Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 01.01.2015, 18:43   #1
Kagarie
 
Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



Hallo Leute,

vor ca. 4 Tagen bekam ich diverse Nachrichten bei eBay. Dort wurde ich gefragt welche Spiegelreflexkamera ich denn genau verkaufe. Ganz verdutzt schaute ich mir dann meine laufenden Auktionen an und sah das ich eine Nikon D4 und ein Cannondale Fahrrad "verkaufen" würde.....

Nunja ich habe die Auktionen abbrechen lassen, meine Passwörter geändert und gesehen das eine Umleitung meiner eMails vorhanden war.

Ich muss auch ehrlich gestehen, das ich seit Jahren ohne Firewall (außer Windows) oder Antivirus Programme surfe. Ab und an, mache ich einen kleinen OnlineCheck....was ja anscheinend nicht viel taugen mag.

So, da ich mir nun nicht ganz sicher bin ob ich nicht etwas auf meinem Computer habe, würde ich euch gerne bitten mir zu helfen.

Betriebssystem Windows 7
Festplatten: C: (256GB SSD), E: (1TB File Storage), F: (2TB externe Filestorages). F: bei allen Scanes nageschlossen und eingeschaltet!

Laufwerksemulationen abschalten mit Defogger: CHECK!
(Denke mal nicht das ich soetwas besitze...habe es aber mal trotzdem gemacht...ich denke mal das sind Tools wie DaemonTools oder Alcohol?)

FRST.txt
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2015
Ran by Kagarie (administrator) on BLACKPEARL on 01-01-2015 18:22:01
Running from C:\Users\Kagarie\Desktop
Loaded Profile: Kagarie (Available profiles: Kagarie)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\ECO Center\ECO_Service.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
(MSI) C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
(Micro-Star International) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
(Micro-Star International) C:\MSI\Smart Utilities\SuperRAIDSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7637208 2014-07-15] (Realtek Semiconductor)
HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [12697368 2014-10-14] (Logitech Inc.)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2014-06-27] (Intel Corporation)
HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [764472 2012-09-19] ()
HKU\S-1-5-18\...\Policies\system: [DisableLockWorkstation] 0

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-158159729-1652388842-3101315649-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-158159729-1652388842-3101315649-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Kagarie\AppData\Roaming\Mozilla\Firefox\Profiles\1pz1b3pw.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Extension: Adblock Plus - C:\Users\Kagarie\AppData\Roaming\Mozilla\Firefox\Profiles\1pz1b3pw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-01]

Chrome: 
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ECOSERVICE; C:\Program Files (x86)\MSI\ECO Center\ECO_Service.exe [2240680 2014-09-04] (Micro-Star International Co., Ltd.)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [20512 2014-03-13] (Micro-Star Int'l Co., Ltd.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-10-03] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation)
S3 MSIBIOSData_CC; C:\Program Files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe [2099712 2014-10-21] (MSI) [File not signed]
S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [4026880 2014-09-26] (MSI) [File not signed]
S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2117632 2014-11-05] () [File not signed]
S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe [4157440 2014-09-26] () [File not signed]
R2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [1993216 2014-09-26] () [File not signed]
S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2242048 2014-10-21] () [File not signed]
S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2063360 2014-07-28] () [File not signed]
S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [575488 2014-10-29] () [File not signed]
R2 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [103992 2012-10-26] (MSI)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1732048 2014-11-27] (Micro-Star International)
R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) [File not signed]
R2 SuperRAIDSvc; C:\MSI\Smart Utilities\SuperRAIDSvc.exe [29648 2014-08-13] (Micro-Star International)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-08-07] (Intel(R) Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AcpiCtlDrv; C:\Windows\System32\DRIVERS\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [82096 2014-04-10] (Qualcomm Atheros, Inc.)
R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-06-17] (Intel Corporation)
R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [129200 2014-03-27] (Qualcomm Atheros, Inc.)
R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation)
R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
S3 NTIOLib_1_0_6; C:\Program Files (x86)\Setup Files\Ms7918v250\NTIOLib_X64.sys [11888 2011-01-06] (MSI) [File not signed]
R3 NTIOLib_ECO; C:\Program Files (x86)\MSI\ECO Center\NTIOLib_X64.sys [13808 2014-01-06] (MSI)
R3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [13368 2012-10-26] (MSI)
S3 NTIOLib_MB; C:\Program Files (x86)\MSI\MSI Gaming APP\Lib\NTIOLib_X64.sys [13808 2014-03-13] (MSI)
S3 NTIOLib_MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys [13368 2012-11-20] (MSI)
S3 NTIOLib_MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\NTIOLib_X64.sys [13368 2012-11-19] (MSI)
S3 NTIOLib_MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys [13368 2012-11-20] (MSI)
S3 NTIOLib_MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [13368 2012-11-26] (MSI)
S3 NTIOLib_MSIFrequency_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys [13368 2012-11-20] (MSI)
S3 NTIOLib_MSIRatio_CC; C:\Program Files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys [13368 2012-11-20] (MSI)
S3 NTIOLib_MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys [13368 2012-11-19] (MSI)
S3 NTIOLib_MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys [13368 2012-11-19] (MSI)
R3 NTIOLib_MSI_RAID; C:\MSI\Smart Utilities\NTIOLib_X64.sys [13808 2014-03-17] (MSI)
S3 cpuz138; \??\C:\Windows\TEMP\cpuz138\cpuz138_x64.sys [X]
S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
R2 sbapifs; system32\DRIVERS\sbapifs.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
U3 aswMBR; \??\C:\Users\Kagarie\AppData\Local\Temp\aswMBR.sys [X]
U3 aswVmm; \??\C:\Users\Kagarie\AppData\Local\Temp\aswVmm.sys [X]
U3 uxdyiuog; \??\C:\Users\Kagarie\AppData\Local\Temp\uxdyiuog.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 18:22 - 2015-01-01 18:22 - 00011483 _____ () C:\Users\Kagarie\Desktop\FRST.txt
2015-01-01 18:21 - 2015-01-01 18:21 - 02123264 _____ (Farbar) C:\Users\Kagarie\Desktop\FRST64.exe
2015-01-01 18:20 - 2015-01-01 18:20 - 00000476 _____ () C:\Users\Kagarie\Desktop\defogger_disable.log
2015-01-01 18:20 - 2015-01-01 18:20 - 00000000 _____ () C:\Users\Kagarie\defogger_reenable
2015-01-01 18:18 - 2015-01-01 18:18 - 00050477 _____ () C:\Users\Kagarie\Desktop\Defogger.exe
2015-01-01 18:08 - 2015-01-01 18:08 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\PackageAware
2015-01-01 18:01 - 2015-01-01 18:01 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-01-01 16:48 - 2015-01-01 16:51 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-01-01 16:48 - 2015-01-01 16:48 - 00135384 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-01 16:48 - 2015-01-01 16:48 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-01 16:46 - 2015-01-01 16:46 - 00000000 ____D () C:\Windows\system32\appmgmt
2015-01-01 16:45 - 2015-01-01 16:45 - 00096472 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-01-01 16:24 - 2015-01-01 18:22 - 00000000 ____D () C:\FRST
2015-01-01 15:59 - 2015-01-01 16:09 - 00000016 _____ () C:\Windows\system32\config\software.szfi
2015-01-01 15:42 - 2015-01-01 16:47 - 00000000 ____D () C:\ProgramData\STOPzilla!
2015-01-01 15:42 - 2015-01-01 16:47 - 00000000 ____D () C:\Program Files (x86)\STOPzilla!
2015-01-01 15:42 - 2015-01-01 16:31 - 00000480 _____ () C:\Windows\system32\Drivers\kgpcpy.cfg
2015-01-01 15:28 - 2015-01-01 15:28 - 00001995 _____ () C:\Users\Kagarie\Desktop\JDownloader 2.lnk
2015-01-01 15:28 - 2015-01-01 15:28 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2015-01-01 15:27 - 2015-01-01 16:30 - 00000000 ____D () C:\Program Files\JDownloader v2.0
2015-01-01 15:06 - 2015-01-01 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
2015-01-01 15:06 - 2015-01-01 15:06 - 00000000 ____D () C:\Program Files (x86)\RocketDock
2015-01-01 14:57 - 2015-01-01 15:00 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-01 14:57 - 2015-01-01 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-01 14:30 - 2015-01-01 14:30 - 00000000 ____D () C:\ProgramData\Panda Security
2015-01-01 14:07 - 2015-01-01 14:07 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-01-01 14:06 - 2015-01-01 14:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-01-01 14:06 - 2015-01-01 14:06 - 00000000 ____D () C:\Windows\PCHEALTH
2015-01-01 14:06 - 2015-01-01 14:06 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-01-01 14:06 - 2015-01-01 14:06 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-01-01 14:06 - 2015-01-01 14:06 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-01-01 14:03 - 2015-01-01 14:52 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-01 14:03 - 2015-01-01 14:06 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 __RHD () C:\MSOCache
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Microsoft Help
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-01-01 14:00 - 2015-01-01 14:58 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\WinRAR
2015-01-01 14:00 - 2015-01-01 14:57 - 00000000 ____D () C:\Program Files\WinRAR
2015-01-01 13:56 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-01-01 13:56 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-01-01 13:56 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-01-01 13:56 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-01-01 13:56 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-01-01 13:56 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-01-01 13:56 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-01-01 13:56 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-01-01 13:56 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-01-01 13:56 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-01-01 13:56 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-01-01 13:56 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-01-01 13:56 - 2014-07-08 23:39 - 00419704 _____ () C:\Windows\system32\locale.nls
2015-01-01 13:56 - 2014-07-08 23:30 - 00419704 _____ () C:\Windows\SysWOW64\locale.nls
2015-01-01 13:38 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-01-01 13:38 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-01-01 13:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-12-31 17:49 - 2014-12-31 17:49 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Macromedia
2014-12-31 15:31 - 2014-12-31 20:23 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\vlc
2014-12-31 15:30 - 2014-12-31 15:30 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-12-31 13:05 - 2014-12-31 13:05 - 00000000 ____D () C:\Windows\pss
2014-12-31 12:57 - 2014-12-31 12:57 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\LolClient
2014-12-31 05:57 - 2014-12-31 05:57 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-12-31 05:57 - 2014-12-31 05:57 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-12-31 05:57 - 2014-12-31 05:57 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-12-31 05:56 - 2014-12-30 23:00 - 00000000 ____D () C:\Windows\Panther
2014-12-31 05:23 - 2014-12-31 05:23 - 00000022 _____ () C:\Windows\GPU-Z.INI
2014-12-31 05:22 - 2014-12-31 05:23 - 00000000 ____D () C:\Users\Kagarie\Documents\3DMark
2014-12-31 05:22 - 2014-12-31 05:22 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Futuremark
2014-12-31 05:21 - 2014-05-08 10:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-12-31 05:19 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-12-31 05:19 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-12-31 05:19 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-12-31 05:19 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-12-31 05:19 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-12-31 05:19 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-12-31 05:19 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-12-31 05:19 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-12-31 05:19 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-12-31 05:19 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-12-31 05:19 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-12-31 05:19 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-12-31 05:19 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-12-31 05:19 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-12-31 05:19 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-12-31 05:19 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-12-31 05:19 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-12-31 05:19 - 2012-08-23 15:12 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\terminpt.sys
2014-12-31 05:19 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-12-31 05:19 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-12-31 05:19 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-12-31 05:19 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-12-31 05:07 - 2014-12-31 05:07 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-31 05:01 - 2014-12-31 05:01 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-31 05:01 - 2014-11-27 16:40 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-31 04:55 - 2014-10-18 03:03 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-31 04:55 - 2014-10-18 02:32 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-31 04:55 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-31 04:55 - 2014-07-07 03:05 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-31 04:55 - 2014-07-07 03:05 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-31 04:55 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-31 04:55 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-31 04:55 - 2014-07-07 02:40 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-31 04:55 - 2014-07-07 02:40 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-31 04:55 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-31 04:54 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-12-31 04:54 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-12-31 04:53 - 2014-12-31 04:53 - 00000198 _____ () C:\Windows\DirectX.log
2014-12-31 04:53 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-12-31 04:53 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-31 04:53 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-12-31 04:53 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-12-31 04:53 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-31 04:53 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-12-31 04:53 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-12-31 04:53 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-12-31 04:53 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-12-31 04:37 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-31 04:37 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-31 04:30 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-31 04:30 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-31 04:30 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-31 04:30 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-31 04:30 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-31 04:30 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-31 04:30 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-31 04:30 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-31 04:30 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-31 04:30 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-31 04:30 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-31 04:30 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-31 04:30 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-31 04:30 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-31 04:30 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-31 04:30 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-31 04:30 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-31 04:30 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-31 04:30 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-31 04:30 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-31 04:30 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-31 04:30 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-31 04:30 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-31 04:30 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-31 04:30 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-31 04:30 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-31 04:30 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-31 04:30 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-31 04:30 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-31 04:30 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-31 04:30 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-31 04:30 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-31 04:30 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-31 04:30 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-31 04:30 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-31 04:30 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-31 04:30 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-31 04:30 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-31 04:30 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-31 04:30 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-31 04:30 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-31 04:30 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-31 04:30 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-31 04:30 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-31 04:30 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-31 04:30 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-31 04:30 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-31 04:30 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-31 04:30 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-31 04:30 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-31 04:30 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-31 04:30 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-31 04:30 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-31 04:30 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-31 04:30 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-31 04:30 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-31 04:30 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-31 04:30 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-31 04:30 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-31 04:30 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-31 04:30 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-31 04:30 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-31 04:30 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-31 04:30 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-31 04:30 - 2014-11-11 02:56 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-31 04:30 - 2014-10-14 03:16 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-12-31 04:30 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-12-31 04:30 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-12-31 04:30 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-12-31 04:30 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-12-31 04:30 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-12-31 04:30 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-12-31 04:30 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-12-31 04:30 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-12-31 04:30 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-12-31 04:29 - 2014-11-11 04:45 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-12-31 04:29 - 2014-11-11 04:45 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2014-12-31 04:29 - 2014-11-11 04:35 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-12-31 04:29 - 2014-11-11 04:21 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-12-31 04:29 - 2014-11-11 04:21 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2014-12-31 04:29 - 2014-11-11 04:13 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-12-31 04:29 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-12-31 04:29 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-12-31 04:29 - 2014-11-07 04:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-31 04:29 - 2014-11-07 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-31 04:29 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-31 04:29 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-31 04:29 - 2014-10-14 03:20 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-12-31 04:29 - 2014-10-14 03:16 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-12-31 04:29 - 2014-10-14 03:16 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-12-31 04:29 - 2014-10-14 03:16 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-12-31 04:29 - 2014-10-14 03:13 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-12-31 04:29 - 2014-10-14 02:50 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-12-31 04:29 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-12-31 04:29 - 2014-10-14 02:49 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-12-31 04:29 - 2014-10-14 02:48 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-12-31 04:29 - 2014-10-14 02:46 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-12-31 04:29 - 2014-10-03 03:07 - 02024448 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-31 04:29 - 2014-10-03 03:07 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-12-31 04:29 - 2014-10-03 03:07 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-31 04:29 - 2014-10-03 03:07 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-31 04:29 - 2014-10-03 03:07 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-31 04:29 - 2014-10-03 03:06 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-12-31 04:29 - 2014-10-03 03:06 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-12-31 04:29 - 2014-10-03 03:06 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-12-31 04:29 - 2014-10-03 03:06 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-12-31 04:29 - 2014-10-03 03:06 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-31 04:29 - 2014-10-03 02:46 - 01179648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00249344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-31 04:29 - 2014-10-03 02:46 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-12-31 04:29 - 2014-10-03 02:46 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-31 04:29 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-12-31 04:29 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-12-31 04:29 - 2014-09-04 11:23 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-12-31 04:29 - 2014-09-04 06:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-12-31 04:29 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-12-31 04:29 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-12-31 04:29 - 2014-07-16 04:23 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-12-31 04:29 - 2014-07-16 04:23 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-12-31 04:29 - 2014-07-16 03:56 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-12-31 04:29 - 2014-07-16 03:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-12-31 04:28 - 2014-10-25 03:19 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-12-31 04:28 - 2014-10-25 03:08 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-12-31 04:28 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-12-31 04:28 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-12-31 04:28 - 2014-10-14 03:16 - 03243008 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-12-31 04:28 - 2014-10-14 02:49 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-12-31 04:28 - 2014-10-09 07:49 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-12-31 04:28 - 2014-09-18 22:32 - 00112568 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-12-31 04:28 - 2014-09-18 22:29 - 01942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-12-31 04:28 - 2014-09-18 02:43 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-12-31 04:28 - 2014-09-18 02:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-12-31 04:28 - 2014-08-23 03:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-12-31 04:28 - 2014-08-23 02:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-12-31 04:28 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-12-31 04:28 - 2014-07-16 04:23 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-12-31 04:28 - 2014-07-16 04:23 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-12-31 04:28 - 2014-07-16 03:56 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-12-31 04:28 - 2014-07-16 03:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-12-31 04:28 - 2014-07-16 03:38 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-12-31 04:28 - 2012-04-26 06:30 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-12-31 04:28 - 2012-04-26 06:23 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-12-31 01:33 - 2014-12-31 01:33 - 00000000 ____D () C:\ProgramData\Riot Games
2014-12-31 01:31 - 2014-12-31 01:31 - 00001613 _____ () C:\Users\Public\Desktop\League of Legends.lnk
2014-12-31 01:31 - 2014-12-31 01:31 - 00000000 ____D () C:\Riot Games
2014-12-31 01:31 - 2014-12-31 01:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2014-12-31 01:31 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-12-31 01:31 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-12-31 01:31 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-12-31 01:31 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-12-31 01:31 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-12-31 01:30 - 2014-12-31 01:31 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Riot Games
2014-12-31 01:15 - 2014-12-31 01:15 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2014-12-31 01:15 - 2014-12-31 01:15 - 00000388 _____ () C:\Windows\LkmdfCoInst.log
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Logitech
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\ProgramData\LogiShrd
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\ProgramData\Apple
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\Program Files\Logitech Gaming Software
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\Program Files\Bonjour
2014-12-31 01:15 - 2014-12-31 01:15 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-12-31 01:14 - 2014-12-31 01:14 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Logitech
2014-12-31 01:14 - 2014-12-31 01:14 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Logishrd
2014-12-31 01:02 - 2014-12-31 01:03 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Mozilla
2014-12-31 01:02 - 2014-12-31 01:03 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Mozilla
2014-12-31 01:02 - 2014-12-31 01:02 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-31 01:02 - 2014-12-31 01:02 - 00000000 ____D () C:\ProgramData\Mozilla
2014-12-31 01:02 - 2014-12-31 01:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-31 01:02 - 2014-12-31 01:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-31 00:33 - 2014-12-31 00:33 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Creative
2014-12-31 00:29 - 2014-12-31 00:34 - 00003284 _____ () C:\Windows\System32\Tasks\SamsungMagician
2014-12-31 00:29 - 2014-12-31 00:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2014-12-31 00:28 - 2014-12-31 00:28 - 00000000 ____D () C:\ProgramData\Samsung
2014-12-31 00:24 - 2014-12-31 00:28 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-12-31 00:24 - 2014-12-31 00:24 - 00000000 ____D () C:\Temp
2014-12-31 00:24 - 2014-12-31 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2014-12-31 00:14 - 2014-12-31 00:14 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Macromedia
2014-12-31 00:13 - 2014-12-31 17:45 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-31 00:13 - 2014-12-31 17:45 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-31 00:13 - 2014-12-31 00:13 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-12-31 00:13 - 2014-12-31 00:13 - 00000000 ____D () C:\Windows\system32\Macromed
2014-12-31 00:12 - 2014-12-31 17:46 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\Adobe
2014-12-31 00:09 - 2014-12-31 00:09 - 00000144 _____ () C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-12-31 00:04 - 2014-12-31 00:04 - 00000159 ___RH () C:\Windows\ctfile.rfc
2014-12-31 00:04 - 2014-12-31 00:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2014-12-31 00:04 - 2014-12-31 00:04 - 00000000 ____D () C:\ProgramData\Creative
2014-12-31 00:04 - 2014-02-21 11:21 - 00089600 _____ () C:\Windows\system32\CmdRtr64.DLL
2014-12-31 00:04 - 2014-02-21 11:20 - 00074240 _____ () C:\Windows\SysWOW64\CmdRtr.DLL
2014-12-31 00:04 - 2014-02-21 11:19 - 00366080 _____ () C:\Windows\system32\APOMgr64.DLL
2014-12-31 00:04 - 2014-02-21 11:17 - 00274944 _____ () C:\Windows\SysWOW64\APOMngr.DLL
2014-12-31 00:04 - 2014-02-21 10:57 - 00041088 ____N (Creative Technology Ltd.) C:\Windows\system32\MBCfg64.dll
2014-12-31 00:04 - 2014-02-21 10:57 - 00038016 ____N (Creative Technology Ltd.) C:\Windows\SysWOW64\MBCfg32.dll
2014-12-31 00:04 - 2014-01-23 17:26 - 00013741 ____N () C:\Windows\SysWOW64\MBCfg32.ini
2014-12-31 00:04 - 2014-01-23 17:26 - 00013741 ____N () C:\Windows\system32\MBCfg64.ini
2014-12-31 00:04 - 2013-12-24 13:43 - 00375424 ____N (Creative Technology Ltd.) C:\Windows\system32\ChezSC64.DLL
2014-12-31 00:04 - 2013-12-24 13:42 - 00327296 ____N (Creative Technology Ltd.) C:\Windows\SysWOW64\ChezSC32.DLL
2014-12-31 00:04 - 2013-12-24 13:29 - 00002835 ____N () C:\Windows\MBCfg_SP_APOIM.ini
2014-12-31 00:04 - 2013-12-24 13:29 - 00002783 ____N () C:\Windows\MBCfg_APOIM.ini
2014-12-31 00:04 - 2013-12-24 13:29 - 00002747 ____N () C:\Windows\MBCfg_HP_APOIM.ini
2014-12-31 00:04 - 2013-11-20 11:24 - 00005856 ____N () C:\Windows\SysWOW64\MBCfgUninstall32.ini
2014-12-31 00:04 - 2013-11-20 11:24 - 00005856 ____N () C:\Windows\system32\MBCfgUninstall64.ini
2014-12-31 00:04 - 2013-04-23 10:54 - 00148096 ____N (Creative Technology Ltd.) C:\Windows\system32\MBCfg64.exe
2014-12-31 00:04 - 2013-04-23 10:53 - 00138880 ____N (Creative Technology Ltd.) C:\Windows\SysWOW64\MBCfg32.exe
2014-12-31 00:04 - 2013-04-23 10:53 - 00015488 ____N (Creative Technology Ltd.) C:\Windows\SysWOW64\ResDefA.exe
2014-12-31 00:04 - 2000-05-11 01:00 - 00090112 ____N (Creative Technology Ltd.) C:\Windows\Updreg.EXE
2014-12-31 00:03 - 2015-01-01 16:33 - 00006469 _____ () C:\Windows\SysWOW64\Gms.log
2014-12-31 00:03 - 2014-12-31 00:03 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-12-31 00:03 - 2014-12-31 00:03 - 00000000 ____D () C:\Program Files\Realtek
2014-12-31 00:03 - 2014-12-31 00:03 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-12-31 00:03 - 2014-12-31 00:03 - 00000000 ____D () C:\Program Files (x86)\Creative
2014-12-31 00:03 - 2014-07-15 19:01 - 04012632 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-12-31 00:03 - 2014-07-15 15:30 - 00950488 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-12-31 00:03 - 2014-07-15 11:14 - 01277681 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-12-31 00:03 - 2014-07-11 15:10 - 02000152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll
2014-12-31 00:03 - 2014-07-11 15:10 - 01728792 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll
2014-12-31 00:03 - 2014-07-09 16:57 - 02808024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2014-12-31 00:03 - 2014-07-07 14:07 - 02860760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-12-31 00:03 - 2014-07-04 11:07 - 01024728 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-12-31 00:03 - 2014-06-17 13:32 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-12-31 00:03 - 2014-06-09 10:59 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-12-31 00:03 - 2014-05-09 11:17 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-12-31 00:03 - 2014-04-10 12:19 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-12-31 00:03 - 2014-04-10 12:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-12-31 00:03 - 2014-04-10 12:19 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-12-31 00:03 - 2014-03-06 16:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-12-31 00:03 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-12-31 00:03 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2014-12-31 00:03 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-12-31 00:03 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-12-31 00:03 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-12-31 00:03 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-12-31 00:03 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-12-31 00:03 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-12-31 00:03 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-12-31 00:03 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-12-31 00:03 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-12-31 00:03 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-12-31 00:03 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-12-31 00:03 - 2009-11-18 07:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys
2014-12-31 00:02 - 2014-12-31 00:03 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-12-31 00:02 - 2014-12-31 00:02 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-12-31 00:02 - 2014-06-27 11:30 - 00795120 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys
2014-12-31 00:02 - 2014-06-27 11:30 - 00383472 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys
2014-12-31 00:02 - 2014-06-27 11:30 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll
2014-12-31 00:02 - 2014-06-27 11:30 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys
2014-12-31 00:02 - 2014-05-19 10:47 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-12-31 00:01 - 2014-12-31 05:20 - 00000425 _____ () C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-12-31 00:01 - 2014-12-31 00:01 - 00018610 _____ () C:\Windows\system32\results.xml
2014-12-31 00:01 - 2014-10-03 17:37 - 00082432 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2014-12-31 00:01 - 2014-10-03 17:37 - 00074240 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2014-12-31 00:00 - 2015-01-01 13:33 - 00000000 ___HD () C:\MSIServiceCfg_CC
2014-12-31 00:00 - 2014-10-03 17:36 - 23390216 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 07773376 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 05866864 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 04619992 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 02020352 _____ (Intel Corporation) C:\Windows\system32\igfxLHM.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 00688640 _____ (Intel Corporation) C:\Windows\system32\igfxDH.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 00457616 _____ () C:\Windows\system32\igfxTray.exe
2014-12-31 00:00 - 2014-10-03 17:36 - 00329104 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe
2014-12-31 00:00 - 2014-10-03 17:36 - 00304016 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe
2014-12-31 00:00 - 2014-10-03 17:36 - 00273408 _____ (Intel Corporation) C:\Windows\system32\igfxDI.dll
2014-12-31 00:00 - 2014-10-03 17:36 - 00246672 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe
2014-12-31 00:00 - 2014-06-24 16:40 - 00212436 _____ () C:\Windows\system32\resTHA.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00203652 _____ () C:\Windows\system32\resELL.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00199508 _____ () C:\Windows\system32\resRUS.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00182244 _____ () C:\Windows\system32\resARA.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00181684 _____ () C:\Windows\system32\resJPN.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00181204 _____ () C:\Windows\system32\resHEB.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00175956 _____ () C:\Windows\system32\resFRA.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00175828 _____ () C:\Windows\system32\resHUN.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00174148 _____ () C:\Windows\system32\resKOR.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00173844 _____ () C:\Windows\system32\resDEU.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00173588 _____ () C:\Windows\system32\resITA.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00173332 _____ () C:\Windows\system32\resROM.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00173300 _____ () C:\Windows\system32\resSKY.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00173300 _____ () C:\Windows\system32\resESN.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00172884 _____ () C:\Windows\system32\resPLK.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00172516 _____ () C:\Windows\system32\resNLD.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00171716 _____ () C:\Windows\system32\resPTB.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00171700 _____ () C:\Windows\system32\resTRK.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00171636 _____ () C:\Windows\system32\resCSY.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00171172 _____ () C:\Windows\system32\resPTG.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00170996 _____ () C:\Windows\system32\resFIN.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00170404 _____ () C:\Windows\system32\resHRV.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00169860 _____ () C:\Windows\system32\resSLV.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00169844 _____ () C:\Windows\system32\resSVE.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00168628 _____ () C:\Windows\system32\resNOR.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00167972 _____ () C:\Windows\system32\resDAN.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00166500 _____ () C:\Windows\system32\resENU.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00164660 _____ () C:\Windows\system32\resCHT.cui
2014-12-31 00:00 - 2014-06-24 16:40 - 00163492 _____ () C:\Windows\system32\resCHS.cui
2014-12-31 00:00 - 2014-06-24 16:39 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa
2014-12-31 00:00 - 2014-06-24 16:39 - 01137080 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 01132960 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 00451576 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2014-12-31 00:00 - 2014-06-24 16:39 - 00220392 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 00184312 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3650.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-12-31 00:00 - 2014-06-24 16:39 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp
2014-12-31 00:00 - 2014-06-24 16:39 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp
2014-12-31 00:00 - 2013-02-08 11:04 - 00000000 _____ () C:\RAMDiskImage.img
2014-12-30 23:58 - 2014-12-31 05:20 - 00000000 ____D () C:\Intel
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ICCWDT_01009.Wdf
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\uninstall
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Intel Extreme Tuning Utility
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2014-12-30 23:58 - 2014-12-30 23:58 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-12-30 23:58 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-30 23:58 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-12-30 23:58 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-12-30 23:58 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-12-30 23:57 - 2014-12-31 00:19 - 00000000 ____D () C:\ProgramData\Intel
2014-12-30 23:57 - 2014-12-31 00:02 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-12-30 23:57 - 2014-12-30 23:57 - 00000000 ___HD () C:\MSIECO
2014-12-30 23:57 - 2014-12-30 23:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-12-30 23:57 - 2014-12-30 23:57 - 00000000 ____D () C:\Users\Kagarie\Intel
2014-12-30 23:55 - 2015-01-01 14:50 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-30 23:55 - 2014-12-31 00:01 - 00000000 ____D () C:\Program Files\Intel
2014-12-30 23:25 - 2014-12-30 23:25 - 00000000 ____D () C:\Program Files (x86)\Setup Files
2014-12-30 23:20 - 2014-12-31 13:04 - 00000000 ____D () C:\MSI
2014-12-30 23:20 - 2014-12-31 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2014-12-30 23:20 - 2014-12-31 00:55 - 00000000 ____D () C:\Program Files (x86)\MSI
2014-12-30 23:20 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2014-12-30 23:17 - 2014-12-30 23:17 - 00000000 __SHD () C:\Users\Kagarie\AppData\Local\EmieUserList
2014-12-30 23:17 - 2014-12-30 23:17 - 00000000 __SHD () C:\Users\Kagarie\AppData\Local\EmieSiteList
2014-12-30 23:13 - 2014-12-31 00:24 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-30 23:13 - 2014-12-30 23:13 - 00000000 ____D () C:\ProgramData\Qualcomm
2014-12-30 23:13 - 2014-12-30 23:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros
2014-12-30 23:13 - 2014-12-30 23:13 - 00000000 ____D () C:\Program Files\Qualcomm Atheros
2014-12-30 23:12 - 2015-01-01 13:51 - 01593540 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-12-30 23:12 - 2014-12-30 23:12 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-12-30 23:00 - 2015-01-01 18:20 - 00000000 ____D () C:\Users\Kagarie
2014-12-30 23:00 - 2015-01-01 17:32 - 01081942 _____ () C:\Windows\WindowsUpdate.log
2014-12-30 23:00 - 2015-01-01 14:54 - 00087320 _____ () C:\Users\Kagarie\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-30 23:00 - 2014-12-30 23:00 - 00001693 _____ () C:\Windows\system32\WinToolkit_RunOnce_Log.log
2014-12-30 23:00 - 2014-12-30 23:00 - 00001421 _____ () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-30 23:00 - 2014-12-30 23:00 - 00000020 ___SH () C:\Users\Kagarie\ntuser.ini
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Vorlagen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Startmenü
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Netzwerkumgebung
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Lokale Einstellungen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Eigene Dateien
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Druckumgebung
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Documents\Eigene Musik
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Documents\Eigene Bilder
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\AppData\Local\Verlauf
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\AppData\Local\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Kagarie\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Programme
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Favoriten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 __SHD () C:\Recovery
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 ____D () C:\Users\Kagarie\AppData\Roaming\Adobe
2014-12-30 23:00 - 2014-12-30 23:00 - 00000000 ____D () C:\Users\Kagarie\AppData\Local\VirtualStore
2014-12-30 23:00 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-30 23:00 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kagarie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 18:03 - 2009-07-14 05:45 - 00016832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 18:03 - 2009-07-14 05:45 - 00016832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-01 18:01 - 2009-07-14 05:51 - 00026733 _____ () C:\Windows\setupact.log
2015-01-01 16:37 - 2011-04-12 08:43 - 00699318 _____ () C:\Windows\system32\perfh007.dat
2015-01-01 16:37 - 2011-04-12 08:43 - 00149458 _____ () C:\Windows\system32\perfc007.dat
2015-01-01 16:37 - 2009-07-14 06:13 - 01620196 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-01 16:31 - 2010-11-21 04:47 - 00124422 _____ () C:\Windows\PFRO.log
2015-01-01 16:31 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-01 14:53 - 2009-07-14 05:45 - 00367024 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-01 14:52 - 2009-07-14 03:34 - 00000478 _____ () C:\Windows\win.ini
2015-01-01 14:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-01-01 14:03 - 2011-04-12 08:54 - 00000000 ____D () C:\Windows\ShellNew
2015-01-01 14:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-31 06:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-31 05:57 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-12-31 05:57 - 2009-07-14 05:46 - 00002814 _____ () C:\Windows\DtcInstall.log
2014-12-31 05:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-12-31 05:56 - 2011-04-12 08:54 - 00000000 ____D () C:\Windows\CSC
2014-12-31 05:55 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-12-31 05:55 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-12-31 05:20 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-31 05:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-31 05:07 - 2014-08-16 13:52 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-31 05:07 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-30 23:11 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-12-30 23:00 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-12-30 23:00 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT

Some content of TEMP:
====================
C:\Users\Kagarie\AppData\Local\Temp\proxy_vole1077601743443665743.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-31 04:45

==================== End Of Log ============================
         

Addition.txt
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-01-2015
Ran by Kagarie at 2015-01-01 18:22:13
Running from C:\Users\Kagarie\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ACPI Driver Installer (HKLM-x32\...\553E35CD-0415-41bc-B39A-410375E88534) (Version: 2.1 - Intel Corporation)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.28.1006 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3960 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.0.34 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Logitech Gaming Software 8.57 (HKLM\...\Logitech Gaming Software) (Version: 8.57.145 - Logitech Inc.)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 1.0.0.85 - MSI)
MSI ECO Center (HKLM-x32\...\{1E55202F-4D31-498A-8F72-97DCBA9F2866}_is1) (Version: 1.0.0.27 - MSI)
MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.5 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 2.0.0.21 - MSI)
MSI Intel Extreme Tuning Utility (HKLM-x32\...\{56351c83-306c-4135-a570-2784d3025548}) (Version: 5.1.0.101 - Intel Corporation)
MSI Intel Extreme Tuning Utility (x32 Version: 5.1.0.101 - Intel Corporation) Hidden
MSI Live Update (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.012 - MSI)
MSI Smart Utilities (HKLM-x32\...\{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1) (Version: 2.0.0.10 - MSI)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer E220x Drivers (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.42.1045 - Qualcomm Atheros)
Qualcomm Atheros Network Manager (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.)
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version:  - Punk Software)
Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Sound Blaster Cinema 2 (HKLM-x32\...\{B4F6F8CC-2C61-42CC-A4CC-76621F25BDC7}) (Version: 1.00.07 - Creative Technology Limited)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WinRAR 5.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-158159729-1652388842-3101315649-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)

==================== Restore Points  =========================

31-12-2014 01:31:21 Microsoft Visual C++ 2005 Redistributable wird installiert
31-12-2014 01:31:31 Installed League of Legends
31-12-2014 01:31:36 DirectX wurde installiert
31-12-2014 04:51:30 3DMark
31-12-2014 04:52:21 Windows Update
31-12-2014 05:19:17 Windows Update
31-12-2014 06:00:21 Windows Update
01-01-2015 13:50:50 Windows Update
01-01-2015 14:03:21 Installed Microsoft Office Professional Plus 2013
01-01-2015 14:03:25 PROPLUS
01-01-2015 14:50:05 3DMark
01-01-2015 14:51:03 Windows Update
01-01-2015 16:46:00 Removed Futuremark SystemInfo
01-01-2015 16:46:09 Removed Futuremark SystemInfo

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2015-01-01 15:42 - 00000860 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {00087623-E769-40AA-A3D1-AF7E2EC923B3} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {2DDE3501-8288-4FFE-9720-14B8DC787B59} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {B240ECFA-9E08-43F6-AAA3-63A4A3272365} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {BA366E59-4843-4A50-A5CD-4BC348741EBF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {FE9B627E-F6EB-43DA-AE78-C75C3CCBED21} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)

==================== Loaded Modules (whitelisted) =============

2014-12-31 00:04 - 2014-02-21 11:21 - 00089600 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL
2014-12-31 00:04 - 2014-02-21 11:19 - 00366080 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
2014-12-31 00:00 - 2014-09-26 11:44 - 01993216 _____ () C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
2014-12-30 23:20 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll
2014-12-31 00:55 - 2014-08-13 20:10 - 01723856 _____ () C:\MSI\Smart Utilities\SuperRAIDExt.DLL
2014-09-03 11:03 - 2014-09-03 11:03 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-12-31 01:02 - 2014-11-26 17:40 - 03758192 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

HKU\S-1-5-21-158159729-1652388842-3101315649-1000\Software\Classes\.exe: exefile =>  <===== ATTENTION!
HKU\S-1-5-21-158159729-1652388842-3101315649-1000\Software\Classes\exefile:  <===== ATTENTION!

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Killer Network Manager.lnk => C:\Windows\pss\Killer Network Manager.lnk.CommonStartup
MSCONFIG\startupreg: Command Center => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe
MSCONFIG\startupreg: Live Update => C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
MSCONFIG\startupreg: Sound Blaster Cinema 2 => "C:\Program Files (x86)\Creative\Sound Blaster Cinema 2\Sound Blaster Cinema 2\SBCinema2.exe" /r

========================= Accounts: ==========================

Administrator (S-1-5-21-158159729-1652388842-3101315649-500 - Administrator - Disabled)
Gast (S-1-5-21-158159729-1652388842-3101315649-501 - Limited - Disabled)
Kagarie (S-1-5-21-158159729-1652388842-3101315649-1000 - Administrator - Enabled) => C:\Users\Kagarie

==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/01/2015 04:59:11 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm aswMBR.exe, Version 1.0.1.2252 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: ef8

Startzeit: 01d025dbd7010dfb

Endzeit: 0

Anwendungspfad: C:\Users\Kagarie\Desktop\aswMBR.exe

Berichts-ID: 1cef5ecf-91cf-11e4-823e-448a5bd2ada8

Error: (01/01/2015 04:57:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: aswMBR.exe, Version: 1.0.1.2252, Zeitstempel: 0x5465ba64
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.22703, Zeitstempel: 0x5385b23f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0002e39e
ID des fehlerhaften Prozesses: 0x200
Startzeit der fehlerhaften Anwendung: 0xaswMBR.exe0
Pfad der fehlerhaften Anwendung: aswMBR.exe1
Pfad des fehlerhaften Moduls: aswMBR.exe2
Berichtskennung: aswMBR.exe3

Error: (01/01/2015 04:33:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 03:55:41 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Program Files (x86)\STOPzilla!\SZScanner.exe Files (x86)\STOPzilla!\SZScanner.exe" ; Beschreibung = STOPzilla Restore Point.; Fehler = 0x80042319).

Error: (01/01/2015 02:55:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 02:51:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 02:07:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 01:54:34 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 01:35:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/31/2014 00:59:38 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1".
Die abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".


System errors:
=============
Error: (01/01/2015 04:31:32 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: 
is3srv

Error: (01/01/2015 01:51:26 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070308 fehlgeschlagen: Update für Windows 7 für x64-basierte Systeme (KB2970228)

Error: (01/01/2015 01:50:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070308 fehlgeschlagen: Update für Windows 7 für x64-basierte Systeme (KB2923545)

Error: (01/01/2015 01:50:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070308 fehlgeschlagen: Sicherheitsupdate für Windows 7 für x64-basierte Systeme (KB2984981)

Error: (01/01/2015 01:50:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070308 fehlgeschlagen: Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB3025390)

Error: (12/31/2014 05:10:23 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80242016 fehlgeschlagen: Update für Windows 7 für x64-basierte Systeme (KB2952664)

Error: (12/31/2014 05:07:44 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet: 
%%16405

Error: (12/31/2014 05:07:10 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.5 unter Windows 7, Vista, Windows Server 2008 und Windows Server 2008 R2 für x64 (KB2861208)

Error: (12/31/2014 05:56:20 AM) (Source: volmgr) (EventID: 46) (User: )
Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen.


Microsoft Office Sessions:
=========================
Error: (01/01/2015 04:59:11 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: aswMBR.exe1.0.1.2252ef801d025dbd7010dfb0C:\Users\Kagarie\Desktop\aswMBR.exe1cef5ecf-91cf-11e4-823e-448a5bd2ada8

Error: (01/01/2015 04:57:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: aswMBR.exe1.0.1.22525465ba64ntdll.dll6.1.7601.227035385b23fc00000050002e39e20001d025daee03dac2C:\Users\Kagarie\Desktop\aswMBR.exeC:\Windows\SysWOW64\ntdll.dllf3806b09-91ce-11e4-823e-448a5bd2ada8

Error: (01/01/2015 04:33:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 03:55:41 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\Program Files (x86)\STOPzilla!\SZScanner.exe Files (x86)\STOPzilla!\SZScanner.exe" STOPzilla Restore Point.0x80042319

Error: (01/01/2015 02:55:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 02:51:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 02:07:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 01:54:34 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2015 01:35:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/31/2014 00:59:38 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"C:\Program Files (x86)\Creative\Sound Blaster Cinema 2\Sound Blaster Cinema 2\CTMFPlay.dll


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
Percentage of memory in use: 26%
Total physical RAM: 8077.77 MB
Available physical RAM: 5901.94 MB
Total Pagefile: 16153.73 MB
Available Pagefile: 14240.27 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.79 GB) (Free:186.81 GB) NTFS
Drive e: (Storages) (Fixed) (Total:931.51 GB) (Free:931.34 GB) NTFS
Drive f: (Datensau) (Fixed) (Total:1863.01 GB) (Free:120.28 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 6F3F7F37)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 43B61E3D)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 1863 GB) (Disk ID: 00124672)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         

GMER
Code:
ATTFilter
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2015-01-01 18:36:47
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 Samsung_SSD_840_EVO_250GB rev.EXT0CB6Q 232,89GB
Running: Gmer-19357.exe; Driver: C:\Users\Kagarie\AppData\Local\Temp\uxdyiuog.sys

---- Processes - GMER 2.1 ----

Library  C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBC7AE71-1ED4-4C25-A434-2E8670A8654E}\offreg.dll (*** suspicious ***) @ C:\Windows\System32\svchost.exe [3052](2015-01-01 16:19:20)  000007fef4330000

---- EOF - GMER 2.1 ----
         

So ich hoffe ich habe alles richtig gemacht und alles richtig gepostet!
Da ich ja zur Zeit keine Software zur Virus bekämpfung auf meinem Computer besitze, würde ich euch da gerne um Rat fragen. Was haltet ihr von der BitDefender Internet Security 2015?

Ich bedanke mich schon einmal!

MfG Mathieu

Alt 01.01.2015, 19:02   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



hi

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________

__________________

Alt 01.01.2015, 19:27   #3
Kagarie
 
Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



Hi

Also dein Link war down.....von Kaspersky selber nur: Error 404: Page not found!
Habe dann die Version 3.0.0.42 von Chip genommen...hoffe das passt auch

TDSSKiller.3.0.0.42_01.01.2015_19.15.19_log
Code:
ATTFilter
19:15:19.0253 0x0c78  TDSS rootkit removing tool 3.0.0.42 Dec 12 2014 00:35:20
19:15:27.0613 0x0c78  ============================================================
19:15:27.0613 0x0c78  Current date / time: 2015/01/01 19:15:27.0613
19:15:27.0613 0x0c78  SystemInfo:
19:15:27.0613 0x0c78  
19:15:27.0613 0x0c78  OS Version: 6.1.7601 ServicePack: 1.0
19:15:27.0613 0x0c78  Product type: Workstation
19:15:27.0613 0x0c78  ComputerName: BLACKPEARL
19:15:27.0614 0x0c78  UserName: Kagarie
19:15:27.0614 0x0c78  Windows directory: C:\Windows
19:15:27.0614 0x0c78  System windows directory: C:\Windows
19:15:27.0614 0x0c78  Running under WOW64
19:15:27.0614 0x0c78  Processor architecture: Intel x64
19:15:27.0614 0x0c78  Number of processors: 4
19:15:27.0614 0x0c78  Page size: 0x1000
19:15:27.0614 0x0c78  Boot type: Normal boot
19:15:27.0614 0x0c78  ============================================================
19:15:27.0796 0x0c78  KLMD registered as C:\Windows\system32\drivers\51408801.sys
19:15:27.0834 0x0c78  System UUID: {799F9A87-90F1-EC4D-FD02-2A53DF74A1D0}
19:15:28.0033 0x0c78  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:15:28.0033 0x0c78  Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:15:28.0035 0x0c78  Drive \Device\Harddisk2\DR2 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:15:28.0036 0x0c78  ============================================================
19:15:28.0036 0x0c78  \Device\Harddisk0\DR0:
19:15:28.0036 0x0c78  MBR partitions:
19:15:28.0036 0x0c78  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:15:28.0036 0x0c78  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1D192800
19:15:28.0036 0x0c78  \Device\Harddisk1\DR1:
19:15:28.0036 0x0c78  MBR partitions:
19:15:28.0036 0x0c78  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
19:15:28.0036 0x0c78  \Device\Harddisk2\DR2:
19:15:28.0037 0x0c78  MBR partitions:
19:15:28.0037 0x0c78  \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E06CC1
19:15:28.0037 0x0c78  ============================================================
19:15:28.0037 0x0c78  C: <-> \Device\Harddisk0\DR0\Partition2
19:15:28.0063 0x0c78  E: <-> \Device\Harddisk1\DR1\Partition1
19:15:28.0095 0x0c78  F: <-> \Device\Harddisk2\DR2\Partition1
19:15:28.0096 0x0c78  ============================================================
19:15:28.0096 0x0c78  Initialize success
19:15:28.0096 0x0c78  ============================================================
19:16:39.0119 0x0ee0  ============================================================
19:16:39.0119 0x0ee0  Scan started
19:16:39.0119 0x0ee0  Mode: Manual; SigCheck; TDLFS; 
19:16:39.0119 0x0ee0  ============================================================
19:16:39.0119 0x0ee0  KSN ping started
19:16:41.0615 0x0ee0  KSN ping finished: true
19:16:41.0911 0x0ee0  ================ Scan system memory ========================
19:16:41.0911 0x0ee0  System memory - ok
19:16:41.0911 0x0ee0  ================ Scan services =============================
19:16:41.0927 0x0ee0  [ 0B94DF0DB9DCA3EDB2B57747D5433E7F, B8C4501476396B434D5EA35451556CB97ACF4C8CF666B9C753E2FEFA77DD7213 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:16:41.0958 0x0ee0  1394ohci - ok
19:16:41.0958 0x0ee0  [ 114ACFE781B214B95F53D52020466CFD, CB25CED9C0AA17CC14AABBE845BF497E33C0642699236A93BCA7B197CAA6D2D8 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:16:41.0973 0x0ee0  ACPI - ok
19:16:41.0973 0x0ee0  [ 2EA3EB3E69B6480AB112E876F3096312, 4A22343D8F261BE90F7287318EAC5B187F49D1C375174E4B526A0F3A27CD8346 ] AcpiCtlDrv      C:\Windows\system32\DRIVERS\AcpiCtlDrv.sys
19:16:41.0989 0x0ee0  AcpiCtlDrv - ok
19:16:41.0989 0x0ee0  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:16:41.0989 0x0ee0  AcpiPmi - ok
19:16:42.0005 0x0ee0  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
19:16:42.0005 0x0ee0  adp94xx - ok
19:16:42.0020 0x0ee0  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
19:16:42.0020 0x0ee0  adpahci - ok
19:16:42.0036 0x0ee0  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
19:16:42.0036 0x0ee0  adpu320 - ok
19:16:42.0036 0x0ee0  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:16:42.0051 0x0ee0  AeLookupSvc - ok
19:16:42.0051 0x0ee0  [ BDF76C3CE993FFB6214287272708364F, C2112D58104DD8FB74530F6DCA4F1261C82F26DE928E0BD764BCB6EF49B59A2D ] AFD             C:\Windows\system32\drivers\afd.sys
19:16:42.0067 0x0ee0  AFD - ok
19:16:42.0067 0x0ee0  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
19:16:42.0083 0x0ee0  agp440 - ok
19:16:42.0083 0x0ee0  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
19:16:42.0083 0x0ee0  ALG - ok
19:16:42.0083 0x0ee0  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:16:42.0098 0x0ee0  aliide - ok
19:16:42.0098 0x0ee0  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
19:16:42.0098 0x0ee0  amdide - ok
19:16:42.0098 0x0ee0  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
19:16:42.0114 0x0ee0  AmdK8 - ok
19:16:42.0114 0x0ee0  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
19:16:42.0114 0x0ee0  AmdPPM - ok
19:16:42.0114 0x0ee0  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:16:42.0129 0x0ee0  amdsata - ok
19:16:42.0129 0x0ee0  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
19:16:42.0129 0x0ee0  amdsbs - ok
19:16:42.0145 0x0ee0  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:16:42.0145 0x0ee0  amdxata - ok
19:16:42.0145 0x0ee0  [ D6934D14EDAEC74F47C8C6A8026ADA01, 6FC7F30216DD33441702438E7BE49158DB1C62B45B30FA27280FCB8E394E5EA7 ] AppID           C:\Windows\system32\drivers\appid.sys
19:16:42.0145 0x0ee0  AppID - ok
19:16:42.0161 0x0ee0  [ A66E46C7C869B195EBB2D8F00A210B75, 45E4CD1681DEC199796FD7047485BA65B80200BC6E15B621C674A388B438E7F8 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:16:42.0161 0x0ee0  AppIDSvc - ok
19:16:42.0161 0x0ee0  [ 9651B55594F10F65D6D4498B89E5A4C5, 0726F44A81298116E61DCF720383C2E295EA96C79364A19B1ED1C274D20B3D77 ] Appinfo         C:\Windows\System32\appinfo.dll
19:16:42.0161 0x0ee0  Appinfo - ok
19:16:42.0176 0x0ee0  [ 4D0AA539EFBECC4114031FC1C33F7345, 3D118504FAEE76BA5CE83650409C9BBD472D129B9CDBDBB7C27A5376D76A923F ] AppMgmt         C:\Windows\System32\appmgmts.dll
19:16:42.0176 0x0ee0  AppMgmt - ok
19:16:42.0192 0x0ee0  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
19:16:42.0192 0x0ee0  arc - ok
19:16:42.0192 0x0ee0  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
19:16:42.0192 0x0ee0  arcsas - ok
19:16:42.0207 0x0ee0  [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:16:42.0207 0x0ee0  aspnet_state - ok
19:16:42.0207 0x0ee0  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:16:42.0239 0x0ee0  AsyncMac - ok
19:16:42.0239 0x0ee0  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
19:16:42.0239 0x0ee0  atapi - ok
19:16:42.0254 0x0ee0  [ AE981AA606E196EBFB280878824B7F4D, 9F6DE45BB9E56EEBEBD9653297478AAEA8E5E7D3D6EC698F76FFD103303FF07D ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:16:42.0270 0x0ee0  AudioEndpointBuilder - ok
19:16:42.0270 0x0ee0  [ AE981AA606E196EBFB280878824B7F4D, 9F6DE45BB9E56EEBEBD9653297478AAEA8E5E7D3D6EC698F76FFD103303FF07D ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:16:42.0285 0x0ee0  AudioSrv - ok
19:16:42.0301 0x0ee0  [ CDA9ED9AEE49BB4076B0FAF5DBE3B666, 31FA98F0A6284EAD0110944694C70C978E3825884F6B429C353B966E20A43413 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:16:42.0301 0x0ee0  AxInstSV - ok
19:16:42.0317 0x0ee0  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
19:16:42.0332 0x0ee0  b06bdrv - ok
19:16:42.0332 0x0ee0  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:16:42.0348 0x0ee0  b57nd60a - ok
19:16:42.0348 0x0ee0  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:16:42.0348 0x0ee0  BDESVC - ok
19:16:42.0348 0x0ee0  [ 35BC71BC8B0E7BCA41352679B19AD070, 9AE92D8E5575ACD3EF7143076B473E09D75520302EF1C64057F991070B84118B ] Beep            C:\Windows\system32\drivers\Beep.sys
19:16:42.0363 0x0ee0  Beep - ok
19:16:42.0363 0x0ee0  [ 9A65B27028F7CAFEDC414A648773D3E7, 37F433F30FF081AAFD914B4A84A7B3A44452A641ACB4B8719EC1C971665F25B5 ] BFE             C:\Windows\System32\bfe.dll
19:16:42.0395 0x0ee0  BFE - ok
19:16:42.0395 0x0ee0  [ 489F355FC5D33534195AA5E815146119, 85090C2C21353646952940D743C04C5BF1FF25CC565FE136644B565401A1C192 ] BfLwf           C:\Windows\system32\DRIVERS\bflwfx64.sys
19:16:42.0395 0x0ee0  BfLwf - ok
19:16:42.0410 0x0ee0  [ 664718D0FDE85BA9B0D4927A7D2C84B9, A45330C364E4880A28EFEFB9CAD0F83B18390FC40C5EFCA22B27563928062A44 ] BITS            C:\Windows\System32\qmgr.dll
19:16:42.0426 0x0ee0  BITS - ok
19:16:42.0426 0x0ee0  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
19:16:42.0441 0x0ee0  blbdrive - ok
19:16:42.0441 0x0ee0  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:16:42.0457 0x0ee0  Bonjour Service - ok
19:16:42.0457 0x0ee0  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:16:42.0457 0x0ee0  bowser - ok
19:16:42.0473 0x0ee0  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
19:16:42.0473 0x0ee0  BrFiltLo - ok
19:16:42.0473 0x0ee0  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
19:16:42.0488 0x0ee0  BrFiltUp - ok
19:16:42.0488 0x0ee0  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
19:16:42.0488 0x0ee0  Browser - ok
19:16:42.0504 0x0ee0  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:16:42.0504 0x0ee0  Brserid - ok
19:16:42.0504 0x0ee0  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:16:42.0519 0x0ee0  BrSerWdm - ok
19:16:42.0519 0x0ee0  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:16:42.0519 0x0ee0  BrUsbMdm - ok
19:16:42.0519 0x0ee0  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:16:42.0535 0x0ee0  BrUsbSer - ok
19:16:42.0535 0x0ee0  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
19:16:42.0535 0x0ee0  BTHMODEM - ok
19:16:42.0551 0x0ee0  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
19:16:42.0566 0x0ee0  bthserv - ok
19:16:42.0566 0x0ee0  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:16:42.0582 0x0ee0  cdfs - ok
19:16:42.0582 0x0ee0  [ E5F4FD3D59B9141560D4174AAE6E66E0, 41614846F083525E913C4C36FB3E4227138833978ECCD840737B766F0BA24D62 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
19:16:42.0597 0x0ee0  cdrom - ok
19:16:42.0597 0x0ee0  [ 89050BDC752EC2AAEDC50789223CD5E9, CECE30222CC9722655690C5A319F478A9E0C0C8100E660CA2B976852AB9CFDEF ] CertPropSvc     C:\Windows\System32\certprop.dll
19:16:42.0597 0x0ee0  CertPropSvc - ok
19:16:42.0597 0x0ee0  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
19:16:42.0613 0x0ee0  circlass - ok
19:16:42.0613 0x0ee0  [ 7D4ABBB2980BAC8255515FB327A6FF97, 0F0435572CFEEEF33D5B7148BD11E8E0EEA032D82F7CDB3AD59AFA2AD1710ECE ] CLFS            C:\Windows\system32\CLFS.sys
19:16:42.0629 0x0ee0  CLFS - ok
19:16:42.0629 0x0ee0  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:16:42.0644 0x0ee0  clr_optimization_v2.0.50727_32 - ok
19:16:42.0644 0x0ee0  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:16:42.0644 0x0ee0  clr_optimization_v2.0.50727_64 - ok
19:16:42.0660 0x0ee0  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:16:42.0660 0x0ee0  clr_optimization_v4.0.30319_32 - ok
19:16:42.0660 0x0ee0  [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:16:42.0675 0x0ee0  clr_optimization_v4.0.30319_64 - ok
19:16:42.0675 0x0ee0  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
19:16:42.0675 0x0ee0  CmBatt - ok
19:16:42.0675 0x0ee0  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:16:42.0691 0x0ee0  cmdide - ok
19:16:42.0691 0x0ee0  [ 29F5E6D593ED5CAC96B0889FD6CF555B, 1A0807F57DD83CAADED8BF96E6FF3A1DAB8C38E4A377D26D60E55C9B814D40AF ] CNG             C:\Windows\system32\Drivers\cng.sys
19:16:42.0707 0x0ee0  CNG - ok
19:16:42.0707 0x0ee0  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
19:16:42.0722 0x0ee0  Compbatt - ok
19:16:42.0722 0x0ee0  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
19:16:42.0722 0x0ee0  CompositeBus - ok
19:16:42.0722 0x0ee0  COMSysApp - ok
19:16:42.0738 0x0ee0  [ 1154D3FBD01C35A2F9A2073BCB366452, 02F8CBDD8E2F321711528CFFC46E9F0B60CC779C34164E387E2E53DEB518B674 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
19:16:42.0753 0x0ee0  cphs - ok
19:16:42.0753 0x0ee0  cpuz138 - ok
19:16:42.0753 0x0ee0  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
19:16:42.0753 0x0ee0  crcdisk - ok
19:16:42.0769 0x0ee0  [ E236C160BBC8EDE2D332763AF104F087, D6265746F0B15661F4D705C760731021789960B7A9E8C9BD39263C1DAE4731C0 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:16:42.0769 0x0ee0  CryptSvc - ok
19:16:42.0785 0x0ee0  [ DA5D34AC12C5B08C9F2E968013B76C13, D7124CBD47EF8C94D550AFABBA3477ECD59F7E9CC6A05F397191D2EAAB0D09BD ] CSC             C:\Windows\system32\drivers\csc.sys
19:16:42.0785 0x0ee0  CSC - ok
19:16:42.0800 0x0ee0  [ 562D6A94FA9324EEFC07E2F9C3C7F180, 30EE40CA9B303449D028969E9436EF33982C3B0FC405FDDE25A0C69F5553177E ] CscService      C:\Windows\System32\cscsvc.dll
19:16:42.0816 0x0ee0  CscService - ok
19:16:42.0831 0x0ee0  [ 5CC1040FDA8A7EF9A17D39DA339ACFCF, A8BAA5CE72F898E5C270DE6779179AA5E97B54592BF03A71DE60D7305D0EF2B1 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:16:42.0847 0x0ee0  DcomLaunch - ok
19:16:42.0847 0x0ee0  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
19:16:42.0878 0x0ee0  defragsvc - ok
19:16:42.0878 0x0ee0  [ F55E55EE7E21CF2F9028B83C0DCFEA81, 79E865ADAF57609B8C6BEF18567F18725647B7CEA68789058DFB56A32FF641E2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:16:42.0878 0x0ee0  DfsC - ok
19:16:42.0894 0x0ee0  [ 26D55D0E06AC0A54540EBB27212ACD71, DDA86D0ECF402ECACD231A2ACF557D12D398807A621CE8A849FE6ED13C7A6B50 ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:16:42.0894 0x0ee0  Dhcp - ok
19:16:42.0909 0x0ee0  [ 9ED290A1E8FDBCF269B26CDA541DDC84, 103332D59EFAAF60B014F4450C4B68051417B5CBBF4CA1769CCE694925CB0A83 ] discache        C:\Windows\system32\drivers\discache.sys
19:16:42.0909 0x0ee0  discache - ok
19:16:42.0909 0x0ee0  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
19:16:42.0909 0x0ee0  Disk - ok
19:16:42.0925 0x0ee0  [ 5DB085A8A6600BE6401F2B24EECB5415, 5FC5C7C1B4DB7BF6EFD0992E91DB41FD047E90D1ABA0B8F868CB72557F88FB13 ] dmvsc           C:\Windows\system32\drivers\dmvsc.sys
19:16:42.0925 0x0ee0  dmvsc - ok
19:16:42.0925 0x0ee0  [ 46295251B5536E8C13BD6A6A1C1B4B30, B9B064D8E96421080B36211E6A9EF2C01165B6E704B6AA137268B74E627F4A20 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:16:42.0941 0x0ee0  Dnscache - ok
19:16:42.0941 0x0ee0  [ 8DA62036CC6192959D675142A3084916, BA97989D8E047872C54BC517697366741AFBB483906185EDED67C7C5854FCB4F ] dot3svc         C:\Windows\System32\dot3svc.dll
19:16:42.0941 0x0ee0  dot3svc - ok
19:16:42.0956 0x0ee0  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
19:16:42.0972 0x0ee0  DPS - ok
19:16:42.0972 0x0ee0  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:16:42.0972 0x0ee0  drmkaud - ok
19:16:42.0987 0x0ee0  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:16:43.0019 0x0ee0  DXGKrnl - ok
19:16:43.0019 0x0ee0  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
19:16:43.0034 0x0ee0  EapHost - ok
19:16:43.0081 0x0ee0  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
19:16:43.0128 0x0ee0  ebdrv - ok
19:16:43.0143 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] EFS             C:\Windows\System32\lsass.exe
19:16:43.0143 0x0ee0  EFS - ok
19:16:43.0159 0x0ee0  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:16:43.0175 0x0ee0  ehRecvr - ok
19:16:43.0175 0x0ee0  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
19:16:43.0190 0x0ee0  ehSched - ok
19:16:43.0190 0x0ee0  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
19:16:43.0206 0x0ee0  elxstor - ok
19:16:43.0206 0x0ee0  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:16:43.0206 0x0ee0  ErrDev - ok
19:16:43.0221 0x0ee0  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
19:16:43.0237 0x0ee0  EventSystem - ok
19:16:43.0253 0x0ee0  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
19:16:43.0268 0x0ee0  exfat - ok
19:16:43.0268 0x0ee0  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:16:43.0284 0x0ee0  fastfat - ok
19:16:43.0299 0x0ee0  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
19:16:43.0315 0x0ee0  Fax - ok
19:16:43.0315 0x0ee0  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
19:16:43.0331 0x0ee0  fdc - ok
19:16:43.0331 0x0ee0  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
19:16:43.0346 0x0ee0  fdPHost - ok
19:16:43.0346 0x0ee0  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:16:43.0362 0x0ee0  FDResPub - ok
19:16:43.0362 0x0ee0  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:16:43.0377 0x0ee0  FileInfo - ok
19:16:43.0377 0x0ee0  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:16:43.0393 0x0ee0  Filetrace - ok
19:16:43.0393 0x0ee0  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
19:16:43.0393 0x0ee0  flpydisk - ok
19:16:43.0409 0x0ee0  [ 2DE37C9F74036A910495EEE6752F5D2A, 75641C1996F84EDF348498B4B654561DCA9D965057EE47A6939B88E39FED115D ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:16:43.0409 0x0ee0  FltMgr - ok
19:16:43.0424 0x0ee0  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\Windows\system32\FntCache.dll
19:16:43.0455 0x0ee0  FontCache - ok
19:16:43.0455 0x0ee0  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:16:43.0455 0x0ee0  FontCache3.0.0.0 - ok
19:16:43.0471 0x0ee0  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:16:43.0471 0x0ee0  FsDepends - ok
19:16:43.0471 0x0ee0  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:16:43.0471 0x0ee0  Fs_Rec - ok
19:16:43.0487 0x0ee0  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:16:43.0487 0x0ee0  fvevol - ok
19:16:43.0487 0x0ee0  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
19:16:43.0502 0x0ee0  gagp30kx - ok
19:16:43.0502 0x0ee0  [ 3EB903DA33CB9E11BDCD62F38430DB40, 14CA13E79FBB4EF8CCA530B7AD8F5B579C59F9589B86CABEFDA152359E3D52B6 ] GamingApp_Service C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
19:16:43.0502 0x0ee0  GamingApp_Service - ok
19:16:43.0518 0x0ee0  [ 59570736798A3189AA67A32668F98C22, 7361AB818A06C9C375F4014FDA72D57638D7EB252C69506BE0E8F790E5D1292E ] gpsvc           C:\Windows\System32\gpsvc.dll
19:16:43.0533 0x0ee0  gpsvc - ok
19:16:43.0533 0x0ee0  GPUZ - ok
19:16:43.0533 0x0ee0  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:16:43.0549 0x0ee0  hcw85cir - ok
19:16:43.0549 0x0ee0  [ FBB4644CD43147F8128782BF5BCD1A67, DD4447E8433A2E826A8070271BE723DAF294BED84935307268958B90CB44D26E ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:16:43.0565 0x0ee0  HdAudAddService - ok
19:16:43.0565 0x0ee0  [ 04EC89E18FBA1F3F0E0C55DBF6F45E86, BF9DD474AB47AADEE0FBCB384D0274E54A3510752D0CFAAF6C6020ED6250934A ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
19:16:43.0565 0x0ee0  HDAudBus - ok
19:16:43.0565 0x0ee0  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
19:16:43.0580 0x0ee0  HidBatt - ok
19:16:43.0580 0x0ee0  [ FDF5EAD19FD8B2D0C50A9CCDD7836F9E, B865703E3D9BFC75DF363BF943213C47A63445415E211000717009D2BD0C062B ] HidBth          C:\Windows\system32\drivers\hidbth.sys
19:16:43.0580 0x0ee0  HidBth - ok
19:16:43.0580 0x0ee0  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
19:16:43.0596 0x0ee0  HidIr - ok
19:16:43.0596 0x0ee0  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\system32\hidserv.dll
19:16:43.0611 0x0ee0  hidserv - ok
19:16:43.0611 0x0ee0  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:16:43.0627 0x0ee0  HidUsb - ok
19:16:43.0627 0x0ee0  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:16:43.0643 0x0ee0  hkmsvc - ok
19:16:43.0643 0x0ee0  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:16:43.0658 0x0ee0  HomeGroupListener - ok
19:16:43.0658 0x0ee0  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:16:43.0674 0x0ee0  HomeGroupProvider - ok
19:16:43.0674 0x0ee0  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:16:43.0674 0x0ee0  HpSAMD - ok
19:16:43.0689 0x0ee0  [ 30C2ABEA8C73FE17292420D6AF68822E, FBAF41833E9D99CBB8056C82AD1327BBCE8168F9ABCFDF332C3B1236BAF9B5AD ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:16:43.0705 0x0ee0  HTTP - ok
19:16:43.0705 0x0ee0  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:16:43.0721 0x0ee0  hwpolicy - ok
19:16:43.0721 0x0ee0  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
19:16:43.0721 0x0ee0  i8042prt - ok
19:16:43.0736 0x0ee0  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:16:43.0736 0x0ee0  iaStorV - ok
19:16:43.0752 0x0ee0  [ D9A9FFC89F61CAD4AD9EF31FBB17E634, F81184889B30DA8947F22A9C9ED5C542295ED70F0A1C27D1C91BAC21F4BCD987 ] ICCS            C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
19:16:43.0752 0x0ee0  ICCS - ok
19:16:43.0752 0x0ee0  [ B9187F0E4F990357B9A5372066A40B57, BF9535335DAD8E26A3841FA07CFA937F9645AE4B1914C08C8029EDB020E8C694 ] ICCWDT          C:\Windows\system32\DRIVERS\ICCWDT.sys
19:16:43.0752 0x0ee0  ICCWDT - ok
19:16:43.0767 0x0ee0  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:16:43.0783 0x0ee0  idsvc - ok
19:16:43.0799 0x0ee0  IEEtwCollectorService - ok
19:16:43.0861 0x0ee0  [ 09F8023A17EE9EB0897A1B195428192B, 2DF018A24766E32E16F4B4FA9DA3D095BA42702B6869D4D1624A5EBF83805AF2 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:16:43.0939 0x0ee0  igfx - ok
19:16:43.0955 0x0ee0  [ F64E1962751A6DAA3FBB6210D6751E22, 972046FB7F0B443F9251F2F5B4AF0F8BAC2046B3EA295428BC888AAA568EC737 ] igfxCUIService1.0.0.0 C:\Windows\system32\igfxCUIService.exe
19:16:43.0970 0x0ee0  igfxCUIService1.0.0.0 - ok
19:16:43.0970 0x0ee0  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
19:16:43.0970 0x0ee0  iirsp - ok
19:16:43.0986 0x0ee0  [ 1C0CCAEEC82218693EF0363C8BCE51D9, 21850F4D166CE634EC05421B61476A6E7EC179908ECE7A5DF1F4EB0155FCB570 ] IKEEXT          C:\Windows\System32\ikeext.dll
19:16:44.0001 0x0ee0  IKEEXT - ok
19:16:44.0064 0x0ee0  [ CC2521C1BE66E922196431B77F765178, 07106F575F715F761E01D3788053CBA6E53DD8390CE79BD4F6FC2BCDDC34C982 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
19:16:44.0126 0x0ee0  IntcAzAudAddService - ok
19:16:44.0126 0x0ee0  [ 6B8C74E8ED9B1050CFFEA8FFBE003CC5, 244E75B6E48AB781F2740776BE26670E7705BC096FA15CBF9D44C677BFA98C6A ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
19:16:44.0142 0x0ee0  IntcDAud - ok
19:16:44.0157 0x0ee0  [ 9A6DEB5DDF7E29728F6FEA5092AFA3F2, 21C47A0490EBA302657EF30C560E4AF83777685FFE126DCCAC310163C47401D1 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
19:16:44.0173 0x0ee0  Intel(R) Capability Licensing Service TCP IP Interface - ok
19:16:44.0173 0x0ee0  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
19:16:44.0189 0x0ee0  intelide - ok
19:16:44.0189 0x0ee0  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
19:16:44.0189 0x0ee0  intelppm - ok
19:16:44.0189 0x0ee0  [ 6D71CC813AC0963C5C78C19EC656048A, E6D7AA29A5860C7FB8AA76A47BF64C12D7E68CF98EABB7A3F9D9F3A918155FA7 ] iocbios2        C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys
19:16:44.0189 0x0ee0  iocbios2 - ok
19:16:44.0204 0x0ee0  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:16:44.0220 0x0ee0  IPBusEnum - ok
19:16:44.0220 0x0ee0  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:16:44.0235 0x0ee0  IpFilterDriver - ok
19:16:44.0251 0x0ee0  [ 3567CAEA927E275A368FFFFD556508C0, 08312ACDB8DBB40EB4614BC35E11A127B05AA1AAE3AFF5DDC8CF18F2EBD26E04 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:16:44.0267 0x0ee0  iphlpsvc - ok
19:16:44.0267 0x0ee0  [ 1903A7128F7270127C57799A313BA68F, AB4BB538A6A51C9F2178CCE3883336CC2FB7BE261EFB4637AF30F82D8A298085 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:16:44.0267 0x0ee0  IPMIDRV - ok
19:16:44.0267 0x0ee0  [ C9A829B22D1F2613E7A3A3E5C0E43EA2, F8C2BE9B671C14B7D203DAC99E3BEDB113AAC058B6A0D03587DC2C427CC96D74 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:16:44.0282 0x0ee0  IPNAT - ok
19:16:44.0282 0x0ee0  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:16:44.0282 0x0ee0  IRENUM - ok
19:16:44.0282 0x0ee0  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:16:44.0298 0x0ee0  isapnp - ok
19:16:44.0298 0x0ee0  [ 578C93C0AEC42EF9CE0AE5CFEC132098, CCDF167E9D58086A583D0249E5D0F9EB0EF1ABE59E814484DF6D5E29A7A61FE2 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:16:44.0313 0x0ee0  iScsiPrt - ok
19:16:44.0313 0x0ee0  [ 61662AFF4AF0413F461F2780167703AE, 55CCBA4F09581871B3EB81A40A3FB59013AD988CEED109E18C58609AD469117A ] iusb3hcs        C:\Windows\system32\DRIVERS\iusb3hcs.sys
19:16:44.0313 0x0ee0  iusb3hcs - ok
19:16:44.0313 0x0ee0  [ 923030D5F4B1C801AE5219551F7B490B, C00D9CCE8D04FEFA9391725F79BBD77F03ED3E3DB53E02E80ABC008B2F179043 ] iusb3hub        C:\Windows\system32\DRIVERS\iusb3hub.sys
19:16:44.0329 0x0ee0  iusb3hub - ok
19:16:44.0345 0x0ee0  [ 234E2245AF65CFC021874F64C40E206B, 4254180327F7B58AAE1A158DADE53A06C02139F6CDD2A657E5E9B2868B96F806 ] iusb3xhc        C:\Windows\system32\DRIVERS\iusb3xhc.sys
19:16:44.0360 0x0ee0  iusb3xhc - ok
19:16:44.0360 0x0ee0  [ 9BF27BE5D9F87E556BF4269025703E4D, A4BF5514BD6FFA9FEA5AF4DCCCB92DEB93261731A4B5814177D2680883D0C09A ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
19:16:44.0376 0x0ee0  jhi_service - ok
19:16:44.0376 0x0ee0  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
19:16:44.0376 0x0ee0  kbdclass - ok
19:16:44.0376 0x0ee0  [ 3985332405FA64D8E679A1DB24901596, CA4C274704B9F4AE560CC32AD7C22D39ADAD13C61709E21F70C9B1AACE34B7A2 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
19:16:44.0376 0x0ee0  kbdhid - ok
19:16:44.0391 0x0ee0  [ B34C08826C081A92D7298DE23E001FB6, A63B232AAE618F8E28777892193A04828C8D07F79283C2D8AECBAEAED6C8F0E6 ] Ke2200          C:\Windows\system32\DRIVERS\e22w7x64.sys
19:16:44.0391 0x0ee0  Ke2200 - ok
19:16:44.0391 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] KeyIso          C:\Windows\system32\lsass.exe
19:16:44.0391 0x0ee0  KeyIso - ok
19:16:44.0407 0x0ee0  [ A6C623B5EAF9C0D03EA9BB55215E3307, 115863684786480C2EEF7B31690C60D28A4B8CAB9B9E5AB55BADECC692805E7E ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:16:44.0407 0x0ee0  KSecDD - ok
19:16:44.0407 0x0ee0  [ F2908E8C29163DD5E7A02556012792C5, DE8FA9FA3FB7B403ADDBC371DB20BD20DA774E16E7C7EB147B840731A68E9763 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:16:44.0423 0x0ee0  KSecPkg - ok
19:16:44.0423 0x0ee0  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:16:44.0438 0x0ee0  ksthunk - ok
19:16:44.0438 0x0ee0  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:16:44.0469 0x0ee0  KtmRm - ok
19:16:44.0469 0x0ee0  [ 5CE3ADEF1C7203DCC0467E084ACE5643, E8A26479F296451310D42215E3E280C80A18BD6E537A854D1702873AC4162382 ] LanmanServer    C:\Windows\system32\srvsvc.dll
19:16:44.0485 0x0ee0  LanmanServer - ok
19:16:44.0485 0x0ee0  [ FCFB82793B989875CF2DF98AD2BEA5BD, 38A612BE12613D2196AE86F8C8686A53AB83E9CEE8E0E4AB0BD0329244D9050A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:16:44.0485 0x0ee0  LanmanWorkstation - ok
19:16:44.0485 0x0ee0  [ FA529FB35694C24BF98A9EF67C1CD9D0, 7B3C587C38CF13D514140F0A55E58997D6071D1DEFD97E274E3F490660AC6075 ] LGBusEnum       C:\Windows\system32\drivers\LGBusEnum.sys
19:16:44.0501 0x0ee0  LGBusEnum - ok
19:16:44.0501 0x0ee0  [ 94AF1384A67B9FCF5651E70BC9D4C526, 9C025F7BBB5BBE9DAF3DEF2F6385CE77C8F413912C4D16930814F6D19B62B367 ] LGSHidFilt      C:\Windows\system32\DRIVERS\LGSHidFilt.Sys
19:16:44.0501 0x0ee0  LGSHidFilt - ok
19:16:44.0501 0x0ee0  [ 94B29CE153765E768F004FB3440BE2B0, E74C01CEBDA589CDDE35CBCBAA18700E3742DD3B48A90DB3630992467FFC5024 ] LGVirHid        C:\Windows\system32\drivers\LGVirHid.sys
19:16:44.0501 0x0ee0  LGVirHid - ok
19:16:44.0516 0x0ee0  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:16:44.0532 0x0ee0  lltdio - ok
19:16:44.0532 0x0ee0  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:16:44.0547 0x0ee0  lltdsvc - ok
19:16:44.0563 0x0ee0  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:16:44.0579 0x0ee0  lmhosts - ok
19:16:44.0579 0x0ee0  [ E4267604E975EF4BBB1A39A1B4F5B3CB, 4FC4D213A209F96893819EC7971BEA9651BAF4BF999304FB20556ACF98ADBB9C ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
19:16:44.0594 0x0ee0  LMS - ok
19:16:44.0594 0x0ee0  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
19:16:44.0594 0x0ee0  LSI_FC - ok
19:16:44.0610 0x0ee0  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
19:16:44.0610 0x0ee0  LSI_SAS - ok
19:16:44.0610 0x0ee0  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
19:16:44.0625 0x0ee0  LSI_SAS2 - ok
19:16:44.0625 0x0ee0  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
19:16:44.0625 0x0ee0  LSI_SCSI - ok
19:16:44.0625 0x0ee0  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
19:16:44.0641 0x0ee0  luafv - ok
19:16:44.0657 0x0ee0  [ 8FF2D95CBA49B405C5DE27039FF0BF35, 03BF7FC7F1C2C76EDB583BA342EA1C325DB8058517744EF2A78529D3938F4DC1 ] MBfilt          C:\Windows\system32\drivers\MBfilt64.sys
19:16:44.0657 0x0ee0  MBfilt - ok
19:16:44.0657 0x0ee0  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:16:44.0657 0x0ee0  Mcx2Svc - ok
19:16:44.0672 0x0ee0  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
19:16:44.0672 0x0ee0  megasas - ok
19:16:44.0672 0x0ee0  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
19:16:44.0688 0x0ee0  MegaSR - ok
19:16:44.0688 0x0ee0  [ A37A2ED3321A7A7BC85FA05221051A7F, 32E75126F3480DC59C480D821A717E5AC2639912D515693557EBF999B7DB0B10 ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
19:16:44.0688 0x0ee0  MEIx64 - ok
19:16:44.0703 0x0ee0  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
19:16:44.0719 0x0ee0  MMCSS - ok
19:16:44.0719 0x0ee0  [ BFFB0C93D9FB43CA42EF11C9240BFF7F, E1E98C55DF9A56316050A21AC5A7D764338DA55F6124B52A52E71B5B0089C3FA ] Modem           C:\Windows\system32\drivers\modem.sys
19:16:44.0719 0x0ee0  Modem - ok
19:16:44.0719 0x0ee0  [ 009E04D73298787DAA406104B17305A7, E9713CF96C1FE6808E7F5CDF3255A930D38B7FBBF51DCA63B17F40A37D621718 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:16:44.0735 0x0ee0  monitor - ok
19:16:44.0735 0x0ee0  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
19:16:44.0735 0x0ee0  mouclass - ok
19:16:44.0735 0x0ee0  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:16:44.0750 0x0ee0  mouhid - ok
19:16:44.0750 0x0ee0  [ B3F55C20008956239A2190DBD7CC4C31, C13A37497856B97DD8E676DD61A65E4FFD42037E691D022C5C5B8E0567E78905 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:16:44.0750 0x0ee0  mountmgr - ok
19:16:44.0750 0x0ee0  [ B4E9C7383A705628AD491CF0F87D901F, 5C0CD7133D4F5B1E0466CDB2A2210ECA57206A8BC41F37BC6324120AE5501C70 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
19:16:44.0766 0x0ee0  MozillaMaintenance - ok
19:16:44.0766 0x0ee0  [ 3A6FB80E65EB0D5F78779E1F860CEEDF, DE5004F43EDA2A6C629CEFA76D4F751F6CB4349271B7806206D19F35A68EDBEC ] mpio            C:\Windows\system32\drivers\mpio.sys
19:16:44.0766 0x0ee0  mpio - ok
19:16:44.0781 0x0ee0  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:16:44.0781 0x0ee0  mpsdrv - ok
19:16:44.0797 0x0ee0  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:16:44.0813 0x0ee0  MpsSvc - ok
19:16:44.0813 0x0ee0  [ 542780A91C75D9C21F0E2BAB9FFCEE7A, D21C5ECC649016A583A1958EEDDE0326F177C68804BFD1567EE6AC8F34679388 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:16:44.0828 0x0ee0  MRxDAV - ok
19:16:44.0828 0x0ee0  [ 7C1FDEC5B8FE42E444E66188733595F4, 180B5F996F3D80466837190AE3B71C68C54221964AC8124A994C247369BA26F9 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:16:44.0828 0x0ee0  mrxsmb - ok
19:16:44.0844 0x0ee0  [ 031D5595B9032C5608F987D4C786019B, 642AA0DAE1207C05211095347E9E500472995AD32A23EEC4F99C8259E05E4147 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:16:44.0844 0x0ee0  mrxsmb10 - ok
19:16:44.0844 0x0ee0  [ 4E65A1592133BC0007B4E2D402D6BC3F, 99B5DB19A3BEA96D15263D52F572A2C91E92F6B35027069B4D9689D6A313CB77 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:16:44.0859 0x0ee0  mrxsmb20 - ok
19:16:44.0859 0x0ee0  [ 715008E5E4EEB18FE648E7FC094DB67D, 3EE3211817FDC3556F564F44560B67C86C902900A0B06B8DD0DBF1D0D77A2C94 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:16:44.0859 0x0ee0  msahci - ok
19:16:44.0859 0x0ee0  [ CC896D51EFFE2A9598BAB4BD3DB6B195, 6F63444BDE882007A0F703E94FA5EABE8FC42BB67010A6A4DA0E2C11E145C4DC ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:16:44.0875 0x0ee0  msdsm - ok
19:16:44.0875 0x0ee0  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
19:16:44.0891 0x0ee0  MSDTC - ok
19:16:44.0891 0x0ee0  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:16:44.0906 0x0ee0  Msfs - ok
19:16:44.0906 0x0ee0  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:16:44.0922 0x0ee0  mshidkmdf - ok
19:16:44.0953 0x0ee0  [ 40E8D330288A0188216731A3DF7185EC, 5050030F60FC8D3752659FE359710830D4EE175962AD7B8B559D1DE82503B344 ] MSIBIOSData_CC  C:\Program Files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe
19:16:44.0984 0x0ee0  MSIBIOSData_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:16:47.0527 0x0ee0  MSIBIOSData_CC ( UnsignedFile.Multi.Generic ) - warning
19:16:47.0527 0x0ee0  Force sending object to P2P due to detect: MSIBIOSData_CC
19:16:50.0101 0x0ee0  Object send P2P result: true
19:16:52.0737 0x0ee0  [ B7AF450F98F3C57F5254E901E6FAADA1, 48932B73D6386A629E2DBD2FE26B22768458CE75B105AD8DCDDDFA7C2B8C679E ] MSIClock_CC     C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe
19:16:52.0800 0x0ee0  MSIClock_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:16:55.0436 0x0ee0  MSIClock_CC ( UnsignedFile.Multi.Generic ) - warning
19:16:57.0948 0x0ee0  [ 7A47F1E241B2A6AB4E2A97D7AF9A4078, BBB239794A386DF0B6BE722AF5ED133CA996357D3CED2CD271C8C2117F66C5E8 ] MSICOMM_CC      C:\Program Files (x86)\MSI\Command Center\MSICommService.exe
19:16:57.0995 0x0ee0  MSICOMM_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:00.0569 0x0ee0  MSICOMM_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:03.0111 0x0ee0  [ 7CED0D8AA90F9D1363008CF2802E9870, 1FF9F88863565EF20E34B89B95DBE3E91A87AD90772793150C129BC1C0D7DEFB ] MSICPU_CC       C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe
19:17:03.0174 0x0ee0  MSICPU_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:05.0748 0x0ee0  MSICPU_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:08.0244 0x0ee0  [ 78DCAAB9E4A51CB1BADCDF2643F96739, EC6283B0A705EC7125BC6B5D9050998F5F0A8AC0ACD5DEBDAB294678E1D65C70 ] MSICTL_CC       C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
19:17:08.0275 0x0ee0  MSICTL_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:10.0771 0x0ee0  MSICTL_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:10.0771 0x0ee0  Force sending object to P2P due to detect: MSICTL_CC
19:17:13.0314 0x0ee0  Object send P2P result: true
19:17:15.0825 0x0ee0  [ 99520879A9F320F465F79E12069E92D0, 9ACE2162B3521386A5A4271DED487FC32BA6FF25D4EE3F83C8644211BE37E5E9 ] MSIDDR_CC       C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
19:17:15.0857 0x0ee0  MSIDDR_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:18.0368 0x0ee0  MSIDDR_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:20.0786 0x0ee0  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:17:20.0802 0x0ee0  msisadrv - ok
19:17:20.0817 0x0ee0  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:17:20.0864 0x0ee0  MSiSCSI - ok
19:17:20.0880 0x0ee0  msiserver - ok
19:17:20.0927 0x0ee0  [ 8D65A323DE300E17CBE74B28EA06EEAA, C5BBE3F4916A53864A2CB6782B7F050B2133ADE42039FD4C28D7A7FD4FE54331 ] MSISMB_CC       C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe
19:17:20.0958 0x0ee0  MSISMB_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:23.0469 0x0ee0  MSISMB_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:25.0934 0x0ee0  [ 51962B7501240F2188D451ACD98702B5, FABA26E75E950A4D13920A2E565ABB796C4089074F4D427DC316D9063E4C49F9 ] MSISuperIO_CC   C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe
19:17:25.0981 0x0ee0  MSISuperIO_CC - detected UnsignedFile.Multi.Generic ( 1 )
19:17:28.0508 0x0ee0  MSISuperIO_CC ( UnsignedFile.Multi.Generic ) - warning
19:17:30.0926 0x0ee0  [ 629CC5BE3BD275ECD8BBDBEC412C3C8A, 8E115809735AB0C578D1CB024D2162FB97EB884C8CF0324D6BCF6CCC0F248E7D ] MSI_FastBoot    C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
19:17:30.0942 0x0ee0  MSI_FastBoot - ok
19:17:31.0004 0x0ee0  [ F3A198F86C05862B6EB4ED4C470F37CD, 6D1B3845E47DB8509FAEDB8AA82CA39BE8FE085A85D1174DF1DABF1F3CB6BA44 ] MSI_LiveUpdate_Service C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
19:17:31.0035 0x0ee0  MSI_LiveUpdate_Service - ok
19:17:31.0035 0x0ee0  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:17:31.0051 0x0ee0  MSKSSRV - ok
19:17:31.0067 0x0ee0  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:17:31.0082 0x0ee0  MSPCLOCK - ok
19:17:31.0082 0x0ee0  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:17:31.0098 0x0ee0  MSPQM - ok
19:17:31.0098 0x0ee0  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:17:31.0113 0x0ee0  MsRPC - ok
19:17:31.0113 0x0ee0  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
19:17:31.0113 0x0ee0  mssmbios - ok
19:17:31.0113 0x0ee0  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:17:31.0129 0x0ee0  MSTEE - ok
19:17:31.0145 0x0ee0  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
19:17:31.0145 0x0ee0  MTConfig - ok
19:17:31.0145 0x0ee0  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
19:17:31.0145 0x0ee0  Mup - ok
19:17:31.0160 0x0ee0  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
19:17:31.0176 0x0ee0  napagent - ok
19:17:31.0191 0x0ee0  [ B323F2FB750238EE63843C2C3D4218F5, 529077D71D9C376CB200AF793364689EA2C61FD49E4C6DD5107F2F2C607A3EE6 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:17:31.0191 0x0ee0  NativeWifiP - ok
19:17:31.0207 0x0ee0  [ E41F813C4400FDC0CA3ED36360EDCAD3, 690CBFAD79B4221666A9D76BE04B7E564AB8D81FA8393346182258B5CAFB4B67 ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:17:31.0223 0x0ee0  NDIS - ok
19:17:31.0238 0x0ee0  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:17:31.0254 0x0ee0  NdisCap - ok
19:17:31.0254 0x0ee0  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:17:31.0254 0x0ee0  NdisTapi - ok
19:17:31.0254 0x0ee0  [ 662CBFAA835FFF1A935DD01890AAFC62, 41CD715EF77446E2ECD70A512BF2A5DC8C32C0F38E56F48621461784C28CF914 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:17:31.0269 0x0ee0  Ndisuio - ok
19:17:31.0269 0x0ee0  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:17:31.0285 0x0ee0  NdisWan - ok
19:17:31.0285 0x0ee0  [ F84F49FD9002E84FBCCF60F9F6AB8FBE, 91DB0A9050F24C3D453316ECFC93F5762AAA8CF6D778406D64952A12119991E0 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:17:31.0285 0x0ee0  NDProxy - ok
19:17:31.0301 0x0ee0  [ BB14215BBAF8EBB5E5FFAA3B6B04D177, 7A53CBF15409FAF34F3959263E7C3E69770CF06B4FEB7A08E3009C18A098DBA3 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:17:31.0301 0x0ee0  NetBIOS - ok
19:17:31.0301 0x0ee0  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:17:31.0316 0x0ee0  NetBT - ok
19:17:31.0332 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] Netlogon        C:\Windows\system32\lsass.exe
19:17:31.0332 0x0ee0  Netlogon - ok
19:17:31.0332 0x0ee0  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
19:17:31.0363 0x0ee0  Netman - ok
19:17:31.0363 0x0ee0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:17:31.0379 0x0ee0  NetMsmqActivator - ok
19:17:31.0379 0x0ee0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:17:31.0379 0x0ee0  NetPipeActivator - ok
19:17:31.0394 0x0ee0  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
19:17:31.0410 0x0ee0  netprofm - ok
19:17:31.0410 0x0ee0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:17:31.0425 0x0ee0  NetTcpActivator - ok
19:17:31.0425 0x0ee0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:17:31.0441 0x0ee0  NetTcpPortSharing - ok
19:17:31.0441 0x0ee0  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
19:17:31.0441 0x0ee0  nfrd960 - ok
19:17:31.0441 0x0ee0  [ 843E337C1CDD282545ED7515345E263B, B0E485856FC1C28DA6C453BF60A04F603BA15D7B0D84896E878049198F2FD1C9 ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:17:31.0457 0x0ee0  NlaSvc - ok
19:17:31.0457 0x0ee0  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:17:31.0472 0x0ee0  Npfs - ok
19:17:31.0472 0x0ee0  [ B6537E9A92256943F1FB3B8172307C3B, AA6E4EAEE15A5666BDA8725F762077FDCE8EEA1058E6432C233592A516134E88 ] nsi             C:\Windows\system32\nsisvc.dll
19:17:31.0488 0x0ee0  nsi - ok
19:17:31.0488 0x0ee0  [ 2A87D15C1A5AE031388DB1FCB0442EE1, 77E11F7C8E7005762FF3CDD820450DD544B70EFDA6369A2BCB4A134534C9CE25 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:17:31.0488 0x0ee0  nsiproxy - ok
19:17:31.0519 0x0ee0  [ 2660B0702A056B132A5F52E96C23910C, B895A7E8DC07F474FCF9F5389CEC8C35F6AE7A4E31A68399BDAB791721704FEB ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:17:31.0535 0x0ee0  Ntfs - ok
19:17:31.0535 0x0ee0  [ 1B32C54B95121AB1683C7B83B2DB4B96, 99F4994A0E5BD1BF6E3F637D3225C69FF4CD620557E23637533E7F18D7D6CBA1 ] NTIOLib_1_0_4   C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys
19:17:31.0550 0x0ee0  NTIOLib_1_0_4 - ok
19:17:31.0550 0x0ee0  [ C02F70960FA934B8DEFA16A03D7F6556, D8B58F6A89A7618558E37AFC360CD772B6731E3BA367F8D58734ECEE2244A530 ] NTIOLib_1_0_6   C:\Program Files (x86)\Setup Files\Ms7918v250\NTIOLib_X64.sys
19:17:31.0550 0x0ee0  NTIOLib_1_0_6 - detected UnsignedFile.Multi.Generic ( 1 )
19:17:34.0062 0x0ee0  Detect skipped due to KSN trusted
19:17:34.0062 0x0ee0  NTIOLib_1_0_6 - ok
19:17:34.0062 0x0ee0  NTIOLib_1_0_C - ok
19:17:34.0062 0x0ee0  NTIOLib_ECO - ok
19:17:34.0077 0x0ee0  [ 992DED5B623BE3C228F32EDB4CA3F2D2, 47F0CDAA2359A63AD1389EF4A635F1F6EEE1F63BDF6EF177F114BDCDADC2E005 ] NTIOLib_FastBoot C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys
19:17:34.0093 0x0ee0  NTIOLib_FastBoot - ok
19:17:34.0093 0x0ee0  [ 361A598D8BB92C13B18ABB7CAC850B01, EF86C4E5EE1DBC4F81CD864E8CD2F4A2A85EE4475B9A9AB698A4AE1CC71FBEB0 ] NTIOLib_MB      C:\Program Files (x86)\MSI\MSI Gaming APP\Lib\NTIOLib_X64.sys
19:17:34.0109 0x0ee0  NTIOLib_MB - ok
19:17:34.0109 0x0ee0  [ 95E4C7B0384DA89DCE8EA6F31C3613D9, CF4B5FA853CE809F1924DF3A3AE3C4E191878C4EA5248D8785DC7E51807A512B ] NTIOLib_MSIClock_CC C:\Program Files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys
19:17:34.0124 0x0ee0  NTIOLib_MSIClock_CC - ok
19:17:34.0124 0x0ee0  [ A711E6AB17802FABF2E69E0CD57C54CD, A9706E320179993DADE519A83061477ACE195DAA1B788662825484813001F526 ] NTIOLib_MSICOMM_CC C:\Program Files (x86)\MSI\Command Center\NTIOLib_X64.sys
19:17:34.0124 0x0ee0  NTIOLib_MSICOMM_CC - ok
19:17:34.0124 0x0ee0  [ E9A30EDEF1105B8A64218F892B2E56ED, E83908EBA2501A00EF9E74E7D1C8B4FF1279F1CD6051707FD51824F87E4378FA ] NTIOLib_MSICPU_CC C:\Program Files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys
19:17:34.0140 0x0ee0  NTIOLib_MSICPU_CC - ok
19:17:34.0140 0x0ee0  [ 6CCE5BB9C8C2A8293DF2D3B1897941A2, 9254F012009D55F555418FF85F7D93B184AB7CB0E37AECDFDAB62CFE94DEA96B ] NTIOLib_MSIDDR_CC C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys
19:17:34.0140 0x0ee0  NTIOLib_MSIDDR_CC - ok
19:17:34.0140 0x0ee0  [ 63E333D64A8716E1AE59F914CB686AE8, 3124B0411B8077605DB2A9B7909D8240E0D554496600E2706E531C93C931E1B5 ] NTIOLib_MSIFrequency_CC C:\Program Files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys
19:17:34.0155 0x0ee0  NTIOLib_MSIFrequency_CC - ok
19:17:34.0155 0x0ee0  [ 68DDE686D6999AD2E5D182B20403240B, 591BD5E92DFA0117B3DAA29750E73E2DB25BAA717C31217539D30FFB1F7F3A52 ] NTIOLib_MSIRatio_CC C:\Program Files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys
19:17:34.0155 0x0ee0  NTIOLib_MSIRatio_CC - ok
19:17:34.0155 0x0ee0  [ 3DBF69F935EA48571EA6B0F5A2878896, E005E8D183E853A27AD3BB56F25489F369C11B0D47E3D4095AAD9291B3343BF1 ] NTIOLib_MSISMB_CC C:\Program Files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys
19:17:34.0155 0x0ee0  NTIOLib_MSISMB_CC - ok
19:17:34.0155 0x0ee0  [ DD04CD3DE0C19BEDE84E9C95A86B3CA8, CD4A249C3EF65AF285D0F8F30A8A96E83688486AAB515836318A2559757A89BB ] NTIOLib_MSISuperIO_CC C:\Program Files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys
19:17:34.0171 0x0ee0  NTIOLib_MSISuperIO_CC - ok
19:17:34.0171 0x0ee0  [ C6F8983DD3D75640C072A8459B8FA55A, 101402D4F5D1AE413DED499C78A5FCBBC7E3BAE9B000D64C1DD64E3C48C37558 ] NTIOLib_MSI_RAID C:\MSI\Smart Utilities\NTIOLib_X64.sys
19:17:34.0171 0x0ee0  NTIOLib_MSI_RAID - ok
19:17:34.0171 0x0ee0  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
19:17:34.0187 0x0ee0  Null - ok
19:17:34.0187 0x0ee0  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:17:34.0202 0x0ee0  nvraid - ok
19:17:34.0202 0x0ee0  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:17:34.0202 0x0ee0  nvstor - ok
19:17:34.0218 0x0ee0  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:17:34.0218 0x0ee0  nv_agp - ok
19:17:34.0218 0x0ee0  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:17:34.0233 0x0ee0  ohci1394 - ok
19:17:34.0233 0x0ee0  [ 11E0B35479C895888BA3D7F619DCFFF3, 6ED82C19898101EC00BD64A9F90595C3D20AD2D2902AA8765B740FB3B9312DDF ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:17:34.0233 0x0ee0  ose64 - ok
19:17:34.0296 0x0ee0  [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:17:34.0374 0x0ee0  osppsvc - ok
19:17:34.0389 0x0ee0  [ 8830D42427D05B15B032108EBBDBD289, 977AEE57EF7639A1B1C8D8858AF369927EB16181100FCC4517F4B58148138C22 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:17:34.0389 0x0ee0  p2pimsvc - ok
19:17:34.0405 0x0ee0  [ 5B7BADED6943AA6F4B6C1ABA5FCCB25F, 07D17B7778A88A3007E98C47773D1D8649C3AF5284BCC870829DDF2725CF2FC1 ] p2psvc          C:\Windows\system32\p2psvc.dll
19:17:34.0405 0x0ee0  p2psvc - ok
19:17:34.0421 0x0ee0  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
19:17:34.0421 0x0ee0  Parport - ok
19:17:34.0421 0x0ee0  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:17:34.0421 0x0ee0  partmgr - ok
19:17:34.0436 0x0ee0  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:17:34.0436 0x0ee0  PcaSvc - ok
19:17:34.0452 0x0ee0  [ 9CE2B541DEBE8DCA0ECD251584540703, 04395C3C57C1200C29266077816922CF342A06ECCCB4EDEC0AFA6923C5800B5B ] pci             C:\Windows\system32\drivers\pci.sys
19:17:34.0452 0x0ee0  pci - ok
19:17:34.0452 0x0ee0  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
19:17:34.0452 0x0ee0  pciide - ok
19:17:34.0467 0x0ee0  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
19:17:34.0467 0x0ee0  pcmcia - ok
19:17:34.0467 0x0ee0  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:17:34.0483 0x0ee0  pcw - ok
19:17:34.0483 0x0ee0  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:17:34.0514 0x0ee0  PEAUTH - ok
19:17:34.0530 0x0ee0  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
19:17:34.0561 0x0ee0  PeerDistSvc - ok
19:17:34.0577 0x0ee0  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:17:34.0577 0x0ee0  PerfHost - ok
19:17:34.0592 0x0ee0  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
19:17:34.0623 0x0ee0  pla - ok
19:17:34.0639 0x0ee0  [ FC9CFBF842E2B3A044092ADAD71B5784, 32A6CE32B285302A2DAD0F008099586E955D954BB7EDF7D94696D3CE6FB14CF1 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:17:34.0639 0x0ee0  PlugPlay - ok
19:17:34.0639 0x0ee0  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:17:34.0655 0x0ee0  PNRPAutoReg - ok
19:17:34.0655 0x0ee0  [ 8830D42427D05B15B032108EBBDBD289, 977AEE57EF7639A1B1C8D8858AF369927EB16181100FCC4517F4B58148138C22 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:17:34.0670 0x0ee0  PNRPsvc - ok
19:17:34.0670 0x0ee0  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:17:34.0701 0x0ee0  PolicyAgent - ok
19:17:34.0701 0x0ee0  [ 0E2274B028C26022D4E13FA68B727FE3, F8ECC591575D8F3305AE6E7258A16C1D91D6C08482B1DCCD7920142221ACD5BC ] Power           C:\Windows\system32\umpo.dll
19:17:34.0717 0x0ee0  Power - ok
19:17:34.0717 0x0ee0  [ D8874711B6C3DD308F84E42BA6EFF179, A7E14D9A80D0F2A38568E99E34FFBE2430743523D6739C0251EE5E4E8BBB68CC ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:17:34.0717 0x0ee0  PptpMiniport - ok
19:17:34.0717 0x0ee0  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
19:17:34.0733 0x0ee0  Processor - ok
19:17:34.0733 0x0ee0  [ BEAFD18C29A0584A5BCA4DD8D9F245D3, 3B3114DF836620DC33F694E8123A38871494B8B031C1CB1A0867D6128D86D50A ] ProfSvc         C:\Windows\system32\profsvc.dll
19:17:34.0733 0x0ee0  ProfSvc - ok
19:17:34.0748 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] ProtectedStorage C:\Windows\system32\lsass.exe
19:17:34.0748 0x0ee0  ProtectedStorage - ok
19:17:34.0748 0x0ee0  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:17:34.0764 0x0ee0  Psched - ok
19:17:34.0795 0x0ee0  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
19:17:34.0811 0x0ee0  ql2300 - ok
19:17:34.0811 0x0ee0  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
19:17:34.0826 0x0ee0  ql40xx - ok
19:17:34.0826 0x0ee0  [ 0AF624035C3BDCFB50F500D467D50940, 421289444162C93EAB9E344B3DD3B84CADAC4DE2555A4565B63870A68B786C21 ] Qualcomm Atheros Killer Service V2 C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
19:17:34.0842 0x0ee0  Qualcomm Atheros Killer Service V2 - detected UnsignedFile.Multi.Generic ( 1 )
19:17:37.0322 0x0ee0  Detect skipped due to KSN trusted
19:17:37.0322 0x0ee0  Qualcomm Atheros Killer Service V2 - ok
19:17:37.0338 0x0ee0  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
19:17:37.0385 0x0ee0  QWAVE - ok
19:17:37.0385 0x0ee0  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:17:37.0400 0x0ee0  QWAVEdrv - ok
19:17:37.0400 0x0ee0  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:17:37.0431 0x0ee0  RasAcd - ok
19:17:37.0431 0x0ee0  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:17:37.0431 0x0ee0  RasAgileVpn - ok
19:17:37.0431 0x0ee0  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
19:17:37.0447 0x0ee0  RasAuto - ok
19:17:37.0463 0x0ee0  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:17:37.0478 0x0ee0  Rasl2tp - ok
19:17:37.0478 0x0ee0  [ 002A047363F926DB749E87DF448261D1, D52C27A88AACDA441187917584E630B6EA85166573570228E0C3110E7AA97E72 ] RasMan          C:\Windows\System32\rasmans.dll
19:17:37.0494 0x0ee0  RasMan - ok
19:17:37.0494 0x0ee0  [ 77682DE44B334E6AAFCD0ED61FB7404F, C95DF9113D8B777BC9CFE319A710C9293210377F531F0C38FA38C588B8A3F5B4 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:17:37.0494 0x0ee0  RasPppoe - ok
19:17:37.0509 0x0ee0  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:17:37.0525 0x0ee0  RasSstp - ok
19:17:37.0525 0x0ee0  [ 638131F5C52C93ED651A0A7DB8AA6B01, D54B466859664B8CD2415CC205092849D76C765BDDDD7AD0908D2C8DBB1AB9CF ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:17:37.0541 0x0ee0  rdbss - ok
19:17:37.0541 0x0ee0  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
19:17:37.0556 0x0ee0  rdpbus - ok
19:17:37.0556 0x0ee0  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:17:37.0572 0x0ee0  RDPCDD - ok
19:17:37.0572 0x0ee0  [ 5A5849E58B81C1853D48DF7516CB9AA2, 451F3CFEBD2E204461A9B3AA768A79A61A935237F2A26BF74825B9B0E36A4A3D ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
19:17:37.0587 0x0ee0  RDPDR - ok
19:17:37.0587 0x0ee0  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:17:37.0603 0x0ee0  RDPENCDD - ok
19:17:37.0603 0x0ee0  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:17:37.0619 0x0ee0  RDPREFMP - ok
19:17:37.0634 0x0ee0  [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
19:17:37.0634 0x0ee0  RdpVideoMiniport - ok
19:17:37.0650 0x0ee0  [ 6F426DCF2DDDCCF6BA4DFD34E9803E5B, F98270D03D2171D6F0D4D719828BF7585C44E18CAF66DEF93A51A0064E1813AE ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:17:37.0650 0x0ee0  RDPWD - ok
19:17:37.0650 0x0ee0  [ 9500266AFA2548D2812DC59D8C1D7BD3, 25FFD440B02D7D651B57133D94C95EB526F7189F3329060D004F28BA179BF89F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:17:37.0665 0x0ee0  rdyboost - ok
19:17:37.0665 0x0ee0  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:17:37.0681 0x0ee0  RemoteAccess - ok
19:17:37.0681 0x0ee0  [ 44A031C50D6E8077A034D59E094AB1E2, 7C03954A82C15B14D9160C2E8675A82A47E1C34E0D731CE5A4DED795CF873EED ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:17:37.0681 0x0ee0  RemoteRegistry - ok
19:17:37.0697 0x0ee0  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:17:37.0712 0x0ee0  RpcEptMapper - ok
19:17:37.0712 0x0ee0  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
19:17:37.0712 0x0ee0  RpcLocator - ok
19:17:37.0728 0x0ee0  [ 5CC1040FDA8A7EF9A17D39DA339ACFCF, A8BAA5CE72F898E5C270DE6779179AA5E97B54592BF03A71DE60D7305D0EF2B1 ] RpcSs           C:\Windows\system32\rpcss.dll
19:17:37.0743 0x0ee0  RpcSs - ok
19:17:37.0743 0x0ee0  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:17:37.0759 0x0ee0  rspndr - ok
19:17:37.0759 0x0ee0  [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
19:17:37.0775 0x0ee0  s3cap - ok
19:17:37.0775 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] SamSs           C:\Windows\system32\lsass.exe
19:17:37.0775 0x0ee0  SamSs - ok
19:17:37.0775 0x0ee0  sbapifs - ok
19:17:37.0775 0x0ee0  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:17:37.0790 0x0ee0  sbp2port - ok
19:17:37.0790 0x0ee0  [ DBF28417B606FEA67F40FA4DEBDCEDA4, BBBA27D3E87AB4FADABB44624F206F14E49C8EACF2B7D81667E238615530DC3D ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:17:37.0806 0x0ee0  SCardSvr - ok
19:17:37.0806 0x0ee0  [ B0402F6755F0BEFFF66414A41EED6350, A365586427B49F8F2965F647F3D435BB165CA69C697E291C6898AC15ED5B0EB6 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:17:37.0806 0x0ee0  scfilter - ok
19:17:37.0821 0x0ee0  [ 0327D26E36803BA62F18E3AF1D59DF4E, 4111A17D099018EFD43D7EE7CB811FF071F13FD3A020437213D1817D2585E298 ] Schedule        C:\Windows\system32\schedsvc.dll
19:17:37.0853 0x0ee0  Schedule - ok
19:17:37.0853 0x0ee0  [ 89050BDC752EC2AAEDC50789223CD5E9, CECE30222CC9722655690C5A319F478A9E0C0C8100E660CA2B976852AB9CFDEF ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:17:37.0853 0x0ee0  SCPolicySvc - ok
19:17:37.0868 0x0ee0  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:17:37.0868 0x0ee0  SDRSVC - ok
19:17:37.0868 0x0ee0  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:17:37.0884 0x0ee0  secdrv - ok
19:17:37.0899 0x0ee0  [ EA764FF72CD57F69B6E1E1A4F713708C, C2C5E268297F00B7263635C0D296D3F76B5E09BAE6E33B0E350CDBC9C0A1FD9A ] seclogon        C:\Windows\system32\seclogon.dll
19:17:37.0899 0x0ee0  seclogon - ok
19:17:37.0899 0x0ee0  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
19:17:37.0931 0x0ee0  SENS - ok
19:17:37.0931 0x0ee0  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:17:37.0931 0x0ee0  SensrSvc - ok
19:17:37.0931 0x0ee0  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
19:17:37.0931 0x0ee0  Serenum - ok
19:17:37.0946 0x0ee0  [ 083D3741859C4FEA4410BB4ACC536A39, FD89DA79FE0377E22AB3770E3030FDEBBB5A2DBF8B023045833EC8D9EFE680A0 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
19:17:37.0946 0x0ee0  Serial - ok
19:17:37.0946 0x0ee0  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
19:17:37.0962 0x0ee0  sermouse - ok
19:17:37.0962 0x0ee0  [ B83579A3127F13580B63CBEB85DD4B2B, ACD04233D1941928095384F815C9A065C28078E6624532023F1031352A4D9DD3 ] SessionEnv      C:\Windows\system32\sessenv.dll
19:17:37.0962 0x0ee0  SessionEnv - ok
19:17:37.0977 0x0ee0  [ C3D57658C34C68DB5D8970A1CF96284E, 4227C4AFDA94FB87FDB6642FB345209809EB86EC8F02DB79502AE54EF4A98A4B ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:17:37.0977 0x0ee0  sffdisk - ok
19:17:37.0977 0x0ee0  [ 21EACBEFFFB0FB4999D3D10245CF10A5, 46EFD8D61FE7CB6C9BAA84B869558749CC394D15B425E1657CABA6EAE718D6CF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:17:37.0977 0x0ee0  sffp_mmc - ok
19:17:37.0993 0x0ee0  [ AF660EA3039E8FE3C2051D7224C82F34, F559BF0492DBFFE877D04DF565265195794BEB92CCAC22E4665CD7BE42F8FA2B ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:17:37.0993 0x0ee0  sffp_sd - ok
19:17:37.0993 0x0ee0  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
19:17:37.0993 0x0ee0  sfloppy - ok
19:17:38.0009 0x0ee0  [ 8944F9C62D18FD16B1114C48C1E3DB26, 7AAC831672DBD63A4B4C5E7AC89A3CCA08FED87E0ED5AFCBBB1345F28A8E4C76 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:17:38.0009 0x0ee0  SharedAccess - ok
19:17:38.0024 0x0ee0  [ EA9092F3DB26EDC7199AB64C9EF0D2D7, 2FD5AFD91CF50FEEE0E5C59590C471BE61470E1C0BF4DC3745B75739BB0769F3 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:17:38.0040 0x0ee0  ShellHWDetection - ok
19:17:38.0040 0x0ee0  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
19:17:38.0040 0x0ee0  SiSRaid2 - ok
19:17:38.0040 0x0ee0  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
19:17:38.0055 0x0ee0  SiSRaid4 - ok
19:17:38.0055 0x0ee0  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:17:38.0071 0x0ee0  Smb - ok
19:17:38.0071 0x0ee0  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:17:38.0087 0x0ee0  SNMPTRAP - ok
19:17:38.0087 0x0ee0  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:17:38.0087 0x0ee0  spldr - ok
19:17:38.0102 0x0ee0  [ 0E188E193A90E49F2C13FD6CB1EC15E5, 2F09769F588703316743478BAE96C4FF47196C15FD65809A62E58702766709DA ] Spooler         C:\Windows\System32\spoolsv.exe
19:17:38.0118 0x0ee0  Spooler - ok
19:17:38.0165 0x0ee0  [ 2A0DA1B8F48E7F3C9337E5463CEABB8D, 581C95B02DFD1300875ED2F61E65A682CABD1375251C10254F744E5D5A1A8B08 ] sppsvc          C:\Windows\system32\sppsvc.exe
19:17:38.0243 0x0ee0  sppsvc - ok
19:17:38.0243 0x0ee0  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:17:38.0274 0x0ee0  sppuinotify - ok
19:17:38.0289 0x0ee0  [ B39A2448AF2F9AB5284EC7B9191B710E, 2AA8187CAABB9003BF8B793CD32718B3781FEC49AD61307325F59C2D5C00651B ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:17:38.0289 0x0ee0  srv - ok
19:17:38.0305 0x0ee0  [ B24AF214349041C2987EFEAACFA4CAA1, 552FE3A217C98DF8CDD7006C6BB142C416FCA4C7D79EA756C99A2AD16E69F981 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:17:38.0321 0x0ee0  srv2 - ok
19:17:38.0321 0x0ee0  [ 83D70A79C456CF21CD4AC98FEDA65C3A, 374381C55248A6E4C3D8F65CFF2AB512185686DC6CDB6834D969D297D968E2C0 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:17:38.0321 0x0ee0  srvnet - ok
19:17:38.0336 0x0ee0  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:17:38.0352 0x0ee0  SSDPSRV - ok
19:17:38.0352 0x0ee0  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:17:38.0367 0x0ee0  SstpSvc - ok
19:17:38.0367 0x0ee0  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
19:17:38.0383 0x0ee0  stexstor - ok
19:17:38.0383 0x0ee0  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
19:17:38.0399 0x0ee0  stisvc - ok
19:17:38.0414 0x0ee0  [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
19:17:38.0414 0x0ee0  storflt - ok
19:17:38.0414 0x0ee0  [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc         C:\Windows\system32\drivers\storvsc.sys
19:17:38.0414 0x0ee0  storvsc - ok
19:17:38.0414 0x0ee0  [ 026286A841FFAA2F580FDEA9C9BC47DF, 473C7DDD1EDFC40A39484BD40ED7165647E36B965FBFB773089CC6A1EDE88501 ] SuperRAIDSvc    C:\MSI\Smart Utilities\SuperRAIDSvc.exe
19:17:38.0430 0x0ee0  SuperRAIDSvc - ok
19:17:38.0430 0x0ee0  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
19:17:38.0430 0x0ee0  swenum - ok
19:17:38.0445 0x0ee0  [ 5D967724564F7ACCEBAC3720CFE89C32, 3420E958DA13235968138E593BC190469F456059518B7524BDE9F6F1271679F2 ] swprv           C:\Windows\System32\swprv.dll
19:17:38.0445 0x0ee0  swprv - ok
19:17:38.0461 0x0ee0  [ 96E6D1CDA59FD9FF53C3C474CFFF4A55, 484F404D5D533A69051FCA4EBB4DDAB9B57D967B221BDD605B4A56BE94DBFA6E ] Synth3dVsc      C:\Windows\system32\drivers\Synth3dVsc.sys
19:17:38.0461 0x0ee0  Synth3dVsc - ok
19:17:38.0492 0x0ee0  [ 25E0900D1B452EDEB09B1F9B71195153, 96F47A96AA3510EBC67579806A679D82CF85709A1E041D026378E8F6DC0EB374 ] SysMain         C:\Windows\system32\sysmain.dll
19:17:38.0508 0x0ee0  SysMain - ok
19:17:38.0523 0x0ee0  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:17:38.0523 0x0ee0  TabletInputService - ok
19:17:38.0539 0x0ee0  [ D583628BEAD52E4E78E5A8FA338D0E02, 15D69565A824ACDB5F25903351CB9427605CB41E2BD8828D190E09D20007241C ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:17:38.0539 0x0ee0  TapiSrv - ok
19:17:38.0570 0x0ee0  [ 1DE3C54683AB28D8FAF766B1A324013E, D928324692A6A490B7C8C2C4506E1A7A2172DB6613D0E95422C99D05C56F4E5D ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:17:38.0601 0x0ee0  Tcpip - ok
19:17:38.0633 0x0ee0  [ 1DE3C54683AB28D8FAF766B1A324013E, D928324692A6A490B7C8C2C4506E1A7A2172DB6613D0E95422C99D05C56F4E5D ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:17:38.0648 0x0ee0  TCPIP6 - ok
19:17:38.0664 0x0ee0  [ 67ADEA7792E8C6C812A642069274E784, 15502D6C88CD511BF7649C00D42C56BBFF1C85DEF0A75AEB0E8157EF83C81254 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:17:38.0664 0x0ee0  tcpipreg - ok
19:17:38.0664 0x0ee0  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:17:38.0679 0x0ee0  TDPIPE - ok
19:17:38.0679 0x0ee0  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:17:38.0679 0x0ee0  TDTCP - ok
19:17:38.0679 0x0ee0  [ 5FCF588BBD2358538DB17DD0A0A31813, 28E7F4809BD348DE3A295B4B353E70A6B60E7E8CDF0CAC8482B48A91206A13CB ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:17:38.0695 0x0ee0  tdx - ok
19:17:38.0695 0x0ee0  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
19:17:38.0711 0x0ee0  TermDD - ok
19:17:38.0711 0x0ee0  [ EF4469AB69EB15E5D3754E6AEAFBCD3D, 3609214C3D5181364B544EBF17E9A109952BE1C4C35BE0A8727BFA8F49ECB130 ] terminpt        C:\Windows\system32\drivers\terminpt.sys
19:17:38.0711 0x0ee0  terminpt - ok
19:17:38.0726 0x0ee0  [ 6A5B600AD0041E9AF564DE73B716F3D2, D6426A63D8EED6E1630E639F489B096E3A1BE5178561F20B3CB8B1289FF9227A ] TermService     C:\Windows\System32\termsrv.dll
19:17:38.0742 0x0ee0  TermService - ok
19:17:38.0742 0x0ee0  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
19:17:38.0757 0x0ee0  Themes - ok
19:17:38.0757 0x0ee0  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
19:17:38.0773 0x0ee0  THREADORDER - ok
19:17:38.0789 0x0ee0  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
19:17:38.0804 0x0ee0  TrkWks - ok
19:17:38.0804 0x0ee0  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:17:38.0820 0x0ee0  TrustedInstaller - ok
19:17:38.0835 0x0ee0  [ 2CE1083C5A2D9BA5FFAD087F997EE25C, 1293A1B4D98A800A16BCD3ED52EA8AB429259FC16F9B6D3A0CAAEE7C7BE57DF7 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:17:38.0835 0x0ee0  tssecsrv - ok
19:17:38.0835 0x0ee0  [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:17:38.0835 0x0ee0  TsUsbFlt - ok
19:17:38.0851 0x0ee0  [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
19:17:38.0851 0x0ee0  TsUsbGD - ok
19:17:38.0851 0x0ee0  [ E1748D04AE40118B62BC18AC86032192, A954B141D1B27272C771D14F3B40C7CC1F572DD72559F2C96182EFBE2B095FDE ] tsusbhub        C:\Windows\system32\drivers\tsusbhub.sys
19:17:38.0867 0x0ee0  tsusbhub - ok
19:17:38.0867 0x0ee0  [ A9EFA7F181D82632CDEDEEBC99FA0A41, 2F775A9382CD899B4360B9E61563F47F3DAA14FEDB204865705747437B211D6C ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:17:38.0867 0x0ee0  tunnel - ok
19:17:38.0867 0x0ee0  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
19:17:38.0882 0x0ee0  uagp35 - ok
19:17:38.0882 0x0ee0  [ 992DCA93480DBF9EF103A7350C5B360E, A97739B3299EBA2043E1593C211F3AEFFA2258D8D8F0643FF3E7A6893DFC86AA ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:17:38.0898 0x0ee0  udfs - ok
19:17:38.0898 0x0ee0  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:17:38.0913 0x0ee0  UI0Detect - ok
19:17:38.0913 0x0ee0  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:17:38.0913 0x0ee0  uliagpkx - ok
19:17:38.0913 0x0ee0  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
19:17:38.0929 0x0ee0  umbus - ok
19:17:38.0929 0x0ee0  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
19:17:38.0929 0x0ee0  UmPass - ok
19:17:38.0929 0x0ee0  [ A388D1BF00504BE934737C741DF542AB, 00A8627C3D372313D9212EC4F52B6A6E22CA9E9E2B5ECC21E652CD02F6101AF5 ] UmRdpService    C:\Windows\System32\umrdp.dll
19:17:38.0945 0x0ee0  UmRdpService - ok
19:17:38.0945 0x0ee0  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
19:17:38.0976 0x0ee0  upnphost - ok
19:17:38.0976 0x0ee0  [ 91D3C92A44FC682DD791147604E79152, AA0B6799BF9C26C2C1793C91295288A4989AA43EC5E070B650DA7F0A142817CE ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
19:17:38.0991 0x0ee0  usbccgp - ok
19:17:38.0991 0x0ee0  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:17:38.0991 0x0ee0  usbcir - ok
19:17:38.0991 0x0ee0  [ 9F987C9C3E607FEAD035D87C3A8B528C, C6C2875A82CE72A6B22EBEF96A21237DD1B3C294C9C32A7FF12CE55ED70163A4 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
19:17:39.0007 0x0ee0  usbehci - ok
19:17:39.0007 0x0ee0  [ 3E59BB39800B9AA74B3DBD61DA1EF801, 49C4EDEB724085B5B0DBF4DBD9CEF0A5549925040C8E3985A23E4A744E58FF9F ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
19:17:39.0023 0x0ee0  usbhub - ok
19:17:39.0023 0x0ee0  [ C1A8966E0D09BFB501045105B30D86F2, 5BB95FBA441B898E258A3BFE174FC1042A04C19E25C59DE1FD90594290B11DA9 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:17:39.0023 0x0ee0  usbohci - ok
19:17:39.0023 0x0ee0  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
19:17:39.0038 0x0ee0  usbprint - ok
19:17:39.0038 0x0ee0  [ ED08C252A0041F8FC0237BAB585BABDC, DF5948BCD5CEB5B69E1A0096465C069E233DB81F5524D7364FF3FCD1E5B28880 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:17:39.0038 0x0ee0  USBSTOR - ok
19:17:39.0054 0x0ee0  [ 2E682DCE4319A90E02A327F8A427544A, 3528C5A4669BAD53041085C3E72C64388D308E42AD9D1FAC85B6F2FFD81610FB ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
19:17:39.0054 0x0ee0  usbuhci - ok
19:17:39.0054 0x0ee0  [ 463941657C48F1E820EBCF0A10D4C65A, 2C4370129185C506E19CF4B30A967C2C81E4C58973C8B56D0AA5BDC99AB6AA88 ] UxSms           C:\Windows\System32\uxsms.dll
19:17:39.0054 0x0ee0  UxSms - ok
19:17:39.0069 0x0ee0  [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] VaultSvc        C:\Windows\system32\lsass.exe
19:17:39.0069 0x0ee0  VaultSvc - ok
19:17:39.0069 0x0ee0  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:17:39.0069 0x0ee0  vdrvroot - ok
19:17:39.0085 0x0ee0  [ 44082C4A89ABDAC0C4B08AA8834270B4, C312E144AC4E5475506EBC62CC5D0529B256771C1FA2D709228D3F6BFEB55DED ] vds             C:\Windows\System32\vds.exe
19:17:39.0101 0x0ee0  vds - ok
19:17:39.0101 0x0ee0  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:17:39.0116 0x0ee0  vga - ok
19:17:39.0116 0x0ee0  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:17:39.0132 0x0ee0  VgaSave - ok
19:17:39.0132 0x0ee0  VGPU - ok
19:17:39.0132 0x0ee0  [ 2E9907E787CDAFA2AAA7F928853B7142, 29F30D60BBE5909D4DB569D52ADC7677CA94831B6E5CB25927386CC24CCCE898 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:17:39.0147 0x0ee0  vhdmp - ok
19:17:39.0147 0x0ee0  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:17:39.0147 0x0ee0  viaide - ok
19:17:39.0147 0x0ee0  [ 80E731A278695B47345D0171A19E428B, 7BAE8CF890E0B2398B363FA30ECF00C040CD146F99435B1EDC29B1FC2F117B93 ] vmbus           C:\Windows\system32\drivers\vmbus.sys
19:17:39.0163 0x0ee0  vmbus - ok
19:17:39.0163 0x0ee0  [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
19:17:39.0163 0x0ee0  VMBusHID - ok
19:17:39.0163 0x0ee0  [ B7962BD45492837173E0EF274E691C1F, 6845F94E6345888714206072229035C0E93BA6E8B4EACFA8C479474B5FF1AA88 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:17:39.0179 0x0ee0  volmgr - ok
19:17:39.0179 0x0ee0  [ 0904EF550B3D3FEB326638A4BAD9937E, 462FA11F260C420756DBD989CB505EEB9A286B9EEB826EB2935C119C839EDC8E ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:17:39.0194 0x0ee0  volmgrx - ok
19:17:39.0194 0x0ee0  [ 35B18F5EBE7459D9CCEFAB6CA5B399FA, 14FCDF1F5EEF310F3C1D58BBEE56154D58539F74D282610C038603FC5CBCAD9D ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:17:39.0194 0x0ee0  volsnap - ok
19:17:39.0210 0x0ee0  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
19:17:39.0210 0x0ee0  vsmraid - ok
19:17:39.0241 0x0ee0  [ 0EE1E0842B66F9DF52C5510741053EE3, 7B5CB798BB84328B04104C234AE25AE33707E47A1E0C7E9675D6410E6F1D0AE8 ] VSS             C:\Windows\system32\vssvc.exe
19:17:39.0272 0x0ee0  VSS - ok
19:17:39.0272 0x0ee0  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
19:17:39.0272 0x0ee0  vwifibus - ok
19:17:39.0288 0x0ee0  [ C7B83BD98BA3560374569C0C13EA3685, 68C05B99D6035568E2470FE7E73167AF584CC721F76E02CA1470CA5E1E341607 ] W32Time         C:\Windows\system32\w32time.dll
19:17:39.0288 0x0ee0  W32Time - ok
19:17:39.0303 0x0ee0  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
19:17:39.0303 0x0ee0  WacomPen - ok
19:17:39.0303 0x0ee0  [ 79A3B7533AEEDCFC511E534DF8333D5C, ED2D241DE7DF3F61C34B7D968AE5574344FA830977E2E7C0BCCF8CD3968CB24E ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:17:39.0303 0x0ee0  WANARP - ok
19:17:39.0319 0x0ee0  [ 79A3B7533AEEDCFC511E534DF8333D5C, ED2D241DE7DF3F61C34B7D968AE5574344FA830977E2E7C0BCCF8CD3968CB24E ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:17:39.0319 0x0ee0  Wanarpv6 - ok
19:17:39.0335 0x0ee0  [ F91B8969183F3461BD3D3438052AEAD0, 8AC901D5CF209479DBE1DD0D7BB084848796E0659C134998F82CDFC6EC7059E7 ] wbengine        C:\Windows\system32\wbengine.exe
19:17:39.0366 0x0ee0  wbengine - ok
19:17:39.0381 0x0ee0  [ 509575C01A75FB7D80569ED33075D615, 8B5E44D245EC4C07E1D9D79F1BA56EF3482C7B5BA095BBD9704D3031F00BE9E8 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:17:39.0381 0x0ee0  WbioSrvc - ok
19:17:39.0397 0x0ee0  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:17:39.0397 0x0ee0  wcncsvc - ok
19:17:39.0413 0x0ee0  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:17:39.0413 0x0ee0  WcsPlugInService - ok
19:17:39.0413 0x0ee0  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
19:17:39.0413 0x0ee0  Wd - ok
19:17:39.0428 0x0ee0  [ 37CE6867FC4A6827009A713A9737262C, D8890524F4EF358E35C4A992BEAF7C8FB5ED647FE4D899D3CF608C2201E218A5 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:17:39.0444 0x0ee0  Wdf01000 - ok
19:17:39.0444 0x0ee0  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:17:39.0459 0x0ee0  WdiServiceHost - ok
19:17:39.0459 0x0ee0  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:17:39.0475 0x0ee0  WdiSystemHost - ok
19:17:39.0475 0x0ee0  [ C478D6AA79BB388887003453449451C6, 0C2E4629280C0E3CC0A83F577C289156F9668392C63E0B218E4E8EFB3E67EB58 ] WebClient       C:\Windows\System32\webclnt.dll
19:17:39.0491 0x0ee0  WebClient - ok
19:17:39.0491 0x0ee0  [ CBA25A299ECDBAE3A2300B68598AABA3, 5AC6F75FBDA58CD9D17922AF2780A37B89067EB4A97EE792A644B238BE94490D ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:17:39.0491 0x0ee0  Wecsvc - ok
19:17:39.0506 0x0ee0  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:17:39.0522 0x0ee0  wercplsupport - ok
19:17:39.0522 0x0ee0  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:17:39.0537 0x0ee0  WerSvc - ok
19:17:39.0537 0x0ee0  [ 009604986BAE004733728282BD98BB03, CE82EA41E6CC1EF2D11BFB2761105C422EA9A146FF52034C4A2221A4B5FD3940 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:17:39.0553 0x0ee0  WfpLwf - ok
19:17:39.0553 0x0ee0  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:17:39.0553 0x0ee0  WIMMount - ok
19:17:39.0553 0x0ee0  WinDefend - ok
19:17:39.0569 0x0ee0  WinHttpAutoProxySvc - ok
19:17:39.0569 0x0ee0  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:17:39.0584 0x0ee0  Winmgmt - ok
19:17:39.0615 0x0ee0  [ 29C8E2A9684E3DFA946C1EC87AB724AD, A2B3274BC02C120D9DF2C8EF1026B3D8802CD8ABEFB068BBBCEDCD59A9EDC185 ] WinRM           C:\Windows\system32\WsmSvc.dll
19:17:39.0662 0x0ee0  WinRM - ok
19:17:39.0662 0x0ee0  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:17:39.0678 0x0ee0  WinUsb - ok
19:17:39.0693 0x0ee0  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:17:39.0709 0x0ee0  Wlansvc - ok
19:17:39.0709 0x0ee0  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
19:17:39.0709 0x0ee0  WmiAcpi - ok
19:17:39.0725 0x0ee0  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:17:39.0725 0x0ee0  wmiApSrv - ok
19:17:39.0725 0x0ee0  WMPNetworkSvc - ok
19:17:39.0740 0x0ee0  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:17:39.0740 0x0ee0  WPCSvc - ok
19:17:39.0740 0x0ee0  [ 40E549091F6BA713114B85159BFC6993, E37255A374A0CF31087A1E0535ED6BC32B8848B084A1626A0AC4F2BAA376FB36 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:17:39.0756 0x0ee0  WPDBusEnum - ok
19:17:39.0756 0x0ee0  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:17:39.0771 0x0ee0  ws2ifsl - ok
19:17:39.0771 0x0ee0  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
19:17:39.0787 0x0ee0  wscsvc - ok
19:17:39.0787 0x0ee0  WSearch - ok
19:17:39.0818 0x0ee0  [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv        C:\Windows\system32\wuaueng.dll
19:17:39.0865 0x0ee0  wuauserv - ok
19:17:39.0865 0x0ee0  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:17:39.0881 0x0ee0  WudfPf - ok
19:17:39.0881 0x0ee0  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:17:39.0896 0x0ee0  WUDFRd - ok
19:17:39.0896 0x0ee0  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:17:39.0896 0x0ee0  wudfsvc - ok
19:17:39.0912 0x0ee0  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:17:39.0912 0x0ee0  WwanSvc - ok
19:17:39.0912 0x0ee0  [ 8DC6D8595B57989D50050B0A886AA274, F7C596A04BE59C2BD5EBAF2EFA29416E0B47F75559EAD4AF2405F770BCC72C24 ] XTU3SERVICE     C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
19:17:39.0927 0x0ee0  XTU3SERVICE - ok
19:17:39.0927 0x0ee0  ================ Scan global ===============================
19:17:39.0927 0x0ee0  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
19:17:39.0927 0x0ee0  [ 966B15D08BB3F2E18669043A6249132F, 4937FDFBED1A6446C9E742D61C64DADB5B8443AB2269DA5B2E71706A01A030B2 ] C:\Windows\system32\winsrv.dll
19:17:39.0943 0x0ee0  [ 966B15D08BB3F2E18669043A6249132F, 4937FDFBED1A6446C9E742D61C64DADB5B8443AB2269DA5B2E71706A01A030B2 ] C:\Windows\system32\winsrv.dll
19:17:39.0943 0x0ee0  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
19:17:39.0959 0x0ee0  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
19:17:39.0959 0x0ee0  [ Global ] - ok
19:17:39.0959 0x0ee0  ================ Scan MBR ==================================
19:17:39.0959 0x0ee0  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:17:40.0005 0x0ee0  \Device\Harddisk0\DR0 - ok
19:17:40.0037 0x0ee0  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:17:40.0130 0x0ee0  \Device\Harddisk1\DR1 - ok
19:17:40.0130 0x0ee0  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
19:17:40.0208 0x0ee0  \Device\Harddisk2\DR2 - ok
19:17:40.0208 0x0ee0  ================ Scan VBR ==================================
19:17:40.0208 0x0ee0  [ 523BAF1052F29CA51D2DF1E2570919DE ] \Device\Harddisk0\DR0\Partition1
19:17:40.0224 0x0ee0  \Device\Harddisk0\DR0\Partition1 - ok
19:17:40.0224 0x0ee0  [ F5355CAF9F94E6F2388BAF48C63ED763 ] \Device\Harddisk0\DR0\Partition2
19:17:40.0224 0x0ee0  \Device\Harddisk0\DR0\Partition2 - ok
19:17:40.0224 0x0ee0  [ 0FE9B0AD4E4F8861F34677055A6F0E31 ] \Device\Harddisk1\DR1\Partition1
19:17:40.0271 0x0ee0  \Device\Harddisk1\DR1\Partition1 - ok
19:17:40.0271 0x0ee0  [ F6E02556F49232E74FE60B986F19FF5F ] \Device\Harddisk2\DR2\Partition1
19:17:40.0333 0x0ee0  \Device\Harddisk2\DR2\Partition1 - ok
19:17:40.0333 0x0ee0  ================ Scan generic autorun ======================
19:17:40.0489 0x0ee0  [ E1026B2975D308D43E896A108C92F1BD, 562903C88BC3CBD86E9A813001C72576181F2470286040240BAC92E5BF1F1583 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
19:17:40.0598 0x0ee0  RTHDVCPL - ok
19:17:40.0614 0x0ee0  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\RunDLL32.exe
19:17:40.0614 0x0ee0  MBCfg64 - ok
19:17:40.0785 0x0ee0  [ 19ECAAEA3CC248489FE987C10B688C0D, 967CB23A8176B3181EE2A55DFBB04A69988AB22105D4C450C5B5E729B91FAD5A ] C:\Program Files\Logitech Gaming Software\LCore.exe
19:17:40.0988 0x0ee0  Launch LCore - ok
19:17:41.0004 0x0ee0  [ F19BB9A114A0F85E6E8C4395322E7191, FDFAFE5535442031A1102F0AE2B50213BDACA291EF958DE59E9C3CD556BF5DA7 ] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
19:17:41.0019 0x0ee0  USB3MON - ok
19:17:41.0019 0x0ee0  [ C419DF63E0121D72411285780C2FC6CC, F47F854D327C589D174D3BB5B55D5C05F5ACA73DF52A6BEF47596B9010190291 ] C:\Windows\UpdReg.EXE
19:17:41.0019 0x0ee0  UpdReg - detected UnsignedFile.Multi.Generic ( 1 )
19:17:43.0515 0x0ee0  Detect skipped due to KSN trusted
19:17:43.0515 0x0ee0  UpdReg - ok
19:17:43.0562 0x0ee0  [ 6143A70622AD25BD935BDC717ECADB9B, 2CEF01C7AFDF11A82179E7D0365659435F59C5B59B71475B0DA2B056B818AC3A ] C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe
19:17:43.0578 0x0ee0  Fast Boot - ok
19:17:43.0593 0x0ee0  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
19:17:43.0625 0x0ee0  Sidebar - ok
19:17:43.0625 0x0ee0  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
19:17:43.0640 0x0ee0  mctadmin - ok
19:17:43.0656 0x0ee0  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
19:17:43.0687 0x0ee0  Sidebar - ok
19:17:43.0687 0x0ee0  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
19:17:43.0703 0x0ee0  mctadmin - ok
19:17:43.0703 0x0ee0  Waiting for KSN requests completion. In queue: 158
19:17:44.0717 0x0ee0  Waiting for KSN requests completion. In queue: 158
19:17:45.0731 0x0ee0  Waiting for KSN requests completion. In queue: 5
19:17:46.0776 0x0ee0  Win FW state via NFP2: enabled
19:17:49.0194 0x0ee0  ============================================================
19:17:49.0194 0x0ee0  Scan finished
19:17:49.0194 0x0ee0  ============================================================
19:17:49.0209 0x0df4  Detected object count: 8
19:17:49.0209 0x0df4  Actual detected object count: 8
19:18:32.0297 0x0df4  MSIBIOSData_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSIBIOSData_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSIClock_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSIClock_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSICOMM_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSICOMM_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSICPU_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSICPU_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSICTL_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSICTL_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSIDDR_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSIDDR_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0297 0x0df4  MSISMB_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0297 0x0df4  MSISMB_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
19:18:32.0312 0x0df4  MSISuperIO_CC ( UnsignedFile.Multi.Generic ) - skipped by user
19:18:32.0312 0x0df4  MSISuperIO_CC ( UnsignedFile.Multi.Generic ) - User select action: Skip
         

mbar-log-2015-01-01 (19-23-46)

Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.08.2.1001
www.malwarebytes.org

Database version: v2015.01.01.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17501
Kagarie :: BLACKPEARL [administrator]

01.01.2015 19:23:46
mbar-log-2015-01-01 (19-23-46).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 320640
Time elapsed: 2 minute(s), 48 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         

So das war es dann
__________________

Alt 01.01.2015, 20:27   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



Sieht gut aus. Da wurde einfach nur das Ebay Konto gehackt. WIe schon besprochen, alle PW (ebay, Email und Co) ändern
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 01.01.2015, 20:28   #5
Kagarie
 
Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



Ich danke dir sehr. Werde dann mal jetzt eine Firewall und Virusschutz installieren


Alt 02.01.2015, 13:27   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Standard

Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software



Ich empfehle immer Emsisoft
__________________
--> Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software

Antwort

Themen zu Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software
adware, antivirus, bonjour, browser, computer, defender, ebay, email, firefox, flash player, frage, helper, installation, launch, mozilla, realtek, registry, rundll, services.exe, software, svchost.exe, temp, updates, usb, vista, windows



Ähnliche Themen: Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software


  1. mehrere Kontakte bekommen eine Email "Hey! Important message", "js/js Mahtong"
    Log-Analyse und Auswertung - 20.02.2016 (51)
  2. Windows 7: Ständig "Keine Rückmeldung"/ Aufhängen und "Drehen"
    Log-Analyse und Auswertung - 19.11.2015 (17)
  3. Plötzlich Software "picexa.exe" installiert, "delta-homes.com" als Startseite in sämtlichen Browsern
    Log-Analyse und Auswertung - 10.04.2015 (11)
  4. Trojaner "Xtreme Rat" von der Software "DETEKT" entdeckt! Was kann ich tun?
    Log-Analyse und Auswertung - 20.11.2014 (1)
  5. Beim Treiber Update "wiederspenstige" Software eingefangen. "SpeedUpMyComputer"
    Plagegeister aller Art und deren Bekämpfung - 27.05.2014 (3)
  6. "The weDownload Manager" bei ebay.de und "dealfinder" auf ntv.de
    Plagegeister aller Art und deren Bekämpfung - 29.03.2014 (18)
  7. "AppsHat", "DeltaToolbar" und div. andere Software nach Download von mcpatcher
    Plagegeister aller Art und deren Bekämpfung - 02.10.2013 (23)
  8. Webseite via FTP/FileZilla gehackt, Viren "JS/BlacoleRef.W.234" und "EXP/Pdfka.EL.831" gefunden
    Plagegeister aller Art und deren Bekämpfung - 20.02.2013 (37)
  9. Gibt es einen Schutz vor "Malware Defense", "Antivirus 2010pro" und Co?
    Antiviren-, Firewall- und andere Schutzprogramme - 30.12.2012 (25)
  10. "Deutsche Post(eMail-Anhang)" Alle "EXE(Programme)" werden blockiert "WIN 7 Defender"
    Plagegeister aller Art und deren Bekämpfung - 27.12.2012 (3)
  11. Viren blocken Antivir+ Avast Software+Windows neu Installation "gelockt"
    Log-Analyse und Auswertung - 08.10.2012 (1)
  12. "Stille" email an vorhandenes email-account senden um emails mitzulesen?
    Überwachung, Datenschutz und Spam - 29.08.2012 (2)
  13. gefälschte Windows Scan-Software "Security Protection"
    Plagegeister aller Art und deren Bekämpfung - 06.07.2011 (14)
  14. gefälschte Windows Scan-Software "Security Protection"
    Log-Analyse und Auswertung - 19.06.2011 (51)
  15. Virus "Antivirus Scan" legt PC lahm - kein Programm, keine Datei und Internetseite ist zu öffnen
    Plagegeister aller Art und deren Bekämpfung - 22.01.2011 (34)
  16. Nach Virus keine "ausführen"befehl im startmenü und keine "ordneroptionen"!
    Plagegeister aller Art und deren Bekämpfung - 28.08.2009 (2)
  17. "Hijacked Internet access by WebHancer" installiert "Antivirus 2009 XP"
    Log-Analyse und Auswertung - 18.08.2008 (1)

Zum Thema Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software - Hallo Leute, vor ca. 4 Tagen bekam ich diverse Nachrichten bei eBay. Dort wurde ich gefragt welche Spiegelreflexkamera ich denn genau verkaufe. Ganz verdutzt schaute ich mir dann meine laufenden - Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software...
Archiv
Du betrachtest: Windows 7: eBay und eMail "gehackt" - Keine Antivirus Software auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.