Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 12.07.2015, 06:37   #1
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hallo,

ich hoffe das mir hier weitergeholfen wird. Ich hatte gestern eine Mail von einer Immobilienwebsite und habe dummerweise auf den Link geklickt

Es handelte sich dabei um imgur.com, eine Seite wohl für Fotos ähnlich Instagram.

Auf jeden Fall habe ich darauf mal den Malwarebytey Anti-Malware runtergeladen und Durchlaufen lassen.
Folgendes wurde leider auch gefunden:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlauf Datum: 12.07.2015
Suchlauf-Zeit: 03:51:33
Logdatei: durchlauf20150712.txt
Administrator: Ja

Version: 2.01.6.1022
Malware Datenbank: v2015.07.11.05
Rootkit Datenbank: v2015.07.10.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Timm

Suchlauf-Art: Benutzerdefinierter Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 525721
Verstrichene Zeit: 2 Std, 42 Min, 58 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente gefunden)

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 0
(Keine schädliche Elemente gefunden)

Registrierungswerte: 0
(Keine schädliche Elemente gefunden)

Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)

Ordner: 0
(Keine schädliche Elemente gefunden)

Dateien: 11
PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-1832302014-2846907121-421425406-1001\$RPLWCNF.exe, In Quarantäne, [dba63ba5b0da92a425b40741eb15ab55],
PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-1832302014-2846907121-421425406-1001\$R6MFNTO.exe, In Quarantäne, [810013cd88025dd9f1e827213dc30bf5],
PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-1832302014-2846907121-421425406-1001\$RDGYLMW.exe, In Quarantäne, [671a726e4e3c57df6970f058ad533bc5],
PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-1832302014-2846907121-421425406-1001\$RLTPKES.exe, In Quarantäne, [99e827b91c6e9b9bd504bd8bdd2344bc],
PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-1832302014-2846907121-421425406-1001\$RG9LH3R.exe, In Quarantäne, [0f72f6ea3a50bc7a19c02d1bcb3511ef],
PUP.Optional.Conduit.A, C:\Users\Timm\AppData\Local\Microsoft\Windows\INetCache\IE\CW9HENM4\checktbexist[1].exe, In Quarantäne, [4f32ffe1c2c888ae06953ce47888bd43],
PUP.Optional.Conduit.A, C:\Users\Timm\AppData\Local\Microsoft\Windows\INetCache\IE\H02GA7EW\ism[1].exe, In Quarantäne, [c9b8f6eaa7e3c472f1aa171408f940c0],
PUP.Optional.Conduit.A, C:\Users\Timm\AppData\Local\Microsoft\Windows\INetCache\IE\SCAWBL5V\mism[1].exe, In Quarantäne, [90f1bb25107a76c0d4c731fa976a51af],
RiskWare.Tool.HCK, C:\Users\Timm\Pictures\Desktop\WinRAR 4.01 German\FFF\Keygen.exe, In Quarantäne, [a5dc57890387181e2f3fa5f0b0513dc3],
PUP.Optional.Softonic, C:\Users\Timm\Pictures\Downloads\SoftonicDownloader_fuer_microsoft-project.exe, In Quarantäne, [3b4648984347cd690afb28bcf01009f7],
PUP.Optional.Softonic.A, C:\Users\Timm\Pictures\Downloads\SoftonicDownloader_fuer_open-workbench.exe, In Quarantäne, [dca55987810913230458b93dd22ed42c],

Physische Sektoren: 0


Kann man so sagen, ob ich mir etwas eingefangen habe?

Vielen Dank schonmal, ich wäre alleine wirklich aufgeschmissen

Timm

Alt 12.07.2015, 06:46   #2
schrauber
/// the machine
/// TB-Ausbilder
 

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 12.07.2015, 11:18   #3
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hallo,

vielen Dank schoneinmal.

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Timm (administrator) on TIMM on 12-07-2015 08:52:58
Running from C:\Users\Timm\Downloads
Loaded Profiles: Timm (Available Profiles: Timm)
Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AuthenTec, Inc) C:\Program Files\TrueSuite\TrueSuite.Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(3S-Smart Software Solutions GmbH) C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(3S-Smart Software Solutions GmbH) C:\Program Files (x86)\3S Software\CoDeSys ENI Server\ENI.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(AuthenTec Inc.) C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Eastman Kodak Company) C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Windows (R) Win 7 DDK provider) C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(3S-Smart Software Solutions GmbH) C:\Program Files (x86)\3S Software\CoDeSys ENI Server\ENISysTray.exe
(3S-Smart Software Solutions GmbH) C:\Program Files (x86)\3S Software\CoDeSys SP RTE\RTSysTray.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Simply Super Software) C:\Program Files (x86)\Trojan Remover\Trjscan.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2283816 2010-08-12] (Synaptics Incorporated)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [92456 2010-08-12] (Synaptics Incorporated)
HKLM\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe [3182080 2012-10-08] (Eastman Kodak Company)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [FLxHCIm] => C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe [40448 2011-02-24] (Windows (R) Win 7 DDK provider)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [Conime] => %windir%\system32\conime.exe
HKLM-x32\...\Run: [EKStatusMonitor] => C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe [2750840 2013-12-11] (Eastman Kodak Company)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [730416 2015-06-20] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ENISysTray] => C:\Program Files (x86)\3S Software\CoDeSys ENI Server\ENISysTray.exe [245760 2013-04-15] (3S-Smart Software Solutions GmbH)
HKLM-x32\...\Run: [RTSysTray] => C:\Program Files (x86)\3S Software\CoDeSys SP RTE\RTSysTray.exe [553104 2014-04-09] (3S-Smart Software Solutions GmbH)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-06-02] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1911712 2015-07-11] (Simply Super Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-11-14] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-14] (NVIDIA Corporation)
Startup: C:\Users\Timm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-04-25]
ShortcutTarget: Dropbox.lnk -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
SSODL: EldosMountNotificator-cbfs4 - {A5A27988-B099-4629-AE34-58BE9E3E9311} - C:\Windows\system32\cbfsMntNtf4.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator-cbfs4 - {A5A27988-B099-4629-AE34-58BE9E3E9311} - C:\Windows\SysWOW64\cbfsMntNtf4.dll (EldoS Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [EldosIconOverlay-cbfs4] -> {128C726C-3F36-42A9-8854-BE45D7A01B17} => C:\Windows\system32\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay-cbfs4] -> {128C726C-3F36-42A9-8854-BE45D7A01B17} => C:\Windows\SysWOW64\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1832302014-2846907121-421425406-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-13] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{4A31F548-22B1-4BD7-BB49-C554F59F4102}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{B05D6910-55E0-44BF-BA51-AB110E476792}: [DhcpNameServer] 141.71.32.20 141.71.1.21

FireFox:
========
FF ProfilePath: C:\Users\Timm\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Extension: Download Status Bar - C:\Users\Timm\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default\Extensions\{6c28e999-e900-4635-a39d-b1ec90ba0c0f}.xpi [2014-09-03]
FF Extension: Adblock Plus - C:\Users\Timm\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-03]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]

Chrome: 
=======
CHR Profile: C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-03]
CHR Extension: (YouTube) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-03]
CHR Extension: (Adblock Plus) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-03]
CHR Extension: (Pushbullet) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2014-09-04]
CHR Extension: (Google Search) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-03]
CHR Extension: (Google Calendar) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-09-04]
CHR Extension: (hxxp://translate.google.de/) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekoegieboinnegkaeedfajabaobgfffl [2014-09-04]
CHR Extension: (Avira Browser Safety) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-10-04]
CHR Extension: (Google Keep - notes and lists) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-09-04]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-15]
CHR Extension: (Google Wallet) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-03]
CHR Extension: (Gmail) - C:\Users\Timm\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-03]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [827184 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [450808 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [450808 2015-06-20] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1188360 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [217280 2015-06-02] (Avira Operations GmbH & Co. KG)
R2 ENI Server; C:\Program Files (x86)\3S Software\CoDeSys ENI Server\ENI.exe [651264 2013-04-15] (3S-Smart Software Solutions GmbH) [File not signed]
R2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S3 RTService; C:\Program Files (x86)\3S Software\CoDeSys SP RTE\RTService.exe [495735 2014-04-09] (3S-Smart Software Solutions GmbH) [File not signed]
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [File not signed]
R2 ServiceControl_RTE23_3S_GmbH; C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe [188551 2014-04-09] (3S-Smart Software Solutions GmbH) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 3SRTE; C:\Windows\SysWow64\Drivers\3SRTE.sys [340590 2014-04-09] (3S - Smart Software Solutions GmbH)
R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [153256 2015-06-20] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132656 2015-06-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-08-15] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 cbfs4; C:\Windows\system32\drivers\cbfs4.sys [387776 2013-11-15] (EldoS Corporation)
R3 FLxHCIh; C:\Windows\System32\drivers\FLxHCIh.sys [81920 2011-02-24] (Fresco Logic)
S3 ibpcimpm; C:\Windows\SysWow64\Drivers\ibpcimpm.sys [267892 2014-04-09] (3s)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-07-12] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 RTIOdrvAPIC; C:\Windows\SysWow64\Drivers\RTIOdrvAPIC.sys [19584 2014-04-09] (3S)
S3 RTIOdrvApplicom; C:\Windows\SysWow64\Drivers\RTIOdrvApplicom.sys [222852 2014-04-09] (3s) [File not signed]
S3 RTIOdrvAutomata; C:\Windows\SysWow64\Drivers\RTIOdrvAutomata.sys [307020 2014-04-09] (3s) [File not signed]
S3 RTIOdrvCifX; C:\Windows\SysWow64\Drivers\RTIOdrvCifX.sys [100480 2014-04-09] () [File not signed]
S3 RTIOdrvCP5613; C:\Windows\SysWow64\Drivers\RTIOdrvCP5613.sys [403408 2014-04-09] (3s) [File not signed]
S3 RTIOdrvDAMP; C:\Windows\SysWow64\Drivers\RTIOdrvDAMP.sys [84096 2014-04-09] (3s) [File not signed]
S3 RTIOdrvFC310x; C:\Windows\SysWow64\Drivers\RTIOdrvFC310x.sys [44676 2014-04-09] (3s) [File not signed]
S3 RTIOdrvHilscherDPM; C:\Windows\SysWow64\Drivers\RTIOdrvHilscherDPM.sys [65678 2014-04-09] (3s) [File not signed]
S3 RTIOdrvHMS; C:\Windows\SysWow64\Drivers\RTIOdrvHMS.sys [31358 2014-04-09] (3s) [File not signed]
S3 RTIOdrvKuhnkePBM; C:\Windows\SysWow64\Drivers\RTIOdrvKuhnkePBM.sys [62602 2014-04-09] (3s) [File not signed]
S3 RTIOdrvSJA; C:\Windows\SysWow64\Drivers\RTIOdrvSJA.sys [111596 2014-04-09] (3s) [File not signed]
R3 vpnpbus; C:\Windows\System32\drivers\vpnpbus.sys [18624 2013-11-15] (EldoS Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S4 WinDivert1.1; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-12 08:52 - 2015-07-12 08:53 - 00025388 _____ C:\Users\Timm\Downloads\FRST.txt
2015-07-12 08:52 - 2015-07-12 08:53 - 00000000 ____D C:\FRST
2015-07-12 08:52 - 2015-07-12 08:52 - 02130944 _____ (Farbar) C:\Users\Timm\Downloads\FRST64.exe
2015-07-12 07:20 - 2015-07-12 07:20 - 00002885 _____ C:\Users\Timm\Desktop\durchlauf20150712.txt
2015-07-11 22:19 - 2015-07-12 08:45 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-11 22:19 - 2015-07-11 22:19 - 00001114 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-07-11 22:19 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-07-11 22:19 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-07-11 22:19 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-07-11 22:17 - 2015-07-11 22:17 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Timm\Downloads\mbam-setup-2.1.6.1022.exe
2015-07-11 22:04 - 2015-07-11 22:04 - 02314104 _____ C:\Users\Timm\Downloads\avira10_pc_cleaner_de.exe
2015-07-11 22:04 - 2015-07-11 22:04 - 00002034 _____ C:\Users\Timm\Desktop\Entfernen des Avira PC Cleaners.lnk
2015-07-11 22:04 - 2015-07-11 22:04 - 00001978 _____ C:\Users\Timm\Desktop\Avira PC Cleaner.lnk
2015-07-11 21:56 - 2015-07-11 21:56 - 02248704 _____ C:\Users\Timm\Downloads\adwcleaner_4.208 (1).exe
2015-07-11 21:51 - 2015-07-11 21:53 - 00000000 ____D C:\AdwCleaner
2015-07-11 21:51 - 2015-07-11 21:51 - 02248704 _____ C:\Users\Timm\Downloads\adwcleaner_4.208.exe
2015-07-11 21:47 - 2015-07-11 21:47 - 00000000 ____D C:\ProgramData\TEMP
2015-07-11 21:47 - 2015-07-11 21:47 - 00000000 ____D C:\ProgramData\Licenses
2015-07-11 21:43 - 2015-07-11 21:43 - 00000000 ____D C:\Users\Timm\Documents\Simply Super Software
2015-07-11 21:43 - 2015-07-11 21:43 - 00000000 ____D C:\Users\Timm\AppData\Roaming\Simply Super Software
2015-07-11 21:43 - 2015-07-11 21:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2015-07-11 21:42 - 2015-07-11 21:47 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2015-07-11 21:42 - 2015-07-11 21:42 - 35218576 _____ (Simply Super Software ) C:\Users\Timm\Downloads\trjsetup692.exe
2015-07-11 21:42 - 2015-07-11 21:42 - 00000000 ____D C:\ProgramData\Simply Super Software
2015-06-28 15:15 - 2015-06-28 15:15 - 00262144 _____ C:\Windows\Minidump\062815-20296-01.dmp
2015-06-26 19:23 - 2015-06-26 19:23 - 00262144 _____ C:\Windows\Minidump\062615-34875-01.dmp
2015-06-21 08:37 - 2015-06-21 08:37 - 00000000 ____D C:\Users\Timm\AppData\Local\PDF24
2015-06-21 08:28 - 2015-06-21 08:28 - 00001091 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk
2015-06-21 08:28 - 2015-06-21 08:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2015-06-21 08:28 - 2015-06-21 08:28 - 00000000 ____D C:\Program Files (x86)\PDF24
2015-06-21 08:26 - 2015-06-21 08:26 - 01198368 _____ C:\Users\Timm\Downloads\PDF24 Creator - CHIP-Installer.exe
2015-06-14 11:41 - 2015-07-12 07:13 - 00000000 ____D C:\Windows\Minidump
2015-06-14 11:41 - 2015-06-28 15:15 - 452651512 _____ C:\Windows\MEMORY.DMP
2015-06-14 11:41 - 2015-06-14 11:42 - 00875256 _____ C:\Windows\Minidump\061415-43250-01.dmp
2015-06-12 18:50 - 2015-05-21 18:47 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-06-12 18:50 - 2015-04-09 00:07 - 00410336 _____ C:\Windows\system32\ApnDatabase.xml
2015-06-12 18:50 - 2015-04-02 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-06-12 18:50 - 2015-04-02 00:30 - 02483712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-06-12 18:50 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-06-12 18:50 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-06-12 18:50 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-06-12 18:50 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-06-12 18:49 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-06-12 18:49 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-06-12 18:49 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-06-12 18:49 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-06-12 18:49 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-06-12 18:49 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-06-12 18:49 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-06-12 18:49 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-06-12 18:49 - 2015-05-23 04:43 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-06-12 18:49 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-06-12 18:49 - 2015-05-23 04:38 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-06-12 18:49 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-06-12 18:49 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-06-12 18:49 - 2015-05-23 04:28 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-06-12 18:49 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-06-12 18:49 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-06-12 18:49 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-06-12 18:49 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-06-12 18:49 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-06-12 18:49 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-06-12 18:49 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-06-12 18:49 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-06-12 18:49 - 2015-05-22 20:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-06-12 18:49 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-06-12 18:49 - 2015-05-22 20:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-06-12 18:49 - 2015-05-22 20:09 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-06-12 18:49 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-06-12 18:49 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-06-12 18:49 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-06-12 18:49 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-06-12 18:49 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-06-12 18:49 - 2015-05-22 19:49 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-06-12 18:49 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-06-12 18:49 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-06-12 18:49 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-06-12 18:49 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-06-12 18:49 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-06-12 18:49 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2015-06-12 18:49 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2015-06-12 18:49 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-06-12 18:49 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-06-12 18:49 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll
2015-06-12 18:49 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-06-12 18:49 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-06-12 18:49 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-06-12 18:49 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-06-12 18:49 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-06-12 18:49 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-06-12 18:49 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-06-12 18:49 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-06-12 18:49 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-06-12 18:49 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-06-12 18:49 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-06-12 18:49 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-06-12 18:49 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-06-12 18:49 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-06-12 18:49 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-12 08:50 - 2014-09-03 19:57 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1832302014-2846907121-421425406-1001
2015-07-12 08:48 - 2015-04-08 19:15 - 00005100 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for TIMM-Timm Timm
2015-07-12 08:47 - 2014-09-03 19:37 - 01330183 _____ C:\Windows\WindowsUpdate.log
2015-07-12 08:47 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-07-12 08:45 - 2014-09-03 21:58 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 08:42 - 2014-09-04 09:23 - 00000000 ____D C:\ProgramData\Kodak
2015-07-12 08:42 - 2014-09-03 20:02 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-12 08:42 - 2013-08-22 16:46 - 00060581 _____ C:\Windows\setupact.log
2015-07-12 08:42 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 08:42 - 2013-08-22 16:44 - 00410008 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-12 08:39 - 2013-09-29 21:05 - 00367544 _____ C:\Windows\PFRO.log
2015-07-12 08:37 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData
2015-07-12 08:37 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-07-12 08:32 - 2014-09-03 21:58 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 08:30 - 2014-09-03 20:48 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-12 08:28 - 2014-09-03 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-07-12 08:18 - 2014-09-05 09:28 - 00000000 ____D C:\Windows\system32\MRT
2015-07-12 08:08 - 2014-09-05 09:28 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-12 08:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-07-11 15:29 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-07-08 19:54 - 2015-02-10 20:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-07-08 19:54 - 2014-10-04 10:05 - 00000000 ____D C:\ProgramData\Package Cache
2015-07-08 19:54 - 2014-10-04 08:58 - 00000000 ____D C:\Program Files (x86)\Avira
2015-07-06 23:24 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-06 23:24 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-06 20:48 - 2014-09-03 19:41 - 01776918 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-06 20:48 - 2013-09-30 05:58 - 00765582 _____ C:\Windows\system32\perfh007.dat
2015-07-06 20:48 - 2013-09-30 05:58 - 00159366 _____ C:\Windows\system32\perfc007.dat
2015-07-06 19:56 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-03 19:24 - 2014-09-03 19:51 - 00000000 ____D C:\Users\Timm\AppData\Local\Packages
2015-06-28 18:31 - 2014-09-03 19:51 - 00000000 ____D C:\Users\Timm
2015-06-24 21:02 - 2015-05-24 08:53 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-06-20 06:37 - 2014-10-04 08:58 - 00153256 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-06-20 06:37 - 2014-10-04 08:58 - 00132656 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-06-14 11:41 - 2014-10-04 08:58 - 00000000 ____D C:\ProgramData\Avira

==================== Files in the root of some directories =======

2014-09-04 09:36 - 2014-09-04 09:36 - 0000236 _____ () C:\Users\Timm\AppData\Local\LaunchHomeCenter.log

Some files in TEMP:
====================
C:\Users\Timm\AppData\Local\Temp\avgnt.exe
C:\Users\Timm\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpe1md7t.dll
C:\Users\Timm\AppData\Local\Temp\nvStInst.exe
C:\Users\Timm\AppData\Local\Temp\ose00000.exe
C:\Users\Timm\AppData\Local\Temp\Quarantine.exe
C:\Users\Timm\AppData\Local\Temp\sqlite3.dll
C:\Users\Timm\AppData\Local\Temp\vpnclient_setup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-12 04:15

==================== End of log ============================
         
--- --- ---

[CODE]Additional
FRST Logfile:
Code:
ATTFilter
scan result of Farbar Recovery Scan Tool (x64) Version:11-07-2015
Ran by Timm at 2015-07-12 08:54:42
Running from C:\Users\Timm\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1832302014-2846907121-421425406-500 - Administrator - Disabled)
Gast (S-1-5-21-1832302014-2846907121-421425406-501 - Limited - Disabled)
Timm (S-1-5-21-1832302014-2846907121-421425406-1001 - Administrator - Enabled) => C:\Users\Timm

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
aioprnt (Version: 5.3.1.0 - Eastman Kodak Company) Hidden
aioscnnr (x32 Version: 5.8.10.0 - Your Company Name) Hidden
aioscnnr (x32 Version: 7.6.13.10 - Your Company Name) Hidden
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{878CADF7-5BD6-4A29-A6F4-AC51C0CE8068}) (Version: 1.8.17.26026 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.8.17.26026 - Alcor Micro Corp.) Hidden
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS)
AuthenTec TrueSuite (HKLM\...\{849054A7-F903-4501-888D-9237E72B9264}) (Version: 4.0.1.99 - AuthenTec, Inc.)
Avira (HKLM-x32\...\{8467e01f-0496-42ce-b247-88ef205b4880}) (Version: 1.1.40.29239 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.40.29239 - Avira Operations GmbH & Co. KG) Hidden
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.11.579 - Avira Operations GmbH & Co. KG)
Boxcryptor 2.0 (HKLM-x32\...\{EBFEBFC7-B128-4700-ADBC-E839BFC833AE}) (Version: 2.0.419.376 - Secomba GmbH)
C4USelfUpdater (x32 Version: 1.00.0000 - Your Company Name) Hidden
center (x32 Version: 7.8.0.0 - Eastman Kodak Company) Hidden
CoDeSys for Automation Alliance (HKLM-x32\...\{07976ABB-1EBD-4A65-A7C7-155A0DC17173}) (Version:  - 3S-Smart Software Solutions GmbH)
CoDeSys SP RTE (HKLM-x32\...\{C0CBC26C-9A9E-11D4-9304-0000E886B4FC}) (Version:  - )
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.84 - DivX, LLC)
Dropbox (HKU\S-1-5-21-1832302014-2846907121-421425406-1001\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
essentials (x32 Version: 7.8.0.0 - Eastman Kodak Company) Hidden
Fresco Logic USB3.0 Host Controller (HKLM\...\{B3C09586-3D00-47DD-8A81-9EF7C6581922}) (Version: 3.0.116.3 - Fresco Logic Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
KMSpico v9.1.3 (HKLM\...\KMSpico_is1) (Version: 9.1.3 - )
Kodak AIO Printer (Version: 7.8.1.0 - Eastman Kodak Company) Hidden
KODAK All-in-One Software (HKLM-x32\...\{E0F274B7-592B-4669-8FB8-8D9825A09858}) (Version: 7.8.5.2 - Eastman Kodak Company)
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.1.0 - Mozilla)
Mozilla Thunderbird 31.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 de)) (Version: 31.7.0 - Mozilla)
NVIDIA 3D Vision Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.82 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.3.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.3.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.82 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
ocr (x32 Version: 6.2.3.50 - Eastman Kodak Company) Hidden
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PreReq (x32 Version: 6.2.4.0 - Eastman Kodak Company) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.3.22 - NVIDIA Corporation) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.8.0 - Synaptics Incorporated)
Trojan Remover 6.9.2.2938 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.2.2938 - Simply Super Software)
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{CBCC2FD8-7DFE-4752-95B5-2E447C226F45}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version:  - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1832302014-2846907121-421425406-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Restore Points =========================

20-06-2015 06:44:57 Geplanter Prüfpunkt
29-06-2015 20:24:22 Geplanter Prüfpunkt
10-07-2015 08:08:01 Geplanter Prüfpunkt

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0BB8CCA6-F280-486A-8F76-9FD838353A3A} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS)
Task: {1BA9C087-AC91-45C5-8236-D7E34E6DE69E} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2013-12-11] ()
Task: {20758034-7E0D-4C02-A3F6-1EAC2DA6D60D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {4A8646E8-1C95-4E52-82FE-E8DEA9563A0E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {996B6C84-5057-4BAC-A849-FE757142D551} - System32\Tasks\Microsoft Office 15 Sync Maintenance for TIMM-Timm Timm => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation)
Task: {B6E39555-0B7A-4714-95AA-C4AC2C84F584} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-03] (Google Inc.)
Task: {C5054E5E-7F4E-4D8F-AAF8-1ADD6B124148} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {C6E5DD05-DF79-4E05-9B52-F7267C547299} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-12] (Microsoft Corporation)
Task: {D883D726-B158-460F-845B-3BA3A568B609} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-03] (Google Inc.)
Task: {F171FF3A-49A3-4A32-AB7C-CEAE82DAEA86} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2014-09-03 20:04 - 2013-11-14 13:58 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-09-03 20:01 - 2013-11-11 17:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-11-26 23:54 - 2012-11-26 23:54 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-09-03 20:04 - 2013-11-14 13:58 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2015-05-04 19:41 - 2015-05-01 18:52 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-07-08 19:32 - 2015-07-07 05:49 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libglesv2.dll
2015-07-08 19:32 - 2015-07-07 05:49 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Timm\SkyDrive:ms-properties

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1832302014-2846907121-421425406-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Timm\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\windows_8_logo-wallpaper-1920x1080.jpg
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "DivXUpdate"
HKU\S-1-5-21-1832302014-2846907121-421425406-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{AB6B4C9F-6175-435D-AC0F-967D1D60AA71}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{F591D4BE-D3F8-4769-A9CF-793990C2204A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{9870EEB7-EBDD-4C10-A084-92DBF1EDA5F6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E7DCF277-A69F-4954-B654-84B9376C7F30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{55800E90-451E-4E78-A4F7-DD6AD8106837}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{19116CA3-DADE-4B04-BA8E-04DF08B25844}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{B4D636D0-3E10-4AF0-92C7-44DEC5A3ADD4}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{A82E3F8D-6FC2-4895-A646-56860B9FA7A5}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{E4C17BB6-A9D8-4502-90DB-8346FBCEA835}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{FC22463F-9529-407E-B7B7-5247810DF361}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{7810334E-E17E-45FB-97D8-8A487AD852CB}] => (Allow) LPort=9322
FirewallRules: [{0EBF4005-D63A-4577-9EB7-B23272FB2C0D}] => (Allow) LPort=5353
FirewallRules: [{8683A943-18AD-4B89-A49C-7E45A7D9F4A5}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\AiOHomeCenter.exe
FirewallRules: [{3BDF3275-94D7-4CAA-BBF6-08C1AE81816B}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\AiOHomeCenter.exe
FirewallRules: [{448AE9B5-5E67-4DE4-BEB4-0254D883A111}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\Kodak.Statistics.exe
FirewallRules: [{5A93C80C-3DC9-4BDB-8CDB-29433514A177}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\Kodak.Statistics.exe
FirewallRules: [{1B73D397-4743-4EFE-B9A9-DFFF153DB0BA}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\NetworkPrinterDiscovery.exe
FirewallRules: [{4C79D99B-B6E5-4391-A023-52FE8B046E41}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Center\NetworkPrinterDiscovery.exe
FirewallRules: [{8316CDE1-3758-43B2-9E83-447BB59297CA}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Firmware\KodakAiOUpdater.exe
FirewallRules: [{D5897625-7DC5-4AC6-8FFA-D87421A6879D}] => (Allow) C:\Program Files (x86)\Kodak\AiO\Firmware\KodakAiOUpdater.exe
FirewallRules: [{4AD2CD33-74A6-4468-A677-D76A0522F9F4}] => (Allow) C:\ProgramData\Kodak\Installer\Setup.exe
FirewallRules: [{66194123-141B-418B-A273-AFB81D148E78}] => (Allow) C:\ProgramData\Kodak\Installer\Setup.exe
FirewallRules: [{CBFB1F8C-43F6-4F30-A2A6-238B131EA592}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{4A98C5FF-2A1A-49CD-BE2D-3CF565AC0B70}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{B042F246-B0BE-4EFB-A1FF-9D669D9E4D24}] => (Allow) LPort=9322
FirewallRules: [{A5E18440-49B2-4682-AA7F-CC6B10848B02}] => (Allow) LPort=5353
FirewallRules: [{C3BA7700-9800-4C08-8786-E3F260B34AD7}] => (Allow) C:\Users\Timm\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{82E6F975-DEDB-4B7A-B15B-48BD050F354D}] => (Allow) C:\Users\Timm\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{FBA7EB9B-C7E6-4520-A431-398C21323F23}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{C1DF3857-1F5E-4FF2-B80C-7C0743E3C72A}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5FB2A03B-5578-44E9-B3CA-F34FBFE7ADCC}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{7B270AEC-67DA-4929-929F-73987C82C386}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{B04F3E71-3559-494A-8E50-0459C931FE72}C:\users\timm\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\timm\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{4835BE49-19E0-4629-AE40-0F76D1BFBAB2}C:\users\timm\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\timm\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{3D948195-EA73-414F-B60A-3509149CA002}] => (Allow) C:\Windows\SysWOW64\Gateway.exe
FirewallRules: [{A380B7D3-DCCD-4A75-9F29-FF3B8B06C24F}] => (Allow) C:\Windows\SysWOW64\Gateway.exe
FirewallRules: [{CC2DBF98-C4F7-4AC6-9FE0-4B67CC73E0EA}] => (Allow) C:\Windows\SysWOW64\GatewayDDE.exe
FirewallRules: [{CB35E925-5E7B-4DD7-9414-4F8700B98B05}] => (Allow) C:\Windows\SysWOW64\GatewayDDE.exe
FirewallRules: [{FA53EBEC-17CE-49D2-BEBF-6B4656DC49AE}] => (Allow) C:\Program Files (x86)\3S Software\CoDeSys SP PLCWinNT\PLCWinNT24.exe
FirewallRules: [{E445E29F-8331-453E-8AFB-0A6E496DF9E3}] => (Allow) C:\Program Files (x86)\3S Software\CoDeSys SP PLCWinNT\PLCWinNT24.exe
FirewallRules: [{B02BF651-2539-457C-9223-B2C661BAE3B2}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{653C7E78-56AD-40B3-9908-AC241661DDF8}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{AB48896F-4210-4788-BCE3-B56874A3C131}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{5586B815-05B6-432C-A985-C614D82F9CCD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C1C26D28-9DA8-425F-BB0D-792548BEA013}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{4401DA43-492F-4E44-83DB-CD88C5EE7677}] => (Allow) LPort=1688

==================== Faulty Device Manager Devices =============

Name: Unbekanntes USB-Gerät (Fehler beim Anfordern einer Gerätebeschreibung.)
Description: Unbekanntes USB-Gerät (Fehler beim Anfordern einer Gerätebeschreibung.)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standard-USB-Hostcontroller)
Service: 
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Event log errors: =========================

Application errors:
==================
Error: (07/12/2015 08:43:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Service_KMS.exe, Version: 11.0.0.0, Zeitstempel: 0x52a8d15d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x00000000
Fehleroffset: 0x00007fff4f7b0565
ID des fehlerhaften Prozesses: 0x8a4
Startzeit der fehlerhaften Anwendung: 0xService_KMS.exe0
Pfad der fehlerhaften Anwendung: Service_KMS.exe1
Pfad des fehlerhaften Moduls: Service_KMS.exe2
Berichtskennung: Service_KMS.exe3
Vollständiger Name des fehlerhaften Pakets: Service_KMS.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Service_KMS.exe5

Error: (07/12/2015 08:36:27 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/12/2015 08:36:27 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcSSAU restarted too many times in a short period. Aborting. [0]

Error: (07/12/2015 07:15:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Service_KMS.exe, Version: 11.0.0.0, Zeitstempel: 0x52a8d15d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x00000000
Fehleroffset: 0x00007ffd4ed10565
ID des fehlerhaften Prozesses: 0x880
Startzeit der fehlerhaften Anwendung: 0xService_KMS.exe0
Pfad der fehlerhaften Anwendung: Service_KMS.exe1
Pfad des fehlerhaften Moduls: Service_KMS.exe2
Berichtskennung: Service_KMS.exe3
Vollständiger Name des fehlerhaften Pakets: Service_KMS.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Service_KMS.exe5

Error: (07/12/2015 07:12:56 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/12/2015 07:11:08 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [0]

Error: (07/12/2015 04:16:26 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.ATL,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1".
Die abhängige Assemblierung "Microsoft.VC90.ATL,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/12/2015 03:48:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.2.929, Zeitstempel: 0x552d3ec4
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x1c97aeb0
ID des fehlerhaften Prozesses: 0x848
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3
Vollständiger Name des fehlerhaften Pakets: mbam.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5

Error: (07/12/2015 02:01:40 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/11/2015 09:56:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Service_KMS.exe, Version: 11.0.0.0, Zeitstempel: 0x52a8d15d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x00000000
Fehleroffset: 0x00007ffb93560565
ID des fehlerhaften Prozesses: 0x804
Startzeit der fehlerhaften Anwendung: 0xService_KMS.exe0
Pfad der fehlerhaften Anwendung: Service_KMS.exe1
Pfad des fehlerhaften Moduls: Service_KMS.exe2
Berichtskennung: Service_KMS.exe3
Vollständiger Name des fehlerhaften Pakets: Service_KMS.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Service_KMS.exe5


System errors:
=============
Error: (07/12/2015 08:44:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Service KMSELDI" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (07/12/2015 08:36:22 AM) (Source: DCOM) (EventID: 10010) (User: TIMM)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (07/12/2015 08:35:34 AM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI-BIOS versucht, in einen ungültigen PCI-Operationsbereich (0x4) zu schreiben. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten.

Error: (07/12/2015 08:35:34 AM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI-BIOS versucht, in einen ungültigen PCI-Operationsbereich (0x4) zu schreiben. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten.

Error: (07/12/2015 08:31:36 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3047255)

Error: (07/12/2015 08:30:36 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3047254)

Error: (07/12/2015 08:29:24 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3015696)

Error: (07/12/2015 08:25:43 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3048043)

Error: (07/12/2015 08:23:50 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3048778)

Error: (07/12/2015 08:23:50 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246013 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 3.5 unter Windows 8.1 und Windows Server 2012 R2 für x64-basierte Systeme (KB3023219)


Microsoft Office:
=========================
Error: (07/12/2015 08:43:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Service_KMS.exe11.0.0.052a8d15dunknown0.0.0.0000000000000000000007fff4f7b05658a401d0bc6defda794aC:\Program Files\KMSpico\Service_KMS.exeunknown5c3273b1-2861-11e5-82ba-c860003ab1b2

Error: (07/12/2015 08:36:27 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/12/2015 08:36:27 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcSSAU restarted too many times in a short period. Aborting. [0]

Error: (07/12/2015 07:15:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Service_KMS.exe11.0.0.052a8d15dunknown0.0.0.0000000000000000000007ffd4ed1056588001d0bc619010e106C:\Program Files\KMSpico\Service_KMS.exeunknownff80529b-2854-11e5-82b9-c860003ab1b2

Error: (07/12/2015 07:12:56 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/12/2015 07:11:08 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [0]

Error: (07/12/2015 04:16:26 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC90.ATL,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"C:\Program Files (x86)\Common Files\Authentec\TrueWinBioServer.exe

Error: (07/12/2015 03:48:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.2.929552d3ec4unknown0.0.0.000000000c00000051c97aeb084801d0bc16eee0c24aC:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeunknown2299b378-2838-11e5-82b8-c860003ab1b2

Error: (07/12/2015 02:01:40 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed continue stopping. [6]

Error: (07/11/2015 09:56:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Service_KMS.exe11.0.0.052a8d15dunknown0.0.0.0000000000000000000007ffb9356056580401d0bc136897ab8fC:\Program Files\KMSpico\Service_KMS.exeunknowne5843801-2806-11e5-82b8-c860003ab1b2


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5 CPU M 480 @ 2.67GHz
Percentage of memory in use: 53%
Total physical RAM: 3884.28 MB
Available physical RAM: 1793.42 MB
Total Virtual: 7852.28 MB
Available Virtual: 5007.39 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:194.97 GB) (Free:132.49 GB) NTFS
Drive d: (Volume) (Fixed) (Total:270.45 GB) (Free:258.59 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E3102A4B)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=195 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=270.4 GB) - (Type=07 NTFS)

==================== End of log ============================
         
--- --- ---


Habe ich etwas? Bin leider pc-technisch nicht so der Könner

Kann man das irgendwie reparieren oder muss man es formatieren?
Mein Problem ist, ich muss gerade meine Abschlussarbeit schreiben und habe für son mist von irgendwelchen Verbrechern gar keine Zeit....
Das doofe ist, ist auch nicht mein Rechner. Ich habe ihn mir nur geliehen für die Zeit

mhh, ich habe den angerufen. Von wo ich mir den Rechner geliehen habe. Daher vielen Dank für deine Hilfe....


vielen Dank schoneinmal.

FRST Logfile:
[CODE]Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Timm (administrator) on TIMM on 12-07-2015 08:52:58
Running from C:\Users\Timm\Downloads
Loaded Profiles: Timm (Available Profiles: Timm)
Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/



Habe ich etwas? Bin leider pc-technisch nicht so der Könner

Kann man das irgendwie reparieren oder muss man es formatieren?
Mein Problem ist, ich muss gerade meine Abschlussarbeit schreiben und habe für son mist von irgendwelchen Verbrechern gar keine Zeit....
Das doofe ist, ist auch nicht mein Rechner. Ich habe ihn mir nur geliehen für die Zeit[/QUOTE]
__________________

Geändert von timey89 (12.07.2015 um 08:20 Uhr)

Alt 12.07.2015, 16:09   #4
schrauber
/// the machine
/// TB-Ausbilder
 

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 12.07.2015, 17:21   #5
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Vielen Dank Schrauber,

wirklich spitze von dir, dass du dich hier einbringst und anderen hilfst. Eine völlig vergessenes Soziales Engagement, leider!

Kannst du schon etwas sagen, habe ich ein ernstes Problem? Da der Rechner ja auch nur geliehen ist...
anbei die Daten:

Code:
ATTFilter
# AdwCleaner v4.208 - Bericht erstellt 12/07/2015 um 17:46:15
# Aktualisiert 09/07/2015 von Xplode
# Datenbank : 2015-07-11.1 [Server]
# Betriebssystem : Windows 8.1 Pro  (x64)
# Benutzername : 
# Gestarted von : C:\Users\\Downloads\AdwCleaner_4.208 (2).exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v


-\\ Google Chrome v43.0.2357.132

[C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.sweet-page.com/web/?type=ds&ts=1412426716&from=cor&uid=3219782655_198225_CC87279B&q={searchTerms}
[C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxps://www.genios.de/dosearch?explicitSearch=true&q={searchTerms}
[C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Homepage] : hxxp://search.conduit.com/?ctid=CT3320845&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP1A687A9E-A2A2-4CB5-A110-D2A8F9B31B8A&SSPV=

*************************

AdwCleaner[R0].txt - [2058 Bytes] - [11/07/2015 21:51:46]
AdwCleaner[R1].txt - [1541 Bytes] - [12/07/2015 17:42:24]
AdwCleaner[S0].txt - [1939 Bytes] - [11/07/2015 21:53:14]
AdwCleaner[S1].txt - [1461 Bytes] - [12/07/2015 17:46:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1520  Bytes] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.4.5 (07.12.2015:1)
OS: Windows 8.1 Pro x64
Ran by Timm on 12.07.2015 at 18:08:00,72
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Chrome

Successfully deleted: [Folder] C:\Users\\appdata\local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof

[C:\Users\\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
ndibdjnfmopecpmkdieinmbadjfpblof

[C:\Users\\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[
  ndibdjnfmopecpmkdieinmbadjfpblof
]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12.07.2015 at 18:12:13,07
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by  (administrator) on  on 12-07-2015 18:14:09
Running from C:\Users\Downloads
Loaded Profiles: 
Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Farbar) C:\Users\\Downloads\FRST64 (2).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2283816 2010-08-12] (Synaptics Incorporated)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [92456 2010-08-12] (Synaptics Incorporated)
HKLM\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe [3182080 2012-10-08] (Eastman Kodak Company)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [FLxHCIm] => C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe [40448 2011-02-24] (Windows (R) Win 7 DDK provider)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [Conime] => %windir%\system32\conime.exe
HKLM-x32\...\Run: [EKStatusMonitor] => C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe [2750840 2013-12-11] (Eastman Kodak Company)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [730416 2015-06-20] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-06-02] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Startup: C:\Users\\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-04-25]
ShortcutTarget: Dropbox.lnk -> C:\Users\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
SSODL: EldosMountNotificator-cbfs4 - {A5A27988-B099-4629-AE34-58BE9E3E9311} - C:\Windows\system32\cbfsMntNtf4.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator-cbfs4 - {A5A27988-B099-4629-AE34-58BE9E3E9311} - C:\Windows\SysWOW64\cbfsMntNtf4.dll (EldoS Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [EldosIconOverlay-cbfs4] -> {128C726C-3F36-42A9-8854-BE45D7A01B17} => C:\Windows\system32\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay-cbfs4] -> {128C726C-3F36-42A9-8854-BE45D7A01B17} => C:\Windows\SysWOW64\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1832302014-2846907121-421425406-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-13] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{4A31F548-22B1-4BD7-BB49-C554F59F4102}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{B05D6910-55E0-44BF-BA51-AB110E476792}: [DhcpNameServer] 141.71.32.20 141.71.1.21

FireFox:
========
FF ProfilePath: C:\Users\\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Extension: Download Status Bar - C:\Users\\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default\Extensions\{6c28e999-e900-4635-a39d-b1ec90ba0c0f}.xpi [2014-09-03]
FF Extension: Adblock Plus - C:\Users\\AppData\Roaming\Mozilla\Firefox\Profiles\lz0954eh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-03]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]

Chrome: 
=======
CHR Profile: C:\Users\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-03]
CHR Extension: (YouTube) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-03]
CHR Extension: (Adblock Plus) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-03]
CHR Extension: (Pushbullet) - C:\Users\T\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2014-09-04]
CHR Extension: (Google Search) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-03]
CHR Extension: (Google Calendar) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-09-04]
CHR Extension: (hxxp://translate.google.de/) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekoegieboinnegkaeedfajabaobgfffl [2014-09-04]
CHR Extension: (Avira Browser Safety) - C:\Users\T\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-10-04]
CHR Extension: (Google Keep - notes and lists) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-09-04]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-15]
CHR Extension: (AVG Secure Search) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2015-07-12]
CHR Extension: (Google Wallet) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-03]
CHR Extension: (Gmail) - C:\Users\\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-03]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [827184 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [450808 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [450808 2015-06-20] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1188360 2015-06-20] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [217280 2015-06-02] (Avira Operations GmbH & Co. KG)
S2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [File not signed]
S2 ServiceControl_RTE23_3S_GmbH; C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe [188551 2014-04-09] (3S-Smart Software Solutions GmbH) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [153256 2015-06-20] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132656 2015-06-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-08-15] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 cbfs4; C:\Windows\system32\drivers\cbfs4.sys [387776 2013-11-15] (EldoS Corporation)
R3 FLxHCIh; C:\Windows\System32\drivers\FLxHCIh.sys [81920 2011-02-24] (Fresco Logic)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 vpnpbus; C:\Windows\System32\drivers\vpnpbus.sys [18624 2013-11-15] (EldoS Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S5 WinDivert1.1;  <===== ATTENTION Locked Service

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-12 18:13 - 2015-07-12 18:13 - 02130944 _____ (Farbar) C:\Users\\Downloads\FRST64 (2).exe
2015-07-12 18:12 - 2015-07-12 18:12 - 00001259 _____ C:\Users\\Desktop\JRT.txt
2015-07-12 18:07 - 2015-07-12 18:07 - 02130944 _____ (Farbar) C:\Users\Downloads\FRST64 (1).exe
2015-07-12 17:59 - 2015-07-12 17:59 - 00000207 _____ C:\Windows\tweaking.com-regbackup-Windows-8.1-Pro-(64-bit).dat
2015-07-12 17:59 - 2015-07-12 17:59 - 00000000 ____D C:\RegBackup
2015-07-12 17:58 - 2015-07-12 17:58 - 03034102 _____ (Malwarebytes Corporation) C:\Users\Timm\Downloads\JRT.exe
2015-07-12 17:49 - 2015-07-12 17:49 - 00001600 _____ C:\Users\Desktop\AdwCleaner[S1].txt
2015-07-12 17:45 - 2015-07-12 17:45 - 00001541 _____ C:\Users\\Desktop\AdwCleaner[R1].txt
2015-07-12 17:41 - 2015-07-12 17:41 - 02248704 _____ C:\Users\\Downloads\AdwCleaner_4.208 (2).exe
2015-07-12 12:22 - 2015-07-12 12:53 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-07-12 12:05 - 2015-07-12 12:05 - 16502728 _____ (Malwarebytes Corp.) C:\Users\\Downloads\mbar-1.09.1.1004 (1).exe
2015-07-12 12:00 - 2015-07-12 12:53 - 00000000 ____D C:\Users\Desktop\m
2015-07-12 11:59 - 2015-07-12 11:59 - 16502728 _____ (Malwarebytes Corp.) C:\Users\\Downloads\mbar-1.09.1.1004.exe
2015-07-12 10:11 - 2015-07-12 10:24 - 00000000 ____D C:\ProgramData\F-Secure
2015-07-12 10:11 - 2015-07-12 10:11 - 00816680 _____ (F-Secure Corporation) C:\Users\\Downloads\F-SecureNetworkInstaller_AV-ESTORE-TRIAL-GLOBAL_.exe
2015-07-12 10:11 - 2015-07-12 10:11 - 00000000 ____D C:\Users\\AppData\Local\F-Secure
2015-07-12 10:01 - 2015-07-12 10:01 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Downloads\tdsskiller (1).exe
2015-07-12 09:58 - 2015-07-12 09:58 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\\Downloads\tdsskiller.exe
2015-07-12 08:54 - 2015-07-12 08:55 - 00031372 _____ C:\Users\\Downloads\Addition.txt
2015-07-12 08:52 - 2015-07-12 18:14 - 00019499 _____ C:\Users\\Downloads\FRST.txt
2015-07-12 08:52 - 2015-07-12 18:14 - 00000000 ____D C:\FRST
2015-07-12 08:52 - 2015-07-12 08:52 - 02130944 _____ (Farbar) C:\Users\\Downloads\FRST64.exe
2015-07-12 07:20 - 2015-07-12 07:20 - 00002885 _____ C:\Users\\Desktop\durchlauf20150712.txt
2015-07-11 22:19 - 2015-07-12 17:49 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-11 22:19 - 2015-07-12 12:05 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-07-11 22:19 - 2015-07-11 22:19 - 00001114 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-07-11 22:19 - 2015-07-11 22:19 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-07-11 22:19 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-07-11 22:19 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-07-11 22:17 - 2015-07-11 22:17 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\\Downloads\mbam-setup-2.1.6.1022.exe
2015-07-11 22:04 - 2015-07-11 22:04 - 02314104 _____ C:\Users\\Downloads\avira10_pc_cleaner_de.exe
2015-07-11 22:04 - 2015-07-11 22:04 - 00002034 _____ C:\Users\\Desktop\Entfernen des Avira PC Cleaners.lnk
2015-07-11 22:04 - 2015-07-11 22:04 - 00001978 _____ C:\Users\\Desktop\Avira PC Cleaner.lnk
2015-07-11 21:56 - 2015-07-11 21:56 - 02248704 _____ C:\Users\\Downloads\adwcleaner_4.208 (1).exe
2015-07-11 21:51 - 2015-07-12 17:46 - 00000000 ____D C:\AdwCleaner
2015-07-11 21:51 - 2015-07-11 21:51 - 02248704 _____ C:\Users\\Downloads\adwcleaner_4.208.exe
2015-07-11 21:47 - 2015-07-11 21:47 - 00000000 ____D C:\ProgramData\TEMP
2015-07-11 21:47 - 2015-07-11 21:47 - 00000000 ____D C:\ProgramData\Licenses
2015-07-11 21:42 - 2015-07-11 21:42 - 35218576 _____ (Simply Super Software ) C:\Users\\Downloads\trjsetup692.exe
2015-06-28 15:15 - 2015-06-28 15:15 - 00262144 _____ C:\Windows\Minidump\062815-20296-01.dmp
2015-06-26 19:23 - 2015-06-26 19:23 - 00262144 _____ C:\Windows\Minidump\062615-34875-01.dmp
2015-06-21 08:37 - 2015-06-21 08:37 - 00000000 ____D C:\Users\\AppData\Local\PDF24
2015-06-21 08:28 - 2015-06-21 08:28 - 00001091 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk
2015-06-21 08:28 - 2015-06-21 08:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2015-06-21 08:28 - 2015-06-21 08:28 - 00000000 ____D C:\Program Files (x86)\PDF24
2015-06-21 08:26 - 2015-06-21 08:26 - 01198368 _____ C:\Users\\Downloads\PDF24 Creator - CHIP-Installer.exe
2015-06-14 11:41 - 2015-07-12 07:13 - 00000000 ____D C:\Windows\Minidump
2015-06-14 11:41 - 2015-06-28 15:15 - 452651512 _____ C:\Windows\MEMORY.DMP
2015-06-14 11:41 - 2015-06-14 11:42 - 00875256 _____ C:\Windows\Minidump\061415-43250-01.dmp
2015-06-12 18:50 - 2015-05-21 18:47 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-06-12 18:50 - 2015-04-09 00:07 - 00410336 _____ C:\Windows\system32\ApnDatabase.xml
2015-06-12 18:50 - 2015-04-02 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-06-12 18:50 - 2015-04-02 00:30 - 02483712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-06-12 18:50 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-06-12 18:50 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-06-12 18:50 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-06-12 18:50 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-06-12 18:49 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-06-12 18:49 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-06-12 18:49 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-06-12 18:49 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-06-12 18:49 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-06-12 18:49 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-06-12 18:49 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-06-12 18:49 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-06-12 18:49 - 2015-05-23 04:47 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-06-12 18:49 - 2015-05-23 04:43 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-06-12 18:49 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-06-12 18:49 - 2015-05-23 04:38 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-06-12 18:49 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-06-12 18:49 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-06-12 18:49 - 2015-05-23 04:28 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-06-12 18:49 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-06-12 18:49 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-06-12 18:49 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-06-12 18:49 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-06-12 18:49 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-06-12 18:49 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-06-12 18:49 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-06-12 18:49 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-06-12 18:49 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-06-12 18:49 - 2015-05-22 20:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-06-12 18:49 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-06-12 18:49 - 2015-05-22 20:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-06-12 18:49 - 2015-05-22 20:09 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-06-12 18:49 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-06-12 18:49 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-06-12 18:49 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-06-12 18:49 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-06-12 18:49 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-06-12 18:49 - 2015-05-22 19:49 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-06-12 18:49 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-06-12 18:49 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-06-12 18:49 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-06-12 18:49 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-06-12 18:49 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-06-12 18:49 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2015-06-12 18:49 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2015-06-12 18:49 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-06-12 18:49 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-06-12 18:49 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll
2015-06-12 18:49 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-06-12 18:49 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-06-12 18:49 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-06-12 18:49 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-06-12 18:49 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-06-12 18:49 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-06-12 18:49 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-06-12 18:49 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-06-12 18:49 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-06-12 18:49 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-06-12 18:49 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-06-12 18:49 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-06-12 18:49 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-06-12 18:49 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-06-12 18:49 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-12 18:04 - 2014-09-03 19:37 - 01514176 _____ C:\Windows\WindowsUpdate.log
2015-07-12 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-07-12 17:53 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-07-12 17:48 - 2014-09-03 21:58 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 17:48 - 2013-08-22 16:46 - 00061277 _____ C:\Windows\setupact.log
2015-07-12 17:47 - 2014-09-04 09:23 - 00000000 ____D C:\ProgramData\Kodak
2015-07-12 17:47 - 2014-09-03 20:02 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-12 17:47 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 13:32 - 2014-09-03 21:58 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 10:32 - 2014-09-03 19:57 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1832302014-2846907121-421425406-1001
2015-07-12 10:26 - 2014-09-03 20:25 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-12 10:25 - 2014-10-30 08:41 - 00000000 ____D C:\Program Files (x86)\3S Software
2015-07-12 10:17 - 2015-02-10 20:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-07-12 08:47 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-07-12 08:42 - 2013-08-22 16:44 - 00410008 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-12 08:39 - 2013-09-29 21:05 - 00367544 _____ C:\Windows\PFRO.log
2015-07-12 08:37 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData
2015-07-12 08:37 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-07-12 08:30 - 2014-09-03 20:48 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-12 08:28 - 2014-09-03 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-07-12 08:18 - 2014-09-05 09:28 - 00000000 ____D C:\Windows\system32\MRT
2015-07-12 08:08 - 2014-09-05 09:28 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-11 15:29 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-07-08 19:54 - 2014-10-04 10:05 - 00000000 ____D C:\ProgramData\Package Cache
2015-07-08 19:54 - 2014-10-04 08:58 - 00000000 ____D C:\Program Files (x86)\Avira
2015-07-06 23:24 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-06 23:24 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-06 20:48 - 2014-09-03 19:41 - 01776918 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-06 20:48 - 2013-09-30 05:58 - 00765582 _____ C:\Windows\system32\perfh007.dat
2015-07-06 20:48 - 2013-09-30 05:58 - 00159366 _____ C:\Windows\system32\perfc007.dat
2015-07-06 19:56 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-03 19:24 - 2014-09-03 19:51 - 00000000 ____D C:\Users\AppData\Local\Packages
2015-06-28 18:31 - 2014-09-03 19:51 - 00000000 ____D C:\Users\
2015-06-24 21:02 - 2015-05-24 08:53 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-06-20 06:37 - 2014-10-04 08:58 - 00153256 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-06-20 06:37 - 2014-10-04 08:58 - 00132656 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-06-14 11:41 - 2014-10-04 08:58 - 00000000 ____D C:\ProgramData\Avira

==================== Files in the root of some directories =======

2014-09-04 09:36 - 2014-09-04 09:36 - 0000236 _____ () C:\Users\\AppData\Local\LaunchHomeCenter.log

Some files in TEMP:
====================
C:\Users\\AppData\Local\Temp\avgnt.exe
C:\Users\\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpe1md7t.dll
C:\Users\AppData\Local\Temp\nvStInst.exe
C:\Users\\AppData\Local\Temp\ose00000.exe
C:\Users\\AppData\Local\Temp\Quarantine.exe
C:\Users\\AppData\Local\Temp\sqlite3.dll
C:\Users\\AppData\Local\Temp\vpnclient_setup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-12 04:15

==================== End of log ============================
         


Geändert von timey89 (12.07.2015 um 18:01 Uhr)

Alt 13.07.2015, 08:14   #6
schrauber
/// the machine
/// TB-Ausbilder
 

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Ein Treiber kommt mir noch ein wenig komisch vor.


Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________
--> gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe

Alt 13.07.2015, 19:11   #7
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Okay Danke, habe es durchlaufen lassen und es gab einen Fund:

Code:
ATTFilter
19:59:58.0964 0x0540  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
20:00:05.0941 0x0540  ============================================================
20:00:05.0941 0x0540  Current date / time: 2015/07/13 20:00:05.0941
20:00:05.0941 0x0540  SystemInfo:
20:00:05.0941 0x0540  
20:00:05.0941 0x0540  OS Version: 6.3.9600 ServicePack: 0.0
20:00:05.0941 0x0540  Product type: Workstation
20:00:05.0941 0x0540  ComputerName: 
20:00:05.0941 0x0540  UserName: 
20:00:05.0941 0x0540  Windows directory: C:\Windows
20:00:05.0941 0x0540  System windows directory: C:\Windows
20:00:05.0941 0x0540  Running under WOW64
20:00:05.0941 0x0540  Processor architecture: Intel x64
20:00:05.0941 0x0540  Number of processors: 4
20:00:05.0941 0x0540  Page size: 0x1000
20:00:05.0941 0x0540  Boot type: Normal boot
20:00:05.0941 0x0540  ============================================================
20:00:06.0410 0x0540  KLMD registered as C:\Windows\system32\drivers\47715179.sys
20:00:07.0372 0x0540  System UUID: {8613D8F5-3689-3795-72E3-3FFB326A0A0E}
20:00:08.0638 0x0540  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:00:08.0653 0x0540  ============================================================
20:00:08.0653 0x0540  \Device\Harddisk0\DR0:
20:00:08.0653 0x0540  MBR partitions:
20:00:08.0653 0x0540  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
20:00:08.0653 0x0540  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x185F1000
20:00:08.0653 0x0540  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x186A0800, BlocksNum 0x21CE4800
20:00:08.0653 0x0540  ============================================================
20:00:08.0669 0x0540  C: <-> \Device\Harddisk0\DR0\Partition2
20:00:08.0778 0x0540  D: <-> \Device\Harddisk0\DR0\Partition3
20:00:08.0778 0x0540  ============================================================
20:00:08.0778 0x0540  Initialize success
20:00:08.0778 0x0540  ============================================================
20:00:29.0203 0x0520  ============================================================
20:00:29.0203 0x0520  Scan started
20:00:29.0203 0x0520  Mode: Manual; SigCheck; TDLFS; 
20:00:29.0203 0x0520  ============================================================
20:00:29.0203 0x0520  KSN ping started
20:00:31.0672 0x0520  KSN ping finished: true
20:00:34.0487 0x0520  ================ Scan system memory ========================
20:00:34.0487 0x0520  System memory - ok
20:00:34.0487 0x0520  ================ Scan services =============================
20:00:34.0971 0x0520  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
20:00:35.0174 0x0520  1394ohci - ok
20:00:35.0221 0x0520  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
20:00:35.0252 0x0520  3ware - ok
20:00:35.0330 0x0520  [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI            C:\Windows\system32\drivers\ACPI.sys
20:00:35.0455 0x0520  ACPI - ok
20:00:35.0533 0x0520  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
20:00:35.0565 0x0520  acpiex - ok
20:00:35.0580 0x0520  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
20:00:35.0612 0x0520  acpipagr - ok
20:00:35.0612 0x0520  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
20:00:35.0690 0x0520  AcpiPmi - ok
20:00:35.0705 0x0520  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
20:00:35.0737 0x0520  acpitime - ok
20:00:35.0910 0x0520  [ A542C712794FB8FBD27E37271C730F36, 8C327BFAC10C7BBD48277D4FEB862D58CA1F22DC10F0632BB8B18CF54A507216 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:00:35.0941 0x0520  AdobeARMservice - ok
20:00:36.0035 0x0520  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
20:00:36.0144 0x0520  ADP80XX - ok
20:00:36.0207 0x0520  [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
20:00:36.0316 0x0520  AeLookupSvc - ok
20:00:36.0425 0x0520  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
20:00:36.0785 0x0520  AFD - ok
20:00:36.0832 0x0520  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
20:00:36.0847 0x0520  agp440 - ok
20:00:36.0894 0x0520  [ F0CB6DB513CAC393D04A0FCE0A59E1BF, E6EE159D0E6B1F666946B1FE421874044E89BB2EB60A521BAA111A1229FA7B2D ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
20:00:37.0003 0x0520  ahcache - ok
20:00:37.0019 0x0520  [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG             C:\Windows\System32\alg.exe
20:00:37.0113 0x0520  ALG - ok
20:00:37.0144 0x0520  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
20:00:37.0207 0x0520  AmdK8 - ok
20:00:37.0238 0x0520  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
20:00:37.0285 0x0520  AmdPPM - ok
20:00:37.0300 0x0520  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
20:00:37.0332 0x0520  amdsata - ok
20:00:37.0363 0x0520  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
20:00:37.0410 0x0520  amdsbs - ok
20:00:37.0425 0x0520  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
20:00:37.0457 0x0520  amdxata - ok
20:00:37.0722 0x0520  [ 3358CAD1887DDDDD2A36B7796B579292, 40BA1A836276C2AA78914F294661C3C918F2D6DFAA9D6EF3FEB6D1EE3B07F584 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
20:00:37.0800 0x0520  AntiVirMailService - ok
20:00:37.0847 0x0520  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
20:00:37.0894 0x0520  AntiVirSchedulerService - ok
20:00:37.0972 0x0520  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
20:00:38.0035 0x0520  AntiVirService - ok
20:00:38.0144 0x0520  [ 6FD5165364D88FDABE4FA59E1768376F, B82D11E6FCC297F822E29A49D46C9985955C9F5676D107A397B00D0468F93504 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
20:00:38.0238 0x0520  AntiVirWebService - ok
20:00:38.0300 0x0520  [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID           C:\Windows\system32\drivers\appid.sys
20:00:38.0410 0x0520  AppID - ok
20:00:38.0441 0x0520  [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
20:00:38.0488 0x0520  AppIDSvc - ok
20:00:38.0535 0x0520  [ 034ED41F13D9C1845C1E081F05B640DB, E4E17BA0B22C464DE60A6BF68D4D035D1B838DE4F0361029DED1AE00503E135C ] Appinfo         C:\Windows\System32\appinfo.dll
20:00:38.0644 0x0520  Appinfo - ok
20:00:38.0675 0x0520  [ 8176FBA685178FB0F52D46693474FA50, 69FE3692C7FE24289A479ADD74F2C782B59A099B7B07FE5ACFC4DA899E40BFDE ] AppMgmt         C:\Windows\System32\appmgmts.dll
20:00:38.0754 0x0520  AppMgmt - ok
20:00:38.0847 0x0520  [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
20:00:38.0972 0x0520  AppReadiness - ok
20:00:39.0128 0x0520  [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
20:00:39.0347 0x0520  AppXSvc - ok
20:00:39.0379 0x0520  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
20:00:39.0410 0x0520  arcsas - ok
20:00:39.0504 0x0520  [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
20:00:39.0613 0x0520  ASLDRService - ok
20:00:39.0644 0x0520  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64        C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
20:00:39.0675 0x0520  ASMMAP64 - ok
20:00:39.0675 0x0520  [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
20:00:39.0738 0x0520  AsyncMac - ok
20:00:39.0769 0x0520  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
20:00:39.0785 0x0520  atapi - ok
20:00:40.0253 0x0520  [ B04BF12AEBFB5E71971B4EDA4EDFC196, BCFC79ED014F3E835957D6FD5985DF97A9F2BFD9E762594C48AB8299240FF667 ] athr            C:\Windows\system32\DRIVERS\athwnx.sys
20:00:40.0597 0x0520  athr - ok
20:00:40.0629 0x0520  [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv     C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
20:00:40.0660 0x0520  ATKGFNEXSrv - ok
20:00:40.0722 0x0520  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
20:00:40.0910 0x0520  AudioEndpointBuilder - ok
20:00:40.0972 0x0520  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
20:00:41.0207 0x0520  Audiosrv - ok
20:00:41.0332 0x0520  [ CC1ABBD9E61B7AA5CCBB45EA87CB033F, 4E5DE485833721E19B36455C017B9D908BAA7D12637A878934A0FAF2326E000B ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
20:00:41.0379 0x0520  avgntflt - ok
20:00:41.0394 0x0520  [ 07C8454D3A94BA478752FAFA2B94E0FE, EB19396D4A6D51D6C33ED55C8EF0259045801D39CCE2945931F9163D6006C133 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
20:00:41.0435 0x0520  avipbb - ok
20:00:41.0559 0x0520  [ 17348FE28C0A0AB4A6CB86D177770335, 633FEDA61F62504534B47090EA142F73C5D80C0D52A22A6C81DF64CD3EAFDAA8 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
20:00:41.0606 0x0520  Avira.ServiceHost - ok
20:00:41.0665 0x0520  [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
20:00:41.0685 0x0520  avkmgr - ok
20:00:41.0719 0x0520  [ 83586138F23A4C284EB68AFC852D7AFA, 9ADE8924B4518ED0A8E3FC4CC3F9964BC05B5FF67F230A7FD0BDABCFFA0BB0C8 ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
20:00:41.0761 0x0520  avnetflt - ok
20:00:41.0793 0x0520  [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
20:00:41.0905 0x0520  AxInstSV - ok
20:00:41.0967 0x0520  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
20:00:42.0108 0x0520  b06bdrv - ok
20:00:42.0139 0x0520  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
20:00:42.0217 0x0520  BasicDisplay - ok
20:00:42.0295 0x0520  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
20:00:42.0405 0x0520  BasicRender - ok
20:00:42.0436 0x0520  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
20:00:42.0451 0x0520  bcmfn2 - ok
20:00:42.0577 0x0520  [ E07C80468D0C599BFF01D9D4EC7AEDC3, F675F455924DEC3FF69AD816DFEB6E74C804AEC3D3BFF7515953DB9D79C9B2D0 ] BDESVC          C:\Windows\System32\bdesvc.dll
20:00:42.0827 0x0520  BDESVC - ok
20:00:42.0873 0x0520  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
20:00:42.0967 0x0520  Beep - ok
20:00:43.0170 0x0520  [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] BFE             C:\Windows\System32\bfe.dll
20:00:43.0295 0x0520  BFE - ok
20:00:43.0670 0x0520  [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS            C:\Windows\System32\qmgr.dll
20:00:43.0998 0x0520  BITS - ok
20:00:44.0077 0x0520  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
20:00:44.0217 0x0520  bowser - ok
20:00:44.0358 0x0520  [ E325BCD68EC0CF2E2EDD0AB7CC17C698, 4DEDEF91F6BD1CC8DBE118AC28CA6BD874449A053B9CDE9FFEB1C7B98501D938 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
20:00:44.0530 0x0520  BrokerInfrastructure - ok
20:00:44.0561 0x0520  [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] Browser         C:\Windows\System32\browser.dll
20:00:44.0670 0x0520  Browser - ok
20:00:44.0686 0x0520  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
20:00:44.0733 0x0520  BthAvrcpTg - ok
20:00:44.0764 0x0520  [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
20:00:44.0827 0x0520  BthHFEnum - ok
20:00:44.0842 0x0520  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
20:00:44.0889 0x0520  bthhfhid - ok
20:00:44.0905 0x0520  [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
20:00:44.0952 0x0520  BTHMODEM - ok
20:00:45.0030 0x0520  [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv         C:\Windows\system32\bthserv.dll
20:00:45.0077 0x0520  bthserv - ok
20:00:45.0155 0x0520  [ B6EA7E4E23C43DB6E722E9D0B18FE3C3, C7AD98FB71E7A4017EE88D20DA835883E7CE6C48D914578D939DA0C6632F7CD9 ] cbfs4           C:\Windows\system32\drivers\cbfs4.sys
20:00:45.0202 0x0520  cbfs4 - ok
20:00:45.0248 0x0520  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
20:00:45.0342 0x0520  cdfs - ok
20:00:45.0373 0x0520  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
20:00:45.0405 0x0520  cdrom - ok
20:00:45.0452 0x0520  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc     C:\Windows\System32\certprop.dll
20:00:45.0530 0x0520  CertPropSvc - ok
20:00:45.0561 0x0520  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
20:00:45.0608 0x0520  circlass - ok
20:00:45.0655 0x0520  [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
20:00:45.0717 0x0520  CLFS - ok
20:00:45.0811 0x0520  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
20:00:45.0920 0x0520  CmBatt - ok
20:00:45.0998 0x0520  [ 3930E508DDA46C1FF68FD963F350AA0A, BF63F9C7AB30E2A8199D65EDD6DCBB797C93A4A0B972373643FBE1C38BCFA697 ] CNG             C:\Windows\system32\Drivers\cng.sys
20:00:46.0092 0x0520  CNG - ok
20:00:46.0170 0x0520  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
20:00:46.0233 0x0520  CompositeBus - ok
20:00:46.0233 0x0520  COMSysApp - ok
20:00:46.0248 0x0520  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
20:00:46.0420 0x0520  condrv - ok
20:00:46.0467 0x0520  [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
20:00:46.0577 0x0520  CryptSvc - ok
20:00:46.0639 0x0520  [ EE2F3C0D6ADBC975D6B621EC15ACF4E2, D158C0FACA6344BCD77616EC3D23212F9FD76D7D0C834ACA51998B80162106D5 ] CSC             C:\Windows\system32\drivers\csc.sys
20:00:46.0780 0x0520  CSC - ok
20:00:46.0874 0x0520  [ 936D9E2871CEEFF6A33695D98374367B, C30D42E870F196C4FA20AF95C7B9D9C9C5414D6DDE71268F88C3FC5BF372E61B ] CscService      C:\Windows\System32\cscsvc.dll
20:00:46.0967 0x0520  CscService - ok
20:00:46.0999 0x0520  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
20:00:47.0030 0x0520  dam - ok
20:00:47.0139 0x0520  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch      C:\Windows\system32\rpcss.dll
20:00:47.0311 0x0520  DcomLaunch - ok
20:00:47.0389 0x0520  [ D249C3A58A4FCF755EF4C94F7047E015, 68C044CE2DB93FB502F85F6E081EA164F6E6DCBA6B3EE2A5CBDA122065E522F8 ] defragsvc       C:\Windows\System32\defragsvc.dll
20:00:47.0514 0x0520  defragsvc - ok
20:00:47.0561 0x0520  [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\Windows\system32\das.dll
20:00:47.0670 0x0520  DeviceAssociationService - ok
20:00:47.0749 0x0520  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
20:00:47.0842 0x0520  DeviceInstall - ok
20:00:47.0889 0x0520  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
20:00:48.0061 0x0520  Dfsc - ok
20:00:48.0170 0x0520  [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] Dhcp            C:\Windows\system32\dhcpcore.dll
20:00:48.0342 0x0520  Dhcp - ok
20:00:48.0373 0x0520  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
20:00:48.0405 0x0520  disk - ok
20:00:48.0436 0x0520  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
20:00:48.0514 0x0520  dmvsc - ok
20:00:48.0561 0x0520  [ 05CB5910B3CA6019FC3CCA815EE06FFB, 8FA532ED500BB1F08E8034A6125BDD53B74D5E6AB0A83A6185B07AAFCD90AA82 ] DNE             C:\Windows\system32\DRIVERS\dne64x.sys
20:00:48.0592 0x0520  DNE - ok
20:00:48.0655 0x0520  [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
20:00:48.0874 0x0520  Dnscache - ok
20:00:48.0905 0x0520  [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc         C:\Windows\System32\dot3svc.dll
20:00:48.0983 0x0520  dot3svc - ok
20:00:48.0999 0x0520  [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS             C:\Windows\system32\dps.dll
20:00:49.0108 0x0520  DPS - ok
20:00:49.0155 0x0520  [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
20:00:49.0186 0x0520  drmkaud - ok
20:00:49.0233 0x0520  [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
20:00:49.0295 0x0520  DsmSvc - ok
20:00:49.0467 0x0520  [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
20:00:49.0655 0x0520  DXGKrnl - ok
20:00:49.0889 0x0520  [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost         C:\Windows\System32\eapsvc.dll
20:00:49.0936 0x0520  Eaphost - ok
20:00:50.0233 0x0520  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
20:00:50.0624 0x0520  ebdrv - ok
20:00:50.0702 0x0520  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS             C:\Windows\System32\lsass.exe
20:00:50.0717 0x0520  EFS - ok
20:00:50.0764 0x0520  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
20:00:50.0780 0x0520  EhStorClass - ok
20:00:50.0811 0x0520  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
20:00:50.0858 0x0520  EhStorTcgDrv - ok
20:00:50.0889 0x0520  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
20:00:50.0952 0x0520  ErrDev - ok
20:00:50.0999 0x0520  [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem     C:\Windows\system32\es.dll
20:00:51.0108 0x0520  EventSystem - ok
20:00:51.0139 0x0520  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
20:00:51.0217 0x0520  exfat - ok
20:00:51.0233 0x0520  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
20:00:51.0264 0x0520  fastfat - ok
20:00:51.0436 0x0520  [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax             C:\Windows\system32\fxssvc.exe
20:00:51.0592 0x0520  Fax - ok
20:00:51.0608 0x0520  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
20:00:51.0655 0x0520  fdc - ok
20:00:51.0702 0x0520  [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost         C:\Windows\system32\fdPHost.dll
20:00:51.0749 0x0520  fdPHost - ok
20:00:51.0764 0x0520  [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub        C:\Windows\system32\fdrespub.dll
20:00:51.0827 0x0520  FDResPub - ok
20:00:51.0858 0x0520  [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc           C:\Windows\system32\fhsvc.dll
20:00:51.0952 0x0520  fhsvc - ok
20:00:51.0999 0x0520  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
20:00:52.0014 0x0520  FileInfo - ok
20:00:52.0061 0x0520  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
20:00:52.0108 0x0520  Filetrace - ok
20:00:52.0139 0x0520  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
20:00:52.0186 0x0520  flpydisk - ok
20:00:52.0280 0x0520  [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
20:00:52.0342 0x0520  FltMgr - ok
20:00:52.0436 0x0520  [ 10B5AB16C34D4E316EDB825386F57DA6, FE5ABF47AA153EF35821C841025A99C77B97C09ED6B649A88B3609C00FE8281B ] FLxHCIc         C:\Windows\System32\drivers\FLxHCIc.sys
20:00:52.0530 0x0520  FLxHCIc - ok
20:00:52.0530 0x0520  [ 66DE264C2DEFE746CB2E71F3A5EB5C2C, 628CEABF6A6A550524BB5D104296AAFCF76A9DB86E83D26B7D4A9B6BEB3EF55E ] FLxHCIh         C:\Windows\System32\drivers\FLxHCIh.sys
20:00:52.0592 0x0520  FLxHCIh - ok
20:00:52.0702 0x0520  [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache       C:\Windows\system32\FntCache.dll
20:00:52.0858 0x0520  FontCache - ok
20:00:52.0983 0x0520  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:00:53.0030 0x0520  FontCache3.0.0.0 - ok
20:00:53.0155 0x0520  [ 959919A8138D65AC6E9BD997CE747C4D, 3B0ED1A753B2538446EC0EEDF9430CAA3451F7DBAB7DAE353AB52FDC8FFD1553 ] FPLService      C:\Program Files\TrueSuite\TrueSuite.Service.exe
20:00:53.0202 0x0520  FPLService - ok
20:00:53.0264 0x0520  [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
20:00:53.0296 0x0520  FsDepends - ok
20:00:53.0311 0x0520  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
20:00:53.0327 0x0520  Fs_Rec - ok
20:00:53.0452 0x0520  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
20:00:53.0514 0x0520  fvevol - ok
20:00:53.0608 0x0520  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
20:00:53.0655 0x0520  FxPPM - ok
20:00:53.0670 0x0520  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
20:00:53.0702 0x0520  gagp30kx - ok
20:00:53.0733 0x0520  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
20:00:53.0780 0x0520  gencounter - ok
20:00:53.0983 0x0520  [ C2730FE9713C1C474257A7085386B11E, 7D35D00D2B455841C8C9A87CE92885CD22F4B8B6690CB21443ED1B515117EF95 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
20:00:54.0171 0x0520  GfExperienceService - ok
20:00:54.0249 0x0520  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
20:00:54.0280 0x0520  GPIOClx0101 - ok
20:00:54.0405 0x0520  [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] gpsvc           C:\Windows\System32\gpsvc.dll
20:00:54.0624 0x0520  gpsvc - ok
20:00:54.0686 0x0520  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:00:54.0717 0x0520  gupdate - ok
20:00:54.0733 0x0520  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:00:54.0749 0x0520  gupdatem - ok
20:00:54.0874 0x0520  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:00:54.0967 0x0520  HdAudAddService - ok
20:00:54.0999 0x0520  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
20:00:55.0108 0x0520  HDAudBus - ok
20:00:55.0139 0x0520  [ B6AC71AAA2B10848F57FC49D55A651AF, 4FAD833654E86F9FAF972AC8AF87FD4A9A765B26B96F096BBD63506B5D521A91 ] HECIx64         C:\Windows\System32\drivers\HECIx64.sys
20:00:55.0155 0x0520  HECIx64 - ok
20:00:55.0202 0x0520  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
20:00:55.0249 0x0520  HidBatt - ok
20:00:55.0296 0x0520  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
20:00:55.0405 0x0520  HidBth - ok
20:00:55.0436 0x0520  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
20:00:55.0483 0x0520  hidi2c - ok
20:00:55.0483 0x0520  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
20:00:55.0546 0x0520  HidIr - ok
20:00:55.0577 0x0520  [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv         C:\Windows\system32\hidserv.dll
20:00:55.0639 0x0520  hidserv - ok
20:00:55.0671 0x0520  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
20:00:55.0811 0x0520  HidUsb - ok
20:00:55.0858 0x0520  [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc          C:\Windows\system32\kmsvc.dll
20:00:55.0905 0x0520  hkmsvc - ok
20:00:55.0936 0x0520  [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:00:56.0046 0x0520  HomeGroupListener - ok
20:00:56.0092 0x0520  [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:00:56.0233 0x0520  HomeGroupProvider - ok
20:00:56.0264 0x0520  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
20:00:56.0311 0x0520  HpSAMD - ok
20:00:56.0436 0x0520  [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
20:00:56.0546 0x0520  HTTP - ok
20:00:56.0592 0x0520  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
20:00:56.0624 0x0520  hwpolicy - ok
20:00:56.0655 0x0520  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
20:00:56.0717 0x0520  hyperkbd - ok
20:00:56.0733 0x0520  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
20:00:56.0764 0x0520  HyperVideo - ok
20:00:56.0811 0x0520  [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
20:00:56.0842 0x0520  i8042prt - ok
20:00:56.0858 0x0520  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
20:00:56.0874 0x0520  iaLPSSi_GPIO - ok
20:00:56.0921 0x0520  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
20:00:56.0952 0x0520  iaLPSSi_I2C - ok
20:00:57.0139 0x0520  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
20:00:57.0264 0x0520  iaStorAV - ok
20:00:57.0311 0x0520  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
20:00:57.0374 0x0520  iaStorV - ok
20:00:57.0374 0x0520  IEEtwCollectorService - ok
20:00:58.0281 0x0520  [ E6D200304A8D739597678807820ABB43, 05194D2625F48C5065318C28B242A03A1C3BDC441087DAFF777203506CE4CF6E ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
20:00:59.0344 0x0520  igfx - ok
20:00:59.0562 0x0520  [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] IKEEXT          C:\Windows\System32\ikeext.dll
20:00:59.0719 0x0520  IKEEXT - ok
20:00:59.0734 0x0520  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
20:00:59.0750 0x0520  intelide - ok
20:00:59.0797 0x0520  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
20:00:59.0812 0x0520  intelpep - ok
20:00:59.0859 0x0520  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
20:00:59.0906 0x0520  intelppm - ok
20:00:59.0922 0x0520  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:00:59.0969 0x0520  IpFilterDriver - ok
20:01:00.0094 0x0520  [ ACFEE9487693C2BD573DFCA71D98E17C, A347FD476147CD3568EEE6993B46AFC05A66A4269094CA51572D0FD013FCB535 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
20:01:00.0328 0x0520  iphlpsvc - ok
20:01:00.0359 0x0520  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
20:01:00.0531 0x0520  IPMIDRV - ok
20:01:00.0594 0x0520  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
20:01:00.0687 0x0520  IPNAT - ok
20:01:00.0719 0x0520  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
20:01:00.0750 0x0520  IRENUM - ok
20:01:00.0781 0x0520  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
20:01:00.0813 0x0520  isapnp - ok
20:01:00.0875 0x0520  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
20:01:00.0906 0x0520  iScsiPrt - ok
20:01:00.0953 0x0520  [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
20:01:00.0984 0x0520  kbdclass - ok
20:01:00.0984 0x0520  [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
20:01:01.0016 0x0520  kbdhid - ok
20:01:01.0031 0x0520  [ DB7A09BC90DF20F44F16F8B0F9ED3491, 2DF5E042284D61368A5801B2557351B2C4B1044AA6F966DF4DDCE7B453D1B9AE ] kbldfltr        C:\Windows\system32\drivers\kbldfltr.sys
20:01:01.0047 0x0520  kbldfltr - ok
20:01:01.0062 0x0520  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
20:01:01.0125 0x0520  kdnic - ok
20:01:01.0141 0x0520  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso          C:\Windows\system32\lsass.exe
20:01:01.0156 0x0520  KeyIso - ok
20:01:01.0391 0x0520  [ 00060003E6161944A9963FA9F24102BC, 9FB85A6542F8B17504A40798727266C5F618B09D74963747F06EAF80AE13ECDE ] Kodak AiO Network Discovery Service C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
20:01:01.0422 0x0520  Kodak AiO Network Discovery Service - ok
20:01:01.0562 0x0520  [ 60301F8FDF519FFEC307A686209C33BE, B9A31478707B518967A6200813DCBD4DE03824FBFAB6E35D4FA4DA783FD6305A ] Kodak AiO Status Monitor Service C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
20:01:01.0609 0x0520  Kodak AiO Status Monitor Service - ok
20:01:01.0672 0x0520  [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
20:01:01.0703 0x0520  KSecDD - ok
20:01:01.0750 0x0520  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
20:01:01.0781 0x0520  KSecPkg - ok
20:01:01.0781 0x0520  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
20:01:01.0828 0x0520  ksthunk - ok
20:01:01.0953 0x0520  [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm           C:\Windows\system32\msdtckrm.dll
20:01:02.0063 0x0520  KtmRm - ok
20:01:02.0109 0x0520  [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] LanmanServer    C:\Windows\system32\srvsvc.dll
20:01:02.0297 0x0520  LanmanServer - ok
20:01:02.0359 0x0520  [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:01:02.0406 0x0520  LanmanWorkstation - ok
20:01:02.0516 0x0520  [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
20:01:02.0625 0x0520  lfsvc - ok
20:01:02.0672 0x0520  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
20:01:02.0703 0x0520  lltdio - ok
20:01:02.0750 0x0520  [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
20:01:02.0828 0x0520  lltdsvc - ok
20:01:02.0875 0x0520  [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts         C:\Windows\System32\lmhsvc.dll
20:01:02.0938 0x0520  lmhosts - ok
20:01:02.0953 0x0520  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
20:01:02.0984 0x0520  LSI_SAS - ok
20:01:03.0016 0x0520  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
20:01:03.0047 0x0520  LSI_SAS2 - ok
20:01:03.0062 0x0520  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
20:01:03.0109 0x0520  LSI_SAS3 - ok
20:01:03.0109 0x0520  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
20:01:03.0141 0x0520  LSI_SSS - ok
20:01:03.0281 0x0520  [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM             C:\Windows\System32\lsm.dll
20:01:03.0359 0x0520  LSM - ok
20:01:03.0422 0x0520  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
20:01:03.0453 0x0520  luafv - ok
20:01:03.0516 0x0520  [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
20:01:03.0531 0x0520  MBAMProtector - ok
20:01:03.0798 0x0520  [ 516E29AD03BDF610CC36A95AE692FE42, 09F913B169AD775FF587AE59AEC5DD2A2D8646803F48BF616C74EEC0DE3BE7A2 ] MBAMScheduler   C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
20:01:03.0985 0x0520  MBAMScheduler - ok
20:01:04.0141 0x0520  [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
20:01:04.0282 0x0520  MBAMService - ok
20:01:04.0345 0x0520  [ E9CD058C79EA15B4AA93E259FA713B07, 2B09F65188D8782F9C797545F2F791EC7EAB85D8914B2C0B30BD869C412E3980 ] MBAMSwissArmy   C:\Windows\system32\drivers\MBAMSwissArmy.sys
20:01:04.0376 0x0520  MBAMSwissArmy - ok
20:01:04.0391 0x0520  [ 28B597A61C9AC9B59BC0573D70A62CBF, 032C095ECDAEEE800BD9C7AB08C089E7530A9DD09AE577D1612035F2BFFAA61C ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
20:01:04.0423 0x0520  MBAMWebAccessControl - ok
20:01:04.0454 0x0520  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
20:01:04.0485 0x0520  megasas - ok
20:01:04.0532 0x0520  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
20:01:04.0626 0x0520  megasr - ok
20:01:04.0688 0x0520  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS           C:\Windows\system32\mmcss.dll
20:01:04.0766 0x0520  MMCSS - ok
20:01:04.0782 0x0520  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
20:01:04.0813 0x0520  Modem - ok
20:01:04.0860 0x0520  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
20:01:04.0938 0x0520  monitor - ok
20:01:04.0938 0x0520  [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
20:01:04.0970 0x0520  mouclass - ok
20:01:04.0970 0x0520  [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid          C:\Windows\System32\drivers\mouhid.sys
20:01:05.0016 0x0520  mouhid - ok
20:01:05.0032 0x0520  [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
20:01:05.0048 0x0520  mountmgr - ok
20:01:05.0095 0x0520  [ C61EE1594B023725B77915F79E656618, A4AD1952E16C7D2A5BC03E6C339BE0B08165A3231443B6A883E5868FBE13E31F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
20:01:05.0141 0x0520  MozillaMaintenance - ok
20:01:05.0173 0x0520  [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
20:01:05.0220 0x0520  mpsdrv - ok
20:01:05.0313 0x0520  [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc          C:\Windows\system32\mpssvc.dll
20:01:05.0407 0x0520  MpsSvc - ok
20:01:05.0438 0x0520  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
20:01:05.0501 0x0520  MRxDAV - ok
20:01:05.0626 0x0520  [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
20:01:05.0735 0x0520  mrxsmb - ok
20:01:05.0782 0x0520  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:01:05.0891 0x0520  mrxsmb10 - ok
20:01:05.0907 0x0520  [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:01:05.0987 0x0520  mrxsmb20 - ok
20:01:06.0034 0x0520  [ E0927EFA25D473367C3341B9F5969779, B77A162BD3334557623674373D8EC2BE7CC0B359DF06304E467ABFFEE0530271 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
20:01:06.0159 0x0520  MsBridge - ok
20:01:06.0190 0x0520  [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC           C:\Windows\System32\msdtc.exe
20:01:06.0237 0x0520  MSDTC - ok
20:01:06.0284 0x0520  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
20:01:06.0331 0x0520  Msfs - ok
20:01:06.0347 0x0520  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
20:01:06.0378 0x0520  msgpiowin32 - ok
20:01:06.0394 0x0520  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
20:01:06.0425 0x0520  mshidkmdf - ok
20:01:06.0456 0x0520  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
20:01:06.0487 0x0520  mshidumdf - ok
20:01:06.0534 0x0520  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
20:01:06.0550 0x0520  msisadrv - ok
20:01:06.0597 0x0520  [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
20:01:06.0628 0x0520  MSiSCSI - ok
20:01:06.0644 0x0520  msiserver - ok
20:01:06.0691 0x0520  [ D22AE5313F6B7EFDDD8C117B5501F4A3, 1937EEE33BF9C4485F172B10FB17AEF3F3B8978371307F49C3338D74D96A8389 ] MsKeyboardFilter C:\Windows\System32\KeyboardFilterSvc.dll
20:01:06.0722 0x0520  MsKeyboardFilter - ok
20:01:06.0753 0x0520  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
20:01:06.0784 0x0520  MSKSSRV - ok
20:01:06.0816 0x0520  [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
20:01:06.0862 0x0520  MsLldp - ok
20:01:06.0878 0x0520  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
20:01:06.0909 0x0520  MSPCLOCK - ok
20:01:06.0941 0x0520  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
20:01:06.0972 0x0520  MSPQM - ok
20:01:07.0019 0x0520  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
20:01:07.0081 0x0520  MsRPC - ok
20:01:07.0097 0x0520  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
20:01:07.0128 0x0520  mssmbios - ok
20:01:07.0128 0x0520  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
20:01:07.0175 0x0520  MSTEE - ok
20:01:07.0206 0x0520  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
20:01:07.0253 0x0520  MTConfig - ok
20:01:07.0300 0x0520  [ 032D35C996F21D19A205A7C8F0B76F3C, 1A1C5BD7204BB937A05E201BCC0840B2C8E4B273D8E1D6D9407264FB4C57F014 ] MTsensor        C:\Windows\system32\DRIVERS\ATK64AMD.sys
20:01:07.0316 0x0520  MTsensor - ok
20:01:07.0331 0x0520  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
20:01:07.0362 0x0520  Mup - ok
20:01:07.0378 0x0520  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
20:01:07.0425 0x0520  mvumis - ok
20:01:07.0472 0x0520  [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent        C:\Windows\system32\qagentRT.dll
20:01:07.0534 0x0520  napagent - ok
20:01:07.0628 0x0520  [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
20:01:07.0722 0x0520  NativeWifiP - ok
20:01:07.0753 0x0520  [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc          C:\Windows\System32\ncasvc.dll
20:01:07.0800 0x0520  NcaSvc - ok
20:01:07.0847 0x0520  [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService      C:\Windows\System32\ncbservice.dll
20:01:07.0925 0x0520  NcbService - ok
20:01:07.0956 0x0520  [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
20:01:08.0097 0x0520  NcdAutoSetup - ok
20:01:08.0300 0x0520  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
20:01:08.0425 0x0520  NDIS - ok
20:01:08.0472 0x0520  [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
20:01:08.0519 0x0520  NdisCap - ok
20:01:08.0550 0x0520  [ B1AA3B19A2E596A59224F893E01A5A75, E08696CA5E087E51AC3E64D4FB8490EEADD612DDF30C9A94DD1BD1BA124B71B7 ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
20:01:08.0628 0x0520  NdisImPlatform - ok
20:01:08.0644 0x0520  [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
20:01:08.0691 0x0520  NdisTapi - ok
20:01:08.0722 0x0520  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
20:01:08.0753 0x0520  Ndisuio - ok
20:01:08.0784 0x0520  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
20:01:08.0831 0x0520  NdisVirtualBus - ok
20:01:08.0862 0x0520  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
20:01:08.0925 0x0520  NdisWan - ok
20:01:08.0941 0x0520  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
20:01:08.0972 0x0520  NdisWanLegacy - ok
20:01:09.0019 0x0520  [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
20:01:09.0066 0x0520  NDProxy - ok
20:01:09.0097 0x0520  [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
20:01:09.0144 0x0520  Ndu - ok
20:01:09.0144 0x0520  [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
20:01:09.0191 0x0520  NetBIOS - ok
20:01:09.0206 0x0520  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
20:01:09.0269 0x0520  NetBT - ok
20:01:09.0300 0x0520  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon        C:\Windows\system32\lsass.exe
20:01:09.0316 0x0520  Netlogon - ok
20:01:09.0362 0x0520  [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman          C:\Windows\System32\netman.dll
20:01:09.0441 0x0520  Netman - ok
20:01:09.0550 0x0520  [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm        C:\Windows\System32\netprofmsvc.dll
20:01:09.0612 0x0520  netprofm - ok
20:01:09.0675 0x0520  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:01:09.0769 0x0520  NetTcpPortSharing - ok
20:01:09.0816 0x0520  [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc          C:\Windows\system32\DRIVERS\netvsc63.sys
20:01:09.0878 0x0520  netvsc - ok
20:01:09.0925 0x0520  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
20:01:10.0034 0x0520  NlaSvc - ok
20:01:10.0050 0x0520  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
20:01:10.0097 0x0520  Npfs - ok
20:01:10.0113 0x0520  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
20:01:10.0191 0x0520  npsvctrig - ok
20:01:10.0222 0x0520  [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi             C:\Windows\system32\nsisvc.dll
20:01:10.0253 0x0520  nsi - ok
20:01:10.0269 0x0520  [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
20:01:10.0316 0x0520  nsiproxy - ok
20:01:10.0659 0x0520  [ 038C77D577900EE39410662478BB0D50, A33AAFD5750245C17A47EC71F3C6EAD2E0925CAD34C65AB3E6CEE44756C668E6 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
20:01:10.0847 0x0520  Ntfs - ok
20:01:10.0878 0x0520  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
20:01:10.0925 0x0520  Null - ok
20:01:12.0340 0x0520  [ F554291C0A11F5B713B54C5886D4AA31, 65B7DF4BB3DFF616DC2C863988E30F901E14221C00E2A99A2079E19D91D93BAE ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
20:01:13.0324 0x0520  nvlddmkm - ok
20:01:13.0527 0x0520  [ F9CF3FB8DD81B390783532B3C98D6976, 8C94638136CFAEB3ED6DD7CE2059E98B64B15918DDB0796CC0B88474EE99F5BF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
20:01:13.0683 0x0520  NvNetworkService - ok
20:01:13.0699 0x0520  [ 3F403A74349FCE04DF8D7BE24E6A02BD, 0167E289725DB55BEE2792CF8366B62FB6B209C9B815F687C4DAC388125223C3 ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
20:01:13.0730 0x0520  nvpciflt - ok
20:01:13.0762 0x0520  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
20:01:13.0808 0x0520  nvraid - ok
20:01:13.0829 0x0520  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
20:01:13.0873 0x0520  nvstor - ok
20:01:13.0936 0x0520  [ 3A7B0570D896602E37EAF80EC3D1615A, 1F5A71432F96731115ADA2A50E605923666188D08F9FD748424AB6588D0E1482 ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
20:01:13.0967 0x0520  NvStreamKms - ok
20:01:13.0967 0x0520  NvStreamSvc - ok
20:01:14.0045 0x0520  [ 8E99BF264C1F20934A67E91BC9F4FB20, 89AA8823B751F4CEF4E862F1270E7EFDA81A6E5D9C5F72625CBF83C70B312353 ] nvsvc           C:\Windows\system32\nvvsvc.exe
20:01:14.0170 0x0520  nvsvc - ok
20:01:14.0202 0x0520  [ DBFE7B2DF103F74AE51840B3C5F25FE9, 436CAA417FD24BA870F117FA4BABA2AB694825795508BCFCC8C927CC2D5BBC5E ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
20:01:14.0233 0x0520  nvvad_WaveExtensible - ok
20:01:14.0264 0x0520  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
20:01:14.0311 0x0520  nv_agp - ok
20:01:14.0373 0x0520  [ 11E0B35479C895888BA3D7F619DCFFF3, 6ED82C19898101EC00BD64A9F90595C3D20AD2D2902AA8765B740FB3B9312DDF ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:01:14.0420 0x0520  ose64 - ok
20:01:14.0467 0x0520  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
20:01:14.0592 0x0520  p2pimsvc - ok
20:01:14.0655 0x0520  [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc          C:\Windows\system32\p2psvc.dll
20:01:14.0764 0x0520  p2psvc - ok
20:01:14.0795 0x0520  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
20:01:14.0842 0x0520  Parport - ok
20:01:14.0873 0x0520  [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
20:01:14.0905 0x0520  partmgr - ok
20:01:14.0967 0x0520  [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc          C:\Windows\System32\pcasvc.dll
20:01:15.0061 0x0520  PcaSvc - ok
20:01:15.0123 0x0520  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
20:01:15.0170 0x0520  pci - ok
20:01:15.0186 0x0520  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
20:01:15.0217 0x0520  pciide - ok
20:01:15.0248 0x0520  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
20:01:15.0280 0x0520  pcmcia - ok
20:01:15.0311 0x0520  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
20:01:15.0342 0x0520  pcw - ok
20:01:15.0373 0x0520  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
20:01:15.0405 0x0520  pdc - ok
20:01:15.0483 0x0520  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
20:01:15.0592 0x0520  PEAUTH - ok
20:01:15.0780 0x0520  [ 084DE525DFE82AE7453DD527390FA110, 8216AE63AE740D97204CDED6543B66FC1FB55DB86D42FBA0EC629361C40F9EC0 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
20:01:15.0983 0x0520  PeerDistSvc - ok
20:01:16.0108 0x0520  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
20:01:16.0202 0x0520  PerfHost - ok
20:01:16.0311 0x0520  [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla             C:\Windows\system32\pla.dll
20:01:16.0514 0x0520  pla - ok
20:01:16.0561 0x0520  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
20:01:16.0592 0x0520  PlugPlay - ok
20:01:16.0608 0x0520  [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
20:01:16.0655 0x0520  PNRPAutoReg - ok
20:01:16.0686 0x0520  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
20:01:16.0733 0x0520  PNRPsvc - ok
20:01:16.0780 0x0520  [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
20:01:16.0858 0x0520  PolicyAgent - ok
20:01:16.0905 0x0520  [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power           C:\Windows\system32\umpo.dll
20:01:16.0983 0x0520  Power - ok
20:01:17.0014 0x0520  [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
20:01:17.0061 0x0520  PptpMiniport - ok
20:01:17.0639 0x0520  [ 3C96A45CA3403A276B0F045C448EC27B, C0011DB8C5A85817CAF815CC0095EE2C1CDD5964DCD8EAF4C35A2495D6A873CC ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
20:01:17.0983 0x0520  PrintNotify - ok
20:01:18.0014 0x0520  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
20:01:18.0077 0x0520  Processor - ok
20:01:18.0124 0x0520  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
20:01:18.0217 0x0520  ProfSvc - ok
20:01:18.0249 0x0520  [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
20:01:18.0295 0x0520  Psched - ok
20:01:18.0358 0x0520  [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE           C:\Windows\system32\qwave.dll
20:01:18.0420 0x0520  QWAVE - ok
20:01:18.0436 0x0520  [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
20:01:18.0483 0x0520  QWAVEdrv - ok
20:01:18.0514 0x0520  [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
20:01:18.0530 0x0520  RasAcd - ok
20:01:18.0577 0x0520  [ 674A4702E4E144E8710ED1A2EC6DD049, 613A921101A6815C9185D5EF3E251A592604E56FADE945BB7E256885CAD473BC ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
20:01:18.0624 0x0520  RasAgileVpn - ok
20:01:18.0655 0x0520  [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto         C:\Windows\System32\rasauto.dll
20:01:18.0702 0x0520  RasAuto - ok
20:01:18.0717 0x0520  [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
20:01:18.0764 0x0520  Rasl2tp - ok
20:01:18.0842 0x0520  [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan          C:\Windows\System32\rasmans.dll
20:01:18.0952 0x0520  RasMan - ok
20:01:18.0967 0x0520  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
20:01:18.0999 0x0520  RasPppoe - ok
20:01:19.0030 0x0520  [ 2B0F1677CDD08967005F34488559BC6F, FFF168EBD171C0B85A448AD1A04F66534E889AE1DC128F68EA3F35D5996C8D39 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
20:01:19.0077 0x0520  RasSstp - ok
20:01:19.0155 0x0520  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
20:01:19.0327 0x0520  rdbss - ok
20:01:19.0342 0x0520  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
20:01:19.0405 0x0520  rdpbus - ok
20:01:19.0436 0x0520  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
20:01:19.0530 0x0520  RDPDR - ok
20:01:19.0608 0x0520  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
20:01:19.0624 0x0520  RdpVideoMiniport - ok
20:01:19.0670 0x0520  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
20:01:19.0702 0x0520  rdyboost - ok
20:01:19.0780 0x0520  [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
20:01:19.0874 0x0520  ReFS - ok
20:01:19.0952 0x0520  [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess    C:\Windows\System32\mprdim.dll
20:01:19.0999 0x0520  RemoteAccess - ok
20:01:20.0030 0x0520  [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry  C:\Windows\system32\regsvc.dll
20:01:20.0077 0x0520  RemoteRegistry - ok
20:01:20.0124 0x0520  [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
20:01:20.0186 0x0520  RpcEptMapper - ok
20:01:20.0217 0x0520  [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator      C:\Windows\system32\locator.exe
20:01:20.0249 0x0520  RpcLocator - ok
20:01:20.0467 0x0520  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs           C:\Windows\system32\rpcss.dll
20:01:20.0514 0x0520  RpcSs - ok
20:01:20.0561 0x0520  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
20:01:20.0624 0x0520  rspndr - ok
20:01:20.0749 0x0520  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
20:01:20.0858 0x0520  RTL8168 - ok
20:01:20.0889 0x0520  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
20:01:20.0936 0x0520  s3cap - ok
20:01:20.0967 0x0520  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs           C:\Windows\system32\lsass.exe
20:01:20.0983 0x0520  SamSs - ok
20:01:21.0014 0x0520  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
20:01:21.0045 0x0520  sbp2port - ok
20:01:21.0092 0x0520  [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr        C:\Windows\System32\SCardSvr.dll
20:01:21.0155 0x0520  SCardSvr - ok
20:01:21.0186 0x0520  [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
20:01:21.0217 0x0520  ScDeviceEnum - ok
20:01:21.0249 0x0520  [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
20:01:21.0280 0x0520  scfilter - ok
20:01:21.0483 0x0520  [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] Schedule        C:\Windows\system32\schedsvc.dll
20:01:21.0624 0x0520  Schedule - ok
20:01:21.0655 0x0520  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc     C:\Windows\System32\certprop.dll
20:01:21.0686 0x0520  SCPolicySvc - ok
20:01:21.0764 0x0520  [ 7B7C482CF48E6EE33664340D1A78E6FE, CE5077C4B0372F4F9F02B0B37AE58C0DAEFCA9D242065731A23F072506430575 ] sdbus           C:\Windows\System32\drivers\sdbus.sys
20:01:21.0796 0x0520  sdbus - ok
20:01:21.0858 0x0520  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
20:01:21.0889 0x0520  sdstor - ok
20:01:21.0905 0x0520  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
20:01:21.0936 0x0520  secdrv - ok
20:01:21.0967 0x0520  [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon        C:\Windows\system32\seclogon.dll
20:01:21.0999 0x0520  seclogon - ok
20:01:22.0030 0x0520  [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS            C:\Windows\System32\sens.dll
20:01:22.0092 0x0520  SENS - ok
20:01:22.0124 0x0520  [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
20:01:22.0280 0x0520  SensrSvc - ok
20:01:22.0295 0x0520  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
20:01:22.0327 0x0520  SerCx - ok
20:01:22.0358 0x0520  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
20:01:22.0389 0x0520  SerCx2 - ok
20:01:22.0405 0x0520  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\Windows\System32\drivers\serenum.sys
20:01:22.0436 0x0520  Serenum - ok
20:01:22.0483 0x0520  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
20:01:22.0546 0x0520  Serial - ok
20:01:22.0546 0x0520  [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
20:01:22.0577 0x0520  sermouse - ok
20:01:22.0842 0x0520  [ 3C19C8CBC7917FEE066CB7A116D3F326, 3656E89F194BD27CD67D4F06A4A01E005F129E77E478F953AC1DE53D168CD9A9 ] Service KMSELDI C:\Program Files\KMSpico\Service_KMS.exe
20:01:23.0030 0x0520  Service KMSELDI - detected UnsignedFile.Multi.Generic ( 1 )
20:01:25.0359 0x0520  Detect skipped due to KSN trusted
20:01:25.0359 0x0520  Service KMSELDI - ok
20:01:25.0547 0x0520  [ 7FA8507F9678B6116EC6C49EEAB13384, 6D0ABE12F1983F3F67665C42CC61921D1424544FE9A7EC7071CEC8DBDEBF76F0 ] ServiceControl_RTE23_3S_GmbH C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe
20:01:25.0609 0x0520  ServiceControl_RTE23_3S_GmbH - detected UnsignedFile.Multi.Generic ( 1 )
20:01:28.0124 0x0520  ServiceControl_RTE23_3S_GmbH ( UnsignedFile.Multi.Generic ) - warning
20:01:30.0609 0x0520  [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv      C:\Windows\system32\sessenv.dll
20:01:30.0718 0x0520  SessionEnv - ok
20:01:30.0749 0x0520  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
20:01:30.0796 0x0520  sfloppy - ok
20:01:30.0843 0x0520  [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess    C:\Windows\System32\ipnathlp.dll
20:01:30.0999 0x0520  SharedAccess - ok
20:01:31.0062 0x0520  [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:01:31.0140 0x0520  ShellHWDetection - ok
20:01:31.0171 0x0520  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
20:01:31.0218 0x0520  SiSRaid2 - ok
20:01:31.0218 0x0520  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
20:01:31.0265 0x0520  SiSRaid4 - ok
20:01:31.0281 0x0520  [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost         C:\Windows\System32\smphost.dll
20:01:31.0390 0x0520  smphost - ok
20:01:31.0421 0x0520  [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
20:01:31.0484 0x0520  SNMPTRAP - ok
20:01:31.0531 0x0520  [ 240C5C3793206725AA05665851E8C214, 96ADFB85EB1623EB00C251C1C6A1F441A1795F0EBFD10B17DD1CA58E3AE8A90D ] spaceport       C:\Windows\system32\drivers\spaceport.sys
20:01:31.0593 0x0520  spaceport - ok
20:01:31.0624 0x0520  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
20:01:31.0656 0x0520  SpbCx - ok
20:01:31.0718 0x0520  [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] Spooler         C:\Windows\System32\spoolsv.exe
20:01:31.0843 0x0520  Spooler - ok
20:01:32.0234 0x0520  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
20:01:32.0796 0x0520  sppsvc - ok
20:01:32.0874 0x0520  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
20:01:33.0046 0x0520  srv - ok
20:01:33.0124 0x0520  [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
20:01:33.0202 0x0520  srv2 - ok
20:01:33.0249 0x0520  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
20:01:33.0359 0x0520  srvnet - ok
20:01:33.0406 0x0520  [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
20:01:33.0468 0x0520  SSDPSRV - ok
20:01:33.0484 0x0520  [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
20:01:33.0531 0x0520  SstpSvc - ok
20:01:33.0672 0x0520  [ 49D9C17FDDFAC66F27FA735E94923216, 18C8FE5B794927989CDD3BB7A5500C73CCC23559470EEB37D42FD9AD04098C0D ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
20:01:33.0735 0x0520  Stereo Service - ok
20:01:33.0766 0x0520  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
20:01:33.0797 0x0520  stexstor - ok
20:01:33.0828 0x0520  [ 2A997C64F9B2584D81FA6749FE36A887, D26F5BC591ED46B96B2ACFDF555C2BF42F4915A22B12E4139ACEF7DE7AC303A7 ] StillCam        C:\Windows\system32\DRIVERS\serscan.sys
20:01:33.0907 0x0520  StillCam - ok
20:01:34.0062 0x0520  [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc          C:\Windows\System32\wiaservc.dll
20:01:34.0249 0x0520  stisvc - ok
20:01:34.0280 0x0520  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
20:01:34.0312 0x0520  storahci - ok
20:01:34.0327 0x0520  [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
20:01:34.0358 0x0520  storflt - ok
20:01:34.0405 0x0520  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
20:01:34.0437 0x0520  stornvme - ok
20:01:34.0468 0x0520  [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc         C:\Windows\system32\storsvc.dll
20:01:34.0577 0x0520  StorSvc - ok
20:01:34.0608 0x0520  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
20:01:34.0640 0x0520  storvsc - ok
20:01:34.0655 0x0520  [ 03618F935379614837F915D04C45FC0E, 9CC0CBA7AFC58E7F921C13FA3F5269714F1F827535A311E11EA48689C4D539DE ] storvsp         C:\Windows\System32\drivers\storvsp.sys
20:01:34.0749 0x0520  storvsp - ok
20:01:34.0765 0x0520  [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc           C:\Windows\system32\svsvc.dll
20:01:34.0812 0x0520  svsvc - ok
20:01:34.0827 0x0520  [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum          C:\Windows\System32\drivers\swenum.sys
20:01:34.0858 0x0520  swenum - ok
20:01:34.0968 0x0520  [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv           C:\Windows\System32\swprv.dll
20:01:35.0108 0x0520  swprv - ok
20:01:35.0390 0x0520  [ 420BFFA74350020E0AD6F22E73CB63B6, 3D4696A00A861F87A362A6FA04481E0DC8BA532EBA131645D16B34D396F84CF9 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
20:01:35.0515 0x0520  SynTP - ok
20:01:35.0718 0x0520  [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain         C:\Windows\system32\sysmain.dll
20:01:35.0859 0x0520  SysMain - ok
20:01:35.0937 0x0520  [ FD4EA8E9232ADD51DC31C295DDEF2768, 3EA40D7376AB5AA5DA2BCF4745C79F7BF819363466967ECC3CD15ADECBFD7244 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
20:01:36.0033 0x0520  SystemEventsBroker - ok
20:01:36.0065 0x0520  [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\Windows\System32\TabSvc.dll
20:01:36.0096 0x0520  TabletInputService - ok
20:01:36.0143 0x0520  [ 3C32FF010F869BC184DF71290477384E, 55CFCEC7F026C6E2E96A2FBE846AB513BB12BB0348735274FE1B71AF019C837B ] tap0901         C:\Windows\system32\DRIVERS\tap0901.sys
20:01:36.0174 0x0520  tap0901 - ok
20:01:36.0205 0x0520  [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv         C:\Windows\System32\tapisrv.dll
20:01:36.0268 0x0520  TapiSrv - ok
20:01:36.0440 0x0520  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
20:01:36.0659 0x0520  Tcpip - ok
20:01:37.0018 0x0520  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
20:01:37.0205 0x0520  TCPIP6 - ok
20:01:37.0252 0x0520  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
20:01:37.0346 0x0520  tcpipreg - ok
20:01:37.0377 0x0520  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
20:01:37.0424 0x0520  tdx - ok
20:01:37.0440 0x0520  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
20:01:37.0471 0x0520  terminpt - ok
20:01:37.0643 0x0520  [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService     C:\Windows\System32\termsrv.dll
20:01:37.0799 0x0520  TermService - ok
20:01:37.0846 0x0520  [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes          C:\Windows\system32\themeservice.dll
20:01:37.0893 0x0520  Themes - ok
20:01:37.0940 0x0520  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER     C:\Windows\system32\mmcss.dll
20:01:37.0971 0x0520  THREADORDER - ok
20:01:38.0018 0x0520  [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
20:01:38.0080 0x0520  TimeBroker - ok
20:01:38.0112 0x0520  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
20:01:38.0143 0x0520  TPM - ok
20:01:38.0159 0x0520  [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks          C:\Windows\System32\trkwks.dll
20:01:38.0190 0x0520  TrkWks - ok
20:01:38.0268 0x0520  [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:01:38.0393 0x0520  TrustedInstaller - ok
20:01:38.0440 0x0520  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
20:01:38.0565 0x0520  TsUsbFlt - ok
20:01:38.0580 0x0520  [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
20:01:38.0612 0x0520  TsUsbGD - ok
20:01:38.0643 0x0520  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
20:01:38.0690 0x0520  tunnel - ok
20:01:38.0721 0x0520  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
20:01:38.0752 0x0520  uagp35 - ok
20:01:38.0784 0x0520  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
20:01:38.0799 0x0520  UASPStor - ok
20:01:38.0893 0x0520  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
20:01:38.0940 0x0520  UCX01000 - ok
20:01:38.0971 0x0520  [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
20:01:39.0049 0x0520  udfs - ok
20:01:39.0112 0x0520  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
20:01:39.0143 0x0520  UEFI - ok
20:01:39.0174 0x0520  [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
20:01:39.0221 0x0520  UI0Detect - ok
20:01:39.0237 0x0520  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
20:01:39.0268 0x0520  uliagpkx - ok
20:01:39.0299 0x0520  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
20:01:39.0331 0x0520  umbus - ok
20:01:39.0346 0x0520  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
20:01:39.0377 0x0520  UmPass - ok
20:01:39.0409 0x0520  [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService    C:\Windows\System32\umrdp.dll
20:01:39.0471 0x0520  UmRdpService - ok
20:01:39.0518 0x0520  [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost        C:\Windows\System32\upnphost.dll
20:01:39.0596 0x0520  upnphost - ok
20:01:39.0659 0x0520  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
20:01:39.0705 0x0520  usbccgp - ok
20:01:39.0784 0x0520  [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
20:01:39.0815 0x0520  usbcir - ok
20:01:39.0862 0x0520  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
20:01:39.0893 0x0520  usbehci - ok
20:01:39.0940 0x0520  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
20:01:40.0002 0x0520  usbhub - ok
20:01:40.0065 0x0520  [ 65392F3F3F65E4C6CC82A0F4F8A0B051, C11B662A28D95820717DFFC6B76DBB755E4876009A2342E5E3992DE32D6BFF61 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
20:01:40.0127 0x0520  USBHUB3 - ok
20:01:40.0221 0x0520  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
20:01:40.0471 0x0520  usbohci - ok
20:01:40.0487 0x0520  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
20:01:40.0518 0x0520  usbprint - ok
20:01:40.0581 0x0520  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
20:01:40.0612 0x0520  USBSTOR - ok
20:01:40.0643 0x0520  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
20:01:40.0721 0x0520  usbuhci - ok
20:01:40.0784 0x0520  [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
20:01:40.0831 0x0520  usbvideo - ok
20:01:40.0893 0x0520  [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
20:01:40.0940 0x0520  USBXHCI - ok
20:01:40.0971 0x0520  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc        C:\Windows\system32\lsass.exe
20:01:40.0987 0x0520  VaultSvc - ok
20:01:41.0065 0x0520  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
20:01:41.0080 0x0520  vdrvroot - ok
20:01:41.0190 0x0520  [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds             C:\Windows\System32\vds.exe
20:01:41.0362 0x0520  vds - ok
20:01:41.0393 0x0520  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
20:01:41.0424 0x0520  VerifierExt - ok
20:01:41.0565 0x0520  [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
20:01:41.0627 0x0520  vhdmp - ok
20:01:41.0706 0x0520  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
20:01:41.0721 0x0520  viaide - ok
20:01:41.0752 0x0520  [ 3CE922E34DB12D9F3C0EA856BC09687C, E50A1885FBC775E49614989ECFEA4ACBBDDA16AF459CC5361EED9E23CC7CD42C ] Vid             C:\Windows\System32\drivers\Vid.sys
20:01:41.0799 0x0520  Vid - ok
20:01:41.0815 0x0520  [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus           C:\Windows\system32\drivers\vmbus.sys
20:01:41.0846 0x0520  vmbus - ok
20:01:41.0862 0x0520  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
20:01:41.0909 0x0520  VMBusHID - ok
20:01:41.0940 0x0520  [ 68F8C26DEA2D42E8DEC0778943433C80, 81E8F9D62815F94952CEEABD0689473CC330F7890F66872DCD35A43C06ED33CD ] vmbusr          C:\Windows\System32\drivers\vmbusr.sys
20:01:41.0987 0x0520  vmbusr - ok
20:01:42.0034 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
20:01:42.0127 0x0520  vmicguestinterface - ok
20:01:42.0159 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
20:01:42.0206 0x0520  vmicheartbeat - ok
20:01:42.0237 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
20:01:42.0284 0x0520  vmickvpexchange - ok
20:01:42.0440 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv         C:\Windows\System32\ICSvc.dll
20:01:42.0487 0x0520  vmicrdv - ok
20:01:42.0612 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
20:01:42.0643 0x0520  vmicshutdown - ok
20:01:42.0721 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync    C:\Windows\System32\ICSvc.dll
20:01:42.0768 0x0520  vmictimesync - ok
20:01:42.0846 0x0520  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss         C:\Windows\System32\ICSvc.dll
20:01:42.0893 0x0520  vmicvss - ok
20:01:42.0971 0x0520  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
20:01:43.0002 0x0520  volmgr - ok
20:01:43.0034 0x0520  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
20:01:43.0081 0x0520  volmgrx - ok
20:01:43.0190 0x0520  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
20:01:43.0237 0x0520  volsnap - ok
20:01:43.0268 0x0520  [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci            C:\Windows\System32\drivers\vpci.sys
20:01:43.0299 0x0520  vpci - ok
20:01:43.0331 0x0520  [ ADBE96C33D1A5BB1BBAF90B4BC84F523, 6E9C9ED3D51E4B6E494D42ECA6F824AD86D676C12C39BBE6B8BD96366BCB02DA ] vpcivsp         C:\Windows\System32\drivers\vpcivsp.sys
20:01:43.0393 0x0520  vpcivsp - ok
20:01:43.0424 0x0520  [ 0A896CED40823D46BCDCD3AD8D664C96, E68E4E441FBAA361445AE34C08FE625315EE0C0CAA3A0BF08A409546A20020E7 ] vpnpbus         C:\Windows\System32\drivers\vpnpbus.sys
20:01:43.0456 0x0520  vpnpbus - ok
20:01:43.0456 0x0520  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
20:01:43.0502 0x0520  vsmraid - ok
20:01:43.0721 0x0520  [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS             C:\Windows\system32\vssvc.exe
20:01:43.0878 0x0520  VSS - ok
20:01:43.0904 0x0520  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
20:01:43.0967 0x0520  VSTXRAID - ok
20:01:44.0029 0x0520  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
20:01:44.0107 0x0520  vwifibus - ok
20:01:44.0154 0x0520  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
20:01:44.0201 0x0520  vwififlt - ok
20:01:44.0217 0x0520  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
20:01:44.0248 0x0520  vwifimp - ok
20:01:44.0279 0x0520  [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time         C:\Windows\system32\w32time.dll
20:01:44.0373 0x0520  W32Time - ok
20:01:44.0404 0x0520  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
20:01:44.0451 0x0520  WacomPen - ok
20:01:44.0467 0x0520  [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
20:01:44.0514 0x0520  Wanarp - ok
20:01:44.0529 0x0520  [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
20:01:44.0545 0x0520  Wanarpv6 - ok
20:01:44.0826 0x0520  [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine        C:\Windows\system32\wbengine.exe
20:01:45.0045 0x0520  wbengine - ok
20:01:45.0107 0x0520  [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
20:01:45.0232 0x0520  WbioSrvc - ok
20:01:45.0279 0x0520  [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
20:01:45.0342 0x0520  Wcmsvc - ok
20:01:45.0404 0x0520  [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
20:01:45.0561 0x0520  wcncsvc - ok
20:01:45.0592 0x0520  [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:01:45.0670 0x0520  WcsPlugInService - ok
20:01:45.0701 0x0520  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
20:01:45.0733 0x0520  WdBoot - ok
20:01:45.0857 0x0520  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
20:01:45.0967 0x0520  Wdf01000 - ok
20:01:46.0014 0x0520  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
20:01:46.0061 0x0520  WdFilter - ok
20:01:46.0092 0x0520  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
20:01:46.0139 0x0520  WdiServiceHost - ok
20:01:46.0154 0x0520  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
20:01:46.0201 0x0520  WdiSystemHost - ok
20:01:46.0217 0x0520  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
20:01:46.0248 0x0520  WdNisDrv - ok
20:01:46.0264 0x0520  WdNisSvc - ok
20:01:46.0311 0x0520  [ 91B18D7A1702ED589E67C6C81052B955, 5D1DA8B86106A28E50BBCCB36527CC130D41201F5BE1D3DC5F1D6F7ECCF807BA ] WebClient       C:\Windows\System32\webclnt.dll
20:01:46.0358 0x0520  WebClient - ok
20:01:46.0404 0x0520  [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc          C:\Windows\system32\wecsvc.dll
20:01:46.0467 0x0520  Wecsvc - ok
20:01:46.0483 0x0520  [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
20:01:46.0545 0x0520  WEPHOSTSVC - ok
20:01:46.0576 0x0520  [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
20:01:46.0686 0x0520  wercplsupport - ok
20:01:46.0717 0x0520  [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc          C:\Windows\System32\WerSvc.dll
20:01:46.0764 0x0520  WerSvc - ok
20:01:46.0826 0x0520  [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
20:01:46.0858 0x0520  WFPLWFS - ok
20:01:46.0889 0x0520  [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc          C:\Windows\System32\wiarpc.dll
20:01:46.0904 0x0520  WiaRpc - ok
20:01:46.0951 0x0520  [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
20:01:46.0967 0x0520  WIMMount - ok
20:01:46.0982 0x0520  WinDefend - ok
20:01:47.0154 0x0520  [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
20:01:47.0279 0x0520  WinHttpAutoProxySvc - ok
20:01:47.0358 0x0520  [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
20:01:47.0451 0x0520  Winmgmt - ok
20:01:47.0795 0x0520  [ 9CE162EB9057CF079736F4DD00FC0D6C, 412C34557866D2A3B3CDAFA5A03B87C01AACF75E349802E511098B20137028D9 ] WinRM           C:\Windows\system32\WsmSvc.dll
20:01:48.0076 0x0520  WinRM - ok
20:01:48.0358 0x0520  [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] WlanSvc         C:\Windows\System32\wlansvc.dll
20:01:48.0451 0x0520  WlanSvc - ok
20:01:48.0717 0x0520  [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
20:01:48.0889 0x0520  wlidsvc - ok
20:01:48.0920 0x0520  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
20:01:48.0983 0x0520  WmiAcpi - ok
20:01:49.0014 0x0520  [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
20:01:49.0092 0x0520  wmiApSrv - ok
20:01:49.0123 0x0520  WMPNetworkSvc - ok
20:01:49.0201 0x0520  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
20:01:49.0233 0x0520  Wof - ok
20:01:49.0436 0x0520  [ 61BF52E9FFAB27A0B6D621BE26088373, 81291D52C381360E69D51E7DEB05CFAC651A7E9EF781CA23062C0583D0C94708 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
20:01:49.0639 0x0520  workfolderssvc - ok
20:01:49.0701 0x0520  [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
20:01:49.0717 0x0520  wpcfltr - ok
20:01:49.0748 0x0520  [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
20:01:49.0826 0x0520  WPCSvc - ok
20:01:49.0858 0x0520  [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
20:01:49.0983 0x0520  WPDBusEnum - ok
20:01:50.0014 0x0520  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
20:01:50.0045 0x0520  WpdUpFltr - ok
20:01:50.0076 0x0520  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
20:01:50.0108 0x0520  ws2ifsl - ok
20:01:50.0154 0x0520  [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc          C:\Windows\System32\wscsvc.dll
20:01:50.0279 0x0520  wscsvc - ok
20:01:50.0295 0x0520  WSearch - ok
20:01:50.0795 0x0520  [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService       C:\Windows\System32\WSService.dll
20:01:51.0092 0x0520  WSService - ok
20:01:51.0639 0x0520  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv        C:\Windows\system32\wuaueng.dll
20:01:51.0967 0x0520  wuauserv - ok
20:01:52.0014 0x0520  [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
20:01:52.0076 0x0520  WudfPf - ok
20:01:52.0123 0x0520  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
20:01:52.0186 0x0520  WUDFRd - ok
20:01:52.0201 0x0520  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFSensorLP    C:\Windows\System32\drivers\WUDFRd.sys
20:01:52.0233 0x0520  WUDFSensorLP - ok
20:01:52.0264 0x0520  [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
20:01:52.0311 0x0520  wudfsvc - ok
20:01:52.0342 0x0520  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
20:01:52.0373 0x0520  WUDFWpdFs - ok
20:01:52.0514 0x0520  [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc         C:\Windows\System32\wwansvc.dll
20:01:52.0592 0x0520  WwanSvc - ok
20:01:52.0608 0x0520  ================ Scan global ===============================
20:01:52.0655 0x0520  [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\Windows\system32\basesrv.dll
20:01:52.0701 0x0520  [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\Windows\system32\winsrv.dll
20:01:52.0748 0x0520  [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\Windows\system32\sxssrv.dll
20:01:52.0811 0x0520  [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\Windows\system32\services.exe
20:01:52.0842 0x0520  [ Global ] - ok
20:01:52.0842 0x0520  ================ Scan MBR ==================================
20:01:52.0858 0x0520  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:01:53.0999 0x0520  \Device\Harddisk0\DR0 - ok
20:01:53.0999 0x0520  ================ Scan VBR ==================================
20:01:54.0015 0x0520  [ 05197A7EB12194D5E5F3D06F2BD72261 ] \Device\Harddisk0\DR0\Partition1
20:01:54.0031 0x0520  \Device\Harddisk0\DR0\Partition1 - ok
20:01:54.0046 0x0520  [ FA24DA37A19E677A810270CDCF033322 ] \Device\Harddisk0\DR0\Partition2
20:01:54.0062 0x0520  \Device\Harddisk0\DR0\Partition2 - ok
20:01:54.0093 0x0520  [ 61406D839E2CEF7AD386001126860D93 ] \Device\Harddisk0\DR0\Partition3
20:01:54.0109 0x0520  \Device\Harddisk0\DR0\Partition3 - ok
20:01:54.0109 0x0520  ================ Scan generic autorun ======================
20:01:54.0156 0x0520  [ 6A59AE2735639095CD93E58B0893914C, A1BFC257313185BD4BE63275C1B58877151C31DE3173EADE685199E9D28A23D9 ] C:\Windows\system32\igfxtray.exe
20:01:54.0202 0x0520  IgfxTray - ok
20:01:54.0234 0x0520  [ 4341A0AE66759EDC080D92DAA0D9B341, A17D7A56627ECBE7D23E634A9E726BA2E3682A7EB75659AE68A426FF2954C717 ] C:\Windows\system32\hkcmd.exe
20:01:54.0281 0x0520  HotKeysCmds - ok
20:01:54.0327 0x0520  [ 5451A9DA41DA19CDD467616492D4096F, 54CBA128702FFF112AE8BA4B187D00CC3ABAB68D3EB1B915193E50523D4DA73F ] C:\Windows\system32\igfxpers.exe
20:01:54.0390 0x0520  Persistence - ok
20:01:54.0390 0x0520  Nvtmru - ok
20:01:54.0421 0x0520  [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] C:\Windows\system32\rundll32.exe
20:01:54.0484 0x0520  ShadowPlay - ok
20:01:54.0562 0x0520  [ 0E6C6542856BBD380356983179F859E7, 6519E585348DF1E64B147D682D0962191306FEE57E596ECC5E8BD310C14698F6 ] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
20:01:54.0624 0x0520  AmIcoSinglun64 - detected UnsignedFile.Multi.Generic ( 1 )
20:01:56.0984 0x0520  Detect skipped due to KSN trusted
20:01:56.0984 0x0520  AmIcoSinglun64 - ok
20:01:57.0077 0x0520  [ 87E7011A7C691045C3257443CA4F264B, 41E1468E51CF79C164B3F5FEA6717B28DF4E83798CE77D471CFD317E305D8590 ] C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
20:01:57.0124 0x0520  ClientAppLogon - ok
20:01:57.0202 0x0520  [ AE89FEFBD6105A2A186AB6F91CBF4EAB, 5B1E1374EFDEDB55A8A6DFB6A1A94E7E6C8192004E2E4839D2BDE82643DD9F1C ] C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
20:01:57.0249 0x0520  ClientAppLogon32 - ok
20:01:57.0249 0x0520  SynTPEnh - ok
20:01:57.0249 0x0520  SynAsusAcpi - ok
20:01:57.0499 0x0520  [ 74E6E1E62E35661679A6CAFF392B96E9, 03AB89AE3B205DDF31497FDECCFF9BA389892C3DAF05D0D408C2627FBA06164D ] C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe
20:01:57.0749 0x0520  EKIJ5000StatusMonitor - ok
20:01:57.0951 0x0520  [ 046DDF9B31BEC14D03CCC97DD728A4D1, D29F49F870B27553E13F9C1486D9B27A27C41FBEC7ACEC77EDFD5552C941E710 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
20:01:58.0218 0x0520  NvBackend - ok
20:01:58.0312 0x0520  [ 79A3B950988F8D2B81906D0C0473158B, 7D9EDB4F9A4800D31C103CF2BBC93C0F5F31888E93E899C43EC5984B4807C3D8 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
20:01:58.0343 0x0520  ATKMEDIA - ok
20:01:58.0374 0x0520  [ 5AEBF6FA9805C9101220AA4FB4FA17E7, A9B2FC41380211A6C44E839A95676A5BA868CEEBB56D83A780230434C2A20836 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
20:01:58.0405 0x0520  HControlUser - ok
20:01:58.0452 0x0520  [ E20D1C0E5231C91E9341E74839867E85, D6953EC9858BB507767EA3B7DF8452F979BE3260B27DC930DDD3BD2F764AA5DF ] C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
20:01:58.0468 0x0520  FLxHCIm - detected UnsignedFile.Multi.Generic ( 1 )
20:02:00.0816 0x0520  Detect skipped due to KSN trusted
20:02:00.0816 0x0520  FLxHCIm - ok
20:02:01.0019 0x0520  [ FB1A303207C1124C2B61A50E5A32AC21, 5BE93B9FDE657DCDAF4E8C02BC3F364C58B115DCE3AD10044FBCDC0FF90C2EBC ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
20:02:01.0191 0x0520  DivXUpdate - ok
20:02:01.0191 0x0520  Conime - ok
20:02:01.0503 0x0520  [ 0BA95C4CD5C908CEDAD87036126E3AB1, AFABCB336EF36B928F5573785F9910EE16B4563C44CEE0662EA58F8E60F9E020 ] C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe
20:02:01.0675 0x0520  EKStatusMonitor - ok
20:02:01.0863 0x0520  [ A6ABD4AF02AB03676DEA55F383ABC7C2, 62F838618C78A297D970EC58F97F2D843EBFEF2D81754D658664BEEED79BFB50 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
20:02:01.0941 0x0520  avgnt - ok
20:02:01.0972 0x0520  [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe
20:02:02.0019 0x0520  PDFPrint - ok
20:02:02.0081 0x0520  [ 5120CD65A74A5E054FB2B0577688024C, 2C771743C797ED2F94E4C0CD7472D20532DB6C3E95DEB0DA4D14D6B5469EE273 ] C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
20:02:02.0113 0x0520  Avira Systray - ok
20:02:02.0113 0x0520  Waiting for KSN requests completion. In queue: 11
20:02:03.0128 0x0520  Waiting for KSN requests completion. In queue: 11
20:02:04.0144 0x0520  Waiting for KSN requests completion. In queue: 5
20:02:05.0232 0x0520  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 15.0.11.550 ), 0x41000 ( enabled : updated )
20:02:05.0310 0x0520  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
20:02:05.0325 0x0520  Win FW state via NFP2: enabled
20:02:07.0720 0x0520  ============================================================
20:02:07.0720 0x0520  Scan finished
20:02:07.0720 0x0520  ============================================================
20:02:07.0736 0x0a24  Detected object count: 1
20:02:07.0736 0x0a24  Actual detected object count: 1
20:03:06.0375 0x0a24  ServiceControl_RTE23_3S_GmbH ( UnsignedFile.Multi.Generic ) - skipped by user
20:03:06.0375 0x0a24  ServiceControl_RTE23_3S_GmbH ( UnsignedFile.Multi.Generic ) - User select action: Skip 
20:03:31.0703 0x15b8  Deinitialize success
         
Danke Dir

Alt 14.07.2015, 07:16   #8
schrauber
/// the machine
/// TB-Ausbilder
 

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hast Du es nach der verlinkten Anleitung laufen lassen? Sprich bei Reboot?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 14.07.2015, 12:41   #9
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hallo Schrauber,

ich habe es nach der Anleitung durchgeführt. Demnach bin bei Szenario zwei gelandet, habe den Inhalt hier gepostet und skip gewählt.
Also habe ich keinen reboot durchgeführt, dass kommt ja laut Anleitung erst später. Oder habe ich etwas falsch verstanden?

Danke und Gruß

Alt 15.07.2015, 08:40   #10
schrauber
/// the machine
/// TB-Ausbilder
 

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Setz in den Einstellungen bitte noch den Haken bei Loaded Moduls.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 15.07.2015, 18:36   #11
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Hallo Schrauber,

jetzt nochmal mit reboot vorher und dem gesetzten Haken:


Code:
ATTFilter
18:22:30.0967 0x0cec  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
18:22:31.0123 0x0cec  ============================================================
18:22:31.0123 0x0cec  Current date / time: 2015/07/15 18:22:31.0123
18:22:31.0123 0x0cec  SystemInfo:
18:22:31.0123 0x0cec  
18:22:31.0123 0x0cec  OS Version: 6.3.9600 ServicePack: 0.0
18:22:31.0123 0x0cec  Product type: Workstation
18:22:31.0123 0x0cec  ComputerName: 
18:22:31.0123 0x0cec  UserName: 
18:22:31.0123 0x0cec  Windows directory: C:\Windows
18:22:31.0123 0x0cec  System windows directory: C:\Windows
18:22:31.0123 0x0cec  Running under WOW64
18:22:31.0123 0x0cec  Processor architecture: Intel x64
18:22:31.0123 0x0cec  Number of processors: 4
18:22:31.0123 0x0cec  Page size: 0x1000
18:22:31.0123 0x0cec  Boot type: Normal boot
18:22:31.0123 0x0cec  ============================================================
18:22:31.0123 0x0cec  BG loaded
18:22:32.0983 0x0cec  System UUID: {8613D8F5-3689-3795-72E3-3FFB326A0A0E}
18:22:35.0295 0x0cec  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:22:35.0342 0x0cec  ============================================================
18:22:35.0342 0x0cec  \Device\Harddisk0\DR0:
18:22:35.0389 0x0cec  MBR partitions:
18:22:35.0389 0x0cec  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
18:22:35.0389 0x0cec  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x185F1000
18:22:35.0389 0x0cec  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x186A0800, BlocksNum 0x21CE4800
18:22:35.0389 0x0cec  ============================================================
18:22:35.0608 0x0cec  C: <-> \Device\Harddisk0\DR0\Partition2
18:22:35.0842 0x0cec  D: <-> \Device\Harddisk0\DR0\Partition3
18:22:35.0842 0x0cec  ============================================================
18:22:35.0842 0x0cec  Initialize success
18:22:35.0842 0x0cec  ============================================================
18:22:52.0233 0x099c  ============================================================
18:22:52.0233 0x099c  Scan started
18:22:52.0233 0x099c  Mode: Manual; 
18:22:52.0233 0x099c  ============================================================
18:22:52.0233 0x099c  KSN ping started
18:22:54.0624 0x099c  KSN ping finished: true
18:23:11.0640 0x099c  ================ Scan system memory ========================
18:23:11.0640 0x099c  System memory - ok
18:23:11.0640 0x099c  ================ Scan services =============================
18:23:14.0171 0x099c  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
18:23:14.0249 0x099c  1394ohci - ok
18:23:14.0312 0x099c  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
18:23:14.0343 0x099c  3ware - ok
18:23:14.0656 0x099c  [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:23:14.0734 0x099c  ACPI - ok
18:23:14.0781 0x099c  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
18:23:14.0796 0x099c  acpiex - ok
18:23:14.0812 0x099c  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
18:23:14.0812 0x099c  acpipagr - ok
18:23:14.0859 0x099c  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
18:23:14.0859 0x099c  AcpiPmi - ok
18:23:14.0906 0x099c  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
18:23:14.0921 0x099c  acpitime - ok
18:23:15.0171 0x099c  [ 013697369EAFFA675D0671607F036020, 65611C775AC4681E46A6565E5A7A4FF3363C66EBDC98C4C58AFB365D40BE23B6 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:23:15.0171 0x099c  AdobeARMservice - ok
18:23:15.0312 0x099c  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
18:23:15.0546 0x099c  ADP80XX - ok
18:23:15.0671 0x099c  [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:23:15.0687 0x099c  AeLookupSvc - ok
18:23:15.0906 0x099c  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
18:23:15.0952 0x099c  AFD - ok
18:23:16.0031 0x099c  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
18:23:16.0031 0x099c  agp440 - ok
18:23:16.0140 0x099c  [ F0CB6DB513CAC393D04A0FCE0A59E1BF, E6EE159D0E6B1F666946B1FE421874044E89BB2EB60A521BAA111A1229FA7B2D ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
18:23:16.0140 0x099c  ahcache - ok
18:23:16.0202 0x099c  [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG             C:\Windows\System32\alg.exe
18:23:16.0202 0x099c  ALG - ok
18:23:16.0249 0x099c  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
18:23:16.0265 0x099c  AmdK8 - ok
18:23:16.0374 0x099c  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
18:23:16.0374 0x099c  AmdPPM - ok
18:23:16.0406 0x099c  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:23:16.0421 0x099c  amdsata - ok
18:23:16.0484 0x099c  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
18:23:16.0531 0x099c  amdsbs - ok
18:23:16.0562 0x099c  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:23:16.0578 0x099c  amdxata - ok
18:23:17.0156 0x099c  [ 3358CAD1887DDDDD2A36B7796B579292, 40BA1A836276C2AA78914F294661C3C918F2D6DFAA9D6EF3FEB6D1EE3B07F584 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
18:23:17.0296 0x099c  AntiVirMailService - ok
18:23:17.0406 0x099c  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
18:23:17.0515 0x099c  AntiVirSchedulerService - ok
18:23:17.0624 0x099c  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
18:23:17.0640 0x099c  AntiVirService - ok
18:23:18.0031 0x099c  [ 6FD5165364D88FDABE4FA59E1768376F, B82D11E6FCC297F822E29A49D46C9985955C9F5676D107A397B00D0468F93504 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
18:23:18.0078 0x099c  AntiVirWebService - ok
18:23:18.0187 0x099c  [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID           C:\Windows\system32\drivers\appid.sys
18:23:18.0187 0x099c  AppID - ok
18:23:18.0265 0x099c  [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:23:18.0281 0x099c  AppIDSvc - ok
18:23:18.0374 0x099c  [ 034ED41F13D9C1845C1E081F05B640DB, E4E17BA0B22C464DE60A6BF68D4D035D1B838DE4F0361029DED1AE00503E135C ] Appinfo         C:\Windows\System32\appinfo.dll
18:23:18.0390 0x099c  Appinfo - ok
18:23:18.0437 0x099c  [ 8176FBA685178FB0F52D46693474FA50, 69FE3692C7FE24289A479ADD74F2C782B59A099B7B07FE5ACFC4DA899E40BFDE ] AppMgmt         C:\Windows\System32\appmgmts.dll
18:23:18.0452 0x099c  AppMgmt - ok
18:23:18.0656 0x099c  [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
18:23:18.0718 0x099c  AppReadiness - ok
18:23:19.0077 0x099c  [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
18:23:19.0140 0x099c  AppXSvc - ok
18:23:19.0187 0x099c  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
18:23:19.0203 0x099c  arcsas - ok
18:23:19.0343 0x099c  [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
18:23:19.0359 0x099c  ASLDRService - ok
18:23:19.0437 0x099c  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64        C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
18:23:19.0437 0x099c  ASMMAP64 - ok
18:23:19.0484 0x099c  [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:23:19.0484 0x099c  AsyncMac - ok
18:23:19.0531 0x099c  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:23:19.0546 0x099c  atapi - ok
18:23:20.0218 0x099c  [ B04BF12AEBFB5E71971B4EDA4EDFC196, BCFC79ED014F3E835957D6FD5985DF97A9F2BFD9E762594C48AB8299240FF667 ] athr            C:\Windows\system32\DRIVERS\athwnx.sys
18:23:20.0749 0x099c  athr - ok
18:23:20.0796 0x099c  [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv     C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
18:23:20.0812 0x099c  ATKGFNEXSrv - ok
18:23:20.0953 0x099c  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
18:23:20.0968 0x099c  AudioEndpointBuilder - ok
18:23:21.0265 0x099c  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
18:23:21.0296 0x099c  Audiosrv - ok
18:23:21.0390 0x099c  [ CC1ABBD9E61B7AA5CCBB45EA87CB033F, 4E5DE485833721E19B36455C017B9D908BAA7D12637A878934A0FAF2326E000B ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
18:23:21.0406 0x099c  avgntflt - ok
18:23:21.0484 0x099c  [ 07C8454D3A94BA478752FAFA2B94E0FE, EB19396D4A6D51D6C33ED55C8EF0259045801D39CCE2945931F9163D6006C133 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
18:23:21.0499 0x099c  avipbb - ok
18:23:21.0734 0x099c  [ 17348FE28C0A0AB4A6CB86D177770335, 633FEDA61F62504534B47090EA142F73C5D80C0D52A22A6C81DF64CD3EAFDAA8 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
18:23:21.0749 0x099c  Avira.ServiceHost - ok
18:23:21.0828 0x099c  [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
18:23:21.0828 0x099c  avkmgr - ok
18:23:21.0921 0x099c  [ 83586138F23A4C284EB68AFC852D7AFA, 9ADE8924B4518ED0A8E3FC4CC3F9964BC05B5FF67F230A7FD0BDABCFFA0BB0C8 ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
18:23:21.0937 0x099c  avnetflt - ok
18:23:22.0015 0x099c  [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:23:22.0015 0x099c  AxInstSV - ok
18:23:22.0203 0x099c  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
18:23:22.0281 0x099c  b06bdrv - ok
18:23:22.0359 0x099c  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
18:23:22.0375 0x099c  BasicDisplay - ok
18:23:22.0468 0x099c  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
18:23:22.0468 0x099c  BasicRender - ok
18:23:22.0515 0x099c  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
18:23:22.0515 0x099c  bcmfn2 - ok
18:23:22.0640 0x099c  [ E07C80468D0C599BFF01D9D4EC7AEDC3, F675F455924DEC3FF69AD816DFEB6E74C804AEC3D3BFF7515953DB9D79C9B2D0 ] BDESVC          C:\Windows\System32\bdesvc.dll
18:23:22.0671 0x099c  BDESVC - ok
18:23:22.0718 0x099c  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
18:23:22.0718 0x099c  Beep - ok
18:23:22.0968 0x099c  [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] BFE             C:\Windows\System32\bfe.dll
18:23:22.0999 0x099c  BFE - ok
18:23:23.0281 0x099c  [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS            C:\Windows\System32\qmgr.dll
18:23:23.0312 0x099c  BITS - ok
18:23:23.0390 0x099c  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:23:23.0406 0x099c  bowser - ok
18:23:23.0499 0x099c  [ E325BCD68EC0CF2E2EDD0AB7CC17C698, 4DEDEF91F6BD1CC8DBE118AC28CA6BD874449A053B9CDE9FFEB1C7B98501D938 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
18:23:23.0515 0x099c  BrokerInfrastructure - ok
18:23:23.0609 0x099c  [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] Browser         C:\Windows\System32\browser.dll
18:23:23.0609 0x099c  Browser - ok
18:23:23.0640 0x099c  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
18:23:23.0656 0x099c  BthAvrcpTg - ok
18:23:23.0718 0x099c  [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
18:23:23.0718 0x099c  BthHFEnum - ok
18:23:23.0765 0x099c  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
18:23:23.0781 0x099c  bthhfhid - ok
18:23:23.0843 0x099c  [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
18:23:23.0843 0x099c  BTHMODEM - ok
18:23:23.0937 0x099c  [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv         C:\Windows\system32\bthserv.dll
18:23:23.0937 0x099c  bthserv - ok
18:23:24.0109 0x099c  [ B6EA7E4E23C43DB6E722E9D0B18FE3C3, C7AD98FB71E7A4017EE88D20DA835883E7CE6C48D914578D939DA0C6632F7CD9 ] cbfs4           C:\Windows\system32\drivers\cbfs4.sys
18:23:24.0218 0x099c  cbfs4 - ok
18:23:24.0265 0x099c  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:23:24.0265 0x099c  cdfs - ok
18:23:24.0374 0x099c  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
18:23:24.0390 0x099c  cdrom - ok
18:23:24.0484 0x099c  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:23:24.0484 0x099c  CertPropSvc - ok
18:23:24.0515 0x099c  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
18:23:24.0531 0x099c  circlass - ok
18:23:24.0593 0x099c  [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
18:23:24.0609 0x099c  CLFS - ok
18:23:24.0703 0x099c  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
18:23:24.0703 0x099c  CmBatt - ok
18:23:24.0921 0x099c  [ 3930E508DDA46C1FF68FD963F350AA0A, BF63F9C7AB30E2A8199D65EDD6DCBB797C93A4A0B972373643FBE1C38BCFA697 ] CNG             C:\Windows\system32\Drivers\cng.sys
18:23:24.0968 0x099c  CNG - ok
18:23:25.0078 0x099c  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
18:23:25.0078 0x099c  CompositeBus - ok
18:23:25.0093 0x099c  COMSysApp - ok
18:23:25.0125 0x099c  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
18:23:25.0125 0x099c  condrv - ok
18:23:25.0218 0x099c  [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:23:25.0234 0x099c  CryptSvc - ok
18:23:25.0468 0x099c  [ EE2F3C0D6ADBC975D6B621EC15ACF4E2, D158C0FACA6344BCD77616EC3D23212F9FD76D7D0C834ACA51998B80162106D5 ] CSC             C:\Windows\system32\drivers\csc.sys
18:23:25.0500 0x099c  CSC - ok
18:23:25.0765 0x099c  [ 936D9E2871CEEFF6A33695D98374367B, C30D42E870F196C4FA20AF95C7B9D9C9C5414D6DDE71268F88C3FC5BF372E61B ] CscService      C:\Windows\System32\cscsvc.dll
18:23:25.0859 0x099c  CscService - ok
18:23:25.0906 0x099c  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
18:23:25.0921 0x099c  dam - ok
18:23:26.0140 0x099c  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:23:26.0171 0x099c  DcomLaunch - ok
18:23:26.0312 0x099c  [ D249C3A58A4FCF755EF4C94F7047E015, 68C044CE2DB93FB502F85F6E081EA164F6E6DCBA6B3EE2A5CBDA122065E522F8 ] defragsvc       C:\Windows\System32\defragsvc.dll
18:23:26.0328 0x099c  defragsvc - ok
18:23:26.0453 0x099c  [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\Windows\system32\das.dll
18:23:26.0468 0x099c  DeviceAssociationService - ok
18:23:26.0562 0x099c  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
18:23:26.0562 0x099c  DeviceInstall - ok
18:23:26.0671 0x099c  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
18:23:26.0687 0x099c  Dfsc - ok
18:23:26.0843 0x099c  [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:23:26.0859 0x099c  Dhcp - ok
18:23:26.0984 0x099c  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
18:23:26.0984 0x099c  disk - ok
18:23:27.0031 0x099c  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
18:23:27.0031 0x099c  dmvsc - ok
18:23:27.0140 0x099c  [ 05CB5910B3CA6019FC3CCA815EE06FFB, 8FA532ED500BB1F08E8034A6125BDD53B74D5E6AB0A83A6185B07AAFCD90AA82 ] DNE             C:\Windows\system32\DRIVERS\dne64x.sys
18:23:27.0156 0x099c  DNE - ok
18:23:27.0281 0x099c  [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:23:27.0297 0x099c  Dnscache - ok
18:23:27.0437 0x099c  [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc         C:\Windows\System32\dot3svc.dll
18:23:27.0468 0x099c  dot3svc - ok
18:23:27.0547 0x099c  [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS             C:\Windows\system32\dps.dll
18:23:27.0562 0x099c  DPS - ok
18:23:27.0672 0x099c  [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:23:27.0672 0x099c  drmkaud - ok
18:23:27.0734 0x099c  [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
18:23:27.0750 0x099c  DsmSvc - ok
18:23:28.0265 0x099c  [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:23:28.0375 0x099c  DXGKrnl - ok
18:23:28.0453 0x099c  [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost         C:\Windows\System32\eapsvc.dll
18:23:28.0453 0x099c  Eaphost - ok
18:23:29.0031 0x099c  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
18:23:29.0359 0x099c  ebdrv - ok
18:23:29.0437 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS             C:\Windows\System32\lsass.exe
18:23:29.0437 0x099c  EFS - ok
18:23:29.0500 0x099c  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
18:23:29.0500 0x099c  EhStorClass - ok
18:23:29.0578 0x099c  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
18:23:29.0593 0x099c  EhStorTcgDrv - ok
18:23:29.0609 0x099c  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
18:23:29.0609 0x099c  ErrDev - ok
18:23:29.0781 0x099c  [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem     C:\Windows\system32\es.dll
18:23:29.0797 0x099c  EventSystem - ok
18:23:29.0843 0x099c  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:23:29.0859 0x099c  exfat - ok
18:23:29.0906 0x099c  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:23:29.0968 0x099c  fastfat - ok
18:23:30.0156 0x099c  [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax             C:\Windows\system32\fxssvc.exe
18:23:30.0297 0x099c  Fax - ok
18:23:30.0359 0x099c  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
18:23:30.0359 0x099c  fdc - ok
18:23:30.0422 0x099c  [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost         C:\Windows\system32\fdPHost.dll
18:23:30.0437 0x099c  fdPHost - ok
18:23:30.0500 0x099c  [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub        C:\Windows\system32\fdrespub.dll
18:23:30.0500 0x099c  FDResPub - ok
18:23:30.0562 0x099c  [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc           C:\Windows\system32\fhsvc.dll
18:23:30.0578 0x099c  fhsvc - ok
18:23:30.0640 0x099c  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:23:30.0656 0x099c  FileInfo - ok
18:23:30.0718 0x099c  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:23:30.0734 0x099c  Filetrace - ok
18:23:30.0765 0x099c  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
18:23:30.0765 0x099c  flpydisk - ok
18:23:30.0937 0x099c  [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:23:31.0078 0x099c  FltMgr - ok
18:23:31.0234 0x099c  [ 10B5AB16C34D4E316EDB825386F57DA6, FE5ABF47AA153EF35821C841025A99C77B97C09ED6B649A88B3609C00FE8281B ] FLxHCIc         C:\Windows\System32\drivers\FLxHCIc.sys
18:23:31.0265 0x099c  FLxHCIc - ok
18:23:31.0297 0x099c  [ 66DE264C2DEFE746CB2E71F3A5EB5C2C, 628CEABF6A6A550524BB5D104296AAFCF76A9DB86E83D26B7D4A9B6BEB3EF55E ] FLxHCIh         C:\Windows\System32\drivers\FLxHCIh.sys
18:23:31.0312 0x099c  FLxHCIh - ok
18:23:31.0625 0x099c  [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache       C:\Windows\system32\FntCache.dll
18:23:31.0672 0x099c  FontCache - ok
18:23:31.0922 0x099c  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:23:31.0937 0x099c  FontCache3.0.0.0 - ok
18:23:32.0187 0x099c  [ 959919A8138D65AC6E9BD997CE747C4D, 3B0ED1A753B2538446EC0EEDF9430CAA3451F7DBAB7DAE353AB52FDC8FFD1553 ] FPLService      C:\Program Files\TrueSuite\TrueSuite.Service.exe
18:23:32.0297 0x099c  FPLService - ok
18:23:32.0390 0x099c  [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:23:32.0390 0x099c  FsDepends - ok
18:23:32.0422 0x099c  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:23:32.0422 0x099c  Fs_Rec - ok
18:23:32.0609 0x099c  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:23:32.0672 0x099c  fvevol - ok
18:23:32.0734 0x099c  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
18:23:32.0734 0x099c  FxPPM - ok
18:23:32.0750 0x099c  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
18:23:32.0765 0x099c  gagp30kx - ok
18:23:32.0797 0x099c  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
18:23:32.0812 0x099c  gencounter - ok
18:23:33.0265 0x099c  [ C2730FE9713C1C474257A7085386B11E, 7D35D00D2B455841C8C9A87CE92885CD22F4B8B6690CB21443ED1B515117EF95 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
18:23:33.0515 0x099c  GfExperienceService - ok
18:23:33.0594 0x099c  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
18:23:33.0609 0x099c  GPIOClx0101 - ok
18:23:33.0890 0x099c  [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:23:33.0937 0x099c  gpsvc - ok
18:23:34.0047 0x099c  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:23:34.0047 0x099c  gupdate - ok
18:23:34.0062 0x099c  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:23:34.0062 0x099c  gupdatem - ok
18:23:34.0250 0x099c  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:23:34.0359 0x099c  HdAudAddService - ok
18:23:34.0437 0x099c  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
18:23:34.0437 0x099c  HDAudBus - ok
18:23:34.0500 0x099c  [ B6AC71AAA2B10848F57FC49D55A651AF, 4FAD833654E86F9FAF972AC8AF87FD4A9A765B26B96F096BBD63506B5D521A91 ] HECIx64         C:\Windows\System32\drivers\HECIx64.sys
18:23:34.0515 0x099c  HECIx64 - ok
18:23:34.0578 0x099c  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
18:23:34.0578 0x099c  HidBatt - ok
18:23:34.0640 0x099c  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
18:23:34.0656 0x099c  HidBth - ok
18:23:34.0687 0x099c  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
18:23:34.0687 0x099c  hidi2c - ok
18:23:34.0703 0x099c  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
18:23:34.0718 0x099c  HidIr - ok
18:23:34.0781 0x099c  [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv         C:\Windows\system32\hidserv.dll
18:23:34.0781 0x099c  hidserv - ok
18:23:34.0828 0x099c  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
18:23:34.0828 0x099c  HidUsb - ok
18:23:34.0906 0x099c  [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:23:34.0906 0x099c  hkmsvc - ok
18:23:34.0984 0x099c  [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:23:35.0000 0x099c  HomeGroupListener - ok
18:23:35.0093 0x099c  [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:23:35.0109 0x099c  HomeGroupProvider - ok
18:23:35.0156 0x099c  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:23:35.0187 0x099c  HpSAMD - ok
18:23:35.0390 0x099c  [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:23:35.0500 0x099c  HTTP - ok
18:23:35.0562 0x099c  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:23:35.0578 0x099c  hwpolicy - ok
18:23:35.0640 0x099c  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
18:23:35.0640 0x099c  hyperkbd - ok
18:23:35.0687 0x099c  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
18:23:35.0687 0x099c  HyperVideo - ok
18:23:35.0765 0x099c  [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
18:23:35.0781 0x099c  i8042prt - ok
18:23:35.0797 0x099c  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
18:23:35.0797 0x099c  iaLPSSi_GPIO - ok
18:23:35.0859 0x099c  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
18:23:35.0890 0x099c  iaLPSSi_I2C - ok
18:23:36.0047 0x099c  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
18:23:36.0125 0x099c  iaStorAV - ok
18:23:36.0265 0x099c  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:23:36.0359 0x099c  iaStorV - ok
18:23:36.0375 0x099c  IEEtwCollectorService - ok
18:23:38.0219 0x099c  [ E6D200304A8D739597678807820ABB43, 05194D2625F48C5065318C28B242A03A1C3BDC441087DAFF777203506CE4CF6E ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:23:39.0062 0x099c  igfx - ok
18:23:39.0312 0x099c  [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] IKEEXT          C:\Windows\System32\ikeext.dll
18:23:39.0375 0x099c  IKEEXT - ok
18:23:39.0422 0x099c  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:23:39.0484 0x099c  intelide - ok
18:23:39.0547 0x099c  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
18:23:39.0562 0x099c  intelpep - ok
18:23:39.0641 0x099c  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
18:23:39.0641 0x099c  intelppm - ok
18:23:39.0672 0x099c  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:23:39.0672 0x099c  IpFilterDriver - ok
18:23:39.0844 0x099c  [ ACFEE9487693C2BD573DFCA71D98E17C, A347FD476147CD3568EEE6993B46AFC05A66A4269094CA51572D0FD013FCB535 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:23:39.0890 0x099c  iphlpsvc - ok
18:23:39.0953 0x099c  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
18:23:39.0969 0x099c  IPMIDRV - ok
18:23:40.0047 0x099c  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:23:40.0047 0x099c  IPNAT - ok
18:23:40.0109 0x099c  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:23:40.0109 0x099c  IRENUM - ok
18:23:40.0156 0x099c  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:23:40.0156 0x099c  isapnp - ok
18:23:40.0281 0x099c  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
18:23:40.0359 0x099c  iScsiPrt - ok
18:23:40.0391 0x099c  [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
18:23:40.0406 0x099c  kbdclass - ok
18:23:40.0406 0x099c  [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
18:23:40.0406 0x099c  kbdhid - ok
18:23:40.0437 0x099c  [ DB7A09BC90DF20F44F16F8B0F9ED3491, 2DF5E042284D61368A5801B2557351B2C4B1044AA6F966DF4DDCE7B453D1B9AE ] kbldfltr        C:\Windows\system32\drivers\kbldfltr.sys
18:23:40.0437 0x099c  kbldfltr - ok
18:23:40.0484 0x099c  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
18:23:40.0484 0x099c  kdnic - ok
18:23:40.0516 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso          C:\Windows\system32\lsass.exe
18:23:40.0516 0x099c  KeyIso - ok
18:23:40.0828 0x099c  [ 00060003E6161944A9963FA9F24102BC, 9FB85A6542F8B17504A40798727266C5F618B09D74963747F06EAF80AE13ECDE ] Kodak AiO Network Discovery Service C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
18:23:41.0078 0x099c  Kodak AiO Network Discovery Service - ok
18:23:41.0359 0x099c  [ 60301F8FDF519FFEC307A686209C33BE, B9A31478707B518967A6200813DCBD4DE03824FBFAB6E35D4FA4DA783FD6305A ] Kodak AiO Status Monitor Service C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
18:23:41.0469 0x099c  Kodak AiO Status Monitor Service - ok
18:23:41.0531 0x099c  [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:23:41.0531 0x099c  KSecDD - ok
18:23:41.0609 0x099c  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:23:41.0625 0x099c  KSecPkg - ok
18:23:41.0656 0x099c  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:23:41.0656 0x099c  ksthunk - ok
18:23:41.0734 0x099c  [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:23:41.0766 0x099c  KtmRm - ok
18:23:41.0859 0x099c  [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] LanmanServer    C:\Windows\system32\srvsvc.dll
18:23:41.0875 0x099c  LanmanServer - ok
18:23:41.0953 0x099c  [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:23:41.0969 0x099c  LanmanWorkstation - ok
18:23:42.0094 0x099c  [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
18:23:42.0141 0x099c  lfsvc - ok
18:23:42.0203 0x099c  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:23:42.0203 0x099c  lltdio - ok
18:23:42.0312 0x099c  [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:23:42.0344 0x099c  lltdsvc - ok
18:23:42.0375 0x099c  [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:23:42.0391 0x099c  lmhosts - ok
18:23:42.0422 0x099c  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
18:23:42.0437 0x099c  LSI_SAS - ok
18:23:42.0500 0x099c  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
18:23:42.0516 0x099c  LSI_SAS2 - ok
18:23:42.0547 0x099c  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
18:23:42.0578 0x099c  LSI_SAS3 - ok
18:23:42.0578 0x099c  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
18:23:42.0594 0x099c  LSI_SSS - ok
18:23:42.0812 0x099c  [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM             C:\Windows\System32\lsm.dll
18:23:42.0828 0x099c  LSM - ok
18:23:42.0891 0x099c  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:23:42.0891 0x099c  luafv - ok
18:23:42.0953 0x099c  [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
18:23:42.0969 0x099c  MBAMProtector - ok
18:23:43.0312 0x099c  [ 516E29AD03BDF610CC36A95AE692FE42, 09F913B169AD775FF587AE59AEC5DD2A2D8646803F48BF616C74EEC0DE3BE7A2 ] MBAMScheduler   C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
18:23:43.0734 0x099c  MBAMScheduler - ok
18:23:44.0000 0x099c  [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
18:23:44.0281 0x099c  MBAMService - ok
18:23:44.0344 0x099c  [ E9CD058C79EA15B4AA93E259FA713B07, 2B09F65188D8782F9C797545F2F791EC7EAB85D8914B2C0B30BD869C412E3980 ] MBAMSwissArmy   C:\Windows\system32\drivers\MBAMSwissArmy.sys
18:23:44.0359 0x099c  MBAMSwissArmy - ok
18:23:44.0375 0x099c  [ 28B597A61C9AC9B59BC0573D70A62CBF, 032C095ECDAEEE800BD9C7AB08C089E7530A9DD09AE577D1612035F2BFFAA61C ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
18:23:44.0391 0x099c  MBAMWebAccessControl - ok
18:23:44.0438 0x099c  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
18:23:44.0453 0x099c  megasas - ok
18:23:44.0547 0x099c  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
18:23:44.0594 0x099c  megasr - ok
18:23:44.0656 0x099c  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS           C:\Windows\system32\mmcss.dll
18:23:44.0656 0x099c  MMCSS - ok
18:23:44.0688 0x099c  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
18:23:44.0688 0x099c  Modem - ok
18:23:44.0734 0x099c  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
18:23:44.0750 0x099c  monitor - ok
18:23:44.0750 0x099c  [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
18:23:44.0766 0x099c  mouclass - ok
18:23:44.0766 0x099c  [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid          C:\Windows\System32\drivers\mouhid.sys
18:23:44.0766 0x099c  mouhid - ok
18:23:44.0813 0x099c  [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:23:44.0813 0x099c  mountmgr - ok
18:23:44.0891 0x099c  [ C61EE1594B023725B77915F79E656618, A4AD1952E16C7D2A5BC03E6C339BE0B08165A3231443B6A883E5868FBE13E31F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:23:44.0922 0x099c  MozillaMaintenance - ok
18:23:44.0984 0x099c  [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:23:44.0984 0x099c  mpsdrv - ok
18:23:45.0156 0x099c  [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:23:45.0187 0x099c  MpsSvc - ok
18:23:45.0281 0x099c  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:23:45.0281 0x099c  MRxDAV - ok
18:23:45.0391 0x099c  [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:23:45.0406 0x099c  mrxsmb - ok
18:23:45.0500 0x099c  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:23:45.0531 0x099c  mrxsmb10 - ok
18:23:45.0594 0x099c  [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:23:45.0609 0x099c  mrxsmb20 - ok
18:23:45.0688 0x099c  [ E0927EFA25D473367C3341B9F5969779, B77A162BD3334557623674373D8EC2BE7CC0B359DF06304E467ABFFEE0530271 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
18:23:45.0688 0x099c  MsBridge - ok
18:23:45.0734 0x099c  [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC           C:\Windows\System32\msdtc.exe
18:23:45.0750 0x099c  MSDTC - ok
18:23:45.0828 0x099c  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:23:45.0828 0x099c  Msfs - ok
18:23:45.0859 0x099c  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
18:23:45.0875 0x099c  msgpiowin32 - ok
18:23:45.0906 0x099c  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:23:45.0906 0x099c  mshidkmdf - ok
18:23:45.0922 0x099c  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
18:23:45.0922 0x099c  mshidumdf - ok
18:23:45.0984 0x099c  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:23:46.0000 0x099c  msisadrv - ok
18:23:46.0078 0x099c  [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:23:46.0094 0x099c  MSiSCSI - ok
18:23:46.0094 0x099c  msiserver - ok
18:23:46.0141 0x099c  [ D22AE5313F6B7EFDDD8C117B5501F4A3, 1937EEE33BF9C4485F172B10FB17AEF3F3B8978371307F49C3338D74D96A8389 ] MsKeyboardFilter C:\Windows\System32\KeyboardFilterSvc.dll
18:23:46.0141 0x099c  MsKeyboardFilter - ok
18:23:46.0188 0x099c  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:23:46.0188 0x099c  MSKSSRV - ok
18:23:46.0219 0x099c  [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
18:23:46.0219 0x099c  MsLldp - ok
18:23:46.0250 0x099c  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:23:46.0250 0x099c  MSPCLOCK - ok
18:23:46.0281 0x099c  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:23:46.0297 0x099c  MSPQM - ok
18:23:46.0359 0x099c  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:23:46.0375 0x099c  MsRPC - ok
18:23:46.0391 0x099c  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
18:23:46.0406 0x099c  mssmbios - ok
18:23:46.0422 0x099c  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:23:46.0438 0x099c  MSTEE - ok
18:23:46.0484 0x099c  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
18:23:46.0500 0x099c  MTConfig - ok
18:23:46.0547 0x099c  [ 032D35C996F21D19A205A7C8F0B76F3C, 1A1C5BD7204BB937A05E201BCC0840B2C8E4B273D8E1D6D9407264FB4C57F014 ] MTsensor        C:\Windows\system32\DRIVERS\ATK64AMD.sys
18:23:46.0563 0x099c  MTsensor - ok
18:23:46.0578 0x099c  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
18:23:46.0578 0x099c  Mup - ok
18:23:46.0594 0x099c  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
18:23:46.0625 0x099c  mvumis - ok
18:23:46.0766 0x099c  [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent        C:\Windows\system32\qagentRT.dll
18:23:46.0781 0x099c  napagent - ok
18:23:46.0875 0x099c  [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:23:46.0906 0x099c  NativeWifiP - ok
18:23:46.0969 0x099c  [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc          C:\Windows\System32\ncasvc.dll
18:23:46.0969 0x099c  NcaSvc - ok
18:23:47.0031 0x099c  [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService      C:\Windows\System32\ncbservice.dll
18:23:47.0047 0x099c  NcbService - ok
18:23:47.0078 0x099c  [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
18:23:47.0094 0x099c  NcdAutoSetup - ok
18:23:47.0297 0x099c  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:23:47.0359 0x099c  NDIS - ok
18:23:47.0406 0x099c  [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:23:47.0406 0x099c  NdisCap - ok
18:23:47.0500 0x099c  [ B1AA3B19A2E596A59224F893E01A5A75, E08696CA5E087E51AC3E64D4FB8490EEADD612DDF30C9A94DD1BD1BA124B71B7 ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
18:23:47.0516 0x099c  NdisImPlatform - ok
18:23:47.0547 0x099c  [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:23:47.0547 0x099c  NdisTapi - ok
18:23:47.0563 0x099c  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:23:47.0578 0x099c  Ndisuio - ok
18:23:47.0594 0x099c  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
18:23:47.0609 0x099c  NdisVirtualBus - ok
18:23:47.0719 0x099c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:23:47.0750 0x099c  NdisWan - ok
18:23:47.0781 0x099c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
18:23:47.0797 0x099c  NdisWanLegacy - ok
18:23:47.0844 0x099c  [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:23:47.0859 0x099c  NDProxy - ok
18:23:47.0891 0x099c  [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
18:23:47.0906 0x099c  Ndu - ok
18:23:47.0906 0x099c  [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:23:47.0922 0x099c  NetBIOS - ok
18:23:47.0984 0x099c  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:23:48.0000 0x099c  NetBT - ok
18:23:48.0031 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon        C:\Windows\system32\lsass.exe
18:23:48.0031 0x099c  Netlogon - ok
18:23:48.0125 0x099c  [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman          C:\Windows\System32\netman.dll
18:23:48.0141 0x099c  Netman - ok
18:23:48.0250 0x099c  [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm        C:\Windows\System32\netprofmsvc.dll
18:23:48.0266 0x099c  netprofm - ok
18:23:48.0516 0x099c  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:23:48.0781 0x099c  NetTcpPortSharing - ok
18:23:48.0828 0x099c  [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc          C:\Windows\system32\DRIVERS\netvsc63.sys
18:23:48.0844 0x099c  netvsc - ok
18:23:48.0953 0x099c  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:23:48.0969 0x099c  NlaSvc - ok
18:23:49.0000 0x099c  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:23:49.0000 0x099c  Npfs - ok
18:23:49.0063 0x099c  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
18:23:49.0063 0x099c  npsvctrig - ok
18:23:49.0110 0x099c  [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi             C:\Windows\system32\nsisvc.dll
18:23:49.0110 0x099c  nsi - ok
18:23:49.0125 0x099c  [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:23:49.0125 0x099c  nsiproxy - ok
18:23:49.0484 0x099c  [ 038C77D577900EE39410662478BB0D50, A33AAFD5750245C17A47EC71F3C6EAD2E0925CAD34C65AB3E6CEE44756C668E6 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:23:49.0594 0x099c  Ntfs - ok
18:23:49.0641 0x099c  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
18:23:49.0641 0x099c  Null - ok
18:23:51.0188 0x099c  [ F554291C0A11F5B713B54C5886D4AA31, 65B7DF4BB3DFF616DC2C863988E30F901E14221C00E2A99A2079E19D91D93BAE ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:23:52.0578 0x099c  nvlddmkm - ok
18:23:52.0985 0x099c  [ F9CF3FB8DD81B390783532B3C98D6976, 8C94638136CFAEB3ED6DD7CE2059E98B64B15918DDB0796CC0B88474EE99F5BF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
18:23:53.0422 0x099c  NvNetworkService - ok
18:23:53.0469 0x099c  [ 3F403A74349FCE04DF8D7BE24E6A02BD, 0167E289725DB55BEE2792CF8366B62FB6B209C9B815F687C4DAC388125223C3 ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
18:23:53.0500 0x099c  nvpciflt - ok
18:23:53.0563 0x099c  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:23:53.0578 0x099c  nvraid - ok
18:23:53.0625 0x099c  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:23:53.0641 0x099c  nvstor - ok
18:23:53.0781 0x099c  [ 3A7B0570D896602E37EAF80EC3D1615A, 1F5A71432F96731115ADA2A50E605923666188D08F9FD748424AB6588D0E1482 ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
18:23:53.0781 0x099c  NvStreamKms - ok
18:23:53.0797 0x099c  NvStreamSvc - ok
18:23:54.0000 0x099c  [ 8E99BF264C1F20934A67E91BC9F4FB20, 89AA8823B751F4CEF4E862F1270E7EFDA81A6E5D9C5F72625CBF83C70B312353 ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:23:54.0078 0x099c  nvsvc - ok
18:23:54.0156 0x099c  [ DBFE7B2DF103F74AE51840B3C5F25FE9, 436CAA417FD24BA870F117FA4BABA2AB694825795508BCFCC8C927CC2D5BBC5E ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
18:23:54.0203 0x099c  nvvad_WaveExtensible - ok
18:23:54.0328 0x099c  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:23:54.0344 0x099c  nv_agp - ok
18:23:54.0453 0x099c  [ 11E0B35479C895888BA3D7F619DCFFF3, 6ED82C19898101EC00BD64A9F90595C3D20AD2D2902AA8765B740FB3B9312DDF ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:23:54.0469 0x099c  ose64 - ok
18:23:54.0578 0x099c  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:23:54.0625 0x099c  p2pimsvc - ok
18:23:54.0766 0x099c  [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc          C:\Windows\system32\p2psvc.dll
18:23:54.0844 0x099c  p2psvc - ok
18:23:54.0922 0x099c  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
18:23:54.0938 0x099c  Parport - ok
18:23:54.0969 0x099c  [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:23:54.0969 0x099c  partmgr - ok
18:23:55.0094 0x099c  [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:23:55.0125 0x099c  PcaSvc - ok
18:23:55.0235 0x099c  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
18:23:55.0250 0x099c  pci - ok
18:23:55.0282 0x099c  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:23:55.0282 0x099c  pciide - ok
18:23:55.0375 0x099c  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
18:23:55.0375 0x099c  pcmcia - ok
18:23:55.0407 0x099c  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:23:55.0407 0x099c  pcw - ok
18:23:55.0469 0x099c  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
18:23:55.0469 0x099c  pdc - ok
18:23:55.0610 0x099c  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:23:55.0641 0x099c  PEAUTH - ok
18:23:55.0969 0x099c  [ 084DE525DFE82AE7453DD527390FA110, 8216AE63AE740D97204CDED6543B66FC1FB55DB86D42FBA0EC629361C40F9EC0 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
18:23:56.0141 0x099c  PeerDistSvc - ok
18:23:57.0688 0x099c  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:23:57.0703 0x099c  PerfHost - ok
18:23:57.0985 0x099c  [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla             C:\Windows\system32\pla.dll
18:23:58.0125 0x099c  pla - ok
18:23:58.0188 0x099c  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:23:58.0203 0x099c  PlugPlay - ok
18:23:58.0250 0x099c  [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:23:58.0266 0x099c  PNRPAutoReg - ok
18:23:58.0328 0x099c  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:23:58.0360 0x099c  PNRPsvc - ok
18:23:58.0469 0x099c  [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:23:58.0485 0x099c  PolicyAgent - ok
18:23:58.0547 0x099c  [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power           C:\Windows\system32\umpo.dll
18:23:58.0547 0x099c  Power - ok
18:23:58.0610 0x099c  [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:23:58.0610 0x099c  PptpMiniport - ok
18:23:59.0219 0x099c  [ 3C96A45CA3403A276B0F045C448EC27B, C0011DB8C5A85817CAF815CC0095EE2C1CDD5964DCD8EAF4C35A2495D6A873CC ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
18:23:59.0657 0x099c  PrintNotify - ok
18:23:59.0750 0x099c  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
18:23:59.0766 0x099c  Processor - ok
18:23:59.0813 0x099c  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:23:59.0829 0x099c  ProfSvc - ok
18:23:59.0907 0x099c  [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:23:59.0907 0x099c  Psched - ok
18:24:00.0000 0x099c  [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE           C:\Windows\system32\qwave.dll
18:24:00.0016 0x099c  QWAVE - ok
18:24:00.0063 0x099c  [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:24:00.0063 0x099c  QWAVEdrv - ok
18:24:00.0079 0x099c  [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:24:00.0094 0x099c  RasAcd - ok
18:24:00.0141 0x099c  [ 674A4702E4E144E8710ED1A2EC6DD049, 613A921101A6815C9185D5EF3E251A592604E56FADE945BB7E256885CAD473BC ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:24:00.0141 0x099c  RasAgileVpn - ok
18:24:00.0204 0x099c  [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto         C:\Windows\System32\rasauto.dll
18:24:00.0204 0x099c  RasAuto - ok
18:24:00.0250 0x099c  [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:24:00.0250 0x099c  Rasl2tp - ok
18:24:00.0375 0x099c  [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan          C:\Windows\System32\rasmans.dll
18:24:00.0438 0x099c  RasMan - ok
18:24:00.0469 0x099c  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:24:00.0469 0x099c  RasPppoe - ok
18:24:00.0532 0x099c  [ 2B0F1677CDD08967005F34488559BC6F, FFF168EBD171C0B85A448AD1A04F66534E889AE1DC128F68EA3F35D5996C8D39 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:24:00.0547 0x099c  RasSstp - ok
18:24:00.0641 0x099c  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:24:00.0657 0x099c  rdbss - ok
18:24:00.0688 0x099c  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
18:24:00.0688 0x099c  rdpbus - ok
18:24:00.0750 0x099c  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
18:24:00.0750 0x099c  RDPDR - ok
18:24:00.0797 0x099c  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:24:00.0813 0x099c  RdpVideoMiniport - ok
18:24:00.0875 0x099c  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:24:00.0891 0x099c  rdyboost - ok
18:24:01.0110 0x099c  [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
18:24:01.0219 0x099c  ReFS - ok
18:24:01.0313 0x099c  [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:24:01.0329 0x099c  RemoteAccess - ok
18:24:01.0391 0x099c  [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:24:01.0407 0x099c  RemoteRegistry - ok
18:24:01.0438 0x099c  [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:24:01.0438 0x099c  RpcEptMapper - ok
18:24:01.0500 0x099c  [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator      C:\Windows\system32\locator.exe
18:24:01.0516 0x099c  RpcLocator - ok
18:24:01.0625 0x099c  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs           C:\Windows\system32\rpcss.dll
18:24:01.0657 0x099c  RpcSs - ok
18:24:01.0704 0x099c  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:24:01.0719 0x099c  rspndr - ok
18:24:01.0891 0x099c  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
18:24:01.0954 0x099c  RTL8168 - ok
18:24:01.0985 0x099c  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
18:24:02.0000 0x099c  s3cap - ok
18:24:02.0047 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs           C:\Windows\system32\lsass.exe
18:24:02.0063 0x099c  SamSs - ok
18:24:02.0094 0x099c  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:24:02.0094 0x099c  sbp2port - ok
18:24:02.0188 0x099c  [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:24:02.0204 0x099c  SCardSvr - ok
18:24:02.0250 0x099c  [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
18:24:02.0250 0x099c  ScDeviceEnum - ok
18:24:02.0313 0x099c  [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:24:02.0313 0x099c  scfilter - ok
18:24:02.0579 0x099c  [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] Schedule        C:\Windows\system32\schedsvc.dll
18:24:02.0641 0x099c  Schedule - ok
18:24:02.0719 0x099c  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:24:02.0735 0x099c  SCPolicySvc - ok
18:24:02.0844 0x099c  [ 7B7C482CF48E6EE33664340D1A78E6FE, CE5077C4B0372F4F9F02B0B37AE58C0DAEFCA9D242065731A23F072506430575 ] sdbus           C:\Windows\System32\drivers\sdbus.sys
18:24:02.0860 0x099c  sdbus - ok
18:24:02.0938 0x099c  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
18:24:02.0938 0x099c  sdstor - ok
18:24:02.0985 0x099c  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:24:03.0000 0x099c  secdrv - ok
18:24:03.0047 0x099c  [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon        C:\Windows\system32\seclogon.dll
18:24:03.0063 0x099c  seclogon - ok
18:24:03.0094 0x099c  [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS            C:\Windows\System32\sens.dll
18:24:03.0094 0x099c  SENS - ok
18:24:03.0157 0x099c  [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:24:03.0172 0x099c  SensrSvc - ok
18:24:03.0188 0x099c  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
18:24:03.0204 0x099c  SerCx - ok
18:24:03.0282 0x099c  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
18:24:03.0297 0x099c  SerCx2 - ok
         

Alt 15.07.2015, 18:36   #12
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Code:
ATTFilter
18:24:03.0329 0x099c  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\Windows\System32\drivers\serenum.sys
18:24:03.0329 0x099c  Serenum - ok
18:24:03.0407 0x099c  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
18:24:03.0407 0x099c  Serial - ok
18:24:03.0422 0x099c  [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
18:24:03.0422 0x099c  sermouse - ok
18:24:03.0735 0x099c  [ 3C19C8CBC7917FEE066CB7A116D3F326, 3656E89F194BD27CD67D4F06A4A01E005F129E77E478F953AC1DE53D168CD9A9 ] Service KMSELDI C:\Program Files\KMSpico\Service_KMS.exe
18:24:03.0782 0x099c  Service KMSELDI - ok
18:24:04.0016 0x099c  [ 7FA8507F9678B6116EC6C49EEAB13384, 6D0ABE12F1983F3F67665C42CC61921D1424544FE9A7EC7071CEC8DBDEBF76F0 ] ServiceControl_RTE23_3S_GmbH C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe
18:24:04.0079 0x099c  ServiceControl_RTE23_3S_GmbH - ok
18:24:04.0172 0x099c  [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv      C:\Windows\system32\sessenv.dll
18:24:04.0188 0x099c  SessionEnv - ok
18:24:04.0219 0x099c  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
18:24:04.0219 0x099c  sfloppy - ok
18:24:04.0313 0x099c  [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:24:04.0344 0x099c  SharedAccess - ok
18:24:04.0485 0x099c  [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:24:04.0516 0x099c  ShellHWDetection - ok
18:24:04.0594 0x099c  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
18:24:04.0594 0x099c  SiSRaid2 - ok
18:24:04.0610 0x099c  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
18:24:04.0625 0x099c  SiSRaid4 - ok
18:24:04.0688 0x099c  [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost         C:\Windows\System32\smphost.dll
18:24:04.0688 0x099c  smphost - ok
18:24:04.0735 0x099c  [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:24:04.0750 0x099c  SNMPTRAP - ok
18:24:04.0938 0x099c  [ 240C5C3793206725AA05665851E8C214, 96ADFB85EB1623EB00C251C1C6A1F441A1795F0EBFD10B17DD1CA58E3AE8A90D ] spaceport       C:\Windows\system32\drivers\spaceport.sys
18:24:05.0032 0x099c  spaceport - ok
18:24:05.0110 0x099c  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
18:24:05.0110 0x099c  SpbCx - ok
18:24:05.0360 0x099c  [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] Spooler         C:\Windows\System32\spoolsv.exe
18:24:05.0422 0x099c  Spooler - ok
18:24:06.0563 0x099c  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
18:24:06.0813 0x099c  sppsvc - ok
18:24:06.0907 0x099c  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:24:06.0938 0x099c  srv - ok
18:24:07.0079 0x099c  [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:24:07.0172 0x099c  srv2 - ok
18:24:07.0266 0x099c  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:24:07.0282 0x099c  srvnet - ok
18:24:07.0391 0x099c  [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:24:07.0407 0x099c  SSDPSRV - ok
18:24:07.0469 0x099c  [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:24:07.0485 0x099c  SstpSvc - ok
18:24:07.0735 0x099c  [ 49D9C17FDDFAC66F27FA735E94923216, 18C8FE5B794927989CDD3BB7A5500C73CCC23559470EEB37D42FD9AD04098C0D ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
18:24:07.0907 0x099c  Stereo Service - ok
18:24:07.0954 0x099c  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
18:24:07.0969 0x099c  stexstor - ok
18:24:08.0032 0x099c  [ 2A997C64F9B2584D81FA6749FE36A887, D26F5BC591ED46B96B2ACFDF555C2BF42F4915A22B12E4139ACEF7DE7AC303A7 ] StillCam        C:\Windows\system32\DRIVERS\serscan.sys
18:24:08.0032 0x099c  StillCam - ok
18:24:08.0219 0x099c  [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc          C:\Windows\System32\wiaservc.dll
18:24:08.0297 0x099c  stisvc - ok
18:24:08.0376 0x099c  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
18:24:08.0376 0x099c  storahci - ok
18:24:08.0407 0x099c  [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
18:24:08.0422 0x099c  storflt - ok
18:24:08.0485 0x099c  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
18:24:08.0485 0x099c  stornvme - ok
18:24:08.0532 0x099c  [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc         C:\Windows\system32\storsvc.dll
18:24:08.0547 0x099c  StorSvc - ok
18:24:08.0641 0x099c  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
18:24:08.0657 0x099c  storvsc - ok
18:24:08.0688 0x099c  [ 03618F935379614837F915D04C45FC0E, 9CC0CBA7AFC58E7F921C13FA3F5269714F1F827535A311E11EA48689C4D539DE ] storvsp         C:\Windows\System32\drivers\storvsp.sys
18:24:08.0704 0x099c  storvsp - ok
18:24:08.0766 0x099c  [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc           C:\Windows\system32\svsvc.dll
18:24:08.0766 0x099c  svsvc - ok
18:24:08.0829 0x099c  [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum          C:\Windows\System32\drivers\swenum.sys
18:24:08.0829 0x099c  swenum - ok
18:24:08.0969 0x099c  [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv           C:\Windows\System32\swprv.dll
18:24:09.0016 0x099c  swprv - ok
18:24:09.0329 0x099c  [ 420BFFA74350020E0AD6F22E73CB63B6, 3D4696A00A861F87A362A6FA04481E0DC8BA532EBA131645D16B34D396F84CF9 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
18:24:09.0516 0x099c  SynTP - ok
18:24:09.0719 0x099c  [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain         C:\Windows\system32\sysmain.dll
18:24:09.0797 0x099c  SysMain - ok
18:24:09.0922 0x099c  [ FD4EA8E9232ADD51DC31C295DDEF2768, 3EA40D7376AB5AA5DA2BCF4745C79F7BF819363466967ECC3CD15ADECBFD7244 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
18:24:09.0938 0x099c  SystemEventsBroker - ok
18:24:10.0016 0x099c  [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\Windows\System32\TabSvc.dll
18:24:10.0032 0x099c  TabletInputService - ok
18:24:10.0094 0x099c  [ 3C32FF010F869BC184DF71290477384E, 55CFCEC7F026C6E2E96A2FBE846AB513BB12BB0348735274FE1B71AF019C837B ] tap0901         C:\Windows\system32\DRIVERS\tap0901.sys
18:24:10.0110 0x099c  tap0901 - ok
18:24:10.0188 0x099c  [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:24:10.0204 0x099c  TapiSrv - ok
18:24:10.0626 0x099c  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:24:10.0813 0x099c  Tcpip - ok
18:24:11.0219 0x099c  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:24:11.0313 0x099c  TCPIP6 - ok
18:24:11.0391 0x099c  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:24:11.0407 0x099c  tcpipreg - ok
18:24:11.0485 0x099c  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:24:11.0485 0x099c  tdx - ok
18:24:11.0516 0x099c  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
18:24:11.0516 0x099c  terminpt - ok
18:24:11.0782 0x099c  [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService     C:\Windows\System32\termsrv.dll
18:24:11.0876 0x099c  TermService - ok
18:24:11.0938 0x099c  [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes          C:\Windows\system32\themeservice.dll
18:24:11.0938 0x099c  Themes - ok
18:24:12.0001 0x099c  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER     C:\Windows\system32\mmcss.dll
18:24:12.0001 0x099c  THREADORDER - ok
18:24:12.0063 0x099c  [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
18:24:12.0079 0x099c  TimeBroker - ok
18:24:12.0141 0x099c  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
18:24:12.0157 0x099c  TPM - ok
18:24:12.0219 0x099c  [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks          C:\Windows\System32\trkwks.dll
18:24:12.0219 0x099c  TrkWks - ok
18:24:12.0329 0x099c  [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:24:12.0344 0x099c  TrustedInstaller - ok
18:24:12.0407 0x099c  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:24:12.0423 0x099c  TsUsbFlt - ok
18:24:12.0438 0x099c  [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
18:24:12.0454 0x099c  TsUsbGD - ok
18:24:12.0485 0x099c  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:24:12.0501 0x099c  tunnel - ok
18:24:12.0548 0x099c  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
18:24:12.0563 0x099c  uagp35 - ok
18:24:12.0610 0x099c  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
18:24:12.0610 0x099c  UASPStor - ok
18:24:12.0688 0x099c  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
18:24:12.0719 0x099c  UCX01000 - ok
18:24:12.0798 0x099c  [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:24:12.0876 0x099c  udfs - ok
18:24:12.0923 0x099c  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
18:24:12.0938 0x099c  UEFI - ok
18:24:13.0001 0x099c  [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:24:13.0001 0x099c  UI0Detect - ok
18:24:13.0016 0x099c  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:24:13.0032 0x099c  uliagpkx - ok
18:24:13.0063 0x099c  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
18:24:13.0063 0x099c  umbus - ok
18:24:13.0079 0x099c  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
18:24:13.0094 0x099c  UmPass - ok
18:24:13.0157 0x099c  [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService    C:\Windows\System32\umrdp.dll
18:24:13.0188 0x099c  UmRdpService - ok
18:24:13.0298 0x099c  [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost        C:\Windows\System32\upnphost.dll
18:24:13.0329 0x099c  upnphost - ok
18:24:13.0438 0x099c  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
18:24:13.0454 0x099c  usbccgp - ok
18:24:13.0532 0x099c  [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
18:24:13.0532 0x099c  usbcir - ok
18:24:13.0594 0x099c  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
18:24:13.0610 0x099c  usbehci - ok
18:24:13.0735 0x099c  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
18:24:13.0766 0x099c  usbhub - ok
18:24:13.0938 0x099c  [ 65392F3F3F65E4C6CC82A0F4F8A0B051, C11B662A28D95820717DFFC6B76DBB755E4876009A2342E5E3992DE32D6BFF61 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
18:24:13.0985 0x099c  USBHUB3 - ok
18:24:14.0110 0x099c  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
18:24:14.0126 0x099c  usbohci - ok
18:24:14.0141 0x099c  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
18:24:14.0157 0x099c  usbprint - ok
18:24:14.0219 0x099c  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
18:24:14.0235 0x099c  USBSTOR - ok
18:24:14.0298 0x099c  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
18:24:14.0298 0x099c  usbuhci - ok
18:24:14.0407 0x099c  [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:24:14.0438 0x099c  usbvideo - ok
18:24:14.0532 0x099c  [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
18:24:14.0532 0x099c  USBXHCI - ok
18:24:14.0563 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc        C:\Windows\system32\lsass.exe
18:24:14.0563 0x099c  VaultSvc - ok
18:24:14.0610 0x099c  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:24:14.0610 0x099c  vdrvroot - ok
18:24:14.0844 0x099c  [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds             C:\Windows\System32\vds.exe
18:24:14.0938 0x099c  vds - ok
18:24:15.0001 0x099c  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
18:24:15.0016 0x099c  VerifierExt - ok
18:24:15.0188 0x099c  [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
18:24:15.0313 0x099c  vhdmp - ok
18:24:15.0360 0x099c  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:24:15.0376 0x099c  viaide - ok
18:24:15.0407 0x099c  [ 3CE922E34DB12D9F3C0EA856BC09687C, E50A1885FBC775E49614989ECFEA4ACBBDDA16AF459CC5361EED9E23CC7CD42C ] Vid             C:\Windows\System32\drivers\Vid.sys
18:24:15.0438 0x099c  Vid - ok
18:24:15.0469 0x099c  [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus           C:\Windows\system32\drivers\vmbus.sys
18:24:15.0485 0x099c  vmbus - ok
18:24:15.0501 0x099c  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
18:24:15.0501 0x099c  VMBusHID - ok
18:24:15.0563 0x099c  [ 68F8C26DEA2D42E8DEC0778943433C80, 81E8F9D62815F94952CEEABD0689473CC330F7890F66872DCD35A43C06ED33CD ] vmbusr          C:\Windows\System32\drivers\vmbusr.sys
18:24:15.0610 0x099c  vmbusr - ok
18:24:15.0751 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
18:24:15.0829 0x099c  vmicguestinterface - ok
18:24:15.0891 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
18:24:15.0907 0x099c  vmicheartbeat - ok
18:24:15.0954 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
18:24:15.0969 0x099c  vmickvpexchange - ok
18:24:16.0048 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv         C:\Windows\System32\ICSvc.dll
18:24:16.0063 0x099c  vmicrdv - ok
18:24:16.0173 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
18:24:16.0204 0x099c  vmicshutdown - ok
18:24:16.0282 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync    C:\Windows\System32\ICSvc.dll
18:24:16.0313 0x099c  vmictimesync - ok
18:24:16.0360 0x099c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss         C:\Windows\System32\ICSvc.dll
18:24:16.0391 0x099c  vmicvss - ok
18:24:16.0470 0x099c  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:24:16.0470 0x099c  volmgr - ok
18:24:16.0548 0x099c  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:24:16.0563 0x099c  volmgrx - ok
18:24:16.0673 0x099c  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:24:16.0688 0x099c  volsnap - ok
18:24:16.0751 0x099c  [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci            C:\Windows\System32\drivers\vpci.sys
18:24:16.0766 0x099c  vpci - ok
18:24:16.0798 0x099c  [ ADBE96C33D1A5BB1BBAF90B4BC84F523, 6E9C9ED3D51E4B6E494D42ECA6F824AD86D676C12C39BBE6B8BD96366BCB02DA ] vpcivsp         C:\Windows\System32\drivers\vpcivsp.sys
18:24:16.0813 0x099c  vpcivsp - ok
18:24:16.0938 0x099c  [ 0A896CED40823D46BCDCD3AD8D664C96, E68E4E441FBAA361445AE34C08FE625315EE0C0CAA3A0BF08A409546A20020E7 ] vpnpbus         C:\Windows\System32\drivers\vpnpbus.sys
18:24:16.0954 0x099c  vpnpbus - ok
18:24:17.0032 0x099c  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
18:24:17.0048 0x099c  vsmraid - ok
18:24:17.0376 0x099c  [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS             C:\Windows\system32\vssvc.exe
18:24:17.0563 0x099c  VSS - ok
18:24:17.0641 0x099c  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
18:24:17.0673 0x099c  VSTXRAID - ok
18:24:17.0751 0x099c  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
18:24:17.0751 0x099c  vwifibus - ok
18:24:17.0813 0x099c  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:24:17.0829 0x099c  vwififlt - ok
18:24:17.0891 0x099c  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:24:17.0891 0x099c  vwifimp - ok
18:24:18.0016 0x099c  [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time         C:\Windows\system32\w32time.dll
18:24:18.0063 0x099c  W32Time - ok
18:24:18.0126 0x099c  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
18:24:18.0126 0x099c  WacomPen - ok
18:24:18.0157 0x099c  [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
18:24:18.0157 0x099c  Wanarp - ok
18:24:18.0173 0x099c  [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:24:18.0173 0x099c  Wanarpv6 - ok
18:24:18.0469 0x099c  [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine        C:\Windows\system32\wbengine.exe
18:24:18.0579 0x099c  wbengine - ok
18:24:18.0704 0x099c  [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:24:18.0720 0x099c  WbioSrvc - ok
18:24:18.0813 0x099c  [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
18:24:18.0829 0x099c  Wcmsvc - ok
18:24:18.0938 0x099c  [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:24:18.0970 0x099c  wcncsvc - ok
18:24:19.0001 0x099c  [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:24:19.0016 0x099c  WcsPlugInService - ok
18:24:19.0063 0x099c  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
18:24:19.0063 0x099c  WdBoot - ok
18:24:19.0251 0x099c  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:24:19.0313 0x099c  Wdf01000 - ok
18:24:19.0407 0x099c  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
18:24:19.0407 0x099c  WdFilter - ok
18:24:19.0470 0x099c  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:24:19.0470 0x099c  WdiServiceHost - ok
18:24:19.0485 0x099c  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:24:19.0501 0x099c  WdiSystemHost - ok
18:24:19.0563 0x099c  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
18:24:19.0563 0x099c  WdNisDrv - ok
18:24:19.0626 0x099c  WdNisSvc - ok
18:24:19.0704 0x099c  [ 91B18D7A1702ED589E67C6C81052B955, 5D1DA8B86106A28E50BBCCB36527CC130D41201F5BE1D3DC5F1D6F7ECCF807BA ] WebClient       C:\Windows\System32\webclnt.dll
18:24:19.0720 0x099c  WebClient - ok
18:24:19.0829 0x099c  [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:24:19.0845 0x099c  Wecsvc - ok
18:24:19.0876 0x099c  [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
18:24:19.0891 0x099c  WEPHOSTSVC - ok
18:24:19.0923 0x099c  [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:24:19.0923 0x099c  wercplsupport - ok
18:24:19.0970 0x099c  [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc          C:\Windows\System32\WerSvc.dll
18:24:19.0985 0x099c  WerSvc - ok
18:24:20.0063 0x099c  [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
18:24:20.0063 0x099c  WFPLWFS - ok
18:24:20.0095 0x099c  [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc          C:\Windows\System32\wiarpc.dll
18:24:20.0110 0x099c  WiaRpc - ok
18:24:20.0157 0x099c  [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:24:20.0173 0x099c  WIMMount - ok
18:24:20.0173 0x099c  WinDefend - ok
18:24:20.0251 0x099c  [ A0D15D8727D0780C51628DF46B7268B3, 5E23F3ED1D6620C39A644F9879404A22DED86B3B076EC4A898B4B6BE244AFD64 ] WinDivert1.1    C:\Program Files\KMSpico\WinDivert.sys
18:24:20.0266 0x099c  WinDivert1.1 - ok
18:24:20.0470 0x099c  [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
18:24:20.0516 0x099c  WinHttpAutoProxySvc - ok
18:24:20.0845 0x099c  [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:24:20.0876 0x099c  Winmgmt - ok
18:24:21.0266 0x099c  [ 9CE162EB9057CF079736F4DD00FC0D6C, 412C34557866D2A3B3CDAFA5A03B87C01AACF75E349802E511098B20137028D9 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:24:21.0470 0x099c  WinRM - ok
18:24:21.0751 0x099c  [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] WlanSvc         C:\Windows\System32\wlansvc.dll
18:24:21.0813 0x099c  WlanSvc - ok
18:24:22.0063 0x099c  [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
18:24:22.0126 0x099c  wlidsvc - ok
18:24:22.0173 0x099c  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
18:24:22.0173 0x099c  WmiAcpi - ok
18:24:22.0235 0x099c  [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:24:22.0267 0x099c  wmiApSrv - ok
18:24:22.0329 0x099c  WMPNetworkSvc - ok
18:24:22.0407 0x099c  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
18:24:22.0517 0x099c  Wof - ok
18:24:22.0735 0x099c  [ 61BF52E9FFAB27A0B6D621BE26088373, 81291D52C381360E69D51E7DEB05CFAC651A7E9EF781CA23062C0583D0C94708 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
18:24:22.0860 0x099c  workfolderssvc - ok
18:24:22.0907 0x099c  [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
18:24:22.0907 0x099c  wpcfltr - ok
18:24:22.0970 0x099c  [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:24:22.0985 0x099c  WPCSvc - ok
18:24:23.0032 0x099c  [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:24:23.0032 0x099c  WPDBusEnum - ok
18:24:23.0063 0x099c  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
18:24:23.0079 0x099c  WpdUpFltr - ok
18:24:23.0110 0x099c  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:24:23.0126 0x099c  ws2ifsl - ok
18:24:23.0188 0x099c  [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc          C:\Windows\System32\wscsvc.dll
18:24:23.0188 0x099c  wscsvc - ok
18:24:23.0204 0x099c  WSearch - ok
18:24:23.0657 0x099c  [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService       C:\Windows\System32\WSService.dll
18:24:23.0798 0x099c  WSService - ok
18:24:24.0313 0x099c  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:24:24.0454 0x099c  wuauserv - ok
18:24:24.0517 0x099c  [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:24:24.0532 0x099c  WudfPf - ok
18:24:24.0579 0x099c  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
18:24:24.0595 0x099c  WUDFRd - ok
18:24:24.0626 0x099c  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFSensorLP    C:\Windows\System32\drivers\WUDFRd.sys
18:24:24.0626 0x099c  WUDFSensorLP - ok
18:24:24.0688 0x099c  [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:24:24.0688 0x099c  wudfsvc - ok
18:24:24.0735 0x099c  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
18:24:24.0751 0x099c  WUDFWpdFs - ok
18:24:24.0860 0x099c  [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:24:24.0892 0x099c  WwanSvc - ok
18:24:24.0907 0x099c  ================ Scan global ===============================
18:24:25.0017 0x099c  [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\Windows\system32\basesrv.dll
18:24:25.0095 0x099c  [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\Windows\system32\winsrv.dll
18:24:25.0173 0x099c  [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\Windows\system32\sxssrv.dll
18:24:25.0267 0x099c  [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\Windows\system32\services.exe
18:24:25.0345 0x099c  [ Global ] - ok
18:24:25.0345 0x099c  ================ Scan MBR ==================================
18:24:25.0376 0x099c  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
18:24:30.0689 0x099c  \Device\Harddisk0\DR0 - ok
18:24:30.0689 0x099c  ================ Scan VBR ==================================
18:24:30.0735 0x099c  [ 05197A7EB12194D5E5F3D06F2BD72261 ] \Device\Harddisk0\DR0\Partition1
18:24:30.0767 0x099c  \Device\Harddisk0\DR0\Partition1 - ok
18:24:30.0798 0x099c  [ FA24DA37A19E677A810270CDCF033322 ] \Device\Harddisk0\DR0\Partition2
18:24:30.0814 0x099c  \Device\Harddisk0\DR0\Partition2 - ok
18:24:30.0845 0x099c  [ 61406D839E2CEF7AD386001126860D93 ] \Device\Harddisk0\DR0\Partition3
18:24:30.0907 0x099c  \Device\Harddisk0\DR0\Partition3 - ok
18:24:30.0907 0x099c  ================ Scan active images ========================
18:24:30.0907 0x099c  [ FA47B0AA255B7CF4519E995C6404AE22, F7B315B96E27D1CA00FDB181646B4DF10A0B5AAA7D407AAECAABD7C2348D339F ] C:\Windows\System32\drivers\crashdmp.sys
18:24:30.0907 0x099c  C:\Windows\System32\drivers\crashdmp.sys - ok
18:24:30.0923 0x099c  [ 224C2CB37497472C345CB2A02DF11363, 73FE60B2D1D7395E1B97B673CC296A5FE36BA4F4AD9EAD13F3F545134DAC7B70 ] C:\Windows\System32\drivers\Diskdump.sys
18:24:30.0923 0x099c  C:\Windows\System32\drivers\Diskdump.sys - ok
18:24:30.0923 0x099c  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] C:\Windows\System32\drivers\storahci.sys
18:24:30.0923 0x099c  C:\Windows\System32\drivers\storahci.sys - ok
18:24:30.0923 0x099c  [ 61A1C2641321A6B89A2B41C5D481EF48, A88596BD3095AB603151BE1C9FB2299039C4A049F940A300FBBBD69EC9D30914 ] C:\Windows\System32\drivers\dumpfve.sys
18:24:30.0923 0x099c  C:\Windows\System32\drivers\dumpfve.sys - ok
18:24:30.0939 0x099c  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] C:\Windows\System32\drivers\cdrom.sys
18:24:30.0939 0x099c  C:\Windows\System32\drivers\cdrom.sys - ok
18:24:30.0939 0x099c  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] C:\Windows\System32\drivers\null.sys
18:24:30.0939 0x099c  C:\Windows\System32\drivers\null.sys - ok
18:24:30.0954 0x099c  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] C:\Windows\System32\drivers\beep.sys
18:24:30.0954 0x099c  C:\Windows\System32\drivers\beep.sys - ok
18:24:30.0954 0x099c  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] C:\Windows\System32\drivers\BasicRender.sys
18:24:30.0954 0x099c  C:\Windows\System32\drivers\BasicRender.sys - ok
18:24:30.0970 0x099c  [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] C:\Windows\System32\drivers\dxgkrnl.sys
18:24:30.0970 0x099c  C:\Windows\System32\drivers\dxgkrnl.sys - ok
18:24:30.0985 0x099c  [ 9CC0003FB8ED3763B977B43F1012FF63, 6FDB6FFE1D77F9BA0ABDCA387BFD9AE2C547DB8D89C20BB8D5C31798E569BFB7 ] C:\Windows\System32\drivers\watchdog.sys
18:24:30.0985 0x099c  C:\Windows\System32\drivers\watchdog.sys - ok
18:24:30.0985 0x099c  [ 4030CB06B8D963A45CED9E60C9F2A11E, 886EF96B7A8E8C503CBDFC64BBC8B01AB52978DDC9A5AC3A847CA25627E8ADD0 ] C:\Windows\System32\drivers\dxgmms1.sys
18:24:30.0985 0x099c  C:\Windows\System32\drivers\dxgmms1.sys - ok
18:24:31.0001 0x099c  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] C:\Windows\System32\drivers\BasicDisplay.sys
18:24:31.0001 0x099c  C:\Windows\System32\drivers\BasicDisplay.sys - ok
18:24:31.0017 0x099c  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] C:\Windows\System32\drivers\npfs.sys
18:24:31.0017 0x099c  C:\Windows\System32\drivers\npfs.sys - ok
18:24:31.0017 0x099c  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] C:\Windows\System32\drivers\msfs.sys
18:24:31.0017 0x099c  C:\Windows\System32\drivers\msfs.sys - ok
18:24:31.0032 0x099c  [ 3C7361E0A5A6966DB957B94ECF924A9E, 6AE6BFD1E6987E85F4C134639F7AC2A92523B9E9A638A7FA0A98E3B195430D24 ] C:\Windows\System32\drivers\tdi.sys
18:24:31.0032 0x099c  C:\Windows\System32\drivers\tdi.sys - ok
18:24:31.0032 0x099c  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] C:\Windows\System32\drivers\tdx.sys
18:24:31.0032 0x099c  C:\Windows\System32\drivers\tdx.sys - ok
18:24:31.0048 0x099c  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] C:\Windows\System32\drivers\netbt.sys
18:24:31.0048 0x099c  C:\Windows\System32\drivers\netbt.sys - ok
18:24:31.0048 0x099c  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] C:\Windows\System32\drivers\afd.sys
18:24:31.0048 0x099c  C:\Windows\System32\drivers\afd.sys - ok
18:24:31.0064 0x099c  [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] C:\Windows\System32\drivers\pacer.sys
18:24:31.0064 0x099c  C:\Windows\System32\drivers\pacer.sys - ok
18:24:31.0064 0x099c  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] C:\Windows\System32\drivers\vwififlt.sys
18:24:31.0064 0x099c  C:\Windows\System32\drivers\vwififlt.sys - ok
18:24:31.0079 0x099c  [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] C:\Windows\System32\drivers\netbios.sys
18:24:31.0079 0x099c  C:\Windows\System32\drivers\netbios.sys - ok
18:24:31.0079 0x099c  [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] C:\Windows\System32\drivers\avkmgr.sys
18:24:31.0079 0x099c  C:\Windows\System32\drivers\avkmgr.sys - ok
18:24:31.0095 0x099c  [ 07C8454D3A94BA478752FAFA2B94E0FE, EB19396D4A6D51D6C33ED55C8EF0259045801D39CCE2945931F9163D6006C133 ] C:\Windows\System32\drivers\avipbb.sys
18:24:31.0095 0x099c  C:\Windows\System32\drivers\avipbb.sys - ok
18:24:31.0095 0x099c  [ EE2F3C0D6ADBC975D6B621EC15ACF4E2, D158C0FACA6344BCD77616EC3D23212F9FD76D7D0C834ACA51998B80162106D5 ] C:\Windows\System32\drivers\csc.sys
18:24:31.0095 0x099c  C:\Windows\System32\drivers\csc.sys - ok
18:24:31.0110 0x099c  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] C:\Windows\System32\drivers\rdbss.sys
18:24:31.0110 0x099c  C:\Windows\System32\drivers\rdbss.sys - ok
18:24:31.0110 0x099c  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] C:\Windows\System32\drivers\dfsc.sys
18:24:31.0110 0x099c  C:\Windows\System32\drivers\dfsc.sys - ok
18:24:31.0126 0x099c  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] C:\Windows\System32\drivers\mssmbios.sys
18:24:31.0126 0x099c  C:\Windows\System32\drivers\mssmbios.sys - ok
18:24:31.0126 0x099c  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] C:\Windows\System32\drivers\npsvctrig.sys
18:24:31.0126 0x099c  C:\Windows\System32\drivers\npsvctrig.sys - ok
18:24:31.0142 0x099c  [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] C:\Windows\System32\drivers\nsiproxy.sys
18:24:31.0142 0x099c  C:\Windows\System32\drivers\nsiproxy.sys - ok
18:24:31.0142 0x099c  [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] C:\Windows\System32\drivers\wanarp.sys
18:24:31.0142 0x099c  C:\Windows\System32\drivers\wanarp.sys - ok
18:24:31.0157 0x099c  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] C:\Windows\System32\drivers\dam.sys
18:24:31.0157 0x099c  C:\Windows\System32\drivers\dam.sys - ok
18:24:31.0157 0x099c  [ B6EA7E4E23C43DB6E722E9D0B18FE3C3, C7AD98FB71E7A4017EE88D20DA835883E7CE6C48D914578D939DA0C6632F7CD9 ] C:\Windows\System32\drivers\cbfs4.sys
18:24:31.0157 0x099c  C:\Windows\System32\drivers\cbfs4.sys - ok
18:24:31.0173 0x099c  [ F0CB6DB513CAC393D04A0FCE0A59E1BF, E6EE159D0E6B1F666946B1FE421874044E89BB2EB60A521BAA111A1229FA7B2D ] C:\Windows\System32\drivers\ahcache.sys
18:24:31.0173 0x099c  C:\Windows\System32\drivers\ahcache.sys - ok
18:24:31.0173 0x099c  [ 3C32FF010F869BC184DF71290477384E, 55CFCEC7F026C6E2E96A2FBE846AB513BB12BB0348735274FE1B71AF019C837B ] C:\Windows\System32\drivers\tap0901.sys
18:24:31.0173 0x099c  C:\Windows\System32\drivers\tap0901.sys - ok
18:24:31.0189 0x099c  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] C:\Windows\System32\drivers\CompositeBus.sys
18:24:31.0189 0x099c  C:\Windows\System32\drivers\CompositeBus.sys - ok
18:24:31.0189 0x099c  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] C:\Windows\System32\drivers\kdnic.sys
18:24:31.0189 0x099c  C:\Windows\System32\drivers\kdnic.sys - ok
18:24:31.0204 0x099c  [ 44AA550C6B46C80E430A3D29820D629E, F997E2F1F1A39392B49A3825F73175E36EC74413FD211C457D2FD5669963D4B0 ] C:\Windows\System32\ntdll.dll
18:24:31.0204 0x099c  C:\Windows\System32\ntdll.dll - ok
18:24:31.0220 0x099c  [ D8564418BAC13776E43DB5F6B4FA775E, FC8EF5704C871187AE4945000DB3D3758E8B867E90F8E530B0F12C6438D17D35 ] C:\Windows\System32\smss.exe
18:24:31.0220 0x099c  C:\Windows\System32\smss.exe - ok
18:24:31.0220 0x099c  [ 05CB5910B3CA6019FC3CCA815EE06FFB, 8FA532ED500BB1F08E8034A6125BDD53B74D5E6AB0A83A6185B07AAFCD90AA82 ] C:\Windows\System32\drivers\dne64x.sys
18:24:31.0220 0x099c  C:\Windows\System32\drivers\dne64x.sys - ok
18:24:31.0220 0x099c  [ 387A1E98BE548E4F199343CBA01E9D6D, 4A2B66E5587BE0BDEC99C1EC758DB67F35D1988B1FCD916355D6473E3BCDD13E ] C:\Windows\System32\autochk.exe
18:24:31.0220 0x099c  C:\Windows\System32\autochk.exe - ok
18:24:31.0235 0x099c  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] C:\Windows\System32\drivers\umbus.sys
18:24:31.0235 0x099c  C:\Windows\System32\drivers\umbus.sys - ok
18:24:31.0235 0x099c  [ F554291C0A11F5B713B54C5886D4AA31, 65B7DF4BB3DFF616DC2C863988E30F901E14221C00E2A99A2079E19D91D93BAE ] C:\Windows\System32\drivers\nvlddmkm.sys
18:24:31.0235 0x099c  C:\Windows\System32\drivers\nvlddmkm.sys - ok
18:24:31.0251 0x099c  [ E6D200304A8D739597678807820ABB43, 05194D2625F48C5065318C28B242A03A1C3BDC441087DAFF777203506CE4CF6E ] C:\Windows\System32\drivers\igdkmd64.sys
18:24:31.0251 0x099c  C:\Windows\System32\drivers\igdkmd64.sys - ok
18:24:31.0251 0x099c  [ B6AC71AAA2B10848F57FC49D55A651AF, 4FAD833654E86F9FAF972AC8AF87FD4A9A765B26B96F096BBD63506B5D521A91 ] C:\Windows\System32\drivers\HECIx64.sys
18:24:31.0251 0x099c  C:\Windows\System32\drivers\HECIx64.sys - ok
18:24:31.0267 0x099c  [ FE0ADF5028EB8C1339B66B3AEDE3FEF9, F496053D0E184D4FC15B0615FCBEEBF1474ADF154144F67627E015F795669104 ] C:\Windows\System32\drivers\usbport.sys
18:24:31.0267 0x099c  C:\Windows\System32\drivers\usbport.sys - ok
18:24:31.0282 0x099c  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] C:\Windows\System32\drivers\hdaudbus.sys
18:24:31.0282 0x099c  C:\Windows\System32\drivers\hdaudbus.sys - ok
18:24:31.0282 0x099c  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] C:\Windows\System32\drivers\usbehci.sys
18:24:31.0282 0x099c  C:\Windows\System32\drivers\usbehci.sys - ok
18:24:31.0298 0x099c  [ B04BF12AEBFB5E71971B4EDA4EDFC196, BCFC79ED014F3E835957D6FD5985DF97A9F2BFD9E762594C48AB8299240FF667 ] C:\Windows\System32\drivers\athwnx.sys
18:24:31.0298 0x099c  C:\Windows\System32\drivers\athwnx.sys - ok
18:24:31.0298 0x099c  [ 10B5AB16C34D4E316EDB825386F57DA6, FE5ABF47AA153EF35821C841025A99C77B97C09ED6B649A88B3609C00FE8281B ] C:\Windows\System32\drivers\FLxHCIc.sys
18:24:31.0298 0x099c  C:\Windows\System32\drivers\FLxHCIc.sys - ok
18:24:31.0314 0x099c  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] C:\Windows\System32\drivers\vwifibus.sys
18:24:31.0314 0x099c  C:\Windows\System32\drivers\vwifibus.sys - ok
18:24:31.0314 0x099c  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] C:\Windows\System32\drivers\Rt630x64.sys
18:24:31.0314 0x099c  C:\Windows\System32\drivers\Rt630x64.sys - ok
18:24:31.0329 0x099c  [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] C:\Windows\System32\drivers\i8042prt.sys
18:24:31.0329 0x099c  C:\Windows\System32\drivers\i8042prt.sys - ok
18:24:31.0345 0x099c  [ 420BFFA74350020E0AD6F22E73CB63B6, 3D4696A00A861F87A362A6FA04481E0DC8BA532EBA131645D16B34D396F84CF9 ] C:\Windows\System32\drivers\SynTP.sys
18:24:31.0345 0x099c  C:\Windows\System32\drivers\SynTP.sys - ok
18:24:31.0345 0x099c  [ D79920BE4E6683D3AB50F71457A4F6C6, 7D93885C5B86F4BDDBD2FAC588A1091858B674FA401BEE30D336F4B6D717443D ] C:\Windows\System32\drivers\usbd.sys
18:24:31.0345 0x099c  C:\Windows\System32\drivers\usbd.sys - ok
18:24:31.0360 0x099c  [ 99387C515F80270F097F6DD9B5315649, 01DBF3B69DCA897AD45271DF0DF96F3503274881800DAD36AB37FCE97167C6E5 ] C:\Windows\System32\drivers\battc.sys
18:24:31.0360 0x099c  C:\Windows\System32\drivers\battc.sys - ok
18:24:31.0376 0x099c  [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] C:\Windows\System32\drivers\kbdclass.sys
18:24:31.0376 0x099c  C:\Windows\System32\drivers\kbdclass.sys - ok
18:24:31.0376 0x099c  [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] C:\Windows\System32\drivers\mouclass.sys
18:24:31.0376 0x099c  C:\Windows\System32\drivers\mouclass.sys - ok
18:24:31.0392 0x099c  [ 032D35C996F21D19A205A7C8F0B76F3C, 1A1C5BD7204BB937A05E201BCC0840B2C8E4B273D8E1D6D9407264FB4C57F014 ] C:\Windows\System32\drivers\ATK64AMD.sys
18:24:31.0392 0x099c  C:\Windows\System32\drivers\ATK64AMD.sys - ok
18:24:31.0392 0x099c  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] C:\Windows\System32\drivers\CmBatt.sys
18:24:31.0392 0x099c  C:\Windows\System32\drivers\CmBatt.sys - ok
18:24:31.0407 0x099c  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] C:\Windows\System32\drivers\intelppm.sys
18:24:31.0407 0x099c  C:\Windows\System32\drivers\intelppm.sys - ok
18:24:31.0407 0x099c  [ 1DD05F4857C2188744B9E864658949DD, 438AB00C632C8B472C0BDB81CEE0133A58FE7421EA4D9349DAD78B9CC4747F69 ] C:\Windows\System32\drivers\ks.sys
18:24:31.0407 0x099c  C:\Windows\System32\drivers\ks.sys - ok
18:24:31.0423 0x099c  [ 2A997C64F9B2584D81FA6749FE36A887, D26F5BC591ED46B96B2ACFDF555C2BF42F4915A22B12E4139ACEF7DE7AC303A7 ] C:\Windows\System32\drivers\serscan.sys
18:24:31.0423 0x099c  C:\Windows\System32\drivers\serscan.sys - ok
18:24:31.0423 0x099c  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] C:\Windows\System32\drivers\wmiacpi.sys
18:24:31.0423 0x099c  C:\Windows\System32\drivers\wmiacpi.sys - ok
18:24:31.0439 0x099c  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] C:\Windows\System32\drivers\ksthunk.sys
18:24:31.0439 0x099c  C:\Windows\System32\drivers\ksthunk.sys - ok
18:24:31.0439 0x099c  [ 3103BBAB41F0C75BE6FA302439C9B9D6, CC0D62B5B5A0E6193B27CA7E3BCDD3E5FFB5F1EFDA97CE1EB76FCA7D1B159FEF ] C:\Windows\System32\drivers\drmk.sys
18:24:31.0439 0x099c  C:\Windows\System32\drivers\drmk.sys - ok
18:24:31.0454 0x099c  [ 8685379B82AC81187813225905531D1E, 9220153F68B58DF79B5847F53C9275CAD0BF1E47151EEA0C21BC55489DC2042C ] C:\Windows\System32\drivers\portcls.sys
18:24:31.0454 0x099c  C:\Windows\System32\drivers\portcls.sys - ok
18:24:31.0454 0x099c  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] C:\Windows\System32\drivers\NdisVirtualBus.sys
18:24:31.0454 0x099c  C:\Windows\System32\drivers\NdisVirtualBus.sys - ok
18:24:31.0470 0x099c  [ DBFE7B2DF103F74AE51840B3C5F25FE9, 436CAA417FD24BA870F117FA4BABA2AB694825795508BCFCC8C927CC2D5BBC5E ] C:\Windows\System32\drivers\nvvad64v.sys
18:24:31.0470 0x099c  C:\Windows\System32\drivers\nvvad64v.sys - ok
18:24:31.0485 0x099c  [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] C:\Windows\System32\drivers\swenum.sys
18:24:31.0485 0x099c  C:\Windows\System32\drivers\swenum.sys - ok
18:24:31.0485 0x099c  [ 0A896CED40823D46BCDCD3AD8D664C96, E68E4E441FBAA361445AE34C08FE625315EE0C0CAA3A0BF08A409546A20020E7 ] C:\Windows\System32\drivers\vpnpbus.sys
18:24:31.0485 0x099c  C:\Windows\System32\drivers\vpnpbus.sys - ok
18:24:31.0501 0x099c  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] C:\Windows\System32\drivers\rdpbus.sys
18:24:31.0501 0x099c  C:\Windows\System32\drivers\rdpbus.sys - ok
18:24:31.0501 0x099c  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] C:\Windows\System32\drivers\usbhub.sys
18:24:31.0501 0x099c  C:\Windows\System32\drivers\usbhub.sys - ok
18:24:31.0517 0x099c  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] C:\Windows\System32\drivers\HdAudio.sys
18:24:31.0517 0x099c  C:\Windows\System32\drivers\HdAudio.sys - ok
18:24:31.0517 0x099c  [ 66DE264C2DEFE746CB2E71F3A5EB5C2C, 628CEABF6A6A550524BB5D104296AAFCF76A9DB86E83D26B7D4A9B6BEB3EF55E ] C:\Windows\System32\drivers\FLxHCIh.sys
18:24:31.0517 0x099c  C:\Windows\System32\drivers\FLxHCIh.sys - ok
18:24:31.0532 0x099c  [ 1BB9CC78C91536CBA7B04B61ED0F85C4, 5F3337266F8EC913BAFF5738955BE58D380499797CDCF06DDD52641438311797 ] C:\Windows\System32\rpcrt4.dll
18:24:31.0532 0x099c  C:\Windows\System32\rpcrt4.dll - ok
18:24:31.0532 0x099c  [ 4983684E2DDB7B617AA8EA94E037360F, B77720623D78D5BE64D041D4EC49E259C658D2637B3E1D778B8F6FA447B0BEBB ] C:\Windows\System32\imm32.dll
18:24:31.0532 0x099c  C:\Windows\System32\imm32.dll - ok
18:24:31.0548 0x099c  [ 6835D94FDAAB39E008E8490BD3E88CA3, 7088E07144BC20F4DAEC88C06B6A43D180EC74F179B80C65B81697762141C967 ] C:\Windows\System32\oleaut32.dll
18:24:31.0548 0x099c  C:\Windows\System32\oleaut32.dll - ok
18:24:31.0548 0x099c  [ 7CE4D5AB5626A26A6E6DFC7397179841, 871E24E52C58BBECB251083F1705261E7B3D3D8E017089FCD52D7582571B59F1 ] C:\Windows\System32\msvcrt.dll
18:24:31.0548 0x099c  C:\Windows\System32\msvcrt.dll - ok
18:24:31.0564 0x099c  [ 6AFE9D20019BA4C76188A458573F4461, B7E9C9E6FD59521672553947833AEC7BB84E6B1DFFD7E4850B64171EB67C7D7D ] C:\Windows\System32\combase.dll
18:24:31.0564 0x099c  C:\Windows\System32\combase.dll - ok
18:24:31.0564 0x099c  [ B7564AB4F8A12A16C568F256EC6C429B, DD4E34227A1227F10BFD2DF1BA40D3EEB905FF6E9FF4905BE3323102ACD45F28 ] C:\Windows\System32\psapi.dll
18:24:31.0564 0x099c  C:\Windows\System32\psapi.dll - ok
18:24:31.0564 0x099c  [ D0AD65EE089F735BF546ABFE28D192C0, E18E9D87EB1984DE4787137EBC704BE2A4D95E5E06D36CA90D504CFB98B432C1 ] C:\Windows\System32\comdlg32.dll
18:24:31.0564 0x099c  C:\Windows\System32\comdlg32.dll - ok
18:24:31.0579 0x099c  [ 905A32D35E8CC1F08F040F77B03697FF, CA1B6E1B52E9DA5977C5105C28E3FA5142B4CBF16391B532A6037B396A2F7884 ] C:\Windows\System32\shlwapi.dll
18:24:31.0579 0x099c  C:\Windows\System32\shlwapi.dll - ok
18:24:31.0579 0x099c  [ 63274242700279852B5CFFE4E2E0C6D1, E8BE39469216109FD5946702DA805B235BF2FF89572B77674E5DDD4021FCFAE4 ] C:\Windows\System32\wow64cpu.dll
18:24:31.0579 0x099c  C:\Windows\System32\wow64cpu.dll - ok
18:24:31.0595 0x099c  [ F0A117D19873FCDF801F082F33BFBB6C, 44832E426E51BACFBE6E49B250832B01E7435B1036542EB88D8111E6B83D193D ] C:\Windows\System32\user32.dll
18:24:31.0595 0x099c  C:\Windows\System32\user32.dll - ok
18:24:31.0595 0x099c  [ 75428240F81D41B9F8F7CE5DDB07CA0F, B420AD4B2DE3C6222F86E2FDE7F8FAB73675D81E817CD81EAEFC7E8FD076E50B ] C:\Windows\System32\nsi.dll
18:24:31.0595 0x099c  C:\Windows\System32\nsi.dll - ok
18:24:31.0610 0x099c  [ A4B86A08CEC7841895C817430CB76CE2, 1185171CDAB5373460EE225F5A2DBF7C89F5CFBEC19F2A02609F65241FFAD0DA ] C:\Windows\System32\clbcatq.dll
18:24:31.0610 0x099c  C:\Windows\System32\clbcatq.dll - ok
18:24:31.0610 0x099c  [ E7F88B66FD5C0DA438371C998273FD0D, 674B6C08F58183949D775C5B2713A485F79AEBAAA86F8F67292576694C17F36C ] C:\Windows\System32\setupapi.dll
18:24:31.0610 0x099c  C:\Windows\System32\setupapi.dll - ok
18:24:31.0626 0x099c  [ 1AEFA4B25F72772F131D760F664ED7E1, 13C4A554F34FBB54257EEA8832AAFB37453410B563D2589F9A533639D80B54C7 ] C:\Windows\System32\difxapi.dll
18:24:31.0626 0x099c  C:\Windows\System32\difxapi.dll - ok
18:24:31.0626 0x099c  [ B65523C830308241407F6EBCC6484E70, 0045EE4010BF5FB60886F1B02EA73590BBEEED78CE4577989EE55B4BF2B74923 ] C:\Windows\System32\sechost.dll
18:24:31.0626 0x099c  C:\Windows\System32\sechost.dll - ok
18:24:31.0626 0x099c  [ ABB028BAB78E7B4AFE374F8246F6CCB6, 8F4BE7D662D4C9CCCB8E76ECEF3B1B35063878BBF9E002EFF5A31B7E51CFB89A ] C:\Windows\System32\Wldap32.dll
18:24:31.0626 0x099c  C:\Windows\System32\Wldap32.dll - ok
18:24:31.0642 0x099c  [ 6F997D98C6A30D79C622811FBAB9119E, 730BD302DEF13201B7E197524F373CB2E422D167C8ACBE190F551F6AC153D13C ] C:\Windows\System32\ws2_32.dll
18:24:31.0642 0x099c  C:\Windows\System32\ws2_32.dll - ok
18:24:31.0642 0x099c  [ F3523E611AB0B0977B048263A12DCF2A, 85243102F253AD4FB3E593A4BC2E3801256995F9E1E2FCA28B28B1E326D57BEC ] C:\Windows\System32\kernel32.dll
18:24:31.0642 0x099c  C:\Windows\System32\kernel32.dll - ok
18:24:31.0657 0x099c  [ 332E5E35DE9E8175A9550501E57E0612, AA07A34F20225EE4619A7F1948DDD81EAC45BD499D9D2D1DCA979974FBB487F5 ] C:\Windows\System32\ole32.dll
18:24:31.0657 0x099c  C:\Windows\System32\ole32.dll - ok
18:24:31.0657 0x099c  [ D103F021B60F27DEBAEC4D316C7A0F42, 850C12D62ABFF438150D46D4042E96256556DF41223C46481290B0B7ABAD6AFC ] C:\Windows\System32\msctf.dll
18:24:31.0657 0x099c  C:\Windows\System32\msctf.dll - ok
18:24:31.0673 0x099c  [ B9109627AA19B15BA4BFA5255AAECBF2, B6FF620C0D9456A36C8ED20CF55D4D0A532A67CB085B11BF8DB34A550AE378AC ] C:\Windows\System32\shell32.dll
18:24:31.0673 0x099c  C:\Windows\System32\shell32.dll - ok
18:24:31.0673 0x099c  [ 561F1AB95F4F01C691BDABA5FD5C67FC, 4C6184C1A72B2F84BB1CA5A72F89CC44F9F37FF225D834EBCEFF26F820635BED ] C:\Windows\System32\advapi32.dll
18:24:31.0673 0x099c  C:\Windows\System32\advapi32.dll - ok
18:24:31.0689 0x099c  [ 9E2ABB0CAB26EBD775D968EAB1C1F6EC, C71BA2C89FDD1395BDD2E8C4F7B00C2CF0BE428EA8DF59945CDCC5575922BCA4 ] C:\Windows\System32\normaliz.dll
18:24:31.0689 0x099c  C:\Windows\System32\normaliz.dll - ok
18:24:31.0689 0x099c  [ 57D55B8D3387C51758C785C425922C0E, 50186C80EDC3D54261E0472E0D69952D8E40603F9E04D56122591FA56164C421 ] C:\Windows\System32\wow64.dll
18:24:31.0689 0x099c  C:\Windows\System32\wow64.dll - ok
18:24:31.0704 0x099c  [ D04D884242F02CC02E9264A4DBF532DB, 9240087846AB1975F7DFABD1A143E26A2F587CE8B8CD28C64CC448FAE2366036 ] C:\Windows\System32\wow64win.dll
18:24:31.0704 0x099c  C:\Windows\System32\wow64win.dll - ok
18:24:31.0704 0x099c  [ 87CEF71F9D5951C9379D2F956C07C37D, 0898937BA0CB4127556C99E2C5AA36B7F39A815ADB2787AC365344FCD17C5678 ] C:\Windows\System32\gdi32.dll
18:24:31.0704 0x099c  C:\Windows\System32\gdi32.dll - ok
18:24:31.0720 0x099c  [ 1A5835F2E6B49A83F0AEAD17B4537AF7, 8B2E67949305E27925595BD376B39AFBA755BF70BAB92518D2B041FF95BF85A0 ] C:\Windows\System32\GdiPlus.dll
18:24:31.0720 0x099c  C:\Windows\System32\GdiPlus.dll - ok
18:24:31.0720 0x099c  [ 447CB6699A8EAD2BC516991738A16277, 1A58913C5A51B26FBB87AE26C34A0C9F2F4444D7F50CEF90635EDE17DBED77CC ] C:\Windows\System32\imagehlp.dll
18:24:31.0720 0x099c  C:\Windows\System32\imagehlp.dll - ok
18:24:31.0735 0x099c  [ 3E1F222E78B25B921C1130EB1B9370FE, 62150BA5A282322F795022AC064A67E7692BC3CEC64015F5DCC3847D3CC975C8 ] C:\Windows\System32\lpk.dll
18:24:31.0735 0x099c  C:\Windows\System32\lpk.dll - ok
18:24:31.0735 0x099c  [ 37C1CBCB3F420C754E86E3EC313D436D, 99DE183C3D3CEA2CFDB2D4AA7784CFF794772F7EC194BCF948C93C7A98D3944E ] C:\Windows\System32\KernelBase.dll
18:24:31.0735 0x099c  C:\Windows\System32\KernelBase.dll - ok
18:24:31.0751 0x099c  [ F5BA843DE3475B8D7FD5AFC21857A7C1, CA5551EAEFE88F79DCD48D556E3B92D740D574D0AD2866277B9B5D6ECCE4C59D ] C:\Windows\System32\crypt32.dll
18:24:31.0751 0x099c  C:\Windows\System32\crypt32.dll - ok
18:24:31.0751 0x099c  [ 88ACBA95BB55B8226D52117462B76CD4, 0E1D19A202D664B8600D69E17C0A3DA659917474ECC2D6CD813AB9A326E5F649 ] C:\Windows\System32\wintrust.dll
18:24:31.0751 0x099c  C:\Windows\System32\wintrust.dll - ok
18:24:31.0751 0x099c  [ 8D2DF744C20A8960C022BF71505D3B45, CF29FDDA58CD2A30EEDFC44E7E8D8D2C378330CC71930A0BB65652AE7AD76B8B ] C:\Windows\System32\cfgmgr32.dll
18:24:31.0767 0x099c  C:\Windows\System32\cfgmgr32.dll - ok
18:24:31.0767 0x099c  [ 0341BF7622E0D547446DB254868EF965, 3EDFFC4F5F4EFAFA62F6E0D61E27FCED6B56A94D6D742821471387017E9CBA43 ] C:\Windows\System32\comctl32.dll
18:24:31.0767 0x099c  C:\Windows\System32\comctl32.dll - ok
18:24:31.0767 0x099c  [ 7DA935827BC3F48AE146BA4B2755F1AD, BB5A9394BFCEAB681BDA3A32C9F5E6222BE4FA8D0D70BA9639FBA722F4D7B2C5 ] C:\Windows\System32\msasn1.dll
18:24:31.0767 0x099c  C:\Windows\System32\msasn1.dll - ok
18:24:31.0782 0x099c  [ 00542019B2969529C5E9C68C83BD6F88, A5EA5B5DD71A05E16CA6E32622825D415FF1BEE2A9C5DA7F4B8A8065EDEAAE36 ] C:\Windows\SysWOW64\normaliz.dll
18:24:31.0782 0x099c  C:\Windows\SysWOW64\normaliz.dll - ok
18:24:31.0798 0x099c  [ A21697CB0D4719CB0944EAB89954645C, 9352D85C65B26C4ECA60160F70A22D161564C48C1D164C2604E0C3F8B04B5E34 ] C:\Windows\SysWOW64\lpk.dll
18:24:31.0798 0x099c  C:\Windows\SysWOW64\lpk.dll - ok
18:24:31.0798 0x099c  [ 7FFB24B4A54B1ACD46CF6899D879CC9F, 7EBFADD2B35386226C69A21631A69FF82D66B855899C9B1CEE96987A3A64094D ] C:\Windows\System32\drivers\hidparse.sys
18:24:31.0798 0x099c  C:\Windows\System32\drivers\hidparse.sys - ok
18:24:31.0798 0x099c  [ 6CCC851608DD076C13E37737BB75A9DC, 7CAEF0F6B85C7131007D6BC91ADC683A47608A6FF9819871F87E0C4E96544AA5 ] C:\Windows\System32\win32k.sys
18:24:31.0798 0x099c  C:\Windows\System32\win32k.sys - ok
18:24:31.0814 0x099c  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] C:\Windows\System32\drivers\usbccgp.sys
18:24:31.0814 0x099c  C:\Windows\System32\drivers\usbccgp.sys - ok
18:24:31.0814 0x099c  [ 885901A37E73FA25F3F87A848BA8033F, 4335F74947E1C4FC8442E62D2BC61264D0019030F2F2D2E5D4D668548A411B01 ] C:\Windows\System32\csrsrv.dll
18:24:31.0814 0x099c  C:\Windows\System32\csrsrv.dll - ok
18:24:31.0829 0x099c  [ B2D3F07F5E8A13AF988A8B3C0A800880, CB41E9D0E8107AA9337DBD1C56F22461131AD0952A2472B4477E2649D16ECB15 ] C:\Windows\System32\csrss.exe
18:24:31.0829 0x099c  C:\Windows\System32\csrss.exe - ok
18:24:31.0829 0x099c  [ ABB7341766902F5AAB45E15F34D19E15, B9C1D2D5E7D781A4CEFF17BD5C8E4CBC586D00C4F8315892561EA52F4CB339D2 ] C:\Windows\System32\drivers\hidclass.sys
18:24:31.0829 0x099c  C:\Windows\System32\drivers\hidclass.sys - ok
18:24:31.0845 0x099c  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] C:\Windows\System32\drivers\hidusb.sys
18:24:31.0845 0x099c  C:\Windows\System32\drivers\hidusb.sys - ok
18:24:31.0845 0x099c  [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\Windows\System32\basesrv.dll
18:24:31.0845 0x099c  C:\Windows\System32\basesrv.dll - ok
18:24:31.0860 0x099c  [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] C:\Windows\System32\drivers\kbdhid.sys
18:24:31.0860 0x099c  C:\Windows\System32\drivers\kbdhid.sys - ok
18:24:31.0860 0x099c  [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\Windows\System32\winsrv.dll
18:24:31.0860 0x099c  C:\Windows\System32\winsrv.dll - ok
18:24:31.0876 0x099c  [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] C:\Windows\System32\drivers\mouhid.sys
18:24:31.0876 0x099c  C:\Windows\System32\drivers\mouhid.sys - ok
18:24:31.0876 0x099c  [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] C:\Windows\System32\drivers\usbvideo.sys
18:24:31.0876 0x099c  C:\Windows\System32\drivers\usbvideo.sys - ok
18:24:31.0876 0x099c  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] C:\Windows\System32\drivers\monitor.sys
18:24:31.0876 0x099c  C:\Windows\System32\drivers\monitor.sys - ok
18:24:31.0892 0x099c  [ 8D3421127B05432B743719C239ABF80F, 51BB0D8B68FB8AD9CF47DFB452DA633670D0B0183B912F512E807D92D2255517 ] C:\Windows\System32\tsddd.dll
18:24:31.0892 0x099c  C:\Windows\System32\tsddd.dll - ok
18:24:31.0892 0x099c  [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\Windows\System32\sxssrv.dll
18:24:31.0892 0x099c  C:\Windows\System32\sxssrv.dll - ok
18:24:31.0907 0x099c  [ 48CFA7BE561A7BE144C29BB912055016, 64BE1AFD9F55C2BD636914D1F808AD209C68BF97AA3D0B73568C2C1E48BE2800 ] C:\Windows\System32\wininit.exe
18:24:31.0907 0x099c  C:\Windows\System32\wininit.exe - ok
18:24:31.0907 0x099c  [ 8ED638461EFFCF584AF5A8C291A2F9DF, C8414D68E423D345212E90524897B781B944034C385123DED4ACA508FADDD11E ] C:\Windows\System32\profapi.dll
18:24:31.0907 0x099c  C:\Windows\System32\profapi.dll - ok
18:24:31.0923 0x099c  [ 55D0BC5BA19B1BA3A82F75A33828BCC0, D30254D004A13746377D1554961C11BF3B5D7F06E361993D6FF396741A281D31 ] C:\Windows\System32\wininitext.dll
18:24:31.0923 0x099c  C:\Windows\System32\wininitext.dll - ok
18:24:31.0923 0x099c  [ 57E1B83BB52651FF388788D8C4F12C80, B1D253D5C5E944D76D0B79E3B1802C29E11BEFBBDCE703FB4F03D25D211F3D45 ] C:\Windows\System32\KBDGR.DLL
18:24:31.0923 0x099c  C:\Windows\System32\KBDGR.DLL - ok
18:24:31.0939 0x099c  [ 14BEA911F78B44E47CBD18210E541A43, 49228F2B8757D7FD12011E86B963DCE177CE330EE208BE9528386A386983362C ] C:\Windows\System32\cdd.dll
18:24:31.0939 0x099c  C:\Windows\System32\cdd.dll - ok
18:24:31.0939 0x099c  [ BC18914CB16B0A7BF5D103A65359FAE4, 3CFD06E3B377CA9E777C8D6C7E77B5CC914EC60D8EF8D7B50F0505F48834B4D9 ] C:\Windows\System32\WlS0WndH.dll
18:24:31.0939 0x099c  C:\Windows\System32\WlS0WndH.dll - ok
18:24:31.0954 0x099c  [ BCECD25BCFFE2FC4498374BF2E572DBE, E8DF45593BBD7D9387EE127DC9CDFCB9695723D0AC47F9A615CB7203ACC8F190 ] C:\Windows\System32\sxs.dll
18:24:31.0954 0x099c  C:\Windows\System32\sxs.dll - ok
18:24:31.0954 0x099c  [ B83B06508CADBC204B3DAEECC395A571, 10045637ABA4EF52F93602F5F78E8A50F2C2D9B2E646D0D0CC91E684C2AD1030 ] C:\Windows\System32\cryptbase.dll
18:24:31.0954 0x099c  C:\Windows\System32\cryptbase.dll - ok
18:24:31.0954 0x099c  [ 504DDEF8526CECAAD886D5AC5656DF1A, BAC6D4FEFFF24312D804B6323E51051A6FC93BF82470A718503459DC0218216E ] C:\Windows\System32\bcryptprimitives.dll
18:24:31.0954 0x099c  C:\Windows\System32\bcryptprimitives.dll - ok
18:24:31.0970 0x099c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] C:\Windows\System32\lsass.exe
18:24:31.0970 0x099c  C:\Windows\System32\lsass.exe - ok
18:24:31.0970 0x099c  [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\Windows\System32\services.exe
18:24:31.0970 0x099c  C:\Windows\System32\services.exe - ok
18:24:31.0985 0x099c  [ 461729186C7F280019E369ECD652D4DB, 264F06B2A44EBB0A2C092FA49733C0A72DAB358ECF31483A4135B22180946DA3 ] C:\Windows\System32\lsasrv.dll
18:24:31.0985 0x099c  C:\Windows\System32\lsasrv.dll - ok
18:24:31.0985 0x099c  [ 0D85B43A59FB7A63782F6A8969B5BB43, 8B6C5BDC6DCDFE3A060D5147AE2DA40CC47009160E9667A68701A83246A4850C ] C:\Windows\System32\sspisrv.dll
18:24:31.0985 0x099c  C:\Windows\System32\sspisrv.dll - ok
18:24:32.0001 0x099c  [ 652D7E7BC8D6A909480FF2BBD0E46210, 9871C9EBA42B9385A62C20AB23AE6A99ADB8D2043E85083454482075611AA510 ] C:\Windows\System32\sspicli.dll
18:24:32.0001 0x099c  C:\Windows\System32\sspicli.dll - ok
18:24:32.0001 0x099c  [ 1B0FCDBFDA0AD5DFCE2D99832BAAF5EC, 10C4613831A829680106468924A7C5DCB36B8A5A4F5A22EB3149D0C79A30920F ] C:\Windows\System32\scext.dll
18:24:32.0001 0x099c  C:\Windows\System32\scext.dll - ok
18:24:32.0001 0x099c  [ 7A5CCEC20CF6AA21FF7CC51C0AEBF648, 8D03F0573B0ACC1776A7BC85FA88EFB43AF7C9E3EC1EEAA4AD8EB3ABA3E797E5 ] C:\Windows\System32\dabapi.dll
18:24:32.0001 0x099c  C:\Windows\System32\dabapi.dll - ok
18:24:32.0017 0x099c  [ 61BAE7A83A8650CFC976E8242CE2E4DE, 4277EB563DCE5882D7BF0913082A02E5B6797EDF9CC35BF30951AB1CF1B47B99 ] C:\Windows\System32\EventAggregation.dll
18:24:32.0017 0x099c  C:\Windows\System32\EventAggregation.dll - ok
18:24:32.0017 0x099c  [ AA9973F611039A02C8D1F71A65F8C775, 2CFCE559BED5BE35B1970DF544E0606AF6559E02EF8381BA09270ED5FB8E1BF5 ] C:\Windows\System32\srvcli.dll
18:24:32.0017 0x099c  C:\Windows\System32\srvcli.dll - ok
18:24:32.0032 0x099c  [ 13E04B8546D3F0D9533DA880A3357F12, F38A7F63E7D0D4AD61A575E874FE20EDF6DF8CAEC683441D2CC02A17BF3EF409 ] C:\Windows\System32\SPInf.dll
18:24:32.0032 0x099c  C:\Windows\System32\SPInf.dll - ok
18:24:32.0032 0x099c  [ 59245D8023A7C5D192C2ED7A1BD80F36, 6537220FC5E1D58575E4041BEC5C16E7A17B9CC749A57A1BDAAAF5B9A770D1CD ] C:\Windows\System32\samsrv.dll
18:24:32.0032 0x099c  C:\Windows\System32\samsrv.dll - ok
18:24:32.0048 0x099c  [ F56ACDD6374CAFC64E8339D387CB70E4, 59DFA1C33BFBE53C73B6F384816B0BA95F7C39A028B3EC1E9830B6F4DB1EC880 ] C:\Windows\System32\bcrypt.dll
18:24:32.0048 0x099c  C:\Windows\System32\bcrypt.dll - ok
18:24:32.0048 0x099c  [ BED41BC388BAF9D31152E9B0B4F88360, 2017B8D8F6A240E2940D7EC4ED39340F3A2B75464E22A4DFDEB2A46F17AB75C6 ] C:\Windows\System32\ncrypt.dll
18:24:32.0048 0x099c  C:\Windows\System32\ncrypt.dll - ok
18:24:32.0048 0x099c  [ 5AF14A9AEB3092F4304F5E5EC4328B67, 27D3C53087A952882CEEB66F02684863478D7BE96609095966546DD16115B62D ] C:\Windows\System32\ntasn1.dll
18:24:32.0048 0x099c  C:\Windows\System32\ntasn1.dll - ok
18:24:32.0064 0x099c  [ FF6AE8D9D0F0264656DC55C7F60C1EE5, 0D2275B424D72207ADFBFBAC37A6D1FE4B410C953DA03178B8BA395025B915EE ] C:\Windows\System32\msprivs.dll
18:24:32.0064 0x099c  C:\Windows\System32\msprivs.dll - ok
18:24:32.0064 0x099c  [ EECF7FE667129D5B52B1CCD54CB9EEF2, D01B2FCBF400AD3250CBE5467F3B42BD1DEC319E9E4CD013A098DDABC83ACDE7 ] C:\Windows\System32\netjoin.dll
18:24:32.0064 0x099c  C:\Windows\System32\netjoin.dll - ok
18:24:32.0079 0x099c  [ 7D4665483FF800B8972E517748726AB6, 9F1DF7095B4A1038DD33F808426AAB246ABD5FC61B60EEC473C63E8C3286E97B ] C:\Windows\System32\negoexts.dll
18:24:32.0079 0x099c  C:\Windows\System32\negoexts.dll - ok
18:24:32.0079 0x099c  [ 853037685DDFA140E8386BA66A096BF8, 0CA7E08FDDB210F6F4DC423331D275220191F1664387450661F4B18605A1904F ] C:\Windows\System32\cryptdll.dll
18:24:32.0079 0x099c  C:\Windows\System32\cryptdll.dll - ok
18:24:32.0095 0x099c  [ E87F8EC00FEEF700E61F6989D88A8BC2, A2C392ECCEF00BD97348963369DEDEE1EC8103971829DFFBDC1BFBB3E28949E9 ] C:\Windows\System32\kerberos.dll
18:24:32.0095 0x099c  C:\Windows\System32\kerberos.dll - ok
18:24:32.0095 0x099c  [ 51DA757F8E4B7FB3DCB14184304C9328, 40181110E080C5D3B370D4F04DF0AB759FDC63073177AB972F6E6297A8FFFEAA ] C:\Windows\System32\cryptsp.dll
18:24:32.0095 0x099c  C:\Windows\System32\cryptsp.dll - ok
18:24:32.0111 0x099c  [ 896B307E803430F67EC772807F9CC023, 84EA5BAF8824631C28BFF0FEDF41A4B78F9C63E376D0CB01121177DF0D728397 ] C:\Windows\System32\mswsock.dll
18:24:32.0111 0x099c  C:\Windows\System32\mswsock.dll - ok
18:24:32.0111 0x099c  [ 53DC027553EB54B3F84B07122DEEE0CC, F6DDCA5EA12E2E79BBD3A59991A66486D54C82FA94348FDA1B1E6B19BF22B2B8 ] C:\Windows\System32\msv1_0.dll
18:24:32.0111 0x099c  C:\Windows\System32\msv1_0.dll - ok
18:24:32.0126 0x099c  [ 2468C21E34C49E4735B4BA430D448E91, B750294EB5076D44B814E01425594D33A281B2ED218997B1AFC2C9047CC95EB3 ] C:\Windows\System32\netlogon.dll
18:24:32.0126 0x099c  C:\Windows\System32\netlogon.dll - ok
18:24:32.0126 0x099c  [ B7E51F949ED8C3A75C1D3121AF9A4B6C, 6472E85CDB4D0FD393BEEFF48A41781317180D224DFD114A359FA1AE2648C69E ] C:\Windows\System32\dnsapi.dll
18:24:32.0126 0x099c  C:\Windows\System32\dnsapi.dll - ok
18:24:32.0126 0x099c  [ 66385FE1DDCEA70EDFB25F57C8507D7B, A32A2D23E6AE228CCE37302DB78B461811CBA3A00096F3EA07900B8ACA4A6997 ] C:\Windows\System32\logoncli.dll
18:24:32.0126 0x099c  C:\Windows\System32\logoncli.dll - ok
18:24:32.0142 0x099c  [ 833D2DE53608A1C5B9DD71C867718448, E2BF767339E66053270B269C4D30CAAC2A9695F1BB95031D6EEA6EA62F696211 ] C:\Windows\System32\powrprof.dll
18:24:32.0142 0x099c  C:\Windows\System32\powrprof.dll - ok
18:24:32.0142 0x099c  [ 40B10EAB69F4087C60DC21B5C92A4702, D73A9C7D32383BDF305E1B0D9DDEC01CE8CBCC6F867FE31697A01E02A0576891 ] C:\Windows\System32\TSpkg.dll
18:24:32.0142 0x099c  C:\Windows\System32\TSpkg.dll - ok
18:24:32.0157 0x099c  [ 16E9AD0F7A34C4F071E40CDD76E7C86D, D3846459CCD934642EB797D26EB4DC7B56D9939B39C9771969F9D16E75547FEB ] C:\Windows\System32\userenv.dll
18:24:32.0157 0x099c  C:\Windows\System32\userenv.dll - ok
18:24:32.0157 0x099c  [ 788C7D910267DDCD675DF4AB01961265, AF5B2C42F04D49604DFCDD822F253088F73373FD8CC1E50A60183F5A2464A43D ] C:\Windows\System32\pku2u.dll
18:24:32.0157 0x099c  C:\Windows\System32\pku2u.dll - ok
18:24:32.0173 0x099c  [ D617071B11C99CFE5C4BD0FD82C0609C, BA1107A301771E0060FAC32590FA4F126E271D1780F1C6E742FDBFD0F5F65875 ] C:\Windows\System32\livessp.dll
18:24:32.0173 0x099c  C:\Windows\System32\livessp.dll - ok
18:24:32.0173 0x099c  [ B540693968BCA57F595A7B08DB4B46C3, 523951A2EC1B64F092D4DB2F0ED688D96128E43FFB8BBDCB7BE184705D137B0D ] C:\Windows\System32\rsaenh.dll
18:24:32.0173 0x099c  C:\Windows\System32\rsaenh.dll - ok
18:24:32.0173 0x099c  [ 45E4A2FADA3579F6DC68F2A0998C3419, 804DC0E59DA78591D6598A0ED3125A8F4A04C84E85FBB55BDC05D2E859FD8121 ] C:\Windows\System32\wdigest.dll
18:24:32.0173 0x099c  C:\Windows\System32\wdigest.dll - ok
18:24:32.0189 0x099c  [ E63FD4AED397626B314B96EA11341220, 63CBF4B0D3FB14BC4BD1362CCB7AF3E09AC4975E1084CF56F1E54360600909F7 ] C:\Windows\System32\schannel.dll
18:24:32.0189 0x099c  C:\Windows\System32\schannel.dll - ok
18:24:32.0189 0x099c  [ 5EBAF77D01D75CAFEF78B47840C75569, 29E2CC1E434BB35698E90C3E78B68E774EF511108EF8EC5A1D500BBF0819123B ] C:\Windows\System32\efslsaext.dll
18:24:32.0189 0x099c  C:\Windows\System32\efslsaext.dll - ok
18:24:32.0204 0x099c  [ 6DE50D5592C6EE18C87B0C2EEEDC1621, 82F727A07D209D3BFBA07F3163CC3A7AA02CBAD054BFB4FA061D3FE542F9377B ] C:\Windows\System32\dpapisrv.dll
18:24:32.0204 0x099c  C:\Windows\System32\dpapisrv.dll - ok
18:24:32.0204 0x099c  [ 700BB3365D04B1606A03FB1D6B19C138, F784DA339E5AE4F4C7CF73C4FC745F178FB8352D686567FE0FA1EE797D95CB4F ] C:\Windows\System32\credssp.dll
18:24:32.0204 0x099c  C:\Windows\System32\credssp.dll - ok
18:24:32.0220 0x099c  [ 1F1B8D07708E40E54C55B392C78ECCE2, 965AC70B88E49B832204BA3710F5798FEAC08BBB794A079CC32035C326AB57A4 ] C:\Windows\System32\scecli.dll
18:24:32.0220 0x099c  C:\Windows\System32\scecli.dll - ok
18:24:32.0220 0x099c  [ 306EB21E5B480AE9065EA55AC8C35936, 50088738F54E9F7903DBD3E3C97E72B049C96025CD539523062D4FB0DA61C612 ] C:\Windows\System32\winlogon.exe
18:24:32.0220 0x099c  C:\Windows\System32\winlogon.exe - ok
18:24:32.0236 0x099c  [ 04F8A9CC544B08634EC932E017434457, FFA322DAB1C2FB6C56EF413210CBC4DF0981D9CE301F67A67DE38DE7CCEFB17E ] C:\Windows\System32\winlogonext.dll
18:24:32.0236 0x099c  C:\Windows\System32\winlogonext.dll - ok
18:24:32.0236 0x099c  [ F8A442ABBAB56529B625DB9D916EA46A, C389ED788CC964A6CF91F26BFEB9F9060BAAAD721F4928307493266A9B1460DE ] C:\Windows\System32\scesrv.dll
18:24:32.0236 0x099c  C:\Windows\System32\scesrv.dll - ok
18:24:32.0236 0x099c  [ CD7DC91A7F84B4C81A06B511545DE867, B23317BDB6C7927497FA20E14B53F1C657450A032AE876BD7DBFD17FAAC8BADF ] C:\Windows\System32\authz.dll
18:24:32.0236 0x099c  C:\Windows\System32\authz.dll - ok
18:24:32.0251 0x099c  [ 296823744D624E98A46759AD58911FC3, DFB6E863CB492E76AC970FC94BDF7DD1500D319B5DB52B5A7BD8F977EEA07E6E ] C:\Windows\System32\netutils.dll
18:24:32.0251 0x099c  C:\Windows\System32\netutils.dll - ok
18:24:32.0251 0x099c  [ A41455649982EE080BE5CA8A72153808, 2C86808D30875C83CBE7F1D34834349D5BD429DFBCA8BD17B7ED4E8E75735FF7 ] C:\Windows\System32\winsta.dll
18:24:32.0251 0x099c  C:\Windows\System32\winsta.dll - ok
18:24:32.0267 0x099c  [ E4CA434F251681590D0538BC21C32D2F, 99E7587D1744BF62086FEB06A778CF3966199F1CC2DFB91FDA53A9166A2A3AEC ] C:\Windows\System32\svchost.exe
18:24:32.0267 0x099c  C:\Windows\System32\svchost.exe - ok
18:24:32.0267 0x099c  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] C:\Windows\System32\umpnpmgr.dll
18:24:32.0267 0x099c  C:\Windows\System32\umpnpmgr.dll - ok
18:24:32.0282 0x099c  [ 45F36BBDFD50134488ECA96BB9231818, A02BAA2F6FA640E4FCE55A126EC983A03A406FE329134524D3BDDB6C1B32C7CF ] C:\Windows\System32\pcwum.dll
18:24:32.0282 0x099c  C:\Windows\System32\pcwum.dll - ok
18:24:32.0282 0x099c  [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] C:\Windows\System32\umpo.dll
18:24:32.0282 0x099c  C:\Windows\System32\umpo.dll - ok
18:24:32.0282 0x099c  [ 9FF64147DB9078337C15F41A6043C74F, 79ADBEE555855E9B27A30091632AB4EDECAD9E243CA7D533C437657FC329CCA6 ] C:\Windows\System32\umpoext.dll
18:24:32.0282 0x099c  C:\Windows\System32\umpoext.dll - ok
18:24:32.0298 0x099c  [ 7B12172CCE581F76C9335D7A47E0AD50, C236F4E61B021F0E37E9EDBA6752F499DB85F9023B4E1800ACE74AC450F7BCE6 ] C:\Windows\System32\gpapi.dll
18:24:32.0298 0x099c  C:\Windows\System32\gpapi.dll - ok
18:24:32.0298 0x099c  [ 85936A752E6BBE740D9FCF156E1AC5E1, 45C71EB035AA246A6774DB784F01DEA73285909805CBA42FC4B9616D69ADB8A8 ] C:\Windows\System32\hid.dll
18:24:32.0298 0x099c  C:\Windows\System32\hid.dll - ok
18:24:32.0314 0x099c  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] C:\Windows\System32\rpcss.dll
18:24:32.0314 0x099c  C:\Windows\System32\rpcss.dll - ok
18:24:32.0314 0x099c  [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] C:\Windows\System32\RpcEpMap.dll
18:24:32.0314 0x099c  C:\Windows\System32\RpcEpMap.dll - ok
18:24:32.0314 0x099c  [ 0D86DEB93CC1D2B32CAF658439350241, 77E04DA09A6B59BCAA04BC8B99F56EF2F8A9C18C3A030A93C2934A5DAFC3F10C ] C:\Windows\System32\RpcRtRemote.dll
18:24:32.0314 0x099c  C:\Windows\System32\RpcRtRemote.dll - ok
18:24:32.0329 0x099c  [ E325BCD68EC0CF2E2EDD0AB7CC17C698, 4DEDEF91F6BD1CC8DBE118AC28CA6BD874449A053B9CDE9FFEB1C7B98501D938 ] C:\Windows\System32\bisrv.dll
18:24:32.0329 0x099c  C:\Windows\System32\bisrv.dll - ok
18:24:32.0329 0x099c  [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] C:\Windows\System32\lsm.dll
18:24:32.0329 0x099c  C:\Windows\System32\lsm.dll - ok
18:24:32.0345 0x099c  [ E804E9734A493A01316F209BA99F1F48, 028741BA864F6F4AD473C53C1F6389F1EB304F1C11159575022EC3E41AD659DF ] C:\Windows\System32\psmsrv.dll
18:24:32.0345 0x099c  C:\Windows\System32\psmsrv.dll - ok
18:24:32.0345 0x099c  [ 3260D5308DD9AE069FE4881D65389A84, 22150707B4606964F9008A1734BD885D2824B2E1515D073729427049FA6B999C ] C:\Windows\System32\FirewallAPI.dll
18:24:32.0345 0x099c  C:\Windows\System32\FirewallAPI.dll - ok
18:24:32.0360 0x099c  [ 9A1175EF7B9E297FDC0ADD33783EF8FF, 0FC1A3942E0F3F1B5FBA09598247FCB073150D485B25C4784710904A392B6CCD ] C:\Windows\System32\sysntfy.dll
18:24:32.0360 0x099c  C:\Windows\System32\sysntfy.dll - ok
18:24:32.0360 0x099c  [ E55B850489F154F85110AE3B436A40D6, BF783B6EEDED6DE52F3C3217EEBF3B43A8A1FA549EC182EC52915011CB83FE55 ] C:\Windows\System32\wmsgapi.dll
18:24:32.0360 0x099c  C:\Windows\System32\wmsgapi.dll - ok
18:24:32.0376 0x099c  [ 0D50F3C3D50B878CEAE21B9BE3F6A638, BF0B1A5D4CEA656695FFB45D930F6ADD63519AEAE9F8AED21E4E50708FE5E84C ] C:\Windows\System32\kernel.appcore.dll
18:24:32.0376 0x099c  C:\Windows\System32\kernel.appcore.dll - ok
18:24:32.0376 0x099c  [ 04AE20974DF91DC7B9075FC5A126B77C, B5E77C5E57DFC182D9A8FE82417BF628BE40C8D86133670A8584D65E13FEEC38 ] C:\Windows\System32\UXInit.dll
18:24:32.0376 0x099c  C:\Windows\System32\UXInit.dll - ok
18:24:32.0376 0x099c  [ 5B19A3ED994EB972FBD99AC18D0AEA13, 5764DA74BB394013087AEFFD271C306207F98049B633352CB9F52C3805539826 ] C:\Windows\System32\devobj.dll
18:24:32.0376 0x099c  C:\Windows\System32\devobj.dll - ok
18:24:32.0392 0x099c  [ FD4EA8E9232ADD51DC31C295DDEF2768, 3EA40D7376AB5AA5DA2BCF4745C79F7BF819363466967ECC3CD15ADECBFD7244 ] C:\Windows\System32\SystemEventsBrokerServer.dll
18:24:32.0392 0x099c  C:\Windows\System32\SystemEventsBrokerServer.dll - ok
18:24:32.0392 0x099c  [ 561A97E82FA0645CB786C19B8D442C31, 74671D2827E586C33C91B0B77268CE558F3B29CE11D9966EDFD73A7C0C58ACD6 ] C:\Windows\System32\uxtheme.dll
18:24:32.0392 0x099c  C:\Windows\System32\uxtheme.dll - ok
18:24:32.0407 0x099c  [ CD45E3FE736150D45EFDC9145DA53757, 8E04D55117A6D44AF51528413DC0AAF347FD43580CB9FCA84F5928135A3B0FF3 ] C:\Windows\System32\bi.dll
18:24:32.0407 0x099c  C:\Windows\System32\bi.dll - ok
18:24:32.0407 0x099c  [ 6ECFFE49AA43A74DC15701EFE6355621, BA70C1CEEC7C3348A4A32D17FC2D2E8E36075FEB93D1D253B2C0598B3DA4871D ] C:\Windows\System32\dab.dll
18:24:32.0407 0x099c  C:\Windows\System32\dab.dll - ok
18:24:32.0423 0x099c  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] C:\Windows\System32\drivers\luafv.sys
18:24:32.0423 0x099c  C:\Windows\System32\drivers\luafv.sys - ok
18:24:32.0423 0x099c  [ 92ABF534E992C61730C24F003BBE192A, 5F7D4A471A066B53460193B3D9FB7217B87ACDB342E4258404699424D36E9C8D ] C:\Windows\System32\dpapi.dll
18:24:32.0423 0x099c  C:\Windows\System32\dpapi.dll - ok
18:24:32.0439 0x099c  [ CC1ABBD9E61B7AA5CCBB45EA87CB033F, 4E5DE485833721E19B36455C017B9D908BAA7D12637A878934A0FAF2326E000B ] C:\Windows\System32\drivers\avgntflt.sys
18:24:32.0439 0x099c  C:\Windows\System32\drivers\avgntflt.sys - ok
18:24:32.0439 0x099c  [ 1524579B894C9B99F42A695B86881254, F42AFBBD25B999D39526EAE376569BEE8ABE1E8AB74F308F3868563FAF652F15 ] C:\Windows\System32\apphelp.dll
18:24:32.0439 0x099c  C:\Windows\System32\apphelp.dll - ok
18:24:32.0439 0x099c  [ 2E3340A90140E1F0965DAD96C5B28A41, 4D4771F439A2D532C58A06F6DF81B4C4635E3FE438BDEC26173C0260B7267DB0 ] C:\Windows\System32\dwm.exe
18:24:32.0439 0x099c  C:\Windows\System32\dwm.exe - ok
18:24:32.0454 0x099c  [ 8C569B429D897647A26A83D9901D3225, 1C0634325661420E1A3E193463AA4CFBCDB763D68B1CE1CBD98B4E5ADD8070CE ] C:\Windows\System32\dwmredir.dll
18:24:32.0454 0x099c  C:\Windows\System32\dwmredir.dll - ok
18:24:32.0454 0x099c  [ 3710A8A7508B36AD96A97CE79E17403E, DD9807B58607825F1B4E13602B147B5FF6F3D72559136B718DB3B99D42D015F6 ] C:\Windows\System32\LogonUI.exe
18:24:32.0454 0x099c  C:\Windows\System32\LogonUI.exe - ok
18:24:32.0470 0x099c  [ 68DF7D160987CF3E0A03A64E5A8F087D, 8BF487020C71DCCB840CABAF8C773318B584A2E6ADB295E2927A74A104DBB96C ] C:\Windows\System32\authui.dll
18:24:32.0470 0x099c  C:\Windows\System32\authui.dll - ok
18:24:32.0470 0x099c  [ 77F28E71B2C0297AB67EA81878B1FA83, D62A28E6EE7E4BE7189CA66D2B9882C02783D1B56E5BB894901DEEEDC7D7704D ] C:\Windows\System32\dwmcore.dll
18:24:32.0470 0x099c  C:\Windows\System32\dwmcore.dll - ok
18:24:32.0486 0x099c  [ C253B8484DCABB3EBE6D60E67CADB373, 681D29A4A6DD428D2013C82D41E302BB72BAD501E8C3F5E2A8E113E34E138C92 ] C:\Windows\System32\dcomp.dll
18:24:32.0486 0x099c  C:\Windows\System32\dcomp.dll - ok
18:24:32.0486 0x099c  [ EEB76824DC14283A010CAE4E2B5AB852, 023509471AF375CC18A3E366868D27C0D39C74813F5DDEBD284BFD5EED09E68C ] C:\Windows\System32\SHCore.dll
18:24:32.0486 0x099c  C:\Windows\System32\SHCore.dll - ok
18:24:32.0501 0x099c  [ 837F8649A2FE7880899711FAA25A2AE3, E178ABF12B4BF18DE71F7F5A69ED84CA737C30354EDFB5CAE68E222AC4307DCF ] C:\Windows\System32\dui70.dll
18:24:32.0501 0x099c  C:\Windows\System32\dui70.dll - ok
18:24:32.0501 0x099c  [ A6CB3CBF88DF671AC85FA9AABC33137F, 21F9A80C73BB5E1FA6C02389A96E279BA05DC18389A78AE0924D14BC0B6AF758 ] C:\Windows\System32\dwmapi.dll
18:24:32.0501 0x099c  C:\Windows\System32\dwmapi.dll - ok
18:24:32.0501 0x099c  [ 8E1B4923419163679F9205269CBF2B4F, 7B56F373DDEFB99E542D187E772A7ABAFA1D46521630B21B4EA7D9046BC58B26 ] C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda\comctl32.dll
18:24:32.0501 0x099c  C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda\comctl32.dll - ok
18:24:32.0517 0x099c  [ 4C66C21B6244A09DD671485D67D13DB9, 842FA6DBE0B32D23E74E0A0165752C583C45A13D507208772A5A5ECD60DB9866 ] C:\Windows\System32\duser.dll
18:24:32.0517 0x099c  C:\Windows\System32\duser.dll - ok
18:24:32.0532 0x099c  [ 933C63C9003379F56BA4AF4149440FC8, 5C29730AE7018D59789C846613A60817D9BC34FFDB0E9C8F94FC0D605FAE6DC1 ] C:\Windows\System32\SndVolSSO.dll
18:24:32.0532 0x099c  C:\Windows\System32\SndVolSSO.dll - ok
18:24:32.0532 0x099c  [ 1169646AAD0239C23CCF9C46BA00B2D6, 1CD37D98AD15EB9BD161AC126DD663054449C0C9AF8280489C696B9787EA1D3C ] C:\Windows\System32\MMDevAPI.dll
18:24:32.0532 0x099c  C:\Windows\System32\MMDevAPI.dll - ok
18:24:32.0548 0x099c  [ B1C2856F8199A9386C22E8325BC34D87, 2BB32BCE899CA5D7E1EF40647B6C2ECB557F4E554DBB1D6E3CA9E2012CA081AD ] C:\Windows\System32\slc.dll
18:24:32.0548 0x099c  C:\Windows\System32\slc.dll - ok
18:24:32.0548 0x099c  [ C1D7228D5743995256A17D8225FDC704, B90360E706DECA71B418B2C1D61D99D47ACC26ECA94678035439C6EB902150DE ] C:\Windows\System32\sppc.dll
18:24:32.0548 0x099c  C:\Windows\System32\sppc.dll - ok
18:24:32.0548 0x099c  [ 3B85C2DC57230C3EA71E2AF88EEB9DEC, 6CEF9EF6A02321C5968AA4560C376569E242A03BD0E68E8BA8E1BB842BA0C9E0 ] C:\Windows\System32\BCP47Langs.dll
18:24:32.0548 0x099c  C:\Windows\System32\BCP47Langs.dll - ok
18:24:32.0564 0x099c  [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] C:\Windows\System32\drivers\mbam.sys
18:24:32.0564 0x099c  C:\Windows\System32\drivers\mbam.sys - ok
18:24:32.0564 0x099c  [ 959919A8138D65AC6E9BD997CE747C4D, 3B0ED1A753B2538446EC0EEDF9430CAA3451F7DBAB7DAE353AB52FDC8FFD1553 ] C:\Program Files\TrueSuite\TrueSuite.Service.exe
18:24:32.0564 0x099c  C:\Program Files\TrueSuite\TrueSuite.Service.exe - ok
18:24:32.0579 0x099c  [ 8721643ED5447F245762DF0A976AB87A, 4208D723A105B22229C7502CBB6803C7A67F6BB1798D74F7EBE33BF58B177495 ] C:\Windows\System32\wtsapi32.dll
18:24:32.0579 0x099c  C:\Windows\System32\wtsapi32.dll - ok
18:24:32.0579 0x099c  [ 5A1F895338418DF8C1D31E590DC1BAA5, 76DE460639433119D120C6F81E9DA5349E78658A29A710FEF22E5BF36040F0CB ] C:\Windows\System32\WindowsCodecs.dll
18:24:32.0579 0x099c  C:\Windows\System32\WindowsCodecs.dll - ok
18:24:32.0579 0x099c  [ 5B6B32E83E371739B13AA67E260DC5C4, 7753D23EC6F6EFF2798D0BDB669D2DF250002C4845C13382DE329C6EBB921B18 ] C:\Windows\System32\winspool.drv
18:24:32.0579 0x099c  C:\Windows\System32\winspool.drv - ok
18:24:32.0595 0x099c  [ E521CCD352373B1825BEA80DEC2B7D97, CFA01810D4531A07BD9749DBCA34634DA749B846887315D26671CBA53B8D12A4 ] C:\Windows\System32\oleacc.dll
18:24:32.0595 0x099c  C:\Windows\System32\oleacc.dll - ok
18:24:32.0595 0x099c  [ 8E99BF264C1F20934A67E91BC9F4FB20, 89AA8823B751F4CEF4E862F1270E7EFDA81A6E5D9C5F72625CBF83C70B312353 ] C:\Windows\System32\nvvsvc.exe
18:24:32.0595 0x099c  C:\Windows\System32\nvvsvc.exe - ok
18:24:32.0610 0x099c  [ 37A1B06AB3493CB276195B7358A6A805, E175ACF33F519E21AD85CF2917AF7671D05F4F12EB5888D4B6EA82A58D3490C9 ] C:\Windows\System32\avrt.dll
18:24:32.0610 0x099c  C:\Windows\System32\avrt.dll - ok
18:24:32.0610 0x099c  [ 5C241A836B66FC989842F23AE4D4624C, 82C224ED23C80BCBAEAF0F4E7EE3F06FDBB3FE55E5BB17C10867A1170943A852 ] C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll
18:24:32.0610 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - ok
18:24:32.0626 0x099c  [ 49D9C17FDDFAC66F27FA735E94923216, 18C8FE5B794927989CDD3BB7A5500C73CCC23559470EEB37D42FD9AD04098C0D ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
18:24:32.0626 0x099c  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - ok
18:24:32.0626 0x099c  [ 93F59EDC3602F47840631BB7F334B66C, EBFD6B4C6611C5BB08E228E0B85A060A0D8C63F3C7BB113DEAEEBF7CDD0A599C ] C:\Windows\SysWOW64\ntdll.dll
18:24:32.0626 0x099c  C:\Windows\SysWOW64\ntdll.dll - ok
18:24:32.0642 0x099c  [ CF8B94FEEA50E39EE0396B5150F05B44, 9A53E01F4B60DD83F6581BEC5F04B2AF08640B373F07FA2145E7910BE4EDFA47 ] C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
18:24:32.0642 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - ok
18:24:32.0642 0x099c  [ 8E5C2B32EE4166A3084B133183A00F2A, B94A122E537FFDED0622AF1E002037AC33AF634390CCC4755E663CC404168CCB ] C:\Windows\System32\d3d11.dll
18:24:32.0642 0x099c  C:\Windows\System32\d3d11.dll - ok
18:24:32.0657 0x099c  [ 922A53694A9D32C3F9917097E5EABD73, DA344CEBF7B629622328FADEB1E2F01725ED5CD9696E952578F647969267BE19 ] C:\Windows\System32\nvsvc64.dll
18:24:32.0657 0x099c  C:\Windows\System32\nvsvc64.dll - ok
18:24:32.0657 0x099c  [ BD3F0FC8E424979E664B2112A5B75AF7, A52273A103CD51EEF876D07386427EB155A11F93363DDA67FE00CC5C51EEF7C0 ] C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll
18:24:32.0657 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - ok
18:24:32.0657 0x099c  [ 595653478434F2A8451EDA55CD954CED, B81A6648827D60CC2CD856344988F22A5A8570A5789F85835AA65745949EA598 ] C:\Windows\SysWOW64\kernel32.dll
18:24:32.0673 0x099c  C:\Windows\SysWOW64\kernel32.dll - ok
18:24:32.0673 0x099c  [ 24B30DB8D1F8CF0F8C1AAAE319BC508E, FBB1DF883EB653E8165AC414BFEC00FF52500B1F78420004BFAE1C2F917352B0 ] C:\Windows\SysWOW64\KernelBase.dll
18:24:32.0673 0x099c  C:\Windows\SysWOW64\KernelBase.dll - ok
18:24:32.0673 0x099c  [ 59EAFAE3A34B4925990A2E679CA91C5B, 794167ACA7D8CD9C4B11793F28936E8CA89BA88AF0D63E04A05A62BA21928BD8 ] C:\Windows\System32\dxgi.dll
18:24:32.0673 0x099c  C:\Windows\System32\dxgi.dll - ok
18:24:32.0689 0x099c  [ E7BD1B1343F633D0BC1385046F4D7E47, DDD2319AC6BA17BF2B16902305D4C72FDF03B4ABE4206EFAD57D7D157DCC69C2 ] C:\Windows\System32\nvumdshimx.dll
18:24:32.0689 0x099c  C:\Windows\System32\nvumdshimx.dll - ok
18:24:32.0689 0x099c  [ CC59B18DEC31120F9957ABA55EC49FAC, B8B231D7C9A34B46007CC080DC09454F7EA05524DFF78FA40F7DD5E0ECAF9127 ] C:\Windows\System32\d3d10warp.dll
18:24:32.0689 0x099c  C:\Windows\System32\d3d10warp.dll - ok
18:24:32.0704 0x099c  [ C500954647E81A00700D3767C2B3CC4B, C8B9BD1EF3BC4B9CC4DF9AC11752CDB750276DDF823F7FFD9791E182DEA821F1 ] C:\Windows\SysWOW64\setupapi.dll
18:24:32.0704 0x099c  C:\Windows\SysWOW64\setupapi.dll - ok
18:24:32.0704 0x099c  [ DB530B4C83DC2439EA2397613C841AF4, 8ACB4700FF1A9F195E70D2FDD7326425B6197F8CD322A712080423BD973E5AF5 ] C:\Windows\SysWOW64\version.dll
18:24:32.0704 0x099c  C:\Windows\SysWOW64\version.dll - ok
18:24:32.0720 0x099c  [ BF742DAD722646BB18F96F1F9B3B56D2, 0D7CCDA2DD06810853531AD3B1FF608C247BE5A1FF0036DD7886A874C28C8BF9 ] C:\Windows\System32\nvinitx.dll
18:24:32.0720 0x099c  C:\Windows\System32\nvinitx.dll - ok
18:24:32.0720 0x099c  [ 368142CB45B44A8AFC18E6B7BA53FA30, 11383A96CC8086FC2A0D6871AB62084C23B1C56CE9BD830A5FC10385FEC2FA66 ] C:\Program Files\NVIDIA Corporation\coprocmanager\detoured.dll
18:24:32.0720 0x099c  C:\Program Files\NVIDIA Corporation\coprocmanager\detoured.dll - ok
18:24:32.0720 0x099c  [ 468DF0C015AA9A7BE7CDFBCB5134355F, C315223033367B906F4664F4DD56BEFE5A533FF2D7D97FA3989787A02B8BBB23 ] C:\Program Files\NVIDIA Corporation\coprocmanager\Nvd3d9wrapx.dll
18:24:32.0720 0x099c  C:\Program Files\NVIDIA Corporation\coprocmanager\Nvd3d9wrapx.dll - ok
18:24:32.0736 0x099c  [ 5622D17068D7F12E3239E802CB9C799A, 94DA802B87A86ECAB5AAEB220DD0608201F8012F106A9ACA6B308C4C1A2C11EC ] C:\Program Files\NVIDIA Corporation\coprocmanager\nvdxgiwrapx.dll
18:24:32.0736 0x099c  C:\Program Files\NVIDIA Corporation\coprocmanager\nvdxgiwrapx.dll - ok
18:24:32.0736 0x099c  [ 5F333FDBF392850373C89BDA31EBEC1B, 981EEF8178C64A9265F55F3B286390F819F0E5D4DFDE195F4411393030CADA43 ] C:\Windows\SysWOW64\user32.dll
18:24:32.0736 0x099c  C:\Windows\SysWOW64\user32.dll - ok
18:24:32.0751 0x099c  [ DBC4D46A7DDC14D1D1ED4B613F9E41A4, 2BDFEBD13152A9CF762534D5EB0D92B24413E9C1007056FCA6200B6349501B6E ] C:\Windows\SysWOW64\gdi32.dll
18:24:32.0751 0x099c  C:\Windows\SysWOW64\gdi32.dll - ok
18:24:32.0751 0x099c  [ 2898E39D1E0CB9074C18988A2F8B73D3, D397C26A4216603D369E136ABF6A8EF714FC23A7CAAB03B6AF1E37BC52BC7425 ] C:\Windows\System32\SmartcardCredentialProvider.dll
18:24:32.0751 0x099c  C:\Windows\System32\SmartcardCredentialProvider.dll - ok
18:24:32.0767 0x099c  [ D381B446466B468D27BF23A7A372D205, 833DABCC53EDE71667C7EE24AC63DB759D8B3DD878B034CEBDCEF1F2EF7BAE31 ] C:\Windows\System32\cngcredui.dll
18:24:32.0767 0x099c  C:\Windows\System32\cngcredui.dll - ok
18:24:32.0767 0x099c  [ 9D75171689317D82FBF8B155FCF34AE8, 1604BD5C018DE989B0A2313453A34CB10F70B6588454A056F99CA227AB936DE5 ] C:\Windows\SysWOW64\winspool.drv
18:24:32.0767 0x099c  C:\Windows\SysWOW64\winspool.drv - ok
18:24:32.0767 0x099c  [ 421D685787762BBAE821159279B3000C, 536A851E1D24F6468F6313830AB91AC4991129F8691F01606A7AE553CEF7CF7D ] C:\Windows\SysWOW64\advapi32.dll
18:24:32.0767 0x099c  C:\Windows\SysWOW64\advapi32.dll - ok
18:24:32.0782 0x099c  [ 74887EBB4777EC450EF167645C99163E, 0155426F9A7831E5B4380BDDAE3AA1D4B078F5A59C33892F25A53A9525E08817 ] C:\Windows\SysWOW64\oleaut32.dll
18:24:32.0782 0x099c  C:\Windows\SysWOW64\oleaut32.dll - ok
18:24:32.0782 0x099c  [ 6EBA4AA97BA64CEB363C1C8CE12214F9, 8DFCEF622E810C3AC2C3B0CED1303E18E3FB745460572B24722E556A5BE4E68F ] C:\Windows\SysWOW64\msvcrt.dll
18:24:32.0782 0x099c  C:\Windows\SysWOW64\msvcrt.dll - ok
18:24:32.0798 0x099c  [ A56878CE81935A6E3269C1B1669F9354, 03E2544B3ED333FC735E2F49118BDA4F2DB2FA1E2AFCA58E344C970173F6A511 ] C:\Windows\SysWOW64\cfgmgr32.dll
18:24:32.0798 0x099c  C:\Windows\SysWOW64\cfgmgr32.dll - ok
18:24:32.0798 0x099c  [ 128EC9879D462F89829E663417FE5DBD, 674FE1F81347045DD0731567D168A38873BC7435A48B4DFAF1879B03DEE09246 ] C:\Windows\SysWOW64\rpcrt4.dll
18:24:32.0798 0x099c  C:\Windows\SysWOW64\rpcrt4.dll - ok
18:24:32.0814 0x099c  [ 3503F1397CB9BEE0D9684A7CA4C1C315, A2F786D75653A46ED086A83CC85941DEA72F7F814325A9891F4420521BFED45D ] C:\Windows\SysWOW64\sechost.dll
18:24:32.0814 0x099c  C:\Windows\SysWOW64\sechost.dll - ok
18:24:32.0814 0x099c  [ D47C2645C635D42AE5C1F5B2644EA093, 8D6D0F178793EE4004C3A70F0572BCAE8B33DFFA885E56CC5EC024EA63C190F8 ] C:\Windows\SysWOW64\combase.dll
18:24:32.0814 0x099c  C:\Windows\SysWOW64\combase.dll - ok
18:24:32.0814 0x099c  [ C70E652B7D507AAB25208E1602B29B89, AF903E8815CD60A23C9F91BF071A263D7B5D3202576AB92CFC30429F379DA947 ] C:\Windows\SysWOW64\cryptbase.dll
18:24:32.0814 0x099c  C:\Windows\SysWOW64\cryptbase.dll - ok
18:24:32.0829 0x099c  [ 1CF1F62F2484C996DFB99D511E18D662, F807C9B5F39F4A00101C411657DB585B5571E89D9D1B34EBEC757237E886BB9C ] C:\Windows\SysWOW64\sspicli.dll
18:24:32.0829 0x099c  C:\Windows\SysWOW64\sspicli.dll - ok
18:24:32.0829 0x099c  [ F19F4DF5361132D5E19FBE1A0DCDC80B, 9B70F73A3D2DEECB0AEC541DFE2E61299691350633A43A0FDE724717E2713289 ] C:\Windows\SysWOW64\bcryptprimitives.dll
18:24:32.0829 0x099c  C:\Windows\SysWOW64\bcryptprimitives.dll - ok
18:24:32.0845 0x099c  [ 766B12FB02BD1E5D0BBA9488E091EE6D, 1F4FCABB403200447D2D41184612A2FC4D645436BFAE2C05D4B96C2CC320CE1A ] C:\Windows\System32\BioCredProv.dll
18:24:32.0845 0x099c  C:\Windows\System32\BioCredProv.dll - ok
18:24:32.0845 0x099c  [ F3C88687207F4F75773D288A6D4B61F7, D71AA9E00EE120FF8659770776405B3F15EAA0FC39E0D5834DFD88A621F14361 ] C:\Windows\System32\certCredProvider.dll
18:24:32.0845 0x099c  C:\Windows\System32\certCredProvider.dll - ok
18:24:32.0860 0x099c  [ 8BDD004DC92D09CCD1F3922C59983019, 4471FD9A339D3AEB51BE33BC176E8BA10E5B3FC6E3C375C36FCC650D78D1C58E ] C:\Windows\System32\winbio.dll
18:24:32.0860 0x099c  C:\Windows\System32\winbio.dll - ok
18:24:32.0860 0x099c  [ 629152E8745B63E63978FD1848ABC7AE, 62C104E98908100535DF7888DF17B9AEEC675D799DDC6141D0761097C311D596 ] C:\Windows\System32\wlidcredprov.dll
18:24:32.0860 0x099c  C:\Windows\System32\wlidcredprov.dll - ok
18:24:32.0876 0x099c  [ 2B7C626217F9A38543A9AA9D68EAA425, 68A5C070E8C490C8F95CE814F12024CF8F413F5496FD7383D2EF035A85BDB3EB ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstres.dll
18:24:32.0876 0x099c  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstres.dll - ok
18:24:32.0876 0x099c  [ 3CF59358F6490B3A09A680BE6B71ED32, 7B5B6A22E249239B151A13E8A128D245F1DFE12D68BA5B19377D9F0AFF1B45DD ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvwl.dll
18:24:32.0876 0x099c  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvwl.dll - ok
18:24:32.0876 0x099c  [ CC8E86B9C18BCA38D3C467CFD661A466, 55FFB33541A2329FB72C6436488FB81E28EA8B0C2EB6CEAFA5CC4E5570D94238 ] C:\Windows\System32\DWrite.dll
18:24:32.0876 0x099c  C:\Windows\System32\DWrite.dll - ok
18:24:32.0892 0x099c  [ 119CE6CF93183EB144F5EA9A4A5A6AB3, A396903C90712CA8125D56AE690E36593EFEE6B7D9BE4B351CE36A3AD503FEA8 ] C:\Windows\System32\rasplap.dll
18:24:32.0892 0x099c  C:\Windows\System32\rasplap.dll - ok
18:24:32.0892 0x099c  [ 7C75BF2879AEAD311DAE25CB5F1A2C83, 9C25E41BADF1E2D216ADB29B75B8790AC4E4DFB1F631C416762FA2FCE52D1C1F ] C:\Windows\System32\rasapi32.dll
18:24:32.0892 0x099c  C:\Windows\System32\rasapi32.dll - ok
18:24:32.0907 0x099c  [ 9FB85E37238FEA836E5E6779A93DA461, 9CFBC92BB5C730AB194EC18A993640FD62F2FE3503D16B77C055242C7B84B800 ] C:\Windows\System32\rasman.dll
18:24:32.0907 0x099c  C:\Windows\System32\rasman.dll - ok
18:24:32.0907 0x099c  [ 950E87673E2AE1A536869BCC4E711D67, 1EE759FD810A3D199CF069454069D34522AE6AB332741E4F680CCF80A3AF9ED3 ] C:\Windows\System32\rtutils.dll
18:24:32.0907 0x099c  C:\Windows\System32\rtutils.dll - ok
18:24:32.0923 0x099c  [ A956CC9503FD75F2372A6B673E1C07B2, 334D9180357E6BF209C16BA680AB691B09DB36CF58EA4320DFC46946F6A9D94E ] C:\Windows\System32\UIAnimation.dll
18:24:32.0923 0x099c  C:\Windows\System32\UIAnimation.dll - ok
18:24:32.0923 0x099c  [ 97FC8C9BA7190D8AB75F375EB2F5D082, EDACA904BFF1E9A34C8E6214203B33A555F4E939A362B86266AFBAB27B88140A ] C:\Program Files\NVIDIA Corporation\Display\nvui.dll
18:24:32.0923 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvui.dll - ok
18:24:32.0923 0x099c  [ E494AC90229C06ADB8ACC8D20A3F27CB, 2DDBA644739D3FC43C2444C104452E992B0D3FD6E3E2DB36C9496BEF52E8E6E0 ] C:\Windows\SysWOW64\devobj.dll
18:24:32.0923 0x099c  C:\Windows\SysWOW64\devobj.dll - ok
18:24:32.0939 0x099c  [ 619C6E72B8433B3F67738F7E6C972A96, 2EF5F3D8E768CA2654AD004AD91818B4181BD7E77B8AC96E007C9CC9E01E39EF ] C:\Windows\SysWOW64\wintrust.dll
18:24:32.0939 0x099c  C:\Windows\SysWOW64\wintrust.dll - ok
18:24:32.0939 0x099c  [ 98C136EA9D0CA9C010FE49D863D29C6D, 8CA02AB0F6B6A468B878BF8E7ED9372B7B6A70F6FF84ECBE1B144C82B11D6DC8 ] C:\Windows\SysWOW64\crypt32.dll
18:24:32.0939 0x099c  C:\Windows\SysWOW64\crypt32.dll - ok
18:24:32.0954 0x099c  [ 8685F31A9319FB0FA882C736783F5F5E, D772A7FEAEBC794B403EAB98C7E816DDE87A1C1F4AA7B756AA64DF117BD18085 ] C:\Windows\SysWOW64\msasn1.dll
18:24:32.0954 0x099c  C:\Windows\SysWOW64\msasn1.dll - ok
18:24:32.0954 0x099c  [ D6AE16663985EA7E81E17A1A810AC547, 550A0A765765BC3FDDDD5504FB6BA0159ED459541181F24FF7E9A5926E50621E ] C:\Windows\SysWOW64\ntmarta.dll
18:24:32.0954 0x099c  C:\Windows\SysWOW64\ntmarta.dll - ok
18:24:32.0970 0x099c  [ 883D68F098D39E83308A58EE31448FFE, 8494E415B9CA6D9A9B26084D55FE5749A61582597497CDE06D129C8797C98917 ] C:\Windows\System32\nvwgf2umx.dll
18:24:32.0970 0x099c  C:\Windows\System32\nvwgf2umx.dll - ok
18:24:32.0970 0x099c  [ 9860C19010CFB3F70DC6EDAEB1F1A5E2, 9551D542B1F9398C468157BA0633072BEB339EC0955D1088F0F909769B03DA86 ] C:\Windows\System32\wevtsvc.dll
18:24:32.0970 0x099c  C:\Windows\System32\wevtsvc.dll - ok
18:24:32.0970 0x099c  [ C3C9B251ABFA347AA454B6AA17068FA1, 1909A393E1CB19FEE787095C3BAAEBF202BEADCEE40EF0BE4A5D9319A35179E3 ] C:\Windows\SysWOW64\devrtl.dll
18:24:32.0970 0x099c  C:\Windows\SysWOW64\devrtl.dll - ok
18:24:32.0985 0x099c  [ 1A80F26049065554ABB056B7BF599B27, CA7A7FACD985BAA9FEAA99DD6883EC673CE375DA88BDF1C8BE657223FDF637AB ] C:\Windows\SysWOW64\SPInf.dll
18:24:32.0985 0x099c  C:\Windows\SysWOW64\SPInf.dll - ok
18:24:32.0985 0x099c  [ 3756673BBCC51FF8D38B196B8E3DE209, BE88B53C515C2A7B1DC99983E9D314D87236924F45318E1EF9613B63BBDA1CC2 ] C:\Windows\SysWOW64\drvstore.dll
18:24:32.0985 0x099c  C:\Windows\SysWOW64\drvstore.dll - ok
18:24:33.0001 0x099c  [ 936D9E2871CEEFF6A33695D98374367B, C30D42E870F196C4FA20AF95C7B9D9C9C5414D6DDE71268F88C3FC5BF372E61B ] C:\Windows\System32\cscsvc.dll
18:24:33.0001 0x099c  C:\Windows\System32\cscsvc.dll - ok
18:24:33.0001 0x099c  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] C:\Windows\System32\profsvc.dll
18:24:33.0001 0x099c  C:\Windows\System32\profsvc.dll - ok
18:24:33.0017 0x099c  [ 0FCDD17F7369639EFA0C068569B75E41, E711A8BF4597F49FCCB50A039F24F5A974564AE81A48F46EEE54D4A7195510DD ] C:\Windows\System32\PeerDist.dll
18:24:33.0017 0x099c  C:\Windows\System32\PeerDist.dll - ok
18:24:33.0017 0x099c  [ 5E47B467A1CD51943C370BF781E1A4F1, 17B679389382129E6E1193F2FD3C236B5FA6EE8B5621219D54A859476116B8DD ] C:\Windows\System32\taskschd.dll
18:24:33.0017 0x099c  C:\Windows\System32\taskschd.dll - ok
18:24:33.0032 0x099c  [ 61BD2AFA2ED8267765FD1F030DF42A25, 891313E22DA033D998806FE300EA01EDE67518A60C15EA110C74ACE4DAF1C38D ] C:\Windows\System32\mstask.dll
18:24:33.0032 0x099c  C:\Windows\System32\mstask.dll - ok
18:24:33.0032 0x099c  [ 503AA3DD9125F1462399D6B175217C9C, BB761EBD9453AEC5603876B44036F90C961F2A1900675E2E060BDC5EDDE9CB89 ] C:\Windows\System32\mscms.dll
18:24:33.0032 0x099c  C:\Windows\System32\mscms.dll - ok
18:24:33.0048 0x099c  [ 070B4DE2729515E9F22E4AAFD7B2497C, 1353572251F10FAA92B586D5B483BD3684B86AA2292EF0D180B2E84910914624 ] C:\Windows\System32\ntmarta.dll
18:24:33.0048 0x099c  C:\Windows\System32\ntmarta.dll - ok
18:24:33.0048 0x099c  [ 3B03178E65E6903328644E329B24D8B2, 5B951EF351DB32E3E3623992231ECC8DAB34171E28304916C5359D4710278EDE ] C:\Windows\System32\version.dll
18:24:33.0048 0x099c  C:\Windows\System32\version.dll - ok
18:24:33.0048 0x099c  [ 7DEAD28D8FB9BCAE4A153A57338315E7, 8FD71604C7DA571177BD46171D414FB16BEAE7C4AFFFA2401D67A1AE8EF4468E ] C:\Windows\System32\winmm.dll
18:24:33.0048 0x099c  C:\Windows\System32\winmm.dll - ok
18:24:33.0064 0x099c  [ 6A5C1EA6E0B31B168FDE21A1FDC078C2, 7DB716456F61905F9D038FA0E518E9C416614A3F7ED990308BF6F899376FB8D2 ] C:\Windows\System32\msimg32.dll
18:24:33.0064 0x099c  C:\Windows\System32\msimg32.dll - ok
18:24:33.0064 0x099c  [ 9D50C0B29FB20DF0A8FD197B332894B7, A183474F67522C59CFD511473B8DF219624AD2FCD310B0C36E45D48CC074EBBA ] C:\Windows\System32\winmmbase.dll
18:24:33.0064 0x099c  C:\Windows\System32\winmmbase.dll - ok
18:24:33.0079 0x099c  [ F0EF7D1BC038EC2FDAA41583479E335E, D906DBC44B66B37F22CC0526AC8946F23147DE33047F2D42AA2AA805C112BF07 ] C:\Windows\System32\nvapi64.dll
18:24:33.0079 0x099c  C:\Windows\System32\nvapi64.dll - ok
18:24:33.0079 0x099c  [ 1A5835F2E6B49A83F0AEAD17B4537AF7, 8B2E67949305E27925595BD376B39AFBA755BF70BAB92518D2B041FF95BF85A0 ] C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.17227_none_932c0e57474f5080\GdiPlus.dll
18:24:33.0079 0x099c  C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.17227_none_932c0e57474f5080\GdiPlus.dll - ok
18:24:33.0095 0x099c  [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] C:\Windows\System32\es.dll
18:24:33.0095 0x099c  C:\Windows\System32\es.dll - ok
18:24:33.0095 0x099c  [ C77D967840F17DED03DA4BA9D3C40FDB, 53A2FFFD3060E000537963B3CBF7D38BD296137011F88A83804E39AA0ACF980A ] C:\Windows\System32\profsvcext.dll
18:24:33.0095 0x099c  C:\Windows\System32\profsvcext.dll - ok
18:24:33.0095 0x099c  [ A5F79CC03396AAC79F79C1368DA08A95, 5488DB19AADA6E711958A4FFF88AAE608DF27FCAF01058B5EC46AE76C9A10176 ] C:\Windows\System32\ntdsapi.dll
18:24:33.0095 0x099c  C:\Windows\System32\ntdsapi.dll - ok
18:24:33.0111 0x099c  [ D60F99ECBFCE0C01BE4C5B06E09435DB, F45B7C70F23DF412E721FD50CF0197CA73A082A051B231C5D07929A346A07589 ] C:\Windows\System32\atl.dll
18:24:33.0111 0x099c  C:\Windows\System32\atl.dll - ok
18:24:33.0111 0x099c  [ BA25717D6694B6C472129AD93893A03D, 28F38C38914E093CC7BDF720E358D9F9D8E518CA16CAF69A60CBB4807D2C672B ] C:\Windows\System32\netapi32.dll
18:24:33.0111 0x099c  C:\Windows\System32\netapi32.dll - ok
18:24:33.0126 0x099c  [ F71E12EBA575EBD58B499BC7C39D0CD0, 47B384EAB195C13C07CC56CA9245CD90F2C27C846F5DB4C97D3466304A75CE70 ] C:\Windows\System32\wkscli.dll
18:24:33.0126 0x099c  C:\Windows\System32\wkscli.dll - ok
18:24:33.0126 0x099c  [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] C:\Windows\System32\gpsvc.dll
18:24:33.0126 0x099c  C:\Windows\System32\gpsvc.dll - ok
18:24:33.0142 0x099c  [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] C:\Windows\System32\themeservice.dll
18:24:33.0142 0x099c  C:\Windows\System32\themeservice.dll - ok
18:24:33.0142 0x099c  [ 835D33D2EF07743028475486D0BA5696, 763BAD8395CDC537DE7B4A821117218187CC669410DFDDFB95C6759F32EBBE4F ] C:\Windows\System32\wevtapi.dll
18:24:33.0142 0x099c  C:\Windows\System32\wevtapi.dll - ok
18:24:33.0157 0x099c  [ 0341F92E52A8FF814671761179C103FB, 49037E34D4B572CAB85BBF29330D3DA188D1FBA65FA5E41728B47D1DD2206804 ] C:\Windows\System32\dsrole.dll
18:24:33.0157 0x099c  C:\Windows\System32\dsrole.dll - ok
18:24:33.0157 0x099c  [ 6319232C1CE39AC35316CF51910EEEB5, 7E6ACBE6DD23E7EF832E42BDF585050D6920DA4CD23636EE66F873FE64F326C0 ] C:\Windows\System32\nlaapi.dll
18:24:33.0157 0x099c  C:\Windows\System32\nlaapi.dll - ok
18:24:33.0157 0x099c  [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] C:\Windows\System32\Sens.dll
18:24:33.0157 0x099c  C:\Windows\System32\Sens.dll - ok
18:24:33.0173 0x099c  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] C:\Windows\System32\AudioEndpointBuilder.dll
18:24:33.0173 0x099c  C:\Windows\System32\AudioEndpointBuilder.dll - ok
18:24:33.0173 0x099c  [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] C:\Windows\System32\FntCache.dll
18:24:33.0173 0x099c  C:\Windows\System32\FntCache.dll - ok
18:24:33.0189 0x099c  [ 3F57072F346954FAD726A612BE3C8A4E, 25C0F54EB3AFA1A2922C7F8E033ABC6936CD4459847F48107B1B655D1E61A342 ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll
18:24:33.0189 0x099c  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll - ok
18:24:33.0189 0x099c  [ 9840D817D3FBFC81B5F381DB67EFA978, 2AFD1B3A365837160E43E93B9229D5718502B387F92A6D23EFDBB6553A915C81 ] C:\Windows\System32\nvsvcr.dll
18:24:33.0189 0x099c  C:\Windows\System32\nvsvcr.dll - ok
18:24:33.0204 0x099c  [ 0341BF7622E0D547446DB254868EF965, 3EDFFC4F5F4EFAFA62F6E0D61E27FCED6B56A94D6D742821471387017E9CBA43 ] C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9600.17810_none_34ae2abd958aedeb\comctl32.dll
18:24:33.0204 0x099c  C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9600.17810_none_34ae2abd958aedeb\comctl32.dll - ok
18:24:33.0204 0x099c  [ A589D406382FA6A2A40BD06F56CF583F, 1C58D903E051E464F5BBC4B9CBDFA5AD1696DB2AFE954E124DC1E96C85D93501 ] C:\Windows\System32\igd10umd64.dll
18:24:33.0204 0x099c  C:\Windows\System32\igd10umd64.dll - ok
18:24:33.0220 0x099c  [ 3F6157D54881E568F5B71E3E967BB9ED, 0C01686E8DFB72819F5AE20001E5C91C2AEDAB4EAF9B3C7E6FC41EF6BC64273A ] C:\Windows\System32\nvspcap64.dll
18:24:33.0220 0x099c  C:\Windows\System32\nvspcap64.dll - ok
18:24:33.0220 0x099c  [ 2ECA23663D13100032E09062C743C70D, 591DC05B54F1437C6F214FFFCF9CCA725D541C11C2AECC50E137D88FD297A416 ] C:\Windows\System32\propsys.dll
18:24:33.0220 0x099c  C:\Windows\System32\propsys.dll - ok
18:24:33.0236 0x099c  [ 650C37A00E03FA7ADF8E4E0735E8CF71, 42600434BA167AB5956819EA0460C807AF5433507E6CF8B5497D0EEE5FF94711 ] C:\Windows\System32\nvcpl.dll
18:24:33.0236 0x099c  C:\Windows\System32\nvcpl.dll - ok
18:24:33.0236 0x099c  [ 00CD1254837739E310505EBCB19F7971, 6629B861898EA9135DDA9BB299F557C025399F58A7C1A498F0F57C90D580A32E ] C:\Windows\System32\uDWM.dll
18:24:33.0236 0x099c  C:\Windows\System32\uDWM.dll - ok
18:24:33.0236 0x099c  [ 053472337FDD116BD010C88DB0C34DF1, 970D80D6C67A9D66AF03D1223AE663C205484232C22A482584C55AB1E1BC49D4 ] C:\Windows\System32\d2d1.dll
18:24:33.0236 0x099c  C:\Windows\System32\d2d1.dll - ok
18:24:33.0251 0x099c  [ 9543FE667E9709640F1D9852BCF97A17, 3EF13E6A9E551AAF552A54CB2347CCD9C42099B941794F4AC9D2DFD9DFBBEEDC ] C:\Windows\System32\xmllite.dll
18:24:33.0251 0x099c  C:\Windows\System32\xmllite.dll - ok
18:24:33.0251 0x099c  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] C:\Windows\System32\audiosrv.dll
18:24:33.0251 0x099c  C:\Windows\System32\audiosrv.dll - ok
18:24:33.0267 0x099c  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] C:\Windows\System32\mmcss.dll
18:24:33.0267 0x099c  C:\Windows\System32\mmcss.dll - ok
18:24:33.0267 0x099c  [ 8420491FFA891600A88FD12F5059A54C, 7A8750A5827198168BC6B92E9CA3AD6CA1F4498764094302A7714B265DE84A58 ] C:\Windows\System32\ksuser.dll
18:24:33.0267 0x099c  C:\Windows\System32\ksuser.dll - ok
18:24:33.0282 0x099c  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] C:\Windows\System32\drivers\lltdio.sys
18:24:33.0282 0x099c  C:\Windows\System32\drivers\lltdio.sys - ok
18:24:33.0282 0x099c  [ B8C9BC3542EDA9DB99B95543555877BC, AA812707DCCAAF172C6348FF4EBB93375AE40D0CE478651FFB3C44682FED191A ] C:\Windows\System32\samlib.dll
18:24:33.0282 0x099c  C:\Windows\System32\samlib.dll - ok
18:24:33.0298 0x099c  [ 61E9834E1CA04DB74F0053BD8AE67BFC, 5623E63A40CFA9913FA0B0F0DF2DEC2F621B96480D575C47B821AE0D4103BC53 ] C:\Windows\System32\winbrand.dll
18:24:33.0298 0x099c  C:\Windows\System32\winbrand.dll - ok
18:24:33.0298 0x099c  [ 1547E5B7D2EF477D422EBE0FE58508CC, 3EC11F4414C6C856972D654DB2627037AAF37F010C81B6E4612C2035C6EDD5B7 ] C:\Windows\System32\AuthExt.dll
18:24:33.0298 0x099c  C:\Windows\System32\AuthExt.dll - ok
18:24:33.0314 0x099c  [ C313041B186B1D102361468AEA2DE623, 690158B4641AB873A2CB7697E1DFE47DFEA85D9A428AD8561A7C0EDF93A6829A ] C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll
18:24:33.0314 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll - ok
18:24:33.0314 0x099c  [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] C:\Windows\System32\drivers\nwifi.sys
18:24:33.0314 0x099c  C:\Windows\System32\drivers\nwifi.sys - ok
18:24:33.0314 0x099c  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] C:\Windows\System32\drivers\ndisuio.sys
18:24:33.0314 0x099c  C:\Windows\System32\drivers\ndisuio.sys - ok
18:24:33.0329 0x099c  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] C:\Windows\System32\drivers\rspndr.sys
18:24:33.0329 0x099c  C:\Windows\System32\drivers\rspndr.sys - ok
18:24:33.0329 0x099c  [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] C:\Windows\System32\lmhsvc.dll
18:24:33.0329 0x099c  C:\Windows\System32\lmhsvc.dll - ok
18:24:33.0345 0x099c  [ EC2DB85DD72A3506D60B428A36F5E27E, 1E3DD6DD0DF3737E0207569A11F3AC9CDEB0A2D13EF4737E69F526EF1A00D91B ] C:\Windows\System32\NetworkStatus.dll
18:24:33.0345 0x099c  C:\Windows\System32\NetworkStatus.dll - ok
18:24:33.0345 0x099c  [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] C:\Windows\System32\nsisvc.dll
18:24:33.0345 0x099c  C:\Windows\System32\nsisvc.dll - ok
18:24:33.0345 0x099c  [ 0D12F606DE18A5739AF27F12A32C6A6E, 5F2231EDB58B3C81BC85CC94807D0DA4235034DD89C429EABE5DF540AA9100BC ] C:\Windows\System32\IPHLPAPI.DLL
18:24:33.0345 0x099c  C:\Windows\System32\IPHLPAPI.DLL - ok
18:24:33.0360 0x099c  [ DB9657253BD51C172B3262B9CD5463F3, DCD61909A2A875E721EDBF312A1814D00B49F868F169396767E9FD2FA177991C ] C:\Windows\System32\nrpsrv.dll
18:24:33.0360 0x099c  C:\Windows\System32\nrpsrv.dll - ok
18:24:33.0360 0x099c  [ FD9683552D97156E0C5B948BDABA2569, 5BB19966FAA3C5F786DBCC9F8416182BD865851906122AB84FF572E38AA8881F ] C:\Windows\System32\winnsi.dll
18:24:33.0360 0x099c  C:\Windows\System32\winnsi.dll - ok
18:24:33.0376 0x099c  [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] C:\Windows\System32\dhcpcore.dll
18:24:33.0376 0x099c  C:\Windows\System32\dhcpcore.dll - ok
18:24:33.0376 0x099c  [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] C:\Windows\System32\wcmsvc.dll
18:24:33.0376 0x099c  C:\Windows\System32\wcmsvc.dll - ok
18:24:33.0392 0x099c  [ 2B1C2CB5C97962C521CD806F0C86D2FE, CDBC97A442EBDA6883603AE9162F354AFCE6AE3D21809BA516521B25872AEFCC ] C:\Windows\System32\wcmcsp.dll
18:24:33.0392 0x099c  C:\Windows\System32\wcmcsp.dll - ok
18:24:33.0392 0x099c  [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] C:\Windows\System32\wlansvc.dll
18:24:33.0392 0x099c  C:\Windows\System32\wlansvc.dll - ok
18:24:33.0407 0x099c  [ E475BEF9B460F4F678972F88C5FF50D2, 4437CA70280C5C41DF29B684AF2500D98FBBE28B225DF9C84428916BA0130B5F ] C:\Windows\System32\wmiclnt.dll
18:24:33.0407 0x099c  C:\Windows\System32\wmiclnt.dll - ok
18:24:33.0407 0x099c  [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] C:\Windows\System32\dnsrslvr.dll
18:24:33.0407 0x099c  C:\Windows\System32\dnsrslvr.dll - ok
18:24:33.0407 0x099c  [ 5ABA673EF6433BE68AAE77AE5C5FAFAA, EDD85F776957D1FAB93F27F27A2D60924C423E3EA161A5258F27FABCC6B45CF3 ] C:\Windows\System32\FWPUCLNT.DLL
18:24:33.0407 0x099c  C:\Windows\System32\FWPUCLNT.DLL - ok
18:24:33.0423 0x099c  [ 8D25DE2AC85BC807DC19D4DAF6AA6D27, CB6238AB8AC9DDDF7170511C6E512FF134E9E79831F58BCB670DE327F70D0AD8 ] C:\Windows\System32\dnsext.dll
18:24:33.0423 0x099c  C:\Windows\System32\dnsext.dll - ok
18:24:33.0423 0x099c  [ 1CE1F2BBF92DF79CF8638FDA04DB4F10, FBE8183204175B892DF543A0CC9296FE91C281E818CE9C343C6B16F4E6BEA006 ] C:\Windows\System32\shacct.dll
18:24:33.0423 0x099c  C:\Windows\System32\shacct.dll - ok
18:24:33.0439 0x099c  [ D3883FBCA97D10C8A39632D6CDDC6E85, E7DF51E73B79CC142CB247AF44F09A6F40E02FF668C70E4C1046E84356D01333 ] C:\Windows\System32\dhcpcsvc6.dll
18:24:33.0439 0x099c  C:\Windows\System32\dhcpcsvc6.dll - ok
18:24:33.0439 0x099c  [ 7E1EBDB3424337ABB553F249A7811D94, D2C6797AD4753DEDA738F1F30191CCA0A5E00CB84E4D382B3226C54CBE66A192 ] C:\Windows\System32\dhcpcsvc.dll
18:24:33.0439 0x099c  C:\Windows\System32\dhcpcsvc.dll - ok
18:24:33.0454 0x099c  [ 8CF4AE81A247E1F6103FD1635C8816AF, 7C4CF85F036C404F8D3D09AE1EF01C0B3FE6FC68D60495CBB4A272A743261F0E ] C:\Windows\System32\InputSwitch.dll
18:24:33.0454 0x099c  C:\Windows\System32\InputSwitch.dll - ok
18:24:33.0454 0x099c  [ 4A112AD7D9C7289FE9945D05E97019D0, A09D69E8A0574B001F9F9A64604E15604E8D4FC582DE86D2D82CA74C670794B3 ] C:\Windows\System32\wuaext.dll
18:24:33.0454 0x099c  C:\Windows\System32\wuaext.dll - ok
18:24:33.0470 0x099c  [ F22BC2C1BD805F874540B7595F0C804D, C4AF63DC87DA9CC642C6E4942B77C081625FB4C1D7C3D5E7228DC4704E38643D ] C:\Windows\System32\IDStore.dll
18:24:33.0470 0x099c  C:\Windows\System32\IDStore.dll - ok
18:24:33.0470 0x099c  [ 46E0F92B51247ECCE5A837D613517182, CC45C388704E0D55C559AF9C79605B60820CA0A40B758B2B85B0D87CBD0D8845 ] C:\Windows\System32\samcli.dll
18:24:33.0470 0x099c  C:\Windows\System32\samcli.dll - ok
18:24:33.0485 0x099c  [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] C:\Windows\System32\wbiosrvc.dll
18:24:33.0485 0x099c  C:\Windows\System32\wbiosrvc.dll - ok
18:24:33.0485 0x099c  [ 1CD1B2F038D2697EA7AA7127551ED429, 60AA0E874929ED13E305FB51345C48AE0058C0DDC900F0007B7CAC8AD9FBA88F ] C:\Windows\System32\wlidres.dll
18:24:33.0485 0x099c  C:\Windows\System32\wlidres.dll - ok
18:24:33.0501 0x099c  [ 3C03E08CBB76B7081173924C52D329EE, EFBF10FC783F67B2B39C72873E07ECD525C3CABD08F15D5A568DCA362E1EB92C ] C:\Windows\System32\UIAutomationCore.dll
18:24:33.0501 0x099c  C:\Windows\System32\UIAutomationCore.dll - ok
18:24:33.0501 0x099c  [ 059D36ABEC9F2D3F677B8EA9240405CD, B4CD58747DBA0E9C1C22DDFB049302662D7875C6ABF04DA76565FCDFE5AA82C3 ] C:\Windows\System32\batmeter.dll
18:24:33.0501 0x099c  C:\Windows\System32\batmeter.dll - ok
18:24:33.0517 0x099c  [ 11C2A9D3D34632FC17EF8B3411AA972B, 279261AF81308E7A256EC7A0F5E6511218697EA451425020AAF6DA459172BD0A ] C:\Windows\System32\Windows.UI.Immersive.dll
18:24:33.0517 0x099c  C:\Windows\System32\Windows.UI.Immersive.dll - ok
18:24:33.0517 0x099c  [ 10AC9494ECE22A2362E4E4D98C528D01, 2EE119EBF734BE266238CC7A016BF62D39D9417CCB2A10543CFA346ADE7F4729 ] C:\Windows\System32\dhcpcore6.dll
18:24:33.0517 0x099c  C:\Windows\System32\dhcpcore6.dll - ok
18:24:33.0517 0x099c  [ BF6897E960C08E9FDD41B80726C61C2F, 01F2DE2949A8B8DBBF5831AB7E512F57CF9F44835DF02E5588835722164E073A ] C:\Windows\System32\wlanmsm.dll
18:24:33.0517 0x099c  C:\Windows\System32\wlanmsm.dll - ok
18:24:33.0532 0x099c  [ 59C04629522B5815BF39F8A310FD2C81, 02096C293E4D6726DD944D1A1D66D2A41D0CDBE887809E8A30ABA95F53D289FA ] C:\Windows\System32\onex.dll
18:24:33.0532 0x099c  C:\Windows\System32\onex.dll - ok
18:24:33.0532 0x099c  [ A5141DD172927F04732F5B6BFBE49C15, 6CD9A08D6A5FF54CB05F8FED2A8797D31C8F895DBA22314D4E9B269600431B28 ] C:\Windows\System32\wlansec.dll
18:24:33.0532 0x099c  C:\Windows\System32\wlansec.dll - ok
18:24:33.0548 0x099c  [ EB04CD238FE3D5A3DB900561E3AFDE37, A3BE3BC95EDAA73C2C6D82EFBFC4492D99F5C2B1301CD2CF9337723B5FD2BF5E ] C:\Windows\System32\eappprxy.dll
18:24:33.0548 0x099c  C:\Windows\System32\eappprxy.dll - ok
18:24:33.0548 0x099c  [ 3A80675FF8524B09817000B6A2E35B7A, 228428DA944057E87DC6AE96354FD5877177ADF0E035ED72A136820D5E1CCC50 ] C:\Windows\System32\wlansvcpal.dll
18:24:33.0548 0x099c  C:\Windows\System32\wlansvcpal.dll - ok
18:24:33.0564 0x099c  [ 1B2CAD40A6FD2E9DC336F3A338293B29, 7CB8C03D1ED687940BE55520887574138F457BB379824C52CC86BBB052A034F7 ] C:\Windows\System32\msxml6.dll
18:24:33.0564 0x099c  C:\Windows\System32\msxml6.dll - ok
18:24:33.0564 0x099c  [ 3A7D8742A6BE524A2165F93375AE1872, 5573C2BFF5D8E414D38393A4773C688660D865CECE4591B652C3BE6222124BB1 ] C:\Windows\System32\Windows.Globalization.dll
18:24:33.0564 0x099c  C:\Windows\System32\Windows.Globalization.dll - ok
18:24:33.0579 0x099c  [ BA247631B40720DAEA89BEFAA4632EB6, D18B009631F89A350B9BA81B11EE49AADF9295E7CDC6B15EE61983A935551A64 ] C:\Windows\System32\PhotoMetadataHandler.dll
18:24:33.0579 0x099c  C:\Windows\System32\PhotoMetadataHandler.dll - ok
18:24:33.0579 0x099c  [ 0DF0FA32C2841537B0610B4179320A3A, 0B998280F28072CDF99BD9DE23A98D04CB07F5B83E412D941004FA3A20E6830C ] C:\Windows\System32\TetheringIeProvider.dll
18:24:33.0579 0x099c  C:\Windows\System32\TetheringIeProvider.dll - ok
18:24:33.0595 0x099c  [ 693CC2794DEFB8493ABFF68D509DACC4, CB85D04C380D7C17EE9D1263AB81438C6B1D8F3E5CC62BDE9F9671D3561CBD65 ] C:\Windows\System32\WiFiDisplay.dll
18:24:33.0595 0x099c  C:\Windows\System32\WiFiDisplay.dll - ok
         

Alt 15.07.2015, 18:38   #13
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Code:
ATTFilter
18:24:33.0595 0x099c  [ AEDF08DDF4EA929FEDBC0A1CCF01F287, 5663B87DA6B13BECB652D68932B021A1D8DB420D99B41F1D904DC1427701831D ] C:\Windows\System32\wlanapi.dll
18:24:33.0595 0x099c  C:\Windows\System32\wlanapi.dll - ok
18:24:33.0595 0x099c  [ 3F8C7B8A4C345D0378AC79746E927158, A609CA9484D90ED97A20449D6A25CF737DAF36215E71AA2913639AD3462F3572 ] C:\Windows\System32\msftedit.dll
18:24:33.0595 0x099c  C:\Windows\System32\msftedit.dll - ok
18:24:33.0610 0x099c  [ 682C1B06C4E00A9DC995E4B2FD626CB2, 52B2820171D1A345EDB6FF61FA27D4B03F86ED91D9C0BC997F9820A5646B1ED2 ] C:\Windows\System32\wlgpclnt.dll
18:24:33.0610 0x099c  C:\Windows\System32\wlgpclnt.dll - ok
18:24:33.0610 0x099c  [ 8DAE6957A4F0EC461575F68239E0A13E, DB788A4374618B111EAA052AB8FED6808F1426BE79FD5214A2A9751C6700216A ] C:\Windows\System32\l2gpstore.dll
18:24:33.0610 0x099c  C:\Windows\System32\l2gpstore.dll - ok
18:24:33.0626 0x099c  [ 82FE5F302FD7C7EF0E41465BB873EFC7, 274A2ECD7A60056354883CD9E061F35B2220B5508B1253D00739D51AA0EF173B ] C:\Windows\System32\wlanhlp.dll
18:24:33.0626 0x099c  C:\Windows\System32\wlanhlp.dll - ok
18:24:33.0626 0x099c  [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
18:24:33.0626 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe - ok
18:24:33.0642 0x099c  [ 4897A55EEBC1D3F6DFEB1CD94C241F48, A68C504A5BF10D4C4C082EA4E92EC4358B4E09E87FB8C49A16080ABB900C4523 ] C:\Windows\System32\SubscriptionMgr.dll
18:24:33.0642 0x099c  C:\Windows\System32\SubscriptionMgr.dll - ok
18:24:33.0642 0x099c  [ 9EE220DEE3DA294D3815E2D4EB56A7D9, B6537D24229797ACD5BDDA7D69463F26706B2AF71DC9B8C3962B4C2DAF5733B0 ] C:\Windows\SysWOW64\wtsapi32.dll
18:24:33.0642 0x099c  C:\Windows\SysWOW64\wtsapi32.dll - ok
18:24:33.0642 0x099c  [ 7A1BAB2BDCF59A506588DDF58ED43E21, C7191778058E0CE498E6B21ADEA8A6928AE8B8669B2F00AB639728538ADDDA64 ] C:\Windows\System32\globinputhost.dll
18:24:33.0642 0x099c  C:\Windows\System32\globinputhost.dll - ok
18:24:33.0657 0x099c  [ CC877931A205C47710456FFEE0BEF29D, 3A063C6B064BBE812FCB9A54AC3AFF946A86C022028B48416AB8A164953CC67E ] C:\Windows\SysWOW64\profapi.dll
18:24:33.0657 0x099c  C:\Windows\SysWOW64\profapi.dll - ok
18:24:33.0657 0x099c  [ BD9306F715EA9B959EDB892614F6D581, C654ADB865FA1254FA0081D1DAAB47FCF91DA5EA7AD83CFB062DACF951639EC5 ] C:\Windows\SysWOW64\userenv.dll
18:24:33.0657 0x099c  C:\Windows\SysWOW64\userenv.dll - ok
18:24:33.0673 0x099c  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
18:24:33.0673 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys - ok
18:24:33.0673 0x099c  [ ED3387CE1F9F848A3F3BAA3FCE86E315, 044706F8EFBF67CEE73FB5B406CC17815C3681B7859E8EDB59F80D3F8ADB019D ] C:\Windows\System32\ninput.dll
18:24:33.0673 0x099c  C:\Windows\System32\ninput.dll - ok
18:24:33.0689 0x099c  [ 5878613C2E0EFB4F656DDADC452551B6, C77BA7BBBE979AE507114766681B7E9F28273DA77AC410CF5BF9C850C3469B2A ] C:\Windows\SysWOW64\winsta.dll
18:24:33.0689 0x099c  C:\Windows\SysWOW64\winsta.dll - ok
18:24:33.0689 0x099c  [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
18:24:33.0689 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe - ok
18:24:33.0704 0x099c  [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] C:\Windows\System32\shsvcs.dll
18:24:33.0704 0x099c  C:\Windows\System32\shsvcs.dll - ok
18:24:33.0704 0x099c  [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] C:\Windows\System32\schedsvc.dll
18:24:33.0704 0x099c  C:\Windows\System32\schedsvc.dll - ok
18:24:33.0720 0x099c  [ 92360C5E0D86B027377381E867BD055A, 2347F8F9281F09320F30E5D72BC188B2F2F13C9FFEF0C7AA23ACE3A4D6C7C331 ] C:\Windows\System32\ubpm.dll
18:24:33.0720 0x099c  C:\Windows\System32\ubpm.dll - ok
18:24:33.0720 0x099c  [ 5B9290D5540BDC461500DB84FC3606F0, 5F7DD7581C21D107A933460085C126751DA535D01878C86D9159320194EF886E ] C:\Windows\System32\CSystemEventsBrokerClient.dll
18:24:33.0720 0x099c  C:\Windows\System32\CSystemEventsBrokerClient.dll - ok
18:24:33.0735 0x099c  [ E04863DDDA4D5386895D316B9A26958F, 326E1DC9AB3871F86A0DBAACEC1952A5018A0440269AF84EF9129C121440CC16 ] C:\Windows\System32\ktmw32.dll
18:24:33.0735 0x099c  C:\Windows\System32\ktmw32.dll - ok
18:24:33.0735 0x099c  [ 98D0985521BF8F7086EA9C860898A1EE, B506CCE3ABBEDF4274CB488F7DAE357EAB3B9607DEE76B03B8746C051B3E8517 ] C:\Windows\System32\fveapi.dll
18:24:33.0735 0x099c  C:\Windows\System32\fveapi.dll - ok
18:24:33.0735 0x099c  [ 14CF2EAFCFA0BDC736BFDA130BD95EB2, F462FF5F64900F4069A55E58943FE9C9E9B25F3B0622922BA34BCB4ECC70562A ] C:\Windows\System32\bcd.dll
18:24:33.0735 0x099c  C:\Windows\System32\bcd.dll - ok
18:24:33.0751 0x099c  [ D50705D14E8C876A47FF14B999B4A6C3, 56D28EDB5F039F48DF1000FC7FB736556FF9A0A583D9A567F2533620F3A8FB96 ] C:\Windows\System32\fvecerts.dll
18:24:33.0751 0x099c  C:\Windows\System32\fvecerts.dll - ok
18:24:33.0751 0x099c  [ 68DEABD4CB0CF3920D3B6CCAA36173BC, C87F86DE3E366975919D2A5722E9942F643D9B81185E06B49968D3A7BD1D76C0 ] C:\Windows\System32\taskcomp.dll
18:24:33.0751 0x099c  C:\Windows\System32\taskcomp.dll - ok
18:24:33.0767 0x099c  [ 36F977EDAE6CEE96CE6409B2B16765B4, E7BC85FE92162A6A06B823F9146F94CA5BAD0CF735FD568C6EDB1DA194FB77F3 ] C:\Windows\System32\ProximityService.dll
18:24:33.0767 0x099c  C:\Windows\System32\ProximityService.dll - ok
18:24:33.0767 0x099c  [ 02E72187BE9329E4D9255BC5AE6D8286, F5CAF4A710052559715D2E7FBF6A6D04A83BFB31B76F8D7A758295936543E74A ] C:\Windows\System32\ProximityCommon.dll
18:24:33.0767 0x099c  C:\Windows\System32\ProximityCommon.dll - ok
18:24:33.0782 0x099c  [ 02C6DF84328E271C3F844E477CB25169, 04A345135E7150A869AC1B410B138746D53A7BE0934B748EF0C73D36E71487AF ] C:\Windows\System32\ProximityServicePal.dll
18:24:33.0782 0x099c  C:\Windows\System32\ProximityServicePal.dll - ok
18:24:33.0782 0x099c  [ 1EE65FEAA57FBC2050AE153D07C8DC3F, 5B3878780D3B3EE4EDA0B880E7D41949CB1D3C69937ACC56B8CDCA17014CF111 ] C:\Windows\System32\ProximityCommonPal.dll
18:24:33.0782 0x099c  C:\Windows\System32\ProximityCommonPal.dll - ok
18:24:33.0798 0x099c  [ 3711306C8D1A859351D735D93090C1C0, 4FFFCB8BBDE656C5078BA890F0468556C4481FB21A1DA30803DB14461C234164 ] C:\Windows\System32\taskhost.exe
18:24:33.0798 0x099c  C:\Windows\System32\taskhost.exe - ok
18:24:33.0798 0x099c  [ A9C015F01499761908DE61F172FAF65D, 4CB7155035498ABE5E1A03B94D34B0ED959B437FC42EC2652012EC6094FF5C71 ] C:\Windows\System32\netcfgx.dll
18:24:33.0798 0x099c  C:\Windows\System32\netcfgx.dll - ok
18:24:33.0814 0x099c  [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] C:\Windows\System32\drivers\http.sys
18:24:33.0814 0x099c  C:\Windows\System32\drivers\http.sys - ok
18:24:33.0814 0x099c  [ 992A0252586D9D946535DDBBEF9AB7D5, 3D12B64AE62B728D3816EEA914CDCE98BDE9B52896D88CDEB56E2A5DF1E6A7B1 ] C:\Windows\System32\eappcfg.dll
18:24:33.0814 0x099c  C:\Windows\System32\eappcfg.dll - ok
18:24:33.0829 0x099c  [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] C:\Windows\System32\spoolsv.exe
18:24:33.0829 0x099c  C:\Windows\System32\spoolsv.exe - ok
18:24:33.0829 0x099c  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
18:24:33.0829 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe - ok
18:24:33.0845 0x099c  [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A1F39B71078F608 ] C:\Program Files (x86)\Avira\AntiVir Desktop\msvcp120.dll
18:24:33.0845 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\msvcp120.dll - ok
18:24:33.0845 0x099c  [ F5033F3C6F8E706D78ACB9351EBF7B3E, 6E7C68A3BC532852860284B6D7687BE6BF1BC8F92D299A46C433F5BDCEB6F1F8 ] C:\Windows\SysWOW64\dbghelp.dll
18:24:33.0845 0x099c  C:\Windows\SysWOW64\dbghelp.dll - ok
18:24:33.0845 0x099c  [ 6ABFC5736EC920C4436F32111F5CBCEE, 66285C5A6FD9FABE2FDCFA54F1B9A880FC954BA5B904E1F03039884819AF6EFE ] C:\Windows\System32\urlmon.dll
18:24:33.0845 0x099c  C:\Windows\System32\urlmon.dll - ok
18:24:33.0861 0x099c  [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5E7058BC3AB615F ] C:\Program Files (x86)\Avira\AntiVir Desktop\msvcr120.dll
18:24:33.0861 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\msvcr120.dll - ok
18:24:33.0861 0x099c  [ 6E295C7364DAEB151CC0E98434B6AC92, 4C2601934D5B34FAF0101211C79E1B40E20098F5DFCF78F78E93EFE6CF161C53 ] C:\Windows\System32\iertutil.dll
18:24:33.0861 0x099c  C:\Windows\System32\iertutil.dll - ok
18:24:33.0876 0x099c  [ BA0655E1856A16A14C9BC1FB27B111B9, 974BA0A5ABD08F2579B4A28DE5A8579641B4B3E40EFDFFAA3A0DD733AADE3D01 ] C:\Windows\System32\TpmTasks.dll
18:24:33.0876 0x099c  C:\Windows\System32\TpmTasks.dll - ok
18:24:33.0876 0x099c  [ D1A3B6C2F8F39EC7F75D03740A8112A1, CE3EC47954CCC70F78A4E49F8A585CC64B04A2B725A310034571902B663FEBED ] C:\Windows\System32\tbs.dll
18:24:33.0876 0x099c  C:\Windows\System32\tbs.dll - ok
18:24:33.0892 0x099c  [ 417F80E4AFBA1AA9EBBD618F1C6D9165, 6ACE42ECED960666AC7A2D4C71A2C87C7CB8A30D1FD815AC4D174F2D264CB35A ] C:\Windows\System32\wininet.dll
18:24:33.0892 0x099c  C:\Windows\System32\wininet.dll - ok
18:24:33.0892 0x099c  [ EE5ED8E6998D7E686F614BA8D876829B, CD35CA4AB94CCEE40A1BFA4EB1497BD561E60EAF5B1E2B302BA959F6302A0854 ] C:\Windows\System32\aepic.dll
18:24:33.0892 0x099c  C:\Windows\System32\aepic.dll - ok
18:24:33.0907 0x099c  [ 770D71782A90BE9C48C4310C5C35E25B, 00B9E8B04786D1E93A78F42896023AF2095D69ED70A56042B6C98EB531778779 ] C:\Windows\System32\sfc_os.dll
18:24:33.0907 0x099c  C:\Windows\System32\sfc_os.dll - ok
18:24:33.0907 0x099c  [ 30E29B2F68FBA9FBF77ECC6619D7013E, DBB403DFF285123A0C07DB87437DF4435F1A341BC5E831059AA9C5B582A16923 ] C:\Program Files (x86)\Avira\AntiVir Desktop\grdcore.dll
18:24:33.0907 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\grdcore.dll - ok
18:24:33.0923 0x099c  [ 64FDBD1F4955DA132578392754AA1A79, B7D5D89CF466BFDB1794C112DAED8D945FD379A1D992F7C99C377EC84222A9B5 ] C:\Windows\SysWOW64\shell32.dll
18:24:33.0923 0x099c  C:\Windows\SysWOW64\shell32.dll - ok
18:24:33.0923 0x099c  [ 25EE65F2FA154EDED0E87354311FB1E2, 6CFB00D855B873208F8F62031A1286E83D47A89BF2199CF4ACD2A72960877446 ] C:\Windows\System32\rastls.dll
18:24:33.0923 0x099c  C:\Windows\System32\rastls.dll - ok
18:24:33.0939 0x099c  [ 95D2938DC6621012D276E0C791AD103C, 41FA090169F4AF7312DBF05181F05A110C40A3D7BEF743968BD2270DB3E4DF35 ] C:\Windows\System32\eapprovp.dll
18:24:33.0939 0x099c  C:\Windows\System32\eapprovp.dll - ok
18:24:33.0939 0x099c  [ 7F90C011A2A5607B43FEEE852BD026A2, E7962DB81F342375262D45F859B10A329D1C105F60738DEB9D3CFD2B351AC528 ] C:\Windows\System32\raschap.dll
18:24:33.0939 0x099c  C:\Windows\System32\raschap.dll - ok
18:24:33.0954 0x099c  [ DDDF07E134ADCA1884F29295BFEDA5AF, CD3FAA861773F7F43C091BAC4248697B7C3D05C37F87396832517D05DA0EFD8F ] C:\Windows\System32\raschapext.dll
18:24:33.0954 0x099c  C:\Windows\System32\raschapext.dll - ok
18:24:33.0954 0x099c  [ 1144E34385970A8777AF5A7F8905A954, E286A8E181725A555D616DF35D3398C7E1E9F2EAB3820DDD802B04FDD81633E3 ] C:\Windows\System32\credui.dll
18:24:33.0954 0x099c  C:\Windows\System32\credui.dll - ok
18:24:33.0954 0x099c  [ 6CB5CFF7F48B8E226523BF2E849AA6E5, A92EEF4B85C2F246447F3061156527305D9C410B0491ED79F6FF11684CD4BD06 ] C:\Windows\SysWOW64\shlwapi.dll
18:24:33.0954 0x099c  C:\Windows\SysWOW64\shlwapi.dll - ok
18:24:33.0970 0x099c  [ EF9BCBE9E80E6F1C24349CAE7864681E, AA605C62174F8AC20E86C011AD05CD8DE9D5023D7A0C3A68D16A6177E13F8D4A ] C:\Program Files (x86)\Avira\AntiVir Desktop\avwinll.dll
18:24:33.0970 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avwinll.dll - ok
18:24:33.0970 0x099c  [ 4B18CF857CE12F8985AAFFFDF474044B, 9EDCCC9C5DF16B7834E4A8D9F7C4F9B1D2CDC595CD2B4918DB646DBAC2142F2F ] C:\Program Files (x86)\Avira\AntiVir Desktop\scewxmlw.dll
18:24:33.0970 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\scewxmlw.dll - ok
18:24:33.0985 0x099c  [ 729DA10DB08CA99846540BFA0092DBFB, EC41D51AE037E1CAA188A329B0776DCC15B31D754C15CA7910A80132E2D17D84 ] C:\Program Files (x86)\Avira\AntiVir Desktop\cfglib.dll
18:24:33.0985 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\cfglib.dll - ok
18:24:33.0985 0x099c  [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] C:\Windows\System32\BFE.DLL
18:24:33.0985 0x099c  C:\Windows\System32\BFE.DLL - ok
18:24:34.0001 0x099c  [ 1DF68811D3B34D02312E4A04250A10F5, 80734F43CF0C8251664613736CFFD602664D438716ED79C6295F457ABF836351 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpipc.dll
18:24:34.0001 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpipc.dll - ok
18:24:34.0001 0x099c  [ 5D7148704D8715482695A534887359FA, A194BE35CFB3B5B157E4DEF24E4615EBE8C04156ABFD19718AA906598D26487E ] C:\Windows\SysWOW64\mpr.dll
18:24:34.0001 0x099c  C:\Windows\SysWOW64\mpr.dll - ok
18:24:34.0017 0x099c  [ 813765BF8C982C0CDDCCF703C4385AB8, 8EA5D2D923725CA2A5BBB35CC5C8085EA3F1CC3D2DC069025DE1DF42A4CB93C3 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgen.dll
18:24:34.0017 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgen.dll - ok
18:24:34.0017 0x099c  [ AFE79A5EDB0DCFA5C1EB0175E5A23A9D, 70E5203CAF5223A9D0C00846BC03472DB6B995EE1422614292AF1DE214BC1519 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpschd.dll
18:24:34.0017 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpschd.dll - ok
18:24:34.0032 0x099c  [ ACBA82820AF2B51B31969A0570A993F7, CCE1DB7255B3C0D1B3001EE8BFA322E25F1C955446F6A91B5DB3506803FD7462 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
18:24:34.0032 0x099c  C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
18:24:34.0032 0x099c  [ 2BDB085AA7ECA65D1793D150CEC960AF, EE8E25DEEC45230D85EBEFE7DC1FA7CB154427E6723AE401EA914C558B335A6B ] C:\Windows\SysWOW64\ole32.dll
18:24:34.0032 0x099c  C:\Windows\SysWOW64\ole32.dll - ok
18:24:34.0032 0x099c  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] C:\Windows\System32\drivers\bowser.sys
18:24:34.0032 0x099c  C:\Windows\System32\drivers\bowser.sys - ok
18:24:34.0048 0x099c  [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] C:\Windows\System32\drivers\mpsdrv.sys
18:24:34.0048 0x099c  C:\Windows\System32\drivers\mpsdrv.sys - ok
18:24:34.0048 0x099c  [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] C:\Windows\System32\drivers\mrxsmb.sys
18:24:34.0048 0x099c  C:\Windows\System32\drivers\mrxsmb.sys - ok
18:24:34.0064 0x099c  [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] C:\Windows\System32\MPSSVC.dll
18:24:34.0064 0x099c  C:\Windows\System32\MPSSVC.dll - ok
18:24:34.0064 0x099c  [ 64A5D80882CF405F515A1A1D3F136B6A, 954ECB5540F3DCDABCB4BDC738B2AB0ADC063E78F376247E5650DCA9C2B9F504 ] C:\Windows\SysWOW64\nsi.dll
18:24:34.0064 0x099c  C:\Windows\SysWOW64\nsi.dll - ok
18:24:34.0079 0x099c  [ 3265F568468AB87950342764F6D77E78, 62D063F00323145860C3D2E21C99A4D961E01CED0DC142089FAD25BFFC6CEFE8 ] C:\Windows\SysWOW64\winnsi.dll
18:24:34.0079 0x099c  C:\Windows\SysWOW64\winnsi.dll - ok
18:24:34.0079 0x099c  [ C06B6C8E002EDB492D93F2494E32F9CA, 232C9BA7E3D4D756935F4F3607CD3067936332BBDFD411D74AE9B5AB3D20011A ] C:\Windows\SysWOW64\rasapi32.dll
18:24:34.0079 0x099c  C:\Windows\SysWOW64\rasapi32.dll - ok
18:24:34.0095 0x099c  [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] C:\Windows\System32\drivers\mrxsmb20.sys
18:24:34.0095 0x099c  C:\Windows\System32\drivers\mrxsmb20.sys - ok
18:24:34.0095 0x099c  [ BD91E0E0B09D89E4932DEE4FC23E2BD0, 229BEFB7F4471F78C70C02746C3BBDBC2B72B472F8DF1F2851928A53E61B4456 ] C:\Windows\SysWOW64\rasman.dll
18:24:34.0095 0x099c  C:\Windows\SysWOW64\rasman.dll - ok
18:24:34.0095 0x099c  [ 428AF7FA03FF09CE1CD373ABFEBAD8A3, 43B3F6953DA33D87F58BA03295877ABA89FC9F36C0229A9D0D4A423B21629988 ] C:\Windows\SysWOW64\ws2_32.dll
18:24:34.0095 0x099c  C:\Windows\SysWOW64\ws2_32.dll - ok
18:24:34.0110 0x099c  [ D6253321AADE18EA2EDDA76BE2C0B482, A62817E683386FC147870CA5991186DFA62CA141E87C84201909BDB17BEF148A ] C:\Program Files (x86)\Avira\AntiVir Desktop\avevtlog.dll
18:24:34.0110 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avevtlog.dll - ok
18:24:34.0110 0x099c  [ BD67E623E57CD2A9124E23C5560B69A5, 35531E77799A1EB7E73E0BC8BFCAF1858305202E12EE02E69B01228B1C7AAEFD ] C:\Program Files (x86)\Avira\AntiVir Desktop\schedr.dll
18:24:34.0110 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\schedr.dll - ok
18:24:34.0126 0x099c  [ 898EA360D09D85477AA1E371E4E88324, DFE93B0982E64C51721E4EDB11F2BB65FDF841BA52051F6B7F900CF440D81E80 ] C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
18:24:34.0126 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll - ok
18:24:34.0126 0x099c  [ A7DDBD5DA334F3BA342EB828012FD1A5, B9A86EC9BB107F1BB6FAE103EE9E571B639564AFBD036040F0A91C06E5C26522 ] C:\Windows\SysWOW64\clbcatq.dll
18:24:34.0126 0x099c  C:\Windows\SysWOW64\clbcatq.dll - ok
18:24:34.0142 0x099c  [ AA21423B380157AFAA2F82E96D910E0F, 5E037AD0B3AF9D5B1A6F82BBA8026CEA8DD5C8C0AECB8ED71F1ADAA940954C5D ] C:\Windows\SysWOW64\kernel.appcore.dll
18:24:34.0142 0x099c  C:\Windows\SysWOW64\kernel.appcore.dll - ok
18:24:34.0142 0x099c  [ F655C3C8BA344799015B6E2015AD4022, B2F0291A9A66CF1E676CF0E580B572C06DF6E503D5617DD20877821591C1E0FC ] C:\Windows\SysWOW64\PortableDeviceApi.dll
18:24:34.0142 0x099c  C:\Windows\SysWOW64\PortableDeviceApi.dll - ok
18:24:34.0157 0x099c  [ 668CFB44F0EFA0E1F6D3D3F3569C78B4, D4008138AC3FD1A620C3556D5B6DFC5E85778536648D3798ECEC732C1CB15803 ] C:\Program Files (x86)\Avira\AntiVir Desktop\systemutilities.dll
18:24:34.0157 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\systemutilities.dll - ok
18:24:34.0157 0x099c  [ 984B3226C7A4CFC9FE91D7BACA133D8D, B8058FC049217DE89F13730425207C19B1967194F3BE3C8CAE2F8AA3BD932721 ] C:\Windows\SysWOW64\winhttp.dll
18:24:34.0157 0x099c  C:\Windows\SysWOW64\winhttp.dll - ok
18:24:34.0173 0x099c  [ 109D3D4BA3470027235363ACDAFCB419, 95432A0BC9DF91B84FB82CBAC8B93A0E3A53021224740BD4F99AD6134ADE914F ] C:\Program Files (x86)\Avira\AntiVir Desktop\productutilities.dll
18:24:34.0173 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\productutilities.dll - ok
18:24:34.0173 0x099c  [ C01521FA021F1D37753872854136D901, 15B2897868FE87053B6C8B668E3A3B1D676624C5EAE1FDCB7E45805601B33223 ] C:\Program Files (x86)\Avira\AntiVir Desktop\win32apiwrapper.dll
18:24:34.0173 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\win32apiwrapper.dll - ok
18:24:34.0189 0x099c  [ E4EB138060BAE0DBAB1A3B71A3141FE7, D7441D2EA9096362722E12E92E5065E30B5F0B0126DF0ABC91F854E19CEA5848 ] C:\Windows\SysWOW64\wininet.dll
18:24:34.0189 0x099c  C:\Windows\SysWOW64\wininet.dll - ok
18:24:34.0189 0x099c  [ 927E38A35E4DFC4E294BD130BAA6F759, E64380201E7F65645AC70802C5E545A4300C6B1B84294C3E87FFD05975F05ED9 ] C:\Windows\SysWOW64\iertutil.dll
18:24:34.0189 0x099c  C:\Windows\SysWOW64\iertutil.dll - ok
18:24:34.0189 0x099c  [ A67A55E7281799E57129CF4144FB4B61, B8364F6F0E3DF364EE17C9C0C86D2003792C1D26559E5ED4FB01013AC4FC7EF8 ] C:\Program Files (x86)\Avira\AntiVir Desktop\CommonTextRc.dll
18:24:34.0189 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\CommonTextRc.dll - ok
18:24:34.0204 0x099c  [ 70478D9CDDC612CF8D2AA0342109AAEE, 07E538E9B82F8CF2684A7BC9B4BB25C4CBECF1C8B12B122F7B4247EA47565F9A ] C:\Program Files (x86)\Avira\AntiVir Desktop\57\ProductTextRc.dll
18:24:34.0204 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\57\ProductTextRc.dll - ok
18:24:34.0204 0x099c  [ 57E0A896C38C41C8B5B7F3127F8FD0D9, 98DEEF74D256E398576106BCFEFE84247FAFF5BD3A167F4CE2FAC2CFEC799D38 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
18:24:34.0204 0x099c  C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
18:24:34.0220 0x099c  [ BEA7A26C2C22381B6DD88758352B9D9B, C1153D7584DD7ABF59B7A2F7B81F53D08830A0CE5A96C50696894631BA7F6441 ] C:\Windows\SysWOW64\dhcpcsvc.dll
18:24:34.0220 0x099c  C:\Windows\SysWOW64\dhcpcsvc.dll - ok
18:24:34.0220 0x099c  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] C:\Windows\System32\drivers\vwifimp.sys
18:24:34.0220 0x099c  C:\Windows\System32\drivers\vwifimp.sys - ok
18:24:34.0235 0x099c  [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] C:\Windows\System32\wkssvc.dll
18:24:34.0235 0x099c  C:\Windows\System32\wkssvc.dll - ok
18:24:34.0235 0x099c  [ 5D9B166EFBA673C8221C5C97CCFB5BFE, 63F99158CB660FD4BC838B12DE1F4C2F3DAE43AF88EBC68FE73A43B62AF8D257 ] C:\Windows\System32\wcmapi.dll
18:24:34.0235 0x099c  C:\Windows\System32\wcmapi.dll - ok
18:24:34.0251 0x099c  [ 9B95FCB49595A869F27034916382FE57, C9C98C5837D4562CF706B96C4B25AD264E3CA65BD442090F6093C235E1B7AE5E ] C:\Windows\System32\adhapi.dll
18:24:34.0251 0x099c  C:\Windows\System32\adhapi.dll - ok
18:24:34.0251 0x099c  [ B715110E1F4A0F0F3561E928A3617053, 5F46D7D16954FCEF4576CFEB556A8619FDC5D96634841412363910113956765E ] C:\Windows\SysWOW64\rtutils.dll
18:24:34.0251 0x099c  C:\Windows\SysWOW64\rtutils.dll - ok
18:24:34.0267 0x099c  [ 9DF590DEA96B6756CF8D73C2525797BE, 3FDF4B8794C800CD6586310A85A46F78AA0130E10712BF72CE442BC7C23715A0 ] C:\Windows\System32\wfapigp.dll
18:24:34.0267 0x099c  C:\Windows\System32\wfapigp.dll - ok
18:24:34.0267 0x099c  [ F91E83532107E8B0A1819DB2D96366CB, 16D7637331B62610398BB8B0D4F6975BD9D84FF3E18A10A722E45C76B3480EAF ] C:\Windows\System32\MrmCoreR.dll
18:24:34.0267 0x099c  C:\Windows\System32\MrmCoreR.dll - ok
18:24:34.0282 0x099c  [ 7668892E7ABC6FE867DCB097B36B6F3C, D182F048289DA6F24A628A57E54E46C3E7CF4EFBC4E1815B9E933A75D8F8D632 ] C:\Windows\System32\Windows.UI.dll
18:24:34.0282 0x099c  C:\Windows\System32\Windows.UI.dll - ok
18:24:34.0282 0x099c  [ A542C712794FB8FBD27E37271C730F36, 8C327BFAC10C7BBD48277D4FEB862D58CA1F22DC10F0632BB8B18CF54A507216 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:24:34.0282 0x099c  C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
18:24:34.0298 0x099c  [ 31D858C6F1C453AF516343758A4B2C69, 12ABCF99DD28BF35B3C224ACCFE2587BA5F4199D163224B344CDC770EED36130 ] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.8387_none_5094ca96bcb6b2bb\msvcr90.dll
18:24:34.0298 0x099c  C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.8387_none_5094ca96bcb6b2bb\msvcr90.dll - ok
18:24:34.0298 0x099c  [ 1892E1DB0B6431720B98B52AE9388C28, 141098794D774265662FF0EBB4E938D70ADB8BD54B62B1C9A19F6C3C1F263FEC ] C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
18:24:34.0298 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe - ok
18:24:34.0314 0x099c  [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] C:\Windows\System32\cryptsvc.dll
18:24:34.0314 0x099c  C:\Windows\System32\cryptsvc.dll - ok
18:24:34.0314 0x099c  [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] C:\Windows\System32\das.dll
18:24:34.0314 0x099c  C:\Windows\System32\das.dll - ok
18:24:34.0329 0x099c  [ 83586138F23A4C284EB68AFC852D7AFA, 9ADE8924B4518ED0A8E3FC4CC3F9964BC05B5FF67F230A7FD0BDABCFFA0BB0C8 ] C:\Windows\System32\drivers\avnetflt.sys
18:24:34.0329 0x099c  C:\Windows\System32\drivers\avnetflt.sys - ok
18:24:34.0329 0x099c  [ C2730FE9713C1C474257A7085386B11E, 7D35D00D2B455841C8C9A87CE92885CD22F4B8B6690CB21443ED1B515117EF95 ] C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
18:24:34.0329 0x099c  C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe - ok
18:24:34.0329 0x099c  [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] C:\Windows\System32\dps.dll
18:24:34.0329 0x099c  C:\Windows\System32\dps.dll - ok
18:24:34.0345 0x099c  [ DDBF755EF92C0AB1F27C14A0D251F884, B1384D5D6FFECB6CEF485582D04BD057ED9E9690244F0F52AD90F6A32FF15087 ] C:\Windows\System32\efscore.dll
18:24:34.0345 0x099c  C:\Windows\System32\efscore.dll - ok
18:24:34.0345 0x099c  [ 6A5914B21D33A1CC4D294A696ADDB3E2, 57D055AB3EC1C054BF8D38DF8222FF9AC9C3884A13C29109045957978F4976A2 ] C:\Windows\System32\efssvc.dll
18:24:34.0345 0x099c  C:\Windows\System32\efssvc.dll - ok
18:24:34.0360 0x099c  [ 6AB51A84C2400F1346CCD6B65766DDCD, EA4871C90E4026618A1415F394367599C5E005D33EBD590B6C8409BCC3DD01B7 ] C:\Windows\System32\cryptcatsvc.dll
18:24:34.0360 0x099c  C:\Windows\System32\cryptcatsvc.dll - ok
18:24:34.0360 0x099c  [ ED8901D9AF4023CAD4738D3A4DF9645B, 487DE071FAC1ACB1421DF9F3C770315795BC69031AA40ABB66627574110214C7 ] C:\Windows\System32\crypttpmeksvc.dll
18:24:34.0360 0x099c  C:\Windows\System32\crypttpmeksvc.dll - ok
18:24:34.0376 0x099c  [ 8FA4755F3BA513F4BAE0A2AF1BE8C5F7, 39748E6B58142793F44DDC89A0F3130022533D4BF38832B8D118915788C24461 ] C:\Windows\System32\vssapi.dll
18:24:34.0376 0x099c  C:\Windows\System32\vssapi.dll - ok
18:24:34.0376 0x099c  [ 668790254AAEFB91BAA9D19AE363FBC9, E29AEA8A6EAA5CD19C67917A5273D34A1788D79CA971081676A67A05384498CB ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgrd.dll
18:24:34.0376 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgrd.dll - ok
18:24:34.0392 0x099c  [ B0613DA5277250312241139DFFCD505D, 97E0A78049FA98C5B4596E76FD8E3A2B1D40854922643A2F7B59462880DAFB5B ] C:\Windows\System32\efsutil.dll
18:24:34.0392 0x099c  C:\Windows\System32\efsutil.dll - ok
18:24:34.0392 0x099c  [ 58E2D01FB954F73A7C506E22811D2158, 50F2B82B7BC9AFFAFFF685BD649799FA717A2CDBD7999D3AC96D2E9D84F53309 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgavid.dll
18:24:34.0392 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgavid.dll - ok
18:24:34.0407 0x099c  [ 1A64EEA1BDADE9B7A4E791D9477627DA, C33B36E5A2966EB4C070F24C2498F0300B4AF939D095241FA3C6EC0E363D18EC ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgui.dll
18:24:34.0407 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgui.dll - ok
18:24:34.0407 0x099c  [ 76B7BB05C1BCC11C69162FB7C2CE8901, 7BE750CD2AE40A6632E9FEFC973B8AD66B1D31B19902D53851F4A1F5AF1037F9 ] C:\Windows\System32\dasHost.exe
18:24:34.0407 0x099c  C:\Windows\System32\dasHost.exe - ok
18:24:34.0423 0x099c  [ 171AFBD28A66C04A05E69ECCC074F942, A6FB7C1912B16522F880DE0D7911D8836699E8F505BD7BCA85B26A0F782B7D82 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gplegacy.dll
18:24:34.0423 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gplegacy.dll - ok
18:24:34.0423 0x099c  [ 34B3E16DF9C25F52A76C4F42763317E7, 5BAEB2563AD3684F93AC4DC833AD6895BBAE173C1BC9538268DA2F80D528BA4B ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgenrep.dll
18:24:34.0423 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgenrep.dll - ok
18:24:34.0439 0x099c  [ 00060003E6161944A9963FA9F24102BC, 9FB85A6542F8B17504A40798727266C5F618B09D74963747F06EAF80AE13ECDE ] C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
18:24:34.0439 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe - ok
18:24:34.0439 0x099c  [ 893FC7D38767FFD31732104A8F65F228, 4834F2EF3B96D173ED7F3046B00C99B45E9A412CFA8F7321F9BF3BC8FDD829F6 ] C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GFExperienceUpdate.dll
18:24:34.0439 0x099c  C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GFExperienceUpdate.dll - ok
18:24:34.0439 0x099c  [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] C:\Windows\System32\IKEEXT.DLL
18:24:34.0439 0x099c  C:\Windows\System32\IKEEXT.DLL - ok
18:24:34.0454 0x099c  [ D78050E6CB950AD3C3D9925B29C2979B, 1D710D593A685E2DB5D17E4142ABE9A012654E65A73776756301CE6C83036BDF ] C:\Program Files (x86)\Avira\AntiVir Desktop\onlcfg.dll
18:24:34.0454 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\onlcfg.dll - ok
18:24:34.0454 0x099c  [ 941EDC6791A09356EEBEC309C1633CA2, 4E1F5843C96FAEE37D553D37FA25005D7412266A4E5DA47487C5420CE1F8ED42 ] C:\Windows\System32\vsstrace.dll
18:24:34.0454 0x099c  C:\Windows\System32\vsstrace.dll - ok
18:24:34.0470 0x099c  [ 6ADEF3CCE9788849FA7F8D28A85B2833, 37DA6C868886282A5AD5B59A49D31AB01E5C125F2A67A6E54BBF463DF99A897D ] C:\Windows\SysWOW64\comdlg32.dll
18:24:34.0470 0x099c  C:\Windows\SysWOW64\comdlg32.dll - ok
18:24:34.0470 0x099c  [ E3793D18153C9B597E466DDAF3B7C6BC, D2B1A3B7C1DED162A54CDA4E6A0E3FBF5BEFAF66C736A66EA7E15C15F4873A94 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gavidb.dll
18:24:34.0470 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gavidb.dll - ok
18:24:34.0486 0x099c  [ 754E1BC6B892243B40CB19BCEDDA0597, 9D7B7AA71064747FC2C7738412B9E835914507B82298B284E9EE26BB44DA896C ] C:\Windows\SysWOW64\esent.dll
18:24:34.0486 0x099c  C:\Windows\SysWOW64\esent.dll - ok
18:24:34.0486 0x099c  [ 52EF8037A22F0EB0083AA29EAC706495, 31E4790C685DF7530E8E6A50CE73651144C51F82D91985D4F48F4B8696499122 ] C:\Windows\SysWOW64\psapi.dll
18:24:34.0486 0x099c  C:\Windows\SysWOW64\psapi.dll - ok
18:24:34.0501 0x099c  [ 5C96D90BE599C92B14548B401F442625, 93BCBAC142A898158554C859FDB30848BF52113B4CB72C7F4DF92717AAB3AF16 ] C:\Program Files\NVIDIA Corporation\GeForce Experience Service\ShieldWirelessController.dll
18:24:34.0501 0x099c  C:\Program Files\NVIDIA Corporation\GeForce Experience Service\ShieldWirelessController.dll - ok
18:24:34.0501 0x099c  [ 234F79CD1226D634BBC6B154E4CC7A44, 5BD370BFEBD9D583C3D4AA556FEF3716220362917C78058909470B096A30B1DC ] C:\Windows\System32\vpnikeapi.dll
18:24:34.0501 0x099c  C:\Windows\System32\vpnikeapi.dll - ok
18:24:34.0517 0x099c  [ B0EDCA1168C874812A180EBCD1A43EB5, 0690E2A9D5B3D9481069D4B9B290C107FDC555422F2AE4B135816F95DB57932F ] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9600.17810_none_7c5b6194aa0716f1\comctl32.dll
18:24:34.0517 0x099c  C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9600.17810_none_7c5b6194aa0716f1\comctl32.dll - ok
18:24:34.0517 0x099c  [ 19920B416F3274640B3DE9A5248F0E74, 8A4EC7293AE38F5201C9124F1B33C61E410F5A96DD952997B8BACC06FADA3B9D ] C:\Windows\SysWOW64\SHCore.dll
18:24:34.0517 0x099c  C:\Windows\SysWOW64\SHCore.dll - ok
18:24:34.0532 0x099c  [ 8DB30DA1FA8620A5C4AF53DEB85194D8, D106A7F3970324ED13943CA6E81626D500A6B38C117FB77A4F4F6AB18B2BA0AB ] C:\Windows\SysWOW64\NapiNSP.dll
18:24:34.0532 0x099c  C:\Windows\SysWOW64\NapiNSP.dll - ok
18:24:34.0532 0x099c  [ 5B4FF009D24F73F6FC6EB4870A789843, C542A72F67F667D7A83815CF434BDD12EB0C1CE03D98736862CCD763230BFDE5 ] C:\Windows\SysWOW64\mswsock.dll
18:24:34.0532 0x099c  C:\Windows\SysWOW64\mswsock.dll - ok
18:24:34.0548 0x099c  [ DCE9FD22B136C127C85F285E083B928B, 769A0D7836B2703110D8C44770256DEED37A8655C07C8591463BB9EA24A6997A ] C:\Windows\SysWOW64\nlaapi.dll
18:24:34.0548 0x099c  C:\Windows\SysWOW64\nlaapi.dll - ok
18:24:34.0548 0x099c  [ 4947B4C100BE88C83F027D1C8DBC4B84, 1C35AE176FA15918A8FEA50ED5D74B2BE18E3AE19928EF74A69690234FF9810F ] C:\Windows\SysWOW64\pnrpnsp.dll
18:24:34.0548 0x099c  C:\Windows\SysWOW64\pnrpnsp.dll - ok
18:24:34.0564 0x099c  [ FF0EE1B87E5DD7A82F7BB124D5CA8BB6, 9C4DA645D6EC97AA88D81CDC81F87C8B7A3434AF35A16F8622A097839EBFAB16 ] C:\Windows\SysWOW64\dnsapi.dll
18:24:34.0564 0x099c  C:\Windows\SysWOW64\dnsapi.dll - ok
18:24:34.0564 0x099c  [ 2B84A6520E8ED6DAB5146019396DAC2B, 20A48F8E645721308F7A5FA5EB727357E1F983CB95EC11F8D4F4CA3A91E870AF ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll
18:24:34.0564 0x099c  C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll - ok
18:24:34.0579 0x099c  [ AFFB4EB53FC1D04495C8A5EC80B1EBCD, 60A43F23B6357BD9E6B6BEA099CE9C745CA297CC99910E8E79C46ADBBED2536D ] C:\Windows\SysWOW64\FWPUCLNT.DLL
18:24:34.0579 0x099c  C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
18:24:34.0579 0x099c  [ 8700883867FBD565BF6C2DAE8B2D7810, DAD073DA251EB1AF756EE7739427B305FBE6D8F74B63D8B1CEC301ED8A2023BA ] C:\Windows\SysWOW64\winrnr.dll
18:24:34.0579 0x099c  C:\Windows\SysWOW64\winrnr.dll - ok
18:24:34.0579 0x099c  [ 60301F8FDF519FFEC307A686209C33BE, B9A31478707B518967A6200813DCBD4DE03824FBFAB6E35D4FA4DA783FD6305A ] C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
18:24:34.0579 0x099c  C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe - ok
18:24:34.0595 0x099c  [ B6C010F42053ED92E421EE5476E10645, 37B4DFF10DC8B276D979A1D04741A1D564720193E121B1D2A7B68020EF67DE38 ] C:\Windows\SysWOW64\rasadhlp.dll
18:24:34.0595 0x099c  C:\Windows\SysWOW64\rasadhlp.dll - ok
18:24:34.0595 0x099c  [ 83058B0F0CEC63A5A7438818B71C0935, 5D0B59AEEB24DF2755C1B8C23B4EE44130DFED432BD5EB6B2D064110BE3D83C0 ] C:\Windows\SysWOW64\msxml6.dll
18:24:34.0595 0x099c  C:\Windows\SysWOW64\msxml6.dll - ok
18:24:34.0611 0x099c  [ 9D519CCC49EBEF2AB0F3282C097B141B, D1C88FA2DBD3D20C3FA5EB39472F49E5F43F9FC3C6B01B487FD8D31C963F756C ] C:\Windows\SysWOW64\cryptsp.dll
18:24:34.0611 0x099c  C:\Windows\SysWOW64\cryptsp.dll - ok
18:24:34.0611 0x099c  [ EBA5466233255ADAF7D5501F0CC2B9CF, BEF326A2D43B02A712C56F85BCD902E435E44E8C8AFC2BD914064382DEADC992 ] C:\Windows\SysWOW64\rsaenh.dll
18:24:34.0611 0x099c  C:\Windows\SysWOW64\rsaenh.dll - ok
18:24:34.0626 0x099c  [ 9281FA6B56D3B7A64CB140CE310686DE, D0854FA97D8C25A7F1308A7F46CA32BAFDE568C645B99F650E33C74A9888EA19 ] C:\Windows\SysWOW64\bcrypt.dll
18:24:34.0626 0x099c  C:\Windows\SysWOW64\bcrypt.dll - ok
18:24:34.0626 0x099c  [ E372BBF897005442ECEB7843CEB394D2, 25EDE9135ECDBE26E1D07DA1292081532474B743F69E75AC895850A70B78AC58 ] C:\Windows\System32\rasadhlp.dll
18:24:34.0626 0x099c  C:\Windows\System32\rasadhlp.dll - ok
18:24:34.0626 0x099c  [ 4A5D524C19BEB337797D6448020025B4, A0ABC8B0EB677B012880D7BDB4E9F6ECCD500D316715B2818C70D7B47743DE47 ] C:\Windows\System32\localspl.dll
18:24:34.0626 0x099c  C:\Windows\System32\localspl.dll - ok
18:24:34.0642 0x099c  [ 4F1E771801EED912FB37CEB838F8F153, C0868D2CAFB1AEF4342BCE53BC8EAF1DDC629C5AD2BC074D789FC574158306CD ] C:\Windows\System32\PrintIsolationProxy.dll
18:24:34.0642 0x099c  C:\Windows\System32\PrintIsolationProxy.dll - ok
18:24:34.0642 0x099c  [ 024A5FF9EB31F7D1E98E1167D28C6781, ADBE1F8F94774EAF6E64C7AD326B4289564C19C0F2CCCA67B637124E32325FAB ] C:\Windows\System32\spoolss.dll
18:24:34.0642 0x099c  C:\Windows\System32\spoolss.dll - ok
18:24:34.0657 0x099c  [ 7778BE28F1E1BECCE229CF63183F0BBA, 5B23873F53B6134201921DF5956562660B6939660E49CCFB800C2155C8381816 ] C:\Windows\System32\jnwmon.dll
18:24:34.0657 0x099c  C:\Windows\System32\jnwmon.dll - ok
18:24:34.0657 0x099c  [ A14D4FF189D4FFABB2719A774049E8E1, AA5CAEC677E8F53D5B7B1487B84E89E1A111A00165F6D39C88F8421F0ADE91FE ] C:\Windows\System32\EKIJ5000MON.dll
18:24:34.0657 0x099c  C:\Windows\System32\EKIJ5000MON.dll - ok
18:24:34.0673 0x099c  [ 64362206C83D3C300E37267118D5936B, 80EC6B81C52C434A9EAC0EB0AAF7ADB9CC540C62515ABBE65B1DB198A625DA6C ] C:\Windows\System32\FXSMON.dll
18:24:34.0673 0x099c  C:\Windows\System32\FXSMON.dll - ok
18:24:34.0673 0x099c  [ DA947D89F64B72A40F678AAAE76F7564, A52C4EA4A909573C3F0397C10923D16631A8D6B5202F4AA4114B2EB62B35493E ] C:\Windows\System32\tcpmon.dll
18:24:34.0673 0x099c  C:\Windows\System32\tcpmon.dll - ok
18:24:34.0689 0x099c  [ 3B17ED08AD8C86A1C6407CEE7CCF446B, C8785C39399AA883A2507FD6FC4C4B28EEC56A5DCD63F28D8D6C2308079C75FC ] C:\Windows\System32\snmpapi.dll
18:24:34.0689 0x099c  C:\Windows\System32\snmpapi.dll - ok
18:24:34.0689 0x099c  [ 91F658373C97A1A2633690730B05C081, B79B896C364BEE88E84D46B727AB7B16DFEC51FB93252089E3813679836A0947 ] C:\Windows\System32\wsnmp32.dll
18:24:34.0689 0x099c  C:\Windows\System32\wsnmp32.dll - ok
18:24:34.0704 0x099c  [ 53E9614ADFA6A40A452BA014CEF6F261, ADFE56BF01631E531557C6085DC92C17B1F4ED9B8825AB7AF0B0A173EF72EEA6 ] C:\Windows\SysWOW64\urlmon.dll
18:24:34.0704 0x099c  C:\Windows\SysWOW64\urlmon.dll - ok
18:24:34.0704 0x099c  [ 805DF841B1FD6452C62BA1BCF0EE22C9, 6907DB8DF6DBDE95FD738245372F7F467C4EB0CFD1DAB51E228301241E259505 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avipc.dll
18:24:34.0704 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avipc.dll - ok
18:24:34.0720 0x099c  [ F5249BFD1C9D12DECB59A1CBFC2D2F1A, F2A5ADA5958D3F897EB2F16B84162F4E6F901C36F23E02CE52524954B672275F ] C:\Program Files (x86)\Avira\AntiVir Desktop\avlode.dll
18:24:34.0720 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avlode.dll - ok
18:24:34.0720 0x099c  [ 29629208BED94C3E70B0A6C2FAB61A3F, 5EA0B64585E5D86EECA5A1BDDE8D764C22F565DBE941F070C82D85529592AAA5 ] C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
18:24:34.0720 0x099c  C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL - ok
18:24:34.0735 0x099c  [ 0E37FBFA79D349D672456923EC5FBBE3, 8793353461826FBD48F25EA8B835BE204B758CE7510DB2AF631B28850355BD18 ] C:\Windows\SysWOW64\msvcr100.dll
18:24:34.0735 0x099c  C:\Windows\SysWOW64\msvcr100.dll - ok
18:24:34.0735 0x099c  [ E572557FD4CA855642A0B26CC9F3C788, 891D833853FB1CDEB57E6FBDF985360DADC7CB7642AD7A0107C15119CAD40C6E ] C:\Windows\SysWOW64\secur32.dll
18:24:34.0735 0x099c  C:\Windows\SysWOW64\secur32.dll - ok
18:24:34.0751 0x099c  [ D01BA613D268DAD03DD32A0DC5FD24DF, D4EC7E090E7CA98305C794E6CF870BADD239DD367FE201B41A38FCE0BF6AF175 ] C:\Windows\System32\usbmon.dll
18:24:34.0751 0x099c  C:\Windows\System32\usbmon.dll - ok
18:24:34.0751 0x099c  [ E09BF40AA766B183F0F385C96B37D9E5, B86E31C415DC2991860D090101A0084D8A284CF9BB2610AA4E1871E1397EAF74 ] C:\Windows\System32\WSDMon.dll
18:24:34.0751 0x099c  C:\Windows\System32\WSDMon.dll - ok
18:24:34.0751 0x099c  [ 722B1ED8A1C3115E0B215215FB56738D, 8528E7E9BD6A15F15D017DACDB0636A27D52F27AA1806CFFB51A89F6EED792D2 ] C:\Windows\System32\SettingSyncCore.dll
18:24:34.0751 0x099c  C:\Windows\System32\SettingSyncCore.dll - ok
18:24:34.0767 0x099c  [ 0934499394EB3D8027B8AB78C07D56CB, 83D97B1EDD425C391B686141DC3325AB653F4A6DC0F422D1B2BB2F925841507B ] C:\Windows\System32\dllhost.exe
18:24:34.0767 0x099c  C:\Windows\System32\dllhost.exe - ok
18:24:34.0767 0x099c  [ 9F0759C6D691E7030BF33105EDA2C690, 5EDDC4475FFA96287D25D203F7EA45E6D770635C1ED6532D713BD9E6C76F745E ] C:\Windows\System32\CredentialMigrationHandler.dll
18:24:34.0767 0x099c  C:\Windows\System32\CredentialMigrationHandler.dll - ok
18:24:34.0782 0x099c  [ 48F25CC79C6CCFD4B776C8FDA9ED7271, 6D05A934678A8E0862C2F906FC7CAC277F30A0E187319D5D11BDE76B68C8B799 ] C:\Windows\System32\AppxAllUserStore.dll
18:24:34.0782 0x099c  C:\Windows\System32\AppxAllUserStore.dll - ok
18:24:34.0798 0x099c  [ 183360914EFC9D25E2A13D335D5E9EB8, 37A277D69DB0493410B58941D1B9C44B8C6D403AF6F31B2C47E910DF3056EF50 ] C:\Windows\System32\taskeng.exe
18:24:34.0798 0x099c  C:\Windows\System32\taskeng.exe - ok
18:24:34.0798 0x099c  [ 18E5DCAC1AD5C1119014E4CAA21935A4, 5014E14C3951FFE2287BEE66EC3AC39E87322E04C26E010A377FD348F16198D2 ] C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
18:24:34.0798 0x099c  C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe - ok
18:24:34.0814 0x099c  [ 84F20198CAE435DE32ABDB4511550BD7, 89D1F58963BEFE5FE26E03292242F85F7D36731B9A177266B7B036E2C921594B ] C:\Windows\SysWOW64\mscoree.dll
18:24:34.0814 0x099c  C:\Windows\SysWOW64\mscoree.dll - ok
18:24:34.0829 0x099c  [ 494BB20A0251BC1315ED380687EEBAA1, 02A5ABCC313FB23086B9515F429F0CB0237F1C0E0A6094114F73C3800B46C9D8 ] C:\Windows\System32\TSChannel.dll
18:24:34.0829 0x099c  C:\Windows\System32\TSChannel.dll - ok
18:24:34.0829 0x099c  [ 79EA94E7A55E673B1E5202E666B61EC2, EA3842A12007730551C981D8C28149515B23B822697FD883E4387A0CAE1809BB ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
18:24:34.0829 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
18:24:34.0845 0x099c  [ 0DA4B7E7EFB6CC0546FA407DFE8C531D, 560D35A8D1CD6C645B675260267097154FB2E1D42E524B5096A2602657FB065F ] C:\Windows\System32\AtBroker.exe
18:24:34.0845 0x099c  C:\Windows\System32\AtBroker.exe - ok
18:24:34.0845 0x099c  [ E41C0291E2F2FDFBF2875E4473F81031, F0BE14072B7E40ACA27BDFC302C8F99B3ACDD28393339F5B4BA41075B10D6732 ] C:\Windows\System32\mpr.dll
18:24:34.0845 0x099c  C:\Windows\System32\mpr.dll - ok
18:24:34.0861 0x099c  [ 4A1780F986DC1EAE2FADF3219F211C8D, E321CFD28FD347BEF6AC894C92C4DC9B403795F0191D0DD04E3CE423DFD85E70 ] C:\Windows\SysWOW64\sxs.dll
18:24:34.0861 0x099c  C:\Windows\SysWOW64\sxs.dll - ok
18:24:34.0861 0x099c  [ 08C191B2917862BE90C33E31CB6B6D79, E8CC905FA3CF0D1A7BB631963BF7B7CCE1D4B52B8358CB76DDDBB2D442189A0B ] C:\Windows\System32\userinit.exe
18:24:34.0861 0x099c  C:\Windows\System32\userinit.exe - ok
18:24:34.0876 0x099c  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:24:34.0876 0x099c  C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
18:24:34.0876 0x099c  [ D8EB154CC954E526970E7C56B724E659, A83E896C33FE43C24E0B077B8ED2CB86C90FF5E02BDE6CB5A588B9D6C071CA55 ] C:\Windows\System32\userinitext.dll
18:24:34.0876 0x099c  C:\Windows\System32\userinitext.dll - ok
18:24:34.0892 0x099c  [ C10A66189DC8C090E7C84873EDCEBC88, F041885C93C2F00F9B6A9C7E5F4510D019801872A40BFC9A8D8CB6CA6A1C0F99 ] C:\Windows\explorer.exe
18:24:34.0892 0x099c  C:\Windows\explorer.exe - ok
18:24:34.0892 0x099c  [ 4CFE6EEB44D35C7B16693A97FBC9F368, 9FF8F7D81A6C2A25035E19DCCEF86972774187ED4EA774B9BDA709B02ADF6596 ] C:\Program Files (x86)\Google\Update\1.3.27.5\goopdate.dll
18:24:34.0892 0x099c  C:\Program Files (x86)\Google\Update\1.3.27.5\goopdate.dll - ok
18:24:34.0907 0x099c  [ 1922AAE64BCD761A0377F6981FC67736, 67BEA62D5D2266E7447C9258B2AE468C25CE309459CA4037C542EA4DF46D392F ] C:\Windows\System32\twinapi.dll
18:24:34.0907 0x099c  C:\Windows\System32\twinapi.dll - ok
18:24:34.0907 0x099c  [ A5BD16CF06D4ECB6445BFCAC9C0A366F, 07283D52AE5FB402A0155DCAD2141180D55C840F4E872C03F9F13EA66BADD719 ] C:\Windows\SysWOW64\netapi32.dll
18:24:34.0907 0x099c  C:\Windows\SysWOW64\netapi32.dll - ok
18:24:34.0923 0x099c  [ A15811EF4A3D20F6C7D67C4673014E18, 4C66F272BABD9369930796ABA1A680BA5D6EBFAD17360F7D09E0CC8037EF1B8A ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
18:24:34.0923 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll - ok
18:24:34.0923 0x099c  [ A0A637D3892904FABB99666E911307A9, 70CEF7DFEF4059E729F1909B81A1934106ED8BF04260FEC84476D8A7F9FC8173 ] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0\comctl32.dll
18:24:34.0923 0x099c  C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0\comctl32.dll - ok
18:24:34.0939 0x099c  [ 46FBD043A1688EFD6AC1395EE886AD33, 2338A40D2E260BF9B6795F58A75D81C70BFB5B3FC4C389770C240FEE0F27EE7A ] C:\Windows\SysWOW64\msi.dll
18:24:34.0939 0x099c  C:\Windows\SysWOW64\msi.dll - ok
18:24:34.0939 0x099c  [ 4C48253C6A21CCEBA071B58A5CDF17C1, 8FDE687199C82B1D41B0EA5423B295BCCDF603FDA1BF11FC737F77C93ADD738E ] C:\Windows\SysWOW64\msvcr120_clr0400.dll
18:24:34.0939 0x099c  C:\Windows\SysWOW64\msvcr120_clr0400.dll - ok
18:24:34.0954 0x099c  [ 93664065662467289E77F0982FA61D37, 8FC996A36B25988BE2773E3F3850B89415A49123E131BA8485536D44EC542ECA ] C:\Windows\System32\WSDApi.dll
18:24:34.0954 0x099c  C:\Windows\System32\WSDApi.dll - ok
18:24:34.0954 0x099c  [ 43C917A76F30F8A6AE522BAC0D48695E, 36AF06FD4CD24EDFB18C4E0A7CE38F5C61531C2591C462CAF65BC8E7F015A5CE ] C:\Program Files (x86)\Avira\AntiVir Desktop\apcfile.dll
18:24:34.0954 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\apcfile.dll - ok
18:24:34.0970 0x099c  [ 3D7B4D033FE80A86B1FC530A03A53754, F926597A11B05948282008F5A3CB959BD40C187700BE6D9B241B9334319A4274 ] C:\Windows\SysWOW64\msimg32.dll
18:24:34.0970 0x099c  C:\Windows\SysWOW64\msimg32.dll - ok
18:24:34.0970 0x099c  [ 516E29AD03BDF610CC36A95AE692FE42, 09F913B169AD775FF587AE59AEC5DD2A2D8646803F48BF616C74EEC0DE3BE7A2 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
18:24:34.0970 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe - ok
18:24:34.0986 0x099c  [ 2A857CCAFE18B1D396484AC9CC0B9B80, 8FA28E3ED2B6571E40B9471DAA45F6A530FE4B644A08DC49847AE66FC77449A4 ] C:\Windows\System32\mscoree.dll
18:24:34.0986 0x099c  C:\Windows\System32\mscoree.dll - ok
18:24:34.0986 0x099c  [ 32AD6B4D813643E339EB8EA7AB18670B, 4A97F2E303ED16AED9EBB948DC76562558292B1DC934664C7406D1E066FA34D3 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
18:24:34.0986 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
18:24:35.0001 0x099c  [ 2716EEC7A0B6016F11B0A0F8B423DBBE, C3A96C1C6DC9B98E84AF6F5173F6041FF4C6B6BDD775C011D8567E67CAE4328F ] C:\Windows\SysWOW64\uxtheme.dll
18:24:35.0001 0x099c  C:\Windows\SysWOW64\uxtheme.dll - ok
18:24:35.0001 0x099c  [ F0D53BA526018350E227F6E3E80C3966, B070DEEF36B23A33142F7991B1F8655F61CD7761AE991F809B006FA50C519BDC ] C:\Windows\System32\webservices.dll
18:24:35.0001 0x099c  C:\Windows\System32\webservices.dll - ok
18:24:35.0017 0x099c  [ DD27F578B2F33DD96B068C97526B96A1, 9FA784E1FC4D0AEF727F766E5E95DD31FD4E183F04F2BCFF171F37568516ECAD ] C:\Program Files (x86)\Avira\AntiVir Desktop\libcurl.dll
18:24:35.0017 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\libcurl.dll - ok
18:24:35.0017 0x099c  [ CDB670616597139259DEC5F2C562A54D, E83C2A974B43684CB297F966172FAA8C8FD110703F06BBB3E13853F03821EB42 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
18:24:35.0017 0x099c  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok
18:24:35.0032 0x099c  [ 22C7BD320A5C2AE3AE24C529768702F9, EA2C694C9B4D3C28A7BBDAF7016804BD961A36CAEDCDE7882283BD0E268D7F2C ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamsrv.dll
18:24:35.0032 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamsrv.dll - ok
18:24:35.0032 0x099c  [ 0E9317A95DD3E678AFCD457DAAD01DA5, E5790F6E2F526CE67C4DEE6277AEF29AD71ACC6C75FC865F96C9E9A86E693D0E ] C:\Windows\SysWOW64\netutils.dll
18:24:35.0032 0x099c  C:\Windows\SysWOW64\netutils.dll - ok
18:24:35.0048 0x099c  [ 522BF7088E69948A20DD5C89D359B2C4, 20949159376225C7DB8B4CBBA1F0C06113E2DED7369B59329AF00D3295BC627B ] C:\Windows\SysWOW64\srvcli.dll
18:24:35.0048 0x099c  C:\Windows\SysWOW64\srvcli.dll - ok
18:24:35.0048 0x099c  [ 46DAF6EFC4D7E1C8AC9E0179EFB4B3A9, 13FA959D4D82336A22A118EFC6B59E4F64B90AF0FDEB7FD10ACF0C2556AB4D44 ] C:\Windows\SysWOW64\wkscli.dll
18:24:35.0048 0x099c  C:\Windows\SysWOW64\wkscli.dll - ok
18:24:35.0048 0x099c  [ B801371569B9E310BBD068E21D486F1A, 9A98B5ABD1918BE548A4239B4C25C1604FDAE85D865DBE16F2E415399A09707D ] C:\Windows\System32\fundisc.dll
18:24:35.0048 0x099c  C:\Windows\System32\fundisc.dll - ok
18:24:35.0064 0x099c  [ 0E28DA18EF14D77E236B4BD0E111BEC8, F07578D47952323D7C8C7AE4CA156983744B9FFD99191AD2C433B1B1DA104FCD ] C:\Windows\SysWOW64\activeds.dll
18:24:35.0064 0x099c  C:\Windows\SysWOW64\activeds.dll - ok
18:24:35.0064 0x099c  [ 1D8303D3ED5F8C403984A8820E5E599A, EC63C7C6B7C07D088DE336C6148D2CEE9B130000286DA0E4C1970F9385FD72EF ] C:\Windows\System32\taskhostex.exe
18:24:35.0064 0x099c  C:\Windows\System32\taskhostex.exe - ok
18:24:35.0079 0x099c  [ 6C7733F91E5BADA6094CB8E9507BC3EF, B0E56D1727DEC52CE185F7B08157636D0917658CE7CB3821C20DE1E713ECBD4B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d03a3ddcd6a395878751c5e90fa16915\mscorlib.ni.dll
18:24:35.0079 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d03a3ddcd6a395878751c5e90fa16915\mscorlib.ni.dll - ok
18:24:35.0079 0x099c  [ 16BF6ADAED1427A7AF08125DD14BA52C, BE50645151FB85FA044FF29A23ADA5E46001A42ACD0BF204B9AE377CC78AD5DB ] C:\Windows\System32\fdPnp.dll
18:24:35.0079 0x099c  C:\Windows\System32\fdPnp.dll - ok
18:24:35.0095 0x099c  [ 2C4965FA375C7C2C1FBD18EFD75F61CF, 5E9870E2034272F0CA7661DA6AD49D90E5D62F5DF5AF1B873342DA65DE193630 ] C:\Windows\SysWOW64\cscapi.dll
18:24:35.0095 0x099c  C:\Windows\SysWOW64\cscapi.dll - ok
18:24:35.0095 0x099c  [ 5BB1F77C8AF725A15EC9366498D275BB, 87146A81FB6F313ACF087C72F219CFAA92D4CA456810C49241BD182384B2DAAC ] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
18:24:35.0095 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe - ok
18:24:35.0111 0x099c  [ 521ED020A6708FECA2473AF00B73FC4D, 83BAB477E38AF04EBA694B84A27C8BF914294F55B7596FBF13E6F47E68077B08 ] C:\Windows\System32\dimsjob.dll
18:24:35.0111 0x099c  C:\Windows\System32\dimsjob.dll - ok
18:24:35.0111 0x099c  [ 5CEC21295040B8FA8F26CB07D650954D, 549240C2308AFDB19561940EC3B7DC98AEF39F6655DAB8D541B2A0D4C508E70D ] C:\Windows\System32\netprofm.dll
18:24:35.0111 0x099c  C:\Windows\System32\netprofm.dll - ok
18:24:35.0111 0x099c  [ EF4C4EA376D172D966AB31388B3B63B6, FF07C7B6CA66200A20D28668E4E9B401936EAB7F9A4FBD9F90BBA3D49E19AD77 ] C:\Windows\System32\drvstore.dll
18:24:35.0111 0x099c  C:\Windows\System32\drvstore.dll - ok
18:24:35.0126 0x099c  [ 5E536FD2C9EBFB9388DD76BCC56C7232, BE0116CF45D5FE09219E6F8B4AA43EDFB717B2B323BC1ED8794DD2307D8FC3FA ] C:\Windows\System32\MsCtfMonitor.dll
18:24:35.0126 0x099c  C:\Windows\System32\MsCtfMonitor.dll - ok
18:24:35.0126 0x099c  [ 9729D3F9896B6F309DC50CE3769AC9C1, CA8BF2ADC0FFC87A1B3C5958D762010D308DC998C8727B963431FD2A6D07549A ] C:\Windows\System32\msutb.dll
18:24:35.0126 0x099c  C:\Windows\System32\msutb.dll - ok
18:24:35.0142 0x099c  [ 82857D6D647C6A59DD8DE8429228EF9B, 88AC6878D88BD18A64208822771BA70AAD184D5DF5B5AA9ED81E98288CC91DAB ] C:\Program Files (x86)\Avira\AntiVir Desktop\libeay32.dll
18:24:35.0142 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\libeay32.dll - ok
18:24:35.0142 0x099c  [ 91F27BC87BEB6DFDC709FF484F64F1D4, F4D1AE178C714CA454D9447113D707AADA9E3AE3236955EE3171D071FC98F1F3 ] C:\Windows\System32\PlaySndSrv.dll
18:24:35.0142 0x099c  C:\Windows\System32\PlaySndSrv.dll - ok
18:24:35.0157 0x099c  [ 3318BEEE9EC022D8D721C00488BB8971, F46A62BC8B0B799E563DF1A21C07A8EAAB28A7BF20740DB8296EF6FFC518284E ] C:\Program Files\Microsoft Office\Office15\msoia.exe
18:24:35.0157 0x099c  C:\Program Files\Microsoft Office\Office15\msoia.exe - ok
18:24:35.0157 0x099c  [ CBCA90CF2ACE96038571ED0A7BD3D756, EF9031E493E9E1B4FBD556DA0FB2F0E89313CB8853F379AA277EE3519DED7D64 ] C:\Windows\System32\esent.dll
18:24:35.0157 0x099c  C:\Windows\System32\esent.dll - ok
18:24:35.0173 0x099c  [ 748E3E2291DB16B4D1167D4AD5AD9AFC, 8226E1C141D8496441944B58E1217AB207F18D92037855698108D26B69A171EB ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
18:24:35.0173 0x099c  C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
18:24:35.0173 0x099c  [ 3D3AEE5BB37B124BC4A75D4289C3F0D5, 81FC9DC1B7DC5896E4788F69410B8D71FDBC0D8A5500E7EC55DF5603CB44C7BE ] C:\Windows\System32\spool\prtprocs\x64\jnwppr.dll
18:24:35.0173 0x099c  C:\Windows\System32\spool\prtprocs\x64\jnwppr.dll - ok
18:24:35.0189 0x099c  [ A6307861451FC3B51D0C867466BDD76D, E3C1B4AB1CCA299ACDFE7235C7927FAF3D1E01A9ECA924556E364F84A78A03F4 ] C:\Windows\System32\spool\prtprocs\x64\EKIJ5000PPR.dll
18:24:35.0189 0x099c  C:\Windows\System32\spool\prtprocs\x64\EKIJ5000PPR.dll - ok
18:24:35.0189 0x099c  [ AF21FBB2E2F88EB29CC23BCA825642FA, 794243BF93693F7F567C6835666CAFD284DC9E1ABF36377F22CE15194A6B05E5 ] C:\Program Files (x86)\Avira\AntiVir Desktop\libaprutil-1.dll
18:24:35.0189 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\libaprutil-1.dll - ok
18:24:35.0204 0x099c  [ E9286577AD0D3BE9158DCE178A879123, 5B404587CE415CF47A4ABC219FB2376002C6BFFAB6C010FC8DD1FA9DE815F6AC ] C:\Windows\System32\devrtl.dll
18:24:35.0204 0x099c  C:\Windows\System32\devrtl.dll - ok
18:24:35.0204 0x099c  [ F5BECD89B78BE45F29B44068A895BA70, 615EB925284527C1591A3683844421DBE381DF2D49CF3540B217D221F04DE913 ] C:\Program Files (x86)\Avira\AntiVir Desktop\libapr-1.dll
18:24:35.0204 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\libapr-1.dll - ok
18:24:35.0220 0x099c  [ 83C628FB6B293D61F7BFBBC3D8F88AC9, 9A6B940FE9F5BA0ABA86754F20F2C3642FCA1870B18D8787CA4BDB07C3F02A7E ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \msvcp100.dll
18:24:35.0220 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \msvcp100.dll - ok
18:24:35.0220 0x099c  [ 366FD6F3A451351B5DF2D7C4ECF4C73A, AE3CB6C6AFBA9A4AA5C85F66023C35338CA579B30326DD02918F9D55259503D5 ] C:\Windows\System32\msvcr100.dll
18:24:35.0220 0x099c  C:\Windows\System32\msvcr100.dll - ok
18:24:35.0236 0x099c  [ BFC6F7889A9CFF451A418862444B9F63, DB73BF29472F07B4C3FBFC5BAA54C566A1EF90D5DF059640C78F9E41164F406A ] C:\Windows\SysWOW64\Wldap32.dll
18:24:35.0236 0x099c  C:\Windows\SysWOW64\Wldap32.dll - ok
18:24:35.0236 0x099c  [ 7F586D08E965FA00EE085319EF5BBAF1, EF62611017954242AD14D072E65A08CF52675C36859EA61897E5D78B46070866 ] C:\Windows\System32\win32spl.dll
18:24:35.0236 0x099c  C:\Windows\System32\win32spl.dll - ok
18:24:35.0251 0x099c  [ 4B76E621AFB97D0441F36978611A961C, 620C211E83325C609961413815BF301C10A3C00C57B7FA9E34A103CA1EE25EF1 ] C:\Windows\SysWOW64\apphelp.dll
18:24:35.0251 0x099c  C:\Windows\SysWOW64\apphelp.dll - ok
18:24:35.0251 0x099c  [ 976E5990A4B7B39C7C0980A3430180C2, FE100CC762A9952394D2AA530EFE63B68848A98524B7F1081AC1FC05BB058021 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ssleay32.dll
18:24:35.0251 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ssleay32.dll - ok
18:24:35.0267 0x099c  [ 8A073508726DE4A69ED702A7A6082808, 751F1333E38AD8351D811708748C93BA0E98E20FA39DFEBAF1DE026E00A2ACC5 ] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.17227_none_dad9452e5bcb7986\GdiPlus.dll
18:24:35.0267 0x099c  C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.17227_none_dad9452e5bcb7986\GdiPlus.dll - ok
18:24:35.0267 0x099c  [ E8115316A914DA20529E984F0C52828D, 4E2AC5EA8FD6E7E6607C13EA3598B136C6765BEEC9120872E93A18F28B65A61A ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \msvcr100.dll
18:24:35.0267 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \msvcr100.dll - ok
18:24:35.0282 0x099c  [ D2D08C4A5EAFE12CEF7D48BC5A3CCED5, 276BB4F7E61C09EEA128B9A1E42FFDA5193C549E49C630E45A5581FD43814F25 ] C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.8428_none_88dcdb0b2fb19957\msvcr80.dll
18:24:35.0282 0x099c  C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.8428_none_88dcdb0b2fb19957\msvcr80.dll - ok
18:24:35.0282 0x099c  [ D029339C0F59CF662094EDDF8C42B2B5, 934D882EFD3C0F3F1EFBC238EF87708F3879F5BB456D30AF62F3368D58B6AA4C ] C:\Windows\System32\msvcp100.dll
18:24:35.0282 0x099c  C:\Windows\System32\msvcp100.dll - ok
18:24:35.0298 0x099c  [ 131216B7B74DEC3CF30689AA0C2D89C1, 544D90AF85A6909A07C477F0B7F9EBFE3A7265FD6A136FD2F500D15EF54DC8D2 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
18:24:35.0298 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe - ok
18:24:35.0314 0x099c  [ F8E05DC5365F07D0337EF56BE17B3E04, F3DB3D20862DABE059A468FC9E6CFD546EA7C20F0FC64965444F563F2DCB267A ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtCore4.dll
18:24:35.0314 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtCore4.dll - ok
18:24:35.0314 0x099c  [ BE0FC6BFE7181F8621B2BD572658A83E, 919CEE8976A2D04A48F2BBE6178683C92F6B787E0BD5E8511596186B21A22D96 ] C:\Windows\System32\inetpp.dll
18:24:35.0314 0x099c  C:\Windows\System32\inetpp.dll - ok
18:24:35.0329 0x099c  [ 25E3826F8A5CB3E8E95926AD271ED365, 954FE1DFEEA8EB37AA2B99295F262304E45EF41250669A29E4DF08DA544328BE ] C:\Windows\SysWOW64\adsldpc.dll
18:24:35.0329 0x099c  C:\Windows\SysWOW64\adsldpc.dll - ok
18:24:35.0329 0x099c  [ 62969A88DE12FD62D59A6C7821A929BC, 47B49F37B11DAB2E686DC47616623D2332F6F889529820DA82CB6DC67B81884E ] C:\Windows\SysWOW64\imm32.dll
18:24:35.0329 0x099c  C:\Windows\SysWOW64\imm32.dll - ok
18:24:35.0345 0x099c  [ 5BD6BE549A4C267D69E86160E3100C14, B47626A7F92B553A1C1718E86887162E2D0638D8129EADABECF1F7FC7AB35511 ] C:\Windows\SysWOW64\msctf.dll
18:24:35.0345 0x099c  C:\Windows\SysWOW64\msctf.dll - ok
18:24:35.0345 0x099c  [ 8715A0D10CFFC8DEE923957F07DAA042, 90E4352F8A248FA64EA71B8AB07141142B809B384E9F7D1CB7C3DFBF4003BFAE ] C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
18:24:35.0345 0x099c  C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe - ok
18:24:35.0361 0x099c  [ 21A13082B44A898B8DCC54972B2B5C31, 6D2018BCA2BF774D4D82E8AC9E6AF7579F1377266753459A45BBE5DD10BEB20D ] C:\Windows\SysWOW64\winmm.dll
18:24:35.0361 0x099c  C:\Windows\SysWOW64\winmm.dll - ok
18:24:35.0361 0x099c  [ AB8DC63BB90A2A3DE13B38D8B64B4DC6, A6B9F9BD48C0EFFDB93C66F5C33607BCB32ABC1B36D183B1EF62FB9451E64585 ] C:\Windows\System32\cscapi.dll
18:24:35.0361 0x099c  C:\Windows\System32\cscapi.dll - ok
18:24:35.0376 0x099c  [ 19C5844B56BCA187625D2CFA9A7C1144, E900740A3B629B8C3B53B2FD1632DB8D1C6875DF24331A91EEA963F8D945D120 ] C:\Windows\SysWOW64\winmmbase.dll
18:24:35.0376 0x099c  C:\Windows\SysWOW64\winmmbase.dll - ok
18:24:35.0376 0x099c  [ AF033A6377288725830CF3CCD3C12773, C13190832847EF52B0C128DCB29459B00B69B3A9E6DB946A8D3D02B7242FAA93 ] C:\Windows\System32\bidispl.dll
18:24:35.0376 0x099c  C:\Windows\System32\bidispl.dll - ok
18:24:35.0392 0x099c  [ A793BE530305DE259605814179079E2A, D2C5AF153C490C6EC84F56E38FADEE88B89D29B8322DCE33A42B2ABCFA993487 ] C:\Windows\System32\spool\drivers\x64\3\UNIDRVUI.dll
18:24:35.0392 0x099c  C:\Windows\System32\spool\drivers\x64\3\UNIDRVUI.dll - ok
18:24:35.0392 0x099c  [ EACF0FEB2E38F0F790D73D08826B6567, 150F0DE074DF066A59CEA55CE4549FC6BAF9E2CDDE3C8795937A082CEC07642D ] C:\Program Files (x86)\Avira\AntiVir Desktop\libapriconv-1.dll
18:24:35.0392 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\libapriconv-1.dll - ok
18:24:35.0407 0x099c  [ 2A2104AF3487D47A8B577A9BE0665D33, F314B3ED065D3D12742D638F8AD8C0199AE470F5BEA2CF131A0E7D157C6CB83A ] C:\Windows\SysWOW64\logoncli.dll
18:24:35.0407 0x099c  C:\Windows\SysWOW64\logoncli.dll - ok
18:24:35.0407 0x099c  [ 2F6410A7641BE1196DC423025F208285, D1A31A5EC5FD3B4F26471E5DD17CE9386A7A23ECB8A57901B1DE11CF7998727C ] C:\Windows\SysWOW64\dwmapi.dll
18:24:35.0407 0x099c  C:\Windows\SysWOW64\dwmapi.dll - ok
18:24:35.0407 0x099c  [ 7BB5166433C5319CED9E8D05A0C5F7E8, 5D6B2EFA7A06D08A2024BD55D65EECC37A3547DFC293BBA86838A5CBC9EE6B34 ] C:\Windows\SysWOW64\wlanapi.dll
18:24:35.0407 0x099c  C:\Windows\SysWOW64\wlanapi.dll - ok
18:24:35.0423 0x099c  [ 8245D8290D263BB655E15C5FEFE8B8A8, 536D94DED5328BAD1DF33BED09527FAB60F5AE5F5C28D3C1BD53EF995A832485 ] C:\Windows\SysWOW64\browcli.dll
18:24:35.0423 0x099c  C:\Windows\SysWOW64\browcli.dll - ok
18:24:35.0423 0x099c  [ A76A00A5244DA1CE40DE8BFBAD1E2C4E, F5035080E7629D0A0568F4F36F171D548331B99415A8EDC925FFE9401FB0D864 ] C:\Windows\SysWOW64\samcli.dll
18:24:35.0423 0x099c  C:\Windows\SysWOW64\samcli.dll - ok
18:24:35.0439 0x099c  [ FD2667591DEA9349694A2210A7DCA93D, 8BAAC46CE1954B0FDA634D631536EC974049459CB05EF638540FC41E49F0762A ] C:\Program Files (x86)\Avira\AntiVir Desktop\aecore.dll
18:24:35.0439 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aecore.dll - ok
18:24:35.0439 0x099c  [ 7EC611582CF2124499A28946AEEBC3B4, C4B1837A67C9217822588AA43ADA21B98267DDB16B63C69980CB681FF2AD14AE ] C:\Windows\SysWOW64\MMDevAPI.dll
18:24:35.0439 0x099c  C:\Windows\SysWOW64\MMDevAPI.dll - ok
18:24:35.0454 0x099c  [ 408938F3296261B3D11C0851322DCF58, F0776C565D0AAEF5A89907443C8FA365A3284975132C46D2674E14EBB6C8AF44 ] C:\Windows\System32\spool\drivers\x64\3\EKIJ5000UIP.dll
18:24:35.0454 0x099c  C:\Windows\System32\spool\drivers\x64\3\EKIJ5000UIP.dll - ok
18:24:35.0454 0x099c  [ FCA25104E526B1783F0366FF3B4E4445, 1156027076B432F8BE84D56A2739DC4957837F10E8756B2D37BE5EF870430BE4 ] C:\Windows\SysWOW64\FirewallAPI.dll
18:24:35.0454 0x099c  C:\Windows\SysWOW64\FirewallAPI.dll - ok
18:24:35.0470 0x099c  [ B5867FF96CD0F7712CB4985EAC9F9147, 9AF0C8E6D4D1C36C35004ED980A62EAF2265DDAEAE6D0BE0DABE1396014842F3 ] C:\Windows\SysWOW64\AudioSes.dll
18:24:35.0470 0x099c  C:\Windows\SysWOW64\AudioSes.dll - ok
18:24:35.0470 0x099c  [ AE80657661F164C09D802B339539DDC2, 1973B60640DBF0340626A877A8963FBC9F9882A0A7A84DC743A535E9D679F0FE ] C:\Program Files (x86)\Avira\AntiVir Desktop\aebb.dll
18:24:35.0470 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aebb.dll - ok
18:24:35.0486 0x099c  [ 5CA23CA8BB4535BF845B7F7962F00207, CC528451A55BE5C6046396F9E2EA6F3132AA03EC0691BA23505FEADEAF6F78AB ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Automation.dll
18:24:35.0486 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Automation.dll - ok
18:24:35.0486 0x099c  [ 9DF4C369F556A4FBAE7E1D86F1AA5593, 135BE3954165987D3D4A132513480C26F1A787368D7BB208E9A374811A5083D7 ] C:\Windows\System32\compstui.dll
18:24:35.0486 0x099c  C:\Windows\System32\compstui.dll - ok
18:24:35.0501 0x099c  [ AA195EEF529D57407B4E75D0ADF2CEF1, C88B7C4B1747AABE0842471F4C8026718CE92AE7B0ACFF0760C2C948B9025DCA ] C:\Windows\SysWOW64\powrprof.dll
18:24:35.0501 0x099c  C:\Windows\SysWOW64\powrprof.dll - ok
18:24:35.0501 0x099c  [ 7D68C55BDCA385CAD39334267FA83B12, B5A95D042C86ADAC393B07CEB8B8B7D23D13357902E75FEE0E2A934F98533547 ] C:\Windows\System32\tcpmib.dll
18:24:35.0501 0x099c  C:\Windows\System32\tcpmib.dll - ok
18:24:35.0517 0x099c  [ FE44167C2EF9728D0465EB17EC066A39, D5D3B5BF0EBF3AB0144EF0DFA8CFCC16FE06924E500B0E620F991D7991FE44AD ] C:\Windows\System32\mgmtapi.dll
18:24:35.0517 0x099c  C:\Windows\System32\mgmtapi.dll - ok
18:24:35.0517 0x099c  [ 6627B4111F4A54795958771973FEDD7F, E5EEF8BAACB7726E86FE3E918307DB19C5E82461438555E4711767055BBA7632 ] C:\Windows\SysWOW64\wbem\wbemprox.dll
18:24:35.0517 0x099c  C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
18:24:35.0532 0x099c  [ 213763029E9226ADBF2F574CAAE39380, 520D00958DE4D2F0F073860689DA60C2A91FB19CB78CBD356E83C86A03EA0578 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\6227ee011c9930128c5ad76841ecf2ee\mscorlib.ni.dll
18:24:35.0532 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\6227ee011c9930128c5ad76841ecf2ee\mscorlib.ni.dll - ok
18:24:35.0532 0x099c  [ 20CF6C36949E73BE4462F09E1CAA1951, 39F12C70D3AC3B411CA7AB7C5D6073011C98C321B427FC63EF1D74992FE168DB ] C:\Windows\SysWOW64\wbemcomn.dll
18:24:35.0532 0x099c  C:\Windows\SysWOW64\wbemcomn.dll - ok
18:24:35.0548 0x099c  [ 47307C50073245482B45CA2A53599395, 6195EFA63C881D7F1B340ACD3784DBA4D5F7378F8FA5265AB71B19D95C2BAC23 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aedroid.dll
18:24:35.0548 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aedroid.dll - ok
18:24:35.0548 0x099c  [ 6509A96DAE25340772B51AC020CB1094, 8B20005C4DA2C385F4AA499B21A7A78569F69B69B067E8E2D4D463425BDE8422 ] C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
18:24:35.0548 0x099c  C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe - ok
18:24:35.0564 0x099c  [ 76E5BF8C3DAD02DC942CF625C5434190, F40D0087C99F49ECF40ACD6D74308B7999780EB4A6F966317C9351F4E4ACEA54 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeemu.dll
18:24:35.0564 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aeemu.dll - ok
18:24:35.0564 0x099c  [ 7AF1074DAB6D56D0A575F507B6AC266E, FAC5F0F88D4EE13505E04B2DF6EB01212ADEFA72637F54CE36DFF62473718B36 ] C:\Windows\SysWOW64\mstask.dll
18:24:35.0564 0x099c  C:\Windows\SysWOW64\mstask.dll - ok
18:24:35.0564 0x099c  [ 996300A891F8309FCB650E9B4DBE161B, BFA2C08F512682D07657B8A24FAECC1ABD439AD61BA9D1846C86774517FF2DA6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System\1a6b5095c4416a37f9ca4cf4436d1311\System.ni.dll
18:24:35.0564 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System\1a6b5095c4416a37f9ca4cf4436d1311\System.ni.dll - ok
18:24:35.0579 0x099c  [ 1CD6BA4193541B01028020F2888AE64C, 8DAE479C9A844AAE7C07D2220A3CE633FCA700CEDFF4FB8169C49CA256FDEEFE ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeexp.dll
18:24:35.0579 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aeexp.dll - ok
18:24:35.0579 0x099c  [ C7DFBE21051D5E44B479CBF74B968335, BF0759D9DF2DB1A7F8C39FCD8BB3BF742259B8CC47BA02F5214F4B44477FDCDC ] C:\Windows\System32\dbghelp.dll
18:24:35.0579 0x099c  C:\Windows\System32\dbghelp.dll - ok
18:24:35.0595 0x099c  [ 609461D137A8741DA19FFF876B08DA14, 53F6BD0C2391D823EAC9E4D409149916AC68CEEF4D32AF13D31759DB111804EE ] C:\Program Files (x86)\Avira\AntiVir Desktop\aegen.dll
18:24:35.0595 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aegen.dll - ok
18:24:35.0595 0x099c  [ 701B69E53530D7D634532EFD582FD3E4, 99B0915D00DEBFB40D2B1B0B597FF07E66763F73E30B555B73338B17F7410058 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aehelp.dll
18:24:35.0595 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aehelp.dll - ok
18:24:35.0611 0x099c  [ DBA00F3FC75495058A25B24906C24599, CC6CD190376BAB643D8C7C8B7C774DB0882198CCE8440D01C4AB2258B7F8AA35 ] C:\Windows\SysWOW64\propsys.dll
18:24:35.0611 0x099c  C:\Windows\SysWOW64\propsys.dll - ok
18:24:35.0611 0x099c  [ 5ABBCC9D86D964841479620265781556, EAE6A31DD20EE06246271E4C7C88E396AB03916BDC1B84A3F4281F33C6E51783 ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Statistics.dll
18:24:35.0611 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Statistics.dll - ok
18:24:35.0626 0x099c  [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
18:24:35.0626 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe - ok
18:24:35.0626 0x099c  [ CC8E69588111D14CBBF36C200C59E698, B53B3DCA6468A950077A65BBECC312B9561C81C1377B0FA44C85C4C18A552FAF ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Hardware.dll
18:24:35.0626 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Hardware.dll - ok
18:24:35.0626 0x099c  [ A6D86F1756AB48AB38C644A3F229D7D4, 48B07F7B5D9FF09B2C88D23B5BFCB6A9464751DA83E7E5B2A46ABADFC5B8D3D9 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll
18:24:35.0626 0x099c  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll - ok
18:24:35.0642 0x099c  [ 79F1A306B8F247261DF16444069BAC8C, 30D8FC6CF95EE9B4B9EDC9406A320C723A2A76EED09947DF6760ECE9E9B912B2 ] C:\Program Files (x86)\Kodak\AiO\Center\jabber-net.dll
18:24:35.0642 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\jabber-net.dll - ok
18:24:35.0642 0x099c  [ 9B870FE04BDF7DDF7DD736DE738038FB, 6733B80B760ADBBE7C5C2BA6801646268B3D4FC5B0E144F199D26D6C317E7C5D ] C:\Windows\System32\riched20.dll
18:24:35.0642 0x099c  C:\Windows\System32\riched20.dll - ok
18:24:35.0657 0x099c  [ 0320929A497A57A243ED157BA082896D, 8454D4EFA24D042A11550B2C6424B4F845D8167C86FBFF1BE411BF4F47C3410C ] C:\Windows\SysWOW64\pcacli.dll
18:24:35.0657 0x099c  C:\Windows\SysWOW64\pcacli.dll - ok
18:24:35.0657 0x099c  [ EB5BB44DBA9F55DB59076E58F6E42C03, DB19B33CC13427CB915BBB1C9AC564AD91A8663AAB4CC64168DA40FAB0711817 ] C:\Windows\SysWOW64\sfc_os.dll
18:24:35.0657 0x099c  C:\Windows\SysWOW64\sfc_os.dll - ok
18:24:35.0673 0x099c  [ 5295EBB03544AB98C5E971C6795C25C6, B3392523A65EED1E56041C92C4B026E295DB1E9DAD6179ABAC48F80CA1B8589F ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccuac.exe
18:24:35.0673 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccuac.exe - ok
18:24:35.0673 0x099c  [ B88E2CFB8D10FB189762D0AC99382AC5, 8A586D88ED2119B0A8D6E7EFCFAF3DA9FC5BEA79D20BA897B6343A1F5B6338DC ] C:\Windows\System32\usp10.dll
18:24:35.0673 0x099c  C:\Windows\System32\usp10.dll - ok
18:24:35.0673 0x099c  [ 8B953F6BB07E73EC42D06EC605A6472F, 1C2D91E4191DE43D57B54408B78CD2A7B6FF048147CBCD062FAB22E8B350BA7C ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwkrlib.dll
18:24:35.0673 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwkrlib.dll - ok
18:24:35.0689 0x099c  [ 043835A4A31239FE57B891EC960E6075, C8FB0A023F368BCB1C922913B8C5A6BB56A5F65F4881612D724A23490C59ECA7 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamcore.dll
18:24:35.0689 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamcore.dll - ok
18:24:35.0689 0x099c  [ 1DD757BFB4DB59B5E48E204F636F6777, 6D5C77BB793A2BC4E3A405B78D8635F767A80E730A73B61215CD987DB10BF922 ] C:\Windows\System32\msls31.dll
18:24:35.0689 0x099c  C:\Windows\System32\msls31.dll - ok
18:24:35.0704 0x099c  [ 80E77F44381D53AE995B703A3C845140, 09F4C3FA1D6B4129FFFF2B6B7200A91F0F5FC4436D945605AF0F5F1F588BA7E1 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeheur.dll
18:24:35.0704 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aeheur.dll - ok
18:24:35.0704 0x099c  [ 5AA28997F6A30EB196A5AB09F684B7BE, E05770774B05836B2EF59A5B2089256268CCB53B41ADC6F3EB3985AC96194F4B ] C:\Windows\SysWOW64\imagehlp.dll
18:24:35.0704 0x099c  C:\Windows\SysWOW64\imagehlp.dll - ok
18:24:35.0720 0x099c  [ F4F2A4C459DD3AA22DD3984D13B15746, C2D0E285E2333A9C620BE04A5747881AF0D5615DA32226886E659FF31A9761CC ] C:\Program Files (x86)\Avira\AntiVir Desktop\mfc120u.dll
18:24:35.0720 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\mfc120u.dll - ok
18:24:35.0720 0x099c  [ 7C2E3117F0BF7B6F010B8C071253404C, 51E936168C8E51F4352A26FDA591F23C0BE1BED6A27FA93BAC18654143A018D7 ] C:\Windows\System32\cryptnet.dll
18:24:35.0720 0x099c  C:\Windows\System32\cryptnet.dll - ok
18:24:35.0736 0x099c  [ D3E30F36EBE11C59D8A2AB066845A957, 9FBF15BBDE712055BE7F48A38BB7982A992FF1688CCA43562E2580340717332F ] C:\Program Files (x86)\Kodak\AiO\Center\Newtonsoft.Json.Net20.dll
18:24:35.0736 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Newtonsoft.Json.Net20.dll - ok
18:24:35.0736 0x099c  [ 9A5E9120CF30F5D757914FED95118031, 79855FC5F9E80B91B3298BC7BDDE383C077E2950F390BE65D606118D09B434CB ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Diagnostics.dll
18:24:35.0736 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Diagnostics.dll - ok
18:24:35.0751 0x099c  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] C:\Windows\System32\drivers\mrxsmb10.sys
18:24:35.0751 0x099c  C:\Windows\System32\drivers\mrxsmb10.sys - ok
18:24:35.0751 0x099c  [ 50AFE160139988D801279E969FF34084, 725FEFCC1B05CAEA5CD3F1604D428709B07E3A659F951A80F0C045DF8C487B4F ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Utilities.dll
18:24:35.0751 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Utilities.dll - ok
18:24:35.0751 0x099c  [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] C:\Windows\System32\drivers\Ndu.sys
18:24:35.0751 0x099c  C:\Windows\System32\drivers\Ndu.sys - ok
18:24:35.0767 0x099c  [ DAA0FBB7EADA72685B8F6171B02A8D1A, 8BB3773AD7F3ADF3F113B4324B43D1D229F3906B3D0C0761E01DFF67DA172A31 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aemobile.dll
18:24:35.0767 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aemobile.dll - ok
18:24:35.0767 0x099c  [ F9CF3FB8DD81B390783532B3C98D6976, 8C94638136CFAEB3ED6DD7CE2059E98B64B15918DDB0796CC0B88474EE99F5BF ] C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
18:24:35.0767 0x099c  C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe - ok
18:24:35.0782 0x099c  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] C:\Windows\System32\nlasvc.dll
18:24:35.0782 0x099c  C:\Windows\System32\nlasvc.dll - ok
18:24:35.0782 0x099c  [ 6A3CFA8360410A2FE4BD7717FF22F236, 3B506B923636AB78C13C22560ED0E2E1C3CFCDA2279F67843D7BB1403FBC7F96 ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Configuration.dll
18:24:35.0782 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Configuration.dll - ok
18:24:35.0798 0x099c  [ FE11972797DED38CA55E88BD3579F6A2, 85965F3E101D3079AB6F2FBEF9ECD43D2707346CD815A61227B8A313A94879A4 ] C:\Windows\System32\ncsi.dll
18:24:35.0798 0x099c  C:\Windows\System32\ncsi.dll - ok
18:24:35.0798 0x099c  [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] C:\Windows\System32\winhttp.dll
18:24:35.0798 0x099c  C:\Windows\System32\winhttp.dll - ok
18:24:35.0814 0x099c  [ A628CD0C6AFA9D55473E1C6762F5A69C, 229EE5D627CEA168D77DB055460180BA46E1901F140A364920BE9822ACB2F432 ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Localization.dll
18:24:35.0814 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.Localization.dll - ok
18:24:35.0814 0x099c  [ 90B06AD0BA271ABDD56A77040B39C525, 8838337E09B4555FBD165EB02119B3DE5BC074E33D1A9D39FFFB82B0402F12AE ] C:\Windows\System32\ssdpapi.dll
18:24:35.0814 0x099c  C:\Windows\System32\ssdpapi.dll - ok
18:24:35.0829 0x099c  [ 6648F70D1E7CEAD027DE53F353B5394A, 22D9461656BA568E62BC5B678D733C995A59D81F1FCBC6EBD92A0B58A5D27A4A ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeoffice.dll
18:24:35.0829 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aeoffice.dll - ok
18:24:35.0829 0x099c  [ CC16E6729814DA54B5BCFBDA67776942, 1374DE9557484975DB41BB18158C2CCDDADD134AA6D5CAE4F23EFE2D77A995C5 ] C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.DeviceSettings.dll
18:24:35.0829 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Inkjet.DeviceSettings.dll - ok
18:24:35.0845 0x099c  [ 085573B46CADDBBC835CD2A11304DDD2, B902A34EFC8DE9E41C18E92887352E9EE4261343D844067AFBB8A64313EEF5A9 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Automation\899f66482995f101925f8c634293e978\Inkjet.Automation.ni.dll
18:24:35.0845 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Automation\899f66482995f101925f8c634293e978\Inkjet.Automation.ni.dll - ok
18:24:35.0845 0x099c  [ A797A2B02EE39B5C47516FEF1D50E0AC, C6F8691D5966B3E6D72981CCBAD517610D03ED839FF3E180C4BDC19ACA2013B0 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Configuration\96ee9d1d93df01e0214ec9250ab06b9f\Inkjet.Configuration.ni.dll
18:24:35.0845 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Configuration\96ee9d1d93df01e0214ec9250ab06b9f\Inkjet.Configuration.ni.dll - ok
18:24:35.0861 0x099c  [ 547AA7795F54452E5EF210E6B2EF2C97, A90DFD832FEC1AE574EBE0B31B63E6934ED2BB56B84177E5E4CBC230D036DA1A ] C:\Program Files (x86)\Kodak\AiO\Center\Interop.WIA.dll
18:24:35.0861 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Interop.WIA.dll - ok
18:24:35.0861 0x099c  [ 36E02F5128ECA0D2A73A46C1BCDBC711, 4CB545571016F920E539E3722584170EA6076D9886BBBE549FE9EE6DBAAF2CCF ] C:\Program Files (x86)\Avira\AntiVir Desktop\aepack.dll
18:24:35.0861 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aepack.dll - ok
18:24:35.0861 0x099c  [ 1BAA6C0AAB6263A55980B7BA4E8D7D54, 8E146DD91049472DCAAA40408F1760DA746D800FE928937111FBBC621851892D ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
18:24:35.0861 0x099c  C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - ok
18:24:35.0876 0x099c  [ 184B03C37EC845F3C881072DC5D5A785, 125E9EFEF4C3E362F7B5CA45AF60263B950A10521850AB2E4BEE8C399195F548 ] C:\Program Files (x86)\Avira\AntiVir Desktop\firewall.dll
18:24:35.0876 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\firewall.dll - ok
18:24:35.0876 0x099c  [ 329C2CEC20740A13B19B8BF5D5FE3DE3, 617DC88BDF5CAB6E56E0BF1CF9DE229C9B1A2EE8167A353C7D92FC69715592B6 ] C:\Program Files (x86)\Kodak\AiO\Center\ShellLib.dll
18:24:35.0876 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\ShellLib.dll - ok
18:24:35.0892 0x099c  [ CDC83A9512C6D5C8687DFF428054FFFA, F6C3B8784ECC2BB4DAFDC17F0CAC17D2B7E2293DBDD1B96970FE362F25A693DD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Utilities\9dfd8be454f5a5718460aeb04da694fb\Inkjet.Utilities.ni.dll
18:24:35.0892 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Utilities\9dfd8be454f5a5718460aeb04da694fb\Inkjet.Utilities.ni.dll - ok
18:24:35.0892 0x099c  [ 80D6B89F62395284E3CE5DE2E5F4D6A0, C40E1A61DCADE4EE3FF8F50489BBB4C9053F47B3EAE76022694C08CC44B64D4F ] C:\Windows\System32\webio.dll
18:24:35.0892 0x099c  C:\Windows\System32\webio.dll - ok
18:24:35.0907 0x099c  [ EAE92EB7AF1371717F0F84F9C1EC88F3, 717B73903FE2D3EDF47CC76E2F1A8F61E81C2B2236DDB47492932A92BEAFE3AD ] C:\Program Files (x86)\Avira\AntiVir Desktop\aerdl.dll
18:24:35.0907 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aerdl.dll - ok
18:24:35.0907 0x099c  [ 211BD0E2292CB18DD11515BE39CE5518, 9F2E1CCC3D2B0AC79A742FD894F31454408CC751F475F3FBE66EB2AABB85B117 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
18:24:35.0907 0x099c  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok
18:24:35.0923 0x099c  [ F5961EE309EAC999FE6D3FF61D29A914, F6F8024312D1D82636CAE01A4D18A9D0C2626DC45E84B6136C6D1C9033446974 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aesbx.dll
18:24:35.0923 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aesbx.dll - ok
18:24:35.0923 0x099c  [ BD9F4A96625300FB0A31A38B7BF633E4, 74D0BC71F6EC58E38AC183AC0270E8040B0ECABD3F9597F5730A90486D99A93A ] C:\Program Files (x86)\Avira\AntiVir Desktop\aescn.dll
18:24:35.0923 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aescn.dll - ok
18:24:35.0939 0x099c  [ DC488BA02C0ADB5771314BA4F99A066B, 05CAC67B80E67DBDFF015872577F5CB9B70D75E108204258ECCE0328E8743AC3 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\9a349fb029581f4752d2c6cfcfeab816\System.Xml.ni.dll
18:24:35.0939 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\9a349fb029581f4752d2c6cfcfeab816\System.Xml.ni.dll - ok
18:24:35.0939 0x099c  [ 7E212E742BF06BF678AE35E9C1B74B8F, AEFBD5AE000FD1E19AC08381E5B8B1A5691B3DA1C37E5C84C7C6A229924EEB60 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
18:24:35.0939 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe - ok
18:24:35.0954 0x099c  [ B19258256D37D6F864B2EE374AA1A5CE, 5A3377AEF0D52E14D77DC83AD325E6F489EF4533F5C4012B585D78B7F61C3A55 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aescript.dll
18:24:35.0954 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aescript.dll - ok
18:24:35.0954 0x099c  [ 6A9692792BEFC27B06B763342B74BB6D, 5D13C00449EAB0103883F5EA1A1D2D27AD26F7E385FDED91A3D0BEEF513325E6 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aevdf.dll
18:24:35.0954 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\aevdf.dll - ok
18:24:35.0970 0x099c  [ E68401CD5EA7FD90248A2FBD2BA3FB85, 0E71F50E02EE83F370D3F3BA90DF72CC43547041A28C5668364D55306D22E0A2 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Diagnostics\7aa12dde2606444bad2c8e2506d6f7d8\Inkjet.Diagnostics.ni.dll
18:24:35.0970 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Diagnostics\7aa12dde2606444bad2c8e2506d6f7d8\Inkjet.Diagnostics.ni.dll - ok
18:24:35.0970 0x099c  [ 4D534921D65609114D3F66A27C2D54AA, 83254FDDEF1DBC816C05D7A5C8477A9152C1ECB813DF72C72806D1F1913A80D6 ] C:\Program Files (x86)\Kodak\AiO\Center\Logger.dll
18:24:35.0970 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Logger.dll - ok
18:24:35.0970 0x099c  [ E4F287F6B070D367B569C5BD82917036, 701491188761255BF0EB60AAACE9A9592DDF1905F8AA16F28E1792D1FF0A09FC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\eaa20bd3bf0cb4085563a53ce2344adc\System.ni.dll
18:24:35.0970 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System\eaa20bd3bf0cb4085563a53ce2344adc\System.ni.dll - ok
18:24:35.0986 0x099c  [ 296E2EE79BE1A6CF197AD38AE3BD58D9, 1F9B02AE2FFFBDF2A247198703CFB68EA9FAC4D4505FC9FBC38F341C1743CE23 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.dll
18:24:35.0986 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.dll - ok
18:24:35.0986 0x099c  [ 89B421BDA3214732E17D86820905200B, 64052106EA918EC93B481C1E7A8232B632B7BD4AF61E08D0479AD82FFD2BCCEF ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Localization\3b9e74e4698cff379b653a12ba4009d9\Inkjet.Localization.ni.dll
18:24:35.0986 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Localization\3b9e74e4698cff379b653a12ba4009d9\Inkjet.Localization.ni.dll - ok
18:24:36.0001 0x099c  [ 11A1F0C378CF35D739ED8B8FE4A550A6, 33A332A38047ED0D8E2A274B09BC921C7C05622F75CA54F4E1E8E8E1396DE355 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Devidd83fa01#\c9a8e3eed86f065bdd5982e3184c97a7\Inkjet.DeviceSettings.ni.dll
18:24:36.0001 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Devidd83fa01#\c9a8e3eed86f065bdd5982e3184c97a7\Inkjet.DeviceSettings.ni.dll - ok
18:24:36.0001 0x099c  [ C1E44A99F7CF8C3A08CD5ADDF451636C, 191EA5A62837DA1EB31F80E9EE9D343F6F2A6FC0A33EA52415991A23B217AAB4 ] C:\Windows\System32\d3d9.dll
18:24:36.0001 0x099c  C:\Windows\System32\d3d9.dll - ok
18:24:36.0017 0x099c  [ E4B85BB85F8C5B6AA47C59C4915D06D0, 14E632192BF259B47EF2AE21C904D85CC605A83C417B6E39E0364D03C89B149B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\d9961946cc4b6fb67e19cd2f8ce90a76\System.Configuration.ni.dll
18:24:36.0017 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\d9961946cc4b6fb67e19cd2f8ce90a76\System.Configuration.ni.dll - ok
18:24:36.0017 0x099c  [ FD1D67DD57309FFE4AE508C14B71B561, 1DDCF3D9DDE5503886AE58F9A7AEE3B18D537F992784C4751B81A7F2E04B70A3 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtGui4.dll
18:24:36.0017 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtGui4.dll - ok
18:24:36.0032 0x099c  [ E5730094DA6752FE62319AB948243B06, 2CD61D22D67F440C86E43D854AEDB0201C2B8EAC7354ADA0093419A2D0B8B061 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\8ae47367b61fe8c0659113ccf4ecf4bd\System.Drawing.ni.dll
18:24:36.0032 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\8ae47367b61fe8c0659113ccf4ecf4bd\System.Drawing.ni.dll - ok
18:24:36.0032 0x099c  [ 74C6B3109A607B89B1A3171A3D54C8D8, F3AB2D2B96C6FDB9F5EDFB10A4D9D4151B277049D7EB4C4A8195BFFA066F832C ] C:\Windows\System32\cryptui.dll
18:24:36.0032 0x099c  C:\Windows\System32\cryptui.dll - ok
18:24:36.0048 0x099c  [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] C:\Windows\System32\pcasvc.dll
18:24:36.0048 0x099c  C:\Windows\System32\pcasvc.dll - ok
18:24:36.0048 0x099c  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] C:\Windows\System32\drivers\PEAuth.sys
18:24:36.0048 0x099c  C:\Windows\System32\drivers\PEAuth.sys - ok
18:24:36.0064 0x099c  [ 72E7423C5711768E1EA5D50C002910DC, 10756185029B33C50FF520E88F149B2DDC871654A8FEBE683351CD2F87484202 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\d91798a9a9fcb450351fe8e49026a69f\System.Drawing.ni.dll
18:24:36.0064 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\d91798a9a9fcb450351fe8e49026a69f\System.Drawing.ni.dll - ok
18:24:36.0064 0x099c  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] C:\Windows\System32\drivers\secdrv.sys
18:24:36.0064 0x099c  C:\Windows\System32\drivers\secdrv.sys - ok
18:24:36.0079 0x099c  [ F154B81D53A475DD43C823578683F0E3, 048D983BC5E5A22B159BF128AC52217C0DF03DEDDDD7B7574E9D407C3DA3C139 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\f73c9be3b1df08fd1e3baf09ee82cacc\System.Windows.Forms.ni.dll
18:24:36.0079 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\f73c9be3b1df08fd1e3baf09ee82cacc\System.Windows.Forms.ni.dll - ok
18:24:36.0079 0x099c  [ 3C19C8CBC7917FEE066CB7A116D3F326, 3656E89F194BD27CD67D4F06A4A01E005F129E77E478F953AC1DE53D168CD9A9 ] C:\Program Files\KMSpico\Service_KMS.exe
18:24:36.0079 0x099c  C:\Program Files\KMSpico\Service_KMS.exe - ok
18:24:36.0095 0x099c  [ 8D852A7D6148957413420AF6081EE6C4, 7E29C7A9389A2E2549E966E96BC2D83857779A58650DCD3D3D17B00AC54185BE ] C:\Windows\System32\nvaudcap64v.dll
18:24:36.0095 0x099c  C:\Windows\System32\nvaudcap64v.dll - ok
18:24:36.0095 0x099c  [ 836B35C5C8C5E6DE6CB0035D075755C7, C1522217DF4AACEA708C6D156765EBA9646D335A86644E3787B81FC0FB06E80E ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
18:24:36.0095 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll - ok
18:24:36.0111 0x099c  [ 428F083690D7AAA012338FD5A0663EE3, EE690A9C99CBEA0A1D7E4ABD070FA9FF07743C750AE7FAF54C3425F8478AF89C ] C:\Windows\System32\AudioSes.dll
18:24:36.0111 0x099c  C:\Windows\System32\AudioSes.dll - ok
18:24:36.0111 0x099c  [ D966279DE7FA2193EB84CFB859E704A6, 0CE953B6A38B4FF5F6869306EFEE9E38F2578BA5479600F095E05E0FB22AEF5B ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtNetwork4.dll
18:24:36.0111 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \QtNetwork4.dll - ok
18:24:36.0126 0x099c  [ 94E23AF29A0D0D6376B87A66C00BFFE1, 3AFA7E1752048AEE1F216B0C762B31DB8F9BF6C816F28DE73E65A3A3CE6A247B ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
18:24:36.0126 0x099c  C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe - ok
18:24:36.0126 0x099c  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] C:\Windows\System32\drivers\condrv.sys
18:24:36.0126 0x099c  C:\Windows\System32\drivers\condrv.sys - ok
18:24:36.0126 0x099c  [ EA10272605422080EE2FAB142A75120D, 9705FA8055A3897C0510FF7A9E8D1429F681368966D6E7FB0F1DDEAE87ABAB40 ] C:\Windows\System32\conhost.exe
18:24:36.0126 0x099c  C:\Windows\System32\conhost.exe - ok
18:24:36.0142 0x099c  [ F08E697FE909E685F55BC79F520A9B3B, 522FEAAEF868625896FA0C6265AC994C628FB4CD33F1FC37FFEC5A7BC5340408 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\c3eba75906dad1dafd8e2afaa163e5a0\System.Windows.Forms.ni.dll
18:24:36.0142 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\c3eba75906dad1dafd8e2afaa163e5a0\System.Windows.Forms.ni.dll - ok
18:24:36.0142 0x099c  [ A7D73F73BF92426AF000020EA402BEC4, 44AC6329A94502692FDF7DCC38C2AB6B363C01E3ADBAEE37CA790485B6C6AE93 ] C:\Program Files\TrueSuite\TrueSuite.QLAccountDS.dll
18:24:36.0142 0x099c  C:\Program Files\TrueSuite\TrueSuite.QLAccountDS.dll - ok
18:24:36.0157 0x099c  [ 0990301B8C10612FB019CB6F18177BF9, F9E02C150480C6D478D2DA93451656F39734DF96D98D902FB08BC04A0ABCEE8D ] C:\Program Files\TrueSuite\TrueSuite.FPLSSODS.dll
18:24:36.0157 0x099c  C:\Program Files\TrueSuite\TrueSuite.FPLSSODS.dll - ok
18:24:36.0157 0x099c  [ 8BB7548307EE6147137993A410D64387, DF5C7232957008C10370494602FA948ADA4B8FB7EBD95CCC791C558E65320BBD ] C:\Windows\System32\msvcr120_clr0400.dll
18:24:36.0157 0x099c  C:\Windows\System32\msvcr120_clr0400.dll - ok
18:24:36.0173 0x099c  [ 576DDF66DA57797C70BC407656D35733, 60561C3F9D4066D50FF3AFD7ADCE184C190B7AD631507B43AA7D0D6FE52DB622 ] C:\Program Files\TrueSuite\TrueSuite.OAE.dll
18:24:36.0173 0x099c  C:\Program Files\TrueSuite\TrueSuite.OAE.dll - ok
18:24:36.0173 0x099c  [ 24F80808284F6A41A6C7FE878008CA55, 5DBDC101E999FC523917D5659A5BEC40B8605BAFDAF1122F85DA024C2071783D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\0c0a5cc6d838d661c624d6d7e4d48855\System.Xml.ni.dll
18:24:36.0173 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\0c0a5cc6d838d661c624d6d7e4d48855\System.Xml.ni.dll - ok
18:24:36.0189 0x099c  [ 8074E4C2165E1CB792D917B308580050, F07627507739FD55C977C0047AFF4FAB67453684EEFEC3F6D37691F4BBEF654B ] C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\fc9860df7e7c03efd26ad5311301dfcb\mscorlib.ni.dll
18:24:36.0189 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\fc9860df7e7c03efd26ad5311301dfcb\mscorlib.ni.dll - ok
18:24:36.0189 0x099c  [ 72568820ACA933D69E110B5CAC31B9A5, B14138D616D9C81343B8CBAA66EE066CF135E14B8C53921BEA2B6580CC9F5525 ] C:\Program Files (x86)\Kodak\AiO\Center\de\Inkjet.Localization.resources.dll
18:24:36.0189 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\de\Inkjet.Localization.resources.dll - ok
18:24:36.0204 0x099c  [ 16A19EB29CDE3883DF43DC83D14F1817, CED0BCDF22D12D79A35DC3A00F97E5E2AD27A0CE2CDBA7356D41BD705206B267 ] C:\Windows\System32\upnp.dll
18:24:36.0204 0x099c  C:\Windows\System32\upnp.dll - ok
18:24:36.0204 0x099c  [ 4B56EAB79339F37E0C5B325405C4FF95, 48114698D8122C6FDB9D8492B787F38A7C339D161313BAC9A78461089CDC034E ] C:\Windows\SysWOW64\WindowsCodecs.dll
18:24:36.0204 0x099c  C:\Windows\SysWOW64\WindowsCodecs.dll - ok
18:24:36.0204 0x099c  [ F7EDF905549E40BC5AD7262699555C94, 3338ED79BD0B4B434EADEE1E72C51A6940436B929DDAE3BCF590C55112798207 ] C:\Windows\SysWOW64\thumbcache.dll
18:24:36.0204 0x099c  C:\Windows\SysWOW64\thumbcache.dll - ok
18:24:36.0220 0x099c  [ 8A5EF630AB9AD080804DB25C43E08299, A8F62A1531EE9556DB944DA4476B884EC774E812296C5BA7C81A9EA2FED20F34 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\2a7fb1df03683dc96d7655bfd6b87242\System.Web.ni.dll
18:24:36.0220 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\2a7fb1df03683dc96d7655bfd6b87242\System.Web.ni.dll - ok
18:24:36.0220 0x099c  [ 952FBECCCA48DFF4814F0A6DC7EFF75F, 1F48FD33147A64972DDB5EDCB935450B2BF3803AA3C69CE959B988F1D10A4723 ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamtoast.dll
18:24:36.0220 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamtoast.dll - ok
18:24:36.0236 0x099c  [ 769D18B10C86186DC31A389979D33C27, C63259DC32C4A6AA08604C164EE19B5F0DD29F97AAC84B8A26B852A9172A812A ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \imageformats\qgif4.dll
18:24:36.0236 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \imageformats\qgif4.dll - ok
18:24:36.0236 0x099c  [ 03B2878274A282A72B69FA4E01416426, 3FF733045A1FAF62182B6D0DF3BC412BDC74F99AE9258E0DF8040FF6E49F2050 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
18:24:36.0236 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll - ok
18:24:36.0251 0x099c  [ 30EBF1FB739CDDF6958369B162CDC565, D37F69843251940052609947F76FDF1EBC5FDA9788DD98C260099699EC842A82 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\diasymreader.dll
18:24:36.0251 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\diasymreader.dll - ok
18:24:36.0251 0x099c  [ 0BE6C341E0DD754C4D5031D391F97C86, B8AB4EE9FDDA53F837FD7CE20DADB70C46168EDEFC22AAC2906A6ECF334391FD ] C:\Windows\System32\shfolder.dll
18:24:36.0251 0x099c  C:\Windows\System32\shfolder.dll - ok
18:24:36.0267 0x099c  [ D189759B9A8FAD296881629FD016DFC6, 8258F20E6E2580F1CA4E5882A71D88757D03628A053BC81784FCCDDFE2993BBE ] C:\Program Files\TrueSuite\TrueSuite.ENRL.dll
18:24:36.0267 0x099c  C:\Program Files\TrueSuite\TrueSuite.ENRL.dll - ok
18:24:36.0267 0x099c  [ D5B29A419451E9C002A7BDCFEBEDD8FD, 59A8C8B189D11F3B1B26F7218F6E6B1174B202358895F9E1AAB985B0DECA26B3 ] C:\Program Files\TrueSuite\TrueSuite.EDS.dll
18:24:36.0267 0x099c  C:\Program Files\TrueSuite\TrueSuite.EDS.dll - ok
18:24:36.0282 0x099c  [ DD02C0806C03506E03A24C984502B92B, 9CC961D4161D06F2AE49F5E98331C6D110A14DBD9255ED9C4C32A9490FB53329 ] C:\Windows\System32\secur32.dll
18:24:36.0282 0x099c  C:\Windows\System32\secur32.dll - ok
18:24:36.0282 0x099c  [ 2B25DE53C1493E3582FFBD29F8CBBE0C, FD68847F69558D14552A09352CACEE33662F169692F2FE76016E4FE9E99104ED ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\b4ed0afe60d18183ee7ca07b9016a023\WindowsBase.ni.dll
18:24:36.0282 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\b4ed0afe60d18183ee7ca07b9016a023\WindowsBase.ni.dll - ok
18:24:36.0298 0x099c  [ 7A26D6B9F0DDB17E0D5B17450DEE64B3, 985BD575D204EED3A67689E57582C9BE5E69E613279EE39981AC83B8BAB50310 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System\03684c663aa6a9eeb92faf2dfdba9bc2\System.ni.dll
18:24:36.0298 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System\03684c663aa6a9eeb92faf2dfdba9bc2\System.ni.dll - ok
18:24:36.0298 0x099c  [ C9F98104E9030456C9A288EFC6001849, B742FD07D7B4049E5A2D57C3683C71A4782AC8E5329146C34CC1121C57907463 ] C:\Program Files\TrueSuite\TrueSuite.WBFLibrary.dll
18:24:36.0298 0x099c  C:\Program Files\TrueSuite\TrueSuite.WBFLibrary.dll - ok
18:24:36.0314 0x099c  [ FF44DB8011507095E3C371E554691AEB, 31F3D14DED59316DC47DC4465B2661FA6ED04484F57A153B5928F17D40CD0E5D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\e333f3e460781a3f7837521291c99c49\System.Runtime.Remoting.ni.dll
18:24:36.0314 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\e333f3e460781a3f7837521291c99c49\System.Runtime.Remoting.ni.dll - ok
18:24:36.0314 0x099c  [ 84A99FDCE9B5C7457E503C7C47DD5F4F, AF6C596F3DABAD50AA896C89F5A2FE25C2079C90AAB4FF0C4FE065AFCD46909B ] C:\Program Files (x86)\Kodak\AiO\Center\Interop.EKAiO2SDKLib.dll
18:24:36.0314 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\Interop.EKAiO2SDKLib.dll - ok
18:24:36.0329 0x099c  [ 4D55FECD97DFDB3C0CFC0BF54500EDD5, B4E29D70993441A801C1D760C1B20A6D90C2C79C98D4191AD3EFDAB924EF0F6C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Statistics\280e6fb58a2bcf74bb0c60a9311c86ab\Inkjet.Statistics.ni.dll
18:24:36.0329 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Statistics\280e6fb58a2bcf74bb0c60a9311c86ab\Inkjet.Statistics.ni.dll - ok
18:24:36.0329 0x099c  [ 4FE98A51B9CBD5A9D3A5A0EBB0751696, 86C3DD1620CF7080ED874180272EF255B6622C32884785A5136B90AA2011AFB2 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Serv759bfb78#\8d1d2381bc5262cdae4866fb8ff2d65d\System.ServiceProcess.ni.dll
18:24:36.0329 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Serv759bfb78#\8d1d2381bc5262cdae4866fb8ff2d65d\System.ServiceProcess.ni.dll - ok
18:24:36.0345 0x099c  [ EE1EF3DFA9B6578101137C56F4A8754A, D2ED6779891FFAFBB1427EACA7B9836C83C506D8105EC8A20501A84C5B3D339A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Hardware\1df7301fe50f8012585643bb8b6fe56c\Inkjet.Hardware.ni.dll
18:24:36.0345 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Inkjet.Hardware\1df7301fe50f8012585643bb8b6fe56c\Inkjet.Hardware.ni.dll - ok
18:24:36.0345 0x099c  [ 128FEE89035D9F09682A396998769B69, 318A2C182B68754DC569CC2C1534A02CE969ED183D4EA492F01975DCDEE8765C ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
18:24:36.0345 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll - ok
18:24:36.0361 0x099c  [ 1B76D48A97E3E61661846A5BF64E2008, 5E3524F06CF733107092C36ED3CAF6C967E09E4F3AFDDFB6F8464D5AFDE30587 ] C:\Windows\System32\FXSRESM.dll
18:24:36.0361 0x099c  C:\Windows\System32\FXSRESM.dll - ok
18:24:36.0361 0x099c  [ 2B7E14C559ACEA980274C1117DCDAB19, D0B851F449245691EEEB7692C294BB213AB6DF2F80AEB27571E7EAE2CCB8EBD0 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.EKAiO2SDKLib\f2e54b030b42a905f772fcdf097b61f8\Interop.EKAiO2SDKLib.ni.dll
18:24:36.0361 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\Interop.EKAiO2SDKLib\f2e54b030b42a905f772fcdf097b61f8\Interop.EKAiO2SDKLib.ni.dll - ok
18:24:36.0376 0x099c  [ 7FA8507F9678B6116EC6C49EEAB13384, 6D0ABE12F1983F3F67665C42CC61921D1424544FE9A7EC7071CEC8DBDEBF76F0 ] C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe
18:24:36.0376 0x099c  C:\Program Files (x86)\3S Software\CoDeSys SP RTE\ServiceControl_RTE23.exe - ok
18:24:36.0376 0x099c  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] C:\Windows\System32\drivers\srvnet.sys
18:24:36.0376 0x099c  C:\Windows\System32\drivers\srvnet.sys - ok
18:24:36.0392 0x099c  [ 49BACF955ED0DD7E3C6B957F568A5D3E, 4EC83437F75FF94D6881D510D086AA87059F7EC9A6225FCB3E1F3A2302A5841A ] C:\Program Files (x86)\Kodak\AiO\Center\EKIJ5000SDK.dll
18:24:36.0392 0x099c  C:\Program Files (x86)\Kodak\AiO\Center\EKIJ5000SDK.dll - ok
18:24:36.0392 0x099c  [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] C:\Windows\System32\sysmain.dll
18:24:36.0392 0x099c  C:\Windows\System32\sysmain.dll - ok
18:24:36.0407 0x099c  [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] C:\Windows\System32\wiaservc.dll
18:24:36.0407 0x099c  C:\Windows\System32\wiaservc.dll - ok
18:24:36.0407 0x099c  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] C:\Windows\System32\drivers\tcpipreg.sys
18:24:36.0407 0x099c  C:\Windows\System32\drivers\tcpipreg.sys - ok
18:24:36.0423 0x099c  [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] C:\Windows\System32\wbem\WMIsvc.dll
18:24:36.0423 0x099c  C:\Windows\System32\wbem\WMIsvc.dll - ok
18:24:36.0439 0x099c  [ 365B3F8B869F07FB06936FB21C31EBC6, 32B2B1D1C34DF21E0746581E74B99BA60E988BFA66174B444AF765A37121CE42 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\374fcab45c666ab4e3cb1d8f0b2ff117\System.Core.ni.dll
18:24:36.0439 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\374fcab45c666ab4e3cb1d8f0b2ff117\System.Core.ni.dll - ok
18:24:36.0439 0x099c  [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] C:\Windows\System32\drivers\srv2.sys
18:24:36.0439 0x099c  C:\Windows\System32\drivers\srv2.sys - ok
18:24:36.0454 0x099c  [ 4CEC4C390F0B53AC8AEA2407D88A0ABF, EEC7FBC4B7087C669DAAC0EA07B305C762EDF18B7C02B3FBD8B895D1F4FDD0F6 ] C:\Windows\SysWOW64\webio.dll
18:24:36.0454 0x099c  C:\Windows\SysWOW64\webio.dll - ok
18:24:36.0454 0x099c  [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] C:\Windows\System32\trkwks.dll
18:24:36.0454 0x099c  C:\Windows\System32\trkwks.dll - ok
18:24:36.0470 0x099c  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] C:\Windows\System32\drivers\srv.sys
18:24:36.0470 0x099c  C:\Windows\System32\drivers\srv.sys - ok
18:24:36.0470 0x099c  [ 527429623E2A20C53DB246C51E6F2726, C3B714A70D58A2F31B6D3CB9527FF007E23D49A49EED4DF5F75BBE1BDA01D571 ] C:\Windows\System32\wbemcomn.dll
18:24:36.0470 0x099c  C:\Windows\System32\wbemcomn.dll - ok
18:24:36.0486 0x099c  [ 6E49FFDFBAC4AC6CB45238C67E3E15F2, AC2EC3D322E9227CD8C7637444D86F5737175BED5C770805A1782ED47BBCE50D ] C:\Windows\System32\wiatrace.dll
18:24:36.0486 0x099c  C:\Windows\System32\wiatrace.dll - ok
18:24:36.0486 0x099c  [ 536175601D6FDA57917D18D21476915A, 3482E67616FACA092128498829B726791A921A40281ECBA00484375B89E93FA7 ] C:\Windows\System32\wsdchngr.dll
18:24:36.0486 0x099c  C:\Windows\System32\wsdchngr.dll - ok
18:24:36.0501 0x099c  [ 9E39AC33607AAF228686FA15249E5C42, AD0501C0F1DDB45301E2131D4201732C130135704F61A8355D94B0882BF2D369 ] C:\Windows\SysWOW64\schannel.dll
18:24:36.0501 0x099c  C:\Windows\SysWOW64\schannel.dll - ok
18:24:36.0501 0x099c  [ 622928F5A8045F8122F10561D6C35ED0, 483E857E3C1931238B17A3A66675136BA799BAEF8C65666D3C0B3FD81D2C59B9 ] C:\Windows\System32\ncryptsslp.dll
18:24:36.0501 0x099c  C:\Windows\System32\ncryptsslp.dll - ok
18:24:36.0517 0x099c  [ 08BFCF8B2DB09932074D863A0559C858, EB43D757AFE9CFF432396B374E572CEE65814C525DA46EB30194F5D4F0419775 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll
18:24:36.0517 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll - ok
18:24:36.0532 0x099c  [ C5784EFEEADA38050706FF368B6DD21F, 29515E525E4B21F90557E919BD9E7FE568AE0C11166E7A798871611FCA20A83D ] C:\Windows\System32\deviceassociation.dll
18:24:36.0532 0x099c  C:\Windows\System32\deviceassociation.dll - ok
18:24:36.0532 0x099c  [ 02959B2556E18276DE7DDE527CFCB502, 05CC7A39FF3A26640C3C9C49CD89438AF6265AB06FD3DA71411610603F228EBD ] C:\Windows\System32\ncryptprov.dll
18:24:36.0532 0x099c  C:\Windows\System32\ncryptprov.dll - ok
18:24:36.0548 0x099c  [ 955367127BDBFEFDBFA6C6BF47B465BF, C38B7F03D1F240E292158C97AD24268ADCFA8CE3323F6EF36D0CC11E0DEA3216 ] C:\Windows\System32\kodak\kds_aio5000\EKAiOWia2Drv.dll
18:24:36.0548 0x099c  C:\Windows\System32\kodak\kds_aio5000\EKAiOWia2Drv.dll - ok
18:24:36.0548 0x099c  [ D9D960D70B1866A513BCBBA2FBEE6144, DB3AB9AAEFF452B6DC1ECEAFB23EEF8C5AD8AB8159F3C151CDFE06766EA992F3 ] C:\Windows\System32\dssenh.dll
18:24:36.0548 0x099c  C:\Windows\System32\dssenh.dll - ok
18:24:36.0564 0x099c  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] C:\Windows\System32\wuaueng.dll
18:24:36.0564 0x099c  C:\Windows\System32\wuaueng.dll - ok
18:24:36.0564 0x099c  [ 4874EB05C1BE374B8A4AC15DF3DB07B0, 05B8D5CC52006308BAA9A91584E4E49BE97C10B7FB2628F0DD8EB8C93E47E49E ] C:\Windows\SysWOW64\gpapi.dll
18:24:36.0564 0x099c  C:\Windows\SysWOW64\gpapi.dll - ok
18:24:36.0579 0x099c  [ 88244F5A24F9CD98E74472FDFA827FA2, 40F2C8493A44F629A6D56D5A34721861A4CB7252FAFFD18FD33B7E895FF75F73 ] C:\Windows\SysWOW64\ncrypt.dll
18:24:36.0579 0x099c  C:\Windows\SysWOW64\ncrypt.dll - ok
18:24:36.0579 0x099c  [ 13B9417E93437480E168669EDE36298B, 6DA9F600805AF0D5C056E64387FCD17D593C7D57E1329CC90EA3ED6F13C2BF23 ] C:\Windows\SysWOW64\ntasn1.dll
18:24:36.0579 0x099c  C:\Windows\SysWOW64\ntasn1.dll - ok
18:24:36.0595 0x099c  [ B2AC9E081A847ACBD5B62BE25AF39DA1, 5CD99562FA8B724865885BE1D01B8134BF9A3227B2B8314436C46027301D7134 ] C:\Windows\SysWOW64\ncryptsslp.dll
18:24:36.0595 0x099c  C:\Windows\SysWOW64\ncryptsslp.dll - ok
18:24:36.0595 0x099c  [ 31B3CC4A497CF0D650A06E4701CF8803, AF103B31AEC5CB0D38824C72DC7019F4BF99EB293EA2556B905E82554D3ED39F ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.V9921e851#\369ae1b748f68e23ac99a39133564e04\Microsoft.VisualBasic.ni.dll
18:24:36.0595 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.V9921e851#\369ae1b748f68e23ac99a39133564e04\Microsoft.VisualBasic.ni.dll - ok
18:24:36.0611 0x099c  [ 62D2F0DEED2F7A6B2A7F84977DF9A23A, 4DDC1D1BD1FADC764C7C17E018107064BCC0A1C5E71C4A80EFE8C7BD4803D473 ] C:\Windows\System32\cabinet.dll
18:24:36.0611 0x099c  C:\Windows\System32\cabinet.dll - ok
18:24:36.0611 0x099c  [ 3FA61E33B20FD9D94DB7BDA9F324FBAB, 899E1AD0D118A941FEB95BC73F31770E9D5223CAD654B8CCE81D6545F617E5C3 ] C:\Windows\System32\mspatcha.dll
18:24:36.0611 0x099c  C:\Windows\System32\mspatcha.dll - ok
18:24:36.0626 0x099c  [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] C:\Windows\System32\srvsvc.dll
18:24:36.0626 0x099c  C:\Windows\System32\srvsvc.dll - ok
18:24:36.0642 0x099c  [ 17348FE28C0A0AB4A6CB86D177770335, 633FEDA61F62504534B47090EA142F73C5D80C0D52A22A6C81DF64CD3EAFDAA8 ] C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
18:24:36.0642 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe - ok
18:24:36.0642 0x099c  [ 1EB1732C67D40598222103776F7AF829, A00172CB7C4B04ADF1DCA4BC4C1F4EB40F0746EDC41E0BB9AFB48B65D86857EB ] C:\Windows\System32\wups.dll
18:24:36.0642 0x099c  C:\Windows\System32\wups.dll - ok
18:24:36.0642 0x099c  [ DDFFE37C690F8D0AB05309C11AE8A740, 81216A1220093D7DD1A03DF2C9760A08FE79F4E0A290D7595442B825A23B2975 ] C:\Windows\System32\wups2.dll
18:24:36.0642 0x099c  C:\Windows\System32\wups2.dll - ok
18:24:36.0657 0x099c  [ 830445350C7CDEC426FA5E1F9E1B0DAD, D32B25C7E7F093718DCA6E5BD348F3A2C2F4EAF95C4B4F59096B792B4C47D2FD ] C:\Windows\System32\sscore.dll
18:24:36.0657 0x099c  C:\Windows\System32\sscore.dll - ok
18:24:36.0657 0x099c  [ 3A8A50121A2600AEC63E4713AF6F25E7, 16D93213978146DFAEA42DAB1F62BD450E379C695D8AF285EF3BB71E245A0309 ] C:\Windows\System32\sscoreext.dll
18:24:36.0657 0x099c  C:\Windows\System32\sscoreext.dll - ok
18:24:36.0673 0x099c  [ 056A7F991CCBDACB5A132419FA244C3E, DD979234DAD651999617EA4721679D2D9B12CF2B82F228448CE3E893066EBAB0 ] C:\Windows\System32\mi.dll
18:24:36.0673 0x099c  C:\Windows\System32\mi.dll - ok
18:24:36.0689 0x099c  [ E9BD0A4240D867F49821A1129E405FFA, F09FE79E3CBD6695B811EBE4C09B380AB50C8822E2341DB38ED141398443CC8A ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
18:24:36.0689 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll - ok
18:24:36.0689 0x099c  [ E8E50E7703204AE06C6B5FEFE2F701E7, BFAA008194FE873F6EE36FD769CC8202F9C55C41B02098B96EB6CCF127587363 ] C:\Windows\System32\miutils.dll
18:24:36.0689 0x099c  C:\Windows\System32\miutils.dll - ok
18:24:36.0689 0x099c  [ ECCA439A500210F558CF5D5AC94F70EB, 95DA45D95757E8DE69D0941974B6D8BE817994A413532FE315EC3E0229693B3C ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.WinCore.dll
18:24:36.0704 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.WinCore.dll - ok
18:24:36.0704 0x099c  [ A6D023786B16C2C6FEC235A69F60A5B2, 39898692BBAD3DE918C775C168C3FBC64D1B446BEBD3CC3EAC3F4D84452AE8DD ] C:\Windows\System32\wu.upgrade.ps.dll
18:24:36.0704 0x099c  C:\Windows\System32\wu.upgrade.ps.dll - ok
18:24:36.0704 0x099c  [ 129AAF87EA91F1076DEE9AE6FF1CE300, 253FC5F92929FAD8B99310FC0693CA09FA025DBFCAC85C89AADDB98CFD02AF47 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management\9d3cfa04c211a35fd3be6bb26e67e1d0\System.Management.ni.dll
18:24:36.0704 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management\9d3cfa04c211a35fd3be6bb26e67e1d0\System.Management.ni.dll - ok
18:24:36.0720 0x099c  [ 2B84083FC976961ECB6C21D15BEBF0C6, 4DCBDCB2067FDA9157E86D86278FB97389CFB7DC885ABD83EDB141E75765F53A ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.WinCore.Interface.dll
18:24:36.0720 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.WinCore.Interface.dll - ok
18:24:36.0720 0x099c  [ E1D793FCCD26B862839217612830ECFC, 4A96199D07370BB44B9BF73F945DC65C6B165593419B41E9F5A5CB82E1A2B7B9 ] C:\Windows\System32\wbem\wbemcore.dll
18:24:36.0720 0x099c  C:\Windows\System32\wbem\wbemcore.dll - ok
18:24:36.0736 0x099c  [ EE401AE2BFD7D9394EFA535CC0461C2A, 287D464AC41B498C4B6DB21985B55D4AC6723DB4507B6951E099E52479B9E030 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\257fa713928375c0ac9b9f24904e988f\System.Core.ni.dll
18:24:36.0736 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\257fa713928375c0ac9b9f24904e988f\System.Core.ni.dll - ok
18:24:36.0736 0x099c  [ 5F2D1EADD8695E3C90193C307B12ACA3, AB759962398A7172DB924189DA898D04D3AE10FC09171B4E5F8CDE9D3BFA9438 ] C:\Windows\System32\wbem\esscli.dll
18:24:36.0736 0x099c  C:\Windows\System32\wbem\esscli.dll - ok
18:24:36.0751 0x099c  [ C7A2EFF07EC3A768441B0250A3FB066C, B976D47F05CA8306055B0F46F3B6C87674F14F61DEA200EE1B1F81479B698087 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\6e1b958ee34db3390a1933d89d17170e\System.Drawing.ni.dll
18:24:36.0751 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\6e1b958ee34db3390a1933d89d17170e\System.Drawing.ni.dll - ok
18:24:36.0751 0x099c  [ C510810D292782189F8BE12A1B0E366E, 486B8DE1FD5F8125276D423D153BEA653EB47E6C9358417A3F37D71730913B02 ] C:\Windows\System32\wbem\fastprox.dll
18:24:36.0751 0x099c  C:\Windows\System32\wbem\fastprox.dll - ok
18:24:36.0767 0x099c  [ 25832FAE2E887A2FE46896E6C62D5880, C44C28F040FB92A852A130300E65C92F09E2A8382CCBCABABB97A2D1B64FF1C1 ] C:\Windows\System32\wbem\wbemsvc.dll
18:24:36.0767 0x099c  C:\Windows\System32\wbem\wbemsvc.dll - ok
18:24:36.0767 0x099c  [ AC75FBC8C85A9B64E66797A359701D4C, 66957E84AE7ABE49115E5C386E888CDEAD30E952D7D4C232778DD8A5C1DB7390 ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
18:24:36.0767 0x099c  C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
18:24:36.0782 0x099c  [ 38DF4E3D3559F58793E70ED8093A6F2B, F20F4ABA2EC8F8AE488B029D002347356D5607E1C0507DECD2E66D942441D928 ] C:\Windows\System32\wmidcom.dll
18:24:36.0782 0x099c  C:\Windows\System32\wmidcom.dll - ok
18:24:36.0782 0x099c  [ 8DE93017BA7F77E95DF57E753269623D, 92238DB2684D5A1352B4BB492DFB3CFE219073AC63CE0CAE0A8D12CCF23A9A7D ] C:\Windows\SysWOW64\wbem\fastprox.dll
18:24:36.0782 0x099c  C:\Windows\SysWOW64\wbem\fastprox.dll - ok
18:24:36.0782 0x099c  [ 87A2FDE6E7CB0EB8FA878FF03E6BD73B, 9B2AF51F8D6D8C290810FDCFC49A73C7EC418832506ED2DBF8258448E96E3DF8 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\9691e418442da3471cb97a7b23a146b4\System.Windows.Forms.ni.dll
18:24:36.0782 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\9691e418442da3471cb97a7b23a146b4\System.Windows.Forms.ni.dll - ok
18:24:36.0798 0x099c  [ 95471DDCB3B3FF70015FD9AA13404F44, B8476161CA49B94BF89C64E9ACF961992FDE0B09525B749984E6093CFAADDEF8 ] C:\Windows\System32\resutils.dll
18:24:36.0798 0x099c  C:\Windows\System32\resutils.dll - ok
18:24:36.0798 0x099c  [ 8EE8CA953542A8E70A841C453BC15196, D327510D9B1176355302CFE623AB01DF95BCB304AB06AD778047C26576F70DA6 ] C:\Windows\System32\clusapi.dll
18:24:36.0798 0x099c  C:\Windows\System32\clusapi.dll - ok
18:24:36.0814 0x099c  [ 1BA05E6A8212AFBA262635D5131D4CA9, C7F6FB11C3F2A954805C8C6B62B7B1EF9D95AF0037016C07F14BDDA07266D058 ] C:\Windows\SysWOW64\cryptnet.dll
         

Alt 15.07.2015, 18:39   #14
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Code:
ATTFilter
18:24:36.0814 0x099c  C:\Windows\SysWOW64\cryptnet.dll - ok
18:24:36.0814 0x099c  [ 6F6B30EA184B51EB76051107DEAC89BD, 0BD5A384B97F3F503411779E40D5B2956D71F4A64D531391A96C37A444AAFCE4 ] C:\Windows\System32\wbem\wmiutils.dll
18:24:36.0814 0x099c  C:\Windows\System32\wbem\wmiutils.dll - ok
18:24:36.0829 0x099c  [ 4845FC917AB257CAE4F16A80ADC15412, 6267D746031947F05F08E7D95C98272E22020F89ACC75C545A1B42D03D1C13EA ] C:\Windows\System32\wbem\repdrvfs.dll
18:24:36.0829 0x099c  C:\Windows\System32\wbem\repdrvfs.dll - ok
18:24:36.0829 0x099c  [ DE7EF48C904FEDEF26CA768623F42BC1, 8856A4D07AC64C2929181C9DA09E23C31946BFBEA97A64485DEE6026A69F2C5C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\5e6ca2d633dfd2082ca34db94a9ed1c7\System.ServiceProcess.ni.dll
18:24:36.0829 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\5e6ca2d633dfd2082ca34db94a9ed1c7\System.ServiceProcess.ni.dll - ok
18:24:36.0845 0x099c  [ 99FA1FCCCF51FE0C4DBF9899B47892D2, F4B52AA3F5384CFB18A91E5A6B7862CC06DC6414690AB29FE3430B58B0F74E8F ] C:\Program Files (x86)\Avira\Launcher\de-DE\Avira.ServiceHost.resources.dll
18:24:36.0845 0x099c  C:\Program Files (x86)\Avira\Launcher\de-DE\Avira.ServiceHost.resources.dll - ok
18:24:36.0845 0x099c  [ ACFEE9487693C2BD573DFCA71D98E17C, A347FD476147CD3568EEE6993B46AFC05A66A4269094CA51572D0FD013FCB535 ] C:\Windows\System32\iphlpsvc.dll
18:24:36.0845 0x099c  C:\Windows\System32\iphlpsvc.dll - ok
18:24:36.0861 0x099c  [ 761072016EC210695B3048E73184DA4B, 64D1C4A240647C82B101B928C93A7A4AA4B9DD84D9B4FA77943BD950D9A78F76 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess.resources\v4.0_4.0.0.0_de_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
18:24:36.0861 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess.resources\v4.0_4.0.0.0_de_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll - ok
18:24:36.0861 0x099c  [ 73F269436228D5625E83A1EAF3549F58, 9D53F5EF7820FDBC72948ACE67093BEDA931FAAF35B9FCF6DCE75A6A7697DD1C ] C:\Windows\System32\httpprxm.dll
18:24:36.0861 0x099c  C:\Windows\System32\httpprxm.dll - ok
18:24:36.0876 0x099c  [ 5D4A403DAE434FBA11779496EAFBDDE8, A9BF489CCA7D3BEF074126AA393A2A044277BFD28B4340208771107BE3467834 ] C:\Windows\System32\adhsvc.dll
18:24:36.0876 0x099c  C:\Windows\System32\adhsvc.dll - ok
18:24:36.0876 0x099c  [ 4BA57ED44973409C15406EE0CAD58778, 1110AA8A14D5AE41E37F1C9E519C143DCA31E6797525861E40B14EE723588912 ] C:\Windows\System32\sqmapi.dll
18:24:36.0876 0x099c  C:\Windows\System32\sqmapi.dll - ok
18:24:36.0876 0x099c  [ D7109186046CC1AFF17BDBD192E00308, A58CA744DC1E0D896A20E406B6B20AC1EE55B2CF48FE2A927CC7E10169A0D2E3 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WMINet_Utils.dll
18:24:36.0876 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WMINet_Utils.dll - ok
18:24:36.0892 0x099c  [ 824BC775A6B475D872431F6B36DD8BA3, B36C99A9B76DE63CE08794C8BFC49081E2D35D4BB7F993B949DD681F8EB991F8 ] C:\Windows\System32\wbem\WmiPrvSD.dll
18:24:36.0892 0x099c  C:\Windows\System32\wbem\WmiPrvSD.dll - ok
18:24:36.0892 0x099c  [ 0E7C1B2D1ABEECFD24CC297E9E9BE05A, 465CE1ADC9D45C481C013C475B144F5677FC176E37746A3DA2326CD85AB70BE8 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Compba577418#\c9a7382a4f3e988b25ec829e08e118fd\System.ComponentModel.Composition.ni.dll
18:24:36.0892 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Compba577418#\c9a7382a4f3e988b25ec829e08e118fd\System.ComponentModel.Composition.ni.dll - ok
18:24:36.0907 0x099c  [ E5577EFE9987D1F08D34D423CA6D900C, 6B71EB93B51F8748EBBEBBED8FA226000647A8B29EBE3127E94365872FEDDFF4 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.Communicator.Interface.dll
18:24:36.0907 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.Communicator.Interface.dll - ok
18:24:36.0907 0x099c  [ 0F50763230474F5805D01AB47BC5478D, 69909A7F1B024250B13CBFFC6F6EA65DFFFD2FC7E096485B4EBC5B8409EE6B00 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.SpeedupConnector.Interface.dll
18:24:36.0907 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.SpeedupConnector.Interface.dll - ok
18:24:36.0923 0x099c  [ C6E861EEAC78BB08EE71579EE89C9090, 4E55A17CA3E3DAE84C7A23D3BA9695078B59A3D8D57406CF8EC3D572A0DD7114 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.NativeCore.dll
18:24:36.0923 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.NativeCore.dll - ok
18:24:36.0923 0x099c  [ 5D4ADFA067F7760F6663E0B66768CDE2, 59EB501C1F735D16E1501DA1A47075DF514A90D1A976638602BD768D843DD3C1 ] C:\Windows\System32\wbem\wbemprox.dll
18:24:36.0923 0x099c  C:\Windows\System32\wbem\wbemprox.dll - ok
18:24:36.0939 0x099c  [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A1F39B71078F608 ] C:\Program Files (x86)\Avira\Launcher\msvcp120.dll
18:24:36.0939 0x099c  C:\Program Files (x86)\Avira\Launcher\msvcp120.dll - ok
18:24:36.0939 0x099c  [ 1824052F17B12B5D7B21445B869EE9F2, 594AF9749A9ADE6B4DA8C3FC29ABAD75B2D4B63460C5B424279A8889EF04F244 ] C:\Windows\System32\ncobjapi.dll
18:24:36.0939 0x099c  C:\Windows\System32\ncobjapi.dll - ok
18:24:36.0954 0x099c  [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5E7058BC3AB615F ] C:\Program Files (x86)\Avira\Launcher\msvcr120.dll
18:24:36.0954 0x099c  C:\Program Files (x86)\Avira\Launcher\msvcr120.dll - ok
18:24:36.0954 0x099c  [ 5FE61B0E223FAC7316526A7B588E9F2D, 5AA77AA71A3BD0E0A6AB64A0771E51D3B1055A8D20D2A328C6BF77747633660B ] C:\Windows\System32\wdscore.dll
18:24:36.0954 0x099c  C:\Windows\System32\wdscore.dll - ok
18:24:36.0970 0x099c  [ B2CF1AF98C13B3C19FDD7EF1EF56C05F, 016BE1B76DE48572DABBF20797ABAD87F73FB1CBD0A8E293D69B8CA6A1063550 ] C:\Windows\System32\wbem\wbemess.dll
18:24:36.0970 0x099c  C:\Windows\System32\wbem\wbemess.dll - ok
18:24:36.0970 0x099c  [ D448EBA9488239029EDC8E7B8E792DA6, 92AC256136E01199FB59F36E14F695EB9D45CE5C86E5A60A0375ECF0E3601250 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.Communicator.dll
18:24:36.0970 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.Communicator.dll - ok
18:24:36.0986 0x099c  [ 7A3073AF1B3823191976F300B525F750, DF01B6AC1A7EB68ADFFED20ABB041FE93CA2EB705095E2265535384958AFB47F ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnector.dll
18:24:36.0986 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnector.dll - ok
18:24:36.0986 0x099c  [ D19A1955ACA323E305F27FCDB505299A, 38BB649802BDFD45819D856817473A5F8696C79487C796BC8840F8C7BAAB37CF ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.BrowserExtensionConnector.dll
18:24:36.0986 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.BrowserExtensionConnector.dll - ok
18:24:37.0001 0x099c  [ 5F74336BD63FEDBD6F9514344441C96A, 7016AE26644A93420DF723187410EDCA3ADA1F574C9576DCAC8070E5A1D54BFE ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.SpeedupConnector.dll
18:24:37.0001 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.SpeedupConnector.dll - ok
18:24:37.0001 0x099c  [ 6E98157791491AEBF64B1392293E48A7, 89E6499C150341730113DBA193C0F778FC809E3AAE49A9227FC11A026DACD5EE ] C:\Windows\System32\nci.dll
18:24:37.0001 0x099c  C:\Windows\System32\nci.dll - ok
18:24:37.0001 0x099c  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] C:\Windows\System32\drivers\tunnel.sys
18:24:37.0001 0x099c  C:\Windows\System32\drivers\tunnel.sys - ok
18:24:37.0017 0x099c  [ 3296103B49D3E7345AA51A0991222DD3, E1DDD91D3BBE82C710E99ABD1EEFC2B55FD5C15CEDB3FBF180385AC24DD6FD32 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\1c7a457d4b8d2639fde389692c9e4e22\System.Configuration.ni.dll
18:24:37.0017 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\1c7a457d4b8d2639fde389692c9e4e22\System.Configuration.ni.dll - ok
18:24:37.0017 0x099c  [ F40974EAB7AAE725B7BFDF6C225ACECF, 8261187219F87B787825023713E70CBB9315F25E6BDB168A2F80847457EA102C ] C:\Program Files (x86)\Avira\Launcher\WebSocket4Net.dll
18:24:37.0017 0x099c  C:\Program Files (x86)\Avira\Launcher\WebSocket4Net.dll - ok
18:24:37.0032 0x099c  [ 218F874A78CB670172280A39A58B8F8A, F5DFBC4502FBA2FB430C578744040C88129C94A3E8468227120B692D20907D22 ] C:\Windows\System32\winrnr.dll
18:24:37.0032 0x099c  C:\Windows\System32\winrnr.dll - ok
18:24:37.0032 0x099c  [ F916298AF3C6AC9887427E545C7E3A69, 5B346CED483C70A8B3A1B54E342D0522225CF56A5260AC5FF9C02324D9605B6D ] C:\Windows\System32\pnrpnsp.dll
18:24:37.0032 0x099c  C:\Windows\System32\pnrpnsp.dll - ok
18:24:37.0048 0x099c  [ 4CD5B246B2DB81DC403B7C9041456B0E, 333D19A56324AC3916B93DCD51EF3AFAD15256754EC306F0BE308B55352C1B37 ] C:\Windows\System32\NapiNSP.dll
18:24:37.0048 0x099c  C:\Windows\System32\NapiNSP.dll - ok
18:24:37.0048 0x099c  [ 6E639FDBA5E9FA5974EF24412FEA30BF, 07ECAE0B0726FB46D4D13A5B5ACD7CBE72F93F9BBED79EB7EFBC9F685725CFC1 ] C:\Windows\System32\sc.exe
18:24:37.0048 0x099c  C:\Windows\System32\sc.exe - ok
18:24:37.0064 0x099c  [ E90A3C2460984362BE38F572842C890A, 11EB6472B843FCF4CCDAA9C67EBDA071748AAE50C3D150C13143C6F90A352078 ] C:\Windows\System32\activeds.dll
18:24:37.0064 0x099c  C:\Windows\System32\activeds.dll - ok
18:24:37.0064 0x099c  [ 99CAB148AACA7BE421384A763EAF125B, 5FF68307DB69E8816DF83A8206FF0EF632033ECFE181975C45A3D279D7C13061 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\06d95097745c54f7d28868ff547803c4\System.Xml.ni.dll
18:24:37.0064 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\06d95097745c54f7d28868ff547803c4\System.Xml.ni.dll - ok
18:24:37.0079 0x099c  [ 138A81702EEC01DC703541710F801172, C94F44844D5C4771BD4725C87A30340375E92170797759C9DAA9CA581F48FA96 ] C:\Windows\SysWOW64\fltLib.dll
18:24:37.0079 0x099c  C:\Windows\SysWOW64\fltLib.dll - ok
18:24:37.0079 0x099c  [ E7CD6B5449030F4F9B29C742664B63B3, 290C95E4865E4F72EB849C458F8AE76BB31F86D20C9C02D2BDF075CA653D6E12 ] C:\Windows\System32\adsldpc.dll
18:24:37.0079 0x099c  C:\Windows\System32\adsldpc.dll - ok
18:24:37.0079 0x099c  [ 0488E461EEE18F5CFCE7C1774BBFCBB3, AE7BF9A458547DE3454958320CA97F65EF03430825117C96E53D8D53C7450E17 ] C:\Windows\System32\adsldp.dll
18:24:37.0079 0x099c  C:\Windows\System32\adsldp.dll - ok
18:24:37.0095 0x099c  [ EF09E9BCD6D5B50CCE36275898768D20, 0EB5EA15B6C61AF05210749B12978BE8F3A4040229474C6503EB6D5CC2049B56 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\f9eb8fdbc1b3cd25a5b187ea30e77d6c\System.ServiceModel.ni.dll
18:24:37.0095 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\f9eb8fdbc1b3cd25a5b187ea30e77d6c\System.ServiceModel.ni.dll - ok
18:24:37.0095 0x099c  [ CE6D08350D0A1278E9A97D94023D1800, 54AACAADDD25CC44B59A7637C3A1E7E3A8392CC6D22F4D2C5A202D29BF44AFC1 ] C:\Windows\System32\wbem\WmiPrvSE.exe
18:24:37.0095 0x099c  C:\Windows\System32\wbem\WmiPrvSE.exe - ok
18:24:37.0111 0x099c  [ 48A910DF8C5F608540B61C942D3C597B, 0CB05F754D1235E565D89214DEC194C590D5FC83B8AE25866ED225458E93AD8E ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll
18:24:37.0111 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll - ok
18:24:37.0111 0x099c  [ 40C7CB3674BB04E06A523D50417A5451, 6D47A35C0F191D0AB21BC514193BCF14D7C4DE6DC2D1923D63FCC04726ECA5D9 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\e0385d2ccd8766063e53bf96510a9350\System.Transactions.ni.dll
18:24:37.0111 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\e0385d2ccd8766063e53bf96510a9350\System.Transactions.ni.dll - ok
18:24:37.0126 0x099c  [ BFC0069A46E1D1F38AFB253F76964471, A52ABDD2018F0D9C31CF08668A848E85897A7FB646F5082BA5DBD7000593011E ] C:\Windows\System32\wbem\wmiprov.dll
18:24:37.0126 0x099c  C:\Windows\System32\wbem\wmiprov.dll - ok
18:24:37.0126 0x099c  [ A34F0F042C40C62E35034EF2C5920C29, BEB1CEC87CE657DB2E0D9C0BBDED81F4C27B1ADCECC8E0DEA3D4C2FE6FF54412 ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
18:24:37.0126 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll - ok
18:24:37.0142 0x099c  [ 4E2721B14E0BAF0DDFB7CD496F3AA7A2, 0FB625C02D97B650F104DC118B6FBBECC43AFE452E8DC0D54AA003EC492D496D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\7d61ab80c44108150bad37e8d916e220\System.Runtime.Serialization.ni.dll
18:24:37.0142 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\7d61ab80c44108150bad37e8d916e220\System.Runtime.Serialization.ni.dll - ok
18:24:37.0142 0x099c  [ A3FEC1E5FB703CB8B3E5A1FC3DAC5931, 8CB6737A8F77866AA0C867EC3916C64E963FE37CA33F55B41A472BDA47344995 ] C:\Program Files (x86)\Avira\Launcher\ServiceStack.Text.dll
18:24:37.0142 0x099c  C:\Program Files (x86)\Avira\Launcher\ServiceStack.Text.dll - ok
18:24:37.0157 0x099c  [ 3C9420A013661B401791494CB9C7AF91, F5CE37262FC9DA3AA595F5C969CED7626528348F556C18F943EEC325BB0A0746 ] C:\Program Files (x86)\Avira\Launcher\NLog.dll
18:24:37.0157 0x099c  C:\Program Files (x86)\Avira\Launcher\NLog.dll - ok
18:24:37.0157 0x099c  [ F0A2FCF84B1687BB124091946B18E106, 5F78D0A69130BAB2DF3EB7648B01A9AC689C6B3624FC7FBE3CA84EE5FF5EB043 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\579202ba970d73dae32cc3a5c68af8e2\WindowsBase.ni.dll
18:24:37.0157 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\579202ba970d73dae32cc3a5c68af8e2\WindowsBase.ni.dll - ok
18:24:37.0157 0x099c  [ FD8C4B599C70092912B0144932467699, 2FFFC2A8BC33512F1B08EC9BA680EA12A09B47110EBB32DDB1EE85B31EC06E7F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\ca77cfc1da7241e2dd280b446dc7b92b\System.Xml.Linq.ni.dll
18:24:37.0157 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\ca77cfc1da7241e2dd280b446dc7b92b\System.Xml.Linq.ni.dll - ok
18:24:37.0173 0x099c  [ B7389DFFC7B21C2330CE9EAD61621A84, FB2375254BA55243AF2ED7F4EF48DDD81CBDD421FC7CDBD1B4F340B8F08F3CE0 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnector.Interface.dll
18:24:37.0173 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnector.Interface.dll - ok
18:24:37.0173 0x099c  [ 7C359500407DD393A276010AB778D5AF, A4009288982E4C30D22B544167F72DB882E34F0FDA7D4061B2C02C84688C0ED1 ] C:\Program Files (x86)\Avira\Launcher\Ionic.Zip.Reduced.dll
18:24:37.0173 0x099c  C:\Program Files (x86)\Avira\Launcher\Ionic.Zip.Reduced.dll - ok
18:24:37.0189 0x099c  [ 5334CAA14F31D307AAED03D8667BB40D, 86C57089D494A2D5D8FA15851B2639BC4C2DB01133AC44E8AE089E25C514EBD6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\bdec9c7688afbbb0209e3a43dcde5079\System.Data.Linq.ni.dll
18:24:37.0189 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\bdec9c7688afbbb0209e3a43dcde5079\System.Data.Linq.ni.dll - ok
18:24:37.0189 0x099c  [ FE5FEFE66C2AF6309F0460621F5DF3F1, CDDD4E2E142F4780F6807FFFEB9D9C8F1DB89A501027D09C851EA347400D7610 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\e3abc4d3f7fef760d13bf957613960cb\System.Data.ni.dll
18:24:37.0189 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\e3abc4d3f7fef760d13bf957613960cb\System.Data.ni.dll - ok
18:24:37.0204 0x099c  [ E25A714FFE55E8A913DE75227ABF6CD0, 9510C4D37AB897D33EFD51D720D4DEA052745EACAB86190C9086D284E202A3FB ] C:\Windows\System32\wbem\NCProv.dll
18:24:37.0204 0x099c  C:\Windows\System32\wbem\NCProv.dll - ok
18:24:37.0204 0x099c  [ 2413B3D9DC279F21FAC19E5F82F3988A, 90E689DE0C08126CFAB0D01DB5BAB5BE3797AA7BF630B129AF8777FBE296DE78 ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
18:24:37.0204 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll - ok
18:24:37.0220 0x099c  [ 149126216A694E6BA84E92ECA77AAE3B, AEAD8D801E7A6AB0F2BE90F0642B668747C7FD0C056492B105EF3290D6F40BFA ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
18:24:37.0220 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe - ok
18:24:37.0220 0x099c  [ 1C683FB45C6CE0BB8A74BB0B1392599D, E3B810A46BAB0E1A08C37E31EDC419B076ABB5D8A1DA4D3B8A5774998CF1004A ] C:\Windows\System32\VAN.dll
18:24:37.0220 0x099c  C:\Windows\System32\VAN.dll - ok
18:24:37.0236 0x099c  [ AA11E1368EEB237DD100BAC6AFFE1C57, A76074BDDDB3760E5D7EFD7131FDD2136321507EA2094FFB568EFA7D7AAE82BF ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
18:24:37.0236 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe - ok
18:24:37.0236 0x099c  [ 4A7C441D99D86704D194E7678873B95D, 455D9C6B050597BABED1A52947717E031AC9A00094ECF13FE50077BC8BCF3821 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
18:24:37.0236 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe - ok
18:24:37.0251 0x099c  [ 695E41AA2B661C1E1F5F4118DC6C2637, 029FFF9DE44FCA35B75FDD28A00ACF62558F53983F2E7CEBBEB4A3FBD4C3FDCA ] C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\fbb07ef2f687508f75bfeacd97f2453b\SMDiagnostics.ni.dll
18:24:37.0251 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\fbb07ef2f687508f75bfeacd97f2453b\SMDiagnostics.ni.dll - ok
18:24:37.0251 0x099c  [ A2A6F802D87CCE216C39B045FC118F60, 2CDE46BD38984D6382CA6E7E8055FFFE5E7110ABA582DAA463F20171CB465E07 ] C:\Windows\SysWOW64\hid.dll
18:24:37.0251 0x099c  C:\Windows\SysWOW64\hid.dll - ok
18:24:37.0267 0x099c  [ F295C33C075A2F47A19F516FF2253F81, 297E205DF14FCF0A37BD760F19198CD8A52296B214BE3E93C230074BAAD66B95 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\d6180cfaac57962ca62186c1151b5f7f\System.ServiceModel.Internals.ni.dll
18:24:37.0267 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\d6180cfaac57962ca62186c1151b5f7f\System.ServiceModel.Internals.ni.dll - ok
18:24:37.0267 0x099c  [ C22AA4576B81ECDB529BCD343C9438A8, B6EB13438CFAC7BBA92C238B200FBD7EB99732233ED26D1EF039CC3FD5B7189E ] C:\Program Files\NVIDIA Corporation\Display\nvsmartmax64.dll
18:24:37.0267 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvsmartmax64.dll - ok
18:24:37.0282 0x099c  [ F584C975B1B2FCFD3189DB54E8BF190B, AB0AC13F78F83B00E643436F1F9EFD019CC0E91554E6AB0ED7E2E69582FE937C ] C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
18:24:37.0282 0x099c  C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - ok
18:24:37.0282 0x099c  [ EB14763BEE1FD202CCDA05B32B37EFF9, 270909B1F9871F52D0BD817B04B021DF332EE5D63C222A7BED5EE2CC78BC280E ] C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPlugin.dll
18:24:37.0282 0x099c  C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPlugin.dll - ok
18:24:37.0298 0x099c  [ D1EACE1F5F7C97AA2F8A1F5A28577209, F5EFE7E3A106F1BA9F6C3DDC1E37708F583F856F1F4112E49982706F47C7B7DF ] C:\Windows\SysWOW64\pcwum.dll
18:24:37.0298 0x099c  C:\Windows\SysWOW64\pcwum.dll - ok
18:24:37.0298 0x099c  [ 84EC53F754A543E3DD1C1361A8A8A55A, 05240540A1E35CCDD49C08B4E80002AD784C08315F9208AA644E3A66973AB1E2 ] C:\Program Files\NVIDIA Corporation\Update Core\NvBackendAPI64.dll
18:24:37.0298 0x099c  C:\Program Files\NVIDIA Corporation\Update Core\NvBackendAPI64.dll - ok
18:24:37.0298 0x099c  [ C4A48D5DCE8C9CEC38E4715ECD725C0E, E4703592054211DE35000BF9BFB465228A6DE5AB01918C1B6B82323A6C71766F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\a30a3ec39f5595c6e20b6a2a86bdb0b2\System.IdentityModel.ni.dll
18:24:37.0298 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\a30a3ec39f5595c6e20b6a2a86bdb0b2\System.IdentityModel.ni.dll - ok
18:24:37.0314 0x099c  [ 7F14C2AD5C815C34EC2C0050D61EF3BC, 2F8663A9766E7708B09359B6D1E48012D18E5FD82288C05D432A966F249F7D66 ] C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPluginr.dll
18:24:37.0314 0x099c  C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPluginr.dll - ok
18:24:37.0314 0x099c  [ 0C7CD4441746533B47B5790F643F0550, C5C858C5E6232B6C63B1BCC5D12774B546F4F63AFB5BA5B821F1ADC002A2912E ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
18:24:37.0314 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll - ok
18:24:37.0329 0x099c  [ 046DDF9B31BEC14D03CCC97DD728A4D1, D29F49F870B27553E13F9C1486D9B27A27C41FBEC7ACEC77EDFD5552C941E710 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
18:24:37.0329 0x099c  C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe - ok
18:24:37.0329 0x099c  [ 67AB4219E8FCFCA31FC50073DD3D0D11, FF53EC9A315AB189AFAE999D608DE63C0FE2F46E743F4176423AD270183549AB ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
18:24:37.0329 0x099c  C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll - ok
18:24:37.0345 0x099c  [ C9F3DE7073E02232E053DD6FBBD0BF8D, E87D7F6CDBBCC31A9ACA2B5AD15B299637A6B249628C4BCA2D9CE50A250951C0 ] C:\Program Files (x86)\Avira\Launcher\System.Data.SQLite.dll
18:24:37.0345 0x099c  C:\Program Files (x86)\Avira\Launcher\System.Data.SQLite.dll - ok
18:24:37.0345 0x099c  [ D98D3EC7D6A66D865CF47085BDB4B874, F96FF2BA1553F7B286EA292F7423FCE63725D933C14B77AA1E7AD76366D01A7D ] C:\Windows\SysWOW64\nvapi.dll
18:24:37.0345 0x099c  C:\Windows\SysWOW64\nvapi.dll - ok
18:24:37.0361 0x099c  [ 8B623D50C30C128C027602637E6EB7F3, 0C668522C11FE0E774705C20AC3232C5B917FE9CF8B70A525011EF17AF7436F3 ] C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll
18:24:37.0361 0x099c  C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll - ok
18:24:37.0361 0x099c  [ 4EEF6A75CF8FBF46539DBBF05C6193BB, 987EE38A6694CBBCBA9099C352A3D1038CCA69E41F7ED32F453724CAD38F068A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Ente96d83b35#\c9ab71df4c1c005a0c93a84bc49a75c8\System.EnterpriseServices.ni.dll
18:24:37.0361 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Ente96d83b35#\c9ab71df4c1c005a0c93a84bc49a75c8\System.EnterpriseServices.ni.dll - ok
18:24:37.0376 0x099c  [ C227061F8A01B53C46D9550A5E075577, 660BD0F4131FDDDE91FCD1118BB4E993E684E74A4203CCE90B55B710CAA8A113 ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
18:24:37.0376 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll - ok
18:24:37.0376 0x099c  [ CDE61AA8EFFFEDF7A54525464018C300, 8E4E37D3F0155BBA7C437DD4243BC91A39A9CC3DAF619898D5853E226A9501A9 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avpref.dll
18:24:37.0376 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avpref.dll - ok
18:24:37.0392 0x099c  [ F51893C5D630647C4AEFB7A6094EA23D, A9C6DF8BFADAB576B85075A3B5FD22532FCD4169265706EE1ACA0D1B37046A03 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Ente96d83b35#\c9ab71df4c1c005a0c93a84bc49a75c8\System.EnterpriseServices.Wrapper.dll
18:24:37.0392 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Ente96d83b35#\c9ab71df4c1c005a0c93a84bc49a75c8\System.EnterpriseServices.Wrapper.dll - ok
18:24:37.0392 0x099c  [ 74DFF5F4F0762D91489B8C9BDB2CE194, 364DE76CB6DA9F972FADB061723662152A98238B8575F64294E3537639E46E61 ] C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnectorNative.dll
18:24:37.0392 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.OE.AvConnectorNative.dll - ok
18:24:37.0407 0x099c  [ C51482E44894E217D93F012BC8C9EB2F, C0B745F8E374420B6BEFB796A1B9F38E3888E529FCDAE47635A935B780E1EFEB ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdw.dll
18:24:37.0407 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdw.dll - ok
18:24:37.0407 0x099c  [ 90D381C32EC6AA318703E8D7AE81E46E, 59A05AFAAE39AD6F5168F11296E6B6B928D0BDBEB90D85DD9349DC02D21D653B ] C:\Users\Timm\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll
18:24:37.0407 0x099c  C:\Users\Timm\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll - ok
18:24:37.0423 0x099c  [ 28049F2F79B3ED885A5713F55AC56A66, 2A40229D224ED867A5C7671272800D7FCEAB787795E159269F25C565346C3EF5 ] C:\Windows\SysWOW64\cbfsNetRdr4.dll
18:24:37.0423 0x099c  C:\Windows\SysWOW64\cbfsNetRdr4.dll - ok
18:24:37.0423 0x099c  [ 3B122124BACF3F17A3336BD08E9D4D95, A397B636D47B92B617F59EFD49F392F133B97C01E6F6DE955473EF12476AEC27 ] C:\Windows\SysWOW64\drprov.dll
18:24:37.0423 0x099c  C:\Windows\SysWOW64\drprov.dll - ok
18:24:37.0439 0x099c  [ 1CF62E2D53F326C40BDC1FEE3DF11BCB, D1DCD0E561BC71908E411AFC212FC652E4AE2ADDB5E2ADCC009A4D2AF940348C ] C:\Windows\SysWOW64\ntlanman.dll
18:24:37.0439 0x099c  C:\Windows\SysWOW64\ntlanman.dll - ok
18:24:37.0439 0x099c  [ AF2A68F7890A680DAE0637EC49456A7B, B0CE5DDFD71D51356F77990C6F5212740E1B71578E815C3BAA59E242DFB8EA4C ] C:\Windows\SysWOW64\davclnt.dll
18:24:37.0439 0x099c  C:\Windows\SysWOW64\davclnt.dll - ok
18:24:37.0454 0x099c  [ 0CAC22201AF1F9A54CFCA93059C06A39, 847A23630C8C333ED3A9422926010845131F671A2B1100739312FEA440A142E6 ] C:\Windows\SysWOW64\davhlpr.dll
18:24:37.0454 0x099c  C:\Windows\SysWOW64\davhlpr.dll - ok
18:24:37.0454 0x099c  [ 8B4F5225B294504704C7DFEC3A8A28A7, 365A4AB0CE8876207F78B8DDC7B233BE5BA9F144182487A1F2DFF2A758C635A4 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdw.dll
18:24:37.0454 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdw.dll - ok
18:24:37.0470 0x099c  [ 77D142C3F1ED8F0061C91A21112AA3EC, D64623DCB8DB90A861B4F449CE78285361AACC7C65F91D10ED957B2E505B2364 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccfwmgt.dll
18:24:37.0470 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccfwmgt.dll - ok
18:24:37.0470 0x099c  [ C23C4D307E48BEF88AD38A8C3EC0C071, F9C5EEF60CF83619CCA134CACECC09E2F4DAEE94A562FAE75D5372782977BD46 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccfwmgtrc.dll
18:24:37.0470 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccfwmgtrc.dll - ok
18:24:37.0486 0x099c  [ 33F5EE33BAAD7DEF96DA4270D0F4B308, 97A554E73AFC4BA6C638DF14F77D61423CF37C25A61509CABB17E930812C289D ] C:\Windows\System32\wbem\cimwin32.dll
18:24:37.0486 0x099c  C:\Windows\System32\wbem\cimwin32.dll - ok
18:24:37.0486 0x099c  [ 67795563AD0A94A1BFA0BE8ECAFD7CBE, 8B171E19F934B198AF8EE5D1297E1FA2276C4589EEADFB81F6A62F12A60E5BD1 ] C:\Program Files (x86)\Avira\AntiVir Desktop\CommonImageRc.dll
18:24:37.0486 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\CommonImageRc.dll - ok
18:24:37.0501 0x099c  [ 6B374D279DC423FE69DB8DD1401E84FC, 50BF1E29C1FF9979099724FB3C4FD8EECBE12D70FE3334DDC5EF94482B93FF52 ] C:\Windows\System32\framedynos.dll
18:24:37.0501 0x099c  C:\Windows\System32\framedynos.dll - ok
18:24:37.0501 0x099c  [ E864425BF77080E8D780A3AEB3AF7E13, 4508C51327232983802B514704B70B9298B2952214F6EB454597DA5DEA2D569B ] C:\Windows\System32\wmi.dll
18:24:37.0501 0x099c  C:\Windows\System32\wmi.dll - ok
18:24:37.0517 0x099c  [ EE3ED9FF4BE5D79556EB8CC1BC889A74, DCF694734190FDC1F382F7118E58C2DED979DFCB207ECD5D33F3FD589AD17E29 ] C:\Windows\System32\security.dll
18:24:37.0517 0x099c  C:\Windows\System32\security.dll - ok
18:24:37.0517 0x099c  [ 35EF036F6EE1FAFD6CF49EBE9F2471C4, E05E3B52D2A414BDE89D76D9D2AD3F5E5475F5B44D44DB4036F2DC07895AEB22 ] C:\Windows\System32\browcli.dll
18:24:37.0517 0x099c  C:\Windows\System32\browcli.dll - ok
18:24:37.0532 0x099c  [ D3DDD474C0128EBEC4B4A48896A1D2DC, 73A1A421233F6DECE8B3646685814CF1B11A8B3348427D9F9EE9D2489D5A86DF ] C:\Windows\System32\schedcli.dll
18:24:37.0532 0x099c  C:\Windows\System32\schedcli.dll - ok
18:24:37.0532 0x099c  [ 05D2C36ED18A897C74BEE2FC835DED56, E10ABA0C5DADC6F460FBB886BC9DBB20C26860EAD58A98483D09D45A4F2D2003 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmguard.dll
18:24:37.0532 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmguard.dll - ok
18:24:37.0548 0x099c  [ 1D659F8BA8390A9AB5201AA79287C2EA, A960D451BD7EB54182917457F64FF2DDD51335AA12FB60F272CE403CCE640766 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmgrdrc.dll
18:24:37.0548 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmgrdrc.dll - ok
18:24:37.0548 0x099c  [ C1095CA79F7B2F599AA6AEC50545A6F8, FBF798FB1B5D94E4BF25D330563AE05B5C29504D456511D70AAF44C653FB8E6F ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgen.dll
18:24:37.0548 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgen.dll - ok
18:24:37.0564 0x099c  [ 4D1FA521607A9F48175FAC7D8FE699AD, BFE9538881DE540C4312FCB7C7CB72FBA7051DEC2A86B5123D03EC8E6579766C ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenrc.dll
18:24:37.0564 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenrc.dll - ok
18:24:37.0564 0x099c  [ 61F140A3A2BA12E5BBBD89A1036AF54C, A458A8B7F8BD533598E418E91AC010F3C4C4659CDDBABF2252D48BB845150601 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenw.dll
18:24:37.0564 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenw.dll - ok
18:24:37.0564 0x099c  [ 8399DD1B62290EA509F1DE90DA24F574, 8DF0571D185B6AC5436A576715C552DD96388101623FB45FE106FBCEFC3377D4 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccguard.dll
18:24:37.0564 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccguard.dll - ok
18:24:37.0579 0x099c  [ EF8D1C7AC58570CA8060B1239073C9B7, 4ABB9B75CBAF4626FA1062090D992C81EEE55207FED073A5D970221EB0E7F647 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdrc.dll
18:24:37.0579 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdrc.dll - ok
18:24:37.0579 0x099c  [ F18A084B60E0DAA0F27E4626E4EB1BB5, A28A5EB301A89B3778D5AB0D220C3B045187A53577446D64CEA9093156ABF68B ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrd.dll
18:24:37.0579 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrd.dll - ok
18:24:37.0595 0x099c  [ 596DB1C7D1FE687E87063FA3DB440E65, C427C990ECD7F4952549F010367238F3306E9B5DDE2B216CDDF439A4F9FC513A ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdrc.dll
18:24:37.0595 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdrc.dll - ok
18:24:37.0595 0x099c  [ C9A111FA11FDEA353083BC4E4D263950, 2AFE6C4E086C49FCDE78F96A7AC6A00CDEE3AEE58E38D1F188A1B26E45AEC79B ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdate.dll
18:24:37.0595 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdate.dll - ok
18:24:37.0611 0x099c  [ F01325D93FF010885F46829E87378E39, 7FE683833F1A9E0C7A4AF6E4FF6E826CF3217BB50EB6C14339F75E55AB84BB49 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdrc.dll
18:24:37.0611 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdrc.dll - ok
18:24:37.0611 0x099c  [ D4CE5B98FD788BB696EDD0EE71F7EBE7, C2504F294744F803023E5E3DDCBAB01BBB7E00A61D7B9146E23954F519B9D298 ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclic.dll
18:24:37.0611 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\cclic.dll - ok
18:24:37.0626 0x099c  [ EE8160D2D7E32DEC59FBAF0EB0312911, 15DDFF3B3CFD4B47B415D995853B5C3FA82469B7430A7FA32D90E9AD7E1A1F0B ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclicrc.dll
18:24:37.0626 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\cclicrc.dll - ok
18:24:37.0626 0x099c  [ 24109C9A2B2B948A8D38F70DFDC33961, AF9F803B35B01AB67A83DA96798C60BBD462B2EDD1507252101E93B5AA7413C1 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccev.dll
18:24:37.0626 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccev.dll - ok
18:24:37.0642 0x099c  [ BBAF5C9B6505FF368BDD781398BD0FC7, 2C87B901380ED5E36F41BB91F2F9C34D3C6B1F60854A219D23D8EA9FBD414D71 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccevrc.dll
18:24:37.0642 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccevrc.dll - ok
18:24:37.0642 0x099c  [ 00BEE125BD6C6DD53D31E07FFF8B0326, 1A294F4416921E4A1549B3211DBF5E68AA74FEF7CCC91D5114D5C00647F61BF9 ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclicw.dll
18:24:37.0642 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\cclicw.dll - ok
18:24:37.0642 0x099c  [ E0BBCFB05B2937F54E8FEB35A521D4A0, 99BA0E71BF63733291214D57C76103CE4A0BEAA72B01CCE2EA7DC2EFE5558AA9 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdw.dll
18:24:37.0642 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdw.dll - ok
18:24:37.0657 0x099c  [ 599519B9BBD0517C3E0BEEF893BD7D89, 7C1D148B0F459C0C5684DB2B03878776A8124ACC74C72546C602CA389760BBEC ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\fadd99ca6318632b3f3d4f31eb91db7a\System.Management.ni.dll
18:24:37.0657 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\fadd99ca6318632b3f3d4f31eb91db7a\System.Management.ni.dll - ok
18:24:37.0673 0x099c  [ 92872E4CACA02FDE40BC0FCB39DE2EA4, 4F076EA79050861F41C74EFC4DD46F94E40F5DFA1B4F985BEC5B56B674AB882B ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\WMINet_Utils.dll
18:24:37.0673 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\WMINet_Utils.dll - ok
18:24:37.0673 0x099c  [ 38B74E6C5632E081987EEDE271DF204C, 26C3D5F464A0740ED2D7D5DE927B7298AC0200808C2F7C458CA13CF9A1290030 ] C:\Windows\SysWOW64\wbem\wmiutils.dll
18:24:37.0673 0x099c  C:\Windows\SysWOW64\wbem\wmiutils.dll - ok
18:24:37.0673 0x099c  [ DFF3C6C2FB83AE225DBC40F3BF4493B0, DB9E2591188203695738F7BB4F45CE55921D7CF6B3A15E849A1622CB891B55F5 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avbb.dll
18:24:37.0673 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avbb.dll - ok
18:24:37.0689 0x099c  [ CE8D44F316167C628AC199C27069641D, 633440333FE43B038C3D27C32C9A493CA5678166A91CC17161D0E4B60D820D57 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpavgio.dll
18:24:37.0689 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpavgio.dll - ok
18:24:37.0689 0x099c  [ 74DD83A52BB2589347712AF5216470FA, FCAFEB4EB7FF7E7C3E4FBD0BA46EF694275C06F99D679900AD3BAFC19BC847BD ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgio.dll
18:24:37.0689 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avgio.dll - ok
18:24:37.0704 0x099c  [ D778CBE4325E9AE5AEB91D10E4271120, 461BE93657B6864F2A1F867A9121FBB9F069E2EE4589F14B1AE276EC9B2FA618 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avesvc.dll
18:24:37.0704 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avesvc.dll - ok
18:24:37.0704 0x099c  [ 6CC70683E9BE545FB70047BDCCB425C3, 1445F4883A52129588D48DB67444C5817830465B091DAF6ED323E7B2749AC381 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpsauth.dll
18:24:37.0704 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\gpsauth.dll - ok
18:24:37.0720 0x099c  [ 733E1DABFB78B007B0B78951AC2A5212, 4C62785DB4E93AC1EE9C298883E1C78D7BA3D1A44B2B78249E48FD6DF7EFA57D ] C:\Program Files (x86)\Avira\AntiVir Desktop\guardmsg.dll
18:24:37.0720 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\guardmsg.dll - ok
18:24:37.0720 0x099c  [ F198F0A36EE157545707254ABA128358, 27C6AA979FEBC815C594C97F913FF3F45C5BCABB6E6E5F42FC177802C0F68B56 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
18:24:37.0720 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe - ok
18:24:37.0736 0x099c  [ 30902CFAFA65013AF0C33F9A44B3AC78, B21E807FFB79A3A41C69FCF46925076687ED7CCDC8F312BC229764E290C1E09D ] C:\Program Files (x86)\Avira\AntiVir Desktop\avipc64.dll
18:24:37.0736 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avipc64.dll - ok
18:24:37.0736 0x099c  [ 7BAF02A932997F0B1E73A7E46609A1E9, A76DB41F44CE08320DB4218BE4F022AE9332E0F845EB100F37DBD9168B48F107 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avreg.dll
18:24:37.0736 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avreg.dll - ok
18:24:37.0751 0x099c  [ CDADEFB3F75E59BF311686E66510385E, F1B9BB1B669DB1782A82B7EC225A6731979104AD76EAA6C548143F22E0CE2A33 ] C:\Windows\System32\TaskSchdPS.dll
18:24:37.0751 0x099c  C:\Windows\System32\TaskSchdPS.dll - ok
18:24:37.0751 0x099c  [ 215E91FDB7DB4F393A0C28695B75B388, 2DE870FBB4C83AEA80EBE74FDFDBEC3D9CB350EB3EE75B031721304BA05496DC ] C:\Program Files (x86)\Avira\AntiVir Desktop\msgclient.dll
18:24:37.0751 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\msgclient.dll - ok
18:24:37.0767 0x099c  [ 93840CEAE3F9BBD87886231E3EB5B975, 0EE53C76AAC71AC9BC667FCE18B343C966C9A543577E41EF0741AC81C1795652 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avesvcr.dll
18:24:37.0767 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avesvcr.dll - ok
18:24:37.0767 0x099c  [ 3358CAD1887DDDDD2A36B7796B579292, 40BA1A836276C2AA78914F294661C3C918F2D6DFAA9D6EF3FEB6D1EE3B07F584 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
18:24:37.0767 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe - ok
18:24:37.0782 0x099c  [ 3BEDC2D4AB8BB5AEE613F1AFD46A694C, C0A48C50610BF2CEA2DD17B086AECB9DABCCF04167C71DDCEF937A23BFCA87FE ] C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE
18:24:37.0782 0x099c  C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE - ok
18:24:37.0782 0x099c  [ 6FD5165364D88FDABE4FA59E1768376F, B82D11E6FCC297F822E29A49D46C9985955C9F5676D107A397B00D0468F93504 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
18:24:37.0782 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe - ok
18:24:37.0782 0x099c  [ D6A94E56A6959F42EEFC9E102584D3E5, CBBC5EBCF5DEFEC5737BB96AC951A46B5A14E4BEDBBABFFD43713835232CA9E6 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\MSO.DLL
18:24:37.0782 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\MSO.DLL - ok
18:24:37.0798 0x099c  [ D0BAD4E2BCA23BD0DC9930EE4DEA6658, 2B71B72A13DF699C4E5A9C98EF2FF13FDA82C7E6D534A0B61B2E058CB0BACA7D ] C:\Windows\System32\dafupnp.dll
18:24:37.0798 0x099c  C:\Windows\System32\dafupnp.dll - ok
18:24:37.0798 0x099c  [ 28B597A61C9AC9B59BC0573D70A62CBF, 032C095ECDAEEE800BD9C7AB08C089E7530A9DD09AE577D1612035F2BFFAA61C ] C:\Windows\System32\drivers\mwac.sys
18:24:37.0798 0x099c  C:\Windows\System32\drivers\mwac.sys - ok
18:24:37.0814 0x099c  [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] C:\Windows\System32\w32time.dll
18:24:37.0814 0x099c  C:\Windows\System32\w32time.dll - ok
18:24:37.0814 0x099c  [ 7E129DD27C8BE1E50939C9B56658D9B4, F137520C0B279AB3C36C7C7E7136C8FD195883849CB8A2AE22C7CF1CA2D9CA68 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\c7e09b0439d82fad4692c927601e898b\CustomMarshalers.ni.dll
18:24:37.0814 0x099c  C:\Windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\c7e09b0439d82fad4692c927601e898b\CustomMarshalers.ni.dll - ok
18:24:37.0829 0x099c  [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] C:\Windows\System32\drivers\WUDFPf.sys
18:24:37.0829 0x099c  C:\Windows\System32\drivers\WUDFPf.sys - ok
18:24:37.0829 0x099c  [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] C:\Windows\System32\ssdpsrv.dll
18:24:37.0829 0x099c  C:\Windows\System32\ssdpsrv.dll - ok
18:24:37.0845 0x099c  [ AC7C13C27F77C983CEFF2ED801E4D2C5, D5768AAF883BF9E7F27743B31A7768AA31E8251398479959A05F580270DBFD91 ] C:\Windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
18:24:37.0845 0x099c  C:\Windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll - ok
18:24:37.0845 0x099c  [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] C:\Windows\System32\WUDFSvc.dll
18:24:37.0845 0x099c  C:\Windows\System32\WUDFSvc.dll - ok
18:24:37.0861 0x099c  [ 3F0C03E5076C7E6B404F894FF4DC5BB1, 4E7EBED8410C83B73A23185AA94680143DA2933305CD6DEEFE8EC0B51B7EE6F3 ] C:\Program Files\KMSpico\WinDivert.dll
18:24:37.0861 0x099c  C:\Program Files\KMSpico\WinDivert.dll - ok
18:24:37.0861 0x099c  [ 1A54E3DF2CBB8DBE8A17C87BB07E3A7E, 264E6321FAE1CBF40DD8F718DF03015A6D8C1FCC28216590AAFE904045C1FDA3 ] C:\Windows\System32\WUDFPlatform.dll
18:24:37.0861 0x099c  C:\Windows\System32\WUDFPlatform.dll - ok
18:24:37.0876 0x099c  [ DB73333A13610B0EEC4EB2F475E2E66E, E95EFC5F6328C8C8E05B1E568D7D479635945E23CF0A68825073690C9BA7C0B6 ] C:\Windows\System32\sppwmi.dll
18:24:37.0876 0x099c  C:\Windows\System32\sppwmi.dll - ok
18:24:37.0876 0x099c  [ 81DAC9F3309A51C041545AF760CFDF06, 75453F2FA56507D2460ECFAF29F0584F360FA0410847A64ECFD0BF6592F70641 ] C:\Windows\System32\vaultsvc.dll
18:24:37.0876 0x099c  C:\Windows\System32\vaultsvc.dll - ok
18:24:37.0876 0x099c  [ 0F0BEECEB4ABAFA775279E2949E949E6, 26B3D5C340153E19CA7471A1B833F4DD6469731A70410D1D52406ECD482AFD11 ] C:\Windows\System32\sppcext.dll
18:24:37.0876 0x099c  C:\Windows\System32\sppcext.dll - ok
18:24:37.0892 0x099c  [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] C:\Windows\System32\netprofmsvc.dll
18:24:37.0892 0x099c  C:\Windows\System32\netprofmsvc.dll - ok
18:24:37.0892 0x099c  [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] C:\Windows\System32\wpdbusenum.dll
18:24:37.0892 0x099c  C:\Windows\System32\wpdbusenum.dll - ok
18:24:37.0908 0x099c  [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] C:\Windows\System32\DeviceSetupManager.dll
18:24:37.0908 0x099c  C:\Windows\System32\DeviceSetupManager.dll - ok
18:24:37.0908 0x099c  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] C:\Windows\System32\wdi.dll
18:24:37.0908 0x099c  C:\Windows\System32\wdi.dll - ok
18:24:37.0923 0x099c  [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] C:\Windows\System32\hidserv.dll
18:24:37.0923 0x099c  C:\Windows\System32\hidserv.dll - ok
18:24:37.0923 0x099c  [ E3203EC9AAE6A5675A7C051A49002AD1, C75AB6FB1503B0CF69D291BF07E3B9B5A654E8E5591AFBDC7570A5916613A2DE ] C:\Windows\System32\newdev.dll
18:24:37.0923 0x099c  C:\Windows\System32\newdev.dll - ok
18:24:37.0923 0x099c  [ F0DF4F8D9F1F8FA36BA30ACAC213D03D, 1DC17A432EED9612E9A1308B319FEC037930B79A5E03B292909A3B0031F60A34 ] C:\Windows\System32\PortableDeviceApi.dll
18:24:37.0923 0x099c  C:\Windows\System32\PortableDeviceApi.dll - ok
18:24:37.0939 0x099c  [ 03694A8350222AC9F0E8693986E92BE2, 44FB5A8143A5782CB2E6056B04B73CB8E967585BFBED6D98C4AB49CA5AAA3730 ] C:\Windows\System32\diagperf.dll
18:24:37.0939 0x099c  C:\Windows\System32\diagperf.dll - ok
18:24:37.0939 0x099c  [ 28C35503056748FA88499DAECF3D5557, 95CA9A24B5A782340D75A6268F8503513C4A51FDABE0897300471FD5EE78E960 ] C:\Windows\System32\npmproxy.dll
18:24:37.0939 0x099c  C:\Windows\System32\npmproxy.dll - ok
18:24:37.0954 0x099c  [ A0D15D8727D0780C51628DF46B7268B3, 5E23F3ED1D6620C39A644F9879404A22DED86B3B076EC4A898B4B6BE244AFD64 ] C:\Program Files\KMSpico\WinDivert.sys
18:24:37.0954 0x099c  C:\Program Files\KMSpico\WinDivert.sys - ok
18:24:37.0954 0x099c  [ 1062C1D05E95306D878FFFE0A23B84C0, 75E27BB97A24CB5161B3CC7C48B9F0A48B587643B8FBD56EC72AF0162F9B5EEE ] C:\Windows\System32\perftrack.dll
18:24:37.0954 0x099c  C:\Windows\System32\perftrack.dll - ok
18:24:37.0970 0x099c  [ 83F65B02082862BB470703C1F1C14946, 6E46EB4EC69ABCFC63AFB7EACD66E22D9265E5733B67EA991054E7F7BAE6812E ] C:\Windows\System32\SystemEventsBrokerClient.dll
18:24:37.0970 0x099c  C:\Windows\System32\SystemEventsBrokerClient.dll - ok
18:24:37.0970 0x099c  [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] C:\Windows\System32\IPSECSVC.DLL
18:24:37.0970 0x099c  C:\Windows\System32\IPSECSVC.DLL - ok
18:24:37.0970 0x099c  [ D2B109C5B869A81AD074CBE38C0ED658, 97E0F99237F3E32FDFB6B458C0D7846E95106CC0AA4E532CAB3F423C24D604AE ] C:\Windows\System32\WinSCard.dll
18:24:37.0970 0x099c  C:\Windows\System32\WinSCard.dll - ok
18:24:37.0986 0x099c  [ B4FC38795A0AFC18539E220F56348764, A7ACAD98BDE191EAE99E89145E476E92AE75AAA020406ABFFF36CC3DA2509A7C ] C:\Windows\System32\PortableDeviceConnectApi.dll
18:24:37.0986 0x099c  C:\Windows\System32\PortableDeviceConnectApi.dll - ok
18:24:37.0986 0x099c  [ 0BDB5190B3AFAEFF93800F149781F942, 7385F8DD65010ADF32EBF5F065C39FF18D8033F0A9BFF0DD9E619430EFF09B12 ] C:\Windows\System32\pautoenr.dll
18:24:37.0986 0x099c  C:\Windows\System32\pautoenr.dll - ok
18:24:38.0001 0x099c  [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] C:\Windows\System32\FDResPub.dll
18:24:38.0001 0x099c  C:\Windows\System32\FDResPub.dll - ok
18:24:38.0001 0x099c  [ 8EBC741DDE9409038262E2F317ED7CCE, 4544A5DB7CE4C45567A768CF6462FD8D1941AEA7F7D189E345618F0F81F3CB06 ] C:\Windows\System32\wer.dll
18:24:38.0001 0x099c  C:\Windows\System32\wer.dll - ok
18:24:38.0017 0x099c  [ EF745B98D81B8C462DB99FC8B5C4322A, 1B7AD50ADC8E6E89E9562F745437A2565B161E64EFEA289DF9CB7476A3D6808F ] C:\Windows\System32\msi.dll
18:24:38.0017 0x099c  C:\Windows\System32\msi.dll - ok
18:24:38.0017 0x099c  [ 205B59C8B291A707B24C97B123834E70, 04034B153F3D9EF07E08615449250EAA6A3930AE28EB58B1CC1A40D34A812BD0 ] C:\Windows\System32\pnpts.dll
18:24:38.0017 0x099c  C:\Windows\System32\pnpts.dll - ok
18:24:38.0017 0x099c  [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] C:\Windows\System32\aelupsvc.dll
18:24:38.0017 0x099c  C:\Windows\System32\aelupsvc.dll - ok
18:24:38.0032 0x099c  [ 300CEB105996CCFEEBE2B4AFB6B14D41, B881F6E958B073AA6342CAC4AF43D778BF436A3107C9E60F6D4F087A19C9A05F ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll
18:24:38.0032 0x099c  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll - ok
18:24:38.0032 0x099c  [ B344479C30A24B05C2E08EE35EF69530, 2D48C2C27E93DF1781760BAD773F9E41F11E93D0E504397610B9D8B611777253 ] C:\Windows\System32\certca.dll
18:24:38.0032 0x099c  C:\Windows\System32\certca.dll - ok
18:24:38.0048 0x099c  [ 647B3E3A60DED8DAECF4F798A058EADB, 9A9DE6F0781FF01512E965D44514CD60DC645DCE8ECAAF0B3001DBA7379BB917 ] C:\Windows\System32\srumsvc.dll
18:24:38.0048 0x099c  C:\Windows\System32\srumsvc.dll - ok
18:24:38.0048 0x099c  [ F99300CAF66307E295438355E9B11ACD, 3BFB0F6633011964B29ECA3BC54E6F7B79D99A01A16622F2196A935F6CDD30D2 ] C:\Windows\System32\CertEnroll.dll
18:24:38.0048 0x099c  C:\Windows\System32\CertEnroll.dll - ok
18:24:38.0064 0x099c  [ 034ED41F13D9C1845C1E081F05B640DB, E4E17BA0B22C464DE60A6BF68D4D035D1B838DE4F0361029DED1AE00503E135C ] C:\Windows\System32\appinfo.dll
18:24:38.0064 0x099c  C:\Windows\System32\appinfo.dll - ok
18:24:38.0064 0x099c  [ 448D8F8B51F785EAB56947D94EBDFC66, DFA1B360613DD5A8659313D7C390EE4989FEAF8D8BE0A75C3A617F90B8EA4E43 ] C:\Windows\System32\hnetcfg.dll
18:24:38.0064 0x099c  C:\Windows\System32\hnetcfg.dll - ok
18:24:38.0079 0x099c  [ 1DCD97010190EF9377E77AB0A846C720, AB55EFBAF5FFB4807FE893D334E053D6BE5C477F216A96808AE951186BBD431B ] C:\Windows\System32\DevPropMgr.dll
18:24:38.0079 0x099c  C:\Windows\System32\DevPropMgr.dll - ok
18:24:38.0079 0x099c  [ D65D5B909BE6B73DE56470CE1DD5C5AF, EAFB6FF46A096DD8BE6F6D4E194426D85463478C899931B55A9E058551833C15 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\96c78b803536d9b7a7545eb19bd9fed6\System.Runtime.Remoting.ni.dll
18:24:38.0079 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\96c78b803536d9b7a7545eb19bd9fed6\System.Runtime.Remoting.ni.dll - ok
18:24:38.0095 0x099c  [ F13A820F50114A9F364D6CA2A89ECB2E, 068E8308CED9C9FDBBD8CE7507051ED0E66CA9B997B7946CB987D3F89CFBD67F ] C:\Windows\System32\FwRemoteSvr.dll
18:24:38.0095 0x099c  C:\Windows\System32\FwRemoteSvr.dll - ok
18:24:38.0095 0x099c  [ 8F5E6EC1728272080B24A92F23DE78FA, 0659C973231B3B63CDBDE4C70131DD21DEC0FF5D013F297AD71CA16386AA2BBE ] C:\Windows\System32\DeviceDriverRetrievalClient.dll
18:24:38.0095 0x099c  C:\Windows\System32\DeviceDriverRetrievalClient.dll - ok
18:24:38.0111 0x099c  [ 6AF7948D08E59B5690D3559AEB8E0F93, 66E825B05FE666BE7E8B79BB33E7AF9942D05F2CC6EB2702BA3D2183FB4C4598 ] C:\Windows\System32\wdiasqmmodule.dll
18:24:38.0111 0x099c  C:\Windows\System32\wdiasqmmodule.dll - ok
18:24:38.0111 0x099c  [ 3D2236609712720035B6E8F86411DC8E, EFCF9C66D6157A633E409F9326D2C373803514C4DB4481E5AF7F30E8A362505F ] C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
18:24:38.0111 0x099c  C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL - ok
18:24:38.0126 0x099c  [ C85670AB64068F8080998AEBA6C5019C, 87D88235F69C062E5B759F91253ABAF7BD055937DD119BD26858237F812D3DED ] C:\Windows\SysWOW64\atl100.dll
18:24:38.0126 0x099c  C:\Windows\SysWOW64\atl100.dll - ok
18:24:38.0126 0x099c  [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] C:\Windows\System32\fdPHost.dll
18:24:38.0126 0x099c  C:\Windows\System32\fdPHost.dll - ok
18:24:38.0126 0x099c  [ DA7967BD9CD17F436E6059C3A7A1BF7C, 0718BEAD0A425CAB997CA4604A9CA9368A9E0D6CB3327276E87B30DE71BD03F2 ] C:\Windows\System32\DeviceMetadataRetrievalClient.dll
18:24:38.0126 0x099c  C:\Windows\System32\DeviceMetadataRetrievalClient.dll - ok
18:24:38.0142 0x099c  [ 1FC8997292BE3362A5B40EBBBD137982, 68CE9F15131B4375987EF19D1FD66DAC9818C59CAD9C767112AE7B8075C4CE3B ] C:\Windows\System32\radardt.dll
18:24:38.0142 0x099c  C:\Windows\System32\radardt.dll - ok
18:24:38.0142 0x099c  [ 45E8FB1F9A9191B1F7DF09DE346B81A7, AB31FBCB97E335BF3946BB3F77E5EC641784EA80C960A849FCB2018057DD973B ] C:\Windows\System32\fdWSD.dll
18:24:38.0142 0x099c  C:\Windows\System32\fdWSD.dll - ok
18:24:38.0157 0x099c  [ 159189F28CB09D6EE81FED01172380EB, 5DEB6F2EE0604EC993F185A428AFF77FFE7AF485A861A4DC4FCF710182CBF6D3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\07f2681ebd4dc118f61c33074d5d7f9b\PresentationCore.ni.dll
18:24:38.0157 0x099c  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\07f2681ebd4dc118f61c33074d5d7f9b\PresentationCore.ni.dll - ok
18:24:38.0157 0x099c  [ 589DBCBC569A0536010D854928D10EA1, 177DEED3758CCE7BA40CF68190B06C99C453434EFE95E41838B0E85A9CCACAF2 ] C:\Windows\System32\httpapi.dll
18:24:38.0157 0x099c  C:\Windows\System32\httpapi.dll - ok
18:24:38.0173 0x099c  [ 7969580698D60958265942B9DDC12B63, 2EBA4EA7C2F5220C91259AA20D027A4CF6EFE024B8F174C48CC80FECBCFB9FDD ] C:\Windows\System32\fdSSDP.dll
18:24:38.0173 0x099c  C:\Windows\System32\fdSSDP.dll - ok
18:24:38.0173 0x099c  [ F79C112FCC0FEF9EBE07F903CEA05F9F, 880516E2E920027784B539971192232606D24F7F7758AEC313FA6BC7EDD33A97 ] C:\Windows\System32\SettingSyncHost.exe
18:24:38.0173 0x099c  C:\Windows\System32\SettingSyncHost.exe - ok
18:24:38.0173 0x099c  [ 4E24B27B72B8767BCEDD03E3D5B8198B, 32CD850675D77DF8562E7EAFDF0ACC8EFB4141373C1B1C5C661A914E163D3271 ] C:\PROGRA~2\MICROS~1\Office15\1031\GrooveIntlResource.dll
18:24:38.0173 0x099c  C:\PROGRA~2\MICROS~1\Office15\1031\GrooveIntlResource.dll - ok
18:24:38.0189 0x099c  [ 8449B6B3E281AF44BEA98D318D7481A5, 74463B6DC0D88B29F3CB28A55C922887102DDD9450EF99242314238FBF488CB7 ] C:\Windows\System32\nduprov.dll
18:24:38.0189 0x099c  C:\Windows\System32\nduprov.dll - ok
18:24:38.0189 0x099c  [ 17C9CEA667906DA7CAA1175DE437F4FC, 45677EA1918DD4D68C3342B333D0A57EB69E14BA88FFDD3D67DD21CED303B07C ] C:\Windows\System32\runonce.exe
18:24:38.0189 0x099c  C:\Windows\System32\runonce.exe - ok
18:24:38.0204 0x099c  [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] C:\Windows\System32\provsvc.dll
18:24:38.0204 0x099c  C:\Windows\System32\provsvc.dll - ok
18:24:38.0204 0x099c  [ D3F794546CE8666B663A0A906CA97DCA, 9A9133B07FE27AC43716E018260ADB2B24519B2B582254E0FCA2B7DF7394BD36 ] C:\Windows\System32\wpnsruprov.dll
18:24:38.0204 0x099c  C:\Windows\System32\wpnsruprov.dll - ok
18:24:38.0204 0x099c  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] C:\Windows\System32\sppsvc.exe
18:24:38.0204 0x099c  C:\Windows\System32\sppsvc.exe - ok
18:24:38.0220 0x099c  [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] C:\Windows\System32\NcdAutoSetup.dll
18:24:38.0220 0x099c  C:\Windows\System32\NcdAutoSetup.dll - ok
18:24:38.0220 0x099c  [ 2F60047076D57730FFD1981F53ACE052, D107405E9FE819E193279FF34A5FEEBFF521ACD07A2110999DAD62C35041FB25 ] C:\Windows\System32\fdProxy.dll
18:24:38.0220 0x099c  C:\Windows\System32\fdProxy.dll - ok
18:24:38.0236 0x099c  [ 8BE1C89BD0C6F659C3AE3A2C8D0955C4, 50D26482997BB44EBB55DA50D177459F76A708EBC23AB866330295E730EE71A9 ] C:\Windows\SysWOW64\runonce.exe
18:24:38.0236 0x099c  C:\Windows\SysWOW64\runonce.exe - ok
18:24:38.0236 0x099c  [ BEA157D1857FA63205558750720D9071, EC7FA0E0BBC2B0A826903D6E1989AFE73E5D06780306F478FE715A7E4A73EA7C ] C:\Windows\System32\appsruprov.dll
18:24:38.0236 0x099c  C:\Windows\System32\appsruprov.dll - ok
18:24:38.0251 0x099c  [ 465E8A5B79FF5134CECE8E43031ADBE1, 093FA94EBF9B69247296DB9697F73809AED620808AD779DA68FE00F7D617555C ] C:\Windows\System32\dtsh.dll
18:24:38.0251 0x099c  C:\Windows\System32\dtsh.dll - ok
18:24:38.0251 0x099c  [ 658583C4746B0AFE426E7BC992FF5AD1, 0509F6201E312E54924F90694386C3E80B71DB26B3140D1136DBA63C31207128 ] C:\Windows\SysWOW64\cbfsMntNtf4.dll
18:24:38.0251 0x099c  C:\Windows\SysWOW64\cbfsMntNtf4.dll - ok
18:24:38.0267 0x099c  [ F06F60158842691FA4B5DE0E08F55B29, 240C38803AD124CB67CCBDB5F8BAC98E9094ADBC7E56221CC4D8AD5106CBCDED ] C:\Windows\System32\ncuprov.dll
18:24:38.0267 0x099c  C:\Windows\System32\ncuprov.dll - ok
18:24:38.0267 0x099c  [ EFD9B12C1CD8FDFD50C48153AF0A49F3, EB5F906324DD1BC62BA92605F07EE1C2A94BCBA18845394AC2A48B22CF57F971 ] C:\Windows\SysWOW64\ntshrui.dll
18:24:38.0267 0x099c  C:\Windows\SysWOW64\ntshrui.dll - ok
18:24:38.0267 0x099c  [ 8CBF1E2761816CFD9D32F8B32531D0FB, 6B6FFB73A7C2FB55FB6C050FD1911990B15EE374EE48958F33E0EFD1972659F2 ] C:\Windows\System32\winbici.dll
18:24:38.0267 0x099c  C:\Windows\System32\winbici.dll - ok
18:24:38.0282 0x099c  [ 1BC0B1E8043B335BE250AFC6648420B9, FBC19B2D2A1D03339631C57849949D774A400A914655ED88B6D411B3667E516C ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll
18:24:38.0282 0x099c  C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll - ok
18:24:38.0282 0x099c  [ F12B563360D2BA8AD323A74986AF8A5B, AACCCB30F031940CB04926D32F6ED9FE89B93FD58DCB7B207B9EC0AB65D9B9FE ] C:\Windows\System32\wwapi.dll
18:24:38.0282 0x099c  C:\Windows\System32\wwapi.dll - ok
18:24:38.0298 0x099c  [ AABABEF97D4863A3490163802D41B39F, 745F6E9DB7E30F78096AF7586E7097BB12EEF68C7DB84BC1991ED2C70B58506F ] C:\Windows\System32\ndiscapCfg.dll
18:24:38.0298 0x099c  C:\Windows\System32\ndiscapCfg.dll - ok
18:24:38.0298 0x099c  [ F8CB12EA767213B10A741120AAD89809, 9C18F0D4E0FC187EA95D165B5B590CECE97F210051D3D15172747D5EFEF3734E ] C:\Program Files\TrueSuite\TrueSuite.MuiResource.dll
18:24:38.0298 0x099c  C:\Program Files\TrueSuite\TrueSuite.MuiResource.dll - ok
18:24:38.0314 0x099c  [ A75ECF09FC69DEDCF906C2021848EFE1, 1796E903A5A48416F9B919CA79462598E00ADBBD6D60A831DF3FED60840EC637 ] C:\Windows\System32\wbem\wmipcima.dll
18:24:38.0314 0x099c  C:\Windows\System32\wbem\wmipcima.dll - ok
18:24:38.0314 0x099c  [ 23C9D50C50954642D5B9224AF35858EC, DB39C37E004DA4D2A61323D8FA5248753DD713555B2DB1F030228467A8BC57BA ] C:\Windows\System32\brdgcfg.dll
18:24:38.0314 0x099c  C:\Windows\System32\brdgcfg.dll - ok
18:24:38.0314 0x099c  [ 5EE916C3272A19B459717A8D2397B07A, 7231A20E56EC571F6565DFEA348B2656E3032E56D207501620A212CC460897CA ] C:\Windows\System32\energyprov.dll
18:24:38.0329 0x099c  C:\Windows\System32\energyprov.dll - ok
18:24:38.0329 0x099c  [ 04C366E0BB401FADF5C71D379FE516C7, A257EDA26448EDABBE7F529496347D769728BA05A9B32FAC7BC883E191BEEF19 ] C:\Program Files\TrueSuite\TrueSuite.MuiDll.dll
18:24:38.0329 0x099c  C:\Program Files\TrueSuite\TrueSuite.MuiDll.dll - ok
18:24:38.0329 0x099c  [ B7229CC04482CEB6C08DA97A42338F6C, 96C2E324872F958E4D372E93F84CCA96A129A12A1BEC0DC19A26D29C167F18B3 ] C:\Windows\System32\DDORes.dll
18:24:38.0329 0x099c  C:\Windows\System32\DDORes.dll - ok
18:24:38.0345 0x099c  [ 4F32FE0318A902949E461F699030DA45, 2B0FD05FC6F2BBD79B613BE03432075C38CB7EE33087E1CE2B3A4040F4368477 ] C:\Windows\System32\DAFWSD.dll
18:24:38.0345 0x099c  C:\Windows\System32\DAFWSD.dll - ok
18:24:38.0345 0x099c  [ 7B4A7D55E905ED9A0A4B1263BA7C6944, 0D9AB2940A8072864C760D283E1B243F951EDDC55BC37F1B9CF3C916D6101549 ] C:\Windows\System32\actxprxy.dll
18:24:38.0345 0x099c  C:\Windows\System32\actxprxy.dll - ok
18:24:38.0361 0x099c  [ CA56145B0F1FA54FA21C2E0A7AC9C119, 8A80EA88D334AF0204D971CF8B892718473650A0DCDCDF86CD85F78F629BE24A ] C:\Windows\System32\msched.dll
18:24:38.0361 0x099c  C:\Windows\System32\msched.dll - ok
18:24:38.0361 0x099c  [ 90AC8D4574103FCF8942C526998F46BF, 82B55E3C466526B04DC67EE8C2AEC30247C30C32C914DE34D63F0BF82CDB88D0 ] C:\Windows\System32\srumapi.dll
18:24:38.0361 0x099c  C:\Windows\System32\srumapi.dll - ok
18:24:38.0376 0x099c  [ D465E438E2356C21A51A416E67041F80, 6B967EE9BC1BCBCB8EB611BDB20A19EB91381503FB682109EB598B8678670A98 ] C:\Windows\System32\rascfg.dll
18:24:38.0376 0x099c  C:\Windows\System32\rascfg.dll - ok
18:24:38.0376 0x099c  [ 325D9D1D5D819BD6474BC3E674650138, 5657C46954E02A276439E385299FD3392A828DA223C37EA7A711264045D8609D ] C:\Windows\System32\cryptxml.dll
18:24:38.0376 0x099c  C:\Windows\System32\cryptxml.dll - ok
18:24:38.0376 0x099c  [ AACECE80A24B309935DF4023F25C129E, 044CDDF37BA1EA774C251F4B8C9FD1F361581C4B32978DBA76CEB2D2CE7163D6 ] C:\Windows\System32\SettingSyncPolicy.dll
18:24:38.0376 0x099c  C:\Windows\System32\SettingSyncPolicy.dll - ok
18:24:38.0392 0x099c  [ 95ED0EB4E1D30448AF1C55BB2B4F014C, 3E7569C5CC4E6D37551F474C43478BA66F36AC9DE183D83CC7116263DCAB3097 ] C:\Windows\System32\mprapi.dll
18:24:38.0392 0x099c  C:\Windows\System32\mprapi.dll - ok
18:24:38.0392 0x099c  [ A46C1D6EE4BC27E8A767079CECCADE9E, F2E3F1D30C954CE9B838D33EF1D0DDEE732CABE6EC9D1A9C2952591C25AD1130 ] C:\Windows\System32\mprmsg.dll
18:24:38.0392 0x099c  C:\Windows\System32\mprmsg.dll - ok
18:24:38.0407 0x099c  [ 98A184F6EC43B178901FCD5D4E2EC43B, 86EEB354F96B2FC344B93C5BD603D7C4F56A6CC9BFB2A1DCCAEF09E5AE7DDC9F ] C:\Windows\System32\Windows.Media.Streaming.dll
18:24:38.0407 0x099c  C:\Windows\System32\Windows.Media.Streaming.dll - ok
18:24:38.0407 0x099c  [ 3CD8F1967D355842CC044B25269EEDFE, F95699E97120FD48A7D0383AA7B57815151FB450615144EC1DC71DEC04DCC7D7 ] C:\Windows\System32\NdisImPlatform.dll
18:24:38.0407 0x099c  C:\Windows\System32\NdisImPlatform.dll - ok
18:24:38.0423 0x099c  [ 23B8FA7B494D249EF162C1FE4DE99567, ED2239FB4162ADD20EE7C3FD75AAA4929117E769EF9E71CB62201E7DE767C5B0 ] C:\Windows\System32\LldpNotify.dll
18:24:38.0423 0x099c  C:\Windows\System32\LldpNotify.dll - ok
18:24:38.0423 0x099c  [ CEF2375C4D4F4FF443FBE60473C86997, E506EC501A9274A5A7733F47FB94230FA79A625B22AC47C4C7D69F1B6A56D30F ] C:\Program Files\TrueSuite\TrueSuite.Catalog.dll
18:24:38.0423 0x099c  C:\Program Files\TrueSuite\TrueSuite.Catalog.dll - ok
18:24:38.0423 0x099c  [ 2C354FA91EF605007FD11BB89EED2266, B216DAD6906EEF801D9E5413A0B8B19A6D60C6470D56FC0D4D9A76E1C709B3C9 ] C:\Windows\System32\Faultrep.dll
18:24:38.0423 0x099c  C:\Windows\System32\Faultrep.dll - ok
18:24:38.0439 0x099c  [ 59A1D4FACD7B333F76C4142CD42D3ABA, E1A080E61FB1BAF0DA629D34BAEE6F0F9D0E0337BF6CED9F4B3AB9B1C23D91BA ] C:\Windows\SysWOW64\cmd.exe
18:24:38.0439 0x099c  C:\Windows\SysWOW64\cmd.exe - ok
18:24:38.0439 0x099c  [ D8F986E9781C4153EC73B52D19CF2E0D, A77F69BEC03D63B0C600B7EFA52F7CA4359C7262268AE7F34F75181CAE31C210 ] C:\Windows\System32\tcpipcfg.dll
18:24:38.0439 0x099c  C:\Windows\System32\tcpipcfg.dll - ok
18:24:38.0454 0x099c  [ 140E381D43A14FAB9966537FE80DB427, 04F02702F03E42CBD10AAF597F705025F08041A236ED49D4D6BE2EDEDB65DBCA ] C:\Program Files\TrueSuite\TrueSuite.WLO.dll
18:24:38.0454 0x099c  C:\Program Files\TrueSuite\TrueSuite.WLO.dll - ok
18:24:38.0454 0x099c  [ A030B48F73CB01B89AD5CF725240401A, 3334AFA0C57F2A9EFF0FC466B62AAD6513191360BF46CEB337E089650AD5A474 ] C:\Windows\System32\OnDemandConnRouteHelper.dll
18:24:38.0454 0x099c  C:\Windows\System32\OnDemandConnRouteHelper.dll - ok
18:24:38.0470 0x099c  [ 3A7B0570D896602E37EAF80EC3D1615A, 1F5A71432F96731115ADA2A50E605923666188D08F9FD748424AB6588D0E1482 ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
18:24:38.0470 0x099c  C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys - ok
18:24:38.0470 0x099c  [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] C:\Windows\System32\browser.dll
18:24:38.0470 0x099c  C:\Windows\System32\browser.dll - ok
18:24:38.0486 0x099c  [ AD776C2F3396AA47ACF6CEAD8EC446C1, 170E9E525286388010EB9F8BA6A1B38C775188F55B3D46F7DDA75877DD2DEEB4 ] C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll
18:24:38.0486 0x099c  C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll - ok
18:24:38.0486 0x099c  [ F52C9F18BE8899CF503D7D40E62C47C3, 38D9932F1C7EE1B83E062ED33FB3A9A9A7219F809D7B78E91D75C0BC5ED88AEE ] C:\Windows\System32\SearchIndexer.exe
18:24:38.0486 0x099c  C:\Windows\System32\SearchIndexer.exe - ok
18:24:38.0501 0x099c  [ 562A3AB5CC3CA265D0C213B2B2D3B2E4, 927C072BF0CDA2672BACEE7AEA0F7A2FB27AEDEB0A2C452DE68BC03521BE1519 ] C:\Windows\System32\wshom.ocx
18:24:38.0501 0x099c  C:\Windows\System32\wshom.ocx - ok
18:24:38.0501 0x099c  [ 39C288E39B7B02614F997FB2077575ED, 17CF253A688F1DC8DCF6AF815D7FB3966DAD26A5FCB2619ADF1427F2F0D504FF ] C:\Windows\System32\sppwinob.dll
18:24:38.0501 0x099c  C:\Windows\System32\sppwinob.dll - ok
18:24:38.0501 0x099c  [ EBDB50C7BD8023CE98380A4648857F4B, F892B02C462B2B816125F529E22AE57616382E9006608FDF4AB5D489FD206E9D ] C:\Windows\System32\msauserext.dll
18:24:38.0501 0x099c  C:\Windows\System32\msauserext.dll - ok
18:24:38.0517 0x099c  [ EC3BCAACA76E8987F1F0F2DE3D64ED98, A8EF67DF9292C815A22E3030FF91E1717DC1F5A09A07BB40FD76E8CC53416E87 ] C:\Windows\System32\scrrun.dll
18:24:38.0517 0x099c  C:\Windows\System32\scrrun.dll - ok
18:24:38.0517 0x099c  [ 2C639822062A8725F720A295188CF4A2, A8636F05EA1426427F4D5BBB1D215C274ABB5EBD8120C65CE2EBB95929D85633 ] C:\Program Files\TrueSuite\TrueSuite.WDS.dll
18:24:38.0517 0x099c  C:\Program Files\TrueSuite\TrueSuite.WDS.dll - ok
18:24:38.0532 0x099c  [ 23065815C35146F455985878E0FEA1A8, E276CC29355CCB73DA4D3601A9586324E12C38FBDBD2F2468AF7E36F25EE36A8 ] C:\Windows\System32\AuthBroker.dll
18:24:38.0532 0x099c  C:\Windows\System32\AuthBroker.dll - ok
18:24:38.0532 0x099c  [ 4C50680BDC98B551CE5C173BAB1C62D7, 040FA269D72978BC51F42BC3E056539F83F425CDCF1C20CB17C6E7D9FDEA2526 ] C:\Windows\SysWOW64\cmdext.dll
18:24:38.0532 0x099c  C:\Windows\SysWOW64\cmdext.dll - ok
18:24:38.0548 0x099c  [ CD8CA57C36E596875865F451393C7C66, A7304ADD73B16ED8CAE097F2ACA8FD856740276220D178054652CD14A945B1C9 ] C:\Windows\System32\SettingSync.dll
18:24:38.0548 0x099c  C:\Windows\System32\SettingSync.dll - ok
18:24:38.0548 0x099c  [ 279C2DB5C56A3674DCB98165E85237CF, 944E23340513D0AB3AB350057E2CCF96B73291395EC8D628ECB1DC019D318A52 ] C:\Windows\System32\tquery.dll
18:24:38.0548 0x099c  C:\Windows\System32\tquery.dll - ok
18:24:38.0548 0x099c  [ BA0ED854110D45E5D4A46BD250BAF4E0, CB1367172E0721150CA35B8F6374807A63A0A4809D6861EB58D56576D45E546C ] C:\Windows\System32\sppobjs.dll
18:24:38.0548 0x099c  C:\Windows\System32\sppobjs.dll - ok
18:24:38.0564 0x099c  [ F2CBC74E403A4251279D0BA9D0ECFBDB, DEBCE90D6EDF3498AA30CAB80A20124FD50E4A7FBDDD8FF75990D4ABD0CCAECA ] C:\Windows\System32\mssrch.dll
18:24:38.0564 0x099c  C:\Windows\System32\mssrch.dll - ok
18:24:38.0564 0x099c  [ 771C2302C0AE3B4B55D8769EDB8DA29A, 9339E584B2287DF0D51CD016E412D7553028C1B036E204BA65A55A89B69006AE ] C:\Program Files\TrueSuite\TrueSuite.EnumWindowsUsers.dll
18:24:38.0564 0x099c  C:\Program Files\TrueSuite\TrueSuite.EnumWindowsUsers.dll - ok
18:24:38.0579 0x099c  [ C4306ADC38939CAC60EA38AAD9F170C0, AAF7700E60B11F146E13FF9D6DBFEC01190CE202B24805B497E652D7BC4717A8 ] C:\Windows\System32\twinui.dll
18:24:38.0579 0x099c  C:\Windows\System32\twinui.dll - ok
18:24:38.0579 0x099c  [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] C:\Windows\servicing\TrustedInstaller.exe
18:24:38.0579 0x099c  C:\Windows\servicing\TrustedInstaller.exe - ok
18:24:38.0595 0x099c  [ 951AECDFBE4925B59769D49873DD8051, B35B8ACFA0386A5E2BD3884498FF53BD676CF985D595D539F98A9C5183F6FD14 ] C:\Windows\System32\msidle.dll
18:24:38.0595 0x099c  C:\Windows\System32\msidle.dll - ok
18:24:38.0595 0x099c  [ 19F84D6153C06FE71203517BDAC9EA9F, 14B95B657CAE351D8E7E1400EAECDE66892C10B4B32FB37935B6C3CAE6203D72 ] C:\Windows\System32\davclnt.dll
18:24:38.0595 0x099c  C:\Windows\System32\davclnt.dll - ok
18:24:38.0611 0x099c  [ 8F37ADC302D59D09E0A9D29B9A78D3A6, D2438D5D5A1FE00ABEF14C1BBE1F89FD15F2CFD7DAE6773E35EEF371754884A9 ] C:\Windows\System32\davhlpr.dll
18:24:38.0611 0x099c  C:\Windows\System32\davhlpr.dll - ok
18:24:38.0611 0x099c  [ 9FA466A42109F408AC6C2848E851C38A, 0CE75916186D19467D14E33E2CF6C1653D2CE854F05D0DBD0A1268FA413DF291 ] C:\Windows\System32\twinapi.appcore.dll
18:24:38.0611 0x099c  C:\Windows\System32\twinapi.appcore.dll - ok
18:24:38.0626 0x099c  [ 728497F5AEC183D2E16A05E2746D3B8A, E6793BACF97E90E7116CF9F61D699DF55420A8E5364B94BB902EBC39491DD91D ] C:\Windows\SysWOW64\shdocvw.dll
18:24:38.0626 0x099c  C:\Windows\SysWOW64\shdocvw.dll - ok
18:24:38.0626 0x099c  [ 8A87008B9CC8B2F0208B4A95DBAA8B0E, FBD19161AE512525C51A163BBD9AE3896D860FCE2AAEA52A780650F953A6A705 ] C:\Windows\System32\mssprxy.dll
18:24:38.0626 0x099c  C:\Windows\System32\mssprxy.dll - ok
18:24:38.0626 0x099c  [ D96F08E02B9F1C410F6B7124C97E7E0B, 9430D9138764FB5DA427865D89FD20A66D7FB624BB8462359B1C577C531E9B6D ] C:\Windows\SysWOW64\mssprxy.dll
18:24:38.0626 0x099c  C:\Windows\SysWOW64\mssprxy.dll - ok
18:24:38.0642 0x099c  [ 2C727D11CDF4F8B2477FC2B1B305ECB9, B4F83DAA73E99EF8AD88A4A9C5553ABC4A99E2FD22234C968D90A0BAE97104F8 ] C:\Windows\System32\wlidprov.dll
18:24:38.0642 0x099c  C:\Windows\System32\wlidprov.dll - ok
18:24:38.0642 0x099c  [ 8256A8312C19BB8E09798FB227D077F5, 8204CAD8889DD09A44E9C55AD338A1D2E9D7935F8FC693578AA594484F6C6850 ] C:\Program Files\Common Files\microsoft shared\ink\IpsPlugin.dll
18:24:38.0642 0x099c  C:\Program Files\Common Files\microsoft shared\ink\IpsPlugin.dll - ok
18:24:38.0657 0x099c  [ 991FB4D35BCA212FF14314D9AB34833E, 91EECF388C14FCCCC3B7665019202EE3B2D0FED4939DFAD9F1B785C4A9BDCEAB ] C:\Windows\System32\PackageStateRoaming.dll
18:24:38.0657 0x099c  C:\Windows\System32\PackageStateRoaming.dll - ok
18:24:38.0657 0x099c  [ 0FF2E68E46E2B8278B8CD717A866F9BF, 27FFAA28649FC4ED9CAF7750731E3467E86956F4FEBE8894B23583392E6A566C ] C:\Program Files\Internet Explorer\sqmapi.dll
18:24:38.0657 0x099c  C:\Program Files\Internet Explorer\sqmapi.dll - ok
18:24:38.0673 0x099c  [ 96A5A19A805F417EC1EB1C7A2792E629, 5D7AEC13ABA1C1E2CFB788DFDDB3B31CE4FF879C7745C0728DCB8530251FFDBB ] C:\Windows\System32\SppExtComObj.Exe
18:24:38.0673 0x099c  C:\Windows\System32\SppExtComObj.Exe - ok
18:24:38.0673 0x099c  [ DB254D50B4527C2821C537E0587B44E8, 77DC14828FA882E30FDE46D7CBFD62D5F1765A3AE24275507A5613C4CC8CC11F ] C:\Windows\SysWOW64\ieframe.dll
18:24:38.0673 0x099c  C:\Windows\SysWOW64\ieframe.dll - ok
18:24:38.0689 0x099c  [ 09C693F051507A134D180556A011A6C5, 9328E74476A115086B8E051CB2335D84D39474EBD248CD2587538A6E736BD49E ] C:\Windows\System32\WinSync.dll
18:24:38.0689 0x099c  C:\Windows\System32\WinSync.dll - ok
18:24:38.0689 0x099c  [ 98D0A8C3BF81774D76EAAB5977B69AB3, F3D89E6CA7702F1F1AD67EF34CBCEAA9C12C0609E04876F39268DB259BD03277 ] C:\Windows\System32\SearchProtocolHost.exe
18:24:38.0689 0x099c  C:\Windows\System32\SearchProtocolHost.exe - ok
18:24:38.0704 0x099c  [ 0593F976DE28E1EE533DD4810C1A57C5, 1429DDC9CA4D84EF3B9E36FC9EF4AE170A5624FFFE9BFBEC628DDBE46A3BF506 ] C:\Windows\SysWOW64\twinapi.dll
18:24:38.0704 0x099c  C:\Windows\SysWOW64\twinapi.dll - ok
18:24:38.0704 0x099c  [ A756834B5BE8401CE01C2C3BCE0218AC, 3238E6DB7B4BE6F00CB5C3AF615A2EB469E4111E0CB984D3B7E23A8A5DD2855B ] C:\Windows\System32\msshooks.dll
18:24:38.0704 0x099c  C:\Windows\System32\msshooks.dll - ok
18:24:38.0704 0x099c  [ 0542A44401EA9451D82D3DF4BF3BD871, 28BB82DEAE3885382BBE649107AEE611E74DF720FD7CC04D442835F228F3726E ] C:\Windows\SysWOW64\twinapi.appcore.dll
18:24:38.0704 0x099c  C:\Windows\SysWOW64\twinapi.appcore.dll - ok
18:24:38.0720 0x099c  [ 1912CC8202105F952A995BE1227CC72F, D807EA600E20729DECF4CA9AFA63AE1F0E680621F82AC69D4A060C4966554B2E ] C:\Windows\System32\SearchFilterHost.exe
18:24:38.0720 0x099c  C:\Windows\System32\SearchFilterHost.exe - ok
18:24:38.0720 0x099c  [ 3B8D14C7D33E3991090C726DD4CF7088, 59A1B13ECE6980AAD304BF1D8EA385259D07F7C75AABE93DABCD955480551229 ] C:\Windows\System32\mssph.dll
18:24:38.0720 0x099c  C:\Windows\System32\mssph.dll - ok
18:24:38.0736 0x099c  [ A9A285D87AE5121DC7ED140F18DD1063, 2905697BFC0561D01BF7A26894B08C5DAC7D0D18386C482A8F97009417E55365 ] C:\Windows\System32\ROUTE.EXE
18:24:38.0736 0x099c  C:\Windows\System32\ROUTE.EXE - ok
18:24:38.0736 0x099c  [ 4A895F718857F9A7F6198951F3B106CB, 8377EBDB9F8C1AA7A82F338A93B110DA1473D0B517E3D8B2A0E8187384899DAA ] C:\Windows\System32\mapi32.dll
18:24:38.0736 0x099c  C:\Windows\System32\mapi32.dll - ok
18:24:38.0751 0x099c  [ 60049F292582FD2B70B202CF57514CF8, BB4942C41422245C43BEF3518013BE5EB55A8DE8C42FFBA3D7992AE5800FA784 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\RICHED20.DLL
18:24:38.0751 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\RICHED20.DLL - ok
18:24:38.0751 0x099c  [ EAE5F6EF53A70055EDAFF5BBD77D9E8D, 2033E604BB53D4A46F913F87EDF7C587F278B095887886F4539348FDE299AEE2 ] C:\Windows\servicing\CbsApi.dll
18:24:38.0751 0x099c  C:\Windows\servicing\CbsApi.dll - ok
18:24:38.0767 0x099c  [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] C:\Windows\System32\wersvc.dll
18:24:38.0767 0x099c  C:\Windows\System32\wersvc.dll - ok
18:24:38.0767 0x099c  [ E9CD058C79EA15B4AA93E259FA713B07, 2B09F65188D8782F9C797545F2F791EC7EAB85D8914B2C0B30BD869C412E3980 ] C:\Windows\System32\drivers\MBAMSwissArmy.sys
18:24:38.0767 0x099c  C:\Windows\System32\drivers\MBAMSwissArmy.sys - ok
18:24:38.0767 0x099c  [ 6DCD12586353DC6307AC781045CA13A4, 83A8D35212729AAB3B957092C5D90016FBDE12C30D3DDC4BFC6671B48879E26A ] C:\Windows\System32\WerFault.exe
18:24:38.0782 0x099c  C:\Windows\System32\WerFault.exe - ok
18:24:38.0782 0x099c  [ 2B902EA3056AABF8ECCB689D434AE2C9, 7CC977D574720B6267030469AA589B9B7EBF0B108A4B024A54429DFF9D633D35 ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
18:24:38.0782 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe - ok
18:24:38.0782 0x099c  [ 3C88CAD475B8B4B30B62199E40B2498C, E9115253A453C2B488174B56018BAB93F95F89BF51479D199C216B657C24193D ] C:\Program Files (x86)\ Malwarebytes Anti-Malware \7z.dll
18:24:38.0782 0x099c  C:\Program Files (x86)\ Malwarebytes Anti-Malware \7z.dll - ok
18:24:38.0798 0x099c  [ 63104BEF8FC6FEE45FCDE5B11E16B6FE, D34B2D7341A8483F715574FA227AB3CCBBFE5CE545E359E13F83229641F36C94 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll
18:24:38.0798 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll - ok
18:24:38.0798 0x099c  [ 819A1E0F89B6AC222E9D95CA000A40B1, 75097FF69984DA24DF80DD8461215BEEEAC75B60A8E7E6CB5FFDB3654993532A ] C:\Windows\System32\dbgeng.dll
18:24:38.0798 0x099c  C:\Windows\System32\dbgeng.dll - ok
18:24:38.0814 0x099c  [ A1DE21BBAD7DF47E2A1D6055C8CB8387, 41398DCD3BC428FF3D24BF0E27F2644A7F67A8CA5697972F03F960B8D965A2E0 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\MSPTLS.DLL
18:24:38.0814 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\MSPTLS.DLL - ok
18:24:38.0814 0x099c  [ 0BCDEB035B9346D3C3C6C8BB1AA7F38C, 4D8797003B585EE9E6676955CBF8EEC0C8450E87DE45D0E72870A7C5F0EE521E ] C:\Windows\System32\wermgr.exe
18:24:38.0814 0x099c  C:\Windows\System32\wermgr.exe - ok
18:24:38.0829 0x099c  [ B867E81F7A7FD95AC894584B9EB10480, D7C21066F9A3DDD11A43A7C431AA87DEA0F099DE60A9529215E1C4FF216EAC16 ] C:\Windows\System32\werui.dll
18:24:38.0829 0x099c  C:\Windows\System32\werui.dll - ok
18:24:38.0829 0x099c  [ 50DA2DFB41F5882861B6883F880792D9, C89EF6CFC416B6279B197BA72477EAA1315AD04025353F0CC0D8255EA83B0A5D ] C:\Windows\System32\SensApi.dll
18:24:38.0829 0x099c  C:\Windows\System32\SensApi.dll - ok
18:24:38.0845 0x099c  [ B2BB337817F793669B60FD7084EE7E1D, 8BCE8A7B4218304ECE414763430F4F72326F1B216B536CF31F42AE01A1CF69BA ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\wdscore.dll
18:24:38.0845 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\wdscore.dll - ok
18:24:38.0845 0x099c  [ C44E7E6BD61E34B94B835BF4869B8233, 2B7886F161CE4EC90748880821CD91F20379D3F09B52E9C018AE385359F6EFA9 ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\CbsCore.dll
18:24:38.0845 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\CbsCore.dll - ok
18:24:38.0845 0x099c  [ 53FD36FDE0644CC75C7A99F37F782E69, BC349624C144356CFA8381DAA238E0C10FFC9B84ECCED3227BBCF683AEABB967 ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\dpx.dll
18:24:38.0845 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\dpx.dll - ok
18:24:38.0861 0x099c  [ 97DB1172E75732A7BFEA699ACCFB9B65, E67B9667270B8E34F04A98A57ED452CBB40F07AE8955CB9A5EE6CD32B4473254 ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\wcp.dll
18:24:38.0861 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\wcp.dll - ok
18:24:38.0876 0x099c  [ E61D0C0D0C274881AE75998D5EAA37FC, 43B162421F9F3C4402AC3C2E7A73B3146B8DB00A4D399A993EC4F6C38998E7FD ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\DrUpdate.dll
18:24:38.0876 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\DrUpdate.dll - ok
18:24:38.0876 0x099c  [ 06304D50B5228BF1EB6E829A72A629DB, CF51394CF9319BCDA6CD21DA740FA6C4421AFD8AF1D26205F84266E6FD15F99D ] C:\Windows\System32\spp.dll
18:24:38.0876 0x099c  C:\Windows\System32\spp.dll - ok
18:24:38.0876 0x099c  [ 9465F8E72887AC6CCDD97F738A5AB6B6, DD264018DD64D862FECB7B3D42FABDDFE40CEE7E7E26D7CDE9D88F3611858243 ] C:\Windows\System32\srclient.dll
18:24:38.0876 0x099c  C:\Windows\System32\srclient.dll - ok
18:24:38.0892 0x099c  [ E034B873FFB81EE0D0B2AE53BC4F3BE1, 73A127864DEFD3522EE90F08A798DC9643884A171C6B47F247B65C4245D46F97 ] C:\Windows\System32\sfc.dll
18:24:38.0892 0x099c  C:\Windows\System32\sfc.dll - ok
18:24:38.0892 0x099c  [ A6306E2A24C11555D5A4E572291C551D, 764337B658D24DDFBF370C5BBBC97F039D1B796DB8F1B735B419AB6F9846DE49 ] C:\Windows\System32\ntshrui.dll
18:24:38.0892 0x099c  C:\Windows\System32\ntshrui.dll - ok
18:24:38.0907 0x099c  [ DC225130BCAE999B1A660EEBF3D2E813, 563CB862B9DA11739A66C4D7E6AAFC3BAADD1CF8638A354D4ABC5AC11C2C88D4 ] C:\Windows\System32\MSWB7.dll
18:24:38.0907 0x099c  C:\Windows\System32\MSWB7.dll - ok
18:24:38.0907 0x099c  [ 689ABA32B7C61B9B3E0153E83F638C57, C95CFB29680E9B11514842E79BE72D7E009C0BEE7619DA333A26684A2F03B7D1 ] C:\Windows\System32\NaturalLanguage6.dll
18:24:38.0907 0x099c  C:\Windows\System32\NaturalLanguage6.dll - ok
18:24:38.0923 0x099c  [ D4E3BC36A7A0D7A445DCF7342DCB3566, 1816BDBAAFC44D04947FA6B5AE93278E32C1E45E38CDB309EC352CB444AA9C87 ] C:\Windows\System32\ELSCore.dll
18:24:38.0923 0x099c  C:\Windows\System32\ELSCore.dll - ok
18:24:38.0923 0x099c  [ 121BCF3FB6C1F8AA214EB83C76B944FB, 601696238E353AF241C28B20A1FCBD75B3CE92D6FE6B1A427E9D653FCFA8BA5A ] C:\Windows\System32\elsTrans.dll
18:24:38.0923 0x099c  C:\Windows\System32\elsTrans.dll - ok
18:24:38.0923 0x099c  [ 4CB85D450E4816BEDBBDB8ABD697F597, 8190B08A59FF468000D06C7F757201FDE437A82CF560929F47673FC3CD81514E ] C:\Windows\System32\elslad.dll
18:24:38.0923 0x099c  C:\Windows\System32\elslad.dll - ok
18:24:38.0939 0x099c  [ 959B07B4C5CD41915724F7F95C130722, A0AEEEC2C4ADB856995F62E04FBD20242DBCDF8ECF4A33CFC0C932A407F632C9 ] C:\Windows\Branding\Basebrd\basebrd.dll
18:24:38.0939 0x099c  C:\Windows\Branding\Basebrd\basebrd.dll - ok
18:24:38.0939 0x099c  [ A2BF5D466853422C143571064C7DD94F, FD8E16701597BFDA85894F6E084A3B615CAFD60945E8EA2DF15C01C7065487A2 ] C:\Windows\System32\AppXDeploymentClient.dll
18:24:38.0939 0x099c  C:\Windows\System32\AppXDeploymentClient.dll - ok
18:24:38.0954 0x099c  [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] C:\Windows\System32\AppXDeploymentServer.dll
18:24:38.0954 0x099c  C:\Windows\System32\AppXDeploymentServer.dll - ok
18:24:38.0954 0x099c  [ 65FBC4306DA606058136DF5D552A4872, 8D45636D6986A7E3561E040F5BCA780F20E8A9442E92823575E5BA10F81293E6 ] C:\Windows\System32\tdh.dll
18:24:38.0954 0x099c  C:\Windows\System32\tdh.dll - ok
18:24:38.0970 0x099c  [ 716228882A7BE5133B97D70CDDB69E6B, 9356E640B09597C81B2D6BAEFDE1A4955A673F8A9A15173BF4E9D80C3D2350EE ] C:\Windows\System32\Windows.ApplicationModel.dll
18:24:38.0970 0x099c  C:\Windows\System32\Windows.ApplicationModel.dll - ok
18:24:38.0970 0x099c  [ 4A87A56606776CC9E1520D8A2741E9AE, 565A99728A5833D2DE0BB01BA6A2F1424BCD88DF895BD096E2D78EEE42B7B279 ] C:\Windows\System32\WinTypes.dll
18:24:38.0970 0x099c  C:\Windows\System32\WinTypes.dll - ok
18:24:38.0986 0x099c  [ BD11C5DBF7D84E4AE8703EF3B3AE794B, 52C31673A668E8163F274AF993EA36D491EC15D055809F6F2F8072B0957EB771 ] C:\Windows\System32\OpcServices.dll
18:24:38.0986 0x099c  C:\Windows\System32\OpcServices.dll - ok
18:24:38.0986 0x099c  [ 0A7F97DE49DB63E01CBCA067F4DA7AB8, 2ACDE214D995C8F7923C47BB8D8ADAA793FA65845DD79FAEDF1DBD1B5D9B5AD1 ] C:\Windows\System32\AppxPackaging.dll
18:24:38.0986 0x099c  C:\Windows\System32\AppxPackaging.dll - ok
18:24:38.0986 0x099c  [ F815391F89F7656DACF6EA11C0357682, 3C48A5677B8E2B237F2391BEA9355D38909EC7DB7D57EE6E0E45F1E3D6E5FE38 ] C:\Windows\System32\AppxApplicabilityEngine.dll
18:24:38.0986 0x099c  C:\Windows\System32\AppxApplicabilityEngine.dll - ok
18:24:39.0001 0x099c  [ 35F57F3C64A0E744F097159936DE3942, 8F1255458DF7244ADBCD103462C7B1EB5B3E355410ECC66228D5B339D7BE3ACB ] C:\Windows\System32\advpack.dll
18:24:39.0001 0x099c  C:\Windows\System32\advpack.dll - ok
18:24:39.0001 0x099c  [ 5022AC4CC60DE7FB0246E5B2D3FEE22E, F7EC0203C3040A7196909C9F31A7EB2F29596B13DFF5DA9360BD6E2628B04C76 ] C:\Program Files\Common Files\microsoft shared\Filters\odffilt.dll
18:24:39.0001 0x099c  C:\Program Files\Common Files\microsoft shared\Filters\odffilt.dll - ok
18:24:39.0017 0x099c  [ 0094AEEC1FABFAF70383D5AF89464CB5, AA234CA70DF04655013085699544D576E497D2606C585FFBF63556D92C7AB4F3 ] C:\Windows\System32\Query.dll
18:24:39.0017 0x099c  C:\Windows\System32\Query.dll - ok
18:24:39.0017 0x099c  [ BA9ADE2B12F322224145350A88A23765, 14412984BD023341090851D4D0C5B4E6AEF0F607A9B7D9770ED24E138119F48E ] C:\Windows\System32\wlaninst.dll
18:24:39.0017 0x099c  C:\Windows\System32\wlaninst.dll - ok
18:24:39.0032 0x099c  [ 93645AEBE163230A2ED5050C14AE6603, DD95FEF556A91D749B31583BD723A94D2257B8A5D1A5EE387A3E9C5B5B581E3B ] C:\Windows\System32\msxml3.dll
18:24:39.0032 0x099c  C:\Windows\System32\msxml3.dll - ok
18:24:39.0032 0x099c  [ 400657F9C16EE39A2A1F08AF7631192F, 9428E287530402E1DC5237920154229081B166BAE65E14009617890B980B17C4 ] C:\Windows\System32\wwaninst.dll
18:24:39.0032 0x099c  C:\Windows\System32\wwaninst.dll - ok
18:24:39.0048 0x099c  [ 565B5D5E436987EE94EEAA649F755FA3, B7F80E256C625BD32A675A8ECDB151B1994F1DD77EF0724FFAEDAB63B52E4688 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\Csi.dll
18:24:39.0048 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\Csi.dll - ok
18:24:39.0048 0x099c  [ F0607A81E734AA677341A8462BAE30E9, 1B1FA9931E58C6BE42C06C110E8BCEA65559BAD6B17BAAE75A580FD5BC781D45 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEOLEDB.DLL
18:24:39.0048 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEOLEDB.DLL - ok
18:24:39.0048 0x099c  [ 872410D51A49B96BB9041DFEE49A29C1, 9BA6F422109A744724BE8D4A3770B8C0F647819DEEE3306CCEF3344892185A39 ] C:\Program Files\Common Files\System\Ole DB\oledb32.dll
18:24:39.0048 0x099c  C:\Program Files\Common Files\System\Ole DB\oledb32.dll - ok
18:24:39.0064 0x099c  [ A67FEE86EA6B411FC0D5740B27131D7C, 9D113D8F6DA233F702122D2C391A7C9A193B46DF0BA765FE20E7D2A3BAA92A65 ] C:\Windows\System32\msdart.dll
18:24:39.0064 0x099c  C:\Windows\System32\msdart.dll - ok
18:24:39.0064 0x099c  [ C75A0DDC81CB41DA453C9AA77BC1E10C, B91841BE48B3D2E551961042E212C1891671208B1A367AA07C521ED8BBEA1893 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\ACECORE.DLL
18:24:39.0064 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\ACECORE.DLL - ok
18:24:39.0079 0x099c  [ FDC9D24CA86F740655D23A627581F2B7, 4D823AEED9384541738F646BA4D30D2F4DAF0FB886AEFC5B6863F78181388CE1 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\1031\ACEWSTR.DLL
18:24:39.0079 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\1031\ACEWSTR.DLL - ok
18:24:39.0079 0x099c  [ 8CCFFED7AD5D5F0F3EB63AE3C1175433, 155A29133E6B1441D793D820D2FD2351DC3274C6B4F79D85385D780A7B175F94 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEES.DLL
18:24:39.0079 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEES.DLL - ok
18:24:39.0095 0x099c  [ EF86949B8198431FA971FE871554BE55, 0C6186FA948C8A5482702B09271F940C5BE53AC65C85AD6385CF7904EE32D9E1 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\VBAJET32.DLL
18:24:39.0095 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\VBAJET32.DLL - ok
18:24:39.0095 0x099c  [ A1835CDFC91570ECC7E1678F9505A1F4, 9125A3ED1389447A0A1464B0124010E17F5F88A7C38017A974979D1AB5949073 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\EXPSRV.DLL
18:24:39.0095 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\EXPSRV.DLL - ok
18:24:39.0111 0x099c  [ 20F974E0B8E68A9ECC3A85B4DAFBD6ED, A381615E0E6F99B49DEBCAB21043A6FF3B2C9C0EC2FD6E91266B540BD850EAE6 ] C:\Windows\System32\NlsData0010.dll
18:24:39.0111 0x099c  C:\Windows\System32\NlsData0010.dll - ok
18:24:39.0111 0x099c  [ 8DE36D986BA89348ACB8FCE2BE2BAE1C, 9A626DB60435EDD59DF7056FA8AED0B917F3277D337DEB7B4E04D66598FF8FC7 ] C:\Windows\System32\NlsLexicons0010.dll
18:24:39.0111 0x099c  C:\Windows\System32\NlsLexicons0010.dll - ok
18:24:39.0126 0x099c  [ A08FF320A2BD98F9982B2B91F57D7881, D175F3C196BAFA05D18424490BFCF2DF7A93341608DF67B808DCED5EE7CEC668 ] C:\Windows\System32\NlsData0026.dll
18:24:39.0126 0x099c  C:\Windows\System32\NlsData0026.dll - ok
18:24:39.0126 0x099c  [ E818511C2A91010BD4938917FFDEE759, E6C0EA6A8BC9389DCA231DFD66CE4BCAF3DAD8FE029F026126D84ACDA7D42686 ] C:\Windows\System32\NlsLexicons0026.dll
18:24:39.0126 0x099c  C:\Windows\System32\NlsLexicons0026.dll - ok
18:24:39.0142 0x099c  [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] C:\Windows\System32\qmgr.dll
18:24:39.0142 0x099c  C:\Windows\System32\qmgr.dll - ok
18:24:39.0142 0x099c  [ CBD8F6EAC15E1EF69917B3961315C4D4, FB80B32C5CCDA14BC1AC5A9215CBCB57A71A8BF9D6014B193F7E77E6976F791A ] C:\Windows\System32\bitsperf.dll
18:24:39.0142 0x099c  C:\Windows\System32\bitsperf.dll - ok
18:24:39.0157 0x099c  [ 25F83CCBFA07077EFB4EEFCFF3CC3E7A, F0B62CCB2751E5FADFA357CB77F489564FB4BAA4C670B55F445577E7BC8210A3 ] C:\Windows\System32\bitsigd.dll
18:24:39.0157 0x099c  C:\Windows\System32\bitsigd.dll - ok
18:24:39.0157 0x099c  [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] C:\Windows\System32\wscsvc.dll
18:24:39.0157 0x099c  C:\Windows\System32\wscsvc.dll - ok
18:24:39.0173 0x099c  [ 47C04EEA5C1C3D27744E123F3AF25E57, 8571BAF33D6B5B876BA5C03FD1D6D001F1BB0CF1E4EB736A603212E5894298A9 ] C:\Windows\System32\wuapi.dll
18:24:39.0173 0x099c  C:\Windows\System32\wuapi.dll - ok
18:24:39.0173 0x099c  [ CCF7D341EBF8478BDDA6A2E54835881D, 7E37E216215DA6E4F8D31E90C9D4B33E0D18292D68DAC5EA2803EEA6DF7FA042 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe
18:24:39.0173 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe - ok
18:24:39.0173 0x099c  [ 6F7596C2068CB92BE44199A2174427FF, 89C3E30D5EE37CAC53B8F139CA30ADD85D3CBF235FA7F0A688798FC8CEC41846 ] C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\msdelta.dll
18:24:39.0173 0x099c  C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\msdelta.dll - ok
18:24:39.0189 0x099c  [ CDFC746E798A7AEFED4B996F75C9F8E8, A0DA00E853D75F54524869C92D79B8E06A744DBCD5FCAC9585C20AAB2294AE1B ] C:\Windows\SysWOW64\wscisvif.dll
18:24:39.0189 0x099c  C:\Windows\SysWOW64\wscisvif.dll - ok
18:24:39.0189 0x099c  [ 48E55FE508257F28C6DB4BA4A39B7CDC, C3BCEC3C13F7560310632D1E812ECF13B4AC0C3A05392EF11912567FCF8224CB ] C:\Windows\SysWOW64\wscapi.dll
18:24:39.0189 0x099c  C:\Windows\SysWOW64\wscapi.dll - ok
18:24:39.0204 0x099c  [ 01987F34FAF1A32EB7B13BF1BBAEF522, 05D096C3D8D8ADC55CE977F3A5CC1808C27D6B2BD861F47680109C8B95A1D46D ] C:\Windows\SysWOW64\wscproxystub.dll
18:24:39.0204 0x099c  C:\Windows\SysWOW64\wscproxystub.dll - ok
18:24:39.0204 0x099c  [ 5EE2E7EDE46B86B9F53A618DB67EE7B1, 2B5E57CBC7CED4C675D73BBE6D8ABB3C4C5510135BEB1B047F1040D3FA405119 ] C:\Program Files\Windows Defender\MpCmdRun.exe
18:24:39.0204 0x099c  C:\Program Files\Windows Defender\MpCmdRun.exe - ok
18:24:39.0220 0x099c  [ 4CF99FD4DAC3CE98197F39E7C7E8468E, 7A46A2BB67E75FA5EB1D5C59BDEF07A72E4665166E10F368AC317C59AD426BC1 ] C:\Program Files\Windows Defender\MpClient.dll
18:24:39.0220 0x099c  C:\Program Files\Windows Defender\MpClient.dll - ok
18:24:39.0220 0x099c  [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] C:\Windows\System32\rundll32.exe
18:24:39.0220 0x099c  C:\Windows\System32\rundll32.exe - ok
18:24:39.0236 0x099c  [ 30EC406493F585A43BC3F6E813E266A7, 0AF4F6941FA321AF916443443F268A15E1DA61342B7CDA9D1C911EBE17972749 ] C:\Windows\System32\WSClient.dll
18:24:39.0236 0x099c  C:\Windows\System32\WSClient.dll - ok
18:24:39.0236 0x099c  [ 40CBEB7C0051036CBC1C243A025F206D, 8D5FA58F1D018BA9617457B856A2143F6C78884BC2F12B32C3698201BB61F148 ] C:\Windows\System32\WSShared.dll
18:24:39.0236 0x099c  C:\Windows\System32\WSShared.dll - ok
18:24:39.0236 0x099c  [ 839CF25B9B8614CE7319BC5CF1F5C01F, 586DA741CF98840E349EB08EE6102E42D69FD0CED41DCF5C34DD33411BDA5A4B ] C:\Windows\System32\WSSync.dll
18:24:39.0236 0x099c  C:\Windows\System32\WSSync.dll - ok
18:24:39.0251 0x099c  [ 5577CAB1056C24B8E1A887A6402A1110, 79BFF145582D0E101DEEAA599548C22A36B21994B6C24583CEE957A8AA1F022E ] C:\Windows\System32\Windows.Storage.ApplicationData.dll
18:24:39.0251 0x099c  C:\Windows\System32\Windows.Storage.ApplicationData.dll - ok
18:24:39.0251 0x099c  [ 812F9BECC3D67371B4B6A41E09E1AEFE, 8B6426F2409797E80BA6A91E83D3BDFE424E524D99DD5AEB3A9117A88E090362 ] C:\Windows\System32\Windows.Networking.Connectivity.dll
18:24:39.0251 0x099c  C:\Windows\System32\Windows.Networking.Connectivity.dll - ok
18:24:39.0267 0x099c  [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] C:\Windows\System32\WSService.dll
18:24:39.0267 0x099c  C:\Windows\System32\WSService.dll - ok
18:24:39.0267 0x099c  [ B03766C8585727AEDB6D8942CD1156AD, 7D132426764DFC18036DC92E71EA8F14B8502E154B3B1C3F0EB399CB90802A10 ] C:\Windows\WinStore\WSHost.exe
18:24:39.0267 0x099c  C:\Windows\WinStore\WSHost.exe - ok
18:24:39.0282 0x099c  [ 8CC8FECBDD80B04522DFCB1ECD182DB7, 868E5CC64E167919741A5F3BA3936D2340848D0AA1BC250668739E514546028D ] C:\Windows\WinStore\WinStoreUI.dll
18:24:39.0282 0x099c  C:\Windows\WinStore\WinStoreUI.dll - ok
18:24:39.0282 0x099c  [ F4914BC077E298EF03956A5756BCC6D1, AECA4FE8E1152E69626E99F535E7A174F059DDDE1248AC532DD8E444D9D6F150 ] C:\Windows\WinStore\WSSls.dll
18:24:39.0282 0x099c  C:\Windows\WinStore\WSSls.dll - ok
18:24:39.0282 0x099c  [ E7DE316FEEFC79327CFAD8F527979CC0, 889580E96EEA3EC82F7D8D2515EED7C41055221B9E5DA4A7752D9813B4961865 ] C:\Windows\System32\Wpc.dll
18:24:39.0282 0x099c  C:\Windows\System32\Wpc.dll - ok
18:24:39.0298 0x099c  [ 83481CF1FAD89FAA7E3CDF6AF10C11D1, 23B3C5FF5405C277E5F8336385E37E6FC4CA6D4F71F9A30E8017CBE862442CCC ] C:\Windows\System32\wpnapps.dll
18:24:39.0298 0x099c  C:\Windows\System32\wpnapps.dll - ok
18:24:39.0298 0x099c  [ A09657B30C532DCF848F2B33404EF190, F8B219860DC2292A6730C1C34F4459D796905FEB2DA20B738D552FEAE2AA7B44 ] C:\Windows\System32\wbem\WMIADAP.exe
18:24:39.0298 0x099c  C:\Windows\System32\wbem\WMIADAP.exe - ok
18:24:39.0314 0x099c  [ E4B40D5609F2E5513E616F5BF9D32689, BCB94CCD277EE5B86E08B9841182FCECA9401E44088AF8D23526CB101546A8FE ] C:\Windows\System32\loadperf.dll
18:24:39.0314 0x099c  C:\Windows\System32\loadperf.dll - ok
18:24:39.0314 0x099c  [ 8E2A2303E8303EC4BE047795B7A45BE3, 801CAC5220891101F341CE190BE9B0AC08CE3D9E20A19DA4F04DD2810B0D8A9E ] C:\Program Files\NVIDIA Corporation\NetService\NVNetworkServiceAPI64.dll
18:24:39.0314 0x099c  C:\Program Files\NVIDIA Corporation\NetService\NVNetworkServiceAPI64.dll - ok
18:24:39.0329 0x099c  [ 97F24AEACAD9C9038BEC5B2BA1ADA94C, DFB48B8E1B65242FAA760A54A4D33B319A4D976D3BCA6E9E2B5684A14DB0D983 ] C:\Windows\System32\WorkFoldersShell.dll
18:24:39.0329 0x099c  C:\Windows\System32\WorkFoldersShell.dll - ok
18:24:39.0329 0x099c  [ 5AEFB4F09549545FA3BBD58A6FFF4962, 0A2835A4B9220C12819835540B6F99F4914A0EF10F6A8CEEEBFE0A36B6B549E7 ] C:\Windows\System32\AppXDeploymentExtensions.dll
18:24:39.0329 0x099c  C:\Windows\System32\AppXDeploymentExtensions.dll - ok
18:24:39.0345 0x099c  [ F299BD172B73C6D0E50E6CB6ADC9020C, 17BE2F57211874BEDCED5066E1B157B607D9A8C69B1F433D1D8CA7E4FA18B204 ] C:\Windows\System32\deviceaccess.dll
18:24:39.0345 0x099c  C:\Windows\System32\deviceaccess.dll - ok
18:24:39.0345 0x099c  [ E084D7E544D71D23E83F23CD6B0E5E46, C447BB01B5CCB95A2666C3FF6A9E0B2ADFD039F0AB811D74AA341C47590ECC39 ] C:\Windows\System32\Windows.Networking.Vpn.dll
18:24:39.0345 0x099c  C:\Windows\System32\Windows.Networking.Vpn.dll - ok
18:24:39.0361 0x099c  [ 8A50547F54A3BD5BE9A1E151E15D3F92, 6FC58D65AC32DFD02FC3B6B44184C59FF8F3952B45A8E746433741FE0C64158B ] C:\Windows\System32\profext.dll
18:24:39.0361 0x099c  C:\Windows\System32\profext.dll - ok
18:24:39.0361 0x099c  [ 5561638C4E1963D60EEF3767DB6D24D5, 069AED284D6BCE2AAA381A3F19ADFD537F9B20643A3585E7F07F4A9D6B913B7F ] C:\Windows\System32\ByteCodeGenerator.exe
18:24:39.0361 0x099c  C:\Windows\System32\ByteCodeGenerator.exe - ok
18:24:39.0361 0x099c  [ CFA52E2FE8E623042A1EEF96EB1B9481, B965B743F6EB25E6D629D549A0F17FBE7FA44D8E83280934D5666E4117F8DF1F ] C:\Windows\System32\jscript9.dll
18:24:39.0361 0x099c  C:\Windows\System32\jscript9.dll - ok
18:24:39.0376 0x099c  [ 44BFD45AD17507C7129F90656729E569, 4C8F5A22D05977413251194477DEB0704E33475B17056A7574A62392ABD036E3 ] C:\Windows\System32\RacEngn.dll
18:24:39.0376 0x099c  C:\Windows\System32\RacEngn.dll - ok
18:24:39.0376 0x099c  [ 116EABEA69D40607116D3717D12248EC, 1A98E6D12251CA8F21B8593EEE8F837FF421091BCC1D1299FD8377B62FF961AF ] C:\Windows\System32\slwga.dll
18:24:39.0376 0x099c  C:\Windows\System32\slwga.dll - ok
18:24:39.0392 0x099c  [ 70685AC6E02E9C2DFB88D4851954F5B4, AEB63D2482652ED91C9E1F6C638F0BA4A83E74BA69731E2E0AEC614EB1E70B4D ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
18:24:39.0392 0x099c  C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
18:24:39.0392 0x099c  [ 9CB652EAE0AB5EB27DD0B589D4A0D345, 4CC38FDBA128779BAC9F0495EC18C545C23619E4403C6A3B8E432BE4B294F132 ] C:\Windows\SysWOW64\SensApi.dll
18:24:39.0392 0x099c  C:\Windows\SysWOW64\SensApi.dll - ok
18:24:39.0407 0x099c  [ 688FF87A0A328A880FBE32ABB1EE16BF, 9998D95045A2A55BC785378D5C4CC252E663FF0E9483CF1BE09DAE12195683F9 ] C:\Windows\SysWOW64\dpapi.dll
18:24:39.0407 0x099c  C:\Windows\SysWOW64\dpapi.dll - ok
18:24:39.0407 0x099c  [ 319A44F3656F89E045BCFAFD544810F5, E17540A2B2D6C178C8EA08A9115479995CE45713ECD53A0C21362EF7EC1BF2DC ] C:\Windows\System32\qmgrprxy.dll
18:24:39.0407 0x099c  C:\Windows\System32\qmgrprxy.dll - ok
18:24:39.0423 0x099c  [ FEF48CEA8EEB03CE5588BF7DE1859EF1, EE0F887907462F4E0D3654DF541626567D57CFF8272566AA25B4345E23777DFD ] C:\Windows\SysWOW64\qmgrprxy.dll
18:24:39.0423 0x099c  C:\Windows\SysWOW64\qmgrprxy.dll - ok
18:24:39.0423 0x099c  [ 832DF455A6E9126B8215AB7837212808, 8E7C6603FDC9F5A7DA643C99202A6568492AD840A8D833382F4887DBD038859A ] C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEERR.DLL
18:24:39.0423 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\ACEERR.DLL - ok
18:24:39.0423 0x099c  [ D1B5D53F75C783D50CF57F5C0D8C8482, C53EBDCE3CEE4A54B254C8DED6B57B5EE03BCDDD0B736CF1419668254FDE6982 ] C:\Windows\SysWOW64\msisip.dll
18:24:39.0423 0x099c  C:\Windows\SysWOW64\msisip.dll - ok
18:24:39.0439 0x099c  [ CCCDE17347904396A0102A9EE3669555, BA1E98C97CA2C636FC6084E03B843652C86E37F6323C31B902CC45E3587508F6 ] C:\Windows\System32\werconcpl.dll
18:24:39.0439 0x099c  C:\Windows\System32\werconcpl.dll - ok
18:24:39.0439 0x099c  [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] C:\Windows\System32\wercplsupport.dll
18:24:39.0439 0x099c  C:\Windows\System32\wercplsupport.dll - ok
18:24:39.0454 0x099c  [ 7E3889B86C6FAC5F6E92001753B4688B, B944865BAFE8F075DBDE485D416AFB3942FDBA8750AD20C1ABF84D267EED8E97 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\Temp\1127811886\AdobeARMHelper.exe
18:24:39.0454 0x099c  C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\Temp\1127811886\AdobeARMHelper.exe - ok
18:24:39.0454 0x099c  [ B5EDAEFD10131A8CBF234565B94F172A, 738E134837092E5A84A43096CA2C1A0BD87C16B6F14670E4F64B0EE65ACCACC8 ] C:\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
18:24:39.0454 0x099c  C:\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL - ok
18:24:39.0470 0x099c  [ 204A549F6AA4DC2F4CAF371FAA16747A, 323560257E409347D3BA1A3AC431C3EF0CD6C350F6BB1D5B5288A577F3F156ED ] C:\Windows\SysWOW64\oleacc.dll
18:24:39.0470 0x099c  C:\Windows\SysWOW64\oleacc.dll - ok
18:24:39.0470 0x099c  [ 50DAB9E7E976BD7FF5F25B83440606AA, 738EEC85688F98A16588A87BD15556D982A663A2B8C05CBBB0C7D417EF2942EF ] C:\Windows\System32\msiexec.exe
18:24:39.0470 0x099c  C:\Windows\System32\msiexec.exe - ok
18:24:39.0486 0x099c  [ 4E472630DF3339388821D9AFB259F819, C2049EB8E5E2AC833B0B94C977889E8C1B62F9848C6E7F576B7746361B660B40 ] C:\Windows\apppatch\apppatch64\AcLayers.dll
18:24:39.0486 0x099c  C:\Windows\apppatch\apppatch64\AcLayers.dll - ok
18:24:39.0486 0x099c  [ 23E0008E024F955428D71CEDD5CCF87F, 1FFEB27CCB664E674117338A7A552BCD9B7EB8D754B1741C688930B94EF0D17A ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\fusion.dll
18:24:39.0486 0x099c  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\fusion.dll - ok
18:24:39.0501 0x099c  [ E0BC37F2051E1CB6B768A53D9514E3FA, FC7826A54D179321ACDA91115DB54DB427C185BE6AD0858127DB187E8E6692B9 ] C:\Windows\System32\pcacli.dll
18:24:39.0501 0x099c  C:\Windows\System32\pcacli.dll - ok
18:24:39.0501 0x099c  [ E1D499C501DC2E1F8B451F1A43BFABED, C5702C91551A8EECA4E0FC935B6BCA1FCD26D05C11711D15392FDC5191474826 ] C:\Windows\SysWOW64\msiexec.exe
18:24:39.0501 0x099c  C:\Windows\SysWOW64\msiexec.exe - ok
18:24:39.0501 0x099c  [ 3958E82529DA716D1D2F0C44E6F14187, 4813DF3A12DFA72461CBDFB01DBC3FADAEFB9360245798F05A3416ADE4DAED34 ] C:\Windows\System32\pcadm.dll
18:24:39.0501 0x099c  C:\Windows\System32\pcadm.dll - ok
18:24:39.0517 0x099c  [ 7A554464C1B1380C5B74ADF3DED4F663, 93BC0FFBF003982CF873B270FF845185235205E33ED1B9BD1C9811AB657F4175 ] C:\Windows\apppatch\AcLayers.dll
18:24:39.0517 0x099c  C:\Windows\apppatch\AcLayers.dll - ok
18:24:39.0517 0x099c  [ 3AA79A83EC7D1B16D296029035A9C399, 4674894D18CE9026CA54AFA9556987023C14A92EC24AFCB29030B80ABF7E0535 ] C:\Windows\SysWOW64\sfc.dll
18:24:39.0517 0x099c  C:\Windows\SysWOW64\sfc.dll - ok
18:24:39.0532 0x099c  [ FADFFEF98D0F28368B843C6E9AFD9782, 73F7E51214B775421F6679ACABC51AC1D34B4271116F5F3DD3426DF50D214886 ] C:\Windows\Installer\MSIACEF.tmp
18:24:39.0532 0x099c  C:\Windows\Installer\MSIACEF.tmp - ok
18:24:39.0532 0x099c  [ 028A102C4473D3F53D5D727F05AE3B5D, 31FC81EB82D9623884E0A705A76570C5A82B9A3777E26F1DA4530D113A9BEE61 ] C:\Windows\System32\perfproc.dll
18:24:39.0532 0x099c  C:\Windows\System32\perfproc.dll - ok
18:24:39.0548 0x099c  [ 3CD3CCDC42A3FD4036D735CDC6817517, 086906B1C8A0774567AC9232C2B0A369A17ABD06F604D745082DF24CC7282D30 ] C:\Windows\Installer\MSIC05A.tmp
18:24:39.0548 0x099c  C:\Windows\Installer\MSIC05A.tmp - ok
18:24:39.0548 0x099c  [ 974A05BB327DDF49FF730273D68E4650, C423B43C4DBBF5E3BED91F152850D66E0082FFCDBEFED66FC4A243C4F9957B95 ] C:\Windows\Installer\MSIC938.tmp
18:24:39.0548 0x099c  C:\Windows\Installer\MSIC938.tmp - ok
18:24:39.0564 0x099c  [ 974A05BB327DDF49FF730273D68E4650, C423B43C4DBBF5E3BED91F152850D66E0082FFCDBEFED66FC4A243C4F9957B95 ] C:\Windows\Installer\MSICA72.tmp
18:24:39.0564 0x099c  C:\Windows\Installer\MSICA72.tmp - ok
18:24:39.0564 0x099c  [ 9911D485A187BF4A78F30CAB8707B41F, D31A1A8394941FDA10B1B5B1886F0292A7E5BCD2738195849DB86DD5DF32C674 ] C:\Windows\SysWOW64\taskschd.dll
18:24:39.0564 0x099c  C:\Windows\SysWOW64\taskschd.dll - ok
18:24:39.0564 0x099c  [ 947E09E9669A264420A13C24C669E7C0, DC03AD7032B184813C7A4F7D86231CA80C50D00795A4BB7688E8310F46F26512 ] C:\Windows\SysWOW64\xmllite.dll
18:24:39.0564 0x099c  C:\Windows\SysWOW64\xmllite.dll - ok
18:24:39.0579 0x099c  [ 8439013421935152318D76AFE003E994, 138956055F4E092540D9CAF4993DB7AC4CE6B5C948135AC7F8EBABC062BD3909 ] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\logsession.dll
18:24:39.0579 0x099c  C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\logsession.dll - ok
18:24:39.0579 0x099c  [ 4BA25D2CBE1587A841DCFB8C8C4A6EA6, B30160E759115E24425B9BCDF606EF6EBCE4657487525EDE7F1AC40B90FF7E49 ] C:\Windows\SysWOW64\msvcr110.dll
18:24:39.0579 0x099c  C:\Windows\SysWOW64\msvcr110.dll - ok
18:24:39.0595 0x099c  [ 3E29914113EC4B968BA5EB1F6D194A0A, C8D5572CA8D7624871188F0ACABC3AE60D4C5A4F6782D952B9038DE3BC28B39A ] C:\Windows\SysWOW64\msvcp110.dll
18:24:39.0595 0x099c  C:\Windows\SysWOW64\msvcp110.dll - ok
18:24:39.0595 0x099c  [ F92C7457C2FA19DE1E4F1DBAD885FAAA, C8E576A87C2FFE0AE28BF950D1F8108BB41811B06BCA5E8078DC64CE53487755 ] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\LogTransport2.exe
18:24:39.0595 0x099c  C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\LogTransport2.exe - ok
18:24:39.0611 0x099c  [ 3FACB1344EF3D8D7BEE23E86B090929D, A03D34F6B5AFDDE95FB0D82102CC4801C7FC1B9BCC328526442323D932590F78 ] C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\reader_sl.exe
18:24:39.0611 0x099c  C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\reader_sl.exe - ok
18:24:39.0611 0x099c  [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A1F39B71078F608 ] C:\Windows\SysWOW64\msvcp120.dll
18:24:39.0611 0x099c  C:\Windows\SysWOW64\msvcp120.dll - ok
18:24:39.0626 0x099c  [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5E7058BC3AB615F ] C:\Windows\SysWOW64\msvcr120.dll
18:24:39.0626 0x099c  C:\Windows\SysWOW64\msvcr120.dll - ok
18:24:39.0626 0x099c  [ 65FCEABE3128592F84B60140F814BDDB, C8CB2D0B36C11504A47CE1CC41A456DC6B50B160BFA157598A0BD4CDEE22D004 ] C:\Windows\SysWOW64\DWrite.dll
18:24:39.0626 0x099c  C:\Windows\SysWOW64\DWrite.dll - ok
18:24:39.0642 0x099c  [ 150416EB645442AB9AF3ECC0AA183A92, ACB5921BB5816D8676E34699BB8543519B2A256851B897AEFB00B31A81FE976E ] C:\Windows\System32\aeinv.dll
18:24:39.0642 0x099c  C:\Windows\System32\aeinv.dll - ok
18:24:39.0642 0x099c  [ E3C595CD9FA0F068619C49699AC2703F, 6E871214E266BAAA3990785596694DE5E88A5BEE8A4E5B541E43E75F055152E9 ] C:\Windows\System32\msisip.dll
18:24:39.0642 0x099c  C:\Windows\System32\msisip.dll - ok
18:24:39.0657 0x099c  [ C23D4D5A87E08F8A822AD5A8DBD69592, 6D149866246E79919BDE5A0B45569EA41327C32EE250F37AD8216275A641BB27 ] C:\Windows\Installer\MSIB551.tmp
         

Alt 15.07.2015, 18:40   #15
timey89
 
gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Standard

gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe



Code:
ATTFilter
18:24:39.0657 0x099c  C:\Windows\Installer\MSIB551.tmp - ok
18:24:39.0657 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSIB755.tmp
18:24:39.0657 0x099c  C:\Windows\Installer\MSIB755.tmp - ok
18:24:39.0673 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSIB850.tmp
18:24:39.0673 0x099c  C:\Windows\Installer\MSIB850.tmp - ok
18:24:39.0673 0x099c  [ 6E9AED58AAA66B1DE991AA367D7283D2, 4D55D1C2560FB50A184AC23D4E187A4467C37B26AD7F06D21F3B940D4D2211E6 ] C:\Windows\Installer\MSIB8BF.tmp
18:24:39.0673 0x099c  C:\Windows\Installer\MSIB8BF.tmp - ok
18:24:39.0689 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSIB90E.tmp
18:24:39.0689 0x099c  C:\Windows\Installer\MSIB90E.tmp - ok
18:24:39.0689 0x099c  [ C6E7C1FA4C99AC76A9484C0DC7B056D8, 53AFF70E75AFE582B5983C62BEC71905617B1029721CCFA80130E1CB5B883B3D ] C:\Windows\Installer\MSIB9AB.tmp
18:24:39.0689 0x099c  C:\Windows\Installer\MSIB9AB.tmp - ok
18:24:39.0704 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSIC3CE.tmp
18:24:39.0704 0x099c  C:\Windows\Installer\MSIC3CE.tmp - ok
18:24:39.0704 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSIC45B.tmp
18:24:39.0704 0x099c  C:\Windows\Installer\MSIC45B.tmp - ok
18:24:39.0704 0x099c  [ 36CE18704E670DC564B126E95E00AC82, 47E14AC2CDAC5118FC8265FDEE87221999B8360076BE5F66BB4BF0187EAC3478 ] C:\Windows\Installer\MSID2C4.tmp
18:24:39.0704 0x099c  C:\Windows\Installer\MSID2C4.tmp - ok
18:24:39.0720 0x099c  [ 9C5DAAED3B3C06DBC95228CC407B8B70, E306E5C4A1C0D4B63840E38098B9FF2F4267FA4F519C7841E5A0C25A8DFF96D8 ] C:\Users\Timm\AppData\Local\Temp\{EBC4F84B-9F0B-4BF0-9FC4-78ED84B0CC7E}.exe
18:24:39.0720 0x099c  C:\Users\Timm\AppData\Local\Temp\{EBC4F84B-9F0B-4BF0-9FC4-78ED84B0CC7E}.exe - ok
18:24:39.0720 0x099c  [ 10B3D632CA42A042F9E38CC30830A800, B114B2E12B7FBCCCA34DBBABFB113AD3193EAD27F3DFCD7B4137AB9763FB2912 ] C:\Windows\System32\ExplorerFrame.dll
18:24:39.0720 0x099c  C:\Windows\System32\ExplorerFrame.dll - ok
18:24:39.0736 0x099c  [ 74541452095D89F4A9F5426AC53CB416, D1AB2EE30EB577A9D4C0450887914AA8F4EBA9233740C0BB15D21CC9F89545C8 ] C:\Windows\System32\windows.immersiveshell.serviceprovider.dll
18:24:39.0736 0x099c  C:\Windows\System32\windows.immersiveshell.serviceprovider.dll - ok
18:24:39.0736 0x099c  [ EF9E0290B2C48C918A4EDF4C47954BA3, 0D621228574A04029E54C4D430C4209C7A6E1D3E5FC3B497369B63F815DA5051 ] C:\Program Files\Common Files\microsoft shared\ink\TipBand.dll
18:24:39.0736 0x099c  C:\Program Files\Common Files\microsoft shared\ink\TipBand.dll - ok
18:24:39.0751 0x099c  [ 63CB763FE4CEADFFF5F047332814E8F9, 814EB47BE61F80D88C1B8877E86FB3DBEB85B95019F4005C9FD4F9EEE832A169 ] C:\Windows\System32\wldp.dll
18:24:39.0751 0x099c  C:\Windows\System32\wldp.dll - ok
18:24:39.0751 0x099c  [ CCC6D7250D01DA7E5499B0722CF6CAE3, F111CF6BF87B36C491E09D65B342362F6F9C9BBA77784502CEB45F2B15D87CB2 ] C:\Windows\System32\twinui.appcore.dll
18:24:39.0751 0x099c  C:\Windows\System32\twinui.appcore.dll - ok
18:24:39.0767 0x099c  [ CE10041A39A0E6F598BFA50A5AB64CF3, D9738F27B1F16D3F2666B12FF080D82360F3DFCD285081DB90E7D4E46AD762E4 ] C:\Windows\System32\wpncore.dll
18:24:39.0767 0x099c  C:\Windows\System32\wpncore.dll - ok
18:24:39.0767 0x099c  [ 9DD06F00898AA5CA7E24186EFC8E5E25, 51141D0D07DBC955B63281351D3F17163ACE9A5B08628EA1C82F33FD2913970E ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{B2B292C9-0AC4-4BCE-8DFD-DE1211097631}.tmp
18:24:39.0767 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{B2B292C9-0AC4-4BCE-8DFD-DE1211097631}.tmp - ok
18:24:39.0767 0x099c  [ 152152B5EE3512ED85C526967C350355, 13E0C65D85E8905C05FAF41221C94773B730361122CA277B50E69B4D4CA22B1D ] C:\Windows\System32\thumbcache.dll
18:24:39.0767 0x099c  C:\Windows\System32\thumbcache.dll - ok
18:24:39.0782 0x099c  [ 91A7771934C0D9D2DA7699D25BB5B348, 154A6EB866AF22B38AEE8DB5A864653FEB15DED69DE26E5B602B7C5056CDDF72 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{CB48817A-A487-4B12-9F36-A83ADE182FEF}.tmp
18:24:39.0782 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{CB48817A-A487-4B12-9F36-A83ADE182FEF}.tmp - ok
18:24:39.0782 0x099c  [ 80808656078CFCC32CF8BFEB0DD66279, 383F37599ABF16EEDEB2A60242DB7EDCC3D210A2A59DD61169047059F7041C5C ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{76AB8382-52D2-46AD-80DF-C2AD2118EA10}.tmp
18:24:39.0782 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{76AB8382-52D2-46AD-80DF-C2AD2118EA10}.tmp - ok
18:24:39.0798 0x099c  [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] C:\Windows\System32\TimeBrokerServer.dll
18:24:39.0798 0x099c  C:\Windows\System32\TimeBrokerServer.dll - ok
18:24:39.0798 0x099c  [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] C:\Windows\System32\ncbservice.dll
18:24:39.0798 0x099c  C:\Windows\System32\ncbservice.dll - ok
18:24:39.0814 0x099c  [ E8511D133B449BEE41CABFCA6EB35526, 38D635B18B195AC1626E3B54B63A7EB0807409D234620697D7FB520680CDDED5 ] C:\Windows\System32\BrokerLib.dll
18:24:39.0814 0x099c  C:\Windows\System32\BrokerLib.dll - ok
18:24:39.0814 0x099c  [ 28E8D340402C130427F2901004B7FA99, DB3324F8473B5318684D74B1B24B0A6C04BE0C3404471622564B5464C6777819 ] C:\Windows\System32\stobject.dll
18:24:39.0814 0x099c  C:\Windows\System32\stobject.dll - ok
18:24:39.0829 0x099c  [ 86FDFEA67833DB261EC01A777594EDCF, 57B189B7603FDFE32752BCDD71F5457853FECCEA13EEB61C62D1DA116DAEE948 ] C:\Windows\System32\dxtrans.dll
18:24:39.0829 0x099c  C:\Windows\System32\dxtrans.dll - ok
18:24:39.0829 0x099c  [ DF471F11CC78BE02FE6BA15F2D94F65B, 9AC230DE58CE40E78AE6872BCF4778B69EEBF17E0E41B1301FF364ABD4737A78 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{4AAFABE3-7B86-4A11-83B6-B2EDFE80F2C4}.tmp
18:24:39.0829 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{4AAFABE3-7B86-4A11-83B6-B2EDFE80F2C4}.tmp - ok
18:24:39.0845 0x099c  [ 161BC2E883A8D8759A4DCF2A85AF9128, FE02C6A19B9AB0FBDBD1C4C7AC0A3C2F3FC761B62FD07C5F0A8F5F0490C87DFB ] C:\Windows\System32\imgutil.dll
18:24:39.0845 0x099c  C:\Windows\System32\imgutil.dll - ok
18:24:39.0845 0x099c  [ 0FD19BDDD2513874FF6903F717367795, DFAF9C33F993BA26FC84EF66ABC7C483E62762F7E1FC763605A75ACC2E8AA4EE ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{DC2658A3-3820-4BE3-AC0D-741A16979F2C}.tmp
18:24:39.0845 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{DC2658A3-3820-4BE3-AC0D-741A16979F2C}.tmp - ok
18:24:39.0861 0x099c  [ DD88BBF87A43331A4E99E37F7BF59FDB, 872190F559FA0DD1F711E9FA101BA1AB6E6DE5ED0CCCE1AB7AFE45BC3B78A0F1 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{BB075504-4D93-4A45-B047-4C2E484B9E78}.tmp
18:24:39.0861 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{BB075504-4D93-4A45-B047-4C2E484B9E78}.tmp - ok
18:24:39.0861 0x099c  [ 5A2B802CB2588979BB969F7BA3BD9F21, E6845A7A56A38EA5176C3834202B8AE9C8C0BC281A697ACF06EB9B0E0A5C93A5 ] C:\Windows\System32\ddrawex.dll
18:24:39.0861 0x099c  C:\Windows\System32\ddrawex.dll - ok
18:24:39.0876 0x099c  [ 854DA94B8CB68D74CB7480B2F426CA2A, 56E0F1CE7C58E33F89CC8292F0BC49554ED45F5B763B994DA126291D5DFFE621 ] C:\Windows\System32\ddraw.dll
18:24:39.0876 0x099c  C:\Windows\System32\ddraw.dll - ok
18:24:39.0876 0x099c  [ 4261449C1CADA6B007E5C27522946D2B, 11E79D1C529E816CCCAC9266089C77A4DB44676CAEEE25C66D6DB420B18D3ACB ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{290B204A-EB4D-4C7F-B701-4E10FE9FFCD6}.tmp
18:24:39.0876 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{290B204A-EB4D-4C7F-B701-4E10FE9FFCD6}.tmp - ok
18:24:39.0892 0x099c  [ 2B96525A8E9A3FDD6516A0FFB6E7C0AF, 09EA43A3309965049FE264C121F164FE0F63AC9BADE07F2529B3AA43F3CBFAFB ] C:\Windows\System32\prnfldr.dll
18:24:39.0892 0x099c  C:\Windows\System32\prnfldr.dll - ok
18:24:39.0892 0x099c  [ 6E3381152091034DD1773C7B5D0B85E5, 7C4723736DDAF3FD87434475170610ACED43F95A346FE96A18797B193ABB5EEA ] C:\Windows\System32\dciman32.dll
18:24:39.0892 0x099c  C:\Windows\System32\dciman32.dll - ok
18:24:39.0907 0x099c  [ 6627AA675A5C1B0330487A02E23F0560, 256AE9BA4273D4247FFAD6099D5A4FC8E98EDB27293AC8CAF7A571EB3890FAA7 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{09993AC0-0086-42A7-AEFD-47DC0D0DEB9A}.tmp
18:24:39.0907 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{09993AC0-0086-42A7-AEFD-47DC0D0DEB9A}.tmp - ok
18:24:39.0907 0x099c  [ 6096209CB47D61499C3608B9C25B073C, B04C4F54ECE73D037320E0F487A959540F5E11DC66B0B457F3F627442959A314 ] C:\Windows\System32\pngfilt.dll
18:24:39.0907 0x099c  C:\Windows\System32\pngfilt.dll - ok
18:24:39.0923 0x099c  [ F58FBEA392B663B936E62939A877CA80, 5B8B8EE4B2D7CB523C1950E1E6E71FFC46CA1BD0717C7DC00CBFD45B68B36F1A ] C:\Windows\System32\SkyDrive.exe
18:24:39.0923 0x099c  C:\Windows\System32\SkyDrive.exe - ok
18:24:39.0923 0x099c  [ 723B834A07F7DF7DE4CEB637D57ACEA3, B42867045DD3FB7682CDBD133970421010F0F14125E4992C73657CABA4659250 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{C2205954-127C-4C47-BA93-E1AD3E4A02EC}.tmp
18:24:39.0923 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{C2205954-127C-4C47-BA93-E1AD3E4A02EC}.tmp - ok
18:24:39.0923 0x099c  [ 3BDED05A69947C6F2BC13C14B33BFCE7, D4CC0E96CD96CD472FB4D4C1186C519571D6E6C6A353978830D293E9A7224164 ] C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll
18:24:39.0939 0x099c  C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll - ok
18:24:39.0939 0x099c  [ C1DE893FAF6D7F6CFB479A1F61835482, AD5FA3CE73777704C67C933691F1F068E1A7FF545F728B97574F9C33AC4BBC01 ] C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{FB7613B7-6CDA-4359-A4B9-32A6C5C8563D}.tmp
18:24:39.0939 0x099c  C:\Users\Timm\AppData\Local\Temp\{62EB8ECA-8D63-4D3D-A20D-9ECD2DBB9EF0}\{FB7613B7-6CDA-4359-A4B9-32A6C5C8563D}.tmp - ok
18:24:39.0954 0x099c  [ 66CBCDDEF429E5BA83C3288EEB0771A6, DE14B6BD2040DA648F07287655DCDD58D5190A0428709110E63120E0E6898D15 ] C:\Windows\System32\SkyDriveTelemetry.dll
18:24:39.0954 0x099c  C:\Windows\System32\SkyDriveTelemetry.dll - ok
18:24:39.0954 0x099c  [ 9415D8364F64C603853D4CA27CECB3BA, 6D22ECE460948AEE682E72269C2907E2C04474FEE8ADFC4AC4619690F5DE7680 ] C:\Windows\System32\DXP.dll
18:24:39.0954 0x099c  C:\Windows\System32\DXP.dll - ok
18:24:39.0954 0x099c  [ 17F26A480391D5AB4935AE77D4F6F18A, 909A0F6DA49DC3E1D4200BA93C8690AFB5583B649AB135EE7EF6CFCC7B839FE0 ] C:\Windows\System32\shdocvw.dll
18:24:39.0954 0x099c  C:\Windows\System32\shdocvw.dll - ok
18:24:39.0970 0x099c  [ 57CA779C19C2F224BE0C5EFC40F54B60, E7DE461E2A01D5260DA9335B61263D5B2D4C661D0495E73F4AA845B16581499B ] C:\Windows\System32\SyncEngine.dll
18:24:39.0970 0x099c  C:\Windows\System32\SyncEngine.dll - ok
18:24:39.0970 0x099c  [ 53F4FC66B94804BBF2016922CD826891, CB12B6C85BC38A03D2E90E5E43D79B9B45B00304DD28B2912DFC4B6E4C4FC54D ] C:\Windows\System32\ActionCenter.dll
18:24:39.0970 0x099c  C:\Windows\System32\ActionCenter.dll - ok
18:24:39.0986 0x099c  [ 9590CA2728AACAD7ECE35008D789C3B6, E8F0E0A09EE74EB4E1BCEB82FC166B08A1D5D98649C6478F02D74CD8BC0B2D5B ] C:\Windows\System32\Syncreg.dll
18:24:39.0986 0x099c  C:\Windows\System32\Syncreg.dll - ok
18:24:39.0986 0x099c  [ 5764E8261620179F4B9472D2E589E5D9, 41510D4A21AAE673DEC295183DC59CF93036893CCDBAE826267E212E144A7301 ] C:\Windows\System32\TimeBrokerClient.dll
18:24:39.0986 0x099c  C:\Windows\System32\TimeBrokerClient.dll - ok
18:24:40.0001 0x099c  [ EB248189E980B367D09C36A1C2A6FC3D, 9D0AC50AA86E0650D0D3797FE5B38C82B919C2A16A9CD206A34793B412B31414 ] C:\Windows\System32\linkinfo.dll
18:24:40.0001 0x099c  C:\Windows\System32\linkinfo.dll - ok
18:24:40.0001 0x099c  [ C4D32A2A0032C65587993E637F2B78F6, 01384FCDEEDE02D88A49332CC6069345C5BA243C37ECC25F8BF9A45ACA7D4A26 ] C:\Windows\System32\AltTab.dll
18:24:40.0001 0x099c  C:\Windows\System32\AltTab.dll - ok
18:24:40.0017 0x099c  [ 776F9D8FA4186E2976DBC89D99CB59A6, 65CE3346E0149889494A7B6E05393D0AA24879D9B913571DA2F94DD01BE10E81 ] C:\Windows\System32\WPDShServiceObj.dll
18:24:40.0017 0x099c  C:\Windows\System32\WPDShServiceObj.dll - ok
18:24:40.0017 0x099c  [ 1676B06421492B439A9E60C55692A921, F177384A6903A1BA6B67887FF71ACFFF2F92B533B32D9CCB00DE822128A6565F ] C:\Windows\System32\Windows.UI.Search.dll
18:24:40.0017 0x099c  C:\Windows\System32\Windows.UI.Search.dll - ok
18:24:40.0017 0x099c  [ 7FB2433AD4F18556CAB45092AF621FA2, C1EB54CCF21B0270ABDA820B741B0F30A3974065BE189168AC55CD3D0837D116 ] C:\Windows\System32\wpnprv.dll
18:24:40.0017 0x099c  C:\Windows\System32\wpnprv.dll - ok
18:24:40.0033 0x099c  [ 98A755F17458A425CCE6389346BA6540, D4B117BF19D6FD2D284D7CB6A7D24B91F023F5F8B0B3EB9894616BD60431552E ] C:\Windows\System32\wincorlib.dll
18:24:40.0033 0x099c  C:\Windows\System32\wincorlib.dll - ok
18:24:40.0033 0x099c  [ 7FF1EBF5A376F5B17421E6868F353627, 6ADE337B227FA50489287169979593E5E05DBED4DB8F3B4271CEEBC3CCD76A72 ] C:\Windows\System32\pnidui.dll
18:24:40.0033 0x099c  C:\Windows\System32\pnidui.dll - ok
18:24:40.0048 0x099c  [ DE320127B1ED10BF465AF9FB7EBD4557, BFF3F36E8398A089406F33C596398289CD20221E2F82235B3C9897540E6EE02E ] C:\Windows\System32\PortableDeviceTypes.dll
18:24:40.0048 0x099c  C:\Windows\System32\PortableDeviceTypes.dll - ok
18:24:40.0048 0x099c  [ 0512FCA695595018A289C032A409EA64, 608922D1970E8FAC02DA0F01920C4E3706BE75C116018322FBCB926DC90882E7 ] C:\Windows\System32\SettingMonitor.dll
18:24:40.0048 0x099c  C:\Windows\System32\SettingMonitor.dll - ok
18:24:40.0064 0x099c  [ 817005B17E25BD6E2369635D5A33DA51, D9BF3391AC1DA28804FA1B83753C054D63F0BFB3A5E0020A36F00FA9247EFEC9 ] C:\Windows\System32\AepRoam.dll
18:24:40.0064 0x099c  C:\Windows\System32\AepRoam.dll - ok
18:24:40.0064 0x099c  [ 7101124E9C48FDBCD7C3DA690990010B, E4FC33B2D38CC75BF0C98A69DA2860F000BC17FFC86C96B342BDFDDE6C247C00 ] C:\Windows\System32\bthprops.cpl
18:24:40.0064 0x099c  C:\Windows\System32\bthprops.cpl - ok
18:24:40.0079 0x099c  [ A4DE7868879498A4E4CBB12788FAA3E8, C55EAB2C4B644C866B2BDE186D7BB4BCC19DEB4C738DA344FA00E9E49C11D12E ] C:\Windows\System32\BluetoothApis.dll
18:24:40.0079 0x099c  C:\Windows\System32\BluetoothApis.dll - ok
18:24:40.0079 0x099c  [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] C:\Windows\System32\wlidsvc.dll
18:24:40.0079 0x099c  C:\Windows\System32\wlidsvc.dll - ok
18:24:40.0095 0x099c  [ 29CAE0205F1749741308FC3D9E7433C0, EADD80911C65821FB9A335610E325BD49C0F0C5D1A17C2E7F053A9B8E6F9DE0A ] C:\Program Files\Windows Portable Devices\sqmapi.dll
18:24:40.0095 0x099c  C:\Program Files\Windows Portable Devices\sqmapi.dll - ok
18:24:40.0095 0x099c  [ 76C3A3F212D8ABE96B0B4BDA2A67F66F, 593DF65B95EE88B88008797C6BC5032FFAA9FFFECA5EEBF4FA2FBAD3BAB78D50 ] C:\Windows\System32\Windows.Networking.Sockets.PushEnabledApplication.dll
18:24:40.0095 0x099c  C:\Windows\System32\Windows.Networking.Sockets.PushEnabledApplication.dll - ok
18:24:40.0111 0x099c  [ E6B65614304E4695C87FC4BD8894F3B3, 22B99BC0B863D6834D272B4AFF0A52F6C968056BFBFE8D73114C33C89CB8432A ] C:\Windows\System32\networkexplorer.dll
18:24:40.0111 0x099c  C:\Windows\System32\networkexplorer.dll - ok
18:24:40.0111 0x099c  [ 9D2136DDE6753B36A0771FF34337B5D1, 8F139C765BFA080EE15BFC64EC357C9B5EB0BEB20A929E58AB00E19EDBE90254 ] C:\Windows\SysWOW64\riched20.dll
18:24:40.0111 0x099c  C:\Windows\SysWOW64\riched20.dll - ok
18:24:40.0126 0x099c  [ A2D053D11E3756DB3C5642AACA84E69B, 0915A5CEF05CBCC0C8AB16A19DFE025CAF1BF04EE0EA80846D23973A372AF5CA ] C:\Windows\SysWOW64\usp10.dll
18:24:40.0126 0x099c  C:\Windows\SysWOW64\usp10.dll - ok
18:24:40.0126 0x099c  [ AE5A2843B4A2E1E558B9EE13EF62CCE5, C484CF7EF7C0346783BA8771BD621FABDFB24A49ECE3DAA687EBB559C78F73D7 ] C:\Windows\System32\ieframe.dll
18:24:40.0126 0x099c  C:\Windows\System32\ieframe.dll - ok
18:24:40.0126 0x099c  [ 3014CE5846A486C624E3E2CEB8C3290C, F4ED62455AD73B7CB206A419694807D5546AC7A0275FEF506FDCC608651581EA ] C:\Windows\System32\SkyDriveShell.dll
18:24:40.0126 0x099c  C:\Windows\System32\SkyDriveShell.dll - ok
18:24:40.0142 0x099c  [ AB7892A876ED44FC9C1D80FD9F3046E0, F5AA37343F8BF3B6AD811F3F88CB227CDD7D02EA1A42BAF6A273087C0FAAA24A ] C:\Windows\System32\StructuredQuery.dll
18:24:40.0142 0x099c  C:\Windows\System32\StructuredQuery.dll - ok
18:24:40.0142 0x099c  [ 10CE7F7704E293F6CC6E0AF51DBFD95A, BA4B5C2F6329B9FF3F0522B3F583358D39355FD310146AAE2A1A666F4E2377A7 ] C:\Windows\System32\SearchFolder.dll
18:24:40.0142 0x099c  C:\Windows\System32\SearchFolder.dll - ok
18:24:40.0158 0x099c  [ 2FE534AC99FE081D9A6950C0C8032751, DF0AA724E9762B124B2B05EA7DA6061A44C470906A220D34017D3F912E64E3AA ] C:\Windows\SysWOW64\msls31.dll
18:24:40.0158 0x099c  C:\Windows\SysWOW64\msls31.dll - ok
18:24:40.0158 0x099c  [ 42FFA34D6A1ABBC6064E0D8A452039D3, 5DC1A328733681C010B66991116317C3F01F77194C2FAEAB8730CE03CBC906EB ] C:\Windows\System32\mssvp.dll
18:24:40.0158 0x099c  C:\Windows\System32\mssvp.dll - ok
18:24:40.0173 0x099c  [ C3243F65447388A35107A996AC8B30C2, 51709134C24205DB62537F85CBC36B17DBD3BF034614115560CF72D379216880 ] C:\Windows\SysWOW64\ExplorerFrame.dll
18:24:40.0173 0x099c  C:\Windows\SysWOW64\ExplorerFrame.dll - ok
18:24:40.0173 0x099c  [ 49EEC8569BF200C95A38D00766AFB830, 722E7778B1C6B24AF7DB1B727C1BD6F422C9AFD910C0EB0ECEDB4BBBF2724D86 ] C:\Windows\System32\Windows.UI.Xaml.dll
18:24:40.0173 0x099c  C:\Windows\System32\Windows.UI.Xaml.dll - ok
18:24:40.0189 0x099c  [ CFE23A35E84A2CCA5DE8DF34DC238782, 1E570819CF4104F563D0895259A210E4062B29BD6AECE408793417E38B2422F3 ] C:\Windows\SysWOW64\duser.dll
18:24:40.0189 0x099c  C:\Windows\SysWOW64\duser.dll - ok
18:24:40.0189 0x099c  [ A5BFF3597F39015F18AC756F2B475D58, 9DFCC63C0010F4A988C64BEDD863A85B07FC7B068E6B3B07838B14C9ACF2FDF8 ] C:\Windows\SysWOW64\dui70.dll
18:24:40.0189 0x099c  C:\Windows\SysWOW64\dui70.dll - ok
18:24:40.0189 0x099c  [ 7103F3ECC0DBE9BD7986C4DD2FAC8CC5, 09175713D8E5D50E46470EA388BA455A80FF0F240E3FE51F7ADDF255A820A318 ] C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll
18:24:40.0189 0x099c  C:\Users\Timm\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll - ok
18:24:40.0204 0x099c  [ 2EC3B52F3359E87461F88C3D485B85C2, D9B0D3F87752201DDC7E64FC48B0345ABE49619B2BA73D8AC4ADC1249109B0C7 ] C:\Windows\System32\WWanAPI.dll
18:24:40.0204 0x099c  C:\Windows\System32\WWanAPI.dll - ok
18:24:40.0204 0x099c  [ 59A2DC7A8C9E9425DA74333BDEC57989, 73CF2657CB3E407346D17E776A6566131AE63954D583DE5C36BD78B9590B2991 ] C:\Windows\System32\cbfsMntNtf4.dll
18:24:40.0204 0x099c  C:\Windows\System32\cbfsMntNtf4.dll - ok
18:24:40.0220 0x099c  [ 51E0339BAA4C418D894B0BF888A344A6, 0CBF88CEAB09615BCFE242BFF5E02872F2516EBFB19E6856E3B4710366140855 ] C:\Windows\System32\EhStorShell.dll
18:24:40.0220 0x099c  C:\Windows\System32\EhStorShell.dll - ok
18:24:40.0220 0x099c  [ 0BFDE0D93144DBD81178B427D3961FEC, 679295809838931D1540D4ED89BB058B6CE4855521F398546FA7B8AC0D837BD9 ] C:\Windows\System32\cscui.dll
18:24:40.0220 0x099c  C:\Windows\System32\cscui.dll - ok
18:24:40.0236 0x099c  [ 938E981BBD070540DE2B28C59839A41B, D8ACBBB97E110DA45C11D759253C23ADD4AB51C6E6F298ACCB3584DC73E0B617 ] C:\Windows\System32\cscdll.dll
18:24:40.0236 0x099c  C:\Windows\System32\cscdll.dll - ok
18:24:40.0236 0x099c  [ 6804E7327A7F8A6567289C7CE825A015, 09C3AC937D2AFA5C19AD6F0C1FB0F0E82FD6880FC5FC74664CF7C60BE6F3ADC3 ] C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll
18:24:40.0236 0x099c  C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll - ok
18:24:40.0251 0x099c  [ D1FAEE5CFEB7E87975766D7A29E48342, 3EE468D12E79F352A8547E4326AE87AE9786F6FAD24763FD9CFAB52C4EB10DCF ] C:\Windows\System32\cscobj.dll
18:24:40.0251 0x099c  C:\Windows\System32\cscobj.dll - ok
18:24:40.0251 0x099c  [ D3EC1112BE0E06ED94308A7B97C929EF, 4BB9690070EC72713F656D9F08090EC579515A1806CC4FDE84BEF433F68A6996 ] C:\Windows\System32\srchadmin.dll
18:24:40.0251 0x099c  C:\Windows\System32\srchadmin.dll - ok
18:24:40.0251 0x099c  [ DE6533132FC2BD8A2ED5D370D41CBED3, 4CF0CBCF3ADC42614CF4C132FA52EFBBAE6FB69059AB6FA72735FB53B326D162 ] C:\Windows\System32\SyncCenter.dll
18:24:40.0251 0x099c  C:\Windows\System32\SyncCenter.dll - ok
18:24:40.0267 0x099c  [ 0515B5D282D87678EE47D23AF95A948A, FC0757685C1E3155058F7602CD4462FEFC584918F7EA3F218DC8E76C0DB630D6 ] C:\Windows\System32\imapi2.dll
18:24:40.0267 0x099c  C:\Windows\System32\imapi2.dll - ok
18:24:40.0267 0x099c  [ 7C514A95C3EAB34547DDBEA9AB09FC19, 9C807A35AB9C8B9EDB4DDFAB37B97A4C85BEF4EBE6ED8A3FDA6DC80C09CF044B ] C:\Windows\System32\hgcpl.dll
18:24:40.0267 0x099c  C:\Windows\System32\hgcpl.dll - ok
18:24:40.0283 0x099c  [ EB34CE5EFA1591915F973EB30C77A1D8, 86D608B89997A5BF9A6BFD5386A26CFCFACB88A6E3A2D6B4BC9C375085F2AE7E ] C:\Windows\System32\Windows.Globalization.Fontgroups.dll
18:24:40.0283 0x099c  C:\Windows\System32\Windows.Globalization.Fontgroups.dll - ok
18:24:40.0283 0x099c  [ FCD3596AC11042A543CF54294A54B579, 50373666C941D4DC61DF2F2FAB5C7C214D3C61DA11433A65B998843548460580 ] C:\Windows\System32\gameux.dll
18:24:40.0283 0x099c  C:\Windows\System32\gameux.dll - ok
18:24:40.0298 0x099c  [ 6A59AE2735639095CD93E58B0893914C, A1BFC257313185BD4BE63275C1B58877151C31DE3173EADE685199E9D28A23D9 ] C:\Windows\System32\igfxtray.exe
18:24:40.0298 0x099c  C:\Windows\System32\igfxtray.exe - ok
18:24:40.0298 0x099c  [ 70090E2C12E18A8905923A00DC0560DC, 6A5EC9206F49BEFD3032539E46819964875A35B687925B79A5DCF05AC7220A01 ] C:\Windows\System32\hccutils.dll
18:24:40.0298 0x099c  C:\Windows\System32\hccutils.dll - ok
18:24:40.0314 0x099c  [ 4341A0AE66759EDC080D92DAA0D9B341, A17D7A56627ECBE7D23E634A9E726BA2E3682A7EB75659AE68A426FF2954C717 ] C:\Windows\System32\hkcmd.exe
18:24:40.0314 0x099c  C:\Windows\System32\hkcmd.exe - ok
18:24:40.0314 0x099c  [ D450551F5CB9378B0B0CEB1CA3529E29, 37D1F8EA59A6C4C9CAD902FC2E339E1452FB57A117C21D72185A11A4EE0DD39F ] C:\Windows\System32\igfxsrvc.exe
18:24:40.0314 0x099c  C:\Windows\System32\igfxsrvc.exe - ok
18:24:40.0314 0x099c  [ 0E1A5C2E5027AE1E410AF13A19187272, F84C46C56B8F3013BD54EB739E8AE9ED81DEC890D73E4E50DDC1275D004E5F2D ] C:\Windows\System32\igfxsrvc.dll
18:24:40.0314 0x099c  C:\Windows\System32\igfxsrvc.dll - ok
18:24:40.0329 0x099c  [ 3F1DC295F3C69FCB47B9755B1B9479FF, F763637F350E12954E6F81C931B4423A2C6DD5B98AA2A120CC4DE59F81E06526 ] C:\Windows\System32\igfxdev.dll
18:24:40.0329 0x099c  C:\Windows\System32\igfxdev.dll - ok
18:24:40.0329 0x099c  [ 5451A9DA41DA19CDD467616492D4096F, 54CBA128702FFF112AE8BA4B187D00CC3ABAB68D3EB1B915193E50523D4DA73F ] C:\Windows\System32\igfxpers.exe
18:24:40.0329 0x099c  C:\Windows\System32\igfxpers.exe - ok
18:24:40.0345 0x099c  [ C67607E46AA8D82BFC29AFD6864DA183, 8153E6C7A8E8F75FFCAA5667600FAC10FCE166B502CFB8AC0A06B77228EFEE61 ] C:\Windows\System32\igfxrdeu.lrc
18:24:40.0345 0x099c  C:\Windows\System32\igfxrdeu.lrc - ok
18:24:40.0345 0x099c  [ 4B312BDFBBF27AB1E4443CBF2E608389, F7E38C8E7A51B3F8AF5169BF9C97E5D896083933DCEF48CD220E98D3FD3ACC92 ] C:\Windows\System32\igfxress.dll
18:24:40.0345 0x099c  C:\Windows\System32\igfxress.dll - ok
18:24:40.0361 0x099c  [ 105CFE016CCB20175BEACEC146F175AB, BA21F40CDBF159EE4EACCBFB2A7D20EB9E1C2758883AF089A8E53EE478002E83 ] C:\Windows\System32\IccLibDll_x64.dll
18:24:40.0361 0x099c  C:\Windows\System32\IccLibDll_x64.dll - ok
18:24:40.0361 0x099c  [ 475FB7084CC6D2D11A2B6E56CF91C57B, DCB9A0B8047B6AB8B4D19961523D6B69FA0A9F72000C351CFD6FD243B529F3E4 ] C:\Windows\System32\msiltcfg.dll
18:24:40.0361 0x099c  C:\Windows\System32\msiltcfg.dll - ok
18:24:40.0376 0x099c  [ 0E6C6542856BBD380356983179F859E7, 6519E585348DF1E64B147D682D0962191306FEE57E596ECC5E8BD310C14698F6 ] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
18:24:40.0376 0x099c  C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe - ok
18:24:40.0376 0x099c  [ 87E7011A7C691045C3257443CA4F264B, 41E1468E51CF79C164B3F5FEA6717B28DF4E83798CE77D471CFD317E305D8590 ] C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
18:24:40.0376 0x099c  C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe - ok
18:24:40.0392 0x099c  [ 17804FCA602C24F7EF30791D4AF90885, BBD77ABA31024DB8AB912B3B7F0B5435D53F4AE0FADCED4AFC60BE70D73A4B96 ] C:\Windows\System32\oledlg.dll
18:24:40.0392 0x099c  C:\Windows\System32\oledlg.dll - ok
18:24:40.0392 0x099c  [ 3F693D7695EDD474FFC8AB3CE02EDA96, 4606B2769546E921ACB99D99D8C2E39AA2836B23B7B2DD81BA1F6B28E04E0051 ] C:\Program Files\TrueSuite\TrueSuite.ClientAppLogon.dll
18:24:40.0392 0x099c  C:\Program Files\TrueSuite\TrueSuite.ClientAppLogon.dll - ok
18:24:40.0408 0x099c  [ AE89FEFBD6105A2A186AB6F91CBF4EAB, 5B1E1374EFDEDB55A8A6DFB6A1A94E7E6C8192004E2E4839D2BDE82643DD9F1C ] C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
18:24:40.0408 0x099c  C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe - ok
18:24:40.0408 0x099c  [ 8FE3ADBB0BA2C6818D90FA12B976A8D5, 77F35FABE0FFC36202985E72D4F81A5604C03A360AEA587C1D1AE443745DB90B ] C:\Windows\SysWOW64\oledlg.dll
18:24:40.0408 0x099c  C:\Windows\SysWOW64\oledlg.dll - ok
18:24:40.0408 0x099c  [ D96B044042B837EBBB8394C45EF8DF22, 9DB8F231E5B4052352ADBEC51C63A0B3CD6A10FC76265D4741683CF1D24210CF ] C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogon.dll
18:24:40.0423 0x099c  C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogon.dll - ok
18:24:40.0423 0x099c  [ 76C55D906158206697DB92EC291FC6AD, 8D0DA340F1ADB5BDD393A86BF124F34134EE9939C0F0574694C9098926CCAE9B ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
18:24:40.0423 0x099c  C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok
18:24:40.0423 0x099c  [ ECC9FA6A76A13D2088DEE6D63F702A09, 336CA972D61F6C88561035F0B1B8B48ADA58F1955D1948223F8322E098E57884 ] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
18:24:40.0423 0x099c  C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe - ok
18:24:40.0439 0x099c  [ D272E47218159EAE5513F920ED8F893F, F8B0E2D0638A229103194F00F147E2A9CEAEACF5F0431A812EC0B3385BC53055 ] C:\Windows\System32\SynCOM.dll
18:24:40.0439 0x099c  C:\Windows\System32\SynCOM.dll - ok
18:24:40.0439 0x099c  [ 254D8EE0D4991096EC72A147E1BE9BAD, EE27F459DD663938F21E772D7C5624931F4E4D28C2AD646652AE6FB2B315B45C ] C:\Windows\System32\SynTPAPI.dll
18:24:40.0439 0x099c  C:\Windows\System32\SynTPAPI.dll - ok
18:24:40.0454 0x099c  [ 85134B5B66DDAB0F210FE0D1AF1661D1, 7DA87CD7AE44B96059221E1F4970E6C648F011C678DA905605A443C8E3FFC485 ] C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
18:24:40.0454 0x099c  C:\Program Files\Synaptics\SynTP\SynTPHelper.exe - ok
18:24:40.0454 0x099c  [ 74E6E1E62E35661679A6CAFF392B96E9, 03AB89AE3B205DDF31497FDECCFF9BA389892C3DAF05D0D408C2627FBA06164D ] C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe
18:24:40.0454 0x099c  C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe - ok
18:24:40.0470 0x099c  [ D1A2E993DB1867C79177CCC9DB6337D0, A150EF921B299E2FE3E351A9FF8A325B3FB2214EA4F119C829B6C728E043B669 ] C:\Windows\System32\consent.exe
18:24:40.0470 0x099c  C:\Windows\System32\consent.exe - ok
18:24:40.0470 0x099c  [ 9DBA670402AD989D263B83EA4537B24F, A0385817F9EB032D8257265B5FE1BF029270EAFA3B5AEF0C6533D9722D6999CD ] C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.dll
18:24:40.0470 0x099c  C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.dll - ok
18:24:40.0470 0x099c  [ 79A3B950988F8D2B81906D0C0473158B, 7D9EDB4F9A4800D31C103CF2BBC93C0F5F31888E93E899C43EC5984B4807C3D8 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
18:24:40.0470 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe - ok
18:24:40.0486 0x099c  [ 5AEBF6FA9805C9101220AA4FB4FA17E7, A9B2FC41380211A6C44E839A95676A5BA868CEEBB56D83A780230434C2A20836 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
18:24:40.0486 0x099c  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe - ok
18:24:40.0486 0x099c  [ E20D1C0E5231C91E9341E74839867E85, D6953EC9858BB507767EA3B7DF8452F979BE3260B27DC930DDD3BD2F764AA5DF ] C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
18:24:40.0486 0x099c  C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe - ok
18:24:40.0501 0x099c  [ D3B919E185C73EE195B6FFA59A8FCCEC, 82D3D392AADDD7057239767E3891ECD57B23A015F1527F47A1BD6E5EA3C037B7 ] C:\Windows\System32\usbui.dll
18:24:40.0501 0x099c  C:\Windows\System32\usbui.dll - ok
18:24:40.0501 0x099c  [ 0BA95C4CD5C908CEDAD87036126E3AB1, AFABCB336EF36B928F5573785F9910EE16B4563C44CEE0662EA58F8E60F9E020 ] C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe
18:24:40.0501 0x099c  C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe - ok
18:24:40.0517 0x099c  [ A6ABD4AF02AB03676DEA55F383ABC7C2, 62F838618C78A297D970EC58F97F2D843EBFEF2D81754D658664BEEED79BFB50 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
18:24:40.0517 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe - ok
18:24:40.0517 0x099c  [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe
18:24:40.0517 0x099c  C:\Program Files (x86)\PDF24\pdf24.exe - ok
18:24:40.0533 0x099c  [ B2C9F9D0B7423737C83B32CB2C92F3CA, CA35AB37E3E19636FA2F4AC55C1D45317C63B15B35455BF68815656358118B8C ] C:\Program Files (x86)\PDF24\Settings.dll
18:24:40.0533 0x099c  C:\Program Files (x86)\PDF24\Settings.dll - ok
18:24:40.0533 0x099c  [ 5120CD65A74A5E054FB2B0577688024C, 2C771743C797ED2F94E4C0CD7472D20532DB6C3E95DEB0DA4D14D6B5469EE273 ] C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
18:24:40.0533 0x099c  C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe - ok
18:24:40.0548 0x099c  [ 1942609A95FD122917AE1ED33A405ADC, D3FA1298C7E9AB3F1A976C6C1365A4CC161FE486873A243D47CF0946B918D75B ] C:\Program Files (x86)\PDF24\NotifyIcon.dll
18:24:40.0548 0x099c  C:\Program Files (x86)\PDF24\NotifyIcon.dll - ok
18:24:40.0548 0x099c  [ BC83108B18756547013ED443B8CDB31B, B2AD109C15EAA92079582787B7772BA0A2F034F7D075907FF87028DF0EAEA671 ] C:\Program Files (x86)\PDF24\msvcp100.dll
18:24:40.0548 0x099c  C:\Program Files (x86)\PDF24\msvcp100.dll - ok
18:24:40.0564 0x099c  [ 0E37FBFA79D349D672456923EC5FBBE3, 8793353461826FBD48F25EA8B835BE204B758CE7510DB2AF631B28850355BD18 ] C:\Program Files (x86)\PDF24\msvcr100.dll
18:24:40.0564 0x099c  C:\Program Files (x86)\PDF24\msvcr100.dll - ok
18:24:40.0564 0x099c  [ 28645BD27D9584854F6E1971E256DC4D, 3B0CF08149745DA9289F37B1F8AF0035F5E9E4BB5639038BB5E74721BED174C9 ] C:\Program Files (x86)\PDF24\Language.dll
18:24:40.0564 0x099c  C:\Program Files (x86)\PDF24\Language.dll - ok
18:24:40.0564 0x099c  [ 0771230FE37EBD44EAEA114D06F34384, 804EDA0FA65FDA6577997B7906F1DC5B30F6CE5798B1AD4D4572AA5F9998831A ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsg.dll
18:24:40.0564 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsg.dll - ok
18:24:40.0579 0x099c  [ D7C8626903FDD1C29C29958B4F9A7FF3, CCF673116F2B3859D1B1C0D2504143AC898A62C3A063509551D34EF4166A557E ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsgrc.dll
18:24:40.0579 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsgrc.dll - ok
18:24:40.0579 0x099c  [ 12CF3842716631529AF72CCEFF98C13C, 24FE711AE3F456AF30A9A95EC330CDCB016CC009240026B38E4398F71106E3FC ] C:\Program Files (x86)\Avira\AntiVir Desktop\setup.dll
18:24:40.0579 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\setup.dll - ok
18:24:40.0595 0x099c  [ 2609D07491689A6CAC2F9D98C5476F5B, 080493808327E9733F66DA45D8640EF337BC8D954C5CB33A346ED44D382C5CF3 ] C:\Program Files (x86)\Avira\AntiVir Desktop\toastnotifier.exe
18:24:40.0595 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\toastnotifier.exe - ok
18:24:40.0595 0x099c  [ FBFE6251E7847DA2808B125A29DAFE4B, 23B2CD1E4AAF4C8E20761C35999C1136CD676DA796CEDAE50467DC95DA6E7FDD ] C:\Program Files (x86)\PDF24\About.dll
18:24:40.0595 0x099c  C:\Program Files (x86)\PDF24\About.dll - ok
18:24:40.0611 0x099c  [ 1BD0A85A14A1D8615D165AF090F6577F, F90449A2C9E0F95BC6A1B84212AA09454832A02BC2E976E8DC1A5FF2A4160B32 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsecimpl.dll
18:24:40.0611 0x099c  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsecimpl.dll - ok
18:24:40.0611 0x099c  [ E81AC183EE021B3EC81B4005F4CE2D7D, D2486FCE463B1392283A8F1E6AAF7BE0E79463EE83290BFFC19FE7DCF9643160 ] C:\Windows\SysWOW64\linkinfo.dll
18:24:40.0611 0x099c  C:\Windows\SysWOW64\linkinfo.dll - ok
18:24:40.0626 0x099c  [ 5319A8BF3078A3FFEFDFC922145F50E5, DE9F56A0FEA329F609A2286586D260DD78309C1E067CE39BC34F387DAF2120E7 ] C:\Users\Timm\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
18:24:40.0626 0x099c  C:\Users\Timm\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll - ok
18:24:40.0626 0x099c  [ BB57C3123BCE6EAD53A991CA170A9942, 12DE76A419C98A4A24C43E42AE0206DAE8FC58628D4E1A22A882EAF2A0AE17FD ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmainrc.dll
18:24:40.0626 0x099c  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmainrc.dll - ok
18:24:40.0642 0x099c  ================ Scan generic autorun ======================
18:24:40.0720 0x099c  [ 6A59AE2735639095CD93E58B0893914C, A1BFC257313185BD4BE63275C1B58877151C31DE3173EADE685199E9D28A23D9 ] C:\Windows\system32\igfxtray.exe
18:24:40.0736 0x099c  IgfxTray - ok
18:24:40.0814 0x099c  [ 4341A0AE66759EDC080D92DAA0D9B341, A17D7A56627ECBE7D23E634A9E726BA2E3682A7EB75659AE68A426FF2954C717 ] C:\Windows\system32\hkcmd.exe
18:24:40.0829 0x099c  HotKeysCmds - ok
18:24:40.0954 0x099c  [ 5451A9DA41DA19CDD467616492D4096F, 54CBA128702FFF112AE8BA4B187D00CC3ABAB68D3EB1B915193E50523D4DA73F ] C:\Windows\system32\igfxpers.exe
18:24:40.0970 0x099c  Persistence - ok
18:24:40.0970 0x099c  Nvtmru - ok
18:24:41.0033 0x099c  [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] C:\Windows\system32\rundll32.exe
18:24:41.0048 0x099c  ShadowPlay - ok
18:24:41.0158 0x099c  [ 0E6C6542856BBD380356983179F859E7, 6519E585348DF1E64B147D682D0962191306FEE57E596ECC5E8BD310C14698F6 ] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
18:24:41.0173 0x099c  AmIcoSinglun64 - ok
18:24:41.0267 0x099c  [ 87E7011A7C691045C3257443CA4F264B, 41E1468E51CF79C164B3F5FEA6717B28DF4E83798CE77D471CFD317E305D8590 ] C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
18:24:41.0283 0x099c  ClientAppLogon - ok
18:24:41.0408 0x099c  [ AE89FEFBD6105A2A186AB6F91CBF4EAB, 5B1E1374EFDEDB55A8A6DFB6A1A94E7E6C8192004E2E4839D2BDE82643DD9F1C ] C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
18:24:41.0423 0x099c  ClientAppLogon32 - ok
18:24:41.0423 0x099c  SynTPEnh - ok
18:24:41.0423 0x099c  SynAsusAcpi - ok
18:24:41.0736 0x099c  [ 74E6E1E62E35661679A6CAFF392B96E9, 03AB89AE3B205DDF31497FDECCFF9BA389892C3DAF05D0D408C2627FBA06164D ] C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe
18:24:41.0861 0x099c  EKIJ5000StatusMonitor - ok
18:24:42.0142 0x099c  [ 046DDF9B31BEC14D03CCC97DD728A4D1, D29F49F870B27553E13F9C1486D9B27A27C41FBEC7ACEC77EDFD5552C941E710 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
18:24:42.0283 0x099c  NvBackend - ok
18:24:42.0361 0x099c  [ 79A3B950988F8D2B81906D0C0473158B, 7D9EDB4F9A4800D31C103CF2BBC93C0F5F31888E93E899C43EC5984B4807C3D8 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
18:24:42.0376 0x099c  ATKMEDIA - ok
18:24:42.0423 0x099c  [ 5AEBF6FA9805C9101220AA4FB4FA17E7, A9B2FC41380211A6C44E839A95676A5BA868CEEBB56D83A780230434C2A20836 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
18:24:42.0423 0x099c  HControlUser - ok
18:24:42.0470 0x099c  [ E20D1C0E5231C91E9341E74839867E85, D6953EC9858BB507767EA3B7DF8452F979BE3260B27DC930DDD3BD2F764AA5DF ] C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
18:24:42.0486 0x099c  FLxHCIm - ok
18:24:42.0642 0x099c  [ FB1A303207C1124C2B61A50E5A32AC21, 5BE93B9FDE657DCDAF4E8C02BC3F364C58B115DCE3AD10044FBCDC0FF90C2EBC ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
18:24:42.0954 0x099c  DivXUpdate - ok
18:24:42.0970 0x099c  Conime - ok
18:24:43.0392 0x099c  [ 0BA95C4CD5C908CEDAD87036126E3AB1, AFABCB336EF36B928F5573785F9910EE16B4563C44CEE0662EA58F8E60F9E020 ] C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe
18:24:43.0501 0x099c  EKStatusMonitor - ok
18:24:43.0923 0x099c  [ A6ABD4AF02AB03676DEA55F383ABC7C2, 62F838618C78A297D970EC58F97F2D843EBFEF2D81754D658664BEEED79BFB50 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
18:24:43.0955 0x099c  avgnt - ok
18:24:44.0064 0x099c  [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe
18:24:44.0064 0x099c  PDFPrint - ok
18:24:44.0205 0x099c  [ 5120CD65A74A5E054FB2B0577688024C, 2C771743C797ED2F94E4C0CD7472D20532DB6C3E95DEB0DA4D14D6B5469EE273 ] C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
18:24:44.0220 0x099c  Avira Systray - ok
18:24:44.0220 0x099c  Waiting for KSN requests completion. In queue: 17
18:24:45.0236 0x099c  Waiting for KSN requests completion. In queue: 17
18:24:46.0251 0x099c  Waiting for KSN requests completion. In queue: 17
18:24:47.0783 0x099c  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 15.0.11.550 ), 0x41000 ( enabled : updated )
18:24:48.0017 0x099c  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
18:24:48.0158 0x099c  Win FW state via NFP2: enabled
18:24:50.0548 0x099c  ============================================================
18:24:50.0548 0x099c  Scan finished
18:24:50.0548 0x099c  ============================================================
18:24:50.0548 0x0f80  Detected object count: 0
18:24:50.0548 0x0f80  Actual detected object count: 0
18:29:15.0331 0x0e1c  Deinitialize success
         
ich musste es leider aufteilen, weil es ultra viel war!

Sorry

Antwort

Themen zu gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe
anti-malware, appdata, cache, check, datenbank, datum, desktop, downloads, eingefangen, gefälschte, link, mail, malware, malwarebytes, microsoft, quarantäne, schonmal, schutz, seite, webseite, webseiten, website, windows, winrar, wirklich



Ähnliche Themen: gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe


  1. Windows 7: Ich habe blöderweise auf einen Link in einer gefälschten DHL Mail geklickt und bin auf website umgeleitet worden...
    Plagegeister aller Art und deren Bekämpfung - 08.06.2015 (10)
  2. DHL Fake Link geöffnet, ZIP extrahiert und .exe Datei geöffnet
    Plagegeister aller Art und deren Bekämpfung - 02.06.2015 (10)
  3. DHL-Email-Link geöffnet
    Plagegeister aller Art und deren Bekämpfung - 10.03.2015 (23)
  4. DHL-Fake-Email Link geöffnet, wie kann ich die Malware entfernen?
    Plagegeister aller Art und deren Bekämpfung - 08.03.2015 (9)
  5. Phising Mail - Anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 20.01.2015 (14)
  6. Phising Mail Link geöffnet -> nun Trojaner etc?
    Plagegeister aller Art und deren Bekämpfung - 18.01.2015 (7)
  7. Anhang einer gefälschten Telekom-Email geöffnet. Verdacht auf Schadsoftware
    Log-Analyse und Auswertung - 01.12.2014 (7)
  8. Phising Mail von Paypal geöffnet und Link geklickt auf OSX -> Trojanerbefall?
    Plagegeister aller Art und deren Bekämpfung - 06.10.2014 (5)
  9. Phising Mail Link angeklickt - keine Daten eingegeben
    Plagegeister aller Art und deren Bekämpfung - 01.10.2014 (19)
  10. Auf Link einer Phising-Mail gedrückt - Möglicher Virus
    Plagegeister aller Art und deren Bekämpfung - 04.06.2014 (11)
  11. Fedex Phising Link gedrückt..
    Plagegeister aller Art und deren Bekämpfung - 06.05.2014 (1)
  12. Paypal-Phising-Mail Link geöffnet
    Log-Analyse und Auswertung - 13.04.2014 (5)
  13. email link Malware Funde Heur.PE@4294967295, Malware@#nwdk01o66rpro, Malware@#2x6qrvr63cjrw
    Plagegeister aller Art und deren Bekämpfung - 29.10.2012 (10)
  14. Link in email geöffnet! Virus oder Trojaner eingefangen?
    Log-Analyse und Auswertung - 02.07.2012 (22)
  15. Spammail Link geöffnet
    Plagegeister aller Art und deren Bekämpfung - 20.06.2012 (2)
  16. Hilfe Phising-Attacke wsnpoem Trojaner!
    Plagegeister aller Art und deren Bekämpfung - 13.11.2007 (26)
  17. Hilfe!Malware oder so! HiJackThis-Bericht
    Log-Analyse und Auswertung - 03.07.2007 (15)

Zum Thema gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe - Hallo, ich hoffe das mir hier weitergeholfen wird. Ich hatte gestern eine Mail von einer Immobilienwebsite und habe dummerweise auf den Link geklickt Es handelte sich dabei um imgur.com, eine - gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe...
Archiv
Du betrachtest: gefälschten Link von Immobilienwebsite geöffnet, Malware oder Phising?Hilfe auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.