Zurück   Trojaner-Board > Malware entfernen > Überwachung, Datenschutz und Spam

Überwachung, Datenschutz und Spam: Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1

Windows 7 Fragen zu Verschlüsselung, Spam, Datenschutz & co. sind hier erwünscht. Hier geht es um Abwehr von Keyloggern oder aderen Spionagesoftware wie Spyware und Adware. Themen zum "Trojaner entfernen" oder "Malware Probleme" dürfen hier nur diskutiert werden. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen.

Antwort
Alt 18.03.2017, 12:28   #1
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Hallo,

eine Bekannte sprach mich darauf an, dass sie täglich von meiner Email-Adresse Spamnachrichte erhält.
Darauf hin habe ich den ADWCleaner über meinen Laptop laufen lassen.

Hier das Log:
Code:
ATTFilter
# AdwCleaner v6.044 - Bericht erstellt am 18/03/2017 um 11:58:37
# Aktualisiert am 28/02/2017 von Malwarebytes
# Datenbank : 2017-03-17.2 [Lokal]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : Melanie - STARLORD
# Gestartet von : D:\Melanie\Downloads\adwcleaner_6.044.exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****

Keine schädlichen Dienste gefunden.


***** [ Ordner ] *****

Keine schädlichen Ordner gefunden.


***** [ Dateien ] *****

Keine schädlichen Dateien gefunden.


***** [ DLL ] *****

Keine infizierten DLLs gefunden.


***** [ WMI ] *****

Keine schädlichen Schlüssel gefunden.


***** [ Verknüpfungen ] *****

Keine infizierten Verknüpfungen gefunden.


***** [ Aufgabenplanung ] *****

Keine schädlichen Aufgaben gefunden.


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
Schlüssel Gefunden: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1


***** [ Internetbrowser ] *****

Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1441 Bytes] - [18/03/2017 10:04:49]
C:\AdwCleaner\AdwCleaner[C2].txt - [1464 Bytes] - [18/03/2017 10:25:01]
C:\AdwCleaner\AdwCleaner[C3].txt - [1610 Bytes] - [18/03/2017 11:10:11]
C:\AdwCleaner\AdwCleaner[S0].txt - [1561 Bytes] - [18/03/2017 10:03:55]
C:\AdwCleaner\AdwCleaner[S1].txt - [1484 Bytes] - [18/03/2017 10:08:53]
C:\AdwCleaner\AdwCleaner[S2].txt - [1675 Bytes] - [18/03/2017 10:24:18]
C:\AdwCleaner\AdwCleaner[S3].txt - [1821 Bytes] - [18/03/2017 11:09:51]
C:\AdwCleaner\AdwCleaner[S4].txt - [1811 Bytes] - [18/03/2017 11:58:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1884 Bytes] ##########
         

Trotz vieler Löschungen tauchen die beiden Bedrohungen gleich wieder auf.

Mein Antivirusprogramm erklärt mir im Bericht, dass es in den letzten drei Monaten einen Trojaner gefunden hat.
Leider habe ich nicht rausfinden können, wie ich an ein LOG von meinem Programm rankommen kann.(McAfee Security)

FRST Log ist das hier:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
durchgeführt von Melanie (Administrator) auf STARLORD (18-03-2017 11:43:59)
Gestartet von D:\Melanie\Downloads
Geladene Profile: Melanie (Verfügbare Profile: defaultuser0 & Melanie)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igfxCUIService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHDCPSvc.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHeciSvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\mcsvchost\McSvHost.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\VSCore_15_6\mcapexe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\2.3.290.0\McCSPServiceHost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
(CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(Dell Inc.) C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
(Dell) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\mcuihost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3893296 2016-05-17] (Dell Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9192960 2016-12-30] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397752 2016-04-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320568 2016-09-20] (Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [945112 2016-12-27] (Waves Audio Ltd.)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [27308304 2017-03-06] (Dropbox, Inc.)
HKU\S-1-5-21-768988707-1121164810-1632200572-1001\...\Run: [ShowBatteryBar] => C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600 2014-09-19] ()
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
Startup: C:\Users\Melanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2017-03-16]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{df313327-b197-44cf-bfde-042cd821ecb6}: [DhcpNameServer] 172.51.1.171
Tcpip\..\Interfaces\{f23579e6-4da2-442a-a11f-a7d5674086f6}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================
HKU\S-1-5-21-768988707-1121164810-1632200572-1001\Software\Microsoft\Internet Explorer\Main,Start Page = 
HKU\S-1-5-21-768988707-1121164810-1632200572-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
SearchScopes: HKU\S-1-5-21-768988707-1121164810-1632200572-1001 -> DefaultScope {5610C326-C650-43AE-97A5-30C975F2673E} URL = 
SearchScopes: HKU\S-1-5-21-768988707-1121164810-1632200572-1001 -> {5610C326-C650-43AE-97A5-30C975F2673E} URL = 
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-01-29] (Microsoft Corporation)
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-02-22] (McAfee, Inc.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-01-29] (Microsoft Corporation)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-02-22] (McAfee, Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-02-22] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-02-22] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2017-03-03] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2017-03-03] (McAfee, Inc.)

FireFox:
========
FF DefaultProfile: cqpr73tr.default
FF ProfilePath: C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default [2017-03-18]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\cqpr73tr.default -> Bing®
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\cqpr73tr.default -> Sichere Suche
FF Homepage: Mozilla\Firefox\Profiles\cqpr73tr.default -> www.startpage.com
FF Extension: (Blur) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\donottrackplus@abine.com.xpi [2017-03-09]
FF Extension: (Pinterest™ Panel) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\jid1-Jf3tAGwqs5Hjqz@jetpack.xpi [2017-01-14]
FF Extension: (Pin It button) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2017-01-14]
FF Extension: (DuckDuckGo Plus) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2017-01-28]
FF Extension: (OmniSidebar) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\osb@quicksaver.xpi [2017-01-28]
FF Extension: (Personas Plus) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\personas@christopher.beard.xpi [2016-12-20]
FF Extension: (Flagfox) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2017-02-19]
FF Extension: (ShowIP) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi [2016-12-20]
FF Extension: (NoScript) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2017-03-18]
FF Extension: (Video DownloadHelper) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2016-12-30]
FF Extension: (Adblock Plus) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-12-20]
FF Extension: (Fox!Box) - C:\Users\Melanie\AppData\Roaming\Mozilla\Firefox\Profiles\cqpr73tr.default\Extensions\{df4e4df5-5cb7-46b0-9aef-6c784c3249f8}.xpi [2016-12-20]
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-03-18]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2017-03-08] [ist nicht signiert]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2017-03-03] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2017-03-03] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-01-29] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3704520 2017-02-18] (Microsoft Corporation)
R3 ClientAnalyticsService; C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe [1747800 2017-02-16] (Intel Security)
R3 cphs; C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHeciSvc.exe [302552 2017-01-03] (Intel Corporation)
R2 cplspcon; C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHDCPSvc.exe [480216 2017-01-03] (Intel Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-12-16] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-12-16] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [46408 2017-01-21] (Dropbox, Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2016-12-21] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [78672 2016-09-13] (Dell Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [117792 2016-11-21] (Dell)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2572024 2016-06-23] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [202488 2016-06-23] (Dell Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [230248 2016-09-22] (Dell Inc.)
R2 esifsvc; C:\Windows\system32\Intel\DPTF\esif_uf.exe [2223864 2017-01-05] (Intel Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164856 2016-04-05] (NVIDIA Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17976 2016-09-20] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igfxCUIService.exe [341976 2017-01-03] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [Datei ist nicht signiert]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [Datei ist nicht signiert]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [215328 2016-05-16] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [188352 2017-02-22] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe [989632 2017-01-23] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [419096 2016-04-01] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\2.3.290.0\\McCSPServiceHost.exe [2054080 2017-02-04] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [1342904 2017-02-01] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [241040 2016-11-14] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [383032 2016-11-14] (McAfee, Inc.)
R3 mfevtp; C:\Windows\system32\mfevtps.exe [342768 2016-11-14] (McAfee, Inc.)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1465840 2016-12-22] (McAfee, Inc.)
S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-02-08] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-04-05] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-04-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-04-05] (NVIDIA Corporation)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1104304 2016-11-15] (Intel Security, Inc.)
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [80208 2016-09-22] (Dell)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-04-14] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [320512 2016-12-30] (Realtek Semiconductor)
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [31704 2016-09-09] (Dell Inc.)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [412632 2016-12-27] (Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-03-04] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3833248 2016-02-08] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [88456 2016-11-18] (McAfee, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2016-06-23] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2016-06-23] (Dell Computer Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R2 DpmLiteDrv; c:\Program Files\Dell\QuickSet\DpmLiteDrv64.sys [15080 2014-10-15] (Wistron Corp.)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [79928 2017-01-05] (Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [75320 2017-01-05] (Intel Corporation)
R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [358968 2017-01-05] (Intel Corporation)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77408 2017-02-24] ()
R3 HidEventFilter; C:\Windows\System32\drivers\HidEventFilter.sys [63496 2017-01-12] (Intel Corporation)
R3 HID_PCI; C:\Windows\System32\drivers\HID_PCI.sys [30816 2016-05-24] (Intel)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [216704 2016-08-02] (McAfee, Inc.)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [98608 2017-02-15] (Intel Corporation)
R3 iaLPSS2_I2C; C:\Windows\System32\drivers\iaLPSS2_I2C.sys [193328 2017-02-15] (Intel Corporation)
S3 iaLPSS2_SPI; C:\Windows\System32\drivers\iaLPSS2_SPI.sys [152376 2016-05-17] (Intel Corporation)
S3 iaLPSS2_UART2; C:\Windows\System32\drivers\iaLPSS2_UART2.sys [281400 2016-05-17] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [356608 2016-11-16] (Intel Corporation)
R3 igfx; C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igdkmd64.sys [11058136 2017-01-03] (Intel Corporation)
R3 ISH; C:\Windows\System32\drivers\ISH.sys [140896 2016-06-05] (Intel)
R3 ISH_BusDriver; C:\Windows\System32\drivers\ISH_BusDriver.sys [78432 2016-06-08] (Intel)
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [186304 2017-03-18] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [111544 2017-03-18] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-03-18] (Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [251840 2017-03-18] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [92088 2017-03-18] (Malwarebytes)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [484576 2016-11-18] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [366320 2016-11-18] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [85048 2016-11-18] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [518184 2016-11-18] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [916432 2016-11-18] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [498152 2016-10-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109336 2016-10-24] (McAfee, Inc.)
R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [110248 2016-11-18] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [254800 2016-11-18] (McAfee, Inc.)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-04-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-03-22] (NVIDIA Corporation)
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [436224 2016-12-15] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3149824 2016-11-14] (Realtek Semiconductor Corp.)
S3 rtux64w10; C:\Windows\System32\drivers\rtux64w10.sys [343808 2015-12-23] (Realtek                                                                )
R3 VirtualButtons; C:\Windows\System32\drivers\VirtualButtons.sys [31280 2015-04-14] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 dbx; system32\DRIVERS\dbx.sys [X]
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [X]
         

Alt 18.03.2017, 12:30   #2
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Code:
ATTFilter
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-03-18 11:43 - 2017-03-18 11:43 - 00000000 ____D C:\FRST
2017-03-18 11:32 - 2017-03-18 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2017-03-18 11:29 - 2017-03-18 11:29 - 00000000 ___HD C:\OneDriveTemp
2017-03-18 11:25 - 2017-03-18 11:29 - 00186304 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-03-18 11:25 - 2017-03-18 11:29 - 00092088 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-03-18 11:25 - 2017-03-18 11:28 - 00251840 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-03-18 11:25 - 2017-03-18 11:28 - 00111544 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-03-18 11:25 - 2017-03-18 11:28 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-03-18 11:25 - 2017-03-18 11:25 - 00001914 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-03-18 11:25 - 2017-03-18 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-03-18 11:25 - 2017-03-18 11:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-03-18 11:25 - 2017-03-18 11:25 - 00000000 ____D C:\Program Files\Malwarebytes
2017-03-18 11:25 - 2017-02-24 06:23 - 00077408 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-03-18 10:02 - 2017-03-18 11:10 - 00000000 ____D C:\AdwCleaner
2017-03-17 19:30 - 2017-03-17 19:30 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-03-17 19:30 - 2016-11-23 01:23 - 00271648 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-03-17 19:30 - 2016-11-23 01:23 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-03-17 19:30 - 2016-11-23 01:22 - 00265504 _____ C:\Windows\system32\vulkan-1.dll
2017-03-17 19:30 - 2016-11-23 01:22 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2017-03-17 16:41 - 2017-03-18 11:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-03-16 16:17 - 2017-03-04 08:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2017-03-16 16:17 - 2017-03-04 07:45 - 00173408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-03-16 16:17 - 2017-03-04 07:42 - 01260784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-03-16 16:17 - 2017-03-04 07:42 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2017-03-16 16:17 - 2017-03-04 07:29 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfp.dll
2017-03-16 16:17 - 2017-03-04 07:25 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2017-03-16 16:17 - 2017-03-04 07:25 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscandui.dll
2017-03-16 16:17 - 2017-03-04 07:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2017-03-16 16:17 - 2017-03-04 07:24 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-03-16 16:17 - 2017-03-04 07:24 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfui.dll
2017-03-16 16:17 - 2017-03-04 07:22 - 00237568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2017-03-16 16:17 - 2017-03-04 07:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi32.dll
2017-03-16 16:17 - 2017-03-04 07:20 - 00632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2017-03-16 16:17 - 2017-03-04 07:20 - 00424960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2017-03-16 16:17 - 2017-03-04 07:20 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2017-03-16 16:17 - 2017-03-04 07:19 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2017-03-16 16:17 - 2017-03-04 07:16 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2017-03-16 16:17 - 2017-03-04 07:16 - 00846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2017-03-16 16:17 - 2017-03-04 07:13 - 02458112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2017-03-16 16:17 - 2017-03-04 07:13 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2017-03-16 16:17 - 2017-03-04 07:07 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-03-16 16:17 - 2017-03-04 07:05 - 07468544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-03-16 16:17 - 2017-03-04 07:01 - 00560640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2017-03-16 16:17 - 2017-03-04 07:00 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2017-03-16 16:17 - 2017-03-04 06:57 - 00299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll
2017-03-16 16:16 - 2017-03-04 08:09 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-03-16 16:16 - 2017-03-04 08:09 - 01969912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2017-03-16 16:16 - 2017-03-04 08:06 - 01706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-03-16 16:16 - 2017-03-04 08:04 - 01362512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2017-03-16 16:16 - 2017-03-04 08:02 - 00184416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2017-03-16 16:16 - 2017-03-04 07:56 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 05722320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 02256080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 01431232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2017-03-16 16:16 - 2017-03-04 07:53 - 00781152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2017-03-16 16:16 - 2017-03-04 07:53 - 00493912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2017-03-16 16:16 - 2017-03-04 07:53 - 00313568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2017-03-16 16:16 - 2017-03-04 07:52 - 00549088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2017-03-16 16:16 - 2017-03-04 07:52 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-03-16 16:16 - 2017-03-04 07:51 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 06667528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 04023000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01853224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01360456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01277856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01202384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 01123912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00981376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00976184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00530480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00374448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2017-03-16 16:16 - 2017-03-04 07:47 - 00352760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2017-03-16 16:16 - 2017-03-04 07:46 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2017-03-16 16:16 - 2017-03-04 07:40 - 00306800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2017-03-16 16:16 - 2017-03-04 07:36 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2017-03-16 16:16 - 2017-03-04 07:30 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2017-03-16 16:16 - 2017-03-04 07:30 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2017-03-16 16:16 - 2017-03-04 07:30 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2017-03-16 16:16 - 2017-03-04 07:30 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2017-03-16 16:16 - 2017-03-04 07:29 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2017-03-16 16:16 - 2017-03-04 07:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInputUap.dll
2017-03-16 16:16 - 2017-03-04 07:29 - 00019968 _____ C:\Windows\SysWOW64\GamePanelExternalHook.dll
2017-03-16 16:16 - 2017-03-04 07:28 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2017-03-16 16:16 - 2017-03-04 07:27 - 00275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accountaccessor.dll
2017-03-16 16:16 - 2017-03-04 07:27 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2017-03-16 16:16 - 2017-03-04 07:27 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Diagnostics.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2017-03-16 16:16 - 2017-03-04 07:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2017-03-16 16:16 - 2017-03-04 07:25 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2017-03-16 16:16 - 2017-03-04 07:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCCSEngineShared.dll
2017-03-16 16:16 - 2017-03-04 07:25 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2017-03-16 16:16 - 2017-03-04 07:25 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BrowserSettingSync.dll
2017-03-16 16:16 - 2017-03-04 07:25 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.SystemManagement.dll
2017-03-16 16:16 - 2017-03-04 07:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2017-03-16 16:16 - 2017-03-04 07:24 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-03-16 16:16 - 2017-03-04 07:24 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-16 16:16 - 2017-03-04 07:24 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2017-03-16 16:16 - 2017-03-04 07:23 - 00531456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DavSyncProvider.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-16 16:16 - 2017-03-04 07:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 01299968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00212992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cemapi.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2017-03-16 16:16 - 2017-03-04 07:22 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2017-03-16 16:16 - 2017-03-04 07:22 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2017-03-16 16:16 - 2017-03-04 07:21 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-03-16 16:16 - 2017-03-04 07:21 - 00631296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2017-03-16 16:16 - 2017-03-04 07:21 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2017-03-16 16:16 - 2017-03-04 07:21 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-03-16 16:16 - 2017-03-04 07:21 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-03-16 16:16 - 2017-03-04 07:21 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
2017-03-16 16:16 - 2017-03-04 07:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2017-03-16 16:16 - 2017-03-04 07:19 - 00714752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2017-03-16 16:16 - 2017-03-04 07:19 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-03-16 16:16 - 2017-03-04 07:19 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2017-03-16 16:16 - 2017-03-04 07:19 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2017-03-16 16:16 - 2017-03-04 07:19 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2017-03-16 16:16 - 2017-03-04 07:19 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 01231360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00548352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2017-03-16 16:16 - 2017-03-04 07:18 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2017-03-16 16:16 - 2017-03-04 07:17 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2017-03-16 16:16 - 2017-03-04 07:17 - 00529920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2017-03-16 16:16 - 2017-03-04 07:17 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-03-16 16:16 - 2017-03-04 07:17 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00968704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2017-03-16 16:16 - 2017-03-04 07:16 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2017-03-16 16:16 - 2017-03-04 07:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2017-03-16 16:16 - 2017-03-04 07:15 - 18362368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2017-03-16 16:16 - 2017-03-04 07:15 - 01543680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2017-03-16 16:16 - 2017-03-04 07:15 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-03-16 16:16 - 2017-03-04 07:15 - 00336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2017-03-16 16:16 - 2017-03-04 07:14 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-03-16 16:16 - 2017-03-04 07:14 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 19411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 06474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-03-16 16:16 - 2017-03-04 07:13 - 04613120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-03-16 16:16 - 2017-03-04 07:13 - 00256512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2017-03-16 16:16 - 2017-03-04 07:12 - 00886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-03-16 16:16 - 2017-03-04 07:12 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-03-16 16:16 - 2017-03-04 07:12 - 00700416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Search.dll
2017-03-16 16:16 - 2017-03-04 07:12 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2017-03-16 16:16 - 2017-03-04 07:11 - 01357312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2017-03-16 16:16 - 2017-03-04 07:11 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2017-03-16 16:16 - 2017-03-04 07:11 - 01320448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2017-03-16 16:16 - 2017-03-04 07:11 - 01137152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2017-03-16 16:16 - 2017-03-04 07:11 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2017-03-16 16:16 - 2017-03-04 07:10 - 03307008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2017-03-16 16:16 - 2017-03-04 07:10 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2017-03-16 16:16 - 2017-03-04 07:10 - 00471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-16 16:16 - 2017-03-04 07:10 - 00300544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedit.exe
2017-03-16 16:16 - 2017-03-04 07:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2017-03-16 16:16 - 2017-03-04 07:09 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2017-03-16 16:16 - 2017-03-04 07:09 - 00570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2017-03-16 16:16 - 2017-03-04 07:09 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2017-03-16 16:16 - 2017-03-04 07:09 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll
2017-03-16 16:16 - 2017-03-04 07:08 - 12349952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2017-03-16 16:16 - 2017-03-04 07:08 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2017-03-16 16:16 - 2017-03-04 07:07 - 12178944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-03-16 16:16 - 2017-03-04 07:07 - 02748928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2017-03-16 16:16 - 2017-03-04 07:07 - 02643456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-03-16 16:16 - 2017-03-04 07:07 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2017-03-16 16:16 - 2017-03-04 07:07 - 00545280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2017-03-16 16:16 - 2017-03-04 07:06 - 06109184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2017-03-16 16:16 - 2017-03-04 07:06 - 05380608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2017-03-16 16:16 - 2017-03-04 07:06 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2017-03-16 16:16 - 2017-03-04 07:06 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2017-03-16 16:16 - 2017-03-04 07:06 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2017-03-16 16:16 - 2017-03-04 07:05 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2017-03-16 16:16 - 2017-03-04 07:05 - 01221120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2017-03-16 16:16 - 2017-03-04 07:05 - 01133568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2017-03-16 16:16 - 2017-03-04 07:05 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2017-03-16 16:16 - 2017-03-04 07:05 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2017-03-16 16:16 - 2017-03-04 07:04 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2017-03-16 16:16 - 2017-03-04 07:04 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 06044672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 02109952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 00409600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2017-03-16 16:16 - 2017-03-04 07:03 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2017-03-16 16:16 - 2017-03-04 07:03 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 01709056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVP9DEC.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2017-03-16 16:16 - 2017-03-04 07:02 - 00510464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2017-03-16 16:16 - 2017-03-04 07:01 - 03478528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 02682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01595904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01571840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01293312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2017-03-16 16:16 - 2017-03-04 07:01 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01154560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Pimstore.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-03-16 16:16 - 2017-03-04 07:01 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2017-03-16 16:16 - 2017-03-04 07:01 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 02996736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-03-16 16:16 - 2017-03-04 07:00 - 02483200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-03-16 16:16 - 2017-03-04 07:00 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00862208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2017-03-16 16:16 - 2017-03-04 07:00 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2017-03-16 16:16 - 2017-03-04 06:59 - 00353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2017-03-16 16:16 - 2017-03-04 06:59 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2017-03-16 16:16 - 2017-03-04 06:57 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2017-03-16 16:16 - 2017-03-04 06:57 - 00783360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2017-03-16 16:16 - 2017-03-04 06:57 - 00449024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2017-03-16 16:16 - 2016-05-29 19:38 - 08886976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSetup.exe
2017-03-16 16:15 - 2017-03-04 08:57 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-03-16 16:15 - 2017-03-04 08:57 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-03-16 16:15 - 2017-03-04 08:57 - 00192352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2017-03-16 16:15 - 2017-03-04 08:09 - 00497416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-03-16 16:15 - 2017-03-04 08:04 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2017-03-16 16:15 - 2017-03-04 07:56 - 00248992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2017-03-16 16:15 - 2017-03-04 07:54 - 02277288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2017-03-16 16:15 - 2017-03-04 07:54 - 00524776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2017-03-16 16:15 - 2017-03-04 07:53 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2017-03-16 16:15 - 2017-03-04 07:51 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2017-03-16 16:15 - 2017-03-04 07:50 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2017-03-16 16:15 - 2017-03-04 07:47 - 00640976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2017-03-16 16:15 - 2017-03-04 07:47 - 00034088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
2017-03-16 16:15 - 2017-03-04 07:46 - 04312248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2017-03-16 16:15 - 2017-03-04 07:45 - 00112120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2017-03-16 16:15 - 2017-03-04 07:42 - 01415240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2017-03-16 16:15 - 2017-03-04 07:42 - 00545944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2017-03-16 16:15 - 2017-03-04 07:30 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-03-16 16:15 - 2017-03-04 07:27 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2017-03-16 16:15 - 2017-03-04 07:26 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2017-03-16 16:15 - 2017-03-04 07:26 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2017-03-16 16:15 - 2017-03-04 07:24 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2017-03-16 16:15 - 2017-03-04 07:24 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2017-03-16 16:15 - 2017-03-04 07:24 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2017-03-16 16:15 - 2017-03-04 07:23 - 00506368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2017-03-16 16:15 - 2017-03-04 07:23 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2017-03-16 16:15 - 2017-03-04 07:23 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-16 16:15 - 2017-03-04 07:23 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2017-03-16 16:15 - 2017-03-04 07:22 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2017-03-16 16:15 - 2017-03-04 07:21 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2017-03-16 16:15 - 2017-03-04 07:21 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2017-03-16 16:15 - 2017-03-04 07:21 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2017-03-16 16:15 - 2017-03-04 07:21 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 13873664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2017-03-16 16:15 - 2017-03-04 07:20 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2017-03-16 16:15 - 2017-03-04 07:19 - 00390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2017-03-16 16:15 - 2017-03-04 07:19 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2017-03-16 16:15 - 2017-03-04 07:19 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2017-03-16 16:15 - 2017-03-04 07:18 - 00896512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2017-03-16 16:15 - 2017-03-04 07:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2017-03-16 16:15 - 2017-03-04 07:16 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2017-03-16 16:15 - 2017-03-04 07:15 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2017-03-16 16:15 - 2017-03-04 07:13 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-03-16 16:15 - 2017-03-04 07:13 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2017-03-16 16:15 - 2017-03-04 07:12 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-03-16 16:15 - 2017-03-04 07:12 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2017-03-16 16:15 - 2017-03-04 07:06 - 03198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2017-03-16 16:15 - 2017-03-04 07:05 - 00545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2017-03-16 16:15 - 2017-03-04 07:05 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2017-03-16 16:15 - 2017-03-04 07:05 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraCaptureUI.dll
2017-03-16 16:15 - 2017-03-04 07:04 - 00753152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2017-03-16 16:15 - 2017-03-04 07:03 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2017-03-16 16:15 - 2017-03-04 07:02 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-03-16 16:15 - 2017-03-04 07:02 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2017-03-16 16:15 - 2017-03-04 07:01 - 01993216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2017-03-16 16:15 - 2017-03-04 07:01 - 01564160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2017-03-16 16:15 - 2017-03-04 07:01 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2017-03-16 16:15 - 2017-03-04 07:00 - 02003968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-03-16 16:15 - 2017-03-04 07:00 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2017-03-16 16:15 - 2017-03-04 06:36 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2017-03-16 16:10 - 2017-03-04 08:11 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-03-16 16:10 - 2017-03-04 08:07 - 00116064 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2017-03-16 16:10 - 2017-03-04 07:36 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2017-03-16 16:10 - 2017-03-04 07:34 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-03-16 16:10 - 2017-03-04 07:33 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.UI.GameBar.dll
2017-03-16 16:10 - 2017-03-04 07:33 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\XInputUap.dll
2017-03-16 16:10 - 2017-03-04 07:32 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll
2017-03-16 16:10 - 2017-03-04 07:32 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2017-03-16 16:10 - 2017-03-04 07:31 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-03-16 16:10 - 2017-03-04 07:31 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Core.dll
2017-03-16 16:10 - 2017-03-04 07:31 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2017-03-16 16:10 - 2017-03-04 07:30 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2017-03-16 16:10 - 2017-03-04 07:30 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2017-03-16 16:10 - 2017-03-04 07:29 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-03-16 16:10 - 2017-03-04 07:29 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSaveExt.dll
2017-03-16 16:10 - 2017-03-04 07:28 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2017-03-16 16:10 - 2017-03-04 07:28 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-16 16:10 - 2017-03-04 07:27 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-03-16 16:10 - 2017-03-04 07:27 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2017-03-16 16:10 - 2017-03-04 07:27 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-03-16 16:10 - 2017-03-04 07:25 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2017-03-16 16:10 - 2017-03-04 07:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2017-03-16 16:10 - 2017-03-04 07:24 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\XboxNetApiSvc.dll
2017-03-16 16:10 - 2017-03-04 07:23 - 00634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2017-03-16 16:10 - 2017-03-04 07:22 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-03-16 16:10 - 2017-03-04 07:20 - 00893952 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2017-03-16 16:10 - 2017-03-04 07:14 - 00588288 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2017-03-16 16:10 - 2017-03-04 07:11 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2017-03-16 16:10 - 2017-03-04 07:08 - 03405312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-03-16 16:10 - 2017-03-04 07:08 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2017-03-16 16:10 - 2017-03-04 07:07 - 00903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-03-16 16:10 - 2017-03-04 07:06 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-03-16 16:09 - 2017-03-04 08:25 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2017-03-16 16:09 - 2017-03-04 08:24 - 02186896 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2017-03-16 16:09 - 2017-03-04 08:24 - 00354264 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2017-03-16 16:09 - 2017-03-04 08:23 - 02512304 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2017-03-16 16:09 - 2017-03-04 08:19 - 02049480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2017-03-16 16:09 - 2017-03-04 08:18 - 00219040 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2017-03-16 16:09 - 2017-03-04 08:18 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-03-16 16:09 - 2017-03-04 08:17 - 00409952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-03-16 16:09 - 2017-03-04 08:15 - 01000280 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2017-03-16 16:09 - 2017-03-04 08:15 - 00404320 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2017-03-16 16:09 - 2017-03-04 08:10 - 00360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2017-03-16 16:09 - 2017-03-04 08:09 - 01860288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2017-03-16 16:09 - 2017-03-04 08:09 - 01293152 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2017-03-16 16:09 - 2017-03-04 08:09 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2017-03-16 16:09 - 2017-03-04 08:09 - 00857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2017-03-16 16:09 - 2017-03-04 08:09 - 00681312 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2017-03-16 16:09 - 2017-03-04 08:09 - 00578392 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2017-03-16 16:09 - 2017-03-04 08:09 - 00527808 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2017-03-16 16:09 - 2017-03-04 08:08 - 00509280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2017-03-16 16:09 - 2017-03-04 08:08 - 00450400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-03-16 16:09 - 2017-03-04 08:08 - 00342456 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-03-16 16:09 - 2017-03-04 08:08 - 00223584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-03-16 16:09 - 2017-03-04 08:08 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2017-03-16 16:09 - 2017-03-04 08:07 - 00432992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2017-03-16 16:09 - 2017-03-04 08:04 - 08169536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2017-03-16 16:09 - 2017-03-04 08:03 - 22223968 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-03-16 16:09 - 2017-03-04 08:03 - 01694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-03-16 16:09 - 2017-03-04 08:03 - 01600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-03-16 16:09 - 2017-03-04 08:01 - 00201568 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-03-16 16:09 - 2017-03-04 08:01 - 00137936 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2017-03-16 16:09 - 2017-03-04 07:58 - 01416224 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-03-16 16:09 - 2017-03-04 07:58 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2017-03-16 16:09 - 2017-03-04 07:57 - 02536288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-03-16 16:09 - 2017-03-04 07:39 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2017-03-16 16:09 - 2017-03-04 07:37 - 00025088 _____ C:\Windows\system32\GamePanelExternalHook.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\DuCsps.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-03-16 16:09 - 2017-03-04 07:36 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2017-03-16 16:09 - 2017-03-04 07:35 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2017-03-16 16:09 - 2017-03-04 07:35 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2017-03-16 16:09 - 2017-03-04 07:34 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2017-03-16 16:09 - 2017-03-04 07:34 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2017-03-16 16:09 - 2017-03-04 07:34 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.SystemManagement.dll
2017-03-16 16:09 - 2017-03-04 07:34 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll
2017-03-16 16:09 - 2017-03-04 07:34 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2017-03-16 16:09 - 2017-03-04 07:33 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2017-03-16 16:09 - 2017-03-04 07:33 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2017-03-16 16:09 - 2017-03-04 07:33 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothDesktopHandlers.dll
2017-03-16 16:09 - 2017-03-04 07:33 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2017-03-16 16:09 - 2017-03-04 07:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2017-03-16 16:09 - 2017-03-04 07:32 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\ExSMime.dll
2017-03-16 16:09 - 2017-03-04 07:32 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-03-16 16:09 - 2017-03-04 07:32 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2017-03-16 16:09 - 2017-03-04 07:32 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-16 16:09 - 2017-03-04 07:31 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2017-03-16 16:09 - 2017-03-04 07:31 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2017-03-16 16:09 - 2017-03-04 07:30 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2017-03-16 16:09 - 2017-03-04 07:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-03-16 16:09 - 2017-03-04 07:29 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-03-16 16:09 - 2017-03-04 07:29 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\cemapi.dll
2017-03-16 16:09 - 2017-03-04 07:29 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\tapi32.dll
2017-03-16 16:09 - 2017-03-04 07:29 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenance.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-03-16 16:09 - 2017-03-04 07:28 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00549376 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2017-03-16 16:09 - 2017-03-04 07:27 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2017-03-16 16:09 - 2017-03-04 07:26 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 01016320 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-16 16:09 - 2017-03-04 07:25 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
2017-03-16 16:09 - 2017-03-04 07:24 - 01293312 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2017-03-16 16:09 - 2017-03-04 07:24 - 01092096 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationFrame.dll
2017-03-16 16:09 - 2017-03-04 07:24 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2017-03-16 16:09 - 2017-03-04 07:24 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 01184256 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2017-03-16 16:09 - 2017-03-04 07:23 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2017-03-16 16:09 - 2017-03-04 07:23 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2017-03-16 16:09 - 2017-03-04 07:22 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-03-16 16:09 - 2017-03-04 07:21 - 06285824 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-03-16 16:09 - 2017-03-04 07:21 - 00776192 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2017-03-16 16:09 - 2017-03-04 07:21 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-03-16 16:09 - 2017-03-04 07:20 - 01913856 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2017-03-16 16:09 - 2017-03-04 07:20 - 01361408 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2017-03-16 16:09 - 2017-03-04 07:20 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2017-03-16 16:09 - 2017-03-04 07:20 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2017-03-16 16:09 - 2017-03-04 07:19 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2017-03-16 16:09 - 2017-03-04 07:19 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2017-03-16 16:09 - 2017-03-04 07:19 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-03-16 16:09 - 2017-03-04 07:19 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll
2017-03-16 16:09 - 2017-03-04 07:19 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2017-03-16 16:09 - 2017-03-04 07:18 - 01189376 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2017-03-16 16:09 - 2017-03-04 07:18 - 00320512 _____ (Microsoft Corporation) C:\Windows\regedit.exe
2017-03-16 16:09 - 2017-03-04 07:18 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2017-03-16 16:09 - 2017-03-04 07:17 - 01082368 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2017-03-16 16:09 - 2017-03-04 07:16 - 03289088 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2017-03-16 16:09 - 2017-03-04 07:16 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-03-16 16:09 - 2017-03-04 07:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2017-03-16 16:09 - 2017-03-04 07:16 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2017-03-16 16:09 - 2017-03-04 07:15 - 09130496 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-03-16 16:09 - 2017-03-04 07:15 - 02860032 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2017-03-16 16:09 - 2017-03-04 07:15 - 01443328 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2017-03-16 16:09 - 2017-03-04 07:14 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-03-16 16:09 - 2017-03-04 07:14 - 01562112 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2017-03-16 16:09 - 2017-03-04 07:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2017-03-16 16:09 - 2017-03-04 07:13 - 00947200 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
2017-03-16 16:09 - 2017-03-04 07:13 - 00858112 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2017-03-16 16:09 - 2017-03-04 07:13 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll
2017-03-16 16:09 - 2017-03-04 07:13 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2017-03-16 16:09 - 2017-03-04 07:12 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2017-03-16 16:09 - 2017-03-04 07:11 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2017-03-16 16:09 - 2017-03-04 07:11 - 01312768 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2017-03-16 16:09 - 2017-03-04 07:11 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 02852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2017-03-16 16:09 - 2017-03-04 07:10 - 01536000 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 01399296 _____ (Microsoft Corporation) C:\Windows\system32\Pimstore.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2017-03-16 16:09 - 2017-03-04 07:10 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2017-03-16 16:09 - 2017-03-04 07:09 - 08125952 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-03-16 16:09 - 2017-03-04 07:09 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2017-03-16 16:09 - 2017-03-04 07:09 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2017-03-16 16:09 - 2017-03-04 07:09 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2017-03-16 16:09 - 2017-03-04 07:09 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll
2017-03-16 16:09 - 2017-03-04 07:08 - 08076288 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-03-16 16:09 - 2017-03-04 07:08 - 01981440 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2017-03-16 16:09 - 2017-03-04 07:08 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2017-03-16 16:09 - 2017-03-04 07:08 - 00540160 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 02914816 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 02512384 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-03-16 16:09 - 2017-03-04 07:07 - 01512448 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 01064448 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-03-16 16:09 - 2017-03-04 07:07 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 05384192 _____ (Microsoft) C:\Windows\system32\dbgeng.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 04746752 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 04060672 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 03614720 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-03-16 16:09 - 2017-03-04 07:06 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 01013760 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2017-03-16 16:09 - 2017-03-04 07:06 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2017-03-16 16:09 - 2017-03-04 07:05 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2017-03-16 16:09 - 2017-03-04 07:05 - 01328640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2017-03-16 16:09 - 2017-03-04 07:05 - 01121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-03-16 16:09 - 2017-03-04 07:04 - 00998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2017-03-16 16:09 - 2017-03-04 07:04 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2017-03-16 16:09 - 2017-03-04 07:04 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll
2017-03-16 16:09 - 2017-03-04 07:04 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\spaceman.exe
2017-03-16 16:09 - 2017-03-04 07:03 - 01817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2017-03-16 16:09 - 2017-02-22 03:17 - 00448285 _____ C:\Windows\system32\ApnDatabase.xml
2017-03-16 16:09 - 2016-07-16 03:29 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\CspCellularSettings.dll
2017-03-16 16:09 - 2016-07-16 03:28 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAPNCsp.dll
2017-03-16 16:09 - 2016-07-16 03:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\CfgSPCellular.dll
2017-03-16 16:08 - 2017-03-04 08:35 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-03-16 16:08 - 2017-03-04 08:26 - 00794416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2017-03-16 16:08 - 2017-03-04 08:24 - 02482280 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-03-16 16:08 - 2017-03-04 08:24 - 00108384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2017-03-16 16:08 - 2017-03-04 08:22 - 07786336 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-03-16 16:08 - 2017-03-04 08:22 - 02213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-03-16 16:08 - 2017-03-04 08:21 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-03-16 16:08 - 2017-03-04 08:20 - 00128352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2017-03-16 16:08 - 2017-03-04 08:18 - 01181024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2017-03-16 16:08 - 2017-03-04 08:10 - 02189664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-03-16 16:08 - 2017-03-04 08:09 - 07220696 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2017-03-16 16:08 - 2017-03-04 08:09 - 02750384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-03-16 16:08 - 2017-03-04 08:09 - 00658784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2017-03-16 16:08 - 2017-03-04 08:09 - 00402272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-03-16 16:08 - 2017-03-04 08:09 - 00396168 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2017-03-16 16:08 - 2017-03-04 08:08 - 00624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-03-16 16:08 - 2017-03-04 08:07 - 02446704 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2017-03-16 16:08 - 2017-03-04 08:04 - 01063472 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 04674360 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2017-03-16 16:08 - 2017-03-04 08:03 - 04260576 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01989072 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01848072 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01723560 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2017-03-16 16:08 - 2017-03-04 08:03 - 01702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01473048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01454512 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01301112 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01071736 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 01062480 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 00811416 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 00596040 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 00443232 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 00424616 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2017-03-16 16:08 - 2017-03-04 08:03 - 00382272 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2017-03-16 16:08 - 2017-03-04 08:01 - 00128648 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2017-03-16 16:08 - 2017-03-04 07:59 - 01570208 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2017-03-16 16:08 - 2017-03-04 07:58 - 00628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2017-03-16 16:08 - 2017-03-04 07:57 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2017-03-16 16:08 - 2017-03-04 07:36 - 22565376 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-03-16 16:08 - 2017-03-04 07:36 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys
2017-03-16 16:08 - 2017-03-04 07:35 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2017-03-16 16:08 - 2017-03-04 07:34 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2017-03-16 16:08 - 2017-03-04 07:32 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\MCCSEngineShared.dll
2017-03-16 16:08 - 2017-03-04 07:32 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-16 16:08 - 2017-03-04 07:31 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\accountaccessor.dll
2017-03-16 16:08 - 2017-03-04 07:31 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2017-03-16 16:08 - 2017-03-04 07:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2017-03-16 16:08 - 2017-03-04 07:30 - 00535552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-03-16 16:08 - 2017-03-04 07:30 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2017-03-16 16:08 - 2017-03-04 07:30 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2017-03-16 16:08 - 2017-03-04 07:30 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2017-03-16 16:08 - 2017-03-04 07:29 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2017-03-16 16:08 - 2017-03-04 07:29 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2017-03-16 16:08 - 2017-03-04 07:29 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2017-03-16 16:08 - 2017-03-04 07:28 - 00741888 _____ (Microsoft Corporation) C:\Windows\system32\internetmail.dll
2017-03-16 16:08 - 2017-03-04 07:28 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2017-03-16 16:08 - 2017-03-04 07:28 - 00462848 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-03-16 16:08 - 2017-03-04 07:28 - 00394752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2017-03-16 16:08 - 2017-03-04 07:28 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2017-03-16 16:08 - 2017-03-04 07:27 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2017-03-16 16:08 - 2017-03-04 07:27 - 00719872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2017-03-16 16:08 - 2017-03-04 07:27 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2017-03-16 16:08 - 2017-03-04 07:27 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2017-03-16 16:08 - 2017-03-04 07:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2017-03-16 16:08 - 2017-03-04 07:27 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2017-03-16 16:08 - 2017-03-04 07:26 - 00643072 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2017-03-16 16:08 - 2017-03-04 07:26 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2017-03-16 16:08 - 2017-03-04 07:26 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\DavSyncProvider.dll
2017-03-16 16:08 - 2017-03-04 07:26 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs3D.dll
2017-03-16 16:08 - 2017-03-04 07:26 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2017-03-16 16:08 - 2017-03-04 07:25 - 00579584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-16 16:08 - 2017-03-04 07:25 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2017-03-16 16:08 - 2017-03-04 07:24 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2017-03-16 16:08 - 2017-03-04 07:24 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2017-03-16 16:08 - 2017-03-04 07:23 - 00820224 _____ (Microsoft Corporation) C:\Windows\system32\PrintRenderAPIHost.DLL
2017-03-16 16:08 - 2017-03-04 07:23 - 00583680 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2017-03-16 16:08 - 2017-03-04 07:23 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2017-03-16 16:08 - 2017-03-04 07:21 - 01937920 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2017-03-16 16:08 - 2017-03-04 07:21 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2017-03-16 16:08 - 2017-03-04 07:21 - 00809984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Search.dll
2017-03-16 16:08 - 2017-03-04 07:21 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2017-03-16 16:08 - 2017-03-04 07:20 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2017-03-16 16:08 - 2017-03-04 07:20 - 00611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2017-03-16 16:08 - 2017-03-04 07:19 - 23676416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-03-16 16:08 - 2017-03-04 07:19 - 03777536 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2017-03-16 16:08 - 2017-03-04 07:19 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2017-03-16 16:08 - 2017-03-04 07:18 - 01762816 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2017-03-16 16:08 - 2017-03-04 07:18 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 07812096 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2017-03-16 16:08 - 2017-03-04 07:17 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2017-03-16 16:08 - 2017-03-04 07:16 - 13441536 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2017-03-16 16:08 - 2017-03-04 07:16 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2017-03-16 16:08 - 2017-03-04 07:16 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2017-03-16 16:08 - 2017-03-04 07:15 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2017-03-16 16:08 - 2017-03-04 07:14 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2017-03-16 16:08 - 2017-03-04 07:14 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 00937472 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2017-03-16 16:08 - 2017-03-04 07:13 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 13085184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 07654912 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\MSVP9DEC.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2017-03-16 16:08 - 2017-03-04 07:12 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2017-03-16 16:08 - 2017-03-04 07:11 - 03441664 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2017-03-16 16:08 - 2017-03-04 07:11 - 02953216 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2017-03-16 16:08 - 2017-03-04 07:11 - 02611200 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2017-03-16 16:08 - 2017-03-04 07:11 - 01891328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2017-03-16 16:08 - 2017-03-04 07:11 - 00975872 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2017-03-16 16:08 - 2017-03-04 07:11 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2017-03-16 16:08 - 2017-03-04 07:10 - 06664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-03-16 16:08 - 2017-03-04 07:10 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 02095616 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-03-16 16:08 - 2017-03-04 07:10 - 01917440 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 01033216 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 00913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2017-03-16 16:08 - 2017-03-04 07:10 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2017-03-16 16:08 - 2017-03-04 07:09 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2017-03-16 16:08 - 2017-03-04 07:08 - 02800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2017-03-16 16:08 - 2017-03-04 07:08 - 01780224 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-03-16 16:08 - 2017-03-04 07:08 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-03-16 16:08 - 2017-03-04 07:08 - 00792576 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2017-03-16 16:08 - 2017-03-04 07:08 - 00629248 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2017-03-16 16:08 - 2017-03-04 07:07 - 02895872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-03-16 16:08 - 2017-03-04 07:07 - 02370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2017-03-16 16:08 - 2017-03-04 07:07 - 01792512 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2017-03-16 16:08 - 2017-03-04 07:07 - 01490944 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-03-16 16:08 - 2017-03-04 07:07 - 00707584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-03-16 16:08 - 2017-03-04 07:06 - 04708864 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-03-16 16:08 - 2017-03-04 07:06 - 03202048 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2017-03-16 16:08 - 2017-03-04 07:06 - 02820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2017-03-16 16:08 - 2017-03-04 07:06 - 01131008 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-03-16 16:08 - 2017-03-04 07:06 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2017-03-16 16:08 - 2017-03-04 07:05 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2017-03-16 16:08 - 2017-03-04 07:04 - 01826816 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2017-03-16 16:08 - 2017-03-04 07:04 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 01617760 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 01294688 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00655200 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00590952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00343904 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00315232 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00242528 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00142176 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-03-16 16:07 - 2017-03-04 08:35 - 00086368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-03-16 16:07 - 2017-03-04 08:35 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2017-03-16 16:07 - 2017-03-04 08:27 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2017-03-16 16:07 - 2017-03-04 08:24 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-03-16 16:07 - 2017-03-04 08:24 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2017-03-16 16:07 - 2017-03-04 08:24 - 00646688 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-03-16 16:07 - 2017-03-04 08:24 - 00090976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2017-03-16 16:07 - 2017-03-04 08:22 - 01354312 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-03-16 16:07 - 2017-03-04 08:22 - 01172984 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2017-03-16 16:07 - 2017-03-04 08:20 - 00379744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2017-03-16 16:07 - 2017-03-04 08:19 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
2017-03-16 16:07 - 2017-03-04 08:18 - 00764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2017-03-16 16:07 - 2017-03-04 08:15 - 00063328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2017-03-16 16:07 - 2017-03-04 08:13 - 00635456 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2017-03-16 16:07 - 2017-03-04 08:11 - 00266544 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2017-03-16 16:07 - 2017-03-04 08:10 - 02828384 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2017-03-16 16:07 - 2017-03-04 08:09 - 00635864 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2017-03-16 16:07 - 2017-03-04 08:09 - 00178520 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2017-03-16 16:07 - 2017-03-04 08:07 - 02913144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2017-03-16 16:07 - 2017-03-04 08:07 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2017-03-16 16:07 - 2017-03-04 08:07 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2017-03-16 16:07 - 2017-03-04 08:07 - 00989016 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2017-03-16 16:07 - 2017-03-04 08:07 - 00947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2017-03-16 16:07 - 2017-03-04 08:07 - 00811872 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.exe
2017-03-16 16:07 - 2017-03-04 08:07 - 00682808 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2017-03-16 16:07 - 2017-03-04 08:07 - 00110944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvsocket.sys
2017-03-16 16:07 - 2017-03-04 08:07 - 00080224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2017-03-16 16:07 - 2017-03-04 08:03 - 00755648 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2017-03-16 16:07 - 2017-03-04 08:03 - 00523712 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2017-03-16 16:07 - 2017-03-04 08:03 - 00241496 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-03-16 16:07 - 2017-03-04 08:03 - 00160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2017-03-16 16:07 - 2017-03-04 08:03 - 00038768 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
2017-03-16 16:07 - 2017-03-04 07:57 - 00372432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2017-03-16 16:07 - 2017-03-04 07:42 - 07216640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2017-03-16 16:07 - 2017-03-04 07:37 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-03-16 16:07 - 2017-03-04 07:35 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll
2017-03-16 16:07 - 2017-03-04 07:34 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys
2017-03-16 16:07 - 2017-03-04 07:33 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2017-03-16 16:07 - 2017-03-04 07:33 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2017-03-16 16:07 - 2017-03-04 07:33 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2017-03-16 16:07 - 2017-03-04 07:32 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2017-03-16 16:07 - 2017-03-04 07:31 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2017-03-16 16:07 - 2017-03-04 07:31 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2017-03-16 16:07 - 2017-03-04 07:30 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2017-03-16 16:07 - 2017-03-04 07:30 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2017-03-16 16:07 - 2017-03-04 07:30 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2017-03-16 16:07 - 2017-03-04 07:30 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2017-03-16 16:07 - 2017-03-04 07:29 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2017-03-16 16:07 - 2017-03-04 07:29 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll
2017-03-16 16:07 - 2017-03-04 07:29 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2017-03-16 16:07 - 2017-03-04 07:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\BrowserSettingSync.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\PCPTpm12.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\icsvcext.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-03-16 16:07 - 2017-03-04 07:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00460288 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2017-03-16 16:07 - 2017-03-04 07:27 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00450048 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2017-03-16 16:07 - 2017-03-04 07:26 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2017-03-16 16:07 - 2017-03-04 07:25 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2017-03-16 16:07 - 2017-03-04 07:24 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2017-03-16 16:07 - 2017-03-04 07:24 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2017-03-16 16:07 - 2017-03-04 07:24 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2017-03-16 16:07 - 2017-03-04 07:24 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2017-03-16 16:07 - 2017-03-04 07:23 - 03753984 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2017-03-16 16:07 - 2017-03-04 07:23 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2017-03-16 16:07 - 2017-03-04 07:22 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2017-03-16 16:07 - 2017-03-04 07:20 - 01280512 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2017-03-16 16:07 - 2017-03-04 07:20 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2017-03-16 16:07 - 2017-03-04 07:19 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2017-03-16 16:07 - 2017-03-04 07:19 - 01589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2017-03-16 16:07 - 2017-03-04 07:19 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2017-03-16 16:07 - 2017-03-04 07:18 - 17198592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-03-16 16:07 - 2017-03-04 07:16 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2017-03-16 16:07 - 2017-03-04 07:16 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2017-03-16 16:07 - 2017-03-04 07:15 - 01837056 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2017-03-16 16:07 - 2017-03-04 07:14 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2017-03-16 16:07 - 2017-03-04 07:14 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2017-03-16 16:07 - 2017-03-04 07:13 - 05114368 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2017-03-16 16:07 - 2017-03-04 07:13 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2017-03-16 16:07 - 2017-03-04 07:13 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\CameraCaptureUI.dll
2017-03-16 16:07 - 2017-03-04 07:13 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2017-03-16 16:07 - 2017-03-04 07:12 - 01692160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-03-16 16:07 - 2017-03-04 07:12 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2017-03-16 16:07 - 2017-03-04 07:11 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-03-16 16:07 - 2017-03-04 07:11 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2017-03-16 16:07 - 2017-03-04 07:11 - 00821248 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2017-03-16 16:07 - 2017-03-04 07:11 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2017-03-16 16:07 - 2017-03-04 07:10 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2017-03-16 16:07 - 2017-03-04 07:10 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2017-03-16 16:07 - 2017-03-04 07:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2017-03-16 16:07 - 2017-03-04 07:10 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2017-03-16 16:07 - 2017-03-04 07:09 - 01633792 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2017-03-16 16:07 - 2017-03-04 07:08 - 01714688 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll
2017-03-16 16:07 - 2017-03-04 07:07 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-03-16 16:07 - 2017-03-04 07:07 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2017-03-16 16:07 - 2017-03-04 07:06 - 02475008 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-03-16 16:07 - 2017-03-04 07:06 - 02287104 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2017-03-16 16:07 - 2017-03-04 07:06 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2017-03-16 16:07 - 2017-03-04 07:05 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2017-03-16 16:06 - 2017-03-04 08:09 - 00412184 _____ (Microsoft Corporation) C:\Windows\system32\MsMiraDisp.dll
2017-03-16 16:06 - 2017-03-04 08:07 - 00557400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2017-03-16 16:06 - 2017-03-04 07:34 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2017-03-09 20:49 - 2017-03-09 20:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-03-09 20:47 - 2017-03-09 20:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2017-03-09 20:47 - 2017-03-09 20:47 - 00000000 ____D C:\Program Files\7-Zip
2017-03-08 17:00 - 2017-03-08 17:00 - 00000000 ____D C:\Windows\Firmware
2017-03-06 21:50 - 2017-03-06 21:50 - 00046184 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-02-28 17:35 - 2017-03-18 09:51 - 00004034 _____ C:\Windows\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse
2017-02-28 17:35 - 2017-03-17 21:33 - 00004222 _____ C:\Windows\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse
2017-02-27 20:00 - 2017-02-27 20:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools
2017-02-24 17:20 - 2017-02-25 15:20 - 00000000 ____D C:\ProgramData\SupportAssistAgent
2017-02-24 17:20 - 2017-02-24 17:20 - 00003920 _____ C:\Windows\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2017-02-24 17:20 - 2017-02-24 17:20 - 00000000 __HDC C:\ProgramData\{A328A61B-C332-4C8C-A740-42F7F71DC398}
2017-02-24 17:20 - 2017-02-24 17:20 - 00000000 ____D C:\Program Files (x86)\Dell
2017-02-23 18:10 - 2017-02-23 18:10 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows
2017-02-23 18:10 - 2017-02-23 18:10 - 00000000 ____D C:\Program Files\Dell Support Center

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-03-18 11:34 - 2016-12-07 06:52 - 02386020 _____ C:\Windows\system32\PerfStringBackup.INI
2017-03-18 11:34 - 2016-08-01 15:38 - 00965226 _____ C:\Windows\system32\perfh007.dat
2017-03-18 11:34 - 2016-08-01 15:38 - 00223408 _____ C:\Windows\system32\perfc007.dat
2017-03-18 11:33 - 2016-12-20 21:51 - 00000000 ____D C:\Users\Melanie\AppData\LocalLow\Mozilla
2017-03-18 11:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2017-03-18 11:29 - 2016-12-16 17:45 - 00000000 ___RD C:\Users\Melanie\OneDrive
2017-03-18 11:28 - 2016-12-16 17:44 - 00000000 __SHD C:\Users\Melanie\IntelGraphicsProfiles
2017-03-18 11:28 - 2016-12-07 06:46 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-18 11:28 - 2016-07-16 07:04 - 00524288 _____ C:\Windows\system32\config\BBI
2017-03-18 11:10 - 2016-12-20 21:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-03-18 11:02 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\appraiser
2017-03-18 11:02 - 2016-07-16 12:36 - 00000000 ____D C:\Windows\CbsTemp
2017-03-18 11:01 - 2016-12-07 06:46 - 00000000 ____D C:\Windows\system32\SleepStudy
2017-03-18 10:04 - 2016-12-18 17:18 - 00000000 ____D C:\Users\Melanie\AppData\Local\CrashDumps
2017-03-18 09:51 - 2016-12-22 17:17 - 00000000 ____D C:\Users\Melanie\Documents\Outlook-Dateien
2017-03-18 09:51 - 2016-12-16 17:39 - 00000000 ____D C:\Users\Melanie
2017-03-18 09:51 - 2016-12-07 07:21 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-03-18 09:51 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppReadiness
2017-03-18 09:50 - 2016-07-16 12:45 - 00000000 ____D C:\Windows\INF
2017-03-18 09:48 - 2017-01-15 18:33 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2017-03-18 09:48 - 2017-01-15 18:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2017-03-18 09:48 - 2016-12-07 06:55 - 00000000 ____D C:\Program Files (x86)\McAfee
2017-03-18 09:48 - 2016-12-07 06:46 - 00258880 _____ C:\Windows\system32\FNTCACHE.DAT
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\SysWOW64\F12
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\F12
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\PrintDialog
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ___RD C:\Program Files\Windows Defender
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\setup
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\setup
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\oobe
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\ShellExperiences
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\bcastdvr
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-03-17 22:49 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-03-17 19:29 - 2016-12-16 23:20 - 00000000 ____D C:\Windows\system32\MRT
2017-03-17 19:28 - 2016-12-16 23:20 - 138634176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-03-17 19:25 - 2017-01-15 18:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2017-03-17 16:43 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-03-16 16:05 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\LiveKernelReports
2017-03-15 18:05 - 2016-07-16 07:04 - 00032768 _____ C:\Windows\system32\config\ELAM
2017-03-10 06:17 - 2016-12-17 12:46 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-03-10 06:17 - 2016-12-17 12:46 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-03-09 20:49 - 2016-12-07 06:54 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-03-08 20:10 - 2016-12-07 06:55 - 00003126 _____ C:\Windows\System32\Tasks\McAfeeLogon
2017-03-08 20:10 - 2016-12-07 06:55 - 00000000 ____D C:\Windows\System32\Tasks\McAfee
2017-03-05 14:35 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-03-05 14:34 - 2016-12-07 07:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-03-04 08:09 - 2016-12-07 06:52 - 02717184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2017-03-03 16:48 - 2016-12-17 17:46 - 00003280 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2017-03-03 16:48 - 2016-12-16 17:45 - 00002391 _____ C:\Users\Melanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-03-01 20:14 - 2016-12-07 06:54 - 00003186 _____ C:\Windows\System32\Tasks\DropboxOEM
2017-03-01 20:14 - 2016-12-07 06:54 - 00002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 20 GB.lnk
2017-02-27 20:00 - 2016-12-22 17:14 - 00002471 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2017-02-27 20:00 - 2016-12-07 07:03 - 00002585 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2017-02-27 20:00 - 2016-12-07 07:03 - 00002581 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2017-02-27 20:00 - 2016-12-07 07:03 - 00002560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2017-02-27 20:00 - 2016-12-07 07:03 - 00002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2017-02-27 19:59 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\NDF
2017-02-24 17:20 - 2016-12-17 13:12 - 00000000 ____D C:\Users\Melanie\AppData\Roaming\PCDr
2017-02-24 17:20 - 2016-12-07 06:50 - 00000000 ____D C:\Program Files\Dell
2017-02-24 16:38 - 2016-12-16 17:44 - 00000000 ____D C:\Users\Melanie\AppData\Local\Packages
2017-02-23 18:10 - 2016-12-07 06:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2017-02-23 17:58 - 2017-01-03 19:15 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-02-19 20:08 - 2017-01-18 21:45 - 00000000 ____D C:\Users\Melanie\AppData\Local\ElevatedDiagnostics

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2017-01-04 20:10 - 2017-01-04 20:10 - 0000046 _____ () C:\ProgramData\.SimImages

==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2017-03-13 20:21

==================== Ende von FRST.txt ============================
         
Addition ist das hier:

[CODE]Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-03-2017
durchgeführt von Melanie (18-03-2017 11:44:49)
Gestartet von D:\Melanie\Downloads
Windows 10 Home Version 1607 (X64) (2016-12-16 16:37:26)
Start-Modus: Normal
==========================================================
__________________


Alt 19.03.2017, 08:34   #3
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Code:
ATTFilter
==================== Konten: =============================

Administrator (S-1-5-21-768988707-1121164810-1632200572-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-768988707-1121164810-1632200572-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-768988707-1121164810-1632200572-1000 - Limited - Disabled) => C:\Users\defaultuser0
Gast (S-1-5-21-768988707-1121164810-1632200572-501 - Limited - Disabled)
Melanie (S-1-5-21-768988707-1121164810-1632200572-1001 - Administrator - Enabled) => C:\Users\Melanie

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
FW: McAfee Firewall (Enabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated)
BatteryBar (remove only) (HKLM\...\BatteryBar) (Version:  - )
CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 12 - CyberLink Corp.)
Dell Customer Connect (HKLM-x32\...\{4FA72FF9-DD64-43A8-8704-6380A11F11D5}) (Version: 1.4.15.0 - Dell Inc.)
Dell Data Vault (Version: 4.3.9.0 - Dell Inc.) Hidden
Dell Digital Delivery (HKLM-x32\...\{99B7C4B5-DC14-441D-A5B6-7340F682BC81}) (Version: 3.1.1117.0 - Dell Products, LP)
Dell Foundation Services (HKLM\...\{BDB50421-E961-42F3-B803-6DAC6F173834}) (Version: 3.4.16100.0 - Dell Inc.)
Dell Hilfe und Support (HKLM-x32\...\InstallShield_{7E780845-303D-4B46-9746-9D49D94D16AB}) (Version: 2.3.22.0 - Dell Inc.)
Dell Hilfe und Support (Version: 2.3.22.0 - Dell Inc.) Hidden
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.3.6855.72 - Dell)
Dell SupportAssist Remediation (HKLM-x32\...\{ed362924-7699-40ee-b942-6ff42fb5902d}) (Version: 2.0.2.1823 - Dell Inc.)
Dell SupportAssist Remediation (Version: 2.0.2.1823 - Dell Inc.) Hidden
Dell SupportAssistAgent (HKLM-x32\...\{27130E51-9555-408B-8134-7BFF54EDE27B}) (Version: 1.3.0.72 - Dell)
Dell Update - SupportAssist Update Plugin (HKLM\...\{92F651D9-4431-469E-9B11-299D007AF656}) (Version: 2.0.2.1835 - Dell Inc.)
Dell Update (HKLM-x32\...\{49655877-33CF-4C8A-B07C-9694935431E4}) (Version: 1.9.7.0 - Dell Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 21.4.25 - Dropbox, Inc.)
Dropbox 20 GB (HKLM-x32\...\{84D8451D-2ED6-3A59-ABA5-2A447F7C6310}) (Version: 4.1.2.0 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden
File Metadata 64-bit (v1.5) (HKLM\...\{22280171-8EBB-4A1B-8DBC-3AC2CF6B03BC}) (Version: 1.5.6128.0 - Dijji)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.10900.330 - Intel Corporation)
Intel(R) HID Event Filter (HKLM-x32\...\3FB06EEC-013D-4366-9918-71B97DFB84EB) (Version: 1.1.0.313 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.5.0.1015 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4574 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.0.1020 - Intel Corporation)
Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.1.0.21 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{35069AA3-F7B2-4759-96F0-9EE43AACB690}) (Version: 19.00.1621.3340 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.27 - Intel(R) Corporation) Hidden
Intel® Integrated Sensor Solution (HKLM-x32\...\{b3c2a365-876b-4588-97ce-5ab104b07d57}) (Version: 3.0.30.1076 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{552523b2-40ad-46b3-94f6-2b99d0860d5c}) (Version: 18.40.0 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{8B08DDA1-FDE7-4897-8EB6-E0B048A6D88B}) (Version: 1.0.1.618 - Intel Corporation)
ISS_Drivers_x64 (Version: 3.0.30.1076 - Intel Corporation) Hidden
MailStore Home 10.0.1.12148 (HKLM-x32\...\MailStore Home_universal1) (Version: 10.0.1.12148 - MailStore Software GmbH)
Malwarebytes Version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Maxx Audio Installer (x64) (Version: 2.7.9011.0 - Waves Audio Ltd.) Hidden
McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 14.0.12000 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.235 - McAfee, Inc.)
Microsoft Office Home and Business 2016 - de-de (HKLM\...\HomeBusinessRetail - de-de) (Version: 16.0.7766.2060 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-768988707-1121164810-1632200572-1001\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50905.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 52.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 52.0.1 (x86 de)) (Version: 52.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.1.6284 - Mozilla)
Mozilla Thunderbird 45.5.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.5.1 (x86 de)) (Version: 45.5.1 - Mozilla)
NVIDIA GeForce Experience 2.11.2.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.2.66 - NVIDIA Corporation)
NVIDIA Grafiktreiber 362.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 362.49 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7668.2066 - Microsoft Corporation) Hidden
OpenOffice 4.1.3 (HKLM-x32\...\{8D5FCC56-BB9F-4122-923C-71753F50F6F5}) (Version: 4.13.9783 - Apache Software Foundation)
QuickSet64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.37 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8029 - Realtek Semiconductor Corp.)
Realtek PC Camera Driver (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.10586.11224 - Realtek Semiconductor Corp.)
Registrierung eines Dell Produkts (HKLM-x32\...\InstallShield_{85B14AE3-1624-45BE-942B-A528DF6F1CCE}) (Version: 3.0.123.0 - Dell Inc.)
Registrierung eines Produkts (Version: 3.0.123.0 - Dell Inc.) Hidden
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.2.66 - NVIDIA Corporation) Hidden
SimilarImages (HKLM-x32\...\SimilarImages) (Version: 2013.11 - Nils Maier)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{a9872fee-5a55-4ecb-9b0f-b06fedcf14d1}\localserver32 -> C:\Program Files\Waves\MaxxAudio\MaxxAudioPro.exe (Waves Audio Ltd)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-768988707-1121164810-1632200572-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0D73B0B3-DD68-40A4-BD11-7E1F8C44B828} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-12-16] (Dropbox, Inc.)
Task: {12B1A277-3937-4B9E-AD1A-CFBDA85FEDF1} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {1516531E-30FA-4535-BA18-C365FA919809} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation)
Task: {31E3B370-4D42-425C-98B9-8F387E71534B} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLVDLauncher.exe [2015-01-29] (CyberLink Corp.)
Task: {34F0F433-F023-4956-A83E-7D0B53FB571A} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe [2017-02-07] (McAfee, Inc.)
Task: {3516482A-5EB6-4EF2-8354-0F6DF99F10AE} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2017-02-17] (PC-Doctor, Inc.)
Task: {3A928E7F-8C46-4BBA-871E-28F7FF3D957E} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe 
Task: {3E6F077C-1A0A-4B7A-B51A-A51C3C5C1EC0} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2016-11-30] (DropboxOEM)
Task: {4105288C-C371-4794-A96D-3C412C29157C} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe 
Task: {67E7A158-B03E-431D-AB12-44A4387C65E8} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-02-19] (Intel(R) Corporation)
Task: {8A3D0B91-9977-4791-BC87-C77ACB6033A0} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe 
Task: {A3BE40D0-4201-45B7-B7C2-41B08B280B2E} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-12-16] (Dropbox, Inc.)
Task: {ACE45DCC-EF2A-403A-AA3D-5A1E051AF200} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe [2017-02-07] (McAfee, Inc.)
Task: {B8E14816-CC49-4B4B-B242-DBA31EAE7AC7} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [2016-12-09] (McAfee, Inc.)
Task: {BE4CBAF3-1A3C-4260-ABFD-2A4A0F98B11D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation)
Task: {C1EFAF0E-1FA3-46D0-878D-45AE69A2FFC9} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe [2015-06-10] (CyberLink)
Task: {EBF36D7F-171E-470F-BEC6-A7A7D565F030} - System32\Tasks\Dell Cleanup => c:\windows\system32\oem\startmenufix.vbs [2016-09-14] ()
Task: {F8443053-D940-496B-ADBC-E3B3E4365271} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {FA215DF7-6A3F-4730-BA69-9FE5C96BA7D7} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssist.exe [2016-09-09] (Dell Inc.)
Task: {FA2C2CB3-643B-4134-AA02-F726CFF1BE2D} - System32\Tasks\McAfee\McAfee Idle Detection Task
Task: {FC01DCEA-E873-44E7-965E-B395A8BE922F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {FEB51CB0-A1A8-4698-914A-90578266EDF0} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-12-30] (Realtek Semiconductor)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2017-03-16 16:07 - 2017-03-04 08:19 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-12-07 06:54 - 2016-05-01 18:16 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-12-07 06:54 - 2016-04-05 12:03 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2017-01-10 17:46 - 2014-04-14 18:59 - 00253776 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2017-03-18 11:25 - 2017-02-24 06:23 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-03-18 11:25 - 2017-02-24 06:23 - 02264528 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-12-07 06:54 - 2016-04-05 12:04 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2017-03-16 16:07 - 2017-03-04 08:19 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-12-07 06:54 - 2016-04-05 12:03 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-12-07 06:54 - 2016-04-05 12:03 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-12-07 15:42 - 2016-12-07 15:42 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-16 16:09 - 2017-03-04 07:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-16 16:07 - 2017-03-04 07:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-16 16:07 - 2017-03-04 07:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-16 16:07 - 2017-03-04 07:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-03-16 16:07 - 2017-03-04 07:05 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-03-16 16:07 - 2017-03-04 07:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-03-16 16:07 - 2017-03-04 07:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-03-16 16:07 - 2017-03-04 07:06 - 04046848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Signals.dll
2016-12-07 06:54 - 2016-04-05 12:11 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2017-03-09 20:49 - 2017-03-06 21:59 - 00807232 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll
2016-12-16 17:45 - 2017-02-09 03:19 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-12-16 17:45 - 2017-02-09 03:19 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-12-16 17:45 - 2017-02-09 03:19 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-12-16 17:45 - 2017-02-09 03:19 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00020824 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-12-16 17:45 - 2017-02-09 03:20 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 01682768 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2017-03-09 20:49 - 2017-02-09 03:19 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2017-03-09 20:49 - 2017-02-09 03:20 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2017-03-09 20:49 - 2017-02-09 03:19 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-12-16 17:45 - 2017-02-09 03:22 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00038712 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00060736 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2017-03-09 20:49 - 2017-02-09 03:19 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2017-03-09 20:49 - 2017-02-09 03:22 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00381760 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00246608 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00027488 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-12-16 17:45 - 2017-02-09 03:21 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00022336 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00025432 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 01826104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-12-16 17:45 - 2017-02-09 03:20 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 01972536 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 03928896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00531264 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2017-02-28 17:49 - 2017-03-06 22:01 - 00053072 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00133432 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00224064 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00207680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2017-01-23 20:03 - 2017-03-06 22:01 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00069968 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2017-01-23 20:03 - 2017-03-06 22:01 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-01-23 20:03 - 2017-03-06 22:01 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.pyd
2017-01-23 20:03 - 2017-03-06 22:01 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00103232 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWinExtras.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00023896 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00025936 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2017-03-09 20:49 - 2017-02-09 03:17 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2017-03-09 20:49 - 2017-03-06 22:01 - 00033112 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2017-03-09 20:49 - 2016-12-02 22:44 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2017-03-09 20:49 - 2017-03-06 22:01 - 00084288 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2017-03-09 20:49 - 2017-02-09 03:27 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2017-03-09 20:49 - 2017-02-09 03:27 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2017-03-09 20:49 - 2017-03-06 22:01 - 00042816 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00171336 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2017-03-09 20:49 - 2017-03-06 22:01 - 00357688 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-12-16 17:45 - 2017-02-09 03:22 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-12-16 17:45 - 2017-03-06 22:01 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-01-10 17:42 - 2014-12-08 08:28 - 00627672 _____ () C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMediaLibrary.dll
2014-12-08 15:28 - 2014-12-08 15:28 - 00016856 _____ () C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvcPS.dll
2016-12-21 10:24 - 2016-12-21 10:24 - 00134008 _____ () C:\Program Files (x86)\Dell Customer Connect\ServiceTagPlusPlus.dll
2016-05-02 14:46 - 2016-05-02 14:46 - 00134008 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll
2016-09-22 08:56 - 2016-09-22 08:56 - 00133992 _____ () C:\Program Files (x86)\Dell Update\ServiceTagPlusPlus.dll
2016-05-16 21:50 - 2016-05-16 21:50 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-768988707-1121164810-1632200572-1001\...\localhost -> localhost

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-07-16 12:47 - 2016-07-16 12:45 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-768988707-1121164810-1632200572-1001\Control Panel\Desktop\\Wallpaper -> D:\Melanie\Pictures\Camera Roll\2005\Californien 2005\Bild 667.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{AEAB7CC3-0ED4-4652-830F-48B3291EC533}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{40E81DC7-FB5F-4980-BB66-1260D3BDD068}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{02AFED55-9E06-4E07-9B00-7727E1628B35}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{28CCA5F5-BFD7-4839-B9E1-10590B58ADBD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{DF2C60CD-DDBD-4B65-A921-46146070B408}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7898A9AD-A962-4A21-A659-A705622F17FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{A1711DDD-F34D-4765-8B7B-5F0902D88564}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C695F7C4-1DDC-486F-9960-5DD53BB5FECD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7A3E6879-36A5-45C6-9938-0F98D158B88F}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{FFB516B2-391F-4ACE-8DAB-87C326458479}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C961EC58-9410-47DC-AE96-18EF0B2FA3FB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9A25E670-4064-4ECE-B3A6-464229CF8BD4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{66A6F5F7-B1C7-4460-A41F-A5849ADEAF11}] => (Allow) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\PowerDirector12\PDR10.EXE
FirewallRules: [{7778E806-2F27-46C2-9A9C-EBF48A1BDADB}] => (Allow) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe
FirewallRules: [{CDC20356-2D45-4C7E-B7C7-F90FC8C9FA39}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe

==================== Wiederherstellungspunkte =========================

08-03-2017 17:00:29 Windows Update
17-03-2017 19:24:22 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/18/2017 11:36:12 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [10] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:35:24 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [9] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:35:24 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [9] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:33:19 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [9] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:33:19 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [9] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:32:38 AM) (Source: Microsoft-Windows-EFS) (EventID: 4401) (User: STARLORD)
Description: 7.488: Der EFS-Dienst konnte keinen Benutzer für „Unternehmensdatenschutz“ bereitstellen. Fehlercode: 0x80070005.

Error: (03/18/2017 11:32:01 AM) (Source: DellUpService.exe) (EventID: 0) (User: )
Description: [11] ERROR- DoUpdateCheck manifestsSuccessful is invalid, stop updating! #StackInfo#

Error: (03/18/2017 11:31:11 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [4] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:31:10 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [4] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#

Error: (03/18/2017 11:18:06 AM) (Source: DellSupportAssistRemedationService.exe) (EventID: 0) (User: )
Description: [10] ERROR- FindPartObjects() failed to find by both MSFT_PartitionToVolume and find_comp_by_files! #StackInfo#


Systemfehler:
=============
Error: (03/18/2017 11:28:57 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:28:57 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:28:57 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:28:15 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:11:05 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:11:05 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:11:05 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (03/18/2017 11:10:30 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\Windows\System32\IWMSSvc.dll

Error: (03/18/2017 11:10:30 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\Windows\System32\IWMSSvc.dll

Error: (03/18/2017 11:10:29 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\Windows\System32\IWMSSvc.dll


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-7500U CPU @ 2.70GHz
Prozentuale Nutzung des RAM: 26%
Installierter physikalischer RAM: 16253.06 MB
Verfügbarer physikalischer RAM: 11967.68 MB
Summe virtueller Speicher: 18685.06 MB
Verfügbarer virtueller Speicher: 14367.84 MB

==================== Laufwerke ================================

Drive c: (OS) (Fixed) (Total:105.94 GB) (Free:50.84 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.39 GB) (Free:834.39 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 4F361280)

Partition: GPT.

========================================================
Disk: 1 (Size: 119.2 GB) (Disk ID: 4F361062)

Partition: GPT.

==================== Ende von Addition.txt ============================
         

Malwarebytes hat mich ein Programm (Similar Images) in Quarantäne stecken lassen.


Im Januar hatte ich schon einmal den Web Companion Unistaller installiert und einen Trojaner so löschen können, dass das Programm nichts mehr gefunden hat und das auftratende Problem weg war.


Das einzige was mir im Moment am Laptop Probleme bereitet, ist die viele Werbung die ich trotz Add Blocker sehe.
Da ich den Laptop inklusive Windows 10 neu habe, weiß ich nicht ob das nicht normal ist(inklusive anderer Probleme die immer wieder auftreten. Schlechtes Produkt erwischt?)


Würde mich über Hilfe freuen.

Danke
Gruß Kolm
__________________

Alt 19.03.2017, 08:35   #4
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Guten Morgen,

inzwischen habe ich auch den TDSKiller drüber laufen lassen.
Dieser hat nichts gefunden. Trotzdem hier das Log.

Code:
ATTFilter
08:26:03.0034 0x22d8  TDSS rootkit removing tool 3.1.0.12 Nov  7 2016 07:10:01
08:26:03.0034 0x22d8  UEFI system
08:26:17.0205 0x22d8  ============================================================
08:26:17.0205 0x22d8  Current date / time: 2017/03/19 08:26:17.0205
08:26:17.0214 0x22d8  SystemInfo:
08:26:17.0214 0x22d8  
08:26:17.0214 0x22d8  OS Version: 10.0.14393 ServicePack: 0.0
08:26:17.0214 0x22d8  Product type: Workstation
08:26:17.0214 0x22d8  ComputerName: STARLORD
08:26:17.0214 0x22d8  UserName: Melanie
08:26:17.0214 0x22d8  Windows directory: C:\Windows
08:26:17.0214 0x22d8  System windows directory: C:\Windows
08:26:17.0214 0x22d8  Running under WOW64
08:26:17.0214 0x22d8  Processor architecture: Intel x64
08:26:17.0214 0x22d8  Number of processors: 4
08:26:17.0214 0x22d8  Page size: 0x1000
08:26:17.0214 0x22d8  Boot type: Normal boot
08:26:17.0214 0x22d8  CodeIntegrityOptions = 0x0000C001
08:26:17.0214 0x22d8  ============================================================
08:26:17.0383 0x22d8  KLMD registered as C:\Windows\system32\drivers\91403519.sys
08:26:17.0383 0x22d8  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.953, osProperties = 0x19
08:26:17.0618 0x22d8  System UUID: {90534751-6985-A1C0-C6D6-5AEFCCB2B371}
08:26:18.0673 0x22d8  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
08:26:18.0686 0x22d8  Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
08:26:18.0707 0x22d8  ============================================================
08:26:18.0707 0x22d8  \Device\Harddisk0\DR0:
08:26:19.0008 0x22d8  GPT partitions:
08:26:19.0028 0x22d8  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {F77029E5-F1E3-4BB1-90C7-D835F8E85E74}, Name: Microsoft reserved partition, StartLBA 0x800, BlocksNum 0x40000
08:26:19.0028 0x22d8  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {AD1466D8-143D-4167-B62F-B9DFF3A85AFA}, Name: Basic data partition, StartLBA 0x40800, BlocksNum 0x746C6000
08:26:19.0028 0x22d8  MBR partitions:
08:26:19.0028 0x22d8  \Device\Harddisk1\DR1:
08:26:19.0035 0x22d8  GPT partitions:
08:26:19.0036 0x22d8  \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {AE029AF2-A4EC-400E-8EDA-B8D9E2D459EE}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0xFA000
08:26:19.0036 0x22d8  \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {BD465279-869F-4140-903F-4E9DB3322FBC}, Name: Microsoft reserved partition, StartLBA 0xFA800, BlocksNum 0x40000
08:26:19.0036 0x22d8  \Device\Harddisk1\DR1\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {732A21D3-7054-431E-AC08-84027A71C49F}, Name: Basic data partition, StartLBA 0x13A800, BlocksNum 0xD3E2800
08:26:19.0037 0x22d8  \Device\Harddisk1\DR1\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {DE1640CD-01E0-4DED-A8C3-C81B068A47E5}, Name: , StartLBA 0xD51D000, BlocksNum 0xE9000
08:26:19.0037 0x22d8  \Device\Harddisk1\DR1\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {F8C8FAC8-94B7-4BAE-BAD5-00D7A17295E9}, Name: , StartLBA 0xD606000, BlocksNum 0x1636800
08:26:19.0037 0x22d8  \Device\Harddisk1\DR1\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {B98656DD-2599-4EBC-9F30-061D5E7651B4}, Name: , StartLBA 0xEC3D000, BlocksNum 0x23F000
08:26:19.0037 0x22d8  MBR partitions:
08:26:19.0037 0x22d8  ============================================================
08:26:19.0039 0x22d8  C: <-> \Device\Harddisk1\DR1\Partition3
08:26:19.0055 0x22d8  D: <-> \Device\Harddisk0\DR0\Partition2
08:26:19.0055 0x22d8  ============================================================
08:26:19.0055 0x22d8  Initialize success
08:26:19.0055 0x22d8  ============================================================
08:27:55.0917 0x3b74  ============================================================
08:27:55.0917 0x3b74  Scan started
08:27:55.0917 0x3b74  Mode: Manual; SigCheck; TDLFS; 
08:27:55.0917 0x3b74  ============================================================
08:27:55.0917 0x3b74  KSN ping started
08:27:56.0624 0x3b74  KSN ping finished: true
08:27:57.0620 0x3b74  ================ Scan system memory ========================
08:27:57.0620 0x3b74  System memory - ok
08:27:57.0621 0x3b74  ================ Scan services =============================
08:27:57.0718 0x3b74  [ A7901875F89D011C38CF52C98ACF5B29, 782141AB1DD7ACDE6EA08B5BAFDE8BADD05B81D38C18E097D6D9C46102056EB1 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
08:27:57.0907 0x3b74  1394ohci - ok
08:27:57.0919 0x3b74  [ EE1CCC54F75C24727A218F98FC5349DA, 0B0D26640BFA0F551B7087027E572D0BF2C5EAF50A4187C5A7D839180B7FF589 ] 3ware           C:\Windows\system32\drivers\3ware.sys
08:27:57.0944 0x3b74  3ware - ok
08:27:57.0966 0x3b74  [ 73C73E1AA0D4D727A04AAAB120B7F56A, 5D311F11022994410DF5C67914D38B1F0D813EFD181EA234750286A272D67A1A ] ACPI            C:\Windows\system32\drivers\ACPI.sys
08:27:58.0002 0x3b74  ACPI - ok
08:27:58.0008 0x3b74  [ 0935496EF9624B46B935CB35ECE1F205, A22A2A29195505A65E8626D60B00C86C23E0CABC1EB8345EA5ED523516CC21C0 ] AcpiDev         C:\Windows\System32\drivers\AcpiDev.sys
08:27:58.0031 0x3b74  AcpiDev - ok
08:27:58.0036 0x3b74  [ D6794C31F4077B71433988787BAA926E, F16365C2F195AAE94D4740E6C3DF4C0CECEC6393CAD65425DCCD28CDBA6EC51A ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
08:27:58.0054 0x3b74  acpiex - ok
08:27:58.0058 0x3b74  [ FE5F656D6B35089DA39112E74EC6A85A, 5D81EE63998232A5B36DE47FE15B9D04D5BD02234CA133A2462AECA8C60A22ED ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
08:27:58.0089 0x3b74  acpipagr - ok
08:27:58.0093 0x3b74  [ 2F242941E4DFF69B883D77A16F039557, 45C388365317C720654A659A9326B2BC0E9D84929C704654985597D5D620101C ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
08:27:58.0121 0x3b74  AcpiPmi - ok
08:27:58.0125 0x3b74  [ C247E35A21682DA8D0DC3AF9F025FCC5, 455415EE3166B3043AD8A4DD50B688DB74242267FB555642441251EFA823E971 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
08:27:58.0149 0x3b74  acpitime - ok
08:27:58.0156 0x3b74  [ B932E0EE190778D840F1442DFC0F9612, 8780963F14D57279FDD585BE945ED40F24590D32676C7A9EF94002D38B8BA643 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
08:27:58.0172 0x3b74  AdobeARMservice - ok
08:27:58.0199 0x3b74  [ 49B9DB97AFC85DCCBDACDAB2E90085B7, 2A6C2A09F74EA15044F442CCFB54A0F24F105ADB915E5C78F02F59652DC29152 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
08:27:58.0240 0x3b74  ADP80XX - ok
08:27:58.0258 0x3b74  [ 323AA1953ED9C01E23F740FA891FE064, 4CED6E3D61749316CDE28965C913E7ED462539DAAD637A29484F62AF47AD650D ] AFD             C:\Windows\system32\drivers\afd.sys
08:27:58.0286 0x3b74  AFD - ok
08:27:58.0294 0x3b74  [ 23522E5D581F7722B1B5B86737CAE39C, FB81ABD304376A1E87B65F5E1B34477B628CEDB2091C5D754DE97464B6050C5B ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
08:27:58.0325 0x3b74  ahcache - ok
08:27:58.0330 0x3b74  [ D0905D4A945D01D4B28DB9E1BD5985F7, CF389CBCD3B99D1BAE34A42F723F1005C32213A394F691978076D3DF1727715C ] AJRouter        C:\Windows\System32\AJRouter.dll
08:27:58.0353 0x3b74  AJRouter - ok
08:27:58.0358 0x3b74  [ 8FD51B3B35707A66080D7C8CB05E792D, FE52F3DC280D208FDDC75F6E3294B8D601E0D86F9BD3DB1ACC8FC296AC74C23B ] ALG             C:\Windows\System32\alg.exe
08:27:58.0383 0x3b74  ALG - ok
08:27:58.0389 0x3b74  [ DF21E05E41E5AC3F13F304D91457649A, 7F48F2AD1DBE89A261113C76D7C23AD7D87D5599BCC31F8A558A8A10B81BF521 ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
08:27:58.0416 0x3b74  AmdK8 - ok
08:27:58.0421 0x3b74  [ 45D0AA4BB90B821DF92E8F19ABED0C5E, EA87A6E98DB3C5A88A844C04C6934E870B7004E783AA5211722115382A211B90 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
08:27:58.0453 0x3b74  AmdPPM - ok
08:27:58.0458 0x3b74  [ 74FFBC43B4B899C9A8CA06A892F2CE73, 8D599363C7F3D373F1859BAA4D06DD0F40BE78B56BE52B74DE6EA6EF99452004 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
08:27:58.0475 0x3b74  amdsata - ok
08:27:58.0483 0x3b74  [ AAB0F1D8D7E54761ABAB13AF161F1680, CF847990EFFA2828F5B1DB1A68F08A6C2C918E9612EDFFCF95C36BCABBBEA272 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
08:27:58.0506 0x3b74  amdsbs - ok
08:27:58.0512 0x3b74  [ F91BAAC4237C40352A807000F3B716F9, F7EFA08E5067C3D419C9D21EDB880BA08883A80DDF35F8B42EC3AB293FE5E03E ] amdxata         C:\Windows\system32\drivers\amdxata.sys
08:27:58.0527 0x3b74  amdxata - ok
08:27:58.0533 0x3b74  [ BC121C099C6C659126AD2102AFDFF8CF, 42B5EE293BDD7ADCE48173A01B30D8452564B9DA225EAF25E9292FE77C0FCF3E ] AppID           C:\Windows\system32\drivers\appid.sys
08:27:58.0549 0x3b74  AppID - ok
08:27:58.0555 0x3b74  [ 74A24CF946279111D7F203B36569EC02, FD67D36804744B4FE3E20BA891852575E6C2DA6515643B2F4B4210118B0FCCDA ] AppIDSvc        C:\Windows\System32\appidsvc.dll
08:27:58.0586 0x3b74  AppIDSvc - ok
08:27:58.0592 0x3b74  [ 79A87DD43331290A276C02DC396BF530, D0781DC027EE60C94831A2C9C3DD741F8F2100A253CD847E7FCFA59919014278 ] Appinfo         C:\Windows\System32\appinfo.dll
08:27:58.0614 0x3b74  Appinfo - ok
08:27:58.0617 0x3b74  [ 68190E2BADF23BD782344970E5B5DE9E, 95D30EC12C7FDF5822CED8BC2F17669A6687A2FB262B4F0D15C8DCFF4E9AB33D ] applockerfltr   C:\Windows\system32\drivers\applockerfltr.sys
08:27:58.0645 0x3b74  applockerfltr - ok
08:27:58.0658 0x3b74  [ 32155E028491267CF2DB6085A0B7E359, 562831841293E4849CD01992DECE39B9B3C0835DCD352994CA2E2FE1C76A7CB3 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
08:27:58.0693 0x3b74  AppReadiness - ok
08:27:58.0742 0x3b74  [ 465CD915B245BB6B788A38BE19D47950, 36FA30C67D581FF158EF1D621938CF93102110635AC9298C6E002E7B87900EBD ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
08:27:58.0827 0x3b74  AppXSvc - ok
08:27:58.0835 0x3b74  [ E6AB1F0B4C3D4E0D2A88332D76FECD03, 0D3003EB979DA4546DCDD055011E24F13E34F683F02C9801CAC564D1809F11D2 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
08:27:58.0849 0x3b74  arcsas - ok
08:27:58.0853 0x3b74  [ 61C5A480C43E7E8E49C42869F49D0D3E, E610F0E4315ABA1D90AD4A1D7A68ABA2ACBB7FCA89E9D1798470365D52592D55 ] AsyncMac        C:\Windows\System32\drivers\asyncmac.sys
08:27:58.0873 0x3b74  AsyncMac - ok
08:27:58.0877 0x3b74  [ A10F989A812B57B9695F6C305907C9C6, E2B292610079AA1A10696138DE8130905A8A834B75A8DED7EBF8B6732B77A0F4 ] atapi           C:\Windows\system32\drivers\atapi.sys
08:27:58.0893 0x3b74  atapi - ok
08:27:58.0903 0x3b74  [ 2DC3D53FFA0D10EB8C911AE2DB7BF4CF, 8E0A4B5D610D487A216E70396A99ACC1BEA12C46A6681B1A39CD0FD01EDD406A ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
08:27:58.0930 0x3b74  AudioEndpointBuilder - ok
08:27:58.0952 0x3b74  [ 7B993290E7691C446C16A56A431669BA, 004551934E27E9FC1A939C9BD1DEB850A216CBED9B18CB3317920F5656D9F6BF ] Audiosrv        C:\Windows\System32\Audiosrv.dll
08:27:58.0998 0x3b74  Audiosrv - ok
08:27:59.0006 0x3b74  [ 6D90FDA2DC364B8EA1420F2F81585CC3, 10E6F23A213CFE49BE04BB7D366ADD4028D61D7114FEC67C30B5467DF6B36D4F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
08:27:59.0030 0x3b74  AxInstSV - ok
08:27:59.0044 0x3b74  [ 61BAC67048CA5C1D08C48FCC8012B613, 71B2A466FC38DA1029B471FBD2541D8FE359751A7B212AE0F420DB3645916450 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
08:27:59.0069 0x3b74  b06bdrv - ok
08:27:59.0075 0x3b74  [ 68F72B05EBC6D1779C0D60A147C7CA0B, AA1C857BEE34865C6B901157FC22570D4CF45D950708BAD7AA333F120F2B474C ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
08:27:59.0095 0x3b74  BasicDisplay - ok
08:27:59.0099 0x3b74  [ 23156E7EDAF613D839E2839746B168D3, CAEF8F9C7D3A338BD747AC9D5BFBE730D77B911E87BCF532EBB75E1F80916AFA ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
08:27:59.0116 0x3b74  BasicRender - ok
08:27:59.0121 0x3b74  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\Windows\System32\drivers\bcmfn.sys
08:27:59.0142 0x3b74  bcmfn - ok
08:27:59.0146 0x3b74  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
08:27:59.0163 0x3b74  bcmfn2 - ok
08:27:59.0173 0x3b74  [ 2B4D3AEAAD02954F8C191BC2D67949AD, 8237C9AD556CFAF7442FF60F78608104BC17CE3134C89D986D49C38CC60B1518 ] BDESVC          C:\Windows\System32\bdesvc.dll
08:27:59.0204 0x3b74  BDESVC - ok
08:27:59.0208 0x3b74  [ 0A508274355745EEF01C6BE3198D02C4, E2DB08AEE2368FA95FDB357BB31EA4EBF31679C3E72E109DB3D7CD1B5F7B828E ] Beep            C:\Windows\system32\drivers\Beep.sys
08:27:59.0229 0x3b74  Beep - ok
08:27:59.0245 0x3b74  [ 5125CBB61AC81168366BEB290399CB8E, B2A3095D45E2114DE2BD0E5A3AE20B3CE95EE517A35B9E1EAD05E231F38DBDCF ] BFE             C:\Windows\System32\bfe.dll
08:27:59.0285 0x3b74  BFE - ok
08:27:59.0307 0x3b74  [ D876C567AB767258036F05E4766189FD, DE8BA67325CB64495BD454B8F9DDCAE82636253844FC68B360C7E1CF5D51DD0E ] BITS            C:\Windows\System32\qmgr.dll
08:27:59.0356 0x3b74  BITS - ok
08:27:59.0363 0x3b74  [ 9CD2A4821DE379305CACB2E99AD8953A, 89D700DFC3C59ACBBADB48954A28C0EBF8D6A11A9E63837689DD891868E43188 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
08:27:59.0386 0x3b74  bowser - ok
08:27:59.0402 0x3b74  [ 6A15C5140B6F7D9479A32276AC2BA108, 0A8C6DB88148C6DB61226DD2FF816BDF3FED9E7A60EF17CCA17FA7D9EEC01C71 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
08:27:59.0439 0x3b74  BrokerInfrastructure - ok
08:27:59.0446 0x3b74  [ B3F32C630DD3F2F6A6091B89CFF13641, 7A9C53EF9AB9FF1DC392FD711B194A101DB36CA5BC799E817BEB446741089B76 ] Browser         C:\Windows\System32\browser.dll
08:27:59.0468 0x3b74  Browser - ok
08:27:59.0472 0x3b74  [ 722036C26D2C4E50EC2A2EC5FD678846, 999468038AE01F0FF6881F4B2A2CB67BC636641188E95F10729E08ADBC3CB3DE ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
08:27:59.0491 0x3b74  BthAvrcpTg - ok
08:27:59.0497 0x3b74  [ 77630A51FAF6A07922FEE835F4DED8F6, E096A9DC12885FD19575346A9693A66D0DDFF96C3155AD2040F2BF4249D1D609 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
08:27:59.0518 0x3b74  BthEnum - ok
08:27:59.0523 0x3b74  [ C2E31BE025D46D189E38DD1EDF07837A, 656528DCAAAF485EC57EE5C3021E96736634DE3B9C39CBCD2728E055ABD4C0A5 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
08:27:59.0545 0x3b74  BthHFEnum - ok
08:27:59.0550 0x3b74  [ F7CD605FC0B0B22F3F6F247595E3A655, 1CD9140DE5415DDBEACD8667E63E5C95FD64D693B56302A0474E693E578BEAB0 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
08:27:59.0570 0x3b74  bthhfhid - ok
08:27:59.0580 0x3b74  [ B157D72BDA6A6DD6E9DC6BF338CD0CF8, B2AC26AE214151E5AD93DED78256BC0295DBF0133C854E7DEE4CD776D9C9A349 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
08:27:59.0603 0x3b74  BthHFSrv - ok
08:27:59.0611 0x3b74  [ 0AB691736D4D4029444AF62DE59CFD37, C1C22EFBF67331B87AB261BBF9813009257437BA02F728EC2DFA1A49ECC5FABF ] BthLEEnum       C:\Windows\system32\DRIVERS\BthLEEnum.sys
08:27:59.0639 0x3b74  BthLEEnum - ok
08:27:59.0644 0x3b74  [ 535DC41A33630AE4C262406F9E981C03, 599332589AA28D04189E19B87A4AE6FEEB60B40A7BC6E3B11240DA363A981C29 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
08:27:59.0664 0x3b74  BTHMODEM - ok
08:27:59.0670 0x3b74  [ 224BA1CB1F3C702F0D001D2AFC9793B1, F139F6F78C716E1167E16530AE31E4A26C2A69467BCB08A9A52A101B31DF7771 ] BthPan          C:\Windows\System32\drivers\bthpan.sys
08:27:59.0691 0x3b74  BthPan - ok
08:27:59.0711 0x3b74  [ 851ED52AE3E62CD5374BD4BBFF7A9DAB, 381281CB7D8FC4026092330B06E24BC84EEF79EE3C97E21900D950D7D9AB2FC3 ] BTHPORT         C:\Windows\System32\drivers\BTHport.sys
08:27:59.0748 0x3b74  BTHPORT - ok
08:27:59.0755 0x3b74  [ 96932F631F5CB9F5D1C8F99A71568EF3, 5E4C8955A2EE9DC76B4EBC383653EB753D76D6B017E1A5DD553AC16094D7F12A ] bthserv         C:\Windows\system32\bthserv.dll
08:27:59.0779 0x3b74  bthserv - ok
08:27:59.0785 0x3b74  [ DC5955E589C55E2313D69B64E1A183F3, 06D703246D0813DE53D62885C8B7381135783673FF4BDDD5CC38FEB54901BB76 ] BTHUSB          C:\Windows\System32\drivers\BTHUSB.sys
08:27:59.0806 0x3b74  BTHUSB - ok
08:27:59.0810 0x3b74  [ 23F9EF739F685E07482116425E7879AA, 0EBDF96A49A319C0BCF6F51FB6C8C392C017E1738B950C19C91FF43E14D73143 ] buttonconverter C:\Windows\System32\drivers\buttonconverter.sys
08:27:59.0830 0x3b74  buttonconverter - ok
08:27:59.0836 0x3b74  [ 60EB6A4CE3E21887D302350631C16F26, 4270EFA22285C1A9336CF1220761E416950D2DA9C6A40D1D8452686CD5040DAB ] CapImg          C:\Windows\System32\drivers\capimg.sys
08:27:59.0857 0x3b74  CapImg - ok
08:27:59.0862 0x3b74  [ F8FB51B9EF6372610E9B31A1D86B62FC, 7461584A8B39AC549AD7BAFFA509D4CD81EEE542808BC8EFC285863A0AE6432D ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
08:27:59.0879 0x3b74  cdfs - ok
08:27:59.0889 0x3b74  [ 2E6612376D257F74781F2EF1F869D8C3, 908B0DECB9F098F7F11B029A03C06C67FB52E5E8BEA42033A2B579D3B3686AB8 ] CDPSvc          C:\Windows\System32\CDPSvc.dll
08:27:59.0921 0x3b74  CDPSvc - ok
08:27:59.0931 0x3b74  [ A93C9B9EBE2FDE5A536000D72CC17F7F, 9793CFAE8BE8C6B5B39A1D276577965FBB2CE131325A410B7C68BD23492ADAAF ] CDPUserSvc      C:\Windows\System32\CDPUserSvc.dll
08:27:59.0960 0x3b74  CDPUserSvc - ok
08:27:59.0971 0x3b74  [ 613D0137C269187FA298A157E3D14A18, 84BC268525F14BB27202CE242BF94D9E83BC91B50A0335908574F31B29A2F04D ] cdrom           C:\Windows\System32\drivers\cdrom.sys
08:27:59.0990 0x3b74  cdrom - ok
08:27:59.0997 0x3b74  [ E189727B3C9909A85B33A16B290E192E, 2C273A9F44EDC5E5435904E9681973854B2F3EBB6100021BB139FF0CCCE9BF20 ] CertPropSvc     C:\Windows\System32\certprop.dll
08:28:00.0024 0x3b74  CertPropSvc - ok
08:28:00.0028 0x3b74  [ 06FB15E8F933F22A59C79E5D87B41F64, 26FE8291AFBD0242171A17252B74800304F338A31B674190EDAA39D20DC00FF3 ] cfwids          C:\Windows\system32\drivers\cfwids.sys
08:28:00.0048 0x3b74  cfwids - ok
08:28:00.0058 0x3b74  [ 0AED948DA8D5F08B3D6F12E4E2089736, 95E538E81DDBC83492C5F3820C82C78F050B4D74ACF12D7970EC84F93581AE29 ] cht4iscsi       C:\Windows\system32\drivers\cht4sx64.sys
08:28:00.0078 0x3b74  cht4iscsi - ok
08:28:00.0119 0x3b74  [ 0002A0FDE087C1657AB31CE73077539C, 4DD6210B67E9633AB3240371590869DC833A4C986C74FC12A5D4FFFFD361848A ] cht4vbd         C:\Windows\System32\drivers\cht4vx64.sys
08:28:00.0170 0x3b74  cht4vbd - ok
08:28:00.0176 0x3b74  [ 6B4F90A287D75CCD78694F6790C911B2, 73D7C31E9F475FA3FD568FCA9A953F968729AA114F63C06F38BF5198DAD67BD8 ] circlass        C:\Windows\System32\drivers\circlass.sys
08:28:00.0192 0x3b74  circlass - ok
08:28:00.0201 0x3b74  [ B72D26074E72A757D788FB1BEF8B2F2E, 36847C5315AFB9A5EC66AD3EF2A09C24C0FAF669FDF0831F78600F4609352CB4 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
08:28:00.0218 0x3b74  CLFS - ok
08:28:00.0281 0x3b74  [ CB6AC02C92BBA30187EA4591D771660E, B3BB15DC814F131672D864CAAD1537933EE83C9029DF143E5E105077EA4D7F30 ] ClickToRunSvc   C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
08:28:00.0356 0x3b74  ClickToRunSvc - ok
08:28:00.0395 0x3b74  [ C0252538508FE7E831B4C0D8CF7989BB, 7D53BB51E9315978FDF769784B9C526DB2740642F807FF4807E73E6DC80D6561 ] ClientAnalyticsService C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe
08:28:00.0435 0x3b74  ClientAnalyticsService - ok
08:28:00.0453 0x3b74  [ E133CFCBFABB3CB517BE9F42FEA5887C, DA699CDD5F3CC427354540C907BD24CCA7BAC3112C53918EB611CB4EEC7611DA ] ClipSVC         C:\Windows\System32\ClipSVC.dll
08:28:00.0479 0x3b74  ClipSVC - ok
08:28:00.0484 0x3b74  [ EEC3A4A98AE1A337E3CD1483AD6F2E15, 764DA329984A95E092F5C15116DA34FA7FC27216C0862365D4BF10ADC97EC5C5 ] clreg           C:\Windows\System32\drivers\registry.sys
08:28:00.0504 0x3b74  clreg - ok
08:28:00.0515 0x3b74  [ 5C646CAC91E086F7FF53C7F2E857F263, 67AF6FBF88B7EE530A9BA53833EAFCC78BF8362E82BF81180858F1D17DFC73E6 ] CLVirtualDrive  C:\Windows\system32\DRIVERS\CLVirtualDrive.sys
08:28:00.0528 0x3b74  CLVirtualDrive - ok
08:28:00.0533 0x3b74  [ 429623E266EF067A44E8CF148E9DFB9B, A48AA85ACC52C7AD73DB2D6148B3F9FB5EAC33C8F8C5BB6D7D0A9D84B7C08E11 ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
08:28:00.0552 0x3b74  CmBatt - ok
08:28:00.0565 0x3b74  [ 43D1405674332A7883A68C27ACE08359, 789ACBF3A50904B47C847D9262F1BA00F837A7EF705BCC29EA85216DBC965288 ] CNG             C:\Windows\system32\Drivers\cng.sys
08:28:00.0588 0x3b74  CNG - ok
08:28:00.0593 0x3b74  [ 3DB10C59405931E2C72EFB82C1AF97D1, 100B5450A70988DB1C1F8A5FDBB3553AF1A0D47B42A5AC71460DB92E26010CE6 ] cnghwassist     C:\Windows\system32\DRIVERS\cnghwassist.sys
08:28:00.0608 0x3b74  cnghwassist - ok
08:28:00.0623 0x3b74  [ 34C935AF2A414572B412B3556586D783, 912981B88B0796576ECCD5EBE0C4728EC02D5D6A96B039447DCBA59B2583F25E ] CompositeBus    C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_a140581a8f8b58b7\CompositeBus.sys
08:28:00.0642 0x3b74  CompositeBus - ok
08:28:00.0645 0x3b74  COMSysApp - ok
08:28:00.0650 0x3b74  [ 44EEEB2382F566999287E13F2067693C, 53A4A0C85EAD38030FF2078C67465E3710ECD03A08FF34E1E67B2E3E1CC70043 ] condrv          C:\Windows\system32\drivers\condrv.sys
08:28:00.0666 0x3b74  condrv - ok
08:28:00.0683 0x3b74  [ 0E965F9D654C64EAA8970DE25AF32839, 91709A4561A9536B4A9B00BAB8D7B63D5B904065375AF37598C2B0A2C5A8E47C ] CoreMessagingRegistrar C:\Windows\system32\coremessaging.dll
08:28:00.0714 0x3b74  CoreMessagingRegistrar - ok
08:28:00.0731 0x3b74  [ 70D9099B70AA9365FE53DC85AB02387A, 22CC0C959CF0DAB56CC17B692EBD3E66B7D79226A643BE348FEC08098061CA08 ] cphs            C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHeciSvc.exe
08:28:00.0752 0x3b74  cphs - ok
08:28:00.0764 0x3b74  [ 28608D9F70C0295EBFC3024D127CC96E, 420A07D6B596FB94B924C78BFA2CDCC3C248F4121CA630745E1CF45FB72D57A2 ] cplspcon        C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\IntelCpHDCPSvc.exe
08:28:00.0782 0x3b74  cplspcon - ok
08:28:00.0790 0x3b74  [ 5F06CAC4B09250CDDDD0180A08162924, A2EB0A57225E65FC264CFC9FAD858D8B54A015CDAE3DC904B1C4E9AAB40B1F06 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
08:28:00.0812 0x3b74  CryptSvc - ok
08:28:00.0818 0x3b74  [ 3BBD0073265DA6D3EFBA54B26E5D8236, 3C10C8BEC0D8AC41A3FBD589F41A83D6345C1FDD04B8B99063B2F5670CF10B18 ] dam             C:\Windows\system32\drivers\dam.sys
08:28:00.0831 0x3b74  dam - ok
08:28:00.0836 0x3b74  [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate        C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
08:28:00.0847 0x3b74  dbupdate - ok
08:28:00.0852 0x3b74  [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem       C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
08:28:00.0864 0x3b74  dbupdatem - ok
08:28:00.0868 0x3b74  dbx - ok
08:28:00.0872 0x3b74  [ 5B7A202DECF962A6C9A2E759551BF05E, 6BA11F7728C0A13EA4B6EF478584AE0117BA5909346FF6FE20308674F34701D7 ] DbxSvc          C:\Windows\system32\DbxSvc.exe
08:28:00.0884 0x3b74  DbxSvc - ok
08:28:00.0903 0x3b74  [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C946708E955A2909 ] DcomLaunch      C:\Windows\system32\rpcss.dll
08:28:00.0944 0x3b74  DcomLaunch - ok
08:28:00.0952 0x3b74  [ AE9F09F87755C18904656CB4F59F351D, B352A43B3B68B497D87B49C302AF3F37F36D56D49878AE3785C3D43597E5DC57 ] DcpSvc          C:\Windows\system32\dcpsvc.dll
08:28:00.0977 0x3b74  DcpSvc - ok
08:28:00.0981 0x3b74  [ 3802CBF4BDDE6F99974B27EE1782E5F9, 51562209E16A1C0247D73D7BFC8827AE4A2E57AF11350379A8FBA1EC44E56E54 ] DDDriver        C:\Windows\system32\drivers\DDDriver64Dcsa.sys
08:28:00.0991 0x3b74  DDDriver - ok
08:28:01.0002 0x3b74  [ ABBD3EE724117242E28D31F19FBCFF03, 68EA91A969DD80A5DE28B0A8EAEB308837183713559C2C2FAEF991858C971393 ] defragsvc       C:\Windows\System32\defragsvc.dll
08:28:01.0034 0x3b74  defragsvc - ok
08:28:01.0040 0x3b74  [ 04D91223860DB9B4169909A01CD66819, 0B598306E99BF9AF036908C9333D34A81F7A9FF292213A9EB583F3F4C8FE2CB1 ] Dell Customer Connect C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
08:28:01.0051 0x3b74  Dell Customer Connect - ok
08:28:01.0057 0x3b74  [ 802FC4E1B3E24185C731C81CD629F41D, FDA38B16E3D8CB1C6D7621AAD25663B954B7015F21F84524DAE2BB04923A996F ] Dell Foundation Services C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
08:28:01.0066 0x3b74  Dell Foundation Services - ok
08:28:01.0071 0x3b74  [ 46F12084936F42742A1A5BA9D3BE064A, 07A7BEF3AD0DE93B397E42FD8FCFE193AD62B4F21EE3A7297AEB653AD1586225 ] Dell Help & Support C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
08:28:01.0080 0x3b74  Dell Help & Support - ok
08:28:01.0085 0x3b74  [ 85469E607D9ECA7D0CA99796616CF417, 98732A17591AA45BD1E947316194619345421D09795031B2BDC55B9BA34CC3D1 ] Dell SupportAssist Remediation C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
08:28:01.0096 0x3b74  Dell SupportAssist Remediation - ok
08:28:01.0139 0x3b74  [ 19C5F4EBA0B9670A923EEDCD97526B3A, 6D02BC69FD8D2099098255C7776E90FD98CAB343473D92238CB5F7DE9B080A89 ] DellDataVault   C:\Program Files\Dell\DellDataVault\DellDataVault.exe
08:28:01.0234 0x3b74  DellDataVault - ok
08:28:01.0251 0x3b74  [ 5F57C0E23FB5FC5F3DDE5ACAF5D299D7, 381EB4B54B77CA061AFA484F5BF98B2518D3C7FD54406631C6C7F43E3132C4A3 ] DellDataVaultWiz C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
08:28:01.0267 0x3b74  DellDataVaultWiz - ok
08:28:01.0275 0x3b74  [ 950FF1890AE7FE471D4465927EC5635F, 47B8F11038F625EF308F45DD466E05DC630A2BB8AE944DE864D16D4067ECCE85 ] DellDigitalDelivery c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
08:28:01.0290 0x3b74  DellDigitalDelivery - ok
08:28:01.0296 0x3b74  [ DC3BD578642252FD9569B9CD75CEF81E, 63F44BC19389C19BA9F9E974BF2E5236AF7F66D9076943B9CF46775264BBE413 ] DellProf        C:\Windows\system32\drivers\DellProf.sys
08:28:01.0308 0x3b74  DellProf - ok
08:28:01.0316 0x3b74  [ 8A20E1828EC9861BBFE72B0E6362C108, 12C2316A4FB997D87EF75611D75AD3E52009119D1069FE9CE8CCAA6E6FEAF1A4 ] DellUpdate      C:\Program Files (x86)\Dell Update\DellUpService.exe
08:28:01.0332 0x3b74  DellUpdate - ok
08:28:01.0345 0x3b74  [ DD74F18227ACC837D9856E24282D446D, 6A760E44CD897952538CDFA8895FE11263D51AAA79CFF24C01F3862E919DA478 ] DeviceAssociationService C:\Windows\system32\das.dll
08:28:01.0386 0x3b74  DeviceAssociationService - ok
08:28:01.0393 0x3b74  [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3FBB74A27266C9C ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
08:28:01.0427 0x3b74  DeviceInstall - ok
08:28:01.0432 0x3b74  [ CDF1B1B5C5951111791C236B2696C7F8, BF6C4BA545C8827B40DB69890DB4D2B2F9C583C5E3CFBDFD370B05891141458D ] DevQueryBroker  C:\Windows\system32\DevQueryBroker.dll
08:28:01.0456 0x3b74  DevQueryBroker - ok
08:28:01.0463 0x3b74  [ 4BC21E937E9F9F408672D2C2CBE4A153, 2F27560D09D184ABB7B4415146F5B8DE56C84FF74A4042596635EF896E39CBC4 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
08:28:01.0489 0x3b74  Dfsc - ok
08:28:01.0500 0x3b74  [ F0D4400BA0F08610D9A551B15BF10B76, 83EB8FB272FC2DD2CC0659C2FB90AD0DAE88A88AB3951E03BCD933A25B601E10 ] Dhcp            C:\Windows\system32\dhcpcore.dll
08:28:01.0537 0x3b74  Dhcp - ok
08:28:01.0544 0x3b74  [ CA7FEDDFCF61EF15A09C54DA2C07C49F, 346EF7709BA9E6BD48592B86FA46F9D956C847EF91F4980EEAD98269D0F0EF67 ] diagnosticshub.standardcollector.service C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
08:28:01.0573 0x3b74  diagnosticshub.standardcollector.service - ok
08:28:01.0621 0x3b74  [ A9122954D36E4EDFA3E3DB35DCA9E048, 350692BEE164CED1E0BD1A71D1BC90D5B6E0B0A5D1CB6633D115C58FF8A09B92 ] DiagTrack       C:\Windows\system32\diagtrack.dll
08:28:01.0704 0x3b74  DiagTrack - ok
08:28:01.0711 0x3b74  [ 35B9D46560339A5A7F0CAC6ED702C817, F70480B01533B7029F90E2DE297E9E829660300DDE7A7D009B0AC2684E7691A7 ] disk            C:\Windows\system32\drivers\disk.sys
08:28:01.0722 0x3b74  disk - ok
08:28:01.0733 0x3b74  [ 00DF9E7ACB0376294E3D602AB6625B3E, 1D53DF89826A71FEC48B7602DD2F3E3B09024782B3CC5C787517DC374CC586C8 ] DmEnrollmentSvc C:\Windows\system32\Windows.Internal.Management.dll
08:28:01.0759 0x3b74  DmEnrollmentSvc - ok
08:28:01.0763 0x3b74  [ 815F45161A4571C2C44491564F3D5968, 32E7AE8414A178CE429C0CDFCF718E3C11C705FB3155EA5CA0EAD48AAE507B01 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
08:28:01.0784 0x3b74  dmvsc - ok
08:28:01.0789 0x3b74  [ 6E5EE6E420FECD64DE463C5F01CBFE71, F173C56895E80AA03D70CD78B3AB659C2EEAACFF43BE3B6EF3939D6F4AD4F62D ] dmwappushservice C:\Windows\system32\dmwappushsvc.dll
08:28:01.0819 0x3b74  dmwappushservice - ok
08:28:01.0827 0x3b74  [ 86E507EE1457D7FA463BBF05BA76EB1E, 2D2D05CED57C22F41684DC6DD00ACECDF708407493286B2D4007068154E436FF ] Dnscache        C:\Windows\System32\dnsrslvr.dll
08:28:01.0849 0x3b74  Dnscache - ok
08:28:01.0859 0x3b74  [ 8F46B4C3F9BA19C26A26D0A11137B20B, BA0A66DBA98D77FD85A7CD2D4593F2B2A1A3B4D32BBECBCFFBEB5A54DCB0D8ED ] dot3svc         C:\Windows\System32\dot3svc.dll
08:28:01.0881 0x3b74  dot3svc - ok
08:28:01.0887 0x3b74  [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4            C:\Windows\system32\DRIVERS\Dot4.sys
08:28:01.0897 0x3b74  dot4 - ok
08:28:01.0901 0x3b74  [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print       C:\Windows\System32\drivers\Dot4Prt.sys
08:28:01.0909 0x3b74  Dot4Print - ok
08:28:01.0913 0x3b74  [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
08:28:01.0921 0x3b74  dot4usb - ok
08:28:01.0925 0x3b74  [ 204A3E7B9EBE96E8E17D52A7B025AFB6, 79BD62164D924AE8B471C9EA8D09B1F0CD428E94472A80B4F1656C3C8627C715 ] DpmLiteDrv      c:\Program Files\Dell\QuickSet\DpmLiteDrv64.sys
08:28:01.0935 0x3b74  DpmLiteDrv - ok
08:28:01.0941 0x3b74  [ CA09EAEE92C6FDDC6B05057F11A0372D, 14DB5C186B69644AA93C445BF31CC9670204F95A47B77B6EACB19B4A316378AD ] DPS             C:\Windows\system32\dps.dll
08:28:01.0963 0x3b74  DPS - ok
08:28:01.0967 0x3b74  [ BA99F604B427595B7C56FB632E253550, F02CE62FF01BFD6F60165BFCFCB1DDA286475A8338BE7155741CB135B9B763EE ] dptf_acpi       C:\Windows\System32\drivers\dptf_acpi.sys
08:28:01.0978 0x3b74  dptf_acpi - ok
08:28:01.0983 0x3b74  [ 5EDFFA7B6843A5586CC9A98DDC3C70C5, B52D269E173EC5B309894AEBDFD612318902A012D05D0ACA29D356EB2268FF80 ] dptf_cpu        C:\Windows\System32\drivers\dptf_cpu.sys
08:28:01.0998 0x3b74  dptf_cpu - ok
08:28:02.0002 0x3b74  [ AE6BD4C879A8C849E53947C92DF3B3A0, 8C29774CB2D30D901C54AAC0C8ACE709351EE40E5C8FB9951B2A18B4A03F28B7 ] drmkaud         C:\Windows\system32\DRIVERS\drmkaud.sys
08:28:02.0016 0x3b74  drmkaud - ok
08:28:02.0024 0x3b74  [ 7433474BE77F065D2FA628671FE31A3E, 063ADDC68F48036749E6EC7B2F66284DB29F90F62E9468D16B4EF5A0FDC45E35 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
08:28:02.0050 0x3b74  DsmSvc - ok
08:28:02.0056 0x3b74  [ 5FCA45C24501DA7390065D3706A9FC3F, 093FD840F1502ECC6F05B9723CA523B3F15CF39A5D2B9106E1267739B3F2C52C ] DsSvc           C:\Windows\System32\DsSvc.dll
08:28:02.0082 0x3b74  DsSvc - ok
08:28:02.0120 0x3b74  [ 928E2749E01AEB9948F5D548B1F0C116, FBBC525306E6CE387BAF3DDD8145FD8AADDEFB2DC93E5692A8ED7F116C3EDD08 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
08:28:02.0167 0x3b74  DXGKrnl - ok
08:28:02.0180 0x3b74  [ 9FCE4EF7D5E274F862D9A2526B5F4779, 81D42D5475C2801C8E0C233A0BA827569D8A70590017C91C665C8B232D9BFAA9 ] EapHost         C:\Windows\System32\eapsvc.dll
08:28:02.0204 0x3b74  EapHost - ok
08:28:02.0262 0x3b74  [ 7EC6FC0266D74BD47ABB130A328B70EC, 3856790AF967AB03B1A89F97328DC4D5A6854ACDA6169681A9AFB03D7CF791F9 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
08:28:02.0336 0x3b74  ebdrv - ok
08:28:02.0349 0x3b74  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] EFS             C:\Windows\System32\lsass.exe
08:28:02.0362 0x3b74  EFS - ok
08:28:02.0366 0x3b74  [ 8D74B8B5D6F7C5BC4C525BAF2B083FF1, DA5656F745B3911F96871887FDFDC40F4D9C820622A0AA27EFE4BA93662833CA ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
08:28:02.0379 0x3b74  EhStorClass - ok
08:28:02.0384 0x3b74  [ 2A9817B5A9260D8F60D52E36BEF10443, AC1A0203221AFAF584C71317FA07AA1B6E61BE619E918B3B1E4AD57CCED1CF03 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
08:28:02.0396 0x3b74  EhStorTcgDrv - ok
08:28:02.0402 0x3b74  [ 80A7999DE02CE678B865832E1CE78CD6, 2576EBB6E4D630A906DE724F125099E52A962B5B68B9F9BCA849A7B29D8C8689 ] embeddedmode    C:\Windows\System32\embeddedmodesvc.dll
08:28:02.0426 0x3b74  embeddedmode - ok
08:28:02.0434 0x3b74  [ 3CE2B6AECB9AF8BC159299EEC46A35CA, E933B28BB6E4D01FCCDF8FBBB134C244B28DA3ECBDFA13333F0D4C24B2551780 ] EntAppSvc       C:\Windows\system32\EnterpriseAppMgmtSvc.dll
08:28:02.0457 0x3b74  EntAppSvc - ok
08:28:02.0461 0x3b74  [ 77B60DEC7DCB4233E4A69D3F52E5DB24, 3A5C905E37A93899051497C90E5BA8E1D003B56C6906CADFD2F1CDF52052D248 ] ErrDev          C:\Windows\System32\drivers\errdev.sys
08:28:02.0476 0x3b74  ErrDev - ok
08:28:02.0517 0x3b74  [ 8D9B271FACDB9DF58A71D1442D87994A, F18D37AA92052E27B8147B0E5225A18CF6478F8DB13081D476B24454DDEC84E3 ] esifsvc         C:\Windows\system32\Intel\DPTF\esif_uf.exe
08:28:02.0581 0x3b74  esifsvc - ok
08:28:02.0605 0x3b74  [ F79A1339FDEFDB2A9141BF0BEC5B246E, 32E9AE156902975ECB38297453FF3739B62A629F1A3461982FFDF7330B91CD72 ] esif_lf         C:\Windows\System32\drivers\esif_lf.sys
08:28:02.0644 0x3b74  esif_lf - ok
08:28:02.0651 0x3b74  [ ACB81E9F20882D2D2BEC7FF626E090AE, AC0329CFFD4429303B9484A3BB3E9CAE4FC937B66A62A9194C39CCD5012328F1 ] ESProtectionDriver C:\Windows\system32\drivers\mbae64.sys
08:28:02.0668 0x3b74  ESProtectionDriver - ok
08:28:02.0686 0x3b74  [ F89083AB8B9F51C0031C1CBD0A9A7E35, 9EE973A25134960E62D1A6A1E34AD9B3F7690E71C1AD31A23FA2081A73438754 ] EventSystem     C:\Windows\system32\es.dll
08:28:02.0728 0x3b74  EventSystem - ok
08:28:02.0746 0x3b74  [ 438A8797F3BD1B371C308D0552AC092D, B40960725832ACE0B09F443C292731D29A11AF6FC484C0B6ED40B6A5F4461D30 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
08:28:02.0775 0x3b74  EvtEng - ok
08:28:02.0787 0x3b74  [ FCD2C63754C2E739A8EEAD9BC63F9DDC, C57A72ABA4C0BD71F914B9C8FF965DCFF585A205498F19A4584A4BAF7674839D ] exfat           C:\Windows\system32\drivers\exfat.sys
08:28:02.0823 0x3b74  exfat - ok
08:28:02.0835 0x3b74  [ FA918EC296EB410FF02867D008D02421, 23D164A24CB0D212778FA9592A046B6BA1F3628003E04181744A1F891B5B3E5A ] fastfat         C:\Windows\system32\drivers\fastfat.sys
08:28:02.0863 0x3b74  fastfat - ok
08:28:02.0881 0x3b74  [ 77CE56471AF984800F318F3734D768C7, 72D540072374A56C2C497F0532A50705D3F0637F2C0C96B1D715F2EDFCA3AA2D ] Fax             C:\Windows\system32\fxssvc.exe
08:28:02.0929 0x3b74  Fax - ok
08:28:02.0935 0x3b74  [ 99598ECA5E41996E005D5B9D9FF1EFA2, 91345CD50EF02431B69093505C1C5F5DC6A1AA6BF192EE9392ED4D5626B60462 ] fdc             C:\Windows\System32\drivers\fdc.sys
08:28:02.0961 0x3b74  fdc - ok
08:28:02.0967 0x3b74  [ EF0DD43A4CBAB367BCA1AFBDC9971E4F, 73E161C45D63FDDE71EE2438137913724DC513860539D1E7F6BD861F5D1B33F3 ] fdPHost         C:\Windows\system32\fdPHost.dll
08:28:02.0994 0x3b74  fdPHost - ok
08:28:02.0999 0x3b74  [ 34DAC585994CD3B4E910DE11C584EF3D, A6C6A4CB5413EA61F1A54E2D3AD71A311CEA2C26218544D2D2D4A5CFEC52DE8C ] FDResPub        C:\Windows\system32\fdrespub.dll
08:28:03.0031 0x3b74  FDResPub - ok
08:28:03.0039 0x3b74  [ B68DA1FE3CA2311AFD38DD6905CA7F71, 4B395DFB1B47D2507CA4D9DC996A70D0A3BDB1A245CD6DA6C42B2A299AFCCF37 ] fhsvc           C:\Windows\system32\fhsvc.dll
08:28:03.0073 0x3b74  fhsvc - ok
08:28:03.0080 0x3b74  [ F44F666B0EACC3181544FFCF8CA0FFC7, 83F771CF9DAE1C504B30731EEC55355EA1253174252DA2192ADF1D228B3735C3 ] FileCrypt       C:\Windows\system32\drivers\filecrypt.sys
08:28:03.0107 0x3b74  FileCrypt - ok
08:28:03.0112 0x3b74  [ 78A210DDFDF2C9EC884631D2DAA573F0, 5D39C6EF4AC690A9749EEDBE2478FFF15A22877A2861EDA103C7BF1607B0C1BD ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
08:28:03.0124 0x3b74  FileInfo - ok
08:28:03.0128 0x3b74  [ 1A97DB5E701A186989F3795223C3BE39, F7982220D4DF7E104955E63CACE352394E2577DEF49506EA126127F820EB62DF ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
08:28:03.0145 0x3b74  Filetrace - ok
08:28:03.0148 0x3b74  [ 46626665F0E5906E45619B4EFD6186B8, 37FDD3B8AD49FD29E54DA5567EA77F28A53498AE56348F7A2628E5E5549D638B ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
08:28:03.0163 0x3b74  flpydisk - ok
08:28:03.0173 0x3b74  [ FDA72ACA14D516D18C33AFCD0FD9260F, 6509612DEC82EA74614B5C9A7B432305A1A468C97B88BED9E141DF2929B621B1 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
08:28:03.0189 0x3b74  FltMgr - ok
08:28:03.0224 0x3b74  [ 2E193D24CE8460A9C703D0F193192BEF, CD95928BC240D556DFEA265A09A655FFE157A36D2230CD10BBAD4CA15CB98412 ] FontCache       C:\Windows\system32\FntCache.dll
08:28:03.0286 0x3b74  FontCache - ok
08:28:03.0292 0x3b74  [ 59241194DBDF30A2B4029E402F377900, 47A92E9CD8494C403B377799D395670A393766647E24CD83B15338CE2AA50266 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
08:28:03.0304 0x3b74  FontCache3.0.0.0 - ok
08:28:03.0320 0x3b74  [ CD7CD19E72EA2F597D01FC68ECD2F28E, 4E8BAA4AEF28B043780E2FEFFEB5E4DF4E2FB3211CE617D2DBAFB6C7B7DBBDFD ] FrameServer     C:\Windows\system32\FrameServer.dll
08:28:03.0357 0x3b74  FrameServer - ok
08:28:03.0362 0x3b74  [ D152CCBFC8251670BF0AAFE00D6BC782, 9DE82D8FC4E1DAF8FF23EE08C0B7CB5051A9224E64544D262CFA4996A41B04E1 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
08:28:03.0374 0x3b74  FsDepends - ok
08:28:03.0377 0x3b74  [ 6D6BB5C7363CD35FA715E826F3D029EE, C214F791EB39E8B25CE57ED9D6C1D56EE1AF6021BCB380980BD42A6338A6C9F7 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
08:28:03.0390 0x3b74  Fs_Rec - ok
08:28:03.0404 0x3b74  [ 8EEC4925C03E375C4EC496E45C44139A, 06C5C7BCC28D3E435675F0759A09CAB726E971DF4BFC1DC3DCF503EABCDCCCC6 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
08:28:03.0426 0x3b74  fvevol - ok
08:28:03.0430 0x3b74  [ EF78034773CE506323655A868C949144, DF195BEEE6704FBCC6D2D9E1BF6723E52ED502A1459F495B7D18481E6A79B5BC ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
08:28:03.0445 0x3b74  gencounter - ok
08:28:03.0448 0x3b74  [ B55FEBC6A00DAA1FE074F020B6907516, 67071FBAC2ABA47AB71358A5F08E92E034A55343878F00137E90B3B1F7362976 ] genericusbfn    C:\Windows\System32\drivers\genericusbfn.sys
08:28:03.0466 0x3b74  genericusbfn - ok
08:28:03.0489 0x3b74  [ 154651F84794535631970749476B53E6, 62D94A36133EB1E1E403159619362E77B34BBE55282A6EE53E503E6DF6A9839E ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
08:28:03.0518 0x3b74  GfExperienceService - ok
08:28:03.0525 0x3b74  [ DDD8A8CDDC7F13EF57D1DAAE71865936, 9D472A8689F72F24D40D5B94849690F53C67849FDF6162A94EF4FB330A3DA566 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
08:28:03.0538 0x3b74  GPIOClx0101 - ok
08:28:03.0560 0x3b74  [ 8997353398C8466ECD183942D5FCC65B, C73FD5FFD71003F7FDDC17F59812BD6860992FA35EC0ECC8DE37D935606B485B ] gpsvc           C:\Windows\System32\gpsvc.dll
08:28:03.0606 0x3b74  gpsvc - ok
08:28:03.0611 0x3b74  [ 7ACD8F69B5D6EC97E6D2C006E19BED88, FC69214C9308EA64B88EF4C3C95800586DDBB44C8540846B79A161BAD8203B6E ] GpuEnergyDrv    C:\Windows\system32\drivers\gpuenergydrv.sys
08:28:03.0627 0x3b74  GpuEnergyDrv - ok
08:28:03.0637 0x3b74  [ 217230B984AB2954E2FA5E36578D7B08, BB7B79EA7501A28EB2A0303FDF66FB9D59D567994C25A1523CD6D2081C403AF6 ] HdAudAddService C:\Windows\system32\DRIVERS\HdAudio.sys
08:28:03.0663 0x3b74  HdAudAddService - ok
08:28:03.0668 0x3b74  [ 10E3515FE5DBA6656FA62C29342EC4A1, 2051F10F74ED712B1766EB61E87FADE25AB3D0970BABFD320600D1B0D6377F26 ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
08:28:03.0688 0x3b74  HDAudBus - ok
08:28:03.0693 0x3b74  [ B90D284B97CD4CA9DE7430AAAD887A56, 2F14F985C39B7801ED64590979CF2114924E9547F5B11D2B37A74DBFFDD9E7C5 ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
08:28:03.0704 0x3b74  HidBatt - ok
08:28:03.0709 0x3b74  [ B2FE11643CC6ACDEE6C247DD36018FDB, 5796613C7DBF8B2A9E860E006FF1A245B6BE7D10E3F6685AD142B48E5C237B8C ] HidBth          C:\Windows\System32\drivers\hidbth.sys
08:28:03.0728 0x3b74  HidBth - ok
08:28:03.0733 0x3b74  [ C2FDCCA7D173AE31E55386D70F2BBC7A, FCFA893AB516BFB1A643C6F2144F84B46087212F8125CA05DDD84B73335102BF ] HidEventFilter  C:\Windows\System32\drivers\HidEventFilter.sys
08:28:03.0748 0x3b74  HidEventFilter - ok
08:28:03.0752 0x3b74  [ D24355488A2D4D2323518EC1AC7A6D9E, ED2176A2093726087EDDA25B86E9CDD4BA35F4E748E3A6DE0B15C4C97646B5C7 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
08:28:03.0769 0x3b74  hidi2c - ok
08:28:03.0773 0x3b74  [ 0AF9ABBA4F3F55C6C803890D64BC3C29, D3DE6FA308F8E7CD4F16387F46AE4B2F7EC9BBA07BF87652B660A0D645710571 ] hidinterrupt    C:\Windows\System32\drivers\hidinterrupt.sys
08:28:03.0785 0x3b74  hidinterrupt - ok
08:28:03.0789 0x3b74  [ CDBCF8E9AB06D88A1E1191D32F320C5D, F76963AB7CF2BAB3A220013879AECD3976BFD851CFB66B5A69A9EA2541048861 ] HidIr           C:\Windows\System32\drivers\hidir.sys
08:28:03.0807 0x3b74  HidIr - ok
08:28:03.0812 0x3b74  [ C900FE0DD6A1E2220084B8F1C427790C, 802194EBEDA1A50EDA300078B0888AAC1F17A42E67147B7B3B9C50AD8D4E5C89 ] hidserv         C:\Windows\system32\hidserv.dll
08:28:03.0833 0x3b74  hidserv - ok
08:28:03.0838 0x3b74  [ D8536CB438CC4CCDAE047B768EED22B2, 4F666BFA3554F9ACA6B9D436BFA64474D5F30FB3E78F4E66068CCDF283D9867F ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
08:28:03.0859 0x3b74  HidUsb - ok
08:28:03.0864 0x3b74  [ 966016FA03CB6AE513987B7306130387, 5B3F7EC77E0441D32105513550474306E5FCE062E7B62BA6040C4BEAEFB0AA77 ] HID_PCI         C:\Windows\System32\drivers\HID_PCI.sys
08:28:03.0880 0x3b74  HID_PCI - ok
08:28:03.0888 0x3b74  [ F60E629BADC03B5BCCF8AAE022651A64, 08D3BA75F3A43843F8F13D7EEA263E46A9452FAB3B30BFD389E4B0477675CB3B ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
08:28:03.0904 0x3b74  HipShieldK - ok
08:28:03.0913 0x3b74  [ 0AC1BD5A28FAA371EF34859FE703E515, 1DD1C33AF8D6EBE7C36FCD051F066E4039D2B47ABAECF7C68BC3933D567930B2 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
08:28:03.0941 0x3b74  HomeGroupListener - ok
08:28:03.0953 0x3b74  [ 86161A89F16851728802590EC7C92608, 3A3B05BB4E115410D27063B30C0EF3F18295F542050F329F1E466C81A9E23A46 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
08:28:03.0985 0x3b74  HomeGroupProvider - ok
08:28:04.0002 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:28:04.0023 0x3b74  HomeNetSvc - ok
08:28:04.0028 0x3b74  [ F5CA18197B4646E04DB9EB2D6642CC4D, 5BA3342DDF1BCB67E4156169FE9A33E7BC2641C729E9F1A80C0E80953C6AB114 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
08:28:04.0043 0x3b74  HpSAMD - ok
08:28:04.0065 0x3b74  [ A10C7C1E69FC90620C7BF2E51302A01F, D725AEAE38255CED73F4922A10F226215528706580B06D01C228488F93AC0397 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
08:28:04.0099 0x3b74  HTTP - ok
08:28:04.0105 0x3b74  [ 0C84C250F80EAEC2C9768464CC1A9626, 212E1003B78F9B98FEB084FD1FDB59B26A9DE4C9120F24D4361FBBF0F3C035E7 ] HvHost          C:\Windows\System32\hvhostsvc.dll
08:28:04.0125 0x3b74  HvHost - ok
08:28:04.0130 0x3b74  [ 74FC79C52395B10FFD0B55CF22CF88FC, 94D977DA2092EE8C2A598AC48758A84BB22CB6378BD114C2D3B4172A07A9CACC ] hvservice       C:\Windows\system32\drivers\hvservice.sys
08:28:04.0142 0x3b74  hvservice - ok
08:28:04.0145 0x3b74  [ 771EDDA9830A3079F996F34D681FB6E5, F452AD656872A1C8B2D6DCE232CE01EBD456C46F4934A7601E78470F2A2CBF38 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
08:28:04.0156 0x3b74  hwpolicy - ok
08:28:04.0159 0x3b74  [ 3B9F315E7FA72CC25228EB097DD9C694, B26F1E494428EF197A0C97645C05BB3CA093827A005D35C987F1D6778BC4E52C ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
08:28:04.0175 0x3b74  hyperkbd - ok
08:28:04.0179 0x3b74  [ B54B30992620C97230013A74461C8517, CAF09BDCDD6DE2A39CB8AE2C65E6F8FE12D8E93D84BBEF6C6A98F872BF54A4E3 ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
08:28:04.0199 0x3b74  i8042prt - ok
08:28:04.0203 0x3b74  [ C6B8743B213F06AA60943D8366FE968F, 758954F70B810063914B243115B2C753B2BCE40190F95C30ACBA0BF04EBD5B33 ] iagpio          C:\Windows\System32\drivers\iagpio.sys
08:28:04.0222 0x3b74  iagpio - ok
08:28:04.0227 0x3b74  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\Windows\System32\drivers\iai2c.sys
08:28:04.0249 0x3b74  iai2c - ok
08:28:04.0256 0x3b74  [ 5A0E850F8CD17791A3E6A3CF81D0CA28, 10A965A49D53360DD250E0758B6BB142872298A21C732EB026ACB93492C5C6CF ] iaLPSS2i_GPIO2  C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys
08:28:04.0272 0x3b74  iaLPSS2i_GPIO2 - ok
08:28:04.0279 0x3b74  [ 7508F1096803385D6376BFD0BD473AC4, 1F32EC23CDC94DCB9710E6663B5C3BD83568545DDC2C741CFC13550A4E4DD2BE ] iaLPSS2i_I2C    C:\Windows\System32\drivers\iaLPSS2i_I2C.sys
08:28:04.0290 0x3b74  iaLPSS2i_I2C - ok
08:28:04.0295 0x3b74  [ B783A66A2217DBD2F0BC37C04335BD6F, 98FE54B86660312595BD337BA92BC4B18D700AB6D989D81461F57FB115045FAE ] iaLPSS2_GPIO2   C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys
08:28:04.0307 0x3b74  iaLPSS2_GPIO2 - ok
08:28:04.0313 0x3b74  [ 49772676B206AC1055F9C2E16C543CA9, 98084FF57D216BFE044AF6FFE3AC643D11F48B5F7532A8309D3D7F0ABBC4F047 ] iaLPSS2_I2C     C:\Windows\System32\drivers\iaLPSS2_I2C.sys
08:28:04.0328 0x3b74  iaLPSS2_I2C - ok
08:28:04.0334 0x3b74  [ 74B65FA8552BD2C47B808527C89237FA, B62987FD97EB9548C766EF374762BE84E8FA78CDBD791E7CA78ED8FE5A27C04D ] iaLPSS2_SPI     C:\Windows\System32\drivers\iaLPSS2_SPI.sys
08:28:04.0345 0x3b74  iaLPSS2_SPI - ok
08:28:04.0355 0x3b74  [ 0B54F00176BE2F0E77ACDE13EA7F8290, BFB64C57BF3F398BFA555901A585C04BC90C5D365F8044723BE56E07D112E831 ] iaLPSS2_UART2   C:\Windows\System32\drivers\iaLPSS2_UART2.sys
08:28:04.0373 0x3b74  iaLPSS2_UART2 - ok
08:28:04.0377 0x3b74  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
08:28:04.0386 0x3b74  iaLPSSi_GPIO - ok
08:28:04.0392 0x3b74  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
08:28:04.0414 0x3b74  iaLPSSi_I2C - ok
08:28:04.0433 0x3b74  [ 7675D8E247732F45F60AA450BA2C207D, DBB591E56BBF9A93BE66A993D143A97964CC628457CF47EB5231D0DF62B59ADE ] iaStorA         C:\Windows\system32\drivers\iaStorA.sys
08:28:04.0460 0x3b74  iaStorA - ok
08:28:04.0477 0x3b74  [ 97E553D03219D3D51705C7235D9EAEBD, 5D4578C8804AF32D1DC0868E34D6538138DC15F9568CA7E21051B1C82C0D8D55 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
08:28:04.0506 0x3b74  iaStorAV - ok
08:28:04.0511 0x3b74  [ 138F6A3E13BF002852EDA02B2DEBDD19, CB535FA072CD4C7C3F52E5B0EC88A1443E4B6F92F50C602E38864E20DC3A4476 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
08:28:04.0527 0x3b74  IAStorDataMgrSvc - ok
08:28:04.0537 0x3b74  [ 8350FE3BCDE3428BC040877BB7E9EAEB, 77F9456351CA640C6B7862907C0580627E761EC807B551976A95657EB4D6CC20 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
08:28:04.0558 0x3b74  iaStorV - ok
08:28:04.0570 0x3b74  [ 3BA03F7C7700DDF4C383DDE9252F5817, 3E90F69D0010E7764349D9AE865D577E431FEBC67DA554B400BC808DD286E203 ] ibbus           C:\Windows\System32\drivers\ibbus.sys
08:28:04.0595 0x3b74  ibbus - ok
08:28:04.0599 0x3b74  ibtsiva - ok
08:28:04.0609 0x3b74  [ 9C33FDD78A284B2597D68DDE29281758, 4D914C58F37C2B2A22CC09D68A4F3EEE14AB2F49C0F50DD85A1A192C441F89FA ] ibtusb          C:\Windows\system32\DRIVERS\ibtusb.sys
08:28:04.0627 0x3b74  ibtusb - ok
08:28:04.0635 0x3b74  [ 937AC47F7356554DA05D9722C356EB55, 9EABC9F19B4E1193B669D2674967F5C6F03FAD348EDF0615E3F78554FF9A83CC ] icssvc          C:\Windows\System32\tetheringservice.dll
08:28:04.0663 0x3b74  icssvc - ok
08:28:04.0854 0x3b74  [ 877C2AAC3F1AB6651652FA5CDEE06ECF, F3A3199494670EFE136C28141CDF3845AAC3FECF3B4ABC3A4827F5785EDF6465 ] igfx            C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igdkmd64.sys
08:28:05.0054 0x3b74  igfx - ok
08:28:05.0085 0x3b74  [ 83553EC4EC357D76B93DFFECF65D82C4, D715AAE0E5C6C6813DD444C90A54ECE39E1E429E97C0CE2ECAAD7189AA6D7E03 ] igfxCUIService2.0.0.0 C:\Windows\System32\DriverStore\FileRepository\k120130.inf_amd64_299d0c74ec099c32\igfxCUIService.exe
08:28:05.0101 0x3b74  igfxCUIService2.0.0.0 - ok
08:28:05.0116 0x3b74  [ F2934208C0E50C0B971A7981AB90BED2, B936BFBBD71E731CC2CDB8B47D262F2EF09726FF921C2DA0841910CA2401423D ] IKEEXT          C:\Windows\System32\ikeext.dll
08:28:05.0154 0x3b74  IKEEXT - ok
08:28:05.0154 0x3b74  [ 2A01C96DF5802D3434634E55C91232D8, A3ABEF36E2FD2CF5C371ADBF92566A09669A1D990ABE4677370F57F2EEAF8121 ] IndirectKmd     C:\Windows\System32\drivers\IndirectKmd.sys
08:28:05.0169 0x3b74  IndirectKmd - ok
08:28:05.0285 0x3b74  [ 06C76272F88385FEA1DDCB9F5EE19AD9, 4F3348D493300B301CEFB07450649A432EF535082BC1AE559130036A2A66CC51 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
08:28:05.0370 0x3b74  IntcAzAudAddService - ok
08:28:05.0401 0x3b74  [ E4E42ADB9B710CAA2801F5AA3705A8CC, A67EFE80F383A5117E37DE1B48045BA31E09950F9D4EAEE1E023BF1B7F5FC3C3 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
08:28:05.0417 0x3b74  IntcDAud - ok
08:28:05.0439 0x3b74  [ AE32376564771525DCDD2F0280619E1A, 233B7B272DCD9080DE7C9593EB7993745D1037EA87B69617E7176F074DFD5968 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
08:28:05.0470 0x3b74  Intel(R) Capability Licensing Service TCP IP Interface - ok
08:28:05.0486 0x3b74  [ 618667DFB3E9E8D8AB98FD2ED8F6577C, 6F5FF6D710329E2B0FC390B29660B51FF73F41870F36EE567B2B34AD5044632A ] Intel(R) Security Assist C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
08:28:05.0502 0x3b74  Intel(R) Security Assist - detected UnsignedFile.Multi.Generic ( 1 )
08:28:06.0271 0x3b74  Detect skipped due to KSN trusted
08:28:06.0271 0x3b74  Intel(R) Security Assist - ok
08:28:06.0286 0x3b74  [ 9F7E87F6595D065A8A200A291043045E, 6944F72F73EADC6C9B7691F2C1C6DF1898F22C88EFA78EC0BA8CB5FFD9CE057B ] intelide        C:\Windows\system32\drivers\intelide.sys
08:28:06.0337 0x3b74  intelide - ok
08:28:06.0339 0x3b74  [ A6BD2E20AE1BC5CB2776C87C28E4F4CA, BD8BE67CED9A4982D785CE9ECBEFE868C3A2E37DF7F9592B9F9049B807A1554B ] intelpep        C:\Windows\system32\drivers\intelpep.sys
08:28:06.0386 0x3b74  intelpep - ok
08:28:06.0402 0x3b74  [ 2A48DA39542636DB0FA3BA915385D1B3, 6CA0916F5F4B1E81AE6A6233276320599BFA7C129267177703E3BB6468FB4683 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
08:28:06.0471 0x3b74  intelppm - ok
08:28:06.0486 0x3b74  [ DB32758F3A7F6CCE81A5430080A2EA65, 36A26BAA884E96804F8EA0B12BB3E81BBE6D4EE704809904091445F36CAB5A29 ] iorate          C:\Windows\system32\drivers\iorate.sys
08:28:06.0502 0x3b74  iorate - ok
08:28:06.0517 0x3b74  [ FE85D0A86CA7A5A99CF8CD04DE7F80AE, 544C01FC01EE728EB5667158207E5F4418FE77A88BA318192A834722DB766F4E ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:28:06.0555 0x3b74  IpFilterDriver - ok
08:28:06.0587 0x3b74  [ 68C50E8E4265698BE6835156F4DD5008, 5B9CBBCE99315E5569E6733F13E91A687A36F536A68A2B670CC24C4BCC4EAFF4 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
08:28:06.0639 0x3b74  iphlpsvc - ok
08:28:06.0655 0x3b74  [ 10D01A3657AC8E8004C83D613163DE1E, F9389F1BF87A2D28899F50D270DA6F48B0912CFAF06CEE566697B041DBE92F9C ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
08:28:06.0670 0x3b74  IPMIDRV - ok
08:28:06.0670 0x3b74  [ F1DAECC3B3D6399875D4F10529D6A77C, 6533D2F858816BE6570C998510919FCA2904EC6EF806F61C1FD325E88133111B ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
08:28:06.0702 0x3b74  IPNAT - ok
08:28:06.0717 0x3b74  [ 7475A2903BB704B446AA6309E34D3362, C94643A1626A9716015EBA7041A1224098501EB7DAA704CBFCAD3DC6F3CFC6AF ] irda            C:\Windows\system32\drivers\irda.sys
08:28:06.0739 0x3b74  irda - ok
08:28:06.0739 0x3b74  [ 9725E7F0C64CE9916A5CDABE8D6E13C3, 04AF9E48FEF208A2850DF28352E8FDCBF4018982C72C0F67EE12C048C4070116 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
08:28:06.0771 0x3b74  IRENUM - ok
08:28:06.0771 0x3b74  [ 8C604213A2E73088BFFE6CD2E6F1AE53, B4C4FEE4D398A29F72EC27D5668071D7E68CD943FFFC38624DD5DF5BEBDF46D3 ] irmon           C:\Windows\System32\irmon.dll
08:28:06.0802 0x3b74  irmon - ok
08:28:06.0802 0x3b74  [ 8E3D5F919D6FB66557219343BD948B3D, BCE103FA09C75BB705C029356BBBB921584B166813162424D8E3CED0D20CF24E ] isaHelperSvc    C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
08:28:06.0818 0x3b74  isaHelperSvc - detected UnsignedFile.Multi.Generic ( 1 )
08:28:07.0918 0x3b74  Detect skipped due to KSN trusted
08:28:07.0918 0x3b74  isaHelperSvc - ok
08:28:07.0937 0x3b74  [ 58040898883A96160D41739C80328BBF, 7F85C91C905811416E266A263DDEFCDCB0B45376AAE51B551AB636C16577DB9F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
08:28:07.0970 0x3b74  isapnp - ok
08:28:07.0986 0x3b74  [ C9FD02D62E09337B67B0C61EC8CA38CC, DC77E935ECC8474BE9018F0937CB11C137073582B20A0EE107CE247FD9E1F9C1 ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
08:28:08.0017 0x3b74  iScsiPrt - ok
08:28:08.0017 0x3b74  [ 1E3A556E6056FC3B2C71121210295117, 23DD96ECF0241BA572E7B20C8CFCC82C644FD0CE46DA78F1BC3A73350275E432 ] ISH             C:\Windows\System32\drivers\ISH.sys
08:28:08.0039 0x3b74  ISH - ok
08:28:08.0055 0x3b74  [ 90A18FFC6E934A3F4EB38274D9A31023, AF843C95D9288F7C142114CE65AE52C02AA9C9D03B62F33708CD22001AC6EA0B ] ISH_BusDriver   C:\Windows\System32\drivers\ISH_BusDriver.sys
08:28:08.0070 0x3b74  ISH_BusDriver - ok
08:28:08.0086 0x3b74  [ 9AF76317B69C9F336C18A4610DB3EF55, 20D5FDD2B0D5D9189C7892DDC68D2CADB8ABB4D683722CE46028E4692DF35C2C ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
08:28:08.0117 0x3b74  jhi_service - ok
08:28:08.0117 0x3b74  [ 210808437570BDDEE71A43535E3A2D30, EF5DE6EE4FF58F44CDE4D4E7F298ABBC9086EC05CC3AE4903060DA878115AC1E ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
08:28:08.0139 0x3b74  kbdclass - ok
08:28:08.0155 0x3b74  [ 0B779E9FC426CA2268D28181FA6C222F, 83292023A688C3044D096F22242EB954B7F7511BE8341D45FF0AFBD9CB9BCB4E ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
08:28:08.0186 0x3b74  kbdhid - ok
08:28:08.0186 0x3b74  [ 813BA3EB2CE038F2A5382DDD75CAD60B, 99FA444027CAC247B54317730D54AB0C4C000AE076B97E47470FDA9834594312 ] kdnic           C:\Windows\System32\drivers\kdnic.sys
08:28:08.0218 0x3b74  kdnic - ok
08:28:08.0236 0x3b74  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] KeyIso          C:\Windows\system32\lsass.exe
08:28:08.0255 0x3b74  KeyIso - ok
08:28:08.0271 0x3b74  [ 705C0F8BCCEF6E7CB704CCB454192D7E, FC608C708E2C3BF7A66E57B95E19E71E5F5C87EF359D8BC1A817500B45DF9338 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
08:28:08.0287 0x3b74  KSecDD - ok
08:28:08.0302 0x3b74  [ 55AD13E2BAFC5AB53A10F8C271F5D242, 058BEF14DCB95574BCAB985F04737BA89483937E8D8A74F7B4CEAFB7400C2397 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
08:28:08.0340 0x3b74  KSecPkg - ok
08:28:08.0340 0x3b74  [ 4ED115CD1A1099705F56B5E0FFF97CC6, 9CC49DF2CD6AAAE405BA661D13EFC1E05111D1DE3D1E50C39C425AF1F075610B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
08:28:08.0371 0x3b74  ksthunk - ok
08:28:08.0371 0x3b74  [ 8125BDF7ADC261F75EF0CAD92456E350, 184797AA1D58C4FF743BA60D48590B88B781EE7779205E45E0679DEC79F3E185 ] KtmRm           C:\Windows\system32\msdtckrm.dll
08:28:08.0403 0x3b74  KtmRm - ok
08:28:08.0418 0x3b74  [ 8CCAB08815B50AD78B823DB3F96C8604, 265E6D582EB7207B5CC577D61CB7BC3646F613047F168CD69BB776C37780EBF5 ] LanmanServer    C:\Windows\system32\srvsvc.dll
08:28:08.0440 0x3b74  LanmanServer - ok
08:28:08.0440 0x3b74  [ 33DBBCF71F68EA97D9FD34E4C9AB5AC6, 104F04A1560E75EB224A3825707CE51E8798ABD764F5CC3B854FFFC93A39AF60 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
08:28:08.0472 0x3b74  LanmanWorkstation - ok
08:28:08.0487 0x3b74  [ F8EBAA1FE6D3BF84752931DE1BFA0E2A, 2F3C512712BA709BBBBD779D9E792DBE324876C402CDCEF0345B8B7ABE1D232A ] lfsvc           C:\Windows\System32\lfsvc.dll
08:28:08.0503 0x3b74  lfsvc - ok
08:28:08.0503 0x3b74  [ 5A23E4BE0CCF49663C4CF7EB74C20278, 9DF91014B13B7CED1C3D409F90858FD03EFC5C4347C98901B4DF0AFF2B77845D ] LicenseManager  C:\Windows\system32\LicenseManagerSvc.dll
08:28:08.0536 0x3b74  LicenseManager - ok
08:28:08.0541 0x3b74  [ 5933A6673F00D8255C52957E40C2D601, 0AA1281F8B3F97E360592D1B35EE7D3D614F1AB46007F9884CFFB1C5E647575E ] lltdio          C:\Windows\system32\drivers\lltdio.sys
08:28:08.0556 0x3b74  lltdio - ok
08:28:08.0556 0x3b74  [ 88A3C935725FA6EA1A228DCC26CF9C6F, 9B1F70644EEFA1EE7CE151A8A970430087339B7A6345F2E0252370929D4AFAC6 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
08:28:08.0588 0x3b74  lltdsvc - ok
08:28:08.0588 0x3b74  [ 3F858E28AEE6545FA1B64134DFD5C2CE, FFD7B4FB0A7B61BC6B76A172134673842F2CF00E96FA3ED4A8273DC525B6BB92 ] lmhosts         C:\Windows\System32\lmhsvc.dll
08:28:08.0603 0x3b74  lmhosts - ok
08:28:08.0619 0x3b74  [ DD79D7728F8E06BE4656E97B4BC20702, 657B5AF2CB59335EBEA41E3AD27BC21D90542D6AA9B187847264B932883FA29A ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
08:28:08.0641 0x3b74  LMS - ok
08:28:08.0641 0x3b74  [ 8E1B0946948CCC0BC1FA3CB70374A795, 0B894C129A35E223FF9594725AC90916CBD597FAD2211A18FC2AE03EA8679597 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
08:28:08.0657 0x3b74  LSI_SAS - ok
08:28:08.0672 0x3b74  [ 4F68163FC04C973500DC4DA0946917B0, DF060C29109EB3978CEDFE781999B0C4C1E8C0FDB133428058D8400C53315EEC ] LSI_SAS2i       C:\Windows\system32\drivers\lsi_sas2i.sys
08:28:08.0672 0x3b74  LSI_SAS2i - ok
08:28:08.0688 0x3b74  [ E5AC5F2815938651CDCC27F425474673, 3AF0598982153C36A766506FA088F7B84333CC96FEBB050402547AFC613AF9F7 ] LSI_SAS3i       C:\Windows\system32\drivers\lsi_sas3i.sys
08:28:08.0703 0x3b74  LSI_SAS3i - ok
08:28:08.0703 0x3b74  [ CCF6EC9FB9B8F18E05B4253E81013E48, EBE8D77FEE8B99BD8C29702404774D554673C96DF3FDF3DCEA9C99E22C2709FC ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
08:28:08.0719 0x3b74  LSI_SSS - ok
08:28:08.0738 0x3b74  [ D5EFC0BAEC21EDE6FE03D377D403B421, 41BE71AF7C896FD4C51EF7E3871AAB769164DFB8050DA43E48C7A100711414B4 ] LSM             C:\Windows\System32\lsm.dll
08:28:08.0772 0x3b74  LSM - ok
         

Geändert von Kolm (19.03.2017 um 09:02 Uhr)

Alt 19.03.2017, 09:02   #5
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Code:
ATTFilter
08:28:08.0772 0x3b74  [ C9579D32219E5B936AC3A48D470117EC, E61A77191B6BA25D29B1221FEBBE826BBC11F825C0E35A72B4CEFFF8B7FE59A8 ] luafv           C:\Windows\system32\drivers\luafv.sys
08:28:08.0788 0x3b74  luafv - ok
08:28:08.0803 0x3b74  [ 9F699136FA1A8A170C2C05D7790A5FC0, 4363C527BD2FC9FD8937E9866CA200809AC87B64EA57084491BAB6DEB8ED9E87 ] MapsBroker      C:\Windows\System32\moshost.dll
08:28:08.0819 0x3b74  MapsBroker - ok
08:28:08.0836 0x3b74  [ 835E1D6B5835EF70FC3BDF93ED42243A, 0025D232ED0FF9A572F8004094CFE21F62070DB832398345425554334E036DA6 ] MBAMChameleon   C:\Windows\system32\drivers\MBAMChameleon.sys
08:28:08.0841 0x3b74  MBAMChameleon - ok
08:28:08.0841 0x3b74  [ E8E0D53AA910D8BC60A403E77DBA9B8C, D86EE7F845DB20230A036C26383A6F4314F80489A1D15C2A969A0C3C63706B7D ] MBAMFarflt      C:\Windows\system32\drivers\farflt.sys
08:28:08.0857 0x3b74  MBAMFarflt - ok
08:28:08.0857 0x3b74  [ 88BD122C3A35DE63D75D382DF75554CE, ABDF59543CAD186A6ED4E66257205D9CF5047732A5DA74A96A28B468B41BC396 ] MBAMProtection  C:\Windows\system32\drivers\mbam.sys
08:28:08.0872 0x3b74  MBAMProtection - ok
08:28:08.0941 0x3b74  [ 804E3246E3E73D4A936F2F4BCDC53A2D, BF1F9B4AC292238FA6EE541E325B220F311977F9D87D5BC7F90AD058FBF0B35A ] MBAMService     C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
08:28:09.0037 0x3b74  MBAMService - ok
08:28:09.0041 0x3b74  [ F8E8B0977741F114407494174522B71A, 6A3FE40D4649D89ABED007FFF13C38F021284265EC692C6190FF0EF8BDECF99C ] MBAMSwissArmy   C:\Windows\system32\drivers\MBAMSwissArmy.sys
08:28:09.0057 0x3b74  MBAMSwissArmy - ok
08:28:09.0072 0x3b74  [ 71C365620D484750948664AA4A579AB3, A60DBF3BD252ABC63BAD3571F3DF88BAD45FB76336FC52B88FAE0665C3D40D44 ] MBAMWebProtection C:\Windows\system32\drivers\mwac.sys
08:28:09.0072 0x3b74  MBAMWebProtection - ok
08:28:09.0088 0x3b74  [ 69F56C3A8A442A891FC5A274CE3BCBB2, 429E6A5D57975219D0893E48C1C25E88919D6BC0C37B8B560B2D2863A480C696 ] McAfee SiteAdvisor Service C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
08:28:09.0088 0x3b74  McAfee SiteAdvisor Service - ok
08:28:09.0119 0x3b74  [ 56A485A5B702DB8AB32122A2EAD2694E, 28BF10E3CA295246B6A133B3CBA4C84C7AF3726185916CBB26645184F8C5EE25 ] McAPExe         C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe
08:28:09.0172 0x3b74  McAPExe - ok
08:28:09.0188 0x3b74  [ 981308E0239676D098CDA3D4CDA96C12, 846A26D762E00137ECEFC33EF7050CA64723E167CFB43AC06DE304267A8D5044 ] McAWFwk         c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
08:28:09.0219 0x3b74  McAWFwk - ok
08:28:09.0238 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] McBootDelayStartSvc C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:28:09.0256 0x3b74  McBootDelayStartSvc - ok
08:28:09.0303 0x3b74  [ 080B4F6A1A8ADB39852C3AE8602E2D85, 22AF98641807648B6E2FF0B76AFD009FDAB6BC086C7B16790AB7726B6A4A9476 ] mccspsvc        C:\Program Files\Common Files\McAfee\CSP\2.3.290.0\\McCSPServiceHost.exe
08:28:09.0357 0x3b74  mccspsvc - ok
08:28:09.0372 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:28:09.0404 0x3b74  McMPFSvc - ok
08:28:09.0419 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] McNaiAnn        C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
08:28:09.0440 0x3b74  McNaiAnn - ok
08:28:09.0457 0x3b74  [ A50E64755DFC7777BA2AFA5AE53E9F01, 6A64EBA9307F8AADF723517950D4DB5AE0FCB2714ACC861E468CDBBF24FE39E8 ] McODS           C:\Program Files\mcafee\VirusScan\mcods.exe
08:28:09.0503 0x3b74  McODS - ok
08:28:09.0519 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] mcpltsvc        C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
08:28:09.0541 0x3b74  mcpltsvc - ok
08:28:09.0557 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] McProxy         C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
08:28:09.0572 0x3b74  McProxy - ok
08:28:09.0572 0x3b74  [ C3CDCCF07486BD2616A7B82946E07AC0, 1EF95DAB2DA856BC7D7573B2EB2D9006DF337F827F0B56A161D0C97F45DB755E ] megasas         C:\Windows\system32\drivers\megasas.sys
08:28:09.0588 0x3b74  megasas - ok
08:28:09.0588 0x3b74  [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181A18A4BA060CA81 ] megasas2i       C:\Windows\system32\drivers\MegaSas2i.sys
08:28:09.0604 0x3b74  megasas2i - ok
08:28:09.0619 0x3b74  [ FADB2FE017E69EECE0E1BA78661C2E8C, BE99B49031D8B4B670B6F6B6E829E54406779CF6F1D8AFE8AB79A73E6764AB2F ] megasr          C:\Windows\system32\drivers\megasr.sys
08:28:09.0641 0x3b74  megasr - ok
08:28:09.0641 0x3b74  [ 1039E2C190060B1A51289B47493DA456, 96B67CD5341F6118063F1C318DDAC86089966E274FEB4EC46F934BBE98C01032 ] MEIx64          C:\Windows\System32\drivers\TeeDriverW8x64.sys
08:28:09.0657 0x3b74  MEIx64 - ok
08:28:09.0673 0x3b74  [ 55A417C3E41F2A98666CF929EC19108E, A38C262B2863C87E4151525BF26D6AC16E7982D370E2C6998EB15C88C4BC8254 ] MessagingService C:\Windows\System32\MessagingService.dll
08:28:09.0688 0x3b74  MessagingService - ok
08:28:09.0704 0x3b74  [ 6820218B1C5EE9037955B337CBB4142B, 85B12BABFFB371C9FF6A20EE795DD33CD8DD784D3CBCF2DEC65E57A3D45EC029 ] mfeaack         C:\Windows\system32\drivers\mfeaack.sys
08:28:09.0720 0x3b74  mfeaack - ok
08:28:09.0742 0x3b74  [ 2B1A0FF97C0E065CB83A9A897ECE9F15, 63A2CF428A3F315F9019B7C34E45AEE259BCD468D49B313A44961529581FE40D ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
08:28:09.0773 0x3b74  mfeavfk - ok
08:28:09.0789 0x3b74  [ FE970DF83C4E999998AB440ECAD7D0E7, 7394B5837C8F14A889DE228E7833C0F08FBFF8A40DCA9EA775ADB3A3D67E0178 ] mfeelamk        C:\Windows\system32\drivers\mfeelamk.sys
08:28:09.0820 0x3b74  mfeelamk - ok
08:28:09.0820 0x3b74  [ 313DA2DB8E3F908980FBEBC511F30A50, FA1D3F766DED7C4765AD51B985FD1E65C03315E9ED377BF0CEF14B8D01DC7B06 ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
08:28:09.0842 0x3b74  mfefire - ok
08:28:09.0842 0x3b74  [ 472EC3FF35A7D038155F189EC62E2F72, B97E6792FB7FFF7DF356F44955DD733009D900859247F8E4CA06844E2DB9C9CB ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
08:28:09.0858 0x3b74  mfefirek - ok
08:28:09.0873 0x3b74  [ F11A7C2408C4691137E33D82F61221BC, 706DC1AD05245246740CC9572700F65675276E7D550648B4DDDC6BFEFC2272CF ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
08:28:09.0905 0x3b74  mfehidk - ok
08:28:09.0920 0x3b74  [ A185B311B7053F8E9313C835D654862E, 79DA7726F887B82E98F6245B840144202D2B0CE811863DCDCE42F1912FBF6545 ] mfemms          C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
08:28:09.0937 0x3b74  mfemms - ok
08:28:09.0942 0x3b74  [ 261B1A6F691FEBC2F34057BF72010CD9, 589A18AD1C74B1766EB08D9EA5AA46224964D54A50EA7A485660C65A8CA7AEBE ] mfencbdc        C:\Windows\system32\DRIVERS\mfencbdc.sys
08:28:09.0957 0x3b74  mfencbdc - ok
08:28:09.0957 0x3b74  [ 54A804B0A4E77542D2E7331F593137C3, B9C8B94D7C22B28CF8E5AADB088510D92C73154A48A51F220B4375C51DE829BE ] mfencrk         C:\Windows\system32\DRIVERS\mfencrk.sys
08:28:09.0973 0x3b74  mfencrk - ok
08:28:09.0989 0x3b74  [ 7C2C87D65568F9276100E99B9D225DC4, B2AEC1D5DC528E075F80B6242907C5D2E9A0C82DB59E0FE1114E31E4D90A4533 ] mfeplk          C:\Windows\system32\drivers\mfeplk.sys
08:28:09.0989 0x3b74  mfeplk - ok
08:28:09.0989 0x3b74  [ DA49A90A69B3284FD11B6F02D0209A99, 759380964E6450FF21FB9A2BD23BA0394B005EC332E714D40D47262FCDC6CFE9 ] mfesapsn        C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys
08:28:10.0004 0x3b74  mfesapsn - ok
08:28:10.0020 0x3b74  [ BF65650E76D1DB5D49D0C15B79419C34, 106339F6968A33020DA3C56F31A9750DB588518C5DBCDED20A31B300905B90AF ] mfevtp          C:\Windows\system32\mfevtps.exe
08:28:10.0039 0x3b74  mfevtp - ok
08:28:10.0042 0x3b74  [ 798D11CE31982A628DB55AF6A1B499FD, E6A69F45218645BF2193206FF0797E19E6BA37AC5D123762E57C8A77CE11FA6E ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
08:28:10.0058 0x3b74  mfewfpk - ok
08:28:10.0073 0x3b74  [ FD60818B66B2E8A5415EA840E99A9D8F, 5D2F22909354534B821D958FBEF6A40EB4F642F53C7B509D00949096EF716F36 ] mlx4_bus        C:\Windows\System32\drivers\mlx4_bus.sys
08:28:10.0105 0x3b74  mlx4_bus - ok
08:28:10.0105 0x3b74  [ 68F6977F1CFBAAC770D940A8C0326FA1, 90EE1E7DAC680EAA5AD50E9B0B9FD8FCE8DD6A02D5EF941B5AA5084CBD40BB80 ] MMCSS           C:\Windows\system32\drivers\mmcss.sys
08:28:10.0120 0x3b74  MMCSS - ok
08:28:10.0137 0x3b74  [ 0D50B3F3AB32D416786B58D4553859CE, 9DA4D7A30982E8B31C45BDB721AEF5240EAD9DA6839CF34FDDBCF123BF104F2C ] Modem           C:\Windows\system32\drivers\modem.sys
08:28:10.0142 0x3b74  Modem - ok
08:28:10.0174 0x3b74  [ A33B71D493BA379312B176A27FB5B085, 81A4D286BAB7A51F56AD23610A2F3137BAAFC94FBCF5F3341DF136F0EEBA99D8 ] ModuleCoreService C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
08:28:10.0205 0x3b74  ModuleCoreService - ok
08:28:10.0238 0x3b74  [ 9CCCB7FC3EDADEBA461D78615A6011A6, C120B58F25E8CCFD971EB78645C0682F367AD56DC15F2D8C1980CE75B04719DF ] monitor         C:\Windows\System32\drivers\monitor.sys
08:28:10.0242 0x3b74  monitor - ok
08:28:10.0242 0x3b74  [ 27A07B2FB2E3057DA8DAEA4F25D843C7, 09D2B39E6B9AAEC879E5871DD6BCFF2AEF0B894F3B44649665A685F8B3CA6F27 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
08:28:10.0258 0x3b74  mouclass - ok
08:28:10.0258 0x3b74  [ 7BD6E7F7C9001AB21B8362CFFEE80B25, C470C3363EEF3A60409A5934988BFB9B72AE7C2BB63CC2C2D006D7EB1C797F6A ] mouhid          C:\Windows\System32\drivers\mouhid.sys
08:28:10.0289 0x3b74  mouhid - ok
08:28:10.0289 0x3b74  [ F5BDAEE4B7D369D4C74668DCFBA3FF10, 100F39288E56AFE0D39D1CC235BDC9F3727C873CD3114E092DA7A08810BD3EB2 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
08:28:10.0305 0x3b74  mountmgr - ok
08:28:10.0305 0x3b74  [ 40134FB7F20C2591A3C7FC9541980E3A, B42D542D9008078DDDCFF8ED0A88E2EAB46C01E270F04C9569D630670D734879 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
08:28:10.0320 0x3b74  MozillaMaintenance - ok
08:28:10.0320 0x3b74  [ 30844BD376F9D01E62C820BEF446F1F8, 910D672EDB544A20AEB4450B4D89830F46EDD28CE0021156176315C5D068A1B4 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
08:28:10.0342 0x3b74  mpsdrv - ok
08:28:10.0358 0x3b74  [ A231E1861F7AA9CCC24B97176BBA838D, CDAB9A25CC55B71E8A83E50504B12E948D7A88F035918E4F94E3624E4AA0A28D ] MpsSvc          C:\Windows\system32\mpssvc.dll
08:28:10.0405 0x3b74  MpsSvc - ok
08:28:10.0405 0x3b74  [ 25D32BE04FE0A23FDF57FD5382757672, 64E39E3E21D9173FB1116B989D80C244C49DA827698A05AF5CC5CD1C6AE155DE ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
08:28:10.0421 0x3b74  MRxDAV - ok
08:28:10.0442 0x3b74  [ D559FF28B1AD9B1E15A4186E785E61F6, 4B22A740E86CA10B1B43E36CBE9A50B53D1E5504C25694C8FF3A514DF699E99C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
08:28:10.0458 0x3b74  mrxsmb - ok
08:28:10.0474 0x3b74  [ D4D12BC29DE0F09280868FDCA65B3474, A6FE89ABD52087FEE52FDF31DDF4CB627ED400E94FDA86BEBF1D4763F1E42518 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:28:10.0489 0x3b74  mrxsmb10 - ok
08:28:10.0505 0x3b74  [ 0698B15E21EA1B8742F2E7BB3142B754, 0DB79841E863F08452F895DA47CEEF6CA4D527A616EB616FDFF5F7431487E5F7 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:28:10.0521 0x3b74  mrxsmb20 - ok
08:28:10.0521 0x3b74  [ 74C9D21523DAE0C18F413C196DF0058A, 3DB4B8CA368D9DD82FAE2C2BC828A21142C8D29780A7C8667188C447519FF702 ] MsBridge        C:\Windows\system32\drivers\bridge.sys
08:28:10.0542 0x3b74  MsBridge - ok
08:28:10.0542 0x3b74  [ 308F08347923DEEDE7BC03EC7D485841, 72DB45CA11FE635DF9F8273C38CBEFB8DF5362ADA0CBF6D2B1E570365DC700C0 ] MSDTC           C:\Windows\System32\msdtc.exe
08:28:10.0574 0x3b74  MSDTC - ok
08:28:10.0574 0x3b74  [ F01B849D9D4A8CEAF32D4FDBD0B83C92, D2473AC4C6E6C03DEF13EA73EC78FB878BDC95C047651BF79A16C9DEA82AD046 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
08:28:10.0590 0x3b74  Msfs - ok
08:28:10.0605 0x3b74  [ 22ECD8F5D1DFADF2011BBB1700CB871D, 8F9EFF51137394EFA5471B8A29C541710063B65806B075B4925A84D5B6BC3BBB ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
08:28:10.0621 0x3b74  msgpiowin32 - ok
08:28:10.0621 0x3b74  [ FD870F6968A145E4D2BA8A8842686B03, 34B8F601F3B5E42B4D0A41E2AF7DB4EB4E5B627DA8DA9A2A2D46B153AF23AEB1 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
08:28:10.0642 0x3b74  mshidkmdf - ok
08:28:10.0642 0x3b74  [ 30364757963A028CE5DF0FBAAC270173, C72588A6A52FF8E418A15D2C407A4DB7EA768585423720145F8253D5CA519DC2 ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
08:28:10.0658 0x3b74  mshidumdf - ok
08:28:10.0658 0x3b74  [ 6BB0FEDDAE7135FA37FFAFF4D9E0E876, B41A3C0FFDFC493D6325ED493445AFCED04EC9DFF2B38125616FC5419AD1ACC4 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
08:28:10.0674 0x3b74  msisadrv - ok
08:28:10.0689 0x3b74  [ 07E3E54734B14F43A4A95A849C0A0DE2, 314AA02EA84D267B32DBAEBEA6C1AC1A266DED1E8D35A17B41D1D2AC75E8049E ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
08:28:10.0705 0x3b74  MSiSCSI - ok
08:28:10.0705 0x3b74  msiserver - ok
08:28:10.0721 0x3b74  [ 7515D791E39C9D75714FFDB954D12494, 4B2568FB4C48F8F01FA3EE59116F669FD8FAF1AF427C9262E36491970AB1126D ] MSK80Service    C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:28:10.0743 0x3b74  MSK80Service - ok
08:28:10.0743 0x3b74  [ 4586CDA25B7866DD9505CEECF9DB3C74, B94CE1A7C1B6FFEF7AA33AEC30C27E01E44E6E56A4274705684BFBB738F95BCF ] MSKSSRV         C:\Windows\system32\DRIVERS\MSKSSRV.sys
08:28:10.0758 0x3b74  MSKSSRV - ok
08:28:10.0774 0x3b74  [ 642CDE46351D5D2D90311E77072AB46D, B2D3033E607BA2F6E6B9CFB1CBF154CD0CE910EA473C56343EC81B9B94044CCA ] MsLldp          C:\Windows\system32\drivers\mslldp.sys
08:28:10.0790 0x3b74  MsLldp - ok
08:28:10.0790 0x3b74  [ F2302A5CE63CA7673200FAFCEEEDB6AF, B8C44FC2DC0332183DE325CDBF511101F3307225295EDD428CE575A8DE15C223 ] MSPCLOCK        C:\Windows\system32\DRIVERS\MSPCLOCK.sys
08:28:10.0805 0x3b74  MSPCLOCK - ok
08:28:10.0821 0x3b74  [ 6114512EA26E835BA522C63635429DB5, 0F91CE41B4555316A79AEF3047C152D538CC9C7C329987C9FD0E3D961AFC87C8 ] MSPQM           C:\Windows\system32\DRIVERS\MSPQM.sys
08:28:10.0842 0x3b74  MSPQM - ok
08:28:10.0842 0x3b74  [ AA538E16E644D00E3BA5349BBA9598EC, 64A68B06883FE7ED34E04AB119BA819753F1222923EDD4E802C35D402B89D075 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
08:28:10.0858 0x3b74  MsRPC - ok
08:28:10.0874 0x3b74  [ 0543BEFD41EC4D25C7F7CF36409CEC7D, 631622CFEC49952C0470531B23FFFFF483DC0EFFEF7A97B1179A600392C05DDD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
08:28:10.0889 0x3b74  mssmbios - ok
08:28:10.0889 0x3b74  [ C1569E4DB8EFE3617847BF041A3C842F, 99ADE5E7F50E04CAEC737F7F90741CCA8EE628996BA5EB6C6BC62184884429B6 ] MSTEE           C:\Windows\system32\DRIVERS\MSTEE.sys
08:28:10.0905 0x3b74  MSTEE - ok
08:28:10.0905 0x3b74  [ 130B16970154BA9876B09E5C4BAC63BE, BE3AF8FC5A26AB9C9DBA9C015C2E1FD3C4CD9CB423A2BBDABA91428BF8620553 ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
08:28:10.0921 0x3b74  MTConfig - ok
08:28:10.0941 0x3b74  [ 15D987C8F6CCD4AC94E070C5986762CB, 452FB0C48B86C7F8F53794CC2DDBF2B900B03A0383B2DE8F6A830F8CB0AFBAD8 ] Mup             C:\Windows\system32\Drivers\mup.sys
08:28:10.0943 0x3b74  Mup - ok
08:28:10.0958 0x3b74  [ 3D2C5B4995CA0751D32DEA0DE9FDFE44, A26958785FD9E05E2CA97078C9BB277CD44222BF5F7D9E8DC2F3F6AAAFFC6483 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
08:28:10.0958 0x3b74  mvumis - ok
08:28:10.0974 0x3b74  [ 6A07E3D3274553DEE93A6278662002AF, 186801B6FE405C571FFFC94FF9562AB864780C1E239CC024BC325DB1697D989D ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
08:28:10.0990 0x3b74  MyWiFiDHCPDNS - ok
08:28:11.0005 0x3b74  [ A5FA29F748BBF38FC3FAE4B54FA20A93, 8912F08967CFDD2A74593C9D23F43D6487D1920969C380B39BA8EA4672B24C3B ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
08:28:11.0038 0x3b74  NativeWifiP - ok
08:28:11.0043 0x3b74  [ C3D9870E680D9D843B18F4626C3858FE, 43596CAC9FB488F810FBA954C52BC4D13F7D32028C40ACFE33DFD7EE36A65C17 ] NcaSvc          C:\Windows\System32\ncasvc.dll
08:28:11.0059 0x3b74  NcaSvc - ok
08:28:11.0074 0x3b74  [ 04CE2C0F0759EACD886BA4B658B60D5D, E34D0976FC5936C8629800D826DB127072D1DFC3D350EFACA3AA1B8119551762 ] NcbService      C:\Windows\System32\ncbservice.dll
08:28:11.0106 0x3b74  NcbService - ok
08:28:11.0106 0x3b74  [ E6094065008FE423377294050E7CEA2D, 86E200227256407530E2C28243DEFBC3CB6E9497644404D9AD79DA242286DF7B ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
08:28:11.0143 0x3b74  NcdAutoSetup - ok
08:28:11.0143 0x3b74  [ 629CB21AC49C8867E0F29DF1C16DB7B4, 20663E68C69D0A1A2FE99A0C2A9DEFABF49786A1DC8F7F4E1699458AF57D7E79 ] ndfltr          C:\Windows\System32\drivers\ndfltr.sys
08:28:11.0158 0x3b74  ndfltr - ok
08:28:11.0190 0x3b74  [ 3B41B4CF8F3F7C4041AC516830561533, 1EA616164AF9EA6B5DEC569DD255CB81C9EC3D4288E214CD8EE72C334ADEA3B8 ] NDIS            C:\Windows\system32\drivers\ndis.sys
08:28:11.0221 0x3b74  NDIS - ok
08:28:11.0239 0x3b74  [ 6DD605338FAAF6BA17662AA874E0D162, 636607829F5D7C3B7A4683C0A2DD594360D72F2AA3F8710153BE32575AE34A15 ] NdisCap         C:\Windows\system32\drivers\ndiscap.sys
08:28:11.0243 0x3b74  NdisCap - ok
08:28:11.0259 0x3b74  [ E34196F285F8B8879E1FF36C31F7179E, 77A4F24F995D4C0689C43F9956E08DCEC62517E4F8B1B9EAA1852B5293DB5B9A ] NdisImPlatform  C:\Windows\system32\drivers\NdisImPlatform.sys
08:28:11.0274 0x3b74  NdisImPlatform - ok
08:28:11.0274 0x3b74  [ 1FAD2398673F30CEC616B89C46B7DCBA, 70302049E6AE2BC6B3A7A9DE54D3F940AD6A9771CC2EBCCEC65994E67A25ECB5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
08:28:11.0306 0x3b74  NdisTapi - ok
08:28:11.0306 0x3b74  [ AEB8ECBE66CC46854066CB1F5623E179, 2F650A85A9DAE38887610C0B876621035616CEDB65D4BBBD7F1405616D218AAF ] Ndisuio         C:\Windows\system32\drivers\ndisuio.sys
08:28:11.0340 0x3b74  Ndisuio - ok
08:28:11.0343 0x3b74  [ 7340104C2BF2F126714F7CDE85E63610, 45B64EC6F3A4C43F7D74806789067658C6EF0D44D36B841F4D26E1EBC95AF66C ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
08:28:11.0359 0x3b74  NdisVirtualBus - ok
08:28:11.0359 0x3b74  [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E1F608F90FED300 ] NdisWan         C:\Windows\System32\drivers\ndiswan.sys
08:28:11.0390 0x3b74  NdisWan - ok
08:28:11.0390 0x3b74  [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E1F608F90FED300 ] ndiswanlegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
08:28:11.0422 0x3b74  ndiswanlegacy - ok
08:28:11.0422 0x3b74  [ 78A12E3DF035B5D054986949B19BE43C, AD9B34F89B9F27D473BD5FCE6694A40FCCB808B61ABEDD6F70F1AF6C7E73ABF8 ] ndproxy         C:\Windows\system32\DRIVERS\NDProxy.sys
08:28:11.0443 0x3b74  ndproxy - ok
08:28:11.0459 0x3b74  [ 04C8859355C1DC9C0FA198D1894D71C2, E7C67E73009341B5D402470C686781B3C7BBE2531CE26665E08E711B990B1A77 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
08:28:11.0475 0x3b74  Ndu - ok
08:28:11.0475 0x3b74  [ 6C76780A01FC2B885BD6E957B5C36B02, DB7834F03A765F65C773E772D8051AFADB22CA4B5074180AA397857A0C47A068 ] NetAdapterCx    C:\Windows\system32\drivers\NetAdapterCx.sys
08:28:11.0506 0x3b74  NetAdapterCx - ok
08:28:11.0506 0x3b74  [ 5D1513BD6430307C9DB86C6E351372ED, D2AB709CF7CFA5B857B084AFC821914A975B7DDDCE154229981F19448973BD6D ] NetBIOS         C:\Windows\system32\drivers\netbios.sys
08:28:11.0522 0x3b74  NetBIOS - ok
08:28:11.0522 0x3b74  [ 6FEBB0A847FFD5F057B9AC8889F1B9A7, 558BCC64C59079E6569F61CCE1219A124B3313FC4E6CB5CBCC94124D202FF19D ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
08:28:11.0559 0x3b74  NetBT - ok
08:28:11.0559 0x3b74  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] Netlogon        C:\Windows\system32\lsass.exe
08:28:11.0575 0x3b74  Netlogon - ok
08:28:11.0591 0x3b74  [ D3BF2DA9216A4CF22A97820A50A67EFF, D00CBE0A7ECFB449D9B48967A01EE56141404EBE229893D5A1710781AD5F2551 ] Netman          C:\Windows\System32\netman.dll
08:28:11.0606 0x3b74  Netman - ok
08:28:11.0622 0x3b74  [ F2645D51DD8AABC8BC72358409410437, 8CB97628923D6CEA6EFAD7E666BE92C154060BD108C28D46287A520A14B18ADA ] netprofm        C:\Windows\System32\netprofmsvc.dll
08:28:11.0660 0x3b74  netprofm - ok
08:28:11.0675 0x3b74  [ D65F295A049473E6A39EA9A0EA76CA32, 274FC0BA044EB2D14093AB0E561F7FACEE06A3F433C81343C8B926FA2F9BD251 ] NetSetupSvc     C:\Windows\System32\NetSetupSvc.dll
08:28:11.0707 0x3b74  NetSetupSvc - ok
08:28:11.0707 0x3b74  [ EFA857E2B0CC7C9DFEF48A2187B910F7, 424475568CD70237F056838388A5F7BDCD1B09349085498644C75940B12E8EAF ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:28:11.0739 0x3b74  NetTcpPortSharing - ok
08:28:11.0845 0x3b74  [ CCF9FF5616904BCFCB410F613BB1AC67, 25D867B1FACA01AEF96CA0909F0E8A45857EC847926A696F1DA969868117D693 ] Netwtw04        C:\Windows\System32\drivers\Netwtw04.sys
08:28:12.0044 0x3b74  Netwtw04 - ok
08:28:12.0045 0x3b74  [ E79E364AF827EB1F141BE000ABB8727D, 96218EB8B7C9E0F614AB9EAEAEC41BD4DB0E9EFE5C1D87EC749B9CB71653CEB1 ] NgcCtnrSvc      C:\Windows\System32\NgcCtnrSvc.dll
08:28:12.0076 0x3b74  NgcCtnrSvc - ok
08:28:12.0107 0x3b74  [ 54C31C2B815E2E26BB8158022F837C9C, CED660D1A58F635C6452F82FCB2EF8ACEEB7785E31617B2ADFD9EE69A2BDF2B8 ] NgcSvc          C:\Windows\system32\ngcsvc.dll
08:28:12.0192 0x3b74  NgcSvc - ok
08:28:12.0208 0x3b74  [ 9B9F520C72EE33EAEC857124BB800243, DFA9386B272F4D86F3E4BE861A2FC4617261E1AA40576DDA610FC24AB4961A63 ] NlaSvc          C:\Windows\System32\nlasvc.dll
08:28:12.0277 0x3b74  NlaSvc - ok
08:28:12.0292 0x3b74  [ 001CBD7A2CD45C4EB39C01C3C677EF73, F4AAF4D60DB1232921C7811A62287B55C7C098B7A1FF9A40D88AF58A5ABECBA2 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
08:28:12.0324 0x3b74  Npfs - ok
08:28:12.0345 0x3b74  [ 90F5DC9802AAA00CD0B6E2AD9E7FFADC, 71C0777829299DECA6ACD42F38802DBE3C29A42CFBD8A396F39DFA44D1F55B6C ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
08:28:12.0361 0x3b74  npsvctrig - ok
08:28:12.0377 0x3b74  [ 1993C85962692EF7024501E7FE92D466, F5BCAA8308495EBF8BB061C2015E07C202A779668D171364D7E312975BC18B10 ] nsi             C:\Windows\system32\nsisvc.dll
08:28:12.0392 0x3b74  nsi - ok
08:28:12.0408 0x3b74  [ 0C6218321A09A7B51BA7FFAFBA4CCB21, 330B3FA793A78410B28DFC8250BBF24442E3BB80434A7938BB96F02337614E0D ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
08:28:12.0442 0x3b74  nsiproxy - ok
08:28:12.0493 0x3b74  [ 98BBD81DC481E9D58EEB31C81EBDEFF5, 28FAAFCB90721C557C37D18533681C274428BC97AB3C3AAFCC75212074E9F2CA ] NTFS            C:\Windows\system32\drivers\NTFS.sys
08:28:12.0546 0x3b74  NTFS - ok
08:28:12.0546 0x3b74  [ 6E6DD6F9DD2A034CF85E94047DBDB992, 63D0A0756F551B7668D1CBAB24B29FD462C706E8A81690BC248D6C92061FE215 ] Null            C:\Windows\system32\drivers\Null.sys
08:28:12.0562 0x3b74  Null - ok
08:28:12.0793 0x3b74  [ 585185AA28DD6C8F653C6AA5A90051EA, 9A69FFB330B196AFDE16C82405C70D414EC7E1857C5E8A42895CFCCB97A4F0B2 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
08:28:13.0025 0x3b74  nvlddmkm - ok
08:28:13.0079 0x3b74  [ D2D76544A26DB7819CBDFC1F4A995B65, 528B529C21B2B9E580F15781918B302378CFAA1111F347ADE40476C484C2FA66 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
08:28:13.0110 0x3b74  NvNetworkService - ok
08:28:13.0126 0x3b74  [ D261DF41F0840F734856A2B4F5E072C7, 2E703556D0C919375D0B7770513456844B13362190643D5524663EC8546E0FF5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
08:28:13.0145 0x3b74  nvraid - ok
08:28:13.0147 0x3b74  [ 23B702B555EB0436B9DAA0BC63DA65CE, D454F80D9657CFEC852F022C12D7B2C1A2D7D247ECC591EDB07B9369DFD8C99E ] nvstor          C:\Windows\system32\drivers\nvstor.sys
08:28:13.0163 0x3b74  nvstor - ok
08:28:13.0163 0x3b74  [ 86893B821E35433759EBD7D21B56B42E, 4979D7F4B41AEA1CF693076D9574CE44ABE8F2584C7383510CB95EF324E70553 ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
08:28:13.0179 0x3b74  NvStreamKms - ok
08:28:13.0244 0x3b74  [ 6917C4B6633B3F0BFAC3DB20011126A8, EE91CCA7453F749258B9EB884D4FDD4BFC32119EB69DD62D9961642233805522 ] NvStreamNetworkSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
08:28:13.0379 0x3b74  NvStreamNetworkSvc - ok
08:28:13.0426 0x3b74  [ 871DF38D1C791031988AC1932D6499FF, BCE58D69BB0D785787BA684F75F75D2F23E65037CAD6A70DBA5B91508DD90256 ] NvStreamSvc     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
08:28:13.0479 0x3b74  NvStreamSvc - ok
08:28:13.0510 0x3b74  [ F99C89CDBB1D0A95777581505BCC400E, EF8D0D04169C38296842EEFDC3701EB91387E2AACB1A213C3A1A08185BE1C756 ] nvsvc           C:\Windows\system32\nvvsvc.exe
08:28:13.0548 0x3b74  nvsvc - ok
08:28:13.0548 0x3b74  [ 0BAF8B3DF77EFF04CC0BEA5F2C3657F9, 8E7A542E20416835F31B8648B5724446A78609C0ACC26FCC20E885CF83BE9CB2 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
08:28:13.0563 0x3b74  nvvad_WaveExtensible - ok
08:28:13.0579 0x3b74  [ 17997DC2441F7E29CDFC6458E0392764, 636CCE2DA1EF8195B33F8D6D5C8CC151D58EBF08DC9AD8ACCCE7ABD41A69639F ] OneSyncSvc      C:\Windows\System32\APHostService.dll
08:28:13.0610 0x3b74  OneSyncSvc - ok
08:28:13.0610 0x3b74  [ 5C12E1436BD6CC9ED022CA5335D4F1A0, CE323DE98A4328B348193B10867E16C840224559F391213590629360EFB5F33D ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
08:28:13.0626 0x3b74  ose - ok
08:28:13.0644 0x3b74  [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987A1697BED86A510 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
08:28:13.0663 0x3b74  p2pimsvc - ok
08:28:13.0679 0x3b74  [ 2BBCED66D7AFC968BDBB0E4D8524DF0A, 762D916390F9DE69B3EA1D31244224F910645F8E5CEF4C505B76B215BFDFCD9A ] p2psvc          C:\Windows\system32\p2psvc.dll
08:28:13.0710 0x3b74  p2psvc - ok
08:28:13.0710 0x3b74  [ 6B81BF7853D161DB8AC62CD8B9C2DE6B, B2DC06D135FD2501217DDA7349556EB873309E02188D4C3901807BA24FAB30C7 ] Parport         C:\Windows\System32\drivers\parport.sys
08:28:13.0726 0x3b74  Parport - ok
08:28:13.0742 0x3b74  [ 0553ECB742278C8F4CFA28B43FF20EAD, ACD7F5BC36573BCEC2C3413DEA687034ECC101EDD3C1544B264BBA29EFCE3425 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
08:28:13.0747 0x3b74  partmgr - ok
08:28:13.0763 0x3b74  [ CDD8EDF4C35BE6D6137112F5CC7A70DA, 80EECA6BC2E668E5652A5CA9B119CCCE2A2E421F0EED1FD0EAC20C42E77C02ED ] PcaSvc          C:\Windows\System32\pcasvc.dll
08:28:13.0779 0x3b74  PcaSvc - ok
08:28:13.0794 0x3b74  [ 4B5F5774FF1C577B9515FDD2B5C535C5, 1D053020079124AC526D84AFFB17BF4A1563ECD872C83B4B6299C9AA6A732557 ] PCDSRVC{3B54B31B-D06B6431-06020200}_0 c:\program files\dell\supportassist\pcdsrvc_x64.pkms
08:28:13.0810 0x3b74  PCDSRVC{3B54B31B-D06B6431-06020200}_0 - ok
08:28:13.0810 0x3b74  [ 29AF16726F4DD84376ECA85AB6AFF2C6, BEF9EA10637065365ED343C4EBA51191B9BEADD8F1F3362D3EFE75F40BE9A027 ] pci             C:\Windows\system32\drivers\pci.sys
08:28:13.0826 0x3b74  pci - ok
08:28:13.0844 0x3b74  [ 214DCC87E3898F738075D1341252A552, E721FBBC3510DDB848A8CAEA3B6031EE988F42252DBC3BF7BDB6ABD9A0D9FABD ] pciide          C:\Windows\system32\drivers\pciide.sys
08:28:13.0847 0x3b74  pciide - ok
08:28:13.0847 0x3b74  [ AED76A3333B3A31536E430020E0226FC, EC255B79B0908E3C142D92E35B79D90A3F2594BA012CA2B1B04A6A8745153430 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
08:28:13.0863 0x3b74  pcmcia - ok
08:28:13.0879 0x3b74  [ E63FB38B6E75B39467492FBAD2CD512A, DB406C92BA2460C833A49B98EB5BD58348E868F643A0123B0C9B5315FFC6A124 ] pcw             C:\Windows\system32\drivers\pcw.sys
08:28:13.0879 0x3b74  pcw - ok
08:28:13.0894 0x3b74  [ CA979960D3A580C78EDB4BBD6BD3ABCC, 2A136BC562235D26F6421027B158D406FB1D08FE7D70A50DD3E4D344B0E27205 ] pdc             C:\Windows\system32\drivers\pdc.sys
08:28:13.0910 0x3b74  pdc - ok
08:28:13.0926 0x3b74  [ 1509A77F840AA9E72CF8247D0CF2FBDE, 2D47AD4D8F5C2D871E603FB6D72D25EFD0E63FA3A542DAADAB9D82ED074C0E0B ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
08:28:13.0963 0x3b74  PEAUTH - ok
08:28:13.0979 0x3b74  [ 028362370BEEBADACC881E3D4956E236, D641E431F8B41218E92C0F02A3FE9897B09E116AC8222DC0E7C4994BC0CEEA2F ] PEFService      C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
08:28:14.0026 0x3b74  PEFService - ok
08:28:14.0026 0x3b74  [ 540116170E2135FCD5DDE77702166B67, CBEC51C2D47532F1781B3255040F303263420B204C2F8BB2B5D1EC342F57B285 ] percsas2i       C:\Windows\system32\drivers\percsas2i.sys
08:28:14.0046 0x3b74  percsas2i - ok
08:28:14.0048 0x3b74  [ 8356F87553BF49C703CF382033815898, 245EB941566D848F134629690BF271B1CBEAB6440771D3D8D7AED3756835354E ] percsas3i       C:\Windows\system32\drivers\percsas3i.sys
08:28:14.0064 0x3b74  percsas3i - ok
08:28:14.0079 0x3b74  [ CB5343FF52A702A9ACFAAE6BE972FE09, EAA5362D91D05D382DF4EBBAA3FD575456F23CAD531CC6F1270F8254892DBF02 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
08:28:14.0111 0x3b74  PerfHost - ok
08:28:14.0126 0x3b74  [ D0D57322ABC7473E54472D8374169CC5, BD14A13D6908C8669E56EF9401FD8A3D7C618E8B6556B36E634864E733BCA4B2 ] PhoneSvc        C:\Windows\System32\PhoneService.dll
08:28:14.0164 0x3b74  PhoneSvc - ok
08:28:14.0179 0x3b74  [ C7A94D99CDF054248EFBD9B93D096DA6, F59F0EB5B17DC078E47D044B1126A786D67DC149AC9614CDA6AA1226EEE3EF55 ] PimIndexMaintenanceSvc C:\Windows\System32\PimIndexMaintenance.dll
08:28:14.0195 0x3b74  PimIndexMaintenanceSvc - ok
08:28:14.0226 0x3b74  [ F931F21E4287FE3ECCF09B54A232BBA2, CEB7AB3236E5F30214027092B7B695ED35F7A1E007DF4046797D1E4DFEF49EC8 ] pla             C:\Windows\system32\pla.dll
08:28:14.0280 0x3b74  pla - ok
08:28:14.0295 0x3b74  [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3FBB74A27266C9C ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
08:28:14.0311 0x3b74  PlugPlay - ok
08:28:14.0326 0x3b74  [ 56D7A89423325121C4A9BD5C326414F3, 649048C23D1973C3504E26B35362AC99DFE9BF31FFE73F45B43306A212AEA34C ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
08:28:14.0349 0x3b74  PNRPAutoReg - ok
08:28:14.0349 0x3b74  [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987A1697BED86A510 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
08:28:14.0380 0x3b74  PNRPsvc - ok
08:28:14.0395 0x3b74  [ F70CAC34B455D05EAA04B2F8FB58E1CB, 295BFFB3DA03C5CE5462C11D3240024B68AC06E8DEA9062A739BE2CCEE19EB5D ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
08:28:14.0427 0x3b74  PolicyAgent - ok
08:28:14.0427 0x3b74  [ 60C8376B48BA96F07AEA536527433D44, EB988C119C3E71169B91ED2A744C71933DD35447DC4A8249E80EC24E9E7077D4 ] Power           C:\Windows\system32\umpo.dll
08:28:14.0464 0x3b74  Power - ok
08:28:14.0464 0x3b74  [ 5645B9D9788CCA2C88B9534996ED2D6D, 4988942DF163DB5B9B1A08CE6B628D2C47C2E2EAA30AEAE4EFE21C8CF4C8DC5D ] PptpMiniport    C:\Windows\System32\drivers\raspptp.sys
08:28:14.0496 0x3b74  PptpMiniport - ok
08:28:14.0549 0x3b74  [ 77ABF70C71922873BC160933571B3F83, 7FCFBB4B42E7A92FCF11388CD5B600EA79A7C134F13A8A88CF8DCD3DB96C3F5A ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
08:28:14.0665 0x3b74  PrintNotify - ok
08:28:14.0681 0x3b74  [ 372913E12677A8CBBBABDD8311894F9D, A5233D95A0D22D2A9DB214E7CB79A99D389B67189FF6A87D0AD4610A333A637F ] Processor       C:\Windows\System32\drivers\processr.sys
08:28:14.0696 0x3b74  Processor - ok
08:28:14.0696 0x3b74  [ AAA31951B1D669EF912E42744095D6AD, 71F39A1582A23761DE64E1E9B400AC2B17582CD0681446EE442C755F6C7B4784 ] Product Registration C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
08:28:14.0712 0x3b74  Product Registration - ok
08:28:14.0728 0x3b74  [ 1F115AF75EFBAC28479B4F94A3F8D4A3, BE8D8C50D985F6AF9DDC0F13BDBE2D55D600E1F5E344982536538B14EC484AA6 ] ProfSvc         C:\Windows\system32\profsvc.dll
08:28:14.0750 0x3b74  ProfSvc - ok
08:28:14.0750 0x3b74  [ FC98407B85A31161851FDE245517574F, 2CCD706CF243934FCDA32B24CE0C385EA2E67F206E0306FA584496F583A20CD1 ] Psched          C:\Windows\system32\drivers\pacer.sys
08:28:14.0765 0x3b74  Psched - ok
08:28:14.0781 0x3b74  [ 7A68710BAC9B6809314B86C0CB1CBC4A, C02D97993D1F6FE6EFBA5B1366B3A4FE8CE1136A95F3A2DA07BA59554C163501 ] QWAVE           C:\Windows\system32\qwave.dll
08:28:14.0812 0x3b74  QWAVE - ok
08:28:14.0812 0x3b74  [ 819602BBBFDB0BD46DEA3715BF0DD452, D4007FF1E5296316B53436CA3598D6B1CF4F60AB77D5B02F3E595081EDD5D879 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
08:28:14.0850 0x3b74  QWAVEdrv - ok
08:28:14.0850 0x3b74  [ CDF47037A0939F56D11F699629C276AD, A63F2A3FE80FB8084E3870E907505694B79EE1D9E56E292C01D481FEFD2534B0 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
08:28:14.0866 0x3b74  RasAcd - ok
08:28:14.0881 0x3b74  [ 28C2EA278070EE12701D0EDF8CB0EC36, F10288C1C6835840026DB30285345EF892DE989F43C948E7F4760B8895FF675F ] RasAgileVpn     C:\Windows\System32\drivers\AgileVpn.sys
08:28:14.0897 0x3b74  RasAgileVpn - ok
08:28:14.0912 0x3b74  [ 7B82197BF35CC3BE59AEF8B706AB8A16, AB0216164A548A48CD21F5F035E57E867584A96890B9887EC08F8DABDD89F990 ] RasAuto         C:\Windows\System32\rasauto.dll
08:28:14.0928 0x3b74  RasAuto - ok
08:28:14.0946 0x3b74  [ 17E565710172ED71B8531D8822E1C5D1, 0CA39ABD9E544DDAD9D9D7D1FC50444274C31E18F9BF73069051D9F62833698F ] Rasl2tp         C:\Windows\System32\drivers\rasl2tp.sys
08:28:14.0965 0x3b74  Rasl2tp - ok
08:28:14.0981 0x3b74  [ 989DBF4805124A31610947E502501696, BCB73879AEC0588D0BFAB915D1F6EB637333A24D2030ED6572B3A3C03865AE93 ] RasMan          C:\Windows\System32\rasmans.dll
08:28:15.0012 0x3b74  RasMan - ok
08:28:15.0012 0x3b74  [ 9387DF155233D45D4E010F4F2FB52A57, CABC25DA4E512809AED0085767BDD94BF3C1DA792BFF8A009B5465D9110E7060 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
08:28:15.0044 0x3b74  RasPppoe - ok
08:28:15.0049 0x3b74  [ F0F4EEDEEBEE7A4244FAFB96A16B5712, F64717E601BD5EB674003009507B8CDD6F69F00E8670D6895EC64786166A0E8D ] RasSstp         C:\Windows\System32\drivers\rassstp.sys
08:28:15.0066 0x3b74  RasSstp - ok
08:28:15.0081 0x3b74  [ 6132B142C5A1FA4C05F06FE43DE5E55E, CCF64C9A778501635B8B5E20BB617D39D0298329FD6911DC125FC8B31FEFEDE1 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
08:28:15.0097 0x3b74  rdbss - ok
08:28:15.0097 0x3b74  [ 79A415E6FA915EFC00297DAB16EC2635, 47BB49F6D756214193D38A4AB182B541AAC180381C3111FF7F9B0AD4C44D8733 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
08:28:15.0113 0x3b74  rdpbus - ok
08:28:15.0128 0x3b74  [ 7135785C21CA79D270D11037C43D3F19, 654A3C65CF891ED8C82A740D10CF607FC7D709185E664DE03288CEB5B25F03A6 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
08:28:15.0150 0x3b74  RDPDR - ok
08:28:15.0150 0x3b74  [ 97A61A3CB2B5CB4FC32B3224EF333448, E4F2E8BCEE3639BE57BBC8A8E67FDE42C3A5158F1204684B0ECD216F4AA044A3 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
08:28:15.0166 0x3b74  RdpVideoMiniport - ok
08:28:15.0182 0x3b74  [ 69BB204AE07EE84ECFAB1BF13C4BD04B, 1CA832CBF4AE4821EEA2A19F9519C2D1D00406B8CCE2A86FE3B33A5F293DB218 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
08:28:15.0197 0x3b74  rdyboost - ok
08:28:15.0213 0x3b74  [ 940D6F5A2B0A61EE4170DF84F6C95C20, F8EE846DC8015EDFE7CB5BEEDC977EAA9C586BAC2216DE69D8ECCBDBC7408649 ] ReFSv1          C:\Windows\system32\drivers\ReFSv1.sys
08:28:15.0251 0x3b74  ReFSv1 - ok
08:28:15.0266 0x3b74  [ 3729C0D2A67034FD2119D2956C5F5DF1, 188D4E740DF6926A096E2B3BCEA3F283A5D6F731916C384582A39376D787BE73 ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
08:28:15.0282 0x3b74  RegSrvc - ok
08:28:15.0282 0x3b74  [ 13F6B64235C60167052364BF7D99E4CA, BC12EE00775F7456FB922FBD684BF3F0CFABA5BEBB6E162C23B41DED5C20A978 ] RemoteAccess    C:\Windows\System32\mprdim.dll
08:28:15.0329 0x3b74  RemoteAccess - ok
08:28:15.0329 0x3b74  [ 3183B161B1F05333F6C325577FEF3596, D6A89B2A021377B6F371E5B9EFC36FF018822B28F0ED41F8CD2F00C5C8605707 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
08:28:15.0366 0x3b74  RemoteRegistry - ok
08:28:15.0382 0x3b74  [ CE44FB62412C9B78008BE740B0E16D11, 4FA01F54EE3924EEE0953FB27336FFB01069F2248859B4984030E5D364807335 ] RetailDemo      C:\Windows\system32\RDXService.dll
08:28:15.0413 0x3b74  RetailDemo - ok
08:28:15.0429 0x3b74  [ E82F3B1918C6A5FE6EB761CDF1E772AF, 0C993FCB7BFD6E01B70A1821E0DEAFA2CB241AF8C2E6D4CC120F59C1B5F6FF5F ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
08:28:15.0450 0x3b74  RFCOMM - ok
08:28:15.0450 0x3b74  [ E6F4C01AEA6F4E2A1A4C0F67CECD0C13, 43CC0C51B7CA52FFFED528CC560B63EA007BB4E74FF577C322663227296389F8 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
08:28:15.0466 0x3b74  RichVideo - ok
08:28:15.0482 0x3b74  [ 5DAA644F17780FC4E3F4820A46D38FEC, 32C27FFA0A4608B164F4E709CD0D998AB73CA9713BE3E47F9DBC7B3D1B6C7453 ] RmSvc           C:\Windows\System32\RMapi.dll
08:28:15.0497 0x3b74  RmSvc - ok
08:28:15.0497 0x3b74  [ 672724C8B21B7DC56646045DE4D5B860, 79986E80A92C949C543959F1E35647A9788DAB2892AC20B6DEA5C0BBC0CEDE9E ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
08:28:15.0513 0x3b74  RpcEptMapper - ok
08:28:15.0529 0x3b74  [ 109C1D609951E886D3643B15C1EDD1C2, 347D8E7C50EC7F96217C7421D9BC8A42C9DF50B94169CB58DCF857A63C33C2EA ] RpcLocator      C:\Windows\system32\locator.exe
08:28:15.0545 0x3b74  RpcLocator - ok
08:28:15.0551 0x3b74  [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C946708E955A2909 ] RpcSs           C:\Windows\system32\rpcss.dll
08:28:15.0598 0x3b74  RpcSs - ok
08:28:15.0598 0x3b74  [ 5FF28F097C9699097B473F8FC7C1AA7D, 695560F1DBD85073F3D6CB1FF16F16504CA044EA62E940E463A16BBA8B86E2FA ] rspndr          C:\Windows\system32\drivers\rspndr.sys
08:28:15.0613 0x3b74  rspndr - ok
08:28:15.0629 0x3b74  [ 1189E378EF1891435394ABFA2EDF7381, 58D2C514053DE45F33E08F029E6FE318CC515EB94C9F290DAF9FB8B05A381F4E ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
08:28:15.0644 0x3b74  RtkAudioService - ok
08:28:15.0650 0x3b74  [ E7273015245874AF1AB41B476D914C71, 53312DED5112928AE4B1BEF17EE6F807C0743BDDDF70CDC5EA865FDCE459835A ] RTSUER          C:\Windows\system32\Drivers\RtsUer.sys
08:28:15.0666 0x3b74  RTSUER - ok
08:28:15.0713 0x3b74  [ 6B9E2BB805D07F0FAEB76CCC92ABD241, 8B647ED5A1F92A9A2508967A664D50BF48D88830FCFC59E08839298E46207245 ] rtsuvc          C:\Windows\system32\DRIVERS\rtsuvc.sys
08:28:15.0767 0x3b74  rtsuvc - ok
08:28:15.0783 0x3b74  [ 48B436532BD136985E590195BECBA075, 4D115F7B757FF6D8C1A96B46B4D9A71488DE3F7F1DEB093A89C78010A535FB24 ] rtux64w10       C:\Windows\System32\drivers\rtux64w10.sys
08:28:15.0798 0x3b74  rtux64w10 - ok
08:28:15.0814 0x3b74  [ B5DAEE69BACA64D2BB004568E22D8756, C0072CF6B438ED756435A182D55AC55F3AD356ACBD483DE06A94893D3CA8CCC5 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
08:28:15.0829 0x3b74  s3cap - ok
08:28:15.0829 0x3b74  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] SamSs           C:\Windows\system32\lsass.exe
08:28:15.0852 0x3b74  SamSs - ok
08:28:15.0852 0x3b74  [ 5E73FB63E2DBC75FE0C17DEB0010CE0E, 9DAC47486262397D03BC01F7438CAB62CF33BD7B5283F5B9548C770A3D6D0ADC ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
08:28:15.0867 0x3b74  sbp2port - ok
08:28:15.0867 0x3b74  [ 3CD0130FFDEAEACF0905B482F3934EA3, 1EC355B63135FD2563093EBB206741C0C4CCE0551A662F6DC86C875146A88B06 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
08:28:15.0898 0x3b74  SCardSvr - ok
08:28:15.0898 0x3b74  [ 5E8ECCE130A72107B6DFDBE26185A7FB, 811E2CE485BC14161FF629069BCCF53B2B8C6F8B1E1A6B3A3C86DBE4F85A5577 ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
08:28:15.0930 0x3b74  ScDeviceEnum - ok
08:28:15.0949 0x3b74  [ 3D9A82B03C92D1FEC42CB171D6F57778, DC027F02F5EB5F1D10DB6F405FB0C15D4D5C922445F5F3C916624113278AF072 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
08:28:15.0983 0x3b74  scfilter - ok
08:28:16.0014 0x3b74  [ D4DB6B318A0A0C74A90260725A228C0B, 57BA2EF9D880488C785C806ABF9EE753A48E589129442D72F815CD6EFFA07B22 ] Schedule        C:\Windows\system32\schedsvc.dll
08:28:16.0114 0x3b74  Schedule - ok
08:28:16.0129 0x3b74  [ 9055ADDFBA4C8B914C914CE693B55C0A, DB213AC36E14D856B81D2AFE46815402537A2ABEEA15032A9FF436F953129441 ] scmbus          C:\Windows\system32\drivers\scmbus.sys
08:28:16.0151 0x3b74  scmbus - ok
08:28:16.0167 0x3b74  [ B6F2363584E62960846F7C3F00124A4F, 252189FF9D623CF69BF415FF7C7FE74B0BBF756B632420578BFAFF6595616CF7 ] scmdisk0101     C:\Windows\System32\drivers\scmdisk0101.sys
08:28:16.0214 0x3b74  scmdisk0101 - ok
08:28:16.0229 0x3b74  [ E189727B3C9909A85B33A16B290E192E, 2C273A9F44EDC5E5435904E9681973854B2F3EBB6100021BB139FF0CCCE9BF20 ] SCPolicySvc     C:\Windows\System32\certprop.dll
08:28:16.0251 0x3b74  SCPolicySvc - ok
08:28:16.0267 0x3b74  [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF293EE5903D7AD0A ] sdbus           C:\Windows\System32\drivers\sdbus.sys
08:28:16.0283 0x3b74  sdbus - ok
08:28:16.0298 0x3b74  [ F3714DBAA42C15F78FFCDFE4273214EB, 2D018970B92C5F0744FAE10A2FC298F3DCEA5C2EDEB760F4F0651337B9878ABF ] SDRSVC          C:\Windows\System32\SDRSVC.dll
08:28:16.0330 0x3b74  SDRSVC - ok
08:28:16.0330 0x3b74  [ 120DFCB71D6C502613A9E2D50E16850C, 2C294010AD1C9C380CD5221A37720544178B7358C8C8553AF44055E4CEE5DAF5 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
08:28:16.0352 0x3b74  sdstor - ok
08:28:16.0352 0x3b74  [ EFD644DD091E1D94555FC3BBC95EA66D, FBDDA6680BEC378CCF12A32D9186020E884DA15A1E789D1531B1E687FC7B54B1 ] seclogon        C:\Windows\system32\seclogon.dll
08:28:16.0383 0x3b74  seclogon - ok
08:28:16.0383 0x3b74  [ F48535714BED7DD784853889B4594B26, 9B4AB7E7293E79A8F6CC46C84F23E62AD3BD6E958FCE078CDBB125A69FAC7E50 ] SENS            C:\Windows\System32\sens.dll
08:28:16.0399 0x3b74  SENS - ok
08:28:16.0430 0x3b74  [ CF2AEB951CFC56D4F6CF2D66218B673C, CEA0B0E0251EA198893830080EE4CB8A9F18ADBF1F6FEFFC9C7E8AB4588D0639 ] SensorDataService C:\Windows\System32\SensorDataService.exe
08:28:16.0483 0x3b74  SensorDataService - ok
08:28:16.0499 0x3b74  [ C09A42163878A082C3F0D0A3DFE95714, 8033DC38D0EDED3758DA6BF8C1955BE5FFE48863C079C589660B37D0E461300F ] SensorService   C:\Windows\system32\SensorService.dll
08:28:16.0549 0x3b74  SensorService - ok
08:28:16.0552 0x3b74  [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADED20EB6ECEBB55D ] SensorsHIDClassDriver C:\Windows\System32\drivers\WUDFRd.sys
08:28:16.0568 0x3b74  SensorsHIDClassDriver - ok
08:28:16.0583 0x3b74  [ E6F00415DADCEEC860E7AB42BFD19A65, 274CAF22F93D43B6DB6953730E3DF8DA94776B24EEE74B80AB4CD780BC1366A9 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
08:28:16.0599 0x3b74  SensrSvc - ok
08:28:16.0615 0x3b74  [ 401D706DDC0A7AF18C3DD228ADF74551, 27C0B38D7C2E3F6FF06201124E63483931F6071954B2B99EC0143C464238C0B7 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
08:28:16.0630 0x3b74  SerCx - ok
08:28:16.0630 0x3b74  [ 7084D11083F0CDCA8B5C76F9846ABF5D, F639920882B0E784D8CFAF0D4C0F0C411937B6831E5DD99B0ABFBFE06BA4742F ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
08:28:16.0653 0x3b74  SerCx2 - ok
08:28:16.0653 0x3b74  [ 3FF478A8ED32A83C36581425F6282B6C, 787646A17098EA7CF36064D0A950C1D470D4A280C8C5AC40023D566E53860EAE ] Serenum         C:\Windows\System32\drivers\serenum.sys
08:28:16.0668 0x3b74  Serenum - ok
08:28:16.0684 0x3b74  [ 92509187AA171A80521528B36F753E1D, FE0DA272B8A155ECC161E99586C4AE7EE17B1C84BC330DA1566C83B8E03FA825 ] Serial          C:\Windows\System32\drivers\serial.sys
08:28:16.0699 0x3b74  Serial - ok
08:28:16.0699 0x3b74  [ 433D38FF6D08B993847EA2A10EB8CB52, 29BA75DB6D1AC761BBDFB5AC8874FC7D763E1CD10D290E369063B34CE951270F ] sermouse        C:\Windows\System32\drivers\sermouse.sys
08:28:16.0715 0x3b74  sermouse - ok
08:28:16.0731 0x3b74  [ 82CF273F0E8F243789683DEB40757569, 5433D93A41C4BF04494E6158931C6AC3154888F7CD3A417253EC02FF7EA6D00E ] SessionEnv      C:\Windows\system32\sessenv.dll
08:28:16.0752 0x3b74  SessionEnv - ok
08:28:16.0768 0x3b74  [ 697D3EE0740AEAB62B66ABCA1C83D13B, FCF54A0071ED04AD3FC8551C67FE5FD49089DC0510F753052CAC5972A65C9E3D ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
08:28:16.0784 0x3b74  sfloppy - ok
08:28:16.0799 0x3b74  [ E38BE81F0F6D9C74E420A82BC6A02AFE, 25D7594FD1BE0B303F9777ACBA702ACD0C27B00D21F82659989C40636851A330 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
08:28:16.0830 0x3b74  SharedAccess - ok
08:28:16.0846 0x3b74  [ 482E6BE8A07832E824080D352075ACA1, 4123A76C8E805AF4FE229C53E9C174095C0937913BA81A63FE9B45C44AA5B15F ] ShellHWDetection C:\Windows\System32\shsvcs.dll
08:28:16.0883 0x3b74  ShellHWDetection - ok
08:28:16.0883 0x3b74  [ CF3BDF9EAD8D3EF671E9339B44B185BA, C17EC6D5B00F49D9C8B5B6C262A85F34ED71C58450659F006B3632AA84F68E23 ] shpamsvc        C:\Windows\system32\Windows.SharedPC.AccountManager.dll
08:28:16.0915 0x3b74  shpamsvc - ok
08:28:16.0915 0x3b74  [ A34CE1830E45DA98932295FDE4B7908A, FC553ECF4D64B4B10B7FDE5352707785517A18D487A80665BAFC7261E3F35CDC ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
08:28:16.0930 0x3b74  SiSRaid2 - ok
08:28:16.0930 0x3b74  [ A7B5C670770E908DA5FEF5BF1136E933, 8D3BB6FF65E631C34BE8EA766481B2FDB2E1E916A4FD67F86705A8975A136E6C ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
08:28:16.0952 0x3b74  SiSRaid4 - ok
08:28:16.0952 0x3b74  [ D233EAE2A9D48485321816486ED635EF, 03AB49BE9CF15EB7EDC50C400E673B4DF0E5BFDA9A7811E157F2AF2F3CF38D49 ] smphost         C:\Windows\System32\smphost.dll
08:28:16.0968 0x3b74  smphost - ok
08:28:16.0983 0x3b74  [ 0B217141AC1283655402CDB356577735, 6EFA4CA46CFC8B7156CE7E5CA89B7F7073E16D66C2FC13F4DB95FEB78CCF698F ] SmsRouter       C:\Windows\system32\SmsRouterSvc.dll
08:28:17.0015 0x3b74  SmsRouter - ok
08:28:17.0030 0x3b74  [ 6F4CE07D420FB657B5936F71101ABD41, CEC52984C56E578E0FFE12BE1B8148335F788B7D1751F2D0E79B944A41113C20 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
08:28:17.0052 0x3b74  SNMPTRAP - ok
08:28:17.0052 0x3b74  [ 8BDB9E47D84144110F05AB757E630374, 8A49004895B8AD17C877AA8E7B6A0F14936BDDCBB88F0E5FB880DD0D816AEAB4 ] spaceport       C:\Windows\system32\drivers\spaceport.sys
         
Code:
ATTFilter
08:28:17.0084 0x3b74  spaceport - ok
08:28:17.0084 0x3b74  [ E03264C4C25B568F92ED1656AD541E64, D42942BFFBC7213D204FAF84F4FE015FC23A6ACB29B5E752834EDBC17A3AC20D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
08:28:17.0099 0x3b74  SpbCx - ok
08:28:17.0115 0x3b74  [ 1DFE222F8D6A422B7ADC909E0C8840DA, 96761691CF4447710D65573044A1005F2F0F89443DF581A30B97D7944940BB70 ] Spooler         C:\Windows\System32\spoolsv.exe
08:28:17.0153 0x3b74  Spooler - ok
08:28:17.0251 0x3b74  [ 23529A00195CE71252FEBF647E56E27D, 8ADF7A1C96DAE005E9A974D90BE8954F88D49B6848252B88513C49E0A3BD9774 ] sppsvc          C:\Windows\system32\sppsvc.exe
08:28:17.0353 0x3b74  sppsvc - ok
08:28:17.0384 0x3b74  [ FD3C05C412BE1C9FA477AD9CF9B2AADB, 19BEF5B3A0DAF8227200C2294547A497021F0B2558211345BFFFD13678522592 ] srv             C:\Windows\system32\DRIVERS\srv.sys
08:28:17.0400 0x3b74  srv - ok
08:28:17.0416 0x3b74  [ 55CA5329D1ADEB8F8034045930147AE4, D4F31BC82700D166564C7F9CDCEA3ABAB4A37B55137C34572768DF46FDA9320A ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
08:28:17.0453 0x3b74  srv2 - ok
08:28:17.0469 0x3b74  [ F13EE0DB1FB1D6946AC3228D7EFCFC8F, 109A809F0338FAB0F4045FA5EE33C6F0A994A9F586B2FBD8920A6AABA0E0EF66 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
08:28:17.0484 0x3b74  srvnet - ok
08:28:17.0484 0x3b74  [ 44758105AB3EA34E815D4B6CA1153311, 7F223A20D2538C123BAC6F75BE0E126876A116F09502FD980C05B8916E26E1B7 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
08:28:17.0515 0x3b74  SSDPSRV - ok
08:28:17.0515 0x3b74  [ B97C7EC07218A8002323718202BF5E77, 39D3254383E3F49FD3E2DFF8212F4B5744D8D5E0A6BB320516C5EE525AD211EB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
08:28:17.0550 0x3b74  SstpSvc - ok
08:28:17.0631 0x3b74  [ 4E330AD1EED4A5D582EE415FD55953A2, 2C02E1F45F74D250110BA5117AA942495CB2EBAC7F2CCECC284B4FB8F47B13E1 ] StateRepository C:\Windows\system32\windows.staterepository.dll
08:28:17.0769 0x3b74  StateRepository - ok
08:28:17.0769 0x3b74  [ 29D26E1347AE1BBD4201014E19880B2C, 9E2153AD96CE4F189EEE43BB02515532C619FB1CA02D8F6DEF517AC3347AAA14 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
08:28:17.0784 0x3b74  stexstor - ok
08:28:17.0800 0x3b74  [ 91CB95B35481155BFE29C217CD237F27, CA66957DF1441D991453BEF02D768D44E5D9A484BC23C8874E8A7AC20904CB06 ] stisvc          C:\Windows\System32\wiaservc.dll
08:28:17.0831 0x3b74  stisvc - ok
08:28:17.0831 0x3b74  [ 6BC6023E866489D22CE30E18846B80D9, FD0D13332F3E267524A9FA7FEC128298D4905722807C172AE8E3DFE445C28DB1 ] storahci        C:\Windows\system32\drivers\storahci.sys
08:28:17.0853 0x3b74  storahci - ok
08:28:17.0853 0x3b74  [ C5E0ACE4771F5575D9D5B457ABF3AD03, 365880BC5AC313F25C313EFB7758301F98D9B2BF4C5FC9499F98C2B7F8407D96 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
08:28:17.0868 0x3b74  storflt - ok
08:28:17.0868 0x3b74  [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme        C:\Windows\system32\drivers\stornvme.sys
08:28:17.0884 0x3b74  stornvme - ok
08:28:17.0884 0x3b74  [ BEBF85EB4D90E6996047DA027D0ED26E, DF109CF0F07CDD1B9B702C2A076D4DD5366DAAD971CC9359AF0358E79981706F ] storqosflt      C:\Windows\system32\drivers\storqosflt.sys
08:28:17.0915 0x3b74  storqosflt - ok
08:28:17.0915 0x3b74  [ B91FBE7CB4633FEB32AFBD0B48576396, 9EFDD92E8096CE5555F8DC3C870864E5515469603C2373B99B3607234633CA66 ] StorSvc         C:\Windows\system32\storsvc.dll
08:28:17.0952 0x3b74  StorSvc - ok
08:28:17.0952 0x3b74  [ 8E73037A6F8938475692FFCC26EBF385, F78C5CD1A3CD17AA831EEC82426B14006B4DDBC9085A4814E04E8C37FD6B05F7 ] storufs         C:\Windows\system32\drivers\storufs.sys
08:28:17.0968 0x3b74  storufs - ok
08:28:17.0968 0x3b74  [ 9D9DED47DA10E845EFF2DD57C94C809B, 520D0CE7A867051B80C8141E351FE5A5BCE3C99776093F234DB77D3407B1F104 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
08:28:17.0983 0x3b74  storvsc - ok
08:28:17.0983 0x3b74  [ 4BBD324372664F7EC73E93553A92CD2C, 43DE2A7C3A8B64535E104E4FB8AB32AD93EFC10F2EAE3BF287A06A89C5998124 ] SupportAssistAgent C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
08:28:17.0999 0x3b74  SupportAssistAgent - ok
08:28:17.0999 0x3b74  [ 224C92E442B1B8C20C274332F1ACF00D, CDE5DCFB7A21089464A6E2ABB29BBE08B184C3433C218756AA5902A8F67C0B2C ] svsvc           C:\Windows\system32\svsvc.dll
08:28:18.0030 0x3b74  svsvc - ok
08:28:18.0030 0x3b74  [ 505E0C40B5D0ADDCBB414640F59BD2E0, DF4B5E65FE6FF2224F298A2A2FAC9B648C082DFF8463148633647580A9FAD34D ] swenum          C:\Windows\System32\drivers\swenum.sys
08:28:18.0046 0x3b74  swenum - ok
08:28:18.0052 0x3b74  [ 2EE27411B5904C63D723BEA391819F58, C88C11D460E90398E16011B8A2CED5EE5626084F24790EA6115532F8F70060C6 ] swprv           C:\Windows\System32\swprv.dll
08:28:18.0084 0x3b74  swprv - ok
08:28:18.0084 0x3b74  [ 32F46FB0F290D16DAA452B289C985795, 73F88AAAA6026DB4C27F1D054145216DCC3F1960946FB2A7A90518DD1D5737CB ] Synth3dVsc      C:\Windows\System32\drivers\Synth3dVsc.sys
08:28:18.0099 0x3b74  Synth3dVsc - ok
08:28:18.0130 0x3b74  [ FED48B19D6F55D7A3AB498D85729D1BA, FA5E0E02BC2E2DE108C55991E3B063CC947072228B53539F42F922661510DE7C ] SysMain         C:\Windows\system32\sysmain.dll
08:28:18.0199 0x3b74  SysMain - ok
08:28:18.0215 0x3b74  [ D9FEA79BF6AF136F8E656AE045C2FEC8, E6F08A93348E035185F0F1C6B6277E636F4F25D1136E3ACCA63488DAEEC7114B ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
08:28:18.0252 0x3b74  SystemEventsBroker - ok
08:28:18.0268 0x3b74  [ 86E7FD5C8DBEC1EB51C4368561402B75, 86EE61414CD5854E39E33F67BF5DA4377B569B3ED4D18882C470BC6784891DA1 ] TabletInputService C:\Windows\System32\TabSvc.dll
08:28:18.0299 0x3b74  TabletInputService - ok
08:28:18.0299 0x3b74  [ 3929C8FC134AC672C4F3F85160956257, CD3195CA58BA6F55EA0DDA2BE6AB58280AD1CA488D7AAA1539DD05FB99374F36 ] TapiSrv         C:\Windows\System32\tapisrv.dll
08:28:18.0331 0x3b74  TapiSrv - ok
08:28:18.0383 0x3b74  [ 2011413864620317C8F931219CAF09C3, 640B39A8F355145CFA8174A1767B7DFCCF6DDC6A03AE0D54E346D8EEA9039415 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
08:28:18.0450 0x3b74  Tcpip - ok
08:28:18.0515 0x3b74  [ 2011413864620317C8F931219CAF09C3, 640B39A8F355145CFA8174A1767B7DFCCF6DDC6A03AE0D54E346D8EEA9039415 ] Tcpip6          C:\Windows\system32\drivers\tcpip.sys
08:28:18.0568 0x3b74  Tcpip6 - ok
08:28:18.0584 0x3b74  [ EC9450227A4C661513661F1F9C1F7DD6, 4DB122DECEA7C76BD20A6682958609A40CA2C9EDD236DFA19E9B31C57114DA3A ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
08:28:18.0599 0x3b74  tcpipreg - ok
08:28:18.0615 0x3b74  [ 0B237F8A96952BF95A14865030E131F2, 263089672218D3A768A6FC9D28DBEFE113D6757A9ECBAB4D364A62AC5DDA8AAE ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
08:28:18.0615 0x3b74  tdx - ok
08:28:18.0631 0x3b74  [ 06130AFFECEB94525FC2352936576B70, 10EBE2C8FDC087D29E2FFB328F0F7905A5374AB8CC9FAE8699E7676DBC8CBF91 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
08:28:18.0631 0x3b74  terminpt - ok
08:28:18.0652 0x3b74  [ FB68E5F02316C42BE7282DA492351C6F, AC31D841FEA58B776127E138DB20F8D48E26FD8C00CE2FA9695EA14EBF159A0A ] TermService     C:\Windows\System32\termsrv.dll
08:28:18.0699 0x3b74  TermService - ok
08:28:18.0715 0x3b74  [ 2AF438EC0D361A7BBB70E604A686602C, 4BE6A0461EB2CB94288614434A1CEC81C2ED46241721FD5BBD8ABE0680F7C804 ] Themes          C:\Windows\system32\themeservice.dll
08:28:18.0731 0x3b74  Themes - ok
08:28:18.0751 0x3b74  [ 1482B8ED5CACA87992A882B853B83CEE, 613247F0E362A109090E8563D977DECC50C64D45D6962905FA84A2D59329045C ] TieringEngineService C:\Windows\system32\TieringEngineService.exe
08:28:18.0768 0x3b74  TieringEngineService - ok
08:28:18.0784 0x3b74  [ 3B3C607C3C62DFBEF61938DA2CAB94DF, E5EEA7F45A7BBFDF6F0003CD77E39958C451DD1B4B401876B5619A3C20F5C370 ] tiledatamodelsvc C:\Windows\system32\tileobjserver.dll
08:28:18.0830 0x3b74  tiledatamodelsvc - ok
08:28:18.0847 0x3b74  [ C1F8CBE2D4843E0CCC3EFEA2EC60D4AB, 9D07527D982066922318C77AECE99280DE55034C375ACE145E827A6BEB5C3B70 ] TimeBrokerSvc   C:\Windows\System32\TimeBrokerServer.dll
08:28:18.0883 0x3b74  TimeBrokerSvc - ok
08:28:18.0899 0x3b74  [ 46171262D0E806779DEEDFCAB2F830CC, 7F4A4658B8BA217D99E5B5C0E01600C20DC96ECBCA32A5BA7FBE17D2A7B8BFD8 ] TPM             C:\Windows\System32\drivers\tpm.sys
08:28:18.0915 0x3b74  TPM - ok
08:28:18.0915 0x3b74  [ 3B91F35089240F6187AD681A5EC28BDE, 3D035CB73BC8E7831DCD0FB7D9DAD91CE51D3D0F9D9C8B866A0009BD508B6702 ] TrkWks          C:\Windows\System32\trkwks.dll
08:28:18.0948 0x3b74  TrkWks - ok
08:28:18.0953 0x3b74  [ 09440FA30C020B4443391FAFCF4876E3, 208C7725F70C75D8C96CCAF5B22F83B8B1C66D8C9FFF48465B1C9F4A77425569 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
08:28:18.0969 0x3b74  TrustedInstaller - ok
08:28:18.0969 0x3b74  [ A6F4025664C9D4BC2A9EDAB4092706D7, 89808A1679C0E716F86F06EE7701DCC289200894F0FA1F120DA2AC3A45FDB312 ] tsusbflt        C:\Windows\system32\drivers\TsUsbFlt.sys
08:28:18.0984 0x3b74  tsusbflt - ok
08:28:19.0000 0x3b74  [ 37A96AD493E110C0BF1EE0AC0F9E7DBD, F2A6894A4AEE18DF2B92222CDB0801A13AEEB7212071F0431430788339B30E23 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
08:28:19.0015 0x3b74  TsUsbGD - ok
08:28:19.0015 0x3b74  [ 79E264287F17D56D768440B0270466DE, ABF9DC95C5E939B30BFD9BF9EDFDB3BD78A9DFCB055B945965303B6A60E6D7A7 ] tunnel          C:\Windows\System32\drivers\tunnel.sys
08:28:19.0047 0x3b74  tunnel - ok
08:28:19.0052 0x3b74  [ 13781908186770ABE9F8EBCC2B45B138, 4BEC8466254E0C6492CC55CE344A6173878CFA040238C6BE5842E5209F066DEE ] tzautoupdate    C:\Windows\system32\tzautoupdate.dll
08:28:19.0069 0x3b74  tzautoupdate - ok
08:28:19.0069 0x3b74  [ AA65954F512BA097DD190790876DD991, C1BB2B8F54F064D01190327B5E7949EBBDA21D6FC6F94D9FCD20F685C2F855FA ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
08:28:19.0084 0x3b74  UASPStor - ok
08:28:19.0084 0x3b74  [ AB6268022C3A5B529075A39C33904DA6, 2717F1704640201F2681711543EA39A74C3E89C7DB232EC5DD89FD8AA6F07846 ] UcmCx0101       C:\Windows\system32\Drivers\UcmCx.sys
08:28:19.0100 0x3b74  UcmCx0101 - ok
08:28:19.0116 0x3b74  [ 7ED2EDA43D21C7A5F589A7960E265C52, 7DB8A595236FBB8A264D7AB155201357212855050ABB5B1036EF32F1223FDCC2 ] UcmTcpciCx0101  C:\Windows\system32\Drivers\UcmTcpciCx.sys
08:28:19.0131 0x3b74  UcmTcpciCx0101 - ok
08:28:19.0131 0x3b74  [ 169351463039B45F5CDED9768879F712, 990C8C4AEF9ED7FF6BCEAE67F7BDAA037777B142B8D96A74F8715C941A5C63C6 ] UcmUcsi         C:\Windows\System32\drivers\UcmUcsi.sys
08:28:19.0153 0x3b74  UcmUcsi - ok
08:28:19.0169 0x3b74  [ 08A9E3AD29B215484FBB68CDC175DF3A, 3EFFF99C3BC4A1454E3D2B5177AE587ED3041AB4CE2A95BA7E28A2124E38E1E5 ] Ucx01000        C:\Windows\system32\drivers\ucx01000.sys
08:28:19.0185 0x3b74  Ucx01000 - ok
08:28:19.0185 0x3b74  [ DA70AEE267491AA56BC63AA0C0C96CA2, 0A0AADB27607F9292BB3CE000CFDDB19BD4CA09EAAD926C4925CB43B17817AD9 ] UdeCx           C:\Windows\system32\drivers\udecx.sys
08:28:19.0216 0x3b74  UdeCx - ok
08:28:19.0216 0x3b74  [ FBC5ECF6D5A868D0B116C2DBB02B8168, 945AA76C60ABAD6075B5C8F9172C018F75BCF393A1CB8B329F5E68E664627775 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
08:28:19.0254 0x3b74  udfs - ok
08:28:19.0254 0x3b74  [ B918E40FAA9CD118CCA4AD388B748C98, 4B539B7B656F02C5E5BAEE52A677757B05CC11C5500D619850A564C28FAB8115 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
08:28:19.0269 0x3b74  UEFI - ok
08:28:19.0285 0x3b74  [ 0FD75222C1AD2687AB365BEBEA400DD4, AD10DBCA59EB7D34FD8F963CE267F36774A9BC613F8D637903B12AC88C328E8A ] Ufx01000        C:\Windows\system32\drivers\ufx01000.sys
08:28:19.0301 0x3b74  Ufx01000 - ok
08:28:19.0301 0x3b74  [ C1A78C53E01C641AE41BFA65797819F5, 0B9FE1BD724B3315199A1B1DA2F03255E4FE744DA3CE6CD0F77699A8E42E9359 ] UfxChipidea     C:\Windows\System32\drivers\UfxChipidea.sys
08:28:19.0316 0x3b74  UfxChipidea - ok
08:28:19.0332 0x3b74  [ 767307212110EBEFB93EC9A5BE9E85B9, 368797400FE54802CE74F34B773CE2AF09EB8DEA6C035B55419A52F0B5A6FAD0 ] ufxsynopsys     C:\Windows\System32\drivers\ufxsynopsys.sys
08:28:19.0354 0x3b74  ufxsynopsys - ok
08:28:19.0354 0x3b74  [ 8578F83EC5175920F2D8586FFF9DCE47, 049A16AC87F93E761150C8286633FFCA62EE85F5645DDE77D36BD0EB6481FF83 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
08:28:19.0385 0x3b74  UI0Detect - ok
08:28:19.0385 0x3b74  [ DC460AAA18CA2342FBBFB2DF9B044472, 14D45E059C596AE97506D26705F248CA1C2269160B31A60341060E8A93146CBD ] umbus           C:\Windows\System32\drivers\umbus.sys
08:28:19.0401 0x3b74  umbus - ok
08:28:19.0417 0x3b74  [ C3CF0377917ECE6D65D7623E1E61568F, 4909695E04CBC86BFCFFBC15F332C367521054B7B4D3C141C7CA6B2E40E090B9 ] UmPass          C:\Windows\System32\drivers\umpass.sys
08:28:19.0432 0x3b74  UmPass - ok
08:28:19.0432 0x3b74  [ 640CF093C1CF16D5FD317616CA348F31, BEC34D1AACA83BF5A84CE01F6A668E3CA5A33C56A446DC42EFFF7C43D22E1AE6 ] UmRdpService    C:\Windows\System32\umrdp.dll
08:28:19.0470 0x3b74  UmRdpService - ok
08:28:19.0501 0x3b74  [ 4B956444AF2A352366CF59C3A4A87C64, B5FFAF5908DCF78DDA27EA1ABF2AFDD2BDD43FFC0259D847A7107B1597E22BD6 ] UnistoreSvc     C:\Windows\System32\unistore.dll
08:28:19.0555 0x3b74  UnistoreSvc - ok
08:28:19.0570 0x3b74  [ 6CDA3536F6BAB7896A57EAB7DC07F379, 8FBE6457ECD1ABB518D9800EBA8A017774FFAA8EABD2EDC0825181A12FE9AEF6 ] upnphost        C:\Windows\System32\upnphost.dll
08:28:19.0601 0x3b74  upnphost - ok
08:28:19.0601 0x3b74  [ 6B46FC140C9AF68E6E7697D66D59CB4D, F018B4784D65F1A8140A6EA69C35D6A7ECE01738694052FD54AFD2B81A8F2FF8 ] UrsChipidea     C:\Windows\System32\drivers\urschipidea.sys
08:28:19.0617 0x3b74  UrsChipidea - ok
08:28:19.0617 0x3b74  [ B4402E7F0923F660270442CE76877ABE, 1C2DD26EAB71F75EA576E8DAABAF71FD7DC3DF807CF025617C774CEF33C0B718 ] UrsCx01000      C:\Windows\system32\drivers\urscx01000.sys
08:28:19.0633 0x3b74  UrsCx01000 - ok
08:28:19.0650 0x3b74  [ 9DD431F1B94789CFB527E5D19261F124, 8F5A249A97C5B14B282E3147DD21951D2AD34B651E762814C12F4C26D74EC70C ] UrsSynopsys     C:\Windows\System32\drivers\urssynopsys.sys
08:28:19.0655 0x3b74  UrsSynopsys - ok
08:28:19.0655 0x3b74  [ C87E32B90F085970D9637FBAD45EF6FE, C180EACD2EE479277DA5DBF39E43B428BD7945141B2451CB3946B0C1E495E76F ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
08:28:19.0686 0x3b74  usbccgp - ok
08:28:19.0686 0x3b74  [ 0B663856474AC41924D9E9112203858F, 9E09F2A6279B48CAC09F8C7AA1F1BE02864D540C2ED1460CBA9FABCF0A546A1E ] usbcir          C:\Windows\System32\drivers\usbcir.sys
08:28:19.0702 0x3b74  usbcir - ok
08:28:19.0717 0x3b74  [ F83D2250256203AC5DA5E8601C1AFDD7, AC0D90E2DB3051798B9D287CF3D0E92FED4000822E65A82775A29CF896B76F04 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
08:28:19.0733 0x3b74  usbehci - ok
08:28:19.0749 0x3b74  [ 7FFD26742321919590ED77FCA556D65F, F7FAB63C36F8519F5A7B9091C507F3CB580C390322FAF9155CCE7F66C965B968 ] usbhub          C:\Windows\System32\drivers\usbhub.sys
08:28:19.0771 0x3b74  usbhub - ok
08:28:19.0786 0x3b74  [ 7A749B2863B5561BE34B39E8E249AD8F, E5B67DFAF5407007FD0CC408D6B4BA19DF59584819FC715E9F9E0FBF3EA00AAB ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
08:28:19.0802 0x3b74  USBHUB3 - ok
08:28:19.0818 0x3b74  [ D2109F1F4FEBF1DAC415CDC5DE876479, C8A871EBD0E5EF004BA622A73DAC36C03608CD317FDCD0A6A98608DF4CC10D55 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
08:28:19.0833 0x3b74  usbohci - ok
08:28:19.0833 0x3b74  [ 29C9572F2D061CFC3C0BD48A3163E343, 2527DCC9E6D421F5DC40051C787A5270EB077746785465C9AA2A2AEEF47307D5 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
08:28:19.0855 0x3b74  usbprint - ok
08:28:19.0855 0x3b74  [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
08:28:19.0886 0x3b74  usbscan - ok
08:28:19.0886 0x3b74  [ 429477D6DEF3321FF7D3EF23CAAADA00, BB7D2AFE99736AAFFA8B0B2DABF7D6A6D5CB9563B1DE6A7E86CE7DC9D27F31C0 ] usbser          C:\Windows\System32\drivers\usbser.sys
08:28:19.0902 0x3b74  usbser - ok
08:28:19.0918 0x3b74  [ 0CC16F7B91C57AE9A4E44425A295FDAA, 7CEE11955E5742DA390601F565412C14A7481B8747C495CCD246696C56B426DC ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
08:28:19.0918 0x3b74  USBSTOR - ok
08:28:19.0933 0x3b74  [ C917D09064CDBD18F75ADC9B2C48F847, A7F6223346CCD7E84186CD0C0715014F8E3A4398298925A43290224678620D23 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
08:28:19.0954 0x3b74  usbuhci - ok
08:28:19.0955 0x3b74  [ B4F448F2424492F99F83D3676A453553, 42F1396616EA93BF91EA847B185C321B189F1A5138CA19D22397E8DB6D576973 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
08:28:19.0986 0x3b74  usbvideo - ok
08:28:19.0986 0x3b74  [ 95BCCEFBC40D06484CF16144FE79B8A5, 8ABA73C5FFEDD319FB96B807AD08716698E557522478DF1A2C5D662675636AE0 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
08:28:20.0002 0x3b74  USBXHCI - ok
08:28:20.0033 0x3b74  [ A39AFDD26E6F2E5595FF2D3997D7E1FE, 30DE54033DE437C16A069602529E63FF971AF0ABB383885E47B4DF5E0F8483AE ] UserDataSvc     C:\Windows\System32\userdataservice.dll
08:28:20.0102 0x3b74  UserDataSvc - ok
08:28:20.0118 0x3b74  [ AA24C61D88E36BA1144072227922173D, 2EBBC827E740F72EA2E75745E585378189BC0DEE91CACD7FA31BDBC5EFCF8733 ] UserManager     C:\Windows\System32\usermgr.dll
08:28:20.0171 0x3b74  UserManager - ok
08:28:20.0187 0x3b74  [ B6911F3CBA01ECC637B3891DFE5099DC, E3ECF7BE729E38C236716B4A4147A29CA7B2CD7CEC17AE50E18437E995D30781 ] UsoSvc          C:\Windows\system32\usocore.dll
08:28:20.0218 0x3b74  UsoSvc - ok
08:28:20.0218 0x3b74  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] VaultSvc        C:\Windows\system32\lsass.exe
08:28:20.0234 0x3b74  VaultSvc - ok
08:28:20.0251 0x3b74  [ 0CBDE344FB48E42D78E29469F202ADBC, A1C3FBA5409DD3BBEAF1D3CE2583D6C8A621C0E4F534155EC540AFD67BC9E8CA ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
08:28:20.0255 0x3b74  vdrvroot - ok
08:28:20.0271 0x3b74  [ 2C5D96D0BB7EDEF9F2F8966A31007CCE, A8FB02E9E1B8ED5F2026534360C229DA7FC11BA209DE9C3222C65D0A9652FD3C ] vds             C:\Windows\System32\vds.exe
08:28:20.0303 0x3b74  vds - ok
08:28:20.0318 0x3b74  [ 723195568C8755CAD57F7933C5F2C5C2, 5C403799F67223605F825BC16D217C1EF5E1A0DDF00AC6380FE8976339B67D9B ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
08:28:20.0334 0x3b74  VerifierExt - ok
08:28:20.0351 0x3b74  [ 3BB8D153A9A514EC9FFCB586251A1925, 5E4B46511F9791699826DC63B35528544347166BDE9981FB93F1F7F2A09599C7 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
08:28:20.0372 0x3b74  vhdmp - ok
08:28:20.0372 0x3b74  [ 7929228F0E8B0C2FA0495A17A4FC27F6, 1F1667B10A96B1D85ED165F62A5C0EF28C37F828B8280EA08BFCC1BAC03F2C90 ] vhf             C:\Windows\System32\drivers\vhf.sys
08:28:20.0387 0x3b74  vhf - ok
08:28:20.0387 0x3b74  [ D6F45FDDFA5ED4423CD6140B80534D9F, 59CBF3FD597A22A8CBC53F563C5ED89EEF6A09F8CC320E6D14BCE84A84D5C453 ] VirtualButtons  C:\Windows\System32\drivers\VirtualButtons.sys
08:28:20.0403 0x3b74  VirtualButtons - ok
08:28:20.0403 0x3b74  [ AEE432ED868831B1F068E373598F6D93, BAE91F47B0CB94B826CA010B490AD924D7B715911DF3FCE62F9165F3B571105C ] vmbus           C:\Windows\system32\drivers\vmbus.sys
08:28:20.0418 0x3b74  vmbus - ok
08:28:20.0418 0x3b74  [ 9444B23FC694B5F90F21B0FC7F10D8DD, 86F92856F5C985DD8E5993B51E85E1F47EF8C9B2FB37468998C94266963BB4BD ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
08:28:20.0434 0x3b74  VMBusHID - ok
08:28:20.0455 0x3b74  [ 4D0287F566B36536DD812A54C015FC4A, 01D6508CA59CF04A47902B1F7C202FD14A81240E0B447588D919DD1072B040CF ] vmgid           C:\Windows\System32\drivers\vmgid.sys
08:28:20.0456 0x3b74  vmgid - ok
08:28:20.0471 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicguestinterface C:\Windows\System32\icsvc.dll
08:28:20.0503 0x3b74  vmicguestinterface - ok
08:28:20.0503 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicheartbeat   C:\Windows\System32\icsvc.dll
08:28:20.0518 0x3b74  vmicheartbeat - ok
08:28:20.0534 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmickvpexchange C:\Windows\System32\icsvc.dll
08:28:20.0556 0x3b74  vmickvpexchange - ok
08:28:20.0572 0x3b74  [ F70DCCE72343449F0D12A0A92282B019, 3EFA99519387BE38C1CB482F1BFC9ED449BE9A5BD86883A1002725B8D4A5ECC1 ] vmicrdv         C:\Windows\System32\icsvcext.dll
08:28:20.0603 0x3b74  vmicrdv - ok
08:28:20.0603 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicshutdown    C:\Windows\System32\icsvc.dll
08:28:20.0634 0x3b74  vmicshutdown - ok
08:28:20.0634 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmictimesync    C:\Windows\System32\icsvc.dll
08:28:20.0657 0x3b74  vmictimesync - ok
08:28:20.0672 0x3b74  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicvmsession   C:\Windows\System32\icsvc.dll
08:28:20.0688 0x3b74  vmicvmsession - ok
08:28:20.0703 0x3b74  [ F70DCCE72343449F0D12A0A92282B019, 3EFA99519387BE38C1CB482F1BFC9ED449BE9A5BD86883A1002725B8D4A5ECC1 ] vmicvss         C:\Windows\System32\icsvcext.dll
08:28:20.0719 0x3b74  vmicvss - ok
08:28:20.0719 0x3b74  [ 29075915F9BDC3437F8BED71C067D399, 2C7718080C11DFDD4C9A2085537F78F5633369B4A27D9C64168F0249594A4AA2 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
08:28:20.0735 0x3b74  volmgr - ok
08:28:20.0756 0x3b74  [ 6BDB6CE6D2D9E3D3F28F1C97E12B62E2, 5E77D7AF858D7B90FF395F39B86D6F96413D1DDEA28BC9FB40C5524A4DF6DAD0 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
08:28:20.0772 0x3b74  volmgrx - ok
08:28:20.0772 0x3b74  [ BF2546583BB75F01DDA60A7921DFB230, 579BD0BC55F4F03CD8D1FCDAC3975A1649C688820F2F7FC1AD354132D9E3BEE9 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
08:28:20.0788 0x3b74  volsnap - ok
08:28:20.0804 0x3b74  [ AC2E20A74D09D24485BE8396CE04F07B, 23FCE8BEE01B89E5CDCA536D75DBA6DCE3E92E13178A66836CEB7829310A89D1 ] volume          C:\Windows\system32\drivers\volume.sys
08:28:20.0873 0x3b74  volume - ok
08:28:20.0888 0x3b74  [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4CC1037B9CB3A27 ] vpci            C:\Windows\System32\drivers\vpci.sys
08:28:20.0920 0x3b74  vpci - ok
08:28:20.0920 0x3b74  [ FD9BCB8920973CEAD4D49DC7A6D8A618, 34AB4A485FB40DF737600006D8323BE927FB0BDA2BC170F4C123BE775EAE7CC8 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
08:28:20.0957 0x3b74  vsmraid - ok
08:28:20.0989 0x3b74  [ 6DBB20053A67EFE5D8114CE93D12BEB3, B48997FADA4A600FEBFE36B249684E9CAF01570BAD36ED1FC9DA99F2D100638E ] VSS             C:\Windows\system32\vssvc.exe
08:28:21.0120 0x3b74  VSS - ok
08:28:21.0136 0x3b74  [ 0C111F220798CCE80484026E06822379, B98A5E44D3ABA67E6DE99E18BF3C2C606923E6269E262665C721F672ACBBED2A ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
08:28:21.0158 0x3b74  VSTXRAID - ok
08:28:21.0174 0x3b74  [ 607639716E9DB1CEF4E18B5B229293B4, 1D997177093F907EFE8A04AD10443BB9C355C0D7657DBD449E7EE7FCABC3ECBC ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
08:28:21.0205 0x3b74  vwifibus - ok
08:28:21.0205 0x3b74  [ B1ED64E628763148BF84FBE23F2AD711, 6182A39675E6049BC3DD353694720795A8E3D0331509AA8ABA4883D5C569AD5E ] vwififlt        C:\Windows\system32\drivers\vwififlt.sys
08:28:21.0236 0x3b74  vwififlt - ok
08:28:21.0252 0x3b74  [ 59920894C38A827091A06AF559834E47, 8B40FE0B1BA3B2A79BFF70803D039DB921F85C978724722E5E5AFF188FA75471 ] vwifimp         C:\Windows\System32\drivers\vwifimp.sys
08:28:21.0274 0x3b74  vwifimp - ok
08:28:21.0290 0x3b74  [ 76C1CC611352499326001F25A3ED15F8, 228BFA8A01BB1B3868576D509A2EA6F3D37FEDC8F12D4DC4E0A84CE926C6D1B1 ] W32Time         C:\Windows\system32\w32time.dll
08:28:21.0353 0x3b74  W32Time - ok
08:28:21.0359 0x3b74  [ 55D00B785A7587F4263D125817871283, B92400B229099C1E243F2B149881A1423A2E9C8CA2D77D868B9B923BFDEC7FF2 ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
08:28:21.0374 0x3b74  WacomPen - ok
08:28:21.0405 0x3b74  [ 1483BE4D0135C378CB61D3CD73AB3E03, B7309C9E4F370860C507BF52D17234CDF4A7FAE95D2D822714E07EF5DEC0249B ] WalletService   C:\Windows\system32\WalletService.dll
08:28:21.0453 0x3b74  WalletService - ok
08:28:21.0459 0x3b74  [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92A6E0A9FDC586DB ] wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
08:28:21.0490 0x3b74  wanarp - ok
08:28:21.0506 0x3b74  [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92A6E0A9FDC586DB ] wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
08:28:21.0537 0x3b74  wanarpv6 - ok
08:28:21.0559 0x3b74  [ ED4B9B2B52E0BACD70BC61142490453F, BE1374066C59260DA58D65DBAEBF75ED42C27F71B7F4A8F27C86C74924B82227 ] WavesSysSvc     C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
08:28:21.0575 0x3b74  WavesSysSvc - ok
08:28:21.0606 0x3b74  [ 68CC5E83B6F220F5BD7B5BC394917505, 24A793E1293608D1D1DB9396627DBF5FE66C9EFD1D49CCCD832CF1762B4E0E7D ] wbengine        C:\Windows\system32\wbengine.exe
08:28:21.0675 0x3b74  wbengine - ok
08:28:21.0690 0x3b74  [ 8C521D161445C3E1F38A494E7649E70D, F00990B2FE1FB52C74A2057E6480C5EBF2BDBC32955CC03C6B63360F20A49A18 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
08:28:21.0737 0x3b74  WbioSrvc - ok
08:28:21.0737 0x3b74  [ E330144B97D493AA886000DCAAA8DAF5, ED86F46F5A76FD8F06CA98BD61B174ADB9AD4B065394356872708DF8B614E4F9 ] wcifs           C:\Windows\system32\drivers\wcifs.sys
08:28:21.0759 0x3b74  wcifs - ok
08:28:21.0775 0x3b74  [ CA10C91D802ABE6E5136E2168C2CD2B4, 5979FF9ED783ED3154257ED0507C7BBAF8C77C081CC30AE835EA8AF7508AAD08 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
08:28:21.0806 0x3b74  Wcmsvc - ok
08:28:21.0822 0x3b74  [ D50645235A507B0546B1B5CF7D0B8849, 19F5FE10C953B8EE8EEDA9A9F7F2E97AA193BB085E7FC364066686089ADD1C9F ] wcncsvc         C:\Windows\System32\wcncsvc.dll
08:28:21.0860 0x3b74  wcncsvc - ok
08:28:21.0860 0x3b74  [ AEA1093B751339267D8C8C1EF3D669CF, 8F3325E7FB16BD856A0593C36F2E3E018909038C52CD5F92E116E0C1366F31CB ] wcnfs           C:\Windows\system32\drivers\wcnfs.sys
08:28:21.0891 0x3b74  wcnfs - ok
08:28:21.0891 0x3b74  [ D520B1B849B6D4D707AB31722B952C2D, 149BABB7BD63C1F212ADD9306C84FFB2A5CE6DC435BD3213EAB787E9B222C61F ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
08:28:21.0906 0x3b74  WdBoot - ok
08:28:21.0922 0x3b74  [ 5030C76047D756263093A47B82970868, E772F15973F6DE36851DD230F1F4190746CD81CA1E7284DC074711C4BF45CAF0 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
08:28:21.0957 0x3b74  Wdf01000 - ok
08:28:21.0960 0x3b74  [ 29FF9199EDEB4F5470BB134D1A2563D2, 94713F98A6EA6042203D5DD0DE6758F5F0F331F7D4BB05E91EF20CEEEBD6780F ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
08:28:21.0976 0x3b74  WdFilter - ok
08:28:21.0991 0x3b74  [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA2365503A473FC6D9507 ] WdiServiceHost  C:\Windows\system32\wdi.dll
08:28:22.0007 0x3b74  WdiServiceHost - ok
08:28:22.0022 0x3b74  [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA2365503A473FC6D9507 ] WdiSystemHost   C:\Windows\system32\wdi.dll
08:28:22.0038 0x3b74  WdiSystemHost - ok
08:28:22.0060 0x3b74  [ EDC08B8D3E67F96688774841C247B82A, DB5AFAF87C74431B8EB5420DBF5428691F291B63C2FDE8282EE2E399C76F63F3 ] wdiwifi         C:\Windows\system32\DRIVERS\wdiwifi.sys
08:28:22.0091 0x3b74  wdiwifi - ok
08:28:22.0107 0x3b74  [ 17CF416CFF408190F5A4CBD79AB12E55, E376C8865C7EA633AE20D2CF940E4C7584AC783BAAF7941780FB6C4C84802F33 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
08:28:22.0123 0x3b74  WdNisDrv - ok
08:28:22.0123 0x3b74  WdNisSvc - ok
08:28:22.0138 0x3b74  [ 3570C4E14F85CE0B537D126727ACA91C, A474C9E6B6E4E5945C63367C1D3D24D4782C4A4FEB00FAE15DFED099D8283078 ] WebClient       C:\Windows\System32\webclnt.dll
08:28:22.0160 0x3b74  WebClient - ok
08:28:22.0176 0x3b74  [ 1785F9C96A0BDEC1F6E0C79EF412F342, D6D4EDA69457BEDDA69C2F60FC4C2FAC97D46CD8E9C1804CCD68F169383583E3 ] Wecsvc          C:\Windows\system32\wecsvc.dll
08:28:22.0207 0x3b74  Wecsvc - ok
08:28:22.0207 0x3b74  [ B9175D63527B05131F2FA504CF0265F2, 1E43A17788F1B6A29E2889C81E0BE100D64BD3A9DEE7C154D9581F01D2D7D05F ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
08:28:22.0223 0x3b74  WEPHOSTSVC - ok
08:28:22.0239 0x3b74  [ 5C58EC0C9D4DE04DCDE56F6DCEA62080, 8ED386EDF4C39C339CE0BB2AC7E199C38705E5A6B3F56A4987B9A8ABD19BB59F ] wercplsupport   C:\Windows\System32\wercplsupport.dll
08:28:22.0260 0x3b74  wercplsupport - ok
08:28:22.0260 0x3b74  [ F899B355CC95AF26AB36E84E8A0DD685, C400F2F80FFF6473FEF066943C4A2AFF0FFE988A4F755757A2E5005C2A10DAD8 ] WerSvc          C:\Windows\System32\WerSvc.dll
08:28:22.0292 0x3b74  WerSvc - ok
08:28:22.0292 0x3b74  [ E1785942AC51FEE6826CDF02075C5AA9, 56FE7017684086F4F9C3A2C0D3AC00369BA0938BA3987EEBEE9A75B8E3CA0AE1 ] WFPLWFS         C:\Windows\system32\drivers\wfplwfs.sys
08:28:22.0308 0x3b74  WFPLWFS - ok
08:28:22.0323 0x3b74  [ B154618505A6A9026EFA6AB8C4123BF1, 713648D71AA027B4472E7E75B942630DBE7383687984B02A5E99C9E4192C95EB ] WiaRpc          C:\Windows\System32\wiarpc.dll
08:28:22.0339 0x3b74  WiaRpc - ok
08:28:22.0355 0x3b74  [ 0CF79A0EACFFBB75A50A469A27696D02, E112BF7B5A8D0B0AD2EA0E7B9FD4E8CFEC9371C8E94A60248292D688AFE715C4 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
08:28:22.0361 0x3b74  WIMMount - ok
08:28:22.0361 0x3b74  WinDefend - ok
08:28:22.0377 0x3b74  [ 0DE131733317EB4BE67028366B0CAAC6, AC7DADBF03A3752B4D33CA19F03DBCEDD6F56893C2DA25C98B0AB07063D990E3 ] WindowsTrustedRT C:\Windows\system32\drivers\WindowsTrustedRT.sys
08:28:22.0392 0x3b74  WindowsTrustedRT - ok
08:28:22.0392 0x3b74  [ 92EB5D38BDF10C790450F3E46BF93A0E, 0FC027398DBD43EDC1F7D703C0B6DB20294DF34E67C9288442039B1A5663CE1B ] WindowsTrustedRTProxy C:\Windows\system32\drivers\WindowsTrustedRTProxy.sys
08:28:22.0408 0x3b74  WindowsTrustedRTProxy - ok
08:28:22.0424 0x3b74  [ 4AB1AC1E60118443A14C241F91AC8FC9, 2B9237AC124874664E31B4F313BAAF8059BD0749653496784B4B89B4B7F66784 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
08:28:22.0461 0x3b74  WinHttpAutoProxySvc - ok
08:28:22.0477 0x3b74  [ F95DE20312ACCA7761446DE152BD1F7C, F6C5ACA500C2182437F4A7402BD81C3A2B77C0BBD78BA31FB574DC1997FCBFE6 ] WinMad          C:\Windows\System32\drivers\winmad.sys
08:28:22.0477 0x3b74  WinMad - ok
08:28:22.0493 0x3b74  [ CD49CA8E3280ACEEC5ECF431A59F5EFD, 75F48EFC6DEE9E06B490703EE47602AFDEA51505285B02D2CF884601E71857CC ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
08:28:22.0524 0x3b74  Winmgmt - ok
08:28:22.0561 0x3b74  [ B8C0D620219ECAA23A2AC841EAF454D1, FB527C4D36929D7FAE2A837727C557B7823A72069EBCAB7D16C49E8B21E8D952 ] WinRM           C:\Windows\system32\WsmSvc.dll
08:28:22.0708 0x3b74  WinRM - ok
08:28:22.0708 0x3b74  [ 4EFB346BFDAEEB29316AA52BBB9852B1, 4BC5554F44BD9549D0A929D77BD410FA3EB502A7D0170303D369268672505494 ] WINUSB          C:\Windows\System32\drivers\WinUSB.SYS
08:28:22.0724 0x3b74  WINUSB - ok
08:28:22.0740 0x3b74  [ 8B9AFF5F08E66A6F1F1063DEC9457FB6, 98F2AF6988D125521FD34CAA48B9652922F0C8ECFAE9B0C1DF4B3CE6B9CF500F ] WinVerbs        C:\Windows\System32\drivers\winverbs.sys
08:28:22.0762 0x3b74  WinVerbs - ok
08:28:22.0793 0x3b74  [ 78EA65739A50969CD5FC2E71B9B7697A, C442BE91CE5D4F301368915CFBE055233DD1FB8BDBEBD51CD00DC2C7770C8EE3 ] wisvc           C:\Windows\system32\flightsettings.dll
08:28:22.0858 0x3b74  wisvc - ok
08:28:22.0893 0x3b74  [ 5A7AA8198156DC2BFF9F064E29D11AF5, 9CBAF1B99B54CDE087E0FC0A2601B3F056F81F2F5AF63B5BB71C7389247E496A ] WlanSvc         C:\Windows\System32\wlansvc.dll
08:28:22.0962 0x3b74  WlanSvc - ok
08:28:23.0025 0x3b74  [ E15711970C5BE05E8D70B294D0AFF621, 30670CFC4DA57B4A3E0E895E4111100D847BB8041A258A303524CD96DC566482 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
08:28:23.0193 0x3b74  wlidsvc - ok
08:28:23.0209 0x3b74  [ 6F4F4F5A007D1710BD76FB311DA97C07, FC0FEA4364F6BA4E31DBC82735D09D429CA3BE9AFCFF5D5E1263D8B27FC2CE3E ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
08:28:23.0262 0x3b74  WmiAcpi - ok
08:28:23.0294 0x3b74  [ 3CDDFF6CAD962C5EF1C52FD667C358B6, F6F09145E9461EB17172988D26749FCF36920A1A683459334D04A6D072B31A92 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
08:28:23.0357 0x3b74  wmiApSrv - ok
08:28:23.0363 0x3b74  WMPNetworkSvc - ok
08:28:23.0378 0x3b74  [ 43C8D087B31C592163B33A4BDA540E40, 3A6C4E5E56931B29321DCC723585F2F0E804EF4DCDEAB2A8687F30FC3AE70E43 ] Wof             C:\Windows\system32\drivers\Wof.sys
08:28:23.0409 0x3b74  Wof - ok
08:28:23.0478 0x3b74  [ 5820CC51AB1C368F29ECCA713397D006, AA0CC2BC4DF7DBFB144FF47C3508BEEF00467C9D312C135AFB3406E42C6CD821 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
08:28:23.0594 0x3b74  workfolderssvc - ok
08:28:23.0610 0x3b74  [ F02930EB91596042F2221397D60AFCE5, 10E2AB0993B67CBAA9E11C68280608965064EC9F7E0C570F5B453FACADB8AB5D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
08:28:23.0626 0x3b74  WPDBusEnum - ok
08:28:23.0641 0x3b74  [ 75A9284F01FE7CB1A7D5EAE5C1EB4F33, 390EF23AEA06D8711555F7979FF8BE0620B53C1A551638C4EC6FB7C6678965B3 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
08:28:23.0641 0x3b74  WpdUpFltr - ok
08:28:23.0663 0x3b74  [ 60E2EB3E7B7F15C25E02462159F90707, D8344B529EEC0D4922CAC3E6897CC9F191ACF1376017BE38ED6BF6019F1ED181 ] WpnService      C:\Windows\system32\WpnService.dll
08:28:23.0679 0x3b74  WpnService - ok
08:28:23.0695 0x3b74  [ C7C91FB86A3C6CD7619725A88ED1884C, 132C43C518F37BF303D768BD5FB0AB835F693C43FE693937D804A34E940D770F ] WpnUserService  C:\Windows\System32\WpnUserService.dll
08:28:23.0710 0x3b74  WpnUserService - ok
08:28:23.0710 0x3b74  [ 36D7B73ADC3E10607ED6EC874AFB5D1E, 1737B3E4D2CA76BB27903BF460E4960E6A0BC32D35069AC7C5E4B07F625F3282 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
08:28:23.0726 0x3b74  ws2ifsl - ok
08:28:23.0742 0x3b74  [ 9A0E0B836413EB0BC885532D2A5389D6, AFEE4A0578D5581E4D72999A33C0DEA6253BD891F611AFF9AFDE4160A60105F3 ] wscsvc          C:\Windows\System32\wscsvc.dll
08:28:23.0764 0x3b74  wscsvc - ok
08:28:23.0764 0x3b74  WSearch - ok
08:28:23.0811 0x3b74  [ 10C4A0CDACAD054C90288D718615B4BA, 76CD5BF3B97DC306B17AB65E1CD841180C6FD147F2CC9EE6A757C27E3AB2D231 ] wuauserv        C:\Windows\system32\wuaueng.dll
08:28:23.0927 0x3b74  wuauserv - ok
08:28:23.0942 0x3b74  [ AED7FE551E8672B824A56324076183EB, FFE543AAEFDEFFE6B20C244DB141A9425BDA88ED36F4870F0B70FEC433BDF0C1 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
08:28:23.0964 0x3b74  WudfPf - ok
08:28:23.0980 0x3b74  [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADED20EB6ECEBB55D ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
08:28:24.0011 0x3b74  WUDFRd - ok
08:28:24.0027 0x3b74  [ 47F6450F28BAA32B2AB0D6BE00996249, C8A47D6ADF89AD613AB685C6224B9099DCEFDCD8ABCF703542AFDC356404116E ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
08:28:24.0060 0x3b74  wudfsvc - ok
08:28:24.0065 0x3b74  [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADED20EB6ECEBB55D ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
08:28:24.0080 0x3b74  WUDFWpdFs - ok
08:28:24.0111 0x3b74  [ D313FF382A26D1295B212A66EE3E52A8, 59FEF2AF611507BCB6FE036A7D4F1595F3449B76F9B055CDC67DC1BE1D90EEB8 ] WwanSvc         C:\Windows\System32\wwansvc.dll
08:28:24.0165 0x3b74  WwanSvc - ok
08:28:24.0196 0x3b74  [ 7EF75102A793AAA6AAA45A4F7C15FF4D, A3FB68905F3E3A7DE52B85FAD966ABCB787FAC7E709964CE9BF2A4F9AC8B0653 ] XblAuthManager  C:\Windows\System32\XblAuthManager.dll
08:28:24.0243 0x3b74  XblAuthManager - ok
08:28:24.0265 0x3b74  [ 765FF96467A26C4C03281ECA426EC2D9, 2526B03C518D72F429C29BA4D4F11707AF277BF71520A1A92238A932950AE161 ] XblGameSave     C:\Windows\System32\XblGameSave.dll
08:28:24.0312 0x3b74  XblGameSave - ok
08:28:24.0328 0x3b74  [ DB77764B46D02DCB9777D9E00A3F7D63, 469491E3A57FBB0CB0482A2493823B57410E24A5BD4C1C96D79FE9888F7827BB ] xboxgip         C:\Windows\System32\drivers\xboxgip.sys
08:28:24.0343 0x3b74  xboxgip - ok
08:28:24.0365 0x3b74  [ 1A8D9EA4DD1A3E276B85EDB05B42BEC7, 23FC10AC29BDF917AEDB3AAF82537EC2C72453E52B41836FD83643054FA4F0BE ] XboxNetApiSvc   C:\Windows\system32\XboxNetApiSvc.dll
08:28:24.0412 0x3b74  XboxNetApiSvc - ok
08:28:24.0428 0x3b74  [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A92B48B1E5AFE8A ] xinputhid       C:\Windows\System32\drivers\xinputhid.sys
08:28:24.0444 0x3b74  xinputhid - ok
08:28:24.0497 0x3b74  [ E89C5690E5D430492111CF8E441CD241, A4182427B0CFC268744CE0C544ECB3D9565E55B8C780E16ECDA8BB8E6533DDCA ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
08:28:24.0597 0x3b74  ZeroConfigService - ok
08:28:24.0597 0x3b74  ================ Scan global ===============================
08:28:24.0613 0x3b74  [ 0C710DB449712EE13ACE733695DB7780, BBC7875B38D318CE4E88979D083AC72E8993254A466A8A6882DDE9E0C3B687A3 ] C:\Windows\system32\basesrv.dll
08:28:24.0613 0x3b74  [ 1429740F64D4B84EC4F81C07F21EB3C6, CAD89934800F011736BB964126EFB75169B64AD6349859C3009F35C13371C44D ] C:\Windows\system32\winsrv.dll
08:28:24.0628 0x3b74  [ 1EE06E957B0B2CA52D26DA7861E160EF, 4B743A1C7010138F5F6684BBCF7CAD6FD05F49920BDD3FDB776347AA6B44AB94 ] C:\Windows\system32\sxssrv.dll
08:28:24.0644 0x3b74  [ 3C69CC28665854F1AAB4B4005005FA31, 2750F5ECCD448C07E3402AA64EA625D27C6BC1D000A3FFE57C03D62428BB46C4 ] C:\Windows\system32\services.exe
08:28:24.0644 0x3b74  [ Global ] - ok
08:28:24.0644 0x3b74  ================ Scan MBR ==================================
08:28:24.0644 0x3b74  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
08:28:25.0112 0x3b74  \Device\Harddisk0\DR0 - ok
08:28:25.0128 0x3b74  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
08:28:25.0212 0x3b74  \Device\Harddisk1\DR1 - ok
08:28:25.0212 0x3b74  ================ Scan VBR ==================================
08:28:25.0228 0x3b74  [ 307455C55D6586E45E959AB7DEC46EA5 ] \Device\Harddisk0\DR0\Partition1
08:28:25.0228 0x3b74  \Device\Harddisk0\DR0\Partition1 - ok
08:28:25.0228 0x3b74  [ 5B5A3FAB4B8ADBA5E5A733E76ECB4134 ] \Device\Harddisk0\DR0\Partition2
08:28:25.0228 0x3b74  \Device\Harddisk0\DR0\Partition2 - ok
08:28:25.0243 0x3b74  [ AED208071EF9D6A38002750355DBF4C2 ] \Device\Harddisk1\DR1\Partition1
08:28:25.0243 0x3b74  \Device\Harddisk1\DR1\Partition1 - ok
08:28:25.0243 0x3b74  [ 2D524F05766D084E9BC1747B63390F77 ] \Device\Harddisk1\DR1\Partition2
08:28:25.0243 0x3b74  \Device\Harddisk1\DR1\Partition2 - ok
08:28:25.0264 0x3b74  [ 65173A94A2B11D6994826E8765F680F5 ] \Device\Harddisk1\DR1\Partition3
08:28:25.0266 0x3b74  \Device\Harddisk1\DR1\Partition3 - ok
08:28:25.0266 0x3b74  [ 4EE420AAE322672C217EB3E31B75F30A ] \Device\Harddisk1\DR1\Partition4
08:28:25.0266 0x3b74  \Device\Harddisk1\DR1\Partition4 - ok
08:28:25.0281 0x3b74  [ FE0901917AA538B36FEFF9528EEFD07E ] \Device\Harddisk1\DR1\Partition5
08:28:25.0281 0x3b74  \Device\Harddisk1\DR1\Partition5 - ok
08:28:25.0281 0x3b74  [ 19C370C3A291D204BE2D02BC8CC4FB38 ] \Device\Harddisk1\DR1\Partition6
08:28:25.0281 0x3b74  \Device\Harddisk1\DR1\Partition6 - ok
08:28:25.0297 0x3b74  ================ Scan generic autorun ======================
08:28:25.0428 0x3b74  [ 35FCC1777C70875E9922607DA2F8407B, BCB977889AD863D5FDE09A3BB8DB9677422D109D4D9D0F1B982ACC1E5AF5CAFB ] c:\Program Files\Dell\QuickSet\QuickSet.exe
08:28:25.0497 0x3b74  QuickSet - ok
08:28:25.0728 0x3b74  [ 590122E6DBB0247E381D03BBF3CC94A6, 4D264284CF017560C1F0C58C0759A762D573F6CC61462103C7AE6597B4AA061A ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
08:28:25.0893 0x3b74  RTHDVCPL - ok
08:28:25.0962 0x3b74  [ 8792B098E4B72A53ACC14FCD7DB4261A, B70273E2CCDB120C1B4F80E49DC7EFF574E2E0BB80E4B5C8D2383CD21DBBE34D ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
08:28:26.0025 0x3b74  NvBackend - ok
08:28:26.0044 0x3b74  [ C7645D43451C6D94D87F4D07BDE59C89, 495BBA47FC43EE23054FCD419F2F00457162D1C04296900C6AEA551102A810F3 ] C:\Windows\system32\rundll32.exe
08:28:26.0078 0x3b74  ShadowPlay - ok
08:28:26.0094 0x3b74  [ 6A20A9BFDCCF75CC83514B431E97C3F9, 5C0A232C44231DFC02B4E6E3D442A65B860209C8FF3C795D2D54830F19793CBD ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
08:28:26.0109 0x3b74  IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
08:28:27.0062 0x3b74  Detect skipped due to KSN trusted
08:28:27.0062 0x3b74  IAStorIcon - ok
08:28:27.0109 0x3b74  [ C98DF1F346668DF73DD11AFEAA4E2F95, ECEEDD997B8479606426D32A3078164AB453CF2501F5273B4B1F6F228F97D0E8 ] C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
08:28:27.0178 0x3b74  WavesSvc - ok
08:28:27.0278 0x3b74  [ A6A21A7D544675E98C040DA18904CF50, AACB578C297C7AC9FEBDAB4AD20235E5CFF6E3F260E76E6AE18D43DC57D69672 ] C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe
08:28:27.0347 0x3b74  Malwarebytes TrayApp - ok
08:28:27.0363 0x3b74  Dropbox - ok
08:28:27.0579 0x3b74  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
08:28:27.0794 0x3b74  OneDriveSetup - ok
08:28:27.0948 0x3b74  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
08:28:28.0110 0x3b74  OneDriveSetup - ok
08:28:28.0248 0x3b74  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
08:28:28.0411 0x3b74  OneDriveSetup - ok
08:28:28.0449 0x3b74  [ AAE92457F50F4DD74E2D502ADB9549EE, 70C8FBE410FE388D6B85334215EBE3393C16E8F8B19F5A8BA50DB6DF23196D50 ] C:\Users\Melanie\AppData\Local\Microsoft\OneDrive\OneDrive.exe
08:28:28.0480 0x3b74  OneDrive - ok
08:28:28.0496 0x3b74  [ EB00A4E988042F2CB4855ED1ABB5B5BA, 2865C4D027DE4D835273798B0897F929B118DDE20D94C4B433BD1370BEA140D8 ] C:\Program Files\BatteryBar\ShowBatteryBar.exe
08:28:28.0496 0x3b74  ShowBatteryBar - detected UnsignedFile.Multi.Generic ( 1 )
08:28:29.0210 0x3b74  Detect skipped due to KSN trusted
08:28:29.0210 0x3b74  ShowBatteryBar - ok
08:28:29.0210 0x3b74  Waiting for KSN requests completion. In queue: 262
08:28:30.0263 0x3b74  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
08:28:30.0263 0x3b74  AV detected via SS2: Malwarebytes, C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe ( 3.0.0.138 ), 0x61000 ( enabled : updated )
08:28:30.0263 0x3b74  AV detected via SS2: McAfee Anti-Virus und Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.3.0.0 ), 0x51000 ( enabled : updated )
08:28:30.0279 0x3b74  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.3.0.0 ), 0x51010 ( enabled )
08:28:30.0809 0x3b74  ============================================================
08:28:30.0809 0x3b74  Scan finished
08:28:30.0809 0x3b74  ============================================================
08:28:30.0809 0x3934  Detected object count: 0
08:28:30.0809 0x3934  Actual detected object count: 0
         


Alt 20.03.2017, 18:01   #6
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



In einem anderen Thread wurden auch diese zwei Bedrohungen von ADWCleaner genannt.

Heute wurde darauf geantwortet, dass diese zwei Fehlermeldungen sind.

Dann wäre das mit den zwei Bedrohungen die ADW gefunden hatte gelöst.



Falls jemand doch mal auf meine logs schauen möchte würde ich mich freuen,
da ich immer noch viel Werbung sehe, trotz ADBlocker und auch oft beim öffnen von Tabs auf Websites Werbeseiten sich laden.

Gestern hat mir auch NOSkript einen Versuch von diesen Clickhijack gemeldet (nennt man das so?)

Also irgendwo ist der Wurm drin.

Dazu möchte ich natürlich nicht, dass über meine Email-Adresse weiterhin Spam versandt wird.
Was müsste ich da tun um das zu verhindern?


Hier habe ich noch ein weiteres Log gefunden, dass noch etwas mehr gefunden hatte.

Code:
ATTFilter
# AdwCleaner v6.044 - Bericht erstellt am 18/03/2017 um 10:03:55
# Aktualisiert am 28/02/2017 von Malwarebytes
# Datenbank : 2017-03-17.2 [Server]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : Melanie - STARLORD
# Gestartet von : D:\Melanie\Downloads\adwcleaner_6.044.exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****

Keine schädlichen Dienste gefunden.


***** [ Ordner ] *****

Ordner Gefunden: C:\ProgramData\0631f702-93b1-47c6-bdaf-0aef1109c129
Ordner Gefunden: C:\ProgramData\d4611979-9bd1-437a-b256-bab7415dd6eb


***** [ Dateien ] *****

Keine schädlichen Dateien gefunden.


***** [ DLL ] *****

Keine infizierten DLLs gefunden.


***** [ WMI ] *****

Keine schädlichen Schlüssel gefunden.


***** [ Verknüpfungen ] *****

Keine infizierten Verknüpfungen gefunden.


***** [ Aufgabenplanung ] *****

Aufgabe Gefunden: pcdeventlaunchertask


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
Schlüssel Gefunden: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1


***** [ Internetbrowser ] *****

Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [1405 Bytes] - [18/03/2017 10:03:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1478 Bytes] ##########
         

Alt 30.03.2017, 10:42   #7
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



hi,

Zitat:
Zitat von Kolm Beitrag anzeigen
eine Bekannte sprach mich darauf an, dass sie täglich von meiner Email-Adresse Spamnachrichte erhält.
Darauf hin habe ich den ADWCleaner über meinen Laptop laufen lassen.

Also hier muss ich mal dazwischen hauen, weil dieser Zusammenhang einfach so totaler Quatsch ist.

1. adwCleaner entfernt Junkware und Adware
2. Spam ist ein völlig anderes Thema
3. mit ziemlicher Sicherheit ist nicht dein Mailkonto gekapert sondern die Spammer machen "nur" einfaches mail-spoofing, dagegen ist kein Kraut gewachsen
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 30.03.2017, 10:42   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



hi,

Zitat:
Zitat von Kolm Beitrag anzeigen
eine Bekannte sprach mich darauf an, dass sie täglich von meiner Email-Adresse Spamnachrichte erhält.
Darauf hin habe ich den ADWCleaner über meinen Laptop laufen lassen.

Also hier muss ich mal dazwischen hauen, weil dieser Zusammenhang einfach so totaler Quatsch ist.

1. adwCleaner entfernt Junkware und Adware
2. Spam ist ein völlig anderes Thema
3. mit ziemlicher Sicherheit ist nicht dein Mailkonto gekapert sondern die Spammer machen "nur" einfaches mail-spoofing, dagegen ist kein Kraut gewachsen
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 30.03.2017, 21:07   #9
M-K-D-B
/// TB-Ausbilder
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



*reinhüpf*

Zitat:
Schlüssel Gefunden: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
Schlüssel Gefunden: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
Das war ein FP, der schon lange behoben ist.
AdwCleaner updaten lassen!

*raushüpf*

Alt 01.04.2017, 12:46   #10
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Danke für die Antwort.

Der Adwcleaner war aktuell.
Er fand diese zwei Bedrohungen nach ein paar Tagen schon nicht mehr.

Dieses Spoofing?
Was ist das und kann man dagegen etwas tun?

Danke

Alt 01.04.2017, 13:46   #11
M-K-D-B
/// TB-Ausbilder
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Servus,



Zitat:
Zitat von Kolm Beitrag anzeigen
Dieses Spoofing?
Was ist das und kann man dagegen etwas tun?
Zitat von Google:
Zitat:
Mail-Spoofing nennt man verschiedene Täuschungsversuche (Spoofing) bei E-Mails zum Vortäuschen anderer Identitäten. Auf einfachem Weg kann der Absender für sich selbst eine E-Mail-Adresse angeben, die entweder nicht ihm gehört oder nicht existiert.
Was du dagegen tun kannst: nichts

Alt 01.04.2017, 16:35   #12
Kolm
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Standard

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Danke für´s googlen. ;-)

Gut zu wissen, dass sich niemand an meinem emailaccount zu schaffen gemacht hat.
Zumindest hoffe ich das, denn warum sollte zufällig gerade eine Bekannte, deren email-Adresse in meinem System ist, diese zufälligen Spammails von einer Adresse wie meiner bekommen?

Wenn ich nichts dagegen tun kann, wer dann?

Alt 02.04.2017, 19:01   #13
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Icon32

Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1



Wirklich einsehen willst du das irgendwie nicht oder? Glaubst du uns nicht oder was soll das Nachgebohre wer oder was dagegen was tun kann?

Gegenfrage: wer tut denn etwas, wenn ein Spammer einen Brief mit Werbung verfasst aber als Absender deinen Namen und deine Adresse hinten draufkritzelt? Das wäre vllt was für die Polizei. Aber die macht doch nix bei E-Mail-Spam
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
adobe, adw cleaner, browser, computer, cpu, defender, explorer, firefox, home, homepage, infizierte, mozilla, nicht löschbar, prozesse, realtek, registry, rundll, scan, security, siteadvisor, software, spam, system, temp, trojaner, usb, viel werbung, webadvisor, windows




Ähnliche Themen: Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1


  1. HKLM\System\CCS\Services\Tcpip\... - Eintrag kommt immer wieder!
    Log-Analyse und Auswertung - 28.10.2015 (17)
  2. System läuft langsam, Browser bleiben hängen, unerwünschte Werbung trotz Adblock, Treffer von Spybot lassen sich nicht vollständig löschen
    Plagegeister aller Art und deren Bekämpfung - 04.10.2015 (18)
  3. Pop ups lassen sich nicht löschen!
    Plagegeister aller Art und deren Bekämpfung - 05.02.2015 (19)
  4. Trojan.SProtector HKLM\SYSTEM\CURRENCONTROLSET\SERVICES\E9F32388 kommt immer wieder
    Log-Analyse und Auswertung - 31.07.2014 (3)
  5. Emsisoft fund Application.Win32.InstallAd (A) und lässt sich nicht quarantäne schieben oder löschen
    Plagegeister aller Art und deren Bekämpfung - 12.01.2014 (21)
  6. Programme lassen sich nicht mehr öffnen -> löschen sich bei Öffnungsversuch
    Plagegeister aller Art und deren Bekämpfung - 01.12.2011 (29)
  7. Regestrieeinträge lassen sich nicht löschen
    Log-Analyse und Auswertung - 19.04.2010 (6)
  8. [HILFE] services/reader_s lässt sich nicht löschen
    Log-Analyse und Auswertung - 23.03.2009 (3)
  9. 023 Services lassen sich nicht fixen
    Log-Analyse und Auswertung - 25.12.2008 (0)
  10. Dateien IDX lassen sich nicht löschen
    Mülltonne - 18.08.2008 (0)
  11. 147 Trojaner die sich nicht löschen lassen!!!
    Plagegeister aller Art und deren Bekämpfung - 15.07.2007 (6)
  12. Brauche hilfe."EVENTLOG\APPLICATION\MICROSOFT H.323 TELEPHONY SERVICE PROVIDER"
    Log-Analyse und Auswertung - 19.09.2006 (8)
  13. Probleme mit HKLM\System\CCS\Services\Tcpip\
    Log-Analyse und Auswertung - 24.08.2006 (1)
  14. unbekannter Servereintrag unter HKLM\System\CCS\Services\Tcpip...
    Log-Analyse und Auswertung - 30.03.2006 (5)
  15. Hilfe, soll ich das fixen? HKLM\System\CCS\Services\Tcpip\..
    Log-Analyse und Auswertung - 20.01.2006 (1)
  16. daten lassen sich nicht löschen
    Plagegeister aller Art und deren Bekämpfung - 21.04.2005 (6)
  17. Was ist das ??? HKLM\System\CCS\Services\Tcpip
    Log-Analyse und Auswertung - 21.01.2005 (2)

Zum Thema Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 - Hallo, eine Bekannte sprach mich darauf an, dass sie täglich von meiner Email-Adresse Spamnachrichte erhält. Darauf hin habe ich den ADWCleaner über meinen Laptop laufen lassen. Hier das Log: Code: - Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1...
Archiv
Du betrachtest: Bedrohungen lassen sich nicht löschen - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1 auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.