFBB346FBF0CCE26D6351FD5349F0249A ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
21:11:59.0346 0x2770 IntcAzAudAddService - ok
21:11:59.0362 0x2770 [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
21:11:59.0393 0x2770 IntcDAud - ok
21:11:59.0447 0x2770 [ 9A6DEB5DDF7E29728F6FEA5092AFA3F2, 21C47A0490EBA302657EF30C560E4AF83777685FFE126DCCAC310163C47401D1 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
21:11:59.0478 0x2770 Intel(R) Capability Licensing Service TCP IP Interface - ok
21:11:59.0509 0x2770 intelide - ok
21:11:59.0528 0x2770 intelpep - ok
21:11:59.0531 0x2770 intelppm - ok
21:11:59.0531 0x2770 iorate - ok
21:11:59.0547 0x2770 IpFilterDriver - ok
21:11:59.0547 0x2770 iphlpsvc - ok
21:11:59.0562 0x2770 IPMIDRV - ok
21:11:59.0562 0x2770 IPNAT - ok
21:11:59.0594 0x2770 [ 97C9EBB84A761D48DC17E0E6B913C164, D195A8410E1FEED1A0EE9C5F5AF6F5FC861284765A38D460D496CE1048501905 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
21:11:59.0663 0x2770 iPod Service - ok
21:11:59.0663 0x2770 irda - ok
21:11:59.0678 0x2770 IRENUM - ok
21:11:59.0694 0x2770 irmon - ok
21:11:59.0694 0x2770 isapnp - ok
21:11:59.0710 0x2770 iScsiPrt - ok
21:11:59.0710 0x2770 [ F1D3A377ED9BA1CA449824C41CAF104C, EA0E90D5D827664CFDB644753C6DC134C3F8F852F24175EC8328A9FA925B25BF ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
21:11:59.0732 0x2770 iwdbus - ok
21:11:59.0763 0x2770 [ CA295D3E5032DDF8A3CBD1A256E646FA, 03879D331AE446FCF25D0193805A5E0C17764439B5B8FE1D684DDB96B1A358C9 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
21:11:59.0794 0x2770 jhi_service - ok
21:11:59.0810 0x2770 kbdclass - ok
21:11:59.0829 0x2770 kbdhid - ok
21:11:59.0832 0x2770 kdnic - ok
21:11:59.0832 0x2770 KeyIso - ok
21:11:59.0863 0x2770 [ ED6314D9982A96A73C95BD634C7FAE66, 034BD8BAE6CC854750DCCDDE59586E0914D87D20448915587CFD2B5537069CAC ] KMDFVirtualKbd C:\WINDOWS\System32\drivers\KMDFVirtualKbd.sys
21:11:59.0910 0x2770 KMDFVirtualKbd - ok
21:11:59.0963 0x2770 [ 23E3E79A244E63F416A89640359C78B3, 721EBE47CF5617762DA16E0450B5B2DA857F9B04EA3D167770E2A8CA9D31C77C ] KMDFVirtualMouse C:\WINDOWS\System32\drivers\KMDFVirtualMouse.sys
21:12:00.0010 0x2770 KMDFVirtualMouse - ok
21:12:00.0032 0x2770 KSecDD - ok
21:12:00.0032 0x2770 KSecPkg - ok
21:12:00.0048 0x2770 ksthunk - ok
21:12:00.0064 0x2770 KtmRm - ok
21:12:00.0064 0x2770 LanmanServer - ok
21:12:00.0079 0x2770 LanmanWorkstation - ok
21:12:00.0133 0x2770 [ 7B3B37F064E88A51F0AAC9E00945B9EC, 862C525573149BF25374CFEE589DA5CA87351BCF4200723558B836F93C16BD5E ] Lenovo EasyPlus Hotspot C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
21:12:00.0180 0x2770 Lenovo EasyPlus Hotspot - ok
21:12:00.0311 0x2770 [ B3E1F6B325BC2DC5DDB701406255E9A4, CEA23B92C1842373D2DF795AD562AFCD55640EE9CBAD27F70868ACF751ED3E2B ] Lenovo OKO Service C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe
21:12:00.0380 0x2770 Lenovo OKO Service - ok
21:12:00.0549 0x2770 [ 205D1A6D106ACFDB71A1BDEC0C924173, 245E4FC18B20A0D15428D7A0155918180F902EC0E2875B3647E5B3059966E7BE ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
21:12:00.0596 0x2770 Lenovo Settings Service - ok
21:12:00.0611 0x2770 [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
21:12:00.0649 0x2770 Lenovo System Agent Service - ok
21:12:00.0665 0x2770 [ D0A48037EB2B4BD92FC507B76FD6F515, 0F821854BB936D315D7DD9BD2FC85E81E9399D3D5B60668D0C300FDA1BEF1979 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\cammute.exe
21:12:00.0696 0x2770 LENOVO.CAMMUTE - ok
21:12:00.0731 0x2770 [ 4209017379796795064FDD1075A2FC97, 4F1809EFC4E6CB07A13B5442D4B62828D54FE295CC8B188F7D8942AF9548E6AF ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
21:12:00.0749 0x2770 LENOVO.TPKNRSVC - ok
21:12:00.0796 0x2770 [ 0C7F3BDCC1E773A3EE37D67898987BE9, DF6EDE1AC7A2A434CD7E32B35A94BE18C15E501F7513A51149901002C6D4F6F3 ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
21:12:00.0834 0x2770 LENOVO.TVTVCAM - ok
21:12:00.0849 0x2770 [ FB452131A790111332041B88039F98B4, 17E2E235696266037FA8B31B143600D0E79CA60B04C7A48352B36E1C18561E0E ] LenovoPAWDService C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe
21:12:00.0865 0x2770 LenovoPAWDService - ok
21:12:00.0881 0x2770 [ 0A3FB35B6442675D8F76BF99A14F0CC1, 1739FAD457B3A4C0BE5CEB9C3CDCD9D77249D58E78D51943ABFF10322EB3CC08 ] LenovoSetSvr C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe
21:12:00.0912 0x2770 LenovoSetSvr - ok
21:12:00.0934 0x2770 [ 6F8675A27BB892572DC8D9942D2D22C7, 526F553756293EC749FD5F5AB109DDAAD61A56A83B80A0FE6CE0F27A5B8B1444 ] LenovoWiFiHotspotSvr C:\Windows\System32\LenovoWiFiHotspotSvr.exe
21:12:00.0965 0x2770 LenovoWiFiHotspotSvr - ok
21:12:00.0965 0x2770 lfsvc - ok
21:12:00.0981 0x2770 LicenseManager - ok
21:12:00.0981 0x2770 lltdio - ok
21:12:00.0996 0x2770 lltdsvc - ok
21:12:00.0996 0x2770 lmhosts - ok
21:12:01.0012 0x2770 [ ED5C8B920F2ACF11A26586B2FA66BF3D, D6F014F0CCAB7EDA38A8CC58F439D2A8CD89195AE84F82E25475CE11CB3883C9 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
21:12:01.0034 0x2770 LMS - ok
21:12:01.0034 0x2770 LSI_SAS - ok
21:12:01.0034 0x2770 LSI_SAS2i - ok
21:12:01.0050 0x2770 LSI_SAS3i - ok
21:12:01.0050 0x2770 LSI_SSS - ok
21:12:01.0050 0x2770 LSM - ok
21:12:01.0050 0x2770 luafv - ok
21:12:01.0066 0x2770 MapsBroker - ok
21:12:01.0097 0x2770 [ 06F7CA8FCF54DED400A1E9A9222DB24F, 40FECDE3494578FFB31C6457911529C093B6BD76FF257C858A132D0E1BB4CC83 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.500\McCHSvc.exe
21:12:01.0113 0x2770 McComponentHostService - ok
21:12:01.0113 0x2770 megasas - ok
21:12:01.0113 0x2770 megasas2i - ok
21:12:01.0113 0x2770 megasr - ok
21:12:01.0134 0x2770 [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C63D53F379A75EF ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
21:12:01.0150 0x2770 MEIx64 - ok
21:12:01.0166 0x2770 MessagingService - ok
21:12:01.0181 0x2770 [ D1780DF54D9DB0DF6801F8657D5F0A14, 4B695A7165BB11521E602D93E73770D4181E170AA010CE5F91F95031BF4865C9 ] mfeelamk C:\WINDOWS\system32\drivers\mfeelamk.sys
21:12:01.0212 0x2770 mfeelamk - ok
21:12:01.0212 0x2770 mlx4_bus - ok
21:12:01.0212 0x2770 MMCSS - ok
21:12:01.0212 0x2770 Modem - ok
21:12:01.0233 0x2770 monitor - ok
21:12:01.0234 0x2770 mouclass - ok
21:12:01.0234 0x2770 mouhid - ok
21:12:01.0234 0x2770 mountmgr - ok
21:12:01.0250 0x2770 [ ADF79A49E942C91D1FC9863CBFDD6B58, C2B2A792C4717133DCAE6297EE3F5D985B11D3C1E68A8DC23985AC6B78ACDE98 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:12:01.0265 0x2770 MozillaMaintenance - ok
21:12:01.0265 0x2770 mpsdrv - ok
21:12:01.0281 0x2770 MpsSvc - ok
21:12:01.0281 0x2770 MRxDAV - ok
21:12:01.0297 0x2770 mrxsmb - ok
21:12:01.0297 0x2770 mrxsmb10 - ok
21:12:01.0297 0x2770 mrxsmb20 - ok
21:12:01.0297 0x2770 MsBridge - ok
21:12:01.0312 0x2770 MSDTC - ok
21:12:01.0312 0x2770 Msfs - ok
21:12:01.0312 0x2770 msgpiowin32 - ok
21:12:01.0329 0x2770 mshidkmdf - ok
21:12:01.0333 0x2770 mshidumdf - ok
21:12:01.0335 0x2770 msisadrv - ok
21:12:01.0335 0x2770 MSiSCSI - ok
21:12:01.0335 0x2770 msiserver - ok
21:12:01.0350 0x2770 MSKSSRV - ok
21:12:01.0350 0x2770 MsLldp - ok
21:12:01.0350 0x2770 MSPCLOCK - ok
21:12:01.0350 0x2770 MSPQM - ok
21:12:01.0366 0x2770 MsRPC - ok
21:12:01.0366 0x2770 mssmbios - ok
21:12:01.0366 0x2770 MSTEE - ok
21:12:01.0381 0x2770 MTConfig - ok
21:12:01.0381 0x2770 Mup - ok
21:12:01.0381 0x2770 mvumis - ok
21:12:01.0450 0x2770 [ A25648600888D412CCD2637071B08A04, 78FFF7F7F877EC5E4DC84C597E7639EBBCA9AE9F5B2F8C328022CD3E05E5F838 ] MyEpson Portal Service C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe
21:12:01.0497 0x2770 MyEpson Portal Service - ok
21:12:01.0513 0x2770 NativeWifiP - ok
21:12:01.0513 0x2770 NcaSvc - ok
21:12:01.0531 0x2770 NcbService - ok
21:12:01.0535 0x2770 NcdAutoSetup - ok
21:12:01.0535 0x2770 ndfltr - ok
21:12:01.0535 0x2770 NDIS - ok
21:12:01.0551 0x2770 NdisCap - ok
21:12:01.0551 0x2770 NdisImPlatform - ok
21:12:01.0566 0x2770 NdisTapi - ok
21:12:01.0566 0x2770 Ndisuio - ok
21:12:01.0582 0x2770 NdisVirtualBus - ok
21:12:01.0582 0x2770 NdisWan - ok
21:12:01.0582 0x2770 ndiswanlegacy - ok
21:12:01.0598 0x2770 ndproxy - ok
21:12:01.0598 0x2770 Ndu - ok
21:12:01.0613 0x2770 [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
21:12:01.0635 0x2770 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
21:12:03.0720 0x2770 Detect skipped due to KSN trusted
21:12:03.0720 0x2770 Net Driver HPZ12 - ok
21:12:03.0743 0x2770 NetAdapterCx - ok
21:12:03.0743 0x2770 NetBIOS - ok
21:12:03.0774 0x2770 NetBT - ok
21:12:03.0774 0x2770 Netlogon - ok
21:12:03.0789 0x2770 Netman - ok
21:12:03.0789 0x2770 netprofm - ok
21:12:03.0805 0x2770 NetSetupSvc - ok
21:12:03.0821 0x2770 NetTcpPortSharing - ok
21:12:03.0821 0x2770 NgcCtnrSvc - ok
21:12:03.0840 0x2770 NgcSvc - ok
21:12:03.0843 0x2770 NlaSvc - ok
21:12:03.0843 0x2770 Npfs - ok
21:12:03.0858 0x2770 npsvctrig - ok
21:12:03.0858 0x2770 nsi - ok
21:12:03.0890 0x2770 nsiproxy - ok
21:12:03.0890 0x2770 NTFS - ok
21:12:03.0905 0x2770 Null - ok
21:12:03.0905 0x2770 nvraid - ok
21:12:03.0921 0x2770 nvstor - ok
21:12:03.0958 0x2770 [ 30FF10C903D88749E0D1B12B53F78A41, 053CA1BF940C9B6D3BCF567B0C84DA711EA561A9B1916A0F8AF38275DACC09A0 ] OKOControlSvc C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe
21:12:04.0005 0x2770 OKOControlSvc - ok
21:12:04.0021 0x2770 OneSyncSvc - ok
21:12:04.0042 0x2770 p2pimsvc - ok
21:12:04.0042 0x2770 p2psvc - ok
21:12:04.0058 0x2770 Parport - ok
21:12:04.0074 0x2770 partmgr - ok
21:12:04.0089 0x2770 PcaSvc - ok
21:12:04.0089 0x2770 pci - ok
21:12:04.0105 0x2770 pciide - ok
21:12:04.0121 0x2770 pcmcia - ok
21:12:04.0140 0x2770 pcw - ok
21:12:04.0142 0x2770 pdc - ok
21:12:04.0158 0x2770 PEAUTH - ok
21:12:04.0174 0x2770 percsas2i - ok
21:12:04.0174 0x2770 percsas3i - ok
21:12:04.0221 0x2770 PerfHost - ok
21:12:04.0259 0x2770 [ 00D33CFD7F72083A69C91692D5C48E95, D38EA410FF00F60C73975B32AFC94A10550D2C1288B2999954658C42FBB2687D ] PGService C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe
21:12:04.0274 0x2770 PGService - ok
21:12:04.0321 0x2770 [ 114F33B738540F264BE80D447A98A262, 7B98155D4B377C32B617936348862DF7687EACB0AFD2C27E340B7F8EA470E209 ] PG_Service_Launcher C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe
21:12:04.0359 0x2770 PG_Service_Launcher - ok
21:12:04.0375 0x2770 [ B0F327821DDD9C35F9C283C25ECCE71D, 4DB4F09D71EE61CBA0E5B1238F138E00A40CED5067DFB0C017251A2137D22F41 ] PhoneCompanionPusher C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
21:12:04.0390 0x2770 PhoneCompanionPusher - ok
21:12:04.0406 0x2770 [ 21D8DBA76BFCE12AC7DEDEE8DFADBE02, B9A16EB8AF430A31FE0A2E82142C6F8A14944E7B6F3CD3FB2ECF53C8F5D1E0CD ] PhoneCompanionVap C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe
21:12:04.0421 0x2770 PhoneCompanionVap - ok
21:12:04.0421 0x2770 PhoneSvc - ok
21:12:04.0443 0x2770 PimIndexMaintenanceSvc - ok
21:12:04.0443 0x2770 pla - ok
21:12:04.0443 0x2770 PlugPlay - ok
21:12:04.0474 0x2770 [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
21:12:04.0490 0x2770 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
21:12:06.0567 0x2770 Detect skipped due to KSN trusted
21:12:06.0567 0x2770 Pml Driver HPZ12 - ok
21:12:06.0583 0x2770 PNRPAutoReg - ok
21:12:06.0583 0x2770 PNRPsvc - ok
21:12:06.0598 0x2770 PolicyAgent - ok
21:12:06.0614 0x2770 Power - ok
21:12:06.0614 0x2770 PptpMiniport - ok
21:12:06.0768 0x2770 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
21:12:06.0884 0x2770 PrintNotify - ok
21:12:06.0884 0x2770 Processor - ok
21:12:06.0900 0x2770 ProfSvc - ok
21:12:06.0900 0x2770 Psched - ok
21:12:06.0900 0x2770 Qcamain10x64 - ok
21:12:06.0915 0x2770 QWAVE - ok
21:12:06.0915 0x2770 QWAVEdrv - ok
21:12:06.0915 0x2770 RasAcd - ok
21:12:06.0931 0x2770 RasAgileVpn - ok
21:12:06.0931 0x2770 RasAuto - ok
21:12:06.0948 0x2770 Rasl2tp - ok
21:12:06.0953 0x2770 RasMan - ok
21:12:06.0953 0x2770 RasPppoe - ok
21:12:06.0953 0x2770 RasSstp - ok
21:12:06.0953 0x2770 rdbss - ok
21:12:06.0968 0x2770 rdpbus - ok
21:12:06.0968 0x2770 RDPDR - ok
21:12:06.0984 0x2770 RdpVideoMiniport - ok
21:12:07.0000 0x2770 rdyboost - ok
21:12:07.0000 0x2770 ReFSv1 - ok
21:12:07.0015 0x2770 RemoteAccess - ok
21:12:07.0015 0x2770 RemoteRegistry - ok
21:12:07.0015 0x2770 RetailDemo - ok
21:12:07.0031 0x2770 RFCOMM - ok
21:12:07.0053 0x2770 [ FBA61BB4C484A01A655AFB18FF86C417, D53B2110CB09D0A909C4E330C468351BFE076BB056CCDDCB8ADA2FB91E96352E ] RichVideo64 C:\Program Files\CyberLink\Shared files\RichVideo64.exe
21:12:07.0069 0x2770 RichVideo64 - ok
21:12:07.0069 0x2770 RmSvc - ok
21:12:07.0085 0x2770 RpcEptMapper - ok
21:12:07.0085 0x2770 RpcLocator - ok
21:12:07.0100 0x2770 RpcSs - ok
21:12:07.0100 0x2770 rspndr - ok
21:12:07.0152 0x2770 [ CF0F908B50CD8FB12B7B69DA56A44681, F35FFF3F6BFBC3B2452C5E0A63D94575236EEB49665BE0FBBB26ADAF189F777E ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
21:12:07.0200 0x2770 rt640x64 - ok
21:12:07.0232 0x2770 [ 341FC9543E601A9A7503267061FEF87B, AA8EA48BDE8044ECC5708D646BB392165F77DBA0D67836811B05AA3B53C15A84 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
21:12:07.0269 0x2770 RTSUER - ok
21:12:07.0401 0x2770 [ 14F73F34745B8EEF780181910B3BF41F, 7A7073334C84E7488656058202772E3861A5A81B14D4CF0899F712C8C3F26A95 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
21:12:07.0469 0x2770 rtsuvc - ok
21:12:07.0469 0x2770 s3cap - ok
21:12:07.0485 0x2770 SamSs - ok
21:12:07.0501 0x2770 sbp2port - ok
21:12:07.0501 0x2770 SCardSvr - ok
21:12:07.0501 0x2770 ScDeviceEnum - ok
21:12:07.0516 0x2770 scfilter - ok
21:12:07.0516 0x2770 Schedule - ok
21:12:07.0516 0x2770 scmbus - ok
21:12:07.0516 0x2770 scmdisk0101 - ok
21:12:07.0532 0x2770 SCPolicySvc - ok
21:12:07.0532 0x2770 sdbus - ok
21:12:07.0532 0x2770 SDRSVC - ok
21:12:07.0532 0x2770 sdstor - ok
21:12:07.0550 0x2770 seclogon - ok
21:12:07.0554 0x2770 SENS - ok
21:12:07.0554 0x2770 SensorDataService - ok
21:12:07.0554 0x2770 SensorService - ok
21:12:07.0554 0x2770 SensrSvc - ok
21:12:07.0570 0x2770 SerCx - ok
21:12:07.0570 0x2770 SerCx2 - ok
21:12:07.0585 0x2770 Serenum - ok
21:12:07.0585 0x2770 Serial - ok
21:12:07.0585 0x2770 sermouse - ok
21:12:07.0601 0x2770 SessionEnv - ok
21:12:07.0601 0x2770 sfloppy - ok
21:12:07.0616 0x2770 SharedAccess - ok
21:12:07.0616 0x2770 ShellHWDetection - ok
21:12:07.0616 0x2770 shpamsvc - ok
21:12:07.0632 0x2770 SiSRaid2 - ok
21:12:07.0632 0x2770 SiSRaid4 - ok
21:12:07.0654 0x2770 [ B72B80E6FF423C5011E745CB76DA9A08, 18A6B9D46E91AD4D463EB5CB832702392D2E162577F90C328B515FCE69FABD15 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
21:12:07.0701 0x2770 SkypeUpdate - ok
21:12:07.0701 0x2770 smphost - ok
21:12:07.0716 0x2770 SmsRouter - ok
21:12:07.0732 0x2770 SNMPTRAP - ok
21:12:07.0732 0x2770 spaceport - ok
21:12:07.0732 0x2770 SpbCx - ok
21:12:07.0749 0x2770 Spooler - ok
21:12:07.0754 0x2770 sppsvc - ok
21:12:07.0754 0x2770 srv - ok
21:12:07.0754 0x2770 srv2 - ok
21:12:07.0770 0x2770 srvnet - ok
21:12:07.0770 0x2770 SSDPSRV - ok
21:12:07.0770 0x2770 SstpSvc - ok
21:12:07.0786 0x2770 [ 36C3697CA09B23C77BDF95A6B0B57310, DAEF9CFBDE444A80FB41DA0BC5C3C4E1E4B535497A5EDA43EC8768A6EC42E4EA ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
21:12:07.0817 0x2770 ssudmdm - ok
21:12:07.0817 0x2770 StateRepository - ok
21:12:07.0817 0x2770 stexstor - ok
21:12:07.0832 0x2770 stisvc - ok
21:12:07.0854 0x2770 storahci - ok
21:12:07.0854 0x2770 storflt - ok
21:12:07.0854 0x2770 stornvme - ok
21:12:07.0870 0x2770 storqosflt - ok
21:12:07.0870 0x2770 StorSvc - ok
21:12:07.0870 0x2770 storufs - ok
21:12:07.0885 0x2770 storvsc - ok
21:12:07.0885 0x2770 svsvc - ok
21:12:07.0885 0x2770 swenum - ok
21:12:07.0901 0x2770 swprv - ok
21:12:07.0901 0x2770 Synth3dVsc - ok
21:12:07.0917 0x2770 SysMain - ok
21:12:07.0932 0x2770 SystemEventsBroker - ok
21:12:07.0932 0x2770 TabletInputService - ok
21:12:07.0949 0x2770 TapiSrv - ok
21:12:07.0954 0x2770 Tcpip - ok
21:12:07.0954 0x2770 Tcpip6 - ok
21:12:07.0954 0x2770 tcpipreg - ok
21:12:07.0970 0x2770 tdx - ok
21:12:07.0970 0x2770 terminpt - ok
21:12:07.0986 0x2770 TermService - ok
21:12:07.0986 0x2770 Themes - ok
21:12:07.0986 0x2770 TieringEngineService - ok
21:12:08.0001 0x2770 tiledatamodelsvc - ok
21:12:08.0001 0x2770 TimeBrokerSvc - ok
21:12:08.0017 0x2770 TPM - ok
21:12:08.0017 0x2770 TrkWks - ok
21:12:08.0017 0x2770 TrustedInstaller - ok
21:12:08.0033 0x2770 tsusbflt - ok
21:12:08.0033 0x2770 TsUsbGD - ok
21:12:08.0049 0x2770 tunnel - ok
21:12:08.0055 0x2770 tzautoupdate - ok
21:12:08.0055 0x2770 UASPStor - ok
21:12:08.0055 0x2770 UcmCx0101 - ok
21:12:08.0070 0x2770 UcmTcpciCx0101 - ok
21:12:08.0070 0x2770 UcmUcsi - ok
21:12:08.0070 0x2770 Ucx01000 - ok
21:12:08.0086 0x2770 UdeCx - ok
21:12:08.0086 0x2770 udfs - ok
21:12:08.0102 0x2770 UEFI - ok
21:12:08.0102 0x2770 Ufx01000 - ok
21:12:08.0102 0x2770 UfxChipidea - ok
21:12:08.0117 0x2770 ufxsynopsys - ok
21:12:08.0117 0x2770 UI0Detect - ok
21:12:08.0133 0x2770 umbus - ok
21:12:08.0133 0x2770 UmPass - ok
21:12:08.0149 0x2770 UmRdpService - ok
21:12:08.0154 0x2770 UnistoreSvc - ok
21:12:08.0154 0x2770 upnphost - ok
21:12:08.0154 0x2770 UrsChipidea - ok
21:12:08.0170 0x2770 UrsCx01000 - ok
21:12:08.0170 0x2770 UrsSynopsys - ok
21:12:08.0186 0x2770 [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
21:12:08.0233 0x2770 USBAAPL64 - ok
21:12:08.0249 0x2770 usbccgp - ok
21:12:08.0255 0x2770 usbcir - ok
21:12:08.0255 0x2770 usbehci - ok
21:12:08.0255 0x2770 usbhub - ok
21:12:08.0271 0x2770 USBHUB3 - ok
21:12:08.0271 0x2770 usbohci - ok
21:12:08.0271 0x2770 usbprint - ok
21:12:08.0286 0x2770 [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
21:12:08.0317 0x2770 usbscan - ok
21:12:08.0333 0x2770 usbser - ok
21:12:08.0333 0x2770 USBSTOR - ok
21:12:08.0333 0x2770 usbuhci - ok
21:12:08.0355 0x2770 USBXHCI - ok
21:12:08.0355 0x2770 UserDataSvc - ok
21:12:08.0355 0x2770 UserManager - ok
21:12:08.0371 0x2770 UsoSvc - ok
21:12:08.0371 0x2770 VaultSvc - ok
21:12:08.0386 0x2770 vdrvroot - ok
21:12:08.0386 0x2770 vds - ok
21:12:08.0386 0x2770 VerifierExt - ok
21:12:08.0402 0x2770 vhdmp - ok
21:12:08.0402 0x2770 vhf - ok
21:12:08.0402 0x2770 vmbus - ok
21:12:08.0418 0x2770 VMBusHID - ok
21:12:08.0418 0x2770 vmgid - ok
21:12:08.0418 0x2770 vmicguestinterface - ok
21:12:08.0433 0x2770 vmicheartbeat - ok
21:12:08.0433 0x2770 vmickvpexchange - ok
21:12:08.0433 0x2770 vmicrdv - ok
21:12:08.0449 0x2770 vmicshutdown - ok
21:12:08.0455 0x2770 vmictimesync - ok
21:12:08.0455 0x2770 vmicvmsession - ok
21:12:08.0455 0x2770 vmicvss - ok
21:12:08.0455 0x2770 volmgr - ok
21:12:08.0471 0x2770 volmgrx - ok
21:12:08.0471 0x2770 volsnap - ok
21:12:08.0471 0x2770 volume - ok
21:12:08.0487 0x2770 vpci - ok
21:12:08.0487 0x2770 vsmraid - ok
21:12:08.0487 0x2770 VSS - ok
21:12:08.0502 0x2770 VSTXRAID - ok
21:12:08.0502 0x2770 vwifibus - ok
21:12:08.0502 0x2770 vwififlt - ok
21:12:08.0502 0x2770 vwifimp - ok
21:12:08.0518 0x2770 W32Time - ok
21:12:08.0518 0x2770 WacomPen - ok
21:12:08.0518 0x2770 WalletService - ok
21:12:08.0533 0x2770 wanarp - ok
21:12:08.0533 0x2770 wanarpv6 - ok
21:12:08.0533 0x2770 wbengine - ok
21:12:08.0552 0x2770 WbioSrvc - ok
21:12:08.0555 0x2770 wcifs - ok
21:12:08.0555 0x2770 Wcmsvc - ok
21:12:08.0555 0x2770 wcncsvc - ok
21:12:08.0571 0x2770 wcnfs - ok
21:12:08.0571 0x2770 WdBoot - ok
21:12:08.0571 0x2770 Wdf01000 - ok
21:12:08.0571 0x2770 WdFilter - ok
21:12:08.0586 0x2770 WdiServiceHost - ok
21:12:08.0586 0x2770 WdiSystemHost - ok
21:12:08.0586 0x2770 wdiwifi - ok
21:12:08.0602 0x2770 WdNisDrv - ok
21:12:08.0602 0x2770 WdNisSvc - ok
21:12:08.0602 0x2770 WebClient - ok
21:12:08.0618 0x2770 Wecsvc - ok
21:12:08.0618 0x2770 WEPHOSTSVC - ok
21:12:08.0618 0x2770 wercplsupport - ok
21:12:08.0633 0x2770 WerSvc - ok
21:12:08.0633 0x2770 WFPLWFS - ok
21:12:08.0633 0x2770 WiaRpc - ok
21:12:08.0649 0x2770 WIMMount - ok
21:12:08.0653 0x2770 WinDefend - ok
21:12:08.0655 0x2770 WindowsTrustedRT - ok
21:12:08.0655 0x2770 WindowsTrustedRTProxy - ok
21:12:08.0671 0x2770 WinHttpAutoProxySvc - ok
21:12:08.0671 0x2770 WinMad - ok
21:12:08.0702 0x2770 Winmgmt - ok
21:12:08.0702 0x2770 WinRM - ok
21:12:08.0718 0x2770 WINUSB - ok
21:12:08.0718 0x2770 WinVerbs - ok
21:12:08.0718 0x2770 wisvc - ok
21:12:08.0733 0x2770 WlanSvc - ok
21:12:08.0733 0x2770 wlidsvc - ok
21:12:08.0733 0x2770 WmiAcpi - ok
21:12:08.0754 0x2770 wmiApSrv - ok
21:12:08.0755 0x2770 WMPNetworkSvc - ok
21:12:08.0755 0x2770 Wof - ok
21:12:08.0771 0x2770 workfolderssvc - ok
21:12:08.0771 0x2770 WPDBusEnum - ok
21:12:08.0771 0x2770 WpdUpFltr - ok
21:12:08.0786 0x2770 WpnService - ok
21:12:08.0786 0x2770 WpnUserService - ok
21:12:08.0786 0x2770 ws2ifsl - ok
21:12:08.0802 0x2770 wscsvc - ok
21:12:08.0802 0x2770 WSDPrintDevice - ok
21:12:08.0802 0x2770 WSDScan - ok
21:12:08.0818 0x2770 WSearch - ok
21:12:08.0849 0x2770 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
21:12:08.0871 0x2770 wsvd - ok
21:12:08.0887 0x2770 wuauserv - ok
21:12:08.0887 0x2770 WudfPf - ok
21:12:08.0887 0x2770 WUDFRd - ok
21:12:08.0902 0x2770 wudfsvc - ok
21:12:08.0902 0x2770 WUDFWpdMtp - ok
21:12:08.0918 0x2770 WwanSvc - ok
21:12:08.0933 0x2770 XblAuthManager - ok
21:12:08.0957 0x2770 XblGameSave - ok
21:12:08.0957 0x2770 xboxgip - ok
21:12:08.0973 0x2770 XboxNetApiSvc - ok
21:12:08.0973 0x2770 xinputhid - ok
21:12:08.0989 0x2770 ================ Scan global ===============================
21:12:09.0020 0x2770 [ Global ] - ok
21:12:09.0020 0x2770 ================ Scan MBR ==================================
21:12:09.0036 0x2770 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
21:12:09.0174 0x2770 \Device\Harddisk0\DR0 - ok
21:12:09.0174 0x2770 ================ Scan VBR ==================================
21:12:09.0174 0x2770 [ C7845BB71A5876B913702B163B70D2CC ] \Device\Harddisk0\DR0\Partition1
21:12:09.0174 0x2770 \Device\Harddisk0\DR0\Partition1 - ok
21:12:09.0205 0x2770 [ 57E30E5EAD9A98F2DC03E6124CDBDDF3 ] \Device\Harddisk0\DR0\Partition2
21:12:09.0205 0x2770 \Device\Harddisk0\DR0\Partition2 - ok
21:12:09.0205 0x2770 [ B812C9C834E9E2AA96FD3A7E4000CEB6 ] \Device\Harddisk0\DR0\Partition3
21:12:09.0205 0x2770 \Device\Harddisk0\DR0\Partition3 - ok
21:12:09.0221 0x2770 [ 4184172EDADBB26CA3E42F7CE8BAC08D ] \Device\Harddisk0\DR0\Partition4
21:12:09.0221 0x2770 \Device\Harddisk0\DR0\Partition4 - ok
21:12:09.0221 0x2770 [ B0C8CB99AAF03B9AACCB4468A21524B8 ] \Device\Harddisk0\DR0\Partition5
21:12:09.0221 0x2770 \Device\Harddisk0\DR0\Partition5 - ok
21:12:09.0236 0x2770 [ 5E4752C08B495AB02F849BEAFE482496 ] \Device\Harddisk0\DR0\Partition6
21:12:09.0236 0x2770 \Device\Harddisk0\DR0\Partition6 - ok
21:12:09.0236 0x2770 [ D87B30C55C1F71EF1B2C020BA7A89056 ] \Device\Harddisk0\DR0\Partition7
21:12:09.0253 0x2770 \Device\Harddisk0\DR0\Partition7 - ok
21:12:09.0256 0x2770 ================ Scan generic autorun ======================
21:12:09.0691 0x2770 [ 920BF343D1DF9BDAE7D8956E31B9DF9E, 2197BB2F990A6F0D29AD691863309567BAD9BFA8B423BE616315111EEADA2709 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
21:12:09.0972 0x2770 RtHDVCpl - ok
21:12:10.0040 0x2770 [ E3389F59C46E37D6DB57A4540591723C, 38BE95DEACF2EC2D6B07CB1FCE82C6F592FF44D94624868A28E70F2C96E8ACF9 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:12:10.0093 0x2770 RtHDVBg_Dolby - ok
21:12:10.0194 0x2770 [ E3389F59C46E37D6DB57A4540591723C, 38BE95DEACF2EC2D6B07CB1FCE82C6F592FF44D94624868A28E70F2C96E8ACF9 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:12:10.0240 0x2770 RtHDVBg_LENOVO_DOLBYDRAGON - ok
21:12:10.0272 0x2770 [ E3389F59C46E37D6DB57A4540591723C, 38BE95DEACF2EC2D6B07CB1FCE82C6F592FF44D94624868A28E70F2C96E8ACF9 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:12:10.0294 0x2770 RtHDVBg_LENOVO_MICPKEY - ok
21:12:10.0325 0x2770 [ 3A2E669A7D492AC4BD48D0F755F7E7C4, CC92D060EAE7703F55C82B43C1D3ED528A8EB11F6563F7D4FB9D6E2CCEE6C6CC ] C:\Program Files\Apoint2K\Apoint.exe
21:12:10.0341 0x2770 Apoint - ok
21:12:10.0356 0x2770 [ 49676A7AACDFD6519F5B6225DA1DABAA, 81F087FFF4CFD9BFD46C96717F30B0FFB7BAEB12B4076717E3718974B7169757 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
21:12:10.0372 0x2770 IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
21:12:10.0460 0x2770 Detect skipped due to KSN trusted
21:12:10.0460 0x2770 IAStorIcon - ok
21:12:10.0497 0x2770 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
21:12:10.0529 0x2770 LMCSSTART1 - ok
21:12:10.0529 0x2770 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
21:12:10.0561 0x2770 LMCSSTART2 - ok
21:12:10.0576 0x2770 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
21:12:10.0598 0x2770 LMCSSTART3 - ok
21:12:10.0661 0x2770 [ AD77FD29FC511AA939B32B536BB0DD56, FFAB6DFFCB8B1F25BCACCF403F9F23D604C5F640F1F6569EE1C151E16DD45786 ] C:\Program Files\Lenovo\LenovoUtility\utility.exe
21:12:10.0730 0x2770 LenovoUtility - ok
21:12:10.0777 0x2770 [ 4D516FF7145B02F9AD6596C13EAA12D2, 2B79BA63E687D371EE39A47A5766CF6D7856975D12CD9925114D862D3CA27E39 ] C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe
21:12:10.0798 0x2770 PhoneCompanion - ok
21:12:10.0845 0x2770 [ 1867F14EE28F2CF846BF05D1031A0FE5, DF022A3BB7255E53ECBB1BD6B4F02F02CCABD00AEDCF98B36C83D6966B171ED3 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\OneKeyOptimizerTray.exe
21:12:10.0877 0x2770 OneKeyOptimizer - ok
21:12:10.0898 0x2770 [ 64D89BDA981ECD2BC9B547E4210CA6E0, 403F685FBC8A71896F550476C3E3CAAC0D593F7CF25D4A2F61ED62D576E62F12 ] C:\Program Files\iTunes\iTunesHelper.exe
21:12:10.0914 0x2770 iTunesHelper - ok
21:12:10.0945 0x2770 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
21:12:10.0993 0x2770 HP Software Update - ok
21:12:11.0030 0x2770 OneDriveSetup - ok
21:12:11.0046 0x2770 OneDriveSetup - ok
21:12:11.0095 0x2770 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Friederike\AppData\Local\Microsoft\OneDrive\OneDrive.exe
21:12:11.0131 0x2770 OneDrive - ok
21:12:11.0346 0x2770 [ 7E4B5E7C945766A03FA955E2C0A220DD, E8B0441FBFE29C62B146F3750BEA76706C6C71B5ADF3D21BFBA821AF3A76A98A ] C:\Users\Friederike\AppData\Local\Amazon Music\Amazon Music Helper.exe
21:12:11.0468 0x2770 Amazon Music - ok
21:12:11.0475 0x2770 Skype - ok
21:12:11.0495 0x2770 [ 97BFD4C3591EDD7A9EA1772DBE0202E6, 31DA37709522C8B8DE2784B3AA3C1A8503E92D084E2C695A303D4D09D5FD2C88 ] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIREE.EXE
21:12:11.0542 0x2770 EPLTarget\P0000000000000000 - ok
21:12:11.0558 0x2770 [ 97BFD4C3591EDD7A9EA1772DBE0202E6, 31DA37709522C8B8DE2784B3AA3C1A8503E92D084E2C695A303D4D09D5FD2C88 ] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIREE.EXE
21:12:11.0595 0x2770 EPLTarget\P0000000000000001 - ok
21:12:11.0611 0x2770 Uninstall C:\Users\Friederike\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok
21:12:11.0611 0x2770 Uninstall C:\Users\Friederike\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64 - ok
21:12:11.0611 0x2770 Waiting for KSN requests completion. In queue: 32
21:12:12.0658 0x2770 AV detected via SS2: Avast Antivirus, C:\Program Files\AVAST Software\Avast\wsc_proxy.exe ( 17.1.3394.0 ), 0x41000 ( enabled : updated )
21:12:12.0658 0x2770 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x62100 ( disabled : updated )
21:12:12.0680 0x2770 Win FW state via NFP2: enabled ( trusted )
21:12:14.0836 0x2770 ============================================================
21:12:14.0836 0x2770 Scan finished
21:12:14.0836 0x2770 ============================================================
21:12:14.0851 0x2668 Detected object count: 0
21:12:14.0851 0x2668 Actual detected object count: 0 |