Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 29.02.2016, 10:57   #1
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.



Hallo,

schon zum dritten Mal verschicke ich Mails wie:

Hello!



New message, please read <hxxp://repeeps.com/hands.php?p39l>



office@floschwaiger.at


Die Mails gehen an meine Kontakte. Sie werden immer ein Mal verschickt, danach war wieder über ein paar Wochen Pause. Erstes Mal war zu Silverster. Letztes Mal am Donnerstag 25.2.
Meine Domain habe ich bei world4you.com und einen Business Goolge Account über welchen ich die Mails verschicke. Habe nach dem Versand die Kennwörter immer sofort geändert.

Ich verwende Win10 und ein Android Handy. Am Computer habe ich Avira Antivirus Pro und am Smartphone Antivirus Free.

Vielen Dank schon vorab.
Beste Grüße
Florian

Alt 08.03.2016, 12:36   #2
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.





Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
  • Bitte arbeite alle Schritte der Reihe nach ab.
  • Lies die Anleitungen sorgfältig durch bevor Du beginnst. Wenn es Probleme gibt oder Du etwas nicht verstehst, dann stoppe mit Deiner Ausführung und beschreibe mir das Problem.
  • Führe bitte nur Scans durch, zu denen Du von mir aufgefordert wurdest.
  • Bitte kein Crossposting (posten in mehreren Foren).
  • Installiere oder deinstalliere während der Bereinigung keine Software, außer Du wurdest dazu aufgefordert.
  • Speichere alle unsere Tools auf dem Desktop ab. Link: So ladet Ihr unsere Tools richtig
  • Poste die Logfiles direkt in Deinen Thread in Code-Tags.
  • Bedenke, dass wir hier alle während unserer Freizeit tätig sind, wenn du innerhalb von 24 Stunden nichts von mir liest, dann schreibe mir bitte eine PM.

Hinweis:
Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden.
Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert.
Adware & Co. können wir sehr gut entfernen.
Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst.



Los geht's:

Schritt 1


Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)




Lesestoff
Posten in CODE-Tags: So gehts...
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 10.03.2016, 08:21   #3
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

FRST Log



FRST Logfile:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von FloSchwaiger (Administrator) auf FLOSCHWAIGER-PC (10-03-2016 08:17:35)
Gestartet von C:\Users\FloSchwaiger\Desktop
Geladene Profile: FloSchwaiger (Verfügbare Profile: FloSchwaiger)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
() C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
(Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
(Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
(SunplusIT, Inc.) C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe
() C:\Program Files (x86)\Integrated Camera\Monitor.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\tpknrres.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
() C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\cammute.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Spotify Ltd) C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\onenoteim.exe
() C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [402344 2015-12-19] ()
HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [382248 2013-06-20] (Lenovo.)
HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo)
HKLM\...\Run: [LMCSSTART1] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,InitSubsystemProcesses
HKLM\...\Run: [LMCSSTART2] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libstartstub2.dll,ProxyStart
HKLM\...\Run: [LMCSSTART3] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,SetupCamplusDrop
HKLM\...\Run: [SynLenovoHelper] => C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe [163960 2015-11-29] (Synaptics)
HKLM\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe [1714912 2015-11-19] (SunplusIT, Inc.)
HKLM-x32\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\Integrated Camera\monitor.exe [1720184 2013-06-18] ()
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-07-26] (Intel Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [14952 2016-02-26] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Spotify Web Helper] => C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848 2016-03-04] (Spotify Ltd)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-02-16]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-08-18]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-23]
ShortcutTarget: Dropbox.lnk -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: 0.0.0.1	mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{136ec5be-a60d-450a-8e2f-ec53d9ec0f64}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{666d7d2c-bdfc-4160-a435-88396e764284}: [DhcpNameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [NameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [DhcpNameServer] 192.168.10.110 192.168.10.111

Internet Explorer:
==================
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> DefaultScope {A26A42BA-C910-4482-AA40-4442C9A99143} URL = 
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {038B6C94-4C77-4E73-93E5-570EAE788FC3} URL = hxxps://at.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {A26A42BA-C910-4482-AA40-4442C9A99143} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-02-26] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-03] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-03] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-28] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-03] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-06-17] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-images.xml [2014-09-22]
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-maps.xml [2014-09-22]
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\yahoo-ysp.xml [2015-12-01]
FF Extension: Live HTTP headers - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-05-29]
FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\admin@proxy-listen.de.xpi [2015-05-29]
FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\artur.dubovoy@gmail.com [2015-09-27]
FF Extension: Avira Browser Safety - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\Extensions\abs@avira.com [2016-01-13]

Chrome: 
=======
CHR Profile: C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-25]
CHR Extension: (Google Docs) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-25]
CHR Extension: (Google Drive) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-25]
CHR Extension: (YouTube) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-25]
CHR Extension: (Google-Suche) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-25]
CHR Extension: (Google Tabellen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-25]
CHR Extension: (Google Wallet) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-25]
CHR Extension: (Google Mail) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-25]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-686292772-3706268183-491554591-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [560584 2015-01-21] (Lenovo Corporation)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG)
S4 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [283296 2013-07-26] (Intel Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2809072 2016-01-20] (Microsoft Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [155448 2013-08-19] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182760 2013-04-15] ()
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation)
R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2016472 2015-01-23] (Lenovo Group Limited)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584664 2015-12-14] (LENOVO INCORPORATED.)
R3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [626120 2015-01-21] (Lenovo Corporation)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited)
S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [469720 2015-01-09] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272864 2015-12-10] (Lenovo)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe [293128 2016-02-05] (McAfee, Inc.)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-07-16] (Nitro PDF Software)
R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-07-16] ()
R2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [59384 2013-07-16] (Lenovo Group Limited)
R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [138232 2013-07-16] (Lenovo Group Limited)
R2 SpeedupService; C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [24224 2016-02-26] (Avira Operations GmbH & Co. KG)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [21536 2016-01-13] ()
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-11-29] (Synaptics Incorporated)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [77832 2015-12-03] (Synaptics Incorporated)
R2 valWbioSyncSvc; C:\Windows\system32\valWbioSyncSvc.exe [48136 2015-12-03] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-08] (Avira Operations GmbH & Co. KG)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-05] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21048 2013-04-15] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21048 2013-04-15] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [101976 2013-04-24] (Intel Corporation)
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-04-15] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation)
S3 MiraDispKmd; C:\Windows\System32\drivers\MiraDispKmd.sys [23552 2015-10-30] (Microsoft Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3485696 2015-10-30] (Intel Corporation)
R1 OMNISMI; C:\WINDOWS\SysWOW64\drivers\omnismi.sys [14776 2013-07-22] ()
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [761600 2015-06-15] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-11-29] (Synaptics Incorporated)
R1 SMIDriver; C:\Windows\system32\DRIVERS\smi.sys [28400 2015-12-03] (Windows (R) Win 7 DDK provider)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [695776 2015-11-19] (Sunplus)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [206744 2013-06-20] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-03-07] ()

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-10 08:17 - 2016-03-10 08:17 - 00030969 _____ C:\Users\FloSchwaiger\Desktop\FRST.txt
2016-03-10 08:17 - 2016-03-10 08:17 - 00000000 ____D C:\FRST
2016-03-10 08:17 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Desktop\FRST64.exe
2016-03-10 08:16 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Downloads\FRST64.exe
2016-03-02 09:43 - 2016-03-02 09:43 - 00186548 _____ C:\Users\FloSchwaiger\Desktop\30625_KVA11707_260216.pdf
2016-03-02 07:26 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-02 07:26 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 07475040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 07:26 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-02 07:26 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-02 07:26 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-02 07:26 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-02 07:26 - 2016-02-23 12:23 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-02 07:26 - 2016-02-23 12:22 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-02 07:26 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-02 07:26 - 2016-02-23 12:15 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-02 07:26 - 2016-02-23 12:09 - 01614176 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-02 07:26 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-02 07:26 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-02 07:26 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-02 07:26 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 07:26 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-02 07:26 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-02 07:26 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-02 07:26 - 2016-02-23 11:21 - 06606568 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-02 07:26 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-02 07:26 - 2016-02-23 10:45 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-02 07:26 - 2016-02-23 10:45 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-02 07:26 - 2016-02-23 10:45 - 00259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-02 07:26 - 2016-02-23 10:44 - 00640984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-02 07:26 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-02 07:26 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-02 07:26 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-02 07:26 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-02 07:26 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 07:26 - 2016-02-23 10:26 - 05241984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-02 07:26 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 07:26 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-02 07:26 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 07:26 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 07:26 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-02 07:26 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-02 07:26 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 07:26 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-02 07:26 - 2016-02-23 09:55 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-02 07:26 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-02 07:26 - 2016-02-23 09:54 - 00539256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-02 07:26 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 07:26 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-02 07:26 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 07:26 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 07:26 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 07:26 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 07:26 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 07:26 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 07:26 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 07:26 - 2016-02-23 09:30 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-02 07:26 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 07:26 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 07:26 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-02 07:26 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-02 07:26 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 07:26 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-02 07:26 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 07:26 - 2016-02-23 09:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-02 07:26 - 2016-02-23 09:13 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-02 07:26 - 2016-02-23 09:13 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-02 07:26 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 07:26 - 2016-02-23 09:11 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-02 07:26 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-02 07:26 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-02 07:26 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-02 07:26 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 01848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-02 07:26 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-02 07:26 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-02 07:26 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 07:26 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 07:26 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-02 07:26 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 07:26 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-02 07:26 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 07:26 - 2016-02-23 08:54 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-02 07:26 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 07:26 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-02 07:26 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-02 07:26 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-02 07:26 - 2016-02-23 08:47 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-02 07:26 - 2016-02-23 08:41 - 03594240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-02 07:26 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-02 07:26 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-02 07:26 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-02 07:26 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-02 07:26 - 2016-02-23 08:31 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 07:26 - 2016-02-23 08:29 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-02 07:26 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-02 07:26 - 2016-02-23 08:26 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-02 07:26 - 2016-02-23 08:26 - 01498112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-02 07:26 - 2016-02-23 08:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-02 07:26 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-02 07:26 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-02 07:26 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 07:26 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 07:26 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 07:26 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 07:26 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-02 07:26 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-02 07:26 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-02 07:26 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-02 07:26 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-02 07:26 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-02 07:26 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-02 07:26 - 2016-02-23 07:50 - 22396416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-02 07:26 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-02 07:26 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 07:26 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 07:26 - 2016-02-23 07:40 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-02 07:26 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-02 07:26 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 19341312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 18680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-02 07:26 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-02 07:26 - 2016-02-23 07:33 - 14254080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-02 07:26 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-02 07:26 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-02 07:26 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-02 07:26 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-02 07:26 - 2016-02-23 07:26 - 12587520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-02 07:26 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-02 07:26 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-02 07:26 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 07:26 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-02 07:26 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-02 07:26 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-02 07:26 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 07:26 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-02 07:25 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-02 07:25 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-02 07:25 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-02 07:25 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-02 07:25 - 2016-02-23 10:49 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-02 07:25 - 2016-02-23 10:45 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-02 07:25 - 2016-02-23 10:44 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-02 07:25 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-02 07:25 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-02 07:25 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-02 07:25 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 07:25 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 07:25 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 07:25 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 07:25 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-02 07:25 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 07:25 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-02 07:25 - 2016-02-23 09:58 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-02 07:25 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-02 07:25 - 2016-02-23 09:54 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-02 07:25 - 2016-02-23 09:54 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-02 07:25 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-02 07:25 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 07:25 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-02 07:25 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 07:25 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-02 07:25 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 07:25 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 07:25 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-02 07:25 - 2016-02-23 09:28 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-02 07:25 - 2016-02-23 09:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-02 07:25 - 2016-02-23 09:25 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-02 07:25 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 07:25 - 2016-02-23 09:22 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-02 07:25 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:25 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 07:25 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-02 07:25 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-02 07:25 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 07:25 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-02 07:25 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-02 07:25 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-02 07:25 - 2016-02-23 08:37 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-02 07:25 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-02 07:25 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:25 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-02 07:25 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 07:25 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-02 07:25 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-01 23:04 - 2016-03-07 08:26 - 00000000 ____D C:\Users\Public\Speedup Sessions
2016-03-01 21:01 - 2016-03-01 21:01 - 00185710 _____ C:\Users\FloSchwaiger\Desktop\30626_KVA11699_020216.pdf
2016-02-29 10:09 - 2016-02-29 10:09 - 00418688 _____ C:\Users\FloSchwaiger\Desktop\interieur ticket.pdf
2016-02-29 09:59 - 2016-02-29 09:59 - 00001182 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-02-29 09:58 - 2016-02-29 09:59 - 22908888 _____ (Malwarebytes ) C:\Users\FloSchwaiger\Downloads\mbam-setup-2.2.0.1024.exe
2016-02-29 08:51 - 2016-02-29 09:10 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2016-02-29 08:51 - 2016-02-29 09:07 - 00000000 ____D C:\ProgramData\TEMP
2016-02-29 08:50 - 2016-02-29 08:50 - 01470472 _____ C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe
2016-02-23 08:22 - 2016-02-23 08:22 - 00114883 _____ C:\Users\FloSchwaiger\Desktop\Aufkleber für die Sendung.pdf
2016-02-23 08:21 - 2016-02-23 08:21 - 00000835 _____ C:\Users\FloSchwaiger\Desktop\Bilder - Verknüpfung (2).lnk
2016-02-17 13:43 - 2016-03-08 18:31 - 00011171 _____ C:\Users\FloSchwaiger\Desktop\Stunden Februar.xlsx
2016-02-16 07:08 - 2016-02-16 07:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-02-10 09:19 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-10 09:19 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-10 09:19 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-10 09:19 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-10 09:19 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-10 09:19 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-10 09:19 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-10 09:19 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-10 09:19 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-10 09:19 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-10 09:19 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-10 09:19 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-10 09:19 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-10 09:19 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-10 09:19 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-10 09:19 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-10 09:19 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-10 09:19 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-10 09:19 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 09:19 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 09:19 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-10 09:19 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-10 09:19 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-10 09:19 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-10 09:19 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-10 09:19 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-10 09:19 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-10 09:19 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-10 09:19 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-10 09:19 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-10 09:19 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-10 09:19 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-10 09:19 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-10 09:19 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-10 09:05 - 2016-02-10 09:08 - 222682609 _____ C:\Users\FloSchwaiger\Downloads\wetransfer-209b5d.zip
2016-02-09 11:25 - 2016-02-09 11:29 - 00056071 _____ C:\Users\FloSchwaiger\Desktop\Milka Material Lightcube_March 2016.pdf

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-10 08:08 - 2014-06-19 10:21 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Outlook-Dateien
2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-10 08:00 - 2014-06-20 16:37 - 00004182 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A93769FB-ED1F-4972-95FD-2144236F9649}
2016-03-10 07:58 - 2015-11-23 08:07 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-09 19:54 - 2014-07-01 13:38 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Spotify
2016-03-09 19:54 - 2014-07-01 13:36 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Spotify
2016-03-09 19:50 - 2014-06-17 20:58 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-09 19:46 - 2014-06-17 14:56 - 00001150 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-09 16:20 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Nitro PDF
2016-03-09 14:29 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-09 13:48 - 2014-06-17 21:20 - 00000000 ___RD C:\Users\FloSchwaiger\Google Drive
2016-03-09 12:46 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Packages
2016-03-09 12:32 - 2014-06-18 02:06 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-09 12:30 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-09 12:30 - 2014-06-18 02:06 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-09 08:26 - 2015-10-30 19:35 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-09 08:26 - 2015-10-30 19:35 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-09 08:26 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-03-09 08:26 - 2015-08-18 14:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-09 07:46 - 2014-06-17 14:56 - 00001146 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-08 11:55 - 2016-01-13 17:34 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-03-08 11:55 - 2016-01-13 17:34 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-03-08 11:55 - 2016-01-13 17:34 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-03-08 11:55 - 2016-01-13 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-07 13:23 - 2015-11-03 20:08 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Skype
2016-03-07 13:20 - 2013-09-29 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2016-03-07 13:11 - 2015-12-07 03:04 - 00000000 ____D C:\Users\FloSchwaiger
2016-03-07 13:11 - 2015-12-07 03:02 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-07 13:11 - 2014-06-19 00:27 - 00000000 __SHD C:\Users\FloSchwaiger\IntelGraphicsProfiles
2016-03-07 11:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-07 10:50 - 2016-01-26 07:32 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp
2016-03-07 10:50 - 2015-12-07 05:33 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-07 10:50 - 2015-04-03 07:53 - 00000000 ____D C:\ProgramData\Synaptics
2016-03-07 10:50 - 2013-10-30 19:40 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys
2016-03-07 08:25 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-03 20:53 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-03 10:41 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Oracle
2016-03-03 10:29 - 2015-10-28 16:40 - 00000000 ____D C:\Users\FloSchwaiger\.oracle_jre_usage
2016-03-03 10:29 - 2014-07-24 17:55 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\Program Files (x86)\Java
2016-03-03 08:47 - 2015-12-07 03:01 - 00231688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-03 08:47 - 2013-10-30 19:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-03 08:46 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-01 23:04 - 2016-01-13 17:36 - 00003430 _____ C:\WINDOWS\System32\Tasks\Avira System Speedup Tray
2016-03-01 23:04 - 2016-01-13 17:36 - 00001299 _____ C:\Users\Public\Desktop\Avira System Speedup.lnk
2016-03-01 23:04 - 2016-01-13 17:21 - 00000000 ____D C:\Program Files (x86)\Avira
2016-03-01 22:59 - 2016-01-13 17:21 - 00001222 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2016-03-01 22:59 - 2013-09-29 17:15 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-01 20:35 - 2014-06-18 15:51 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Flo Schwaiger
2016-02-29 10:00 - 2016-01-13 17:52 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-02-28 14:53 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-28 14:52 - 2014-06-17 12:16 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-02-20 23:50 - 2014-10-07 07:52 - 00000000 ____D C:\Users\FloSchwaiger\Desktop\Milka
2016-02-19 22:47 - 2015-02-25 18:17 - 00002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-19 22:47 - 2015-02-25 18:17 - 00002263 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-16 07:08 - 2015-11-23 07:47 - 00000000 ____D C:\Program Files\McAfee Security Scan
2016-02-16 07:08 - 2014-12-12 08:11 - 00002020 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-02-13 10:48 - 2015-08-18 16:39 - 00002461 _____ C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-13 10:48 - 2014-06-19 00:28 - 00000000 __RDO C:\Users\FloSchwaiger\OneDrive
2016-02-11 14:15 - 2015-06-04 12:41 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\ElevatedDiagnostics

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2014-06-17 11:57 - 2014-06-27 06:36 - 0003817 _____ () C:\Users\FloSchwaiger\AppData\Roaming\AbsoluteReminder.xml
2014-06-17 11:56 - 2014-06-21 12:56 - 0000379 _____ () C:\Users\FloSchwaiger\AppData\Local\RegisteredPackageInformation.xml
2015-04-25 17:16 - 2015-04-25 17:16 - 0353118 _____ () C:\Users\FloSchwaiger\AppData\Local\SquareClock.Production_HBMV1Icon.ico
2015-12-07 03:02 - 2015-12-07 03:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\FloSchwaiger\AppData\Local\Temp\avgnt.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\jre-8u73-windows-au.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\photosync_setup_en_307.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-09 07:48

==================== Ende von FRST.txt ============================
         
--- --- ---
__________________

Alt 10.03.2016, 08:23   #4
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

FRST Log



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von FloSchwaiger (Administrator) auf FLOSCHWAIGER-PC (10-03-2016 08:17:35)
Gestartet von C:\Users\FloSchwaiger\Desktop
Geladene Profile: FloSchwaiger (Verfügbare Profile: FloSchwaiger)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
() C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
(Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
(Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlInput.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
(SunplusIT, Inc.) C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe
() C:\Program Files (x86)\Integrated Camera\Monitor.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\tpknrres.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
() C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\cammute.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Spotify Ltd) C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\onenoteim.exe
() C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.17801.0_x64__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [402344 2015-12-19] ()
HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [382248 2013-06-20] (Lenovo.)
HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo)
HKLM\...\Run: [LMCSSTART1] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,InitSubsystemProcesses
HKLM\...\Run: [LMCSSTART2] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libstartstub2.dll,ProxyStart
HKLM\...\Run: [LMCSSTART3] => C:\WINDOWS\SysWOW64\lmcfrundll.exe C:\Program Files\Lenovo\Communications Utility\libmcsrdllb.dll,SetupCamplusDrop
HKLM\...\Run: [SynLenovoHelper] => C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe [163960 2015-11-29] (Synaptics)
HKLM\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe [1714912 2015-11-19] (SunplusIT, Inc.)
HKLM-x32\...\Run: [Integrated Camera_Monitor] => C:\Program Files (x86)\Integrated Camera\monitor.exe [1720184 2013-06-18] ()
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-07-26] (Intel Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [14952 2016-02-26] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Spotify Web Helper] => C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848 2016-03-04] (Spotify Ltd)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.)
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\RunOnce: [Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64\FileSyncShell64.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-09-19] (SugarSync, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll [2016-02-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-03-04] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-02-16]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-08-18]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
Startup: C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-23]
ShortcutTarget: Dropbox.lnk -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: 0.0.0.1	mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{136ec5be-a60d-450a-8e2f-ec53d9ec0f64}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{666d7d2c-bdfc-4160-a435-88396e764284}: [DhcpNameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [NameServer] 192.168.10.110 192.168.10.111
Tcpip\..\Interfaces\{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE}: [DhcpNameServer] 192.168.10.110 192.168.10.111

Internet Explorer:
==================
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-686292772-3706268183-491554591-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> DefaultScope {A26A42BA-C910-4482-AA40-4442C9A99143} URL = 
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {038B6C94-4C77-4E73-93E5-570EAE788FC3} URL = hxxps://at.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
SearchScopes: HKU\S-1-5-21-686292772-3706268183-491554591-1001 -> {A26A42BA-C910-4482-AA40-4442C9A99143} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-02-26] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-03] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-03] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-28] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-03] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-06-17] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-images.xml [2014-09-22]
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\google-maps.xml [2014-09-22]
FF SearchPlugin: C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\searchplugins\yahoo-ysp.xml [2015-12-01]
FF Extension: Live HTTP headers - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-05-29]
FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\admin@proxy-listen.de.xpi [2015-05-29]
FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\extensions\artur.dubovoy@gmail.com [2015-09-27]
FF Extension: Avira Browser Safety - C:\Users\FloSchwaiger\AppData\Roaming\Mozilla\Firefox\Profiles\vhpky0jy.default\Extensions\abs@avira.com [2016-01-13]

Chrome: 
=======
CHR Profile: C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-25]
CHR Extension: (Google Docs) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-25]
CHR Extension: (Google Drive) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-25]
CHR Extension: (YouTube) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-25]
CHR Extension: (Google-Suche) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-25]
CHR Extension: (Google Tabellen) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-25]
CHR Extension: (Google Wallet) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-25]
CHR Extension: (Google Mail) - C:\Users\FloSchwaiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-25]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-686292772-3706268183-491554591-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [560584 2015-01-21] (Lenovo Corporation)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG)
S4 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [283296 2013-07-26] (Intel Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2809072 2016-01-20] (Microsoft Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [155448 2013-08-19] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182760 2013-04-15] ()
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation)
R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2016472 2015-01-23] (Lenovo Group Limited)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584664 2015-12-14] (LENOVO INCORPORATED.)
R3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [626120 2015-01-21] (Lenovo Corporation)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited)
S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [469720 2015-01-09] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272864 2015-12-10] (Lenovo)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe [293128 2016-02-05] (McAfee, Inc.)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-07-16] (Nitro PDF Software)
R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-07-16] ()
R2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [59384 2013-07-16] (Lenovo Group Limited)
R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [138232 2013-07-16] (Lenovo Group Limited)
R2 SpeedupService; C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [24224 2016-02-26] (Avira Operations GmbH & Co. KG)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [21536 2016-01-13] ()
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-11-29] (Synaptics Incorporated)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [77832 2015-12-03] (Synaptics Incorporated)
R2 valWbioSyncSvc; C:\Windows\system32\valWbioSyncSvc.exe [48136 2015-12-03] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-08] (Avira Operations GmbH & Co. KG)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-05] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21048 2013-04-15] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21048 2013-04-15] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [101976 2013-04-24] (Intel Corporation)
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-04-15] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation)
S3 MiraDispKmd; C:\Windows\System32\drivers\MiraDispKmd.sys [23552 2015-10-30] (Microsoft Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3485696 2015-10-30] (Intel Corporation)
R1 OMNISMI; C:\WINDOWS\SysWOW64\drivers\omnismi.sys [14776 2013-07-22] ()
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [761600 2015-06-15] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-11-29] (Synaptics Incorporated)
R1 SMIDriver; C:\Windows\system32\DRIVERS\smi.sys [28400 2015-12-03] (Windows (R) Win 7 DDK provider)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [695776 2015-11-19] (Sunplus)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [206744 2013-06-20] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-03-07] ()

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-10 08:17 - 2016-03-10 08:17 - 00030969 _____ C:\Users\FloSchwaiger\Desktop\FRST.txt
2016-03-10 08:17 - 2016-03-10 08:17 - 00000000 ____D C:\FRST
2016-03-10 08:17 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Desktop\FRST64.exe
2016-03-10 08:16 - 2016-03-10 08:16 - 02374144 _____ (Farbar) C:\Users\FloSchwaiger\Downloads\FRST64.exe
2016-03-02 09:43 - 2016-03-02 09:43 - 00186548 _____ C:\Users\FloSchwaiger\Desktop\30625_KVA11707_260216.pdf
2016-03-02 07:26 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-02 07:26 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 07475040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 07:26 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-02 07:26 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-02 07:26 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-02 07:26 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-02 07:26 - 2016-02-23 12:23 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-02 07:26 - 2016-02-23 12:22 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-02 07:26 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-02 07:26 - 2016-02-23 12:15 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-02 07:26 - 2016-02-23 12:09 - 01614176 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-02 07:26 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-02 07:26 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-02 07:26 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 07:26 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-02 07:26 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-02 07:26 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 07:26 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-02 07:26 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-02 07:26 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-02 07:26 - 2016-02-23 11:21 - 06606568 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-02 07:26 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-02 07:26 - 2016-02-23 10:45 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-02 07:26 - 2016-02-23 10:45 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-02 07:26 - 2016-02-23 10:45 - 00259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-02 07:26 - 2016-02-23 10:44 - 00640984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-02 07:26 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-02 07:26 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-02 07:26 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-02 07:26 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-02 07:26 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-02 07:26 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-02 07:26 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 07:26 - 2016-02-23 10:26 - 05241984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-02 07:26 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 07:26 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-02 07:26 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 07:26 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 07:26 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-02 07:26 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-02 07:26 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 07:26 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-02 07:26 - 2016-02-23 09:55 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-02 07:26 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-02 07:26 - 2016-02-23 09:54 - 00539256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-02 07:26 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 07:26 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-02 07:26 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 07:26 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 07:26 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 07:26 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 07:26 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 07:26 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 07:26 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 07:26 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 07:26 - 2016-02-23 09:30 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-02 07:26 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 07:26 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 07:26 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-02 07:26 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-02 07:26 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 07:26 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 07:26 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-02 07:26 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 07:26 - 2016-02-23 09:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-02 07:26 - 2016-02-23 09:13 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-02 07:26 - 2016-02-23 09:13 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-02 07:26 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 07:26 - 2016-02-23 09:11 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-02 07:26 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-02 07:26 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-02 07:26 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-02 07:26 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 07:26 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 01848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-02 07:26 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-02 07:26 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-02 07:26 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-02 07:26 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 07:26 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 07:26 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-02 07:26 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 07:26 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-02 07:26 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 07:26 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 07:26 - 2016-02-23 08:54 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-02 07:26 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 07:26 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-02 07:26 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-02 07:26 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-02 07:26 - 2016-02-23 08:47 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-02 07:26 - 2016-02-23 08:41 - 03594240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-02 07:26 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-02 07:26 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-02 07:26 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-02 07:26 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-02 07:26 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-02 07:26 - 2016-02-23 08:31 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-02 07:26 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 07:26 - 2016-02-23 08:29 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-02 07:26 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-02 07:26 - 2016-02-23 08:26 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-02 07:26 - 2016-02-23 08:26 - 01498112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-02 07:26 - 2016-02-23 08:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-02 07:26 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-02 07:26 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-02 07:26 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-02 07:26 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 07:26 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 07:26 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 07:26 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 07:26 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-02 07:26 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-02 07:26 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-02 07:26 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-02 07:26 - 2016-02-23 07:55 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-02 07:26 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-02 07:26 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-02 07:26 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-02 07:26 - 2016-02-23 07:50 - 22396416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-02 07:26 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-02 07:26 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 07:26 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 07:26 - 2016-02-23 07:40 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-02 07:26 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-02 07:26 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 19341312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 18680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-02 07:26 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-02 07:26 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-02 07:26 - 2016-02-23 07:33 - 14254080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-02 07:26 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-02 07:26 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-02 07:26 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-02 07:26 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-02 07:26 - 2016-02-23 07:26 - 12587520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-02 07:26 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-02 07:26 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-02 07:26 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 07:26 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-02 07:26 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-02 07:26 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-02 07:26 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 07:26 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-02 07:25 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-02 07:25 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-02 07:25 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-02 07:25 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-02 07:25 - 2016-02-23 10:49 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-02 07:25 - 2016-02-23 10:45 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-02 07:25 - 2016-02-23 10:44 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-02 07:25 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-02 07:25 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-02 07:25 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-02 07:25 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 07:25 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 07:25 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 07:25 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 07:25 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-02 07:25 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 07:25 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-02 07:25 - 2016-02-23 09:58 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-02 07:25 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-02 07:25 - 2016-02-23 09:54 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-02 07:25 - 2016-02-23 09:54 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-02 07:25 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-02 07:25 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 07:25 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-02 07:25 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 07:25 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-02 07:25 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 07:25 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 07:25 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-02 07:25 - 2016-02-23 09:28 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-02 07:25 - 2016-02-23 09:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-02 07:25 - 2016-02-23 09:25 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-02 07:25 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 07:25 - 2016-02-23 09:22 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-02 07:25 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:25 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 07:25 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-02 07:25 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-02 07:25 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 07:25 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-02 07:25 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-02 07:25 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-02 07:25 - 2016-02-23 08:37 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-02 07:25 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-02 07:25 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 07:25 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-02 07:25 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 07:25 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-02 07:25 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-01 23:04 - 2016-03-07 08:26 - 00000000 ____D C:\Users\Public\Speedup Sessions
2016-03-01 21:01 - 2016-03-01 21:01 - 00185710 _____ C:\Users\FloSchwaiger\Desktop\30626_KVA11699_020216.pdf
2016-02-29 10:09 - 2016-02-29 10:09 - 00418688 _____ C:\Users\FloSchwaiger\Desktop\interieur ticket.pdf
2016-02-29 09:59 - 2016-02-29 09:59 - 00001182 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-02-29 09:58 - 2016-02-29 09:59 - 22908888 _____ (Malwarebytes ) C:\Users\FloSchwaiger\Downloads\mbam-setup-2.2.0.1024.exe
2016-02-29 08:51 - 2016-02-29 09:10 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2016-02-29 08:51 - 2016-02-29 09:07 - 00000000 ____D C:\ProgramData\TEMP
2016-02-29 08:50 - 2016-02-29 08:50 - 01470472 _____ C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe
2016-02-23 08:22 - 2016-02-23 08:22 - 00114883 _____ C:\Users\FloSchwaiger\Desktop\Aufkleber für die Sendung.pdf
2016-02-23 08:21 - 2016-02-23 08:21 - 00000835 _____ C:\Users\FloSchwaiger\Desktop\Bilder - Verknüpfung (2).lnk
2016-02-17 13:43 - 2016-03-08 18:31 - 00011171 _____ C:\Users\FloSchwaiger\Desktop\Stunden Februar.xlsx
2016-02-16 07:08 - 2016-02-16 07:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-02-10 09:19 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-10 09:19 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-10 09:19 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-10 09:19 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-10 09:19 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-10 09:19 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-10 09:19 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-10 09:19 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-10 09:19 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-10 09:19 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-10 09:19 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-10 09:19 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-10 09:19 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-10 09:19 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-10 09:19 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-10 09:19 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-10 09:19 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-10 09:19 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-10 09:19 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 09:19 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 09:19 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-10 09:19 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-10 09:19 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-10 09:19 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-10 09:19 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-10 09:19 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-10 09:19 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-10 09:19 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-10 09:19 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-10 09:19 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-10 09:19 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-10 09:19 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-10 09:19 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-10 09:19 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-10 09:05 - 2016-02-10 09:08 - 222682609 _____ C:\Users\FloSchwaiger\Downloads\wetransfer-209b5d.zip
2016-02-09 11:25 - 2016-02-09 11:29 - 00056071 _____ C:\Users\FloSchwaiger\Desktop\Milka Material Lightcube_March 2016.pdf

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-10 08:08 - 2014-06-19 10:21 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Outlook-Dateien
2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-10 08:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-10 08:00 - 2014-06-20 16:37 - 00004182 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A93769FB-ED1F-4972-95FD-2144236F9649}
2016-03-10 07:58 - 2015-11-23 08:07 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-09 19:54 - 2014-07-01 13:38 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Spotify
2016-03-09 19:54 - 2014-07-01 13:36 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Spotify
2016-03-09 19:50 - 2014-06-17 20:58 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-09 19:46 - 2014-06-17 14:56 - 00001150 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-09 16:20 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Nitro PDF
2016-03-09 14:29 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-09 13:48 - 2014-06-17 21:20 - 00000000 ___RD C:\Users\FloSchwaiger\Google Drive
2016-03-09 12:46 - 2014-06-17 11:56 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\Packages
2016-03-09 12:32 - 2014-06-18 02:06 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-09 12:30 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-09 12:30 - 2014-06-18 02:06 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-09 08:26 - 2015-10-30 19:35 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-09 08:26 - 2015-10-30 19:35 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-09 08:26 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-03-09 08:26 - 2015-08-18 14:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-09 07:46 - 2014-06-17 14:56 - 00001146 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-08 11:55 - 2016-01-13 17:34 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-03-08 11:55 - 2016-01-13 17:34 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-03-08 11:55 - 2016-01-13 17:34 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-03-08 11:55 - 2016-01-13 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-07 13:23 - 2015-11-03 20:08 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Roaming\Skype
2016-03-07 13:20 - 2013-09-29 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2016-03-07 13:11 - 2015-12-07 03:04 - 00000000 ____D C:\Users\FloSchwaiger
2016-03-07 13:11 - 2015-12-07 03:02 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-07 13:11 - 2014-06-19 00:27 - 00000000 __SHD C:\Users\FloSchwaiger\IntelGraphicsProfiles
2016-03-07 11:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-07 10:50 - 2016-01-26 07:32 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp
2016-03-07 10:50 - 2015-12-07 05:33 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-07 10:50 - 2015-04-03 07:53 - 00000000 ____D C:\ProgramData\Synaptics
2016-03-07 10:50 - 2013-10-30 19:40 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys
2016-03-07 08:25 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-03 20:53 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-03 10:41 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Oracle
2016-03-03 10:29 - 2015-10-28 16:40 - 00000000 ____D C:\Users\FloSchwaiger\.oracle_jre_usage
2016-03-03 10:29 - 2014-07-24 17:55 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-03 10:29 - 2014-07-24 17:55 - 00000000 ____D C:\Program Files (x86)\Java
2016-03-03 08:47 - 2015-12-07 03:01 - 00231688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-03 08:47 - 2013-10-30 19:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-03 08:46 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-03 08:46 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-03 08:46 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-01 23:04 - 2016-01-13 17:36 - 00003430 _____ C:\WINDOWS\System32\Tasks\Avira System Speedup Tray
2016-03-01 23:04 - 2016-01-13 17:36 - 00001299 _____ C:\Users\Public\Desktop\Avira System Speedup.lnk
2016-03-01 23:04 - 2016-01-13 17:21 - 00000000 ____D C:\Program Files (x86)\Avira
2016-03-01 22:59 - 2016-01-13 17:21 - 00001222 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2016-03-01 22:59 - 2013-09-29 17:15 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-01 20:35 - 2014-06-18 15:51 - 00000000 ____D C:\Users\FloSchwaiger\Documents\Flo Schwaiger
2016-02-29 10:00 - 2016-01-13 17:52 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-02-29 09:59 - 2016-01-13 17:52 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-02-28 14:53 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-28 14:52 - 2014-06-17 12:16 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-02-20 23:50 - 2014-10-07 07:52 - 00000000 ____D C:\Users\FloSchwaiger\Desktop\Milka
2016-02-19 22:47 - 2015-02-25 18:17 - 00002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-19 22:47 - 2015-02-25 18:17 - 00002263 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-16 07:08 - 2015-11-23 07:47 - 00000000 ____D C:\Program Files\McAfee Security Scan
2016-02-16 07:08 - 2014-12-12 08:11 - 00002020 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-02-13 10:48 - 2015-08-18 16:39 - 00002461 _____ C:\Users\FloSchwaiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-13 10:48 - 2014-06-19 00:28 - 00000000 __RDO C:\Users\FloSchwaiger\OneDrive
2016-02-11 14:15 - 2015-06-04 12:41 - 00000000 ____D C:\Users\FloSchwaiger\AppData\Local\ElevatedDiagnostics

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2014-06-17 11:57 - 2014-06-27 06:36 - 0003817 _____ () C:\Users\FloSchwaiger\AppData\Roaming\AbsoluteReminder.xml
2014-06-17 11:56 - 2014-06-21 12:56 - 0000379 _____ () C:\Users\FloSchwaiger\AppData\Local\RegisteredPackageInformation.xml
2015-04-25 17:16 - 2015-04-25 17:16 - 0353118 _____ () C:\Users\FloSchwaiger\AppData\Local\SquareClock.Production_HBMV1Icon.ico
2015-12-07 03:02 - 2015-12-07 03:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\FloSchwaiger\AppData\Local\Temp\avgnt.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\jre-8u73-windows-au.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\Monitor.exe
C:\Users\FloSchwaiger\AppData\Local\Temp\photosync_setup_en_307.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-09 07:48

==================== Ende von FRST.txt ============================
         

Alt 10.03.2016, 08:25   #5
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Addition.txt



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von FloSchwaiger (2016-03-10 08:18:00)
Gestartet von C:\Users\FloSchwaiger\Desktop
Windows 10 Pro Version 1511 (X64) (2015-12-07 04:56:48)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-686292772-3706268183-491554591-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-686292772-3706268183-491554591-503 - Limited - Disabled)
FloSchwaiger (S-1-5-21-686292772-3706268183-491554591-1001 - Administrator - Enabled) => C:\Users\FloSchwaiger
Gast (S-1-5-21-686292772-3706268183-491554591-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-686292772-3706268183-491554591-1005 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 9.33 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0933-000001000000}) (Version: 9.33.00.0 - Igor Pavlov)
Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.3.0.1 - Absolute Software)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
ArielVision (HKLM-x32\...\{21C53CDC-871C-49CE-800E-C6F21ECBA4E4}) (Version: 2.00.0000 - )
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{3b87484e-d70b-4b4f-ad59-2ae89571e2cf}) (Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Hidden
Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 2.1.13.1163 - Avira Operations GmbH & Co. KG)
AZURO office 5.3 Version 5.3 (HKLM-x32\...\{614E1B7B-554C-4F51-9932-D529F56DC548}_is1) (Version: 5.3 - tgmedia)
bob internet (HKLM-x32\...\bob internet) (Version: 1.16.1.0 - A1 Telekom Austria AG)
bob internet (x32 Version: 1.16.1.0 - A1 Telekom Austria AG) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brighter3D (HKLM-x32\...\Brighter3D) (Version: 2.5.0 - Brighter3D Software Development Ltd.)
Cliqz (HKLM-x32\...\{5A0C0737-6AFE-4DC6-A8B4-6DFE509ACD75}_is1) (Version: 0.5.22 - Cliqz.com)
Content Manager (HKLM-x32\...\Content Manager) (Version: 3.18.4.510611 - NNG Llc.)
Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden
Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden
Dependency Package Update (Version: 1.6.38.00 - Lenovo Inc.) Hidden
Dependency Package Update (x32 Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (x32 Version: 1.6.38.00 - Lenovo Group Limited) Hidden
Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7/8 (HKLM\...\DisableAMTPopup) (Version: 1.00 - )
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
Eurofibu EA 2015 Standard [Vista/W7/W8/W10] (HKLM-x32\...\{0383CC25-67FD-4D07-8AD5-4B6F6AFA23EA}) (Version: 20.15.3 - Multimedia EDV-Software und Verlag GmbH)
Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
FileMaker Pro 11 (HKLM-x32\...\{EACCC991-8E8C-4397-8854-349506741FC9}_FileMaker) (Version: 11.0.3.0 - FileMaker, Inc.)
FileMaker Pro 11 (x32 Version: 11.0.3.0 - FileMaker, Inc.) Hidden
Free YouTube Download version 3.2.42.716 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.42.716 - DVDVideoSoft Ltd.)
FTP Commander Pro 8.03 (HKLM-x32\...\FTP Commander Pro_is1) (Version:  - )
Google Apps Migration For Microsoft Outlook® 4.0.27.0 (HKLM-x32\...\{8806AF1D-5161-489E-9E17-086CCC518931}) (Version: 4.0.27.0 - Google, Inc.)
Google Apps Sync™ for Microsoft Outlook® 3.8.440.1250 (HKLM-x32\...\{091C294E-F243-432C-93E1-DEC4C2B9635B}) (Version: 3.8.440.1250 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Image Resizer for Windows (64 bit) (Version: 3.0.4802.35565 - Brice Lambson) Hidden
Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson)
Inst5676 (Version: 8.01.42 - Softex Inc.) Hidden
Integrated Camera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.5.7.13 - SunplusIT)
Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1011 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.12.1688 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 19.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1332.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0366 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) Smart Connect Technology 4.1 x64 (HKLM\...\{6555226B-7295-4CFD-9D5B-9C8F394BE03A}) (Version: 4.1.41.2234 - Intel)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{201B03D6-FDDA-4C70-8A15-887F5B3CE365}) (Version: 4.2.19.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation)
Java 8 Update 73 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Laplink PCmover Express for Windows XP (HKLM-x32\...\{01C41C3F-EA8F-4F84-9C21-9564ED195131}) (Version: 8.20.635 - Laplink Software, Inc.)
Lenovo Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 8.72.10 - Lenovo)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.01 - )
Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.38.00 - Lenovo Group Limited)
Lenovo Fingerprint Manager Pro (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.42(x64) - Lenovo)
Lenovo Fingerprint Manager Pro (Version: 8.01.42(x64) - Lenovo) Hidden
Lenovo Multimedia and Communications Core Runtime (HKLM\...\{033DC0E0-DA89-4C33-B66C-89B64D312CD1}_is1) (Version: 5.0.13.94 - Lenovo Corporation)
Lenovo Patch Utility (x32 Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.15 - Lenovo)
Lenovo QuickControl (HKLM-x32\...\{4855C42F-5197-4AAD-A50D-5066D2CC4647}) (Version: 1.10 - Lenovo Group Limited)
Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.3.19.209 - Lenovo Corporation)
Lenovo Settings - Location Awareness (HKLM-x32\...\{C79D4402-E622-4922-9C02-89F9080BF081}_is1) (Version: 1.4.0.5 - Lenovo Group Limited)
Lenovo Settings - Power (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 7.49.4 - Lenovo Group Limited)
Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.3.3.33 - Lenovo Group Limited)
Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 2.3.0.84 - Lenovo)
Lenovo Settings Service (HKLM\...\{8C6F1EBA-17F1-4481-B688-9777E63E985F}_is1) (Version: 2.3.3.7 - Lenovo Group Limited)
Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.2.0.7 - Lenovo Group Limited)
Lenovo Solution Center (HKLM\...\{4386A5EF-BD23-49F4-9DAD-CD76B4F6A8BF}) (Version: 2.8.006.00 - Lenovo Group Limited)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0022 - Lenovo)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0012.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0011.00 - Lenovo)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Maxwell for SketchUp 2015 (HKLM-x32\...\{DEC405C1-CB23-4C20-948D-BF8631B7E8EE}) (Version: 3.1.0 - Next Limit Technologies)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.292.3 - McAfee, Inc.)
Metric Collection SDK (x32 Version: 1.1.0005.00 - Lenovo Group Limited) Hidden
Microsoft Office Home and Business 2013 - de-de (HKLM\...\HomeBusinessRetail - de-de) (Version: 15.0.4797.1003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 41.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 de)) (Version: 41.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.0.5738 - Mozilla)
Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.)
Nitro Pro 9 (HKLM\...\{46BC2EAC-C080-499E-B9B1-A93FAFBE8578}) (Version: 9.5.2.29 - Nitro)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4797.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden
PhotoSync (HKLM\...\{CECDB976-FC3E-49E1-8A47-DF447D8B4DBC}) (Version: 3.0.7 - touchbyte GmbH)
Plan4You Easy (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\2387559020.plan4youeasy.haude.at) (Version:  - plan4youeasy.haude.at)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21236 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SketchUp 2016 (HKLM\...\{F40C8253-11C9-4D11-A392-B335E22D1C52}) (Version: 16.0.19912 - Trimble Navigation Limited)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
SmartTools Publishing • Excel Projektplan 2014 (HKLM-x32\...\SmartToolsProjektplan 2014v4.00) (Version: v4.00 - SmartTools Publishing)
Spotify (HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\Spotify) (Version: 1.0.24.104.g92a22684 - Spotify AB)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.80.99066 - SugarSync, Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.27 - Synaptics Incorporated)
Synaptics WBF DDK 5011 (Advanced) (HKLM\...\{87E2D28A-EEE2-4C3C-B0C1-CDA986B3C42E}) (Version: 4.5.503.0 - Synaptics)
ThinkVantage System für aktiven Festplattenschutz (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.26 - Lenovo)
Visualizer for SketchUp (HKLM\...\{3758A735-50FD-4033-B3F5-77F30ED63F87}) (Version: 1.3.13.0 - Imagination)
VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN)
Windows-Treiberpaket - Intel (e1dexpress) Net  (05/06/2013 12.6.51.9427) (HKLM\...\EE65D5FC2879A33F6215CCBA14A4E08712271C7E) (Version: 05/06/2013 12.6.51.9427 - Intel)
Windows-Treiberpaket - Intel Corporation (iaStorA) HDC  (07/10/2013 12.7.1.1000) (HKLM\...\46401F4452DAF88AC0AE17DCC13122D50FA7A51A) (Version: 07/10/2013 12.7.1.1000 - Intel Corporation)
Windows-Treiberpaket - Lenovo 1.67.00.02 (04/17/2013 1.67.00.02) (HKLM\...\907DA143458FE258EFEB416B946DE8DF2B87A0BA) (Version: 04/17/2013 1.67.00.02 - Lenovo)
Windows-Treiberpaket - Synaptics (SmbDrv) System  (08/08/2013 16.6.4.38) (HKLM\...\B8B0FB49BE368EB005D7A392C3F3F6EAE44D4895) (Version: 08/08/2013 16.6.4.38 - Synaptics)
Windows-Treiberpaket - Synaptics (SynTP) Mouse  (08/08/2013 16.6.4.38) (HKLM\...\18D3C88E5856BD23EE44DECE8557176A5BD3FBED) (Version: 08/08/2013 16.6.4.38 - Synaptics)
XING Outlook Connector (HKLM\...\{3B8AF990-AE63-481C-BC4B-8BB8D7A93B80}) (Version: 2.2.0 - XING)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-686292772-3706268183-491554591-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0114E360-2026-4A5E-A2E6-225EAC3FF15B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {0548E98E-886C-492A-ABE6-C97E3B8D907F} - System32\Tasks\PMTask => C:\PROGRA~2\ThinkPad\UTILIT~1\PwmIdTsv.exe
Task: {055544F3-3656-4D32-BDDD-76BC021B2F2F} - System32\Tasks\xingoscupdate => C:\Program Files\XING\XING Outlook Connector\xingoscupdate.exe [2014-01-08] (XING)
Task: {08375F23-4DDE-4A20-A90A-75A9CB4387C5} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo)
Task: {155E190F-A525-4F82-BA77-86D1797AEBB9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-01-12] (Microsoft Corporation)
Task: {1AAED4E4-EACB-4F33-B43F-A1E7A304B570} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {20FE82F6-8C14-41B1-88E8-81400CBB1BE8} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-01-13] ()
Task: {2F10048B-100E-4F47-99C1-FFC6854FEA69} - System32\Tasks\Lenovo\LSC\Time72Task => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2015-12-10] (Lenovo)
Task: {336547F6-0CB7-4061-9829-5340B4751BDB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {37CFAF25-C3DA-45E4-BB71-EDBCFD270561} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo)
Task: {4AD894F6-5D0A-4A89-876C-74B4072CA924} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {516DF337-6C6C-48F9-BD2E-33E65BF28FD8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {532DA594-E5E7-4EA8-8C8C-28E7C5EAA5B7} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-12-10] (Lenovo)
Task: {5CD81AF7-4C6D-451C-A632-6C3109607AA4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {610E5188-643E-4B9B-B6BB-63729835BBDA} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {6A360865-2676-40D2-8152-2F3A0CD64970} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {6B37C975-3D4B-4167-87A8-B0C9636DC535} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {6E4125ED-5986-4C8A-9215-5166C68E5636} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {7B05DF95-BED5-4EFD-A78B-B06AF9E6BBFA} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
Task: {7BAB6C22-2BC2-40FA-A0E4-470E1E7A8AE6} - System32\Tasks\Lenovo\LSC\RebootCountTask => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2015-12-10] (Lenovo)
Task: {86F04FE5-5F54-454A-B2F3-129C50F072AC} - System32\Tasks\Avira System Speedup Tray => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe [2016-02-26] (Avira Operations GmbH & Co. KG)
Task: {8A3B9948-91C0-4C3A-853A-7960FD35AD5E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {90309549-9ADA-4649-9BC6-00135BC6A58F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-01-12] (Microsoft Corporation)
Task: {92432AD1-39F9-46F1-B8E4-D4048888B0E9} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-12-10] (Lenovo)
Task: {96C4E12F-F00E-4503-BF26-1C9419E69145} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {9A4E8712-3452-4C7F-902E-7ACC07D07424} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-09] (Microsoft Corporation)
Task: {A5D62ABE-8115-4E78-B8A3-6356CA6D9AAC} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {A9DDA89D-165E-4FD5-A9E5-465B57313BD8} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-06-24] (Realtek Semiconductor)
Task: {AB4504FD-DE0E-4811-BE66-7F149BF7D791} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo)
Task: {B4162773-C07E-4F8D-B632-EB32C23DEA5F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {B41F69DA-6F5D-4B22-805F-20694201D1A7} - System32\Tasks\Xing Social Recommendations => C:\Program Files\XING\XING Outlook Connector\32-bit\XingSocial.exe [2014-01-08] (XING AG)
Task: {B42C37BF-A62B-49A8-9502-8199C732663B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10] (Adobe Systems Incorporated)
Task: {C17DE579-3A02-465D-A08E-36C24BCD94B7} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2015-12-10] (Lenovo)
Task: {D152EEED-CDBC-4569-8239-67906E98C043} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {E9A1511E-3C50-4341-8180-455A71DBEDA0} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2015-12-14] ()
Task: {F1A82B7C-C8FC-4D66-84AE-06CBC075FB30} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {FA7D5DE0-CCBE-4031-9860-30FCF5CC4C5C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {FB12AF61-CAED-4143-B629-85541C99C16D} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-06-24] (Realtek Semiconductor)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2014-06-17 22:55 - 2015-01-16 07:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.dll
2014-06-17 12:36 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2013-04-15 14:45 - 2013-04-15 14:45 - 00182760 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2013-04-15 14:45 - 2013-04-15 14:45 - 00060392 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-07-16 14:50 - 2014-07-16 14:50 - 00417800 _____ () C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
2013-06-21 14:42 - 2015-01-09 15:40 - 00469720 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2013-06-21 14:42 - 2015-01-09 15:40 - 00013528 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
2016-03-02 07:26 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-01-22 08:20 - 2016-01-22 08:21 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-07-17 23:35 - 2015-12-19 01:08 - 00402344 _____ () C:\WINDOWS\system32\igfxTray.exe
2015-12-18 10:56 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-02 07:26 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2014-06-17 22:55 - 2015-01-16 07:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2013-06-18 10:04 - 2013-06-18 10:04 - 01720184 _____ () C:\Program Files (x86)\Integrated Camera\Monitor.exe
2014-08-21 16:59 - 2014-08-21 16:59 - 00462592 _____ () C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe
2016-01-28 08:12 - 2016-01-28 08:14 - 00618688 _____ () C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2016-03-08 10:59 - 2016-03-08 10:59 - 00136392 _____ () C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.6741.18401.0_x64__8wekyb3d8bbwe\textinputdriver.dll
2016-03-08 10:57 - 2016-03-08 10:57 - 00013824 _____ () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.exe
2016-03-08 10:57 - 2016-03-08 10:57 - 06197760 _____ () C:\Program Files\WindowsApps\Microsoft.Getstarted_2.6.16.0_x64__8wekyb3d8bbwe\WhatsNew.Store.dll
2016-01-13 13:50 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-01-13 13:50 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-01-28 08:23 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-01-28 08:23 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-03-04 08:42 - 2016-03-04 08:44 - 00016384 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-03-04 08:42 - 2016-03-04 08:44 - 16062976 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-03-04 08:42 - 2016-03-04 08:44 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2013-09-29 17:13 - 2013-07-26 03:24 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-12-21 09:30 - 2015-12-21 09:30 - 03154432 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Devices\52e2255e6fbd7b1a8a153dcb8ab573a5\Windows.Devices.ni.dll
2016-01-22 08:20 - 2016-01-22 08:21 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-01-22 08:20 - 2016-01-22 08:21 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-03-07 13:12 - 2016-03-07 13:12 - 00098816 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32api.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00110080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pywintypes27.dll
2016-03-07 13:12 - 2016-03-07 13:12 - 00364544 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pythoncom27.dll
2016-03-07 13:12 - 2016-03-07 13:12 - 00320512 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32com.shell.shell.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00776704 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_hashlib.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 01176576 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._core_.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00806400 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._gdi_.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00816128 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._windows_.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 01067008 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._controls_.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00733184 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._misc_.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00682496 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pysqlite2._sqlite.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00088064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_ctypes.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00119808 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32file.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00108544 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32security.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00007168 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\hashobjs_ext.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00017920 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\thumbnails_ext.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00088064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\usb_ext.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00167936 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32gui.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00018432 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32event.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00046080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_socket.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 01208320 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_ssl.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00128512 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_elementtree.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00127488 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\pyexpat.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00013824 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\common.time34.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00036864 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_psutil_windows.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00038912 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32inet.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00525240 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\windows._lib_cacheinvalidation.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00011264 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32crypt.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00077312 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._html2.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00027136 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_multiprocessing.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00020480 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\_yappi.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00035840 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32process.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00686080 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\unicodedata.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00078848 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._animate.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00123392 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\wx._wizard.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00024064 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32pipe.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00010240 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\select.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00025600 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32pdh.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00017408 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32profile.pyd
2016-03-07 13:12 - 2016-03-07 13:12 - 00022528 _____ () C:\Users\FloSchwaiger\AppData\Local\Temp\_MEI68362\win32ts.pyd
2016-02-26 07:45 - 2016-02-26 07:45 - 00325824 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2013-09-29 17:25 - 2015-01-07 09:29 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2013-09-29 17:25 - 2015-01-07 09:29 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2016-02-26 07:46 - 2016-02-26 07:48 - 01032360 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\ADDINS\UmOutlookAddin.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Windows:nlsPreferences [386]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0]
AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 [144]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 14:25 - 2015-12-18 15:01 - 00000854 ____A C:\WINDOWS\system32\Drivers\etc\hosts

0.0.0.1	mssplus.mcafee.com

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-686292772-3706268183-491554591-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\FloSchwaiger\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\thinkdesktop.png
DNS Servers: 192.168.10.110 - 192.168.10.111
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-686292772-3706268183-491554591-1001\...\StartupApproved\Run: => "safe_url__2"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{8D9DE358-298E-426C-BB5F-158B49D77164}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{F0D9451F-8399-475F-9035-C0617E02B709}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe
FirewallRules: [TCP Query User{431D9BE9-4126-4446-99BC-790278B9E60C}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe
FirewallRules: [UDP Query User{5A267942-3D21-462E-8366-8DDB0CF1522B}C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{1A8EFA13-1245-42BA-8652-9280C5FD6D9C}C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{28DFAE2A-060A-476E-A144-890D7F019C42}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7AA58609-839F-4D25-8D7C-2F9F1AEE94CA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0B275EE4-9074-48CB-BCE3-989FDC16D570}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C54623F2-67E7-4D69-AB17-594C287A39DC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E2EE18ED-A12B-4B4A-BDD9-67860D828534}] => (Allow) C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{2470CCBC-1545-45DE-ADF0-A619F55AC1E5}] => (Allow) C:\Users\FloSchwaiger\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{26C6C494-C3C5-4462-9D03-B7BC2407F18B}] => (Allow) C:\Program Files (x86)\Laplink\PCmover\pcmover.exe
FirewallRules: [{A8F8DE4B-F94B-44F5-B731-D05F95E0B8B0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{7964A1DA-9757-46E0-8AD1-CFC373B4A1D0}] => (Allow) C:\Users\FloSchwaiger\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{3B519FBD-9871-47AD-85CA-B616BEE47BC9}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [{2EC403C9-7F15-457F-8470-586219B0CBBB}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
FirewallRules: [{1C1F239F-0AD6-4B4B-8C63-84351B80C96A}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
FirewallRules: [TCP Query User{65FDB4B9-4F93-43A9-9AFC-97C6DB9D5ED3}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{FA4CB688-E90C-4C14-8AA9-0FD317264D5A}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{457E8E3F-913F-43DF-9A2A-B6F4D9996D13}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{B4D8DFC7-D462-4972-BB6C-D2DF8D80AF1B}C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\floschwaiger\appdata\roaming\spotify\spotify.exe
FirewallRules: [{8FC10FD9-CE1E-4F56-9C6D-9813A0101BCD}] => (Allow) LPort=35722
FirewallRules: [TCP Query User{F6795146-277C-4FE1-A7DE-4350DB913FB7}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe
FirewallRules: [UDP Query User{4A8B759E-4091-4520-8EB4-E9F0ED1297CF}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe] => (Allow) C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe
FirewallRules: [{0E4B178D-5199-44D0-B963-565508C45E31}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E03DC71F-9E56-476D-BB5A-6BCB7A2EB33E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{61442B47-4C3A-4B29-992E-5A78C05F0C8A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{6CFFA57F-247A-455A-84FC-7B62BAFCDCBB}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{2C56F2A3-5038-4BA9-94CF-B365F566D0DF}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{6C718AE5-D00E-4B3C-8A68-4C2A99A6D743}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{8969766E-F20F-4C2A-AD5C-2A02A868354D}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{801BBCCB-45E2-47FB-953C-F874FAEF9A27}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

25-02-2016 06:14:13 Windows Update
29-02-2016 08:57:31 Windows Update
01-03-2016 23:04:47 Avira System Speedup 2.1.13
05-03-2016 12:07:49 Windows Update
09-03-2016 12:29:24 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: IWD Bus Enumerator
Description: IWD Bus Enumerator
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard system devices)
Service: iwdbus
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/10/2016 07:58:40 AM) (Source: MsiInstaller) (EventID: 1024) (User: FLOSCHWAIGER-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5C00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (03/09/2016 12:29:26 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2266

Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2266

Error: (03/08/2016 06:31:42 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/08/2016 04:41:11 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={56193B1C-381C-40D8-AFAB-39A1A2083B37}: Der Benutzer "SYSTEM" hat eine Verbindung mit dem Namen "VPN-Dundk" gewählt, die Verbindung konnte jedoch nicht hergestellt werden. Der durch den Fehler zurückgegebene Ursachencode lautet: 0.

Error: (03/08/2016 03:00:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: outlook.exe, Version: 15.0.4797.1003, Zeitstempel: 0x56bf0198
Name des fehlerhaften Moduls: outlook.exe, Version: 15.0.4797.1003, Zeitstempel: 0x56bf0198
Ausnahmecode: 0xc0000005
Fehleroffset: 0x004c263e
ID des fehlerhaften Prozesses: 0xd84
Startzeit der fehlerhaften Anwendung: 0xoutlook.exe0
Pfad der fehlerhaften Anwendung: outlook.exe1
Pfad des fehlerhaften Moduls: outlook.exe2
Berichtskennung: outlook.exe3
Vollständiger Name des fehlerhaften Pakets: outlook.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: outlook.exe5

Error: (03/07/2016 03:06:28 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm firefox.exe, Version 41.0.0.5738 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 618

Startzeit: 01d17875040bf38a

Beendigungszeit: 78

Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

Berichts-ID: c4e3d7d6-e46d-11e5-bef8-5c514f55a626

Vollständiger Name des fehlerhaften Pakets: 

Auf das fehlerhafte Paket bezogene Anwendungs-ID:

Error: (03/07/2016 03:06:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 41.0.0.5738, Zeitstempel: 0x55fb7072
Name des fehlerhaften Moduls: mozglue.dll, Version: 41.0.0.5738, Zeitstempel: 0x55fb5afb
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000ec7e
ID des fehlerhaften Prozesses: 0x18dc
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5

Error: (03/07/2016 01:45:44 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8


Systemfehler:
=============
Error: (03/10/2016 08:17:36 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (03/10/2016 08:02:44 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80073cf3 fehlgeschlagen: miraCal - A better calendar for Google

Error: (03/09/2016 07:54:07 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/09/2016 07:28:43 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/09/2016 06:39:31 PM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{AA82A58E-A01D-4B9E-BD72-5D7BF1ED3FFE} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (03/09/2016 03:53:13 PM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (03/09/2016 01:50:59 PM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (03/09/2016 11:11:00 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (03/09/2016 11:10:30 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (03/09/2016 11:10:00 AM) (Source: DCOM) (EventID: 10010) (User: FLOSCHWAIGER-PC)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}


CodeIntegrity:
===================================
  Date: 2016-03-03 08:47:33.713
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-02 10:14:29.656
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-16 12:30:16.943
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-16 07:07:00.970
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-10 09:43:35.639
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-01-31 10:34:55.711
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-01-14 11:15:26.822
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-01-12 08:11:14.121
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-01-12 08:11:14.112
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-01-12 08:11:14.103
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-4600U CPU @ 2.10GHz
Prozentuale Nutzung des RAM: 46%
Installierter physikalischer RAM: 8071.84 MB
Verfügbarer physikalischer RAM: 4356.45 MB
Summe virtueller Speicher: 9351.84 MB
Verfügbarer virtueller Speicher: 4704.23 MB

==================== Laufwerke ================================

Drive c: (Windows8_OS) (Fixed) (Total:217.45 GB) (Free:85.48 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (Seagate Backup Plus Drive) (Fixed) (Total:931.51 GB) (Free:536.81 GB) NTFS
Drive e: () (Removable) (Total:7.39 GB) (Free:5.66 GB) FAT32

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (Size: 7.4 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 99D133B6)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         


Alt 10.03.2016, 09:44   #6
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.



Schritt 1
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________
--> Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.

Alt 10.03.2016, 10:00   #7
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

TDSSKiller Report Teil 1



Code:
ATTFilter
09:50:40.0770 0x1048  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
09:50:40.0773 0x1048  UEFI system
09:50:49.0609 0x1048  ============================================================
09:50:49.0609 0x1048  Current date / time: 2016/03/10 09:50:49.0609
09:50:49.0609 0x1048  SystemInfo:
09:50:49.0613 0x1048  
09:50:49.0613 0x1048  OS Version: 10.0.10586 ServicePack: 0.0
09:50:49.0613 0x1048  Product type: Workstation
09:50:49.0613 0x1048  ComputerName: FLOSCHWAIGER-PC
09:50:49.0613 0x1048  UserName: FloSchwaiger
09:50:49.0613 0x1048  Windows directory: C:\WINDOWS
09:50:49.0613 0x1048  System windows directory: C:\WINDOWS
09:50:49.0613 0x1048  Running under WOW64
09:50:49.0613 0x1048  Processor architecture: Intel x64
09:50:49.0613 0x1048  Number of processors: 4
09:50:49.0613 0x1048  Page size: 0x1000
09:50:49.0613 0x1048  Boot type: Normal boot
09:50:49.0613 0x1048  ============================================================
09:50:49.0904 0x1048  KLMD registered as C:\WINDOWS\system32\drivers\82376011.sys
09:50:49.0972 0x1048  System UUID: {64636FEE-1AC5-D94F-2DF1-0CE00301AE99}
09:50:52.0644 0x1048  Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
09:50:52.0645 0x1048  Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
09:50:52.0653 0x1048  Drive \Device\Harddisk1\DR4 - Size: 0x1D9C00000 ( 7.40 Gb ), SectorSize: 0x200, Cylinders: 0x3C6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
09:50:52.0666 0x1048  Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
09:50:52.0670 0x1048  ============================================================
09:50:52.0670 0x1048  \Device\Harddisk2\DR7:
09:50:52.0671 0x1048  MBR partitions:
09:50:52.0671 0x1048  \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF
09:50:52.0671 0x1048  \Device\Harddisk0\DR0:
09:50:52.0671 0x1048  GPT partitions:
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {742A5203-8965-41BE-BEA7-67D2A8E54068}, Name: , StartLBA 0x800, BlocksNum 0x1F4000
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {AA2895CE-1EC9-4C2F-9888-BC310EED052C}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {547C710A-96B7-421B-B4A1-FD90F528EDAC}, Name: Microsoft reserved partition, StartLBA 0x276800, BlocksNum 0x40000
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C58DDAF5-20AA-4E0F-89D8-5A3C019C7809}, Name: Basic data partition, StartLBA 0x2B6800, BlocksNum 0x1B2E7B14
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {1CB8E3D8-37DC-45E2-A40A-97057AFB05E5}, Name: , StartLBA 0x1B59E800, BlocksNum 0xFB000
09:50:52.0672 0x1048  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {01398853-C4D6-4B88-A82D-7EBCE3F12716}, Name: , StartLBA 0x1B699800, BlocksNum 0x1859800
09:50:52.0673 0x1048  \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {DFEBFDC9-B393-4D67-8744-4D13DDBF0B74}, Name: Basic data partition, StartLBA 0x1CEF3000, BlocksNum 0xE00000
09:50:52.0673 0x1048  MBR partitions:
09:50:52.0673 0x1048  \Device\Harddisk1\DR4:
09:50:52.0674 0x1048  MBR partitions:
09:50:52.0674 0x1048  \Device\Harddisk1\DR4\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xECC000
09:50:52.0674 0x1048  \Device\Harddisk2\DR7:
09:50:52.0674 0x1048  MBR partitions:
09:50:52.0674 0x1048  \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF
09:50:52.0674 0x1048  ============================================================
09:50:52.0678 0x1048  C: <-> \Device\Harddisk0\DR0\Partition4
09:50:52.0690 0x1048  D: <-> \Device\Harddisk2\DR7\Partition1
09:50:52.0690 0x1048  ============================================================
09:50:52.0690 0x1048  Initialize success
09:50:52.0690 0x1048  ============================================================
09:50:54.0824 0x03d4  ============================================================
09:50:54.0824 0x03d4  Scan started
09:50:54.0824 0x03d4  Mode: Manual; 
09:50:54.0824 0x03d4  ============================================================
09:50:54.0824 0x03d4  KSN ping started
09:50:57.0754 0x03d4  KSN ping finished: true
09:50:58.0206 0x03d4  ================ Scan system memory ========================
09:50:58.0206 0x03d4  System memory - ok
09:50:58.0206 0x03d4  ================ Scan services =============================
09:50:58.0242 0x03d4  [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
09:50:58.0246 0x03d4  1394ohci - ok
09:50:58.0254 0x03d4  [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
09:50:58.0256 0x03d4  3ware - ok
09:50:58.0269 0x03d4  [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
09:50:58.0276 0x03d4  ACPI - ok
09:50:58.0281 0x03d4  [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
09:50:58.0283 0x03d4  acpiex - ok
09:50:58.0286 0x03d4  [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
09:50:58.0286 0x03d4  acpipagr - ok
09:50:58.0290 0x03d4  [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
09:50:58.0290 0x03d4  AcpiPmi - ok
09:50:58.0294 0x03d4  [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
09:50:58.0294 0x03d4  acpitime - ok
09:50:58.0302 0x03d4  [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
09:50:58.0303 0x03d4  AdobeARMservice - ok
09:50:58.0324 0x03d4  [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
09:50:58.0328 0x03d4  AdobeFlashPlayerUpdateSvc - ok
09:50:58.0351 0x03d4  [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
09:50:58.0366 0x03d4  ADP80XX - ok
09:50:58.0380 0x03d4  [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD             C:\WINDOWS\system32\drivers\afd.sys
09:50:58.0387 0x03d4  AFD - ok
09:50:58.0393 0x03d4  [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
09:50:58.0394 0x03d4  agp440 - ok
09:50:58.0401 0x03d4  [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
09:50:58.0404 0x03d4  ahcache - ok
09:50:58.0408 0x03d4  [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter        C:\WINDOWS\System32\AJRouter.dll
09:50:58.0408 0x03d4  AJRouter - ok
09:50:58.0412 0x03d4  [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG             C:\WINDOWS\System32\alg.exe
09:50:58.0414 0x03d4  ALG - ok
09:50:58.0420 0x03d4  [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
09:50:58.0422 0x03d4  AmdK8 - ok
09:50:58.0427 0x03d4  [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
09:50:58.0428 0x03d4  AmdPPM - ok
09:50:58.0432 0x03d4  [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
09:50:58.0434 0x03d4  amdsata - ok
09:50:58.0441 0x03d4  [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
09:50:58.0444 0x03d4  amdsbs - ok
09:50:58.0447 0x03d4  [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
09:50:58.0448 0x03d4  amdxata - ok
09:50:58.0471 0x03d4  [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
09:50:58.0484 0x03d4  AntiVirMailService - ok
09:50:58.0495 0x03d4  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
09:50:58.0501 0x03d4  AntiVirSchedulerService - ok
09:50:58.0511 0x03d4  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService  C:\Program Files (x86)\Avira\Antivirus\avguard.exe
09:50:58.0517 0x03d4  AntiVirService - ok
09:50:58.0543 0x03d4  [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
09:50:58.0561 0x03d4  AntiVirWebService - ok
09:50:58.0568 0x03d4  [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID           C:\WINDOWS\system32\drivers\appid.sys
09:50:58.0570 0x03d4  AppID - ok
09:50:58.0573 0x03d4  [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
09:50:58.0574 0x03d4  AppIDSvc - ok
09:50:58.0579 0x03d4  [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
09:50:58.0580 0x03d4  Appinfo - ok
09:50:58.0586 0x03d4  [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
09:50:58.0590 0x03d4  AppMgmt - ok
09:50:58.0602 0x03d4  [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
09:50:58.0609 0x03d4  AppReadiness - ok
09:50:58.0647 0x03d4  [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
09:50:58.0674 0x03d4  AppXSvc - ok
09:50:58.0681 0x03d4  [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
09:50:58.0684 0x03d4  arcsas - ok
09:50:58.0687 0x03d4  [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac        C:\WINDOWS\System32\drivers\asyncmac.sys
09:50:58.0688 0x03d4  AsyncMac - ok
09:50:58.0691 0x03d4  [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
09:50:58.0692 0x03d4  atapi - ok
09:50:58.0699 0x03d4  [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
09:50:58.0703 0x03d4  AudioEndpointBuilder - ok
09:50:58.0724 0x03d4  [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
09:50:58.0737 0x03d4  Audiosrv - ok
09:50:58.0755 0x03d4  [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
09:50:58.0762 0x03d4  AVControlCenter - ok
09:50:58.0766 0x03d4  [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt        C:\WINDOWS\system32\DRIVERS\avgntflt.sys
09:50:58.0768 0x03d4  avgntflt - ok
09:50:58.0773 0x03d4  [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb          C:\WINDOWS\system32\DRIVERS\avipbb.sys
09:50:58.0776 0x03d4  avipbb - ok
09:50:58.0784 0x03d4  [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
09:50:58.0787 0x03d4  Avira.ServiceHost - ok
09:50:58.0791 0x03d4  [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr          C:\WINDOWS\system32\DRIVERS\avkmgr.sys
09:50:58.0792 0x03d4  avkmgr - ok
09:50:58.0796 0x03d4  [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt        C:\WINDOWS\system32\DRIVERS\avnetflt.sys
09:50:58.0797 0x03d4  avnetflt - ok
09:50:58.0802 0x03d4  [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
09:50:58.0804 0x03d4  AxInstSV - ok
09:50:58.0815 0x03d4  [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
09:50:58.0822 0x03d4  b06bdrv - ok
09:50:58.0826 0x03d4  [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
09:50:58.0827 0x03d4  BasicDisplay - ok
09:50:58.0831 0x03d4  [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
09:50:58.0831 0x03d4  BasicRender - ok
09:50:58.0835 0x03d4  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\WINDOWS\System32\drivers\bcmfn.sys
09:50:58.0836 0x03d4  bcmfn - ok
09:50:58.0839 0x03d4  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
09:50:58.0840 0x03d4  bcmfn2 - ok
09:50:58.0849 0x03d4  [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
09:50:58.0854 0x03d4  BDESVC - ok
09:50:58.0857 0x03d4  [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
09:50:58.0858 0x03d4  Beep - ok
09:50:58.0875 0x03d4  [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE             C:\WINDOWS\System32\bfe.dll
09:50:58.0885 0x03d4  BFE - ok
09:50:58.0907 0x03d4  [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS            C:\WINDOWS\System32\qmgr.dll
09:50:58.0923 0x03d4  BITS - ok
09:50:58.0935 0x03d4  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
09:50:58.0941 0x03d4  Bonjour Service - ok
09:50:58.0945 0x03d4  [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
09:50:58.0947 0x03d4  bowser - ok
09:50:58.0956 0x03d4  [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
09:50:58.0960 0x03d4  BrcmSetSecurity - ok
09:50:58.0973 0x03d4  [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
09:50:58.0980 0x03d4  BrokerInfrastructure - ok
09:50:58.0985 0x03d4  [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser         C:\WINDOWS\System32\browser.dll
09:50:58.0987 0x03d4  Browser - ok
09:50:58.0993 0x03d4  [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
09:50:58.0993 0x03d4  BthAvrcpTg - ok
09:50:58.0998 0x03d4  [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
09:50:58.0999 0x03d4  BthEnum - ok
09:50:59.0003 0x03d4  [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
09:50:59.0004 0x03d4  BthHFEnum - ok
09:50:59.0008 0x03d4  [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
09:50:59.0009 0x03d4  bthhfhid - ok
09:50:59.0018 0x03d4  [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
09:50:59.0023 0x03d4  BthHFSrv - ok
09:50:59.0031 0x03d4  [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum       C:\WINDOWS\System32\drivers\BthLEEnum.sys
09:50:59.0034 0x03d4  BthLEEnum - ok
09:50:59.0038 0x03d4  [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
09:50:59.0040 0x03d4  BTHMODEM - ok
09:50:59.0044 0x03d4  [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
09:50:59.0046 0x03d4  BthPan - ok
09:50:59.0064 0x03d4  [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT         C:\WINDOWS\System32\drivers\BTHport.sys
09:50:59.0077 0x03d4  BTHPORT - ok
09:50:59.0082 0x03d4  [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv         C:\WINDOWS\system32\bthserv.dll
09:50:59.0083 0x03d4  bthserv - ok
09:50:59.0088 0x03d4  [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB          C:\WINDOWS\System32\drivers\BTHUSB.sys
09:50:59.0090 0x03d4  BTHUSB - ok
09:50:59.0093 0x03d4  [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
09:50:59.0094 0x03d4  buttonconverter - ok
09:50:59.0099 0x03d4  [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg          C:\WINDOWS\System32\drivers\capimg.sys
09:50:59.0100 0x03d4  CapImg - ok
09:50:59.0104 0x03d4  [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
09:50:59.0106 0x03d4  cdfs - ok
09:50:59.0114 0x03d4  [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc          C:\WINDOWS\System32\CDPSvc.dll
09:50:59.0118 0x03d4  CDPSvc - ok
09:50:59.0124 0x03d4  [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
09:50:59.0126 0x03d4  cdrom - ok
09:50:59.0132 0x03d4  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
09:50:59.0135 0x03d4  CertPropSvc - ok
09:50:59.0139 0x03d4  [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
09:50:59.0140 0x03d4  circlass - ok
09:50:59.0150 0x03d4  [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
09:50:59.0155 0x03d4  CLFS - ok
09:50:59.0206 0x03d4  [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc   C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
09:50:59.0243 0x03d4  ClickToRunSvc - ok
09:50:59.0259 0x03d4  [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC         C:\WINDOWS\System32\ClipSVC.dll
09:50:59.0267 0x03d4  ClipSVC - ok
09:50:59.0276 0x03d4  [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
09:50:59.0277 0x03d4  CmBatt - ok
09:50:59.0290 0x03d4  [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
09:50:59.0298 0x03d4  CNG - ok
09:50:59.0301 0x03d4  [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist     C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
09:50:59.0302 0x03d4  cnghwassist - ok
09:50:59.0314 0x03d4  [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus    C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys
09:50:59.0315 0x03d4  CompositeBus - ok
09:50:59.0318 0x03d4  COMSysApp - ok
09:50:59.0321 0x03d4  [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
09:50:59.0322 0x03d4  condrv - ok
09:50:59.0338 0x03d4  [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
09:50:59.0349 0x03d4  CoreMessagingRegistrar - ok
09:50:59.0372 0x03d4  [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
09:50:59.0377 0x03d4  cphs - ok
09:50:59.0382 0x03d4  [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
09:50:59.0384 0x03d4  CryptSvc - ok
09:50:59.0396 0x03d4  [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC             C:\WINDOWS\system32\drivers\csc.sys
09:50:59.0403 0x03d4  CSC - ok
09:50:59.0418 0x03d4  [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService      C:\WINDOWS\System32\cscsvc.dll
09:50:59.0428 0x03d4  CscService - ok
09:50:59.0433 0x03d4  [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam             C:\WINDOWS\system32\drivers\dam.sys
09:50:59.0434 0x03d4  dam - ok
09:50:59.0453 0x03d4  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
09:50:59.0465 0x03d4  DcomLaunch - ok
09:50:59.0471 0x03d4  [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc          C:\WINDOWS\system32\dcpsvc.dll
09:50:59.0475 0x03d4  DcpSvc - ok
09:50:59.0486 0x03d4  [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
09:50:59.0494 0x03d4  defragsvc - ok
09:50:59.0505 0x03d4  [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
09:50:59.0511 0x03d4  DeviceAssociationService - ok
09:50:59.0515 0x03d4  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
09:50:59.0518 0x03d4  DeviceInstall - ok
09:50:59.0521 0x03d4  [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker  C:\WINDOWS\system32\DevQueryBroker.dll
09:50:59.0523 0x03d4  DevQueryBroker - ok
09:50:59.0528 0x03d4  [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
09:50:59.0530 0x03d4  Dfsc - ok
09:50:59.0539 0x03d4  [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
09:50:59.0544 0x03d4  Dhcp - ok
09:50:59.0548 0x03d4  [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
09:50:59.0549 0x03d4  diagnosticshub.standardcollector.service - ok
09:50:59.0578 0x03d4  [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
09:50:59.0599 0x03d4  DiagTrack - ok
09:50:59.0604 0x03d4  [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk            C:\WINDOWS\system32\drivers\disk.sys
09:50:59.0606 0x03d4  disk - ok
09:50:59.0614 0x03d4  [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
09:50:59.0619 0x03d4  DmEnrollmentSvc - ok
09:50:59.0623 0x03d4  [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
09:50:59.0624 0x03d4  dmvsc - ok
09:50:59.0627 0x03d4  [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
09:50:59.0629 0x03d4  dmwappushservice - ok
09:50:59.0636 0x03d4  [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
09:50:59.0641 0x03d4  Dnscache - ok
09:50:59.0649 0x03d4  [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
09:50:59.0653 0x03d4  dot3svc - ok
09:50:59.0659 0x03d4  [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS             C:\WINDOWS\system32\dps.dll
09:50:59.0661 0x03d4  DPS - ok
09:50:59.0665 0x03d4  [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud         C:\WINDOWS\System32\drivers\drmkaud.sys
09:50:59.0665 0x03d4  drmkaud - ok
09:50:59.0671 0x03d4  [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
09:50:59.0674 0x03d4  DsmSvc - ok
09:50:59.0680 0x03d4  [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc           C:\WINDOWS\System32\DsSvc.dll
09:50:59.0682 0x03d4  DsSvc - ok
09:50:59.0719 0x03d4  [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
09:50:59.0744 0x03d4  DXGKrnl - ok
09:50:59.0757 0x03d4  [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress      C:\WINDOWS\system32\DRIVERS\e1d64x64.sys
09:50:59.0763 0x03d4  e1dexpress - ok
09:50:59.0769 0x03d4  [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
09:50:59.0771 0x03d4  Eaphost - ok
09:50:59.0830 0x03d4  [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
09:50:59.0873 0x03d4  ebdrv - ok
09:50:59.0883 0x03d4  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS             C:\WINDOWS\System32\lsass.exe
09:50:59.0885 0x03d4  EFS - ok
09:50:59.0889 0x03d4  [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
09:50:59.0891 0x03d4  EhStorClass - ok
09:50:59.0895 0x03d4  [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
09:50:59.0897 0x03d4  EhStorTcgDrv - ok
09:50:59.0901 0x03d4  [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode    C:\WINDOWS\System32\embeddedmodesvc.dll
09:50:59.0903 0x03d4  embeddedmode - ok
09:50:59.0911 0x03d4  [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc       C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
09:50:59.0916 0x03d4  EntAppSvc - ok
09:50:59.0918 0x03d4  [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
09:50:59.0919 0x03d4  ErrDev - ok
09:50:59.0933 0x03d4  [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem     C:\WINDOWS\system32\es.dll
09:50:59.0940 0x03d4  EventSystem - ok
09:50:59.0948 0x03d4  [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
09:50:59.0952 0x03d4  exfat - ok
09:50:59.0960 0x03d4  [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
09:50:59.0964 0x03d4  fastfat - ok
09:50:59.0978 0x03d4  [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax             C:\WINDOWS\system32\fxssvc.exe
09:50:59.0986 0x03d4  Fax - ok
09:50:59.0991 0x03d4  [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
09:50:59.0992 0x03d4  fdc - ok
09:50:59.0994 0x03d4  [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
09:50:59.0995 0x03d4  fdPHost - ok
09:50:59.0998 0x03d4  [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
09:51:00.0000 0x03d4  FDResPub - ok
09:51:00.0005 0x03d4  [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
09:51:00.0008 0x03d4  fhsvc - ok
09:51:00.0013 0x03d4  [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt       C:\WINDOWS\system32\drivers\filecrypt.sys
09:51:00.0015 0x03d4  FileCrypt - ok
09:51:00.0018 0x03d4  [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
09:51:00.0020 0x03d4  FileInfo - ok
09:51:00.0022 0x03d4  [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
09:51:00.0024 0x03d4  Filetrace - ok
09:51:00.0028 0x03d4  [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
09:51:00.0029 0x03d4  flpydisk - ok
09:51:00.0037 0x03d4  [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
09:51:00.0043 0x03d4  FltMgr - ok
09:51:00.0074 0x03d4  [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache       C:\WINDOWS\system32\FntCache.dll
09:51:00.0095 0x03d4  FontCache - ok
09:51:00.0100 0x03d4  [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
09:51:00.0101 0x03d4  FontCache3.0.0.0 - ok
09:51:00.0105 0x03d4  [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
09:51:00.0106 0x03d4  FsDepends - ok
09:51:00.0110 0x03d4  [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
09:51:00.0111 0x03d4  Fs_Rec - ok
09:51:00.0125 0x03d4  [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
09:51:00.0133 0x03d4  fvevol - ok
09:51:00.0138 0x03d4  [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
09:51:00.0139 0x03d4  gagp30kx - ok
09:51:00.0143 0x03d4  [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
09:51:00.0144 0x03d4  gencounter - ok
09:51:00.0147 0x03d4  [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn    C:\WINDOWS\System32\drivers\genericusbfn.sys
09:51:00.0147 0x03d4  genericusbfn - ok
09:51:00.0152 0x03d4  [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
09:51:00.0155 0x03d4  GPIOClx0101 - ok
09:51:00.0188 0x03d4  [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
09:51:00.0206 0x03d4  gpsvc - ok
09:51:00.0210 0x03d4  [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv    C:\WINDOWS\system32\drivers\gpuenergydrv.sys
09:51:00.0210 0x03d4  GpuEnergyDrv - ok
09:51:00.0217 0x03d4  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:51:00.0219 0x03d4  gupdate - ok
09:51:00.0224 0x03d4  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:51:00.0226 0x03d4  gupdatem - ok
09:51:00.0230 0x03d4  [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
09:51:00.0231 0x03d4  HDAudBus - ok
09:51:00.0234 0x03d4  [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
09:51:00.0235 0x03d4  HidBatt - ok
09:51:00.0239 0x03d4  [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
09:51:00.0241 0x03d4  HidBth - ok
09:51:00.0245 0x03d4  [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
09:51:00.0246 0x03d4  hidi2c - ok
09:51:00.0249 0x03d4  [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt    C:\WINDOWS\System32\drivers\hidinterrupt.sys
09:51:00.0250 0x03d4  hidinterrupt - ok
09:51:00.0254 0x03d4  [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
09:51:00.0254 0x03d4  HidIr - ok
09:51:00.0258 0x03d4  [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv         C:\WINDOWS\system32\hidserv.dll
09:51:00.0259 0x03d4  hidserv - ok
09:51:00.0263 0x03d4  [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
09:51:00.0263 0x03d4  HidUsb - ok
09:51:00.0271 0x03d4  [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
09:51:00.0276 0x03d4  HomeGroupListener - ok
09:51:00.0286 0x03d4  [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
09:51:00.0294 0x03d4  HomeGroupProvider - ok
09:51:00.0297 0x03d4  [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
09:51:00.0298 0x03d4  HpSAMD - ok
09:51:00.0320 0x03d4  [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
09:51:00.0334 0x03d4  HTTP - ok
09:51:00.0338 0x03d4  [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys
09:51:00.0340 0x03d4  huawei_enumerator - ok
09:51:00.0343 0x03d4  [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
09:51:00.0344 0x03d4  hwpolicy - ok
09:51:00.0347 0x03d4  [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
09:51:00.0347 0x03d4  hyperkbd - ok
09:51:00.0352 0x03d4  [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
09:51:00.0354 0x03d4  i8042prt - ok
09:51:00.0358 0x03d4  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\WINDOWS\System32\drivers\iai2c.sys
09:51:00.0359 0x03d4  iai2c - ok
09:51:00.0365 0x03d4  [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C    C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
09:51:00.0368 0x03d4  iaLPSS2i_I2C - ok
09:51:00.0371 0x03d4  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
09:51:00.0372 0x03d4  iaLPSSi_GPIO - ok
09:51:00.0377 0x03d4  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
09:51:00.0379 0x03d4  iaLPSSi_I2C - ok
09:51:00.0393 0x03d4  [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
09:51:00.0401 0x03d4  iaStorA - ok
09:51:00.0416 0x03d4  [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
09:51:00.0425 0x03d4  iaStorAV - ok
09:51:00.0435 0x03d4  [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
09:51:00.0441 0x03d4  iaStorV - ok
09:51:00.0451 0x03d4  [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus           C:\WINDOWS\System32\drivers\ibbus.sys
09:51:00.0457 0x03d4  ibbus - ok
09:51:00.0461 0x03d4  [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV        C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys
09:51:00.0462 0x03d4  IBMPMDRV - ok
09:51:00.0467 0x03d4  [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC        C:\WINDOWS\system32\ibmpmsvc.exe
09:51:00.0469 0x03d4  IBMPMSVC - ok
09:51:00.0476 0x03d4  [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb          C:\WINDOWS\system32\DRIVERS\ibtusb.sys
09:51:00.0480 0x03d4  ibtusb - ok
09:51:00.0485 0x03d4  [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc          C:\WINDOWS\System32\tetheringservice.dll
09:51:00.0488 0x03d4  icssvc - ok
09:51:00.0492 0x03d4  IEEtwCollectorService - ok
09:51:00.0643 0x03d4  [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
09:51:00.0755 0x03d4  igfx - ok
09:51:00.0775 0x03d4  [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
09:51:00.0780 0x03d4  igfxCUIService2.0.0.0 - ok
09:51:00.0784 0x03d4  [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent        C:\WINDOWS\system32\DRIVERS\ikbevent.sys
09:51:00.0784 0x03d4  ikbevent - ok
09:51:00.0803 0x03d4  [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
09:51:00.0817 0x03d4  IKEEXT - ok
09:51:00.0821 0x03d4  [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent        C:\WINDOWS\system32\DRIVERS\imsevent.sys
09:51:00.0821 0x03d4  imsevent - ok
09:51:00.0827 0x03d4  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
09:51:00.0828 0x03d4  intaud_WaveExtensible - ok
09:51:00.0902 0x03d4  [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
09:51:00.0959 0x03d4  IntcAzAudAddService - ok
09:51:00.0988 0x03d4  [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
09:51:00.0994 0x03d4  IntcDAud - ok
09:51:01.0011 0x03d4  [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
09:51:01.0020 0x03d4  Intel(R) Capability Licensing Service Interface - ok
09:51:01.0036 0x03d4  [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
09:51:01.0047 0x03d4  Intel(R) Capability Licensing Service TCP IP Interface - ok
09:51:01.0053 0x03d4  [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
09:51:01.0055 0x03d4  Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok
09:51:01.0059 0x03d4  [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc     C:\WINDOWS\system32\drivers\IntelPcc.sys
09:51:01.0061 0x03d4  IntelHSWPcc - ok
09:51:01.0064 0x03d4  [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
09:51:01.0065 0x03d4  intelide - ok
09:51:01.0068 0x03d4  [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
09:51:01.0069 0x03d4  intelpep - ok
09:51:01.0074 0x03d4  [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
09:51:01.0076 0x03d4  intelppm - ok
09:51:01.0079 0x03d4  [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos           C:\WINDOWS\system32\drivers\ioqos.sys
09:51:01.0080 0x03d4  IoQos - ok
09:51:01.0083 0x03d4  [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
09:51:01.0085 0x03d4  IpFilterDriver - ok
09:51:01.0102 0x03d4  [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
09:51:01.0115 0x03d4  iphlpsvc - ok
09:51:01.0119 0x03d4  [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
09:51:01.0121 0x03d4  IPMIDRV - ok
09:51:01.0126 0x03d4  [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
09:51:01.0128 0x03d4  IPNAT - ok
09:51:01.0132 0x03d4  [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
09:51:01.0132 0x03d4  IRENUM - ok
09:51:01.0135 0x03d4  [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
09:51:01.0136 0x03d4  isapnp - ok
09:51:01.0143 0x03d4  [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
09:51:01.0147 0x03d4  iScsiPrt - ok
09:51:01.0150 0x03d4  [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT            C:\WINDOWS\System32\drivers\ISCTD64.sys
09:51:01.0151 0x03d4  ISCT - ok
09:51:01.0158 0x03d4  [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent       C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
09:51:01.0161 0x03d4  ISCTAgent - ok
09:51:01.0168 0x03d4  [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc          C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
09:51:01.0172 0x03d4  iumsvc - ok
09:51:01.0176 0x03d4  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\WINDOWS\System32\drivers\iwdbus.sys
09:51:01.0177 0x03d4  iwdbus - ok
09:51:01.0183 0x03d4  [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
09:51:01.0185 0x03d4  jhi_service - ok
09:51:01.0189 0x03d4  [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
09:51:01.0190 0x03d4  kbdclass - ok
09:51:01.0194 0x03d4  [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
09:51:01.0195 0x03d4  kbdhid - ok
09:51:01.0196 0x2538  Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService
09:51:01.0199 0x03d4  [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic           C:\WINDOWS\System32\drivers\kdnic.sys
09:51:01.0200 0x03d4  kdnic - ok
09:51:01.0204 0x03d4  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso          C:\WINDOWS\system32\lsass.exe
09:51:01.0206 0x03d4  KeyIso - ok
09:51:01.0211 0x03d4  [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
09:51:01.0212 0x03d4  KSecDD - ok
09:51:01.0218 0x03d4  [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
09:51:01.0220 0x03d4  KSecPkg - ok
09:51:01.0223 0x03d4  [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
09:51:01.0224 0x03d4  ksthunk - ok
09:51:01.0233 0x03d4  [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
09:51:01.0238 0x03d4  KtmRm - ok
09:51:01.0247 0x03d4  [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
09:51:01.0252 0x03d4  LanmanServer - ok
09:51:01.0260 0x03d4  [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
09:51:01.0265 0x03d4  LanmanWorkstation - ok
09:51:01.0302 0x03d4  [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
09:51:01.0326 0x03d4  Lenovo Settings Service - ok
09:51:01.0342 0x03d4  [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
09:51:01.0349 0x03d4  Lenovo System Agent Service - ok
09:51:01.0361 0x03d4  [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE  C:\Program Files\Lenovo\Communications Utility\cammute.exe
09:51:01.0367 0x03d4  LENOVO.CAMMUTE - ok
09:51:01.0372 0x03d4  [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE  C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
09:51:01.0374 0x03d4  LENOVO.MICMUTE - ok
09:51:01.0384 0x03d4  [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
09:51:01.0390 0x03d4  LENOVO.TPKNRSVC - ok
09:51:01.0403 0x03d4  [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM  C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
09:51:01.0412 0x03d4  LENOVO.TVTVCAM - ok
09:51:01.0416 0x03d4  [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
09:51:01.0418 0x03d4  Lenovo.VIRTSCRLSVC - ok
09:51:01.0421 0x03d4  [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc           C:\WINDOWS\System32\lfsvc.dll
09:51:01.0423 0x03d4  lfsvc - ok
09:51:01.0426 0x03d4  [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager  C:\WINDOWS\system32\LicenseManagerSvc.dll
09:51:01.0427 0x03d4  LicenseManager - ok
09:51:01.0431 0x03d4  [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio          C:\WINDOWS\system32\drivers\lltdio.sys
09:51:01.0432 0x03d4  lltdio - ok
09:51:01.0440 0x03d4  [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
09:51:01.0444 0x03d4  lltdsvc - ok
09:51:01.0447 0x03d4  [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
09:51:01.0449 0x03d4  lmhosts - ok
09:51:01.0458 0x03d4  [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
09:51:01.0463 0x03d4  LMS - ok
09:51:01.0474 0x03d4  [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc   C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
09:51:01.0480 0x03d4  LnvHotSpotSvc - ok
09:51:01.0492 0x03d4  [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
09:51:01.0498 0x03d4  LocationTaskManager - ok
09:51:01.0508 0x03d4  [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService   C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
09:51:01.0512 0x03d4  LSCWinService - ok
09:51:01.0516 0x03d4  [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
09:51:01.0517 0x03d4  LSI_SAS - ok
09:51:01.0522 0x03d4  [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i       C:\WINDOWS\system32\drivers\lsi_sas2i.sys
09:51:01.0524 0x03d4  LSI_SAS2i - ok
09:51:01.0528 0x03d4  [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i       C:\WINDOWS\system32\drivers\lsi_sas3i.sys
09:51:01.0529 0x03d4  LSI_SAS3i - ok
09:51:01.0533 0x03d4  [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
09:51:01.0534 0x03d4  LSI_SSS - ok
09:51:01.0549 0x03d4  [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM             C:\WINDOWS\System32\lsm.dll
09:51:01.0560 0x03d4  LSM - ok
09:51:01.0565 0x03d4  [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
09:51:01.0567 0x03d4  luafv - ok
09:51:01.0568 0x0768  Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt
09:51:01.0572 0x03d4  [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker      C:\WINDOWS\System32\moshost.dll
09:51:01.0574 0x03d4  MapsBroker - ok
09:51:01.0578 0x03d4  [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter      C:\WINDOWS\system32\drivers\massfilter.sys
09:51:01.0578 0x03d4  massfilter - ok
09:51:01.0581 0x03d4  [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
09:51:01.0582 0x03d4  MBAMProtector - ok
09:51:01.0605 0x03d4  [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
09:51:01.0619 0x03d4  MBAMService - ok
09:51:01.0624 0x03d4  [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
09:51:01.0625 0x03d4  MBAMWebAccessControl - ok
09:51:01.0633 0x03d4  [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe
09:51:01.0637 0x03d4  McComponentHostService - ok
09:51:01.0642 0x03d4  [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
09:51:01.0643 0x03d4  megasas - ok
09:51:01.0655 0x03d4  [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
09:51:01.0663 0x03d4  megasr - ok
09:51:01.0667 0x03d4  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
09:51:01.0669 0x03d4  MEIx64 - ok
09:51:01.0672 0x03d4  [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll
09:51:01.0674 0x03d4  MessagingService - ok
09:51:01.0682 0x03d4  [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd     C:\WINDOWS\System32\drivers\MiraDispKmd.sys
09:51:01.0683 0x03d4  MiraDispKmd - ok
09:51:01.0698 0x03d4  [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus        C:\WINDOWS\System32\drivers\mlx4_bus.sys
09:51:01.0707 0x03d4  mlx4_bus - ok
09:51:01.0711 0x03d4  [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS           C:\WINDOWS\system32\drivers\mmcss.sys
09:51:01.0712 0x03d4  MMCSS - ok
09:51:01.0715 0x03d4  [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem           C:\WINDOWS\system32\drivers\modem.sys
09:51:01.0716 0x03d4  Modem - ok
09:51:01.0718 0x03d4  [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
09:51:01.0719 0x03d4  monitor - ok
09:51:01.0724 0x03d4  [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
09:51:01.0726 0x03d4  mouclass - ok
09:51:01.0729 0x03d4  [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
09:51:01.0729 0x03d4  mouhid - ok
09:51:01.0734 0x03d4  [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
09:51:01.0735 0x03d4  mountmgr - ok
09:51:01.0740 0x03d4  [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
09:51:01.0742 0x03d4  MozillaMaintenance - ok
09:51:01.0746 0x03d4  [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
09:51:01.0747 0x03d4  mpsdrv - ok
09:51:01.0765 0x03d4  [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
09:51:01.0777 0x03d4  MpsSvc - ok
09:51:01.0783 0x03d4  [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
09:51:01.0785 0x03d4  MRxDAV - ok
09:51:01.0795 0x03d4  [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
09:51:01.0800 0x03d4  mrxsmb - ok
09:51:01.0808 0x03d4  [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
09:51:01.0811 0x03d4  mrxsmb10 - ok
09:51:01.0818 0x03d4  [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
09:51:01.0820 0x03d4  mrxsmb20 - ok
09:51:01.0826 0x03d4  [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge        C:\WINDOWS\system32\drivers\bridge.sys
09:51:01.0827 0x03d4  MsBridge - ok
09:51:01.0832 0x03d4  [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
09:51:01.0835 0x03d4  MSDTC - ok
09:51:01.0841 0x03d4  [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
09:51:01.0842 0x03d4  Msfs - ok
09:51:01.0846 0x03d4  [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
09:51:01.0847 0x03d4  msgpiowin32 - ok
09:51:01.0851 0x03d4  [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
09:51:01.0851 0x03d4  mshidkmdf - ok
09:51:01.0855 0x03d4  [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
09:51:01.0855 0x03d4  mshidumdf - ok
09:51:01.0859 0x03d4  [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
09:51:01.0860 0x03d4  msisadrv - ok
09:51:01.0865 0x03d4  [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
09:51:01.0867 0x03d4  MSiSCSI - ok
09:51:01.0870 0x03d4  msiserver - ok
09:51:01.0873 0x03d4  [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV         C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys
09:51:01.0874 0x03d4  MSKSSRV - ok
09:51:01.0877 0x03d4  [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp          C:\WINDOWS\system32\drivers\mslldp.sys
09:51:01.0878 0x03d4  MsLldp - ok
09:51:01.0882 0x03d4  [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK        C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys
09:51:01.0882 0x03d4  MSPCLOCK - ok
09:51:01.0885 0x03d4  [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM           C:\WINDOWS\system32\DRIVERS\MSPQM.sys
09:51:01.0885 0x03d4  MSPQM - ok
09:51:01.0893 0x03d4  [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
09:51:01.0900 0x03d4  MsRPC - ok
09:51:01.0904 0x03d4  [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
09:51:01.0905 0x03d4  mssmbios - ok
09:51:01.0908 0x03d4  [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE           C:\WINDOWS\system32\DRIVERS\MSTEE.sys
09:51:01.0909 0x03d4  MSTEE - ok
09:51:01.0912 0x03d4  [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
09:51:01.0912 0x03d4  MTConfig - ok
09:51:01.0917 0x03d4  [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
09:51:01.0919 0x03d4  Mup - ok
09:51:01.0923 0x03d4  [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
09:51:01.0924 0x03d4  mvumis - ok
09:51:01.0939 0x03d4  [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
09:51:01.0946 0x03d4  NativeWifiP - ok
09:51:01.0952 0x03d4  [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
09:51:01.0955 0x03d4  NcaSvc - ok
09:51:01.0963 0x03d4  [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService      C:\WINDOWS\System32\ncbservice.dll
09:51:01.0968 0x03d4  NcbService - ok
09:51:01.0972 0x03d4  [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
09:51:01.0975 0x03d4  NcdAutoSetup - ok
09:51:01.0978 0x03d4  [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr          C:\WINDOWS\System32\drivers\ndfltr.sys
09:51:01.0980 0x03d4  ndfltr - ok
09:51:02.0002 0x03d4  [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
09:51:02.0016 0x03d4  NDIS - ok
09:51:02.0021 0x03d4  [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap         C:\WINDOWS\system32\drivers\ndiscap.sys
09:51:02.0022 0x03d4  NdisCap - ok
09:51:02.0029 0x03d4  [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform  C:\WINDOWS\system32\drivers\NdisImPlatform.sys
09:51:02.0031 0x03d4  NdisImPlatform - ok
09:51:02.0034 0x03d4  [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
09:51:02.0034 0x03d4  NdisTapi - ok
09:51:02.0038 0x03d4  [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio         C:\WINDOWS\system32\drivers\ndisuio.sys
09:51:02.0039 0x03d4  Ndisuio - ok
09:51:02.0042 0x03d4  [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
09:51:02.0043 0x03d4  NdisVirtualBus - ok
09:51:02.0049 0x03d4  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan         C:\WINDOWS\System32\drivers\ndiswan.sys
09:51:02.0051 0x03d4  NdisWan - ok
09:51:02.0057 0x03d4  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
09:51:02.0059 0x03d4  ndiswanlegacy - ok
09:51:02.0063 0x03d4  [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy         C:\WINDOWS\system32\DRIVERS\NDProxy.sys
09:51:02.0064 0x03d4  ndproxy - ok
09:51:02.0069 0x03d4  [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
09:51:02.0070 0x03d4  Ndu - ok
09:51:02.0075 0x03d4  [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS         C:\WINDOWS\system32\drivers\netbios.sys
09:51:02.0076 0x03d4  NetBIOS - ok
09:51:02.0084 0x03d4  [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
09:51:02.0088 0x03d4  NetBT - ok
09:51:02.0092 0x03d4  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon        C:\WINDOWS\system32\lsass.exe
09:51:02.0093 0x03d4  Netlogon - ok
09:51:02.0100 0x03d4  [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman          C:\WINDOWS\System32\netman.dll
09:51:02.0105 0x03d4  Netman - ok
09:51:02.0117 0x03d4  [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
09:51:02.0125 0x03d4  netprofm - ok
09:51:02.0131 0x03d4  [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc     C:\WINDOWS\System32\NetSetupSvc.dll
09:51:02.0135 0x03d4  NetSetupSvc - ok
09:51:02.0141 0x03d4  [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:51:02.0143 0x03d4  NetTcpPortSharing - ok
09:51:02.0202 0x03d4  [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64        C:\WINDOWS\System32\drivers\Netwbw02.sys
09:51:02.0246 0x03d4  NETwNb64 - ok
09:51:02.0260 0x03d4  [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc      C:\WINDOWS\System32\NgcCtnrSvc.dll
09:51:02.0264 0x03d4  NgcCtnrSvc - ok
09:51:02.0278 0x03d4  [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc          C:\WINDOWS\system32\ngcsvc.dll
09:51:02.0287 0x03d4  NgcSvc - ok
09:51:02.0296 0x03d4  [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
09:51:02.0300 0x03d4  NitroDriverReadSpool9 - ok
09:51:02.0309 0x03d4  [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
09:51:02.0314 0x03d4  NitroUpdateService - ok
09:51:02.0324 0x03d4  [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
09:51:02.0329 0x03d4  NlaSvc - ok
09:51:02.0347 0x03d4  [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc        C:\WINDOWS\SysWOW64\NLSSRV32.EXE
09:51:02.0348 0x03d4  nlsX86cc - ok
09:51:02.0352 0x03d4  [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
09:51:02.0353 0x03d4  Npfs - ok
09:51:02.0356 0x03d4  [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
09:51:02.0357 0x03d4  npsvctrig - ok
09:51:02.0360 0x03d4  [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi             C:\WINDOWS\system32\nsisvc.dll
09:51:02.0362 0x03d4  nsi - ok
09:51:02.0365 0x03d4  [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
09:51:02.0366 0x03d4  nsiproxy - ok
09:51:02.0407 0x03d4  [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS            C:\WINDOWS\system32\drivers\NTFS.sys
09:51:02.0437 0x03d4  NTFS - ok
09:51:02.0442 0x03d4  [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null            C:\WINDOWS\system32\drivers\Null.sys
09:51:02.0443 0x03d4  Null - ok
09:51:02.0448 0x03d4  [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
09:51:02.0450 0x03d4  nvraid - ok
09:51:02.0455 0x03d4  [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
09:51:02.0458 0x03d4  nvstor - ok
09:51:02.0460 0x1bf8  Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam
09:51:02.0463 0x03d4  [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
09:51:02.0465 0x03d4  nv_agp - ok
09:51:02.0468 0x03d4  [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI         C:\WINDOWS\SysWOW64\drivers\omnismi.sys
09:51:02.0469 0x03d4  OMNISMI - ok
09:51:02.0477 0x03d4  [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc      C:\WINDOWS\System32\APHostService.dll
09:51:02.0482 0x03d4  OneSyncSvc - ok
09:51:02.0494 0x03d4  [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
09:51:02.0496 0x03d4  ose - ok
09:51:02.0505 0x03d4  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
09:51:02.0511 0x03d4  p2pimsvc - ok
09:51:02.0521 0x03d4  [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
09:51:02.0528 0x03d4  p2psvc - ok
09:51:02.0533 0x03d4  [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
09:51:02.0535 0x03d4  Parport - ok
09:51:02.0539 0x03d4  [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
09:51:02.0541 0x03d4  partmgr - ok
09:51:02.0553 0x03d4  [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
09:51:02.0561 0x03d4  PcaSvc - ok
09:51:02.0570 0x03d4  [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci             C:\WINDOWS\system32\drivers\pci.sys
09:51:02.0574 0x03d4  pci - ok
09:51:02.0577 0x03d4  [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
09:51:02.0578 0x03d4  pciide - ok
         

Alt 10.03.2016, 10:01   #8
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

TDSSKiller Report Teil 2



Code:
ATTFilter
09:51:02.0582 0x03d4  [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
09:51:02.0584 0x03d4  pcmcia - ok
09:51:02.0587 0x03d4  [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
09:51:02.0588 0x03d4  pcw - ok
09:51:02.0593 0x03d4  [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
09:51:02.0595 0x03d4  pdc - ok
09:51:02.0610 0x03d4  [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
09:51:02.0619 0x03d4  PEAUTH - ok
09:51:02.0657 0x03d4  [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc     C:\WINDOWS\system32\peerdistsvc.dll
09:51:02.0683 0x03d4  PeerDistSvc - ok
09:51:02.0689 0x03d4  [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i       C:\WINDOWS\system32\drivers\percsas2i.sys
09:51:02.0690 0x03d4  percsas2i - ok
09:51:02.0694 0x03d4  [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i       C:\WINDOWS\system32\drivers\percsas3i.sys
09:51:02.0695 0x03d4  percsas3i - ok
09:51:02.0699 0x03d4  [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
09:51:02.0700 0x03d4  PerfHost - ok
09:51:02.0720 0x03d4  [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc        C:\WINDOWS\System32\PhoneService.dll
09:51:02.0730 0x03d4  PhoneSvc - ok
09:51:02.0740 0x03d4  [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
09:51:02.0745 0x03d4  PimIndexMaintenanceSvc - ok
09:51:02.0778 0x03d4  [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla             C:\WINDOWS\system32\pla.dll
09:51:02.0799 0x03d4  pla - ok
09:51:02.0804 0x03d4  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
09:51:02.0807 0x03d4  PlugPlay - ok
09:51:02.0811 0x03d4  [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
09:51:02.0812 0x03d4  PNRPAutoReg - ok
09:51:02.0820 0x03d4  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
09:51:02.0825 0x03d4  PNRPsvc - ok
09:51:02.0835 0x03d4  [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
09:51:02.0840 0x03d4  PolicyAgent - ok
09:51:02.0846 0x03d4  [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power           C:\WINDOWS\system32\umpo.dll
09:51:02.0849 0x03d4  Power - ok
09:51:02.0879 0x03d4  [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
09:51:02.0902 0x03d4  Power Manager DBC Service - ok
09:51:02.0908 0x03d4  [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport    C:\WINDOWS\System32\drivers\raspptp.sys
09:51:02.0909 0x03d4  PptpMiniport - ok
09:51:02.0972 0x03d4  [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
09:51:02.0989 0x25dc  Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c
09:51:03.0014 0x03d4  PrintNotify - ok
09:51:03.0021 0x03d4  [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor       C:\WINDOWS\System32\drivers\processr.sys
09:51:03.0024 0x03d4  Processor - ok
09:51:03.0032 0x03d4  [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
09:51:03.0037 0x03d4  ProfSvc - ok
09:51:03.0043 0x03d4  [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched          C:\WINDOWS\system32\drivers\pacer.sys
09:51:03.0045 0x03d4  Psched - ok
09:51:03.0049 0x03d4  [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
09:51:03.0050 0x03d4  QuickControlMasterSvc - ok
09:51:03.0055 0x03d4  [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
09:51:03.0057 0x03d4  QuickControlService - ok
09:51:03.0065 0x03d4  [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE           C:\WINDOWS\system32\qwave.dll
09:51:03.0069 0x03d4  QWAVE - ok
09:51:03.0073 0x03d4  [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
09:51:03.0074 0x03d4  QWAVEdrv - ok
09:51:03.0077 0x03d4  [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
09:51:03.0078 0x03d4  RasAcd - ok
09:51:03.0083 0x03d4  [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn     C:\WINDOWS\System32\drivers\AgileVpn.sys
09:51:03.0084 0x03d4  RasAgileVpn - ok
09:51:03.0089 0x03d4  [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
09:51:03.0092 0x03d4  RasAuto - ok
09:51:03.0096 0x03d4  [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp         C:\WINDOWS\System32\drivers\rasl2tp.sys
09:51:03.0098 0x03d4  Rasl2tp - ok
09:51:03.0112 0x03d4  [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan          C:\WINDOWS\System32\rasmans.dll
09:51:03.0121 0x03d4  RasMan - ok
09:51:03.0126 0x03d4  [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
09:51:03.0128 0x03d4  RasPppoe - ok
09:51:03.0131 0x03d4  [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp         C:\WINDOWS\System32\drivers\rassstp.sys
09:51:03.0133 0x03d4  RasSstp - ok
09:51:03.0142 0x03d4  [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
09:51:03.0148 0x03d4  rdbss - ok
09:51:03.0152 0x03d4  [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
09:51:03.0153 0x03d4  rdpbus - ok
09:51:03.0159 0x03d4  [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
09:51:03.0162 0x03d4  RDPDR - ok
09:51:03.0167 0x03d4  [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
09:51:03.0168 0x03d4  RdpVideoMiniport - ok
09:51:03.0176 0x03d4  [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
09:51:03.0179 0x03d4  rdyboost - ok
09:51:03.0198 0x03d4  [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1          C:\WINDOWS\system32\drivers\ReFSv1.sys
09:51:03.0214 0x03d4  ReFSv1 - ok
09:51:03.0227 0x03d4  [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
09:51:03.0234 0x03d4  RemoteAccess - ok
09:51:03.0240 0x03d4  [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
09:51:03.0243 0x03d4  RemoteRegistry - ok
09:51:03.0264 0x03d4  [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo      C:\WINDOWS\system32\RDXService.dll
09:51:03.0279 0x03d4  RetailDemo - ok
09:51:03.0285 0x03d4  [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
09:51:03.0287 0x03d4  RFCOMM - ok
09:51:03.0292 0x03d4  [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
09:51:03.0294 0x03d4  RpcEptMapper - ok
09:51:03.0297 0x03d4  [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator      C:\WINDOWS\system32\locator.exe
09:51:03.0298 0x03d4  RpcLocator - ok
09:51:03.0316 0x03d4  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
09:51:03.0328 0x03d4  RpcSs - ok
09:51:03.0333 0x03d4  [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr          C:\WINDOWS\system32\drivers\rspndr.sys
09:51:03.0334 0x03d4  rspndr - ok
09:51:03.0349 0x03d4  [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER          C:\WINDOWS\system32\DRIVERS\RtsPer.sys
09:51:03.0359 0x03d4  RTSPER - ok
09:51:03.0362 0x03d4  [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
09:51:03.0363 0x03d4  s3cap - ok
09:51:03.0366 0x03d4  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs           C:\WINDOWS\system32\lsass.exe
09:51:03.0368 0x03d4  SamSs - ok
09:51:03.0373 0x03d4  [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
09:51:03.0374 0x03d4  sbp2port - ok
09:51:03.0381 0x03d4  [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
09:51:03.0387 0x03d4  SCardSvr - ok
09:51:03.0394 0x03d4  [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
09:51:03.0397 0x03d4  ScDeviceEnum - ok
09:51:03.0400 0x03d4  [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
09:51:03.0401 0x03d4  scfilter - ok
09:51:03.0420 0x03d4  [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
09:51:03.0434 0x03d4  Schedule - ok
09:51:03.0441 0x03d4  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
09:51:03.0443 0x03d4  SCPolicySvc - ok
09:51:03.0450 0x03d4  [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
09:51:03.0456 0x03d4  sdbus - ok
09:51:03.0462 0x03d4  [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC          C:\WINDOWS\System32\SDRSVC.dll
09:51:03.0465 0x03d4  SDRSVC - ok
09:51:03.0469 0x03d4  [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
09:51:03.0471 0x03d4  sdstor - ok
09:51:03.0475 0x03d4  [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon        C:\WINDOWS\system32\seclogon.dll
09:51:03.0476 0x03d4  seclogon - ok
09:51:03.0480 0x03d4  [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS            C:\WINDOWS\System32\sens.dll
09:51:03.0482 0x03d4  SENS - ok
09:51:03.0508 0x03d4  [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
09:51:03.0526 0x03d4  SensorDataService - ok
09:51:03.0535 0x03d4  [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService   C:\WINDOWS\system32\SensorService.dll
09:51:03.0541 0x03d4  SensorService - ok
09:51:03.0546 0x03d4  [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
09:51:03.0550 0x03d4  SensrSvc - ok
09:51:03.0554 0x03d4  [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
09:51:03.0555 0x03d4  SerCx - ok
09:51:03.0561 0x03d4  [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
09:51:03.0563 0x03d4  SerCx2 - ok
09:51:03.0566 0x03d4  [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
09:51:03.0567 0x03d4  Serenum - ok
09:51:03.0571 0x03d4  [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial          C:\WINDOWS\System32\drivers\serial.sys
09:51:03.0572 0x03d4  Serial - ok
09:51:03.0576 0x03d4  [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
09:51:03.0576 0x03d4  sermouse - ok
09:51:03.0589 0x03d4  [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
09:51:03.0595 0x03d4  SessionEnv - ok
09:51:03.0598 0x03d4  [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
09:51:03.0599 0x03d4  sfloppy - ok
09:51:03.0609 0x03d4  [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
09:51:03.0616 0x03d4  SharedAccess - ok
09:51:03.0629 0x03d4  [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
09:51:03.0638 0x03d4  ShellHWDetection - ok
09:51:03.0644 0x03d4  [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf        C:\WINDOWS\system32\DRIVERS\Apsx64.sys
09:51:03.0646 0x03d4  Shockprf - ok
09:51:03.0649 0x03d4  [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
09:51:03.0650 0x03d4  SiSRaid2 - ok
09:51:03.0654 0x03d4  [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
09:51:03.0655 0x03d4  SiSRaid4 - ok
09:51:03.0664 0x03d4  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
09:51:03.0668 0x03d4  SkypeUpdate - ok
09:51:03.0672 0x03d4  [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI         C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
09:51:03.0674 0x03d4  SmbDrvI - ok
09:51:03.0677 0x03d4  [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver       C:\WINDOWS\system32\DRIVERS\smi.sys
09:51:03.0677 0x03d4  SMIDriver - ok
09:51:03.0681 0x03d4  [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost         C:\WINDOWS\System32\smphost.dll
09:51:03.0682 0x03d4  smphost - ok
09:51:03.0698 0x03d4  [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter       C:\WINDOWS\system32\SmsRouterSvc.dll
09:51:03.0707 0x03d4  SmsRouter - ok
09:51:03.0713 0x03d4  [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
09:51:03.0715 0x03d4  SNMPTRAP - ok
09:51:03.0727 0x03d4  [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
09:51:03.0733 0x03d4  spaceport - ok
09:51:03.0737 0x03d4  [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
09:51:03.0739 0x03d4  SpbCx - ok
09:51:03.0744 0x03d4  [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService  C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
09:51:03.0745 0x03d4  SpeedupService - ok
09:51:03.0761 0x03d4  [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler         C:\WINDOWS\System32\spoolsv.exe
09:51:03.0772 0x03d4  Spooler - ok
09:51:03.0879 0x03d4  [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
09:51:03.0960 0x03d4  sppsvc - ok
09:51:03.0984 0x03d4  [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv         C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys
09:51:03.0987 0x2538  Object send P2P result: true
09:51:03.0997 0x03d4  SPUVCbv - ok
09:51:04.0007 0x03d4  [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
09:51:04.0012 0x03d4  srv - ok
09:51:04.0027 0x03d4  [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
09:51:04.0035 0x03d4  srv2 - ok
09:51:04.0042 0x03d4  [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
09:51:04.0045 0x03d4  srvnet - ok
09:51:04.0053 0x03d4  [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
09:51:04.0057 0x03d4  SSDPSRV - ok
09:51:04.0063 0x03d4  [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
09:51:04.0067 0x03d4  SstpSvc - ok
09:51:04.0115 0x03d4  [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
09:51:04.0150 0x03d4  StateRepository - ok
09:51:04.0159 0x03d4  [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
09:51:04.0160 0x03d4  stexstor - ok
09:51:04.0174 0x03d4  [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
09:51:04.0183 0x03d4  stisvc - ok
09:51:04.0188 0x03d4  [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
09:51:04.0191 0x03d4  storahci - ok
09:51:04.0195 0x03d4  [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
09:51:04.0196 0x03d4  storflt - ok
09:51:04.0199 0x03d4  [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
09:51:04.0201 0x03d4  stornvme - ok
09:51:04.0205 0x03d4  [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt      C:\WINDOWS\system32\drivers\storqosflt.sys
09:51:04.0206 0x03d4  storqosflt - ok
09:51:04.0207 0x0768  Object send P2P result: true
09:51:04.0207 0x0768  Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost
09:51:04.0221 0x03d4  [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc         C:\WINDOWS\system32\storsvc.dll
09:51:04.0229 0x03d4  StorSvc - ok
09:51:04.0233 0x03d4  [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs         C:\WINDOWS\system32\drivers\storufs.sys
09:51:04.0234 0x03d4  storufs - ok
09:51:04.0237 0x03d4  [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
09:51:04.0238 0x03d4  storvsc - ok
09:51:04.0243 0x03d4  [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService       C:\Program Files (x86)\Lenovo\System Update\SUService.exe
09:51:04.0243 0x03d4  SUService - ok
09:51:04.0246 0x03d4  [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc           C:\WINDOWS\system32\svsvc.dll
09:51:04.0247 0x03d4  svsvc - ok
09:51:04.0250 0x03d4  [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
09:51:04.0251 0x03d4  swenum - ok
09:51:04.0262 0x03d4  [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv           C:\WINDOWS\System32\swprv.dll
09:51:04.0269 0x03d4  swprv - ok
09:51:04.0274 0x03d4  [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc      C:\WINDOWS\System32\drivers\Synth3dVsc.sys
09:51:04.0275 0x03d4  Synth3dVsc - ok
09:51:04.0289 0x03d4  [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
09:51:04.0298 0x03d4  SynTP - ok
09:51:04.0309 0x03d4  [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
09:51:04.0312 0x03d4  SynTPEnhService - ok
09:51:04.0333 0x03d4  [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain         C:\WINDOWS\system32\sysmain.dll
09:51:04.0348 0x03d4  SysMain - ok
09:51:04.0358 0x03d4  [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
09:51:04.0364 0x03d4  SystemEventsBroker - ok
09:51:04.0369 0x03d4  [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
09:51:04.0373 0x03d4  TabletInputService - ok
09:51:04.0382 0x03d4  [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
09:51:04.0387 0x03d4  TapiSrv - ok
09:51:04.0469 0x03d4  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
09:51:04.0499 0x03d4  Tcpip - ok
09:51:04.0545 0x03d4  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6          C:\WINDOWS\system32\drivers\tcpip.sys
09:51:04.0575 0x03d4  Tcpip6 - ok
09:51:04.0585 0x03d4  [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
09:51:04.0586 0x03d4  tcpipreg - ok
09:51:04.0593 0x03d4  [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
09:51:04.0595 0x03d4  tdx - ok
09:51:04.0598 0x03d4  [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
09:51:04.0599 0x03d4  terminpt - ok
09:51:04.0618 0x03d4  [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService     C:\WINDOWS\System32\termsrv.dll
09:51:04.0633 0x03d4  TermService - ok
09:51:04.0637 0x03d4  [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes          C:\WINDOWS\system32\themeservice.dll
09:51:04.0639 0x03d4  Themes - ok
09:51:04.0647 0x03d4  [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
09:51:04.0651 0x03d4  TieringEngineService - ok
09:51:04.0662 0x03d4  [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
09:51:04.0670 0x03d4  tiledatamodelsvc - ok
09:51:04.0675 0x03d4  [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
09:51:04.0679 0x03d4  TimeBroker - ok
09:51:04.0682 0x03d4  [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN        C:\WINDOWS\system32\DRIVERS\ApsHM64.sys
09:51:04.0683 0x03d4  TPDIGIMN - ok
09:51:04.0686 0x03d4  [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC     C:\WINDOWS\system32\TPHDEXLG64.exe
09:51:04.0688 0x03d4  TPHDEXLGSVC - ok
09:51:04.0695 0x03d4  [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD        C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
09:51:04.0697 0x03d4  TPHKLOAD - ok
09:51:04.0703 0x03d4  [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM             C:\WINDOWS\System32\drivers\tpm.sys
09:51:04.0706 0x03d4  TPM - ok
09:51:04.0709 0x03d4  [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF         C:\WINDOWS\system32\drivers\Tppwr64v.sys
09:51:04.0710 0x03d4  TPPWRIF - ok
09:51:04.0714 0x03d4  [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks          C:\WINDOWS\System32\trkwks.dll
09:51:04.0717 0x03d4  TrkWks - ok
09:51:04.0721 0x03d4  [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
09:51:04.0723 0x03d4  TrustedInstaller - ok
09:51:04.0728 0x03d4  [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt        C:\WINDOWS\system32\drivers\TsUsbFlt.sys
09:51:04.0729 0x03d4  tsusbflt - ok
09:51:04.0732 0x03d4  [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
09:51:04.0733 0x03d4  TsUsbGD - ok
09:51:04.0738 0x03d4  [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel          C:\WINDOWS\System32\drivers\tunnel.sys
09:51:04.0740 0x03d4  tunnel - ok
09:51:04.0745 0x03d4  [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate    C:\WINDOWS\system32\tzautoupdate.dll
09:51:04.0747 0x03d4  tzautoupdate - ok
09:51:04.0751 0x03d4  [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
09:51:04.0752 0x03d4  uagp35 - ok
09:51:04.0756 0x03d4  [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
09:51:04.0758 0x03d4  UASPStor - ok
09:51:04.0761 0x03d4  [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
09:51:04.0762 0x03d4  UcmCx0101 - ok
09:51:04.0766 0x03d4  [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
09:51:04.0767 0x03d4  UcmUcsi - ok
09:51:04.0773 0x03d4  [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
09:51:04.0776 0x03d4  Ucx01000 - ok
09:51:04.0779 0x03d4  [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
09:51:04.0780 0x03d4  UdeCx - ok
09:51:04.0788 0x03d4  [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
09:51:04.0792 0x03d4  udfs - ok
09:51:04.0796 0x03d4  [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
09:51:04.0797 0x03d4  UEFI - ok
09:51:04.0803 0x03d4  [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
09:51:04.0807 0x03d4  Ufx01000 - ok
09:51:04.0811 0x03d4  [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
09:51:04.0812 0x03d4  UfxChipidea - ok
09:51:04.0817 0x03d4  [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
09:51:04.0820 0x03d4  ufxsynopsys - ok
09:51:04.0826 0x03d4  [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
09:51:04.0828 0x03d4  UI0Detect - ok
09:51:04.0832 0x03d4  [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
09:51:04.0833 0x03d4  uliagpkx - ok
09:51:04.0837 0x03d4  [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
09:51:04.0838 0x03d4  umbus - ok
09:51:04.0841 0x03d4  [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
09:51:04.0842 0x03d4  UmPass - ok
09:51:04.0851 0x03d4  [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
09:51:04.0856 0x03d4  UmRdpService - ok
09:51:04.0880 0x03d4  [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
09:51:04.0897 0x03d4  UnistoreSvc - ok
09:51:04.0914 0x03d4  [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost        C:\WINDOWS\System32\upnphost.dll
09:51:04.0921 0x03d4  upnphost - ok
09:51:04.0925 0x03d4  [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
09:51:04.0926 0x03d4  UrsChipidea - ok
09:51:04.0929 0x03d4  [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
09:51:04.0930 0x03d4  UrsCx01000 - ok
09:51:04.0933 0x03d4  [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
09:51:04.0934 0x03d4  UrsSynopsys - ok
09:51:04.0942 0x03d4  [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub         C:\WINDOWS\System32\drivers\usb3Hub.sys
09:51:04.0945 0x03d4  usb3Hub - ok
09:51:04.0950 0x03d4  [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
09:51:04.0952 0x03d4  usbccgp - ok
09:51:04.0957 0x03d4  [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
09:51:04.0959 0x03d4  usbcir - ok
09:51:04.0963 0x03d4  [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
09:51:04.0964 0x03d4  usbehci - ok
09:51:04.0976 0x03d4  [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
09:51:04.0982 0x03d4  usbhub - ok
09:51:04.0995 0x03d4  [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
09:51:05.0002 0x03d4  USBHUB3 - ok
09:51:05.0006 0x03d4  [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
09:51:05.0007 0x03d4  usbohci - ok
09:51:05.0009 0x03d4  [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
09:51:05.0010 0x03d4  usbprint - ok
09:51:05.0013 0x03d4  [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
09:51:05.0014 0x03d4  usbscan - ok
09:51:05.0018 0x03d4  [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
09:51:05.0019 0x03d4  usbser - ok
09:51:05.0025 0x03d4  [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
09:51:05.0026 0x03d4  USBSTOR - ok
09:51:05.0030 0x03d4  [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
09:51:05.0031 0x03d4  usbuhci - ok
09:51:05.0037 0x03d4  [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo        C:\WINDOWS\System32\Drivers\usbvideo.sys
09:51:05.0040 0x03d4  usbvideo - ok
09:51:05.0050 0x03d4  [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
09:51:05.0054 0x03d4  USBXHCI - ok
09:51:05.0084 0x03d4  [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
09:51:05.0104 0x03d4  UserDataSvc - ok
09:51:05.0129 0x03d4  [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager     C:\WINDOWS\System32\usermgr.dll
09:51:05.0143 0x03d4  UserManager - ok
09:51:05.0151 0x03d4  [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc          C:\WINDOWS\system32\usocore.dll
09:51:05.0157 0x03d4  UsoSvc - ok
09:51:05.0161 0x03d4  [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe
09:51:05.0163 0x03d4  valWBFPolicyService - ok
09:51:05.0168 0x03d4  [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc  C:\WINDOWS\system32\valWbioSyncSvc.exe
09:51:05.0170 0x03d4  valWbioSyncSvc - ok
09:51:05.0173 0x03d4  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
09:51:05.0175 0x03d4  VaultSvc - ok
09:51:05.0179 0x03d4  [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
09:51:05.0180 0x03d4  vdrvroot - ok
09:51:05.0194 0x03d4  [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds             C:\WINDOWS\System32\vds.exe
09:51:05.0204 0x03d4  vds - ok
09:51:05.0211 0x03d4  [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
09:51:05.0214 0x03d4  VerifierExt - ok
09:51:05.0227 0x03d4  [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
09:51:05.0237 0x03d4  vhdmp - ok
09:51:05.0241 0x03d4  [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
09:51:05.0242 0x03d4  vhf - ok
09:51:05.0246 0x03d4  [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
09:51:05.0248 0x03d4  vmbus - ok
09:51:05.0251 0x03d4  [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
09:51:05.0251 0x03d4  VMBusHID - ok
09:51:05.0262 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
09:51:05.0269 0x03d4  vmicguestinterface - ok
09:51:05.0280 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
09:51:05.0286 0x03d4  vmicheartbeat - ok
09:51:05.0297 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
09:51:05.0304 0x03d4  vmickvpexchange - ok
09:51:05.0313 0x2b18  Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC
09:51:05.0315 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
09:51:05.0323 0x03d4  vmicrdv - ok
09:51:05.0334 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
09:51:05.0341 0x03d4  vmicshutdown - ok
09:51:05.0353 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
09:51:05.0361 0x03d4  vmictimesync - ok
09:51:05.0371 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession   C:\WINDOWS\System32\ICSvc.dll
09:51:05.0378 0x03d4  vmicvmsession - ok
09:51:05.0389 0x03d4  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
09:51:05.0397 0x03d4  vmicvss - ok
09:51:05.0401 0x03d4  [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
09:51:05.0402 0x03d4  volmgr - ok
09:51:05.0411 0x03d4  [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
09:51:05.0415 0x03d4  volmgrx - ok
09:51:05.0425 0x03d4  [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
09:51:05.0431 0x03d4  volsnap - ok
09:51:05.0437 0x03d4  [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
09:51:05.0438 0x03d4  vpci - ok
09:51:05.0444 0x03d4  [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
09:51:05.0446 0x03d4  vsmraid - ok
09:51:05.0474 0x03d4  [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS             C:\WINDOWS\system32\vssvc.exe
09:51:05.0494 0x03d4  VSS - ok
09:51:05.0503 0x03d4  [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
09:51:05.0507 0x03d4  VSTXRAID - ok
09:51:05.0509 0x03d4  [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
09:51:05.0511 0x03d4  vwifibus - ok
09:51:05.0515 0x03d4  [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
09:51:05.0516 0x03d4  vwififlt - ok
09:51:05.0519 0x03d4  [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp         C:\WINDOWS\System32\drivers\vwifimp.sys
09:51:05.0520 0x03d4  vwifimp - ok
09:51:05.0533 0x03d4  [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time         C:\WINDOWS\system32\w32time.dll
09:51:05.0542 0x03d4  W32Time - ok
09:51:05.0547 0x03d4  [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
09:51:05.0548 0x03d4  WacomPen - ok
09:51:05.0560 0x03d4  [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService   C:\WINDOWS\system32\WalletService.dll
09:51:05.0567 0x03d4  WalletService - ok
09:51:05.0571 0x03d4  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
09:51:05.0573 0x03d4  wanarp - ok
09:51:05.0576 0x03d4  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
09:51:05.0577 0x03d4  wanarpv6 - ok
09:51:05.0605 0x03d4  [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine        C:\WINDOWS\system32\wbengine.exe
09:51:05.0626 0x03d4  wbengine - ok
09:51:05.0640 0x03d4  [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
09:51:05.0649 0x03d4  WbioSrvc - ok
09:51:05.0664 0x03d4  [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
09:51:05.0673 0x03d4  Wcmsvc - ok
09:51:05.0685 0x03d4  [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
09:51:05.0692 0x03d4  wcncsvc - ok
09:51:05.0696 0x03d4  [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
09:51:05.0698 0x03d4  WcsPlugInService - ok
09:51:05.0702 0x03d4  [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
09:51:05.0703 0x03d4  WdBoot - ok
09:51:05.0718 0x03d4  [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
09:51:05.0729 0x03d4  Wdf01000 - ok
09:51:05.0738 0x03d4  [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
09:51:05.0743 0x03d4  WdFilter - ok
09:51:05.0749 0x03d4  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
09:51:05.0753 0x03d4  WdiServiceHost - ok
09:51:05.0758 0x03d4  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
09:51:05.0760 0x03d4  WdiSystemHost - ok
09:51:05.0776 0x03d4  [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
09:51:05.0785 0x03d4  wdiwifi - ok
09:51:05.0790 0x03d4  [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
09:51:05.0792 0x03d4  WdNisDrv - ok
09:51:05.0794 0x03d4  WdNisSvc - ok
09:51:05.0801 0x03d4  [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient       C:\WINDOWS\System32\webclnt.dll
09:51:05.0805 0x03d4  WebClient - ok
09:51:05.0813 0x03d4  [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
09:51:05.0817 0x03d4  Wecsvc - ok
09:51:05.0820 0x03d4  [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
09:51:05.0823 0x03d4  WEPHOSTSVC - ok
09:51:05.0827 0x03d4  [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
09:51:05.0830 0x03d4  wercplsupport - ok
09:51:05.0835 0x03d4  [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
09:51:05.0838 0x03d4  WerSvc - ok
09:51:05.0844 0x03d4  [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
09:51:05.0846 0x03d4  WFPLWFS - ok
09:51:05.0850 0x03d4  [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
09:51:05.0853 0x03d4  WiaRpc - ok
09:51:05.0857 0x03d4  [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
09:51:05.0858 0x03d4  WIMMount - ok
09:51:05.0859 0x03d4  WinDefend - ok
09:51:05.0866 0x03d4  [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
09:51:05.0868 0x03d4  WindowsTrustedRT - ok
09:51:05.0871 0x03d4  [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
09:51:05.0871 0x03d4  WindowsTrustedRTProxy - ok
09:51:05.0888 0x03d4  [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
09:51:05.0900 0x03d4  WinHttpAutoProxySvc - ok
09:51:05.0903 0x03d4  [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
09:51:05.0904 0x03d4  WinMad - ok
09:51:05.0915 0x03d4  [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
09:51:05.0918 0x03d4  Winmgmt - ok
09:51:05.0965 0x03d4  [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
09:51:06.0000 0x03d4  WinRM - ok
09:51:06.0013 0x03d4  [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
09:51:06.0014 0x03d4  WINUSB - ok
09:51:06.0018 0x03d4  [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
09:51:06.0019 0x03d4  WinVerbs - ok
09:51:06.0076 0x03d4  [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
09:51:06.0107 0x03d4  WlanSvc - ok
09:51:06.0147 0x03d4  [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
09:51:06.0173 0x03d4  wlidsvc - ok
09:51:06.0178 0x03d4  [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
09:51:06.0179 0x03d4  WmiAcpi - ok
09:51:06.0186 0x03d4  [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
09:51:06.0190 0x03d4  wmiApSrv - ok
09:51:06.0192 0x03d4  WMPNetworkSvc - ok
09:51:06.0199 0x03d4  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
09:51:06.0202 0x03d4  Wof - ok
09:51:06.0237 0x03d4  [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
09:51:06.0262 0x03d4  workfolderssvc - ok
09:51:06.0268 0x03d4  [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
09:51:06.0269 0x03d4  wpcfltr - ok
09:51:06.0273 0x03d4  [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
09:51:06.0276 0x03d4  WPDBusEnum - ok
09:51:06.0279 0x03d4  [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
09:51:06.0279 0x03d4  WpdUpFltr - ok
09:51:06.0284 0x03d4  [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService      C:\WINDOWS\system32\WpnService.dll
09:51:06.0286 0x03d4  WpnService - ok
09:51:06.0292 0x03d4  [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001    C:\WINDOWS\system32\drivers\WPRO_41_2001.sys
09:51:06.0293 0x03d4  WPRO_41_2001 - ok
09:51:06.0296 0x03d4  [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
09:51:06.0297 0x03d4  ws2ifsl - ok
09:51:06.0303 0x03d4  [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
09:51:06.0307 0x03d4  wscsvc - ok
09:51:06.0310 0x03d4  [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice  C:\WINDOWS\System32\drivers\WSDPrint.sys
09:51:06.0311 0x03d4  WSDPrintDevice - ok
09:51:06.0314 0x03d4  [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan         C:\WINDOWS\system32\DRIVERS\WSDScan.sys
09:51:06.0314 0x03d4  WSDScan - ok
09:51:06.0317 0x03d4  WSearch - ok
09:51:06.0326 0x1bf8  Object send P2P result: true
09:51:06.0379 0x03d4  [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService       C:\WINDOWS\System32\WSService.dll
09:51:06.0424 0x03d4  WSService - ok
09:51:06.0470 0x03d4  [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
09:51:06.0500 0x03d4  wuauserv - ok
09:51:06.0509 0x03d4  [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
09:51:06.0511 0x03d4  WudfPf - ok
09:51:06.0518 0x03d4  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
09:51:06.0521 0x03d4  WUDFRd - ok
09:51:06.0526 0x03d4  [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
09:51:06.0529 0x03d4  wudfsvc - ok
09:51:06.0535 0x03d4  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
09:51:06.0539 0x03d4  WUDFWpdFs - ok
09:51:06.0545 0x03d4  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
09:51:06.0548 0x03d4  WUDFWpdMtp - ok
09:51:06.0572 0x03d4  [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
09:51:06.0588 0x03d4  WwanSvc - ok
09:51:06.0608 0x03d4  [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
09:51:06.0614 0x25dc  Object send P2P result: true
09:51:06.0614 0x25dc  Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C
09:51:06.0623 0x03d4  XblAuthManager - ok
09:51:06.0644 0x03d4  [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
09:51:06.0660 0x03d4  XblGameSave - ok
09:51:06.0667 0x03d4  [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
09:51:06.0671 0x03d4  xboxgip - ok
09:51:06.0691 0x03d4  [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
09:51:06.0707 0x03d4  XboxNetApiSvc - ok
09:51:06.0710 0x03d4  [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
09:51:06.0711 0x03d4  xinputhid - ok
09:51:06.0716 0x03d4  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k     C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
09:51:06.0718 0x03d4  ZTEusbmdm6k - ok
09:51:06.0723 0x03d4  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea      C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
09:51:06.0725 0x03d4  ZTEusbnmea - ok
09:51:06.0730 0x03d4  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k     C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
09:51:06.0732 0x03d4  ZTEusbser6k - ok
09:51:06.0733 0x03d4  ================ Scan global ===============================
09:51:06.0738 0x03d4  [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll
09:51:06.0744 0x03d4  [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
09:51:06.0752 0x03d4  [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
09:51:06.0763 0x03d4  [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
09:51:06.0771 0x03d4  [ Global ] - ok
09:51:06.0771 0x03d4  ================ Scan MBR ==================================
09:51:06.0774 0x03d4  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
09:51:06.0782 0x03d4  \Device\Harddisk2\DR7 - ok
09:51:06.0784 0x03d4  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
09:51:06.0789 0x03d4  \Device\Harddisk0\DR0 - ok
09:51:06.0804 0x03d4  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4
09:51:06.0808 0x03d4  \Device\Harddisk1\DR4 - ok
09:51:06.0811 0x03d4  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
09:51:06.0816 0x03d4  \Device\Harddisk2\DR7 - ok
09:51:06.0817 0x03d4  ================ Scan VBR ==================================
09:51:06.0818 0x03d4  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
09:51:06.0838 0x0768  Object send P2P result: true
09:51:07.0166 0x03d4  \Device\Harddisk2\DR7\Partition1 - ok
09:51:07.0176 0x03d4  [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1
09:51:07.0181 0x03d4  \Device\Harddisk0\DR0\Partition1 - ok
09:51:07.0189 0x03d4  [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2
09:51:07.0193 0x03d4  \Device\Harddisk0\DR0\Partition2 - ok
09:51:07.0202 0x03d4  [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3
09:51:07.0202 0x03d4  \Device\Harddisk0\DR0\Partition3 - ok
09:51:07.0211 0x03d4  [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4
09:51:07.0213 0x03d4  \Device\Harddisk0\DR0\Partition4 - ok
09:51:07.0224 0x03d4  [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5
09:51:07.0227 0x03d4  \Device\Harddisk0\DR0\Partition5 - ok
09:51:07.0230 0x03d4  [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6
09:51:07.0233 0x03d4  \Device\Harddisk0\DR0\Partition6 - ok
09:51:07.0237 0x03d4  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7
09:51:07.0237 0x03d4  \Device\Harddisk0\DR0\Partition7 - ok
09:51:07.0242 0x03d4  [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1
09:51:07.0242 0x03d4  \Device\Harddisk1\DR4\Partition1 - ok
09:51:07.0244 0x03d4  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
09:51:07.0247 0x03d4  \Device\Harddisk2\DR7\Partition1 - ok
09:51:07.0248 0x03d4  ================ Scan generic autorun ======================
09:51:07.0252 0x03d4  [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe
09:51:07.0253 0x03d4  Logitech Download Assistant - ok
09:51:07.0264 0x03d4  [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe
09:51:07.0269 0x03d4  IgfxTray - ok
09:51:07.0278 0x03d4  [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe
09:51:07.0287 0x03d4  TpShocks - ok
09:51:07.0306 0x03d4  [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
09:51:07.0321 0x03d4  LnvMobHotspotClient - ok
09:51:07.0336 0x03d4  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:51:07.0338 0x03d4  LMCSSTART1 - ok
09:51:07.0342 0x03d4  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:51:07.0343 0x03d4  LMCSSTART2 - ok
09:51:07.0347 0x03d4  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:51:07.0348 0x03d4  LMCSSTART3 - ok
09:51:07.0349 0x03d4  SynLenovoHelper - ok
09:51:07.0379 0x03d4  [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
09:51:07.0404 0x03d4  Integrated Camera_Monitor - ok
09:51:07.0437 0x03d4  [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe
09:51:07.0461 0x03d4  Integrated Camera_Monitor - ok
09:51:07.0467 0x03d4  [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
09:51:07.0471 0x03d4  IMSS - ok
09:51:07.0475 0x03d4  [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
09:51:07.0477 0x03d4  Avira SystrayStartTrigger - ok
09:51:07.0495 0x03d4  [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
09:51:07.0505 0x03d4  avgnt - ok
09:51:07.0510 0x03d4  [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe
09:51:07.0510 0x03d4  Avira System Speedup User Starter - ok
09:51:07.0523 0x03d4  [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
09:51:07.0532 0x03d4  SunJavaUpdateSched - ok
09:51:07.0658 0x03d4  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
09:51:07.0768 0x03d4  OneDriveSetup - ok
09:51:07.0903 0x03d4  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
09:51:07.0997 0x03d4  OneDriveSetup - ok
09:51:08.0008 0x03d4  GoogleDriveSync - ok
09:51:08.0025 0x03d4  [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe
09:51:08.0032 0x03d4  OneDrive - ok
09:51:08.0064 0x03d4  [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe
09:51:08.0086 0x03d4  Spotify Web Helper - ok
09:51:08.0090 0x03d4  Skype - ok
09:51:08.0100 0x03d4  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:51:08.0103 0x03d4  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok
09:51:08.0114 0x03d4  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:51:08.0117 0x03d4  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok
09:51:08.0122 0x2b18  Object send P2P result: true
09:51:08.0126 0x03d4  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:51:08.0129 0x03d4  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok
09:51:08.0129 0x03d4  Waiting for KSN requests completion. In queue: 333
09:51:09.0129 0x03d4  Waiting for KSN requests completion. In queue: 333
09:51:09.0263 0x25dc  Object send P2P result: true
09:51:10.0130 0x03d4  Waiting for KSN requests completion. In queue: 330
09:51:10.0220 0x0960  Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo
09:51:10.0719 0x2b18  Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
09:51:11.0131 0x03d4  Waiting for KSN requests completion. In queue: 241
09:51:12.0131 0x03d4  Waiting for KSN requests completion. In queue: 241
09:51:12.0869 0x0960  Object send P2P result: true
09:51:12.0877 0x0960  Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc
09:51:13.0132 0x03d4  Waiting for KSN requests completion. In queue: 199
09:51:13.0385 0x2b18  Object send P2P result: true
09:51:13.0386 0x2b18  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:51:14.0132 0x03d4  Waiting for KSN requests completion. In queue: 188
09:51:15.0132 0x03d4  Waiting for KSN requests completion. In queue: 188
09:51:15.0559 0x0960  Object send P2P result: true
09:51:15.0563 0x0960  Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv
09:51:16.0041 0x2b18  Object send P2P result: true
09:51:16.0041 0x2b18  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:51:16.0132 0x03d4  Waiting for KSN requests completion. In queue: 186
09:51:17.0132 0x03d4  Waiting for KSN requests completion. In queue: 186
09:51:18.0133 0x03d4  Waiting for KSN requests completion. In queue: 186
09:51:18.0231 0x0960  Object send P2P result: true
09:51:18.0238 0x0960  Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain
09:51:18.0692 0x2b18  Object send P2P result: true
09:51:18.0692 0x2b18  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:51:19.0135 0x03d4  Waiting for KSN requests completion. In queue: 162
09:51:20.0136 0x03d4  Waiting for KSN requests completion. In queue: 162
09:51:20.0894 0x0960  Object send P2P result: true
09:51:20.0914 0x0960  Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS
09:51:21.0136 0x03d4  Waiting for KSN requests completion. In queue: 77
09:51:21.0326 0x2b18  Object send P2P result: true
09:51:22.0137 0x03d4  Waiting for KSN requests completion. In queue: 76
09:51:23.0138 0x03d4  Waiting for KSN requests completion. In queue: 76
09:51:23.0562 0x0960  Object send P2P result: true
09:51:24.0167 0x03d4  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated )
09:51:24.0175 0x03d4  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
09:51:24.0182 0x03d4  Win FW state via NFP2: enabled ( trusted )
09:51:26.0896 0x03d4  ============================================================
09:51:26.0896 0x03d4  Scan finished
09:51:26.0896 0x03d4  ============================================================
09:51:26.0918 0x2b88  Detected object count: 0
09:51:26.0918 0x2b88  Actual detected object count: 0
09:52:08.0850 0x3278  ============================================================
09:52:08.0850 0x3278  Scan started
09:52:08.0850 0x3278  Mode: Manual; SigCheck; TDLFS; 
09:52:08.0850 0x3278  ============================================================
09:52:08.0850 0x3278  KSN ping started
09:52:11.0350 0x3278  KSN ping finished: true
09:52:11.0717 0x3278  ================ Scan system memory ========================
09:52:11.0717 0x3278  System memory - ok
09:52:11.0718 0x3278  ================ Scan services =============================
09:52:11.0750 0x3278  [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
09:52:11.0783 0x3278  1394ohci - ok
09:52:11.0788 0x3278  [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
09:52:11.0800 0x3278  3ware - ok
09:52:11.0815 0x3278  [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
09:52:11.0838 0x3278  ACPI - ok
09:52:11.0846 0x3278  [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
09:52:11.0860 0x3278  acpiex - ok
09:52:11.0864 0x3278  [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
09:52:11.0877 0x3278  acpipagr - ok
09:52:11.0881 0x3278  [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
09:52:11.0893 0x3278  AcpiPmi - ok
09:52:11.0897 0x3278  [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
09:52:11.0909 0x3278  acpitime - ok
09:52:11.0915 0x3278  [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
09:52:11.0924 0x3278  AdobeARMservice - ok
09:52:11.0946 0x3278  [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
09:52:11.0954 0x3278  AdobeFlashPlayerUpdateSvc - ok
09:52:11.0978 0x3278  [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
09:52:12.0009 0x3278  ADP80XX - ok
09:52:12.0025 0x3278  [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD             C:\WINDOWS\system32\drivers\afd.sys
09:52:12.0043 0x3278  AFD - ok
09:52:12.0047 0x3278  [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
09:52:12.0057 0x3278  agp440 - ok
09:52:12.0063 0x3278  [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
09:52:12.0077 0x3278  ahcache - ok
09:52:12.0081 0x3278  [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter        C:\WINDOWS\System32\AJRouter.dll
09:52:12.0090 0x3278  AJRouter - ok
09:52:12.0094 0x3278  [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG             C:\WINDOWS\System32\alg.exe
09:52:12.0105 0x3278  ALG - ok
09:52:12.0110 0x3278  [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
09:52:12.0122 0x3278  AmdK8 - ok
09:52:12.0127 0x3278  [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
09:52:12.0138 0x3278  AmdPPM - ok
09:52:12.0143 0x3278  [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
09:52:12.0151 0x3278  amdsata - ok
09:52:12.0158 0x3278  [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
09:52:12.0171 0x3278  amdsbs - ok
09:52:12.0175 0x3278  [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
09:52:12.0182 0x3278  amdxata - ok
09:52:12.0205 0x3278  [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
09:52:12.0230 0x3278  AntiVirMailService - ok
09:52:12.0231 0x3278  Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService
09:52:14.0874 0x3278  Object send P2P result: true
09:52:14.0911 0x3278  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
09:52:14.0934 0x3278  AntiVirSchedulerService - ok
09:52:14.0950 0x3278  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService  C:\Program Files (x86)\Avira\Antivirus\avguard.exe
09:52:14.0962 0x3278  AntiVirService - ok
09:52:14.0988 0x3278  [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
09:52:15.0015 0x3278  AntiVirWebService - ok
09:52:15.0021 0x3278  [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID           C:\WINDOWS\system32\drivers\appid.sys
09:52:15.0031 0x3278  AppID - ok
09:52:15.0035 0x3278  [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
09:52:15.0049 0x3278  AppIDSvc - ok
09:52:15.0054 0x3278  [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
09:52:15.0067 0x3278  Appinfo - ok
09:52:15.0073 0x3278  [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
09:52:15.0086 0x3278  AppMgmt - ok
09:52:15.0097 0x3278  [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
09:52:15.0118 0x3278  AppReadiness - ok
09:52:15.0156 0x3278  [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
09:52:15.0220 0x3278  AppXSvc - ok
09:52:15.0227 0x3278  [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
09:52:15.0236 0x3278  arcsas - ok
09:52:15.0240 0x3278  [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac        C:\WINDOWS\System32\drivers\asyncmac.sys
09:52:15.0250 0x3278  AsyncMac - ok
09:52:15.0253 0x3278  [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
09:52:15.0261 0x3278  atapi - ok
09:52:15.0268 0x3278  [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
09:52:15.0283 0x3278  AudioEndpointBuilder - ok
09:52:15.0304 0x3278  [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
09:52:15.0337 0x3278  Audiosrv - ok
09:52:15.0353 0x3278  [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
09:52:15.0367 0x3278  AVControlCenter - ok
09:52:15.0372 0x3278  [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt        C:\WINDOWS\system32\DRIVERS\avgntflt.sys
09:52:15.0379 0x3278  avgntflt - ok
09:52:15.0379 0x3278  Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt
09:52:18.0023 0x3278  Object send P2P result: true
09:52:18.0042 0x3278  [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb          C:\WINDOWS\system32\DRIVERS\avipbb.sys
09:52:18.0066 0x3278  avipbb - ok
09:52:18.0077 0x3278  [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
09:52:18.0091 0x3278  Avira.ServiceHost - ok
09:52:18.0091 0x3278  Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost
09:52:20.0750 0x3278  Object send P2P result: true
09:52:20.0765 0x3278  [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr          C:\WINDOWS\system32\DRIVERS\avkmgr.sys
09:52:20.0787 0x3278  avkmgr - ok
09:52:20.0798 0x3278  [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt        C:\WINDOWS\system32\DRIVERS\avnetflt.sys
09:52:20.0807 0x3278  avnetflt - ok
09:52:20.0814 0x3278  [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
09:52:20.0834 0x3278  AxInstSV - ok
09:52:20.0846 0x3278  [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
09:52:20.0863 0x3278  b06bdrv - ok
09:52:20.0868 0x3278  [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
09:52:20.0877 0x3278  BasicDisplay - ok
09:52:20.0881 0x3278  [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
09:52:20.0889 0x3278  BasicRender - ok
09:52:20.0893 0x3278  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\WINDOWS\System32\drivers\bcmfn.sys
09:52:20.0902 0x3278  bcmfn - ok
09:52:20.0905 0x3278  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
09:52:20.0914 0x3278  bcmfn2 - ok
09:52:20.0923 0x3278  [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
09:52:20.0940 0x3278  BDESVC - ok
09:52:20.0943 0x3278  [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
09:52:20.0954 0x3278  Beep - ok
09:52:20.0970 0x3278  [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE             C:\WINDOWS\System32\bfe.dll
09:52:20.0998 0x3278  BFE - ok
09:52:21.0021 0x3278  [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS            C:\WINDOWS\System32\qmgr.dll
09:52:21.0057 0x3278  BITS - ok
09:52:21.0069 0x3278  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
09:52:21.0080 0x3278  Bonjour Service - ok
09:52:21.0085 0x3278  [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
09:52:21.0096 0x3278  bowser - ok
09:52:21.0104 0x3278  [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
09:52:21.0113 0x3278  BrcmSetSecurity - ok
09:52:21.0126 0x3278  [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
09:52:21.0149 0x3278  BrokerInfrastructure - ok
09:52:21.0154 0x3278  [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser         C:\WINDOWS\System32\browser.dll
09:52:21.0167 0x3278  Browser - ok
09:52:21.0171 0x3278  [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
09:52:21.0180 0x3278  BthAvrcpTg - ok
09:52:21.0184 0x3278  [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
09:52:21.0195 0x3278  BthEnum - ok
09:52:21.0199 0x3278  [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
09:52:21.0209 0x3278  BthHFEnum - ok
09:52:21.0213 0x3278  [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
09:52:21.0221 0x3278  bthhfhid - ok
09:52:21.0230 0x3278  [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
09:52:21.0247 0x3278  BthHFSrv - ok
09:52:21.0255 0x3278  [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum       C:\WINDOWS\System32\drivers\BthLEEnum.sys
09:52:21.0269 0x3278  BthLEEnum - ok
09:52:21.0273 0x3278  [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
09:52:21.0283 0x3278  BTHMODEM - ok
09:52:21.0288 0x3278  [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
09:52:21.0299 0x3278  BthPan - ok
09:52:21.0317 0x3278  [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT         C:\WINDOWS\System32\drivers\BTHport.sys
09:52:21.0348 0x3278  BTHPORT - ok
09:52:21.0353 0x3278  [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv         C:\WINDOWS\system32\bthserv.dll
09:52:21.0363 0x3278  bthserv - ok
09:52:21.0367 0x3278  [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB          C:\WINDOWS\System32\drivers\BTHUSB.sys
09:52:21.0378 0x3278  BTHUSB - ok
09:52:21.0382 0x3278  [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
09:52:21.0391 0x3278  buttonconverter - ok
09:52:21.0396 0x3278  [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg          C:\WINDOWS\System32\drivers\capimg.sys
09:52:21.0409 0x3278  CapImg - ok
09:52:21.0412 0x3278  [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
09:52:21.0423 0x3278  cdfs - ok
09:52:21.0431 0x3278  [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc          C:\WINDOWS\System32\CDPSvc.dll
09:52:21.0449 0x3278  CDPSvc - ok
09:52:21.0456 0x3278  [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
09:52:21.0468 0x3278  cdrom - ok
09:52:21.0474 0x3278  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
09:52:21.0489 0x3278  CertPropSvc - ok
09:52:21.0493 0x3278  [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
09:52:21.0502 0x3278  circlass - ok
09:52:21.0511 0x3278  [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
09:52:21.0525 0x3278  CLFS - ok
09:52:21.0574 0x3278  [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc   C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
09:52:21.0626 0x3278  ClickToRunSvc - ok
09:52:21.0642 0x3278  [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC         C:\WINDOWS\System32\ClipSVC.dll
09:52:21.0662 0x3278  ClipSVC - ok
09:52:21.0669 0x3278  [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
09:52:21.0678 0x3278  CmBatt - ok
09:52:21.0691 0x3278  [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
09:52:21.0710 0x3278  CNG - ok
09:52:21.0714 0x3278  [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist     C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
09:52:21.0721 0x3278  cnghwassist - ok
09:52:21.0735 0x3278  [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus    C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys
09:52:21.0746 0x3278  CompositeBus - ok
09:52:21.0749 0x3278  COMSysApp - ok
09:52:21.0752 0x3278  [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
09:52:21.0760 0x3278  condrv - ok
09:52:21.0776 0x3278  [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
09:52:21.0797 0x3278  CoreMessagingRegistrar - ok
09:52:21.0820 0x3278  [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
09:52:21.0831 0x3278  cphs - ok
09:52:21.0836 0x3278  [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
09:52:21.0847 0x3278  CryptSvc - ok
09:52:21.0860 0x3278  [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC             C:\WINDOWS\system32\drivers\csc.sys
09:52:21.0881 0x3278  CSC - ok
09:52:21.0898 0x3278  [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService      C:\WINDOWS\System32\cscsvc.dll
09:52:21.0925 0x3278  CscService - ok
09:52:21.0929 0x3278  [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam             C:\WINDOWS\system32\drivers\dam.sys
09:52:21.0937 0x3278  dam - ok
09:52:21.0937 0x3278  Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam
09:52:24.0588 0x3278  Object send P2P result: true
09:52:24.0642 0x3278  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
09:52:24.0674 0x3278  DcomLaunch - ok
09:52:24.0680 0x3278  [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc          C:\WINDOWS\system32\dcpsvc.dll
09:52:24.0697 0x3278  DcpSvc - ok
09:52:24.0709 0x3278  [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
09:52:24.0734 0x3278  defragsvc - ok
09:52:24.0744 0x3278  [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
09:52:24.0764 0x3278  DeviceAssociationService - ok
09:52:24.0768 0x3278  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
09:52:24.0784 0x3278  DeviceInstall - ok
09:52:24.0788 0x3278  [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker  C:\WINDOWS\system32\DevQueryBroker.dll
09:52:24.0797 0x3278  DevQueryBroker - ok
09:52:24.0801 0x3278  [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
09:52:24.0813 0x3278  Dfsc - ok
09:52:24.0823 0x3278  [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
09:52:24.0840 0x3278  Dhcp - ok
09:52:24.0844 0x3278  [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
09:52:24.0853 0x3278  diagnosticshub.standardcollector.service - ok
09:52:24.0882 0x3278  [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
09:52:24.0919 0x3278  DiagTrack - ok
09:52:24.0927 0x3278  [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk            C:\WINDOWS\system32\drivers\disk.sys
09:52:24.0936 0x3278  disk - ok
09:52:24.0944 0x3278  [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
09:52:24.0962 0x3278  DmEnrollmentSvc - ok
09:52:24.0966 0x3278  [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
09:52:24.0974 0x3278  dmvsc - ok
09:52:24.0978 0x3278  [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
09:52:24.0989 0x3278  dmwappushservice - ok
09:52:24.0997 0x3278  [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
09:52:25.0013 0x3278  Dnscache - ok
09:52:25.0021 0x3278  [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
09:52:25.0038 0x3278  dot3svc - ok
09:52:25.0044 0x3278  [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS             C:\WINDOWS\system32\dps.dll
09:52:25.0058 0x3278  DPS - ok
09:52:25.0061 0x3278  [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud         C:\WINDOWS\System32\drivers\drmkaud.sys
09:52:25.0068 0x3278  drmkaud - ok
09:52:25.0074 0x3278  [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
09:52:25.0087 0x3278  DsmSvc - ok
09:52:25.0093 0x3278  [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc           C:\WINDOWS\System32\DsSvc.dll
09:52:25.0104 0x3278  DsSvc - ok
09:52:25.0141 0x3278  [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
09:52:25.0184 0x3278  DXGKrnl - ok
09:52:25.0200 0x3278  [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress      C:\WINDOWS\system32\DRIVERS\e1d64x64.sys
09:52:25.0212 0x3278  e1dexpress - ok
09:52:25.0217 0x3278  [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
09:52:25.0231 0x3278  Eaphost - ok
09:52:25.0290 0x3278  [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
09:52:25.0359 0x3278  ebdrv - ok
09:52:25.0370 0x3278  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS             C:\WINDOWS\System32\lsass.exe
09:52:25.0379 0x3278  EFS - ok
09:52:25.0383 0x3278  [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
09:52:25.0393 0x3278  EhStorClass - ok
09:52:25.0397 0x3278  [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
09:52:25.0406 0x3278  EhStorTcgDrv - ok
09:52:25.0411 0x3278  [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode    C:\WINDOWS\System32\embeddedmodesvc.dll
09:52:25.0423 0x3278  embeddedmode - ok
09:52:25.0430 0x3278  [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc       C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
09:52:25.0447 0x3278  EntAppSvc - ok
09:52:25.0450 0x3278  [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
09:52:25.0459 0x3278  ErrDev - ok
09:52:25.0471 0x3278  [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem     C:\WINDOWS\system32\es.dll
09:52:25.0491 0x3278  EventSystem - ok
09:52:25.0500 0x3278  [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
09:52:25.0516 0x3278  exfat - ok
09:52:25.0525 0x3278  [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
09:52:25.0538 0x3278  fastfat - ok
09:52:25.0552 0x3278  [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax             C:\WINDOWS\system32\fxssvc.exe
09:52:25.0577 0x3278  Fax - ok
09:52:25.0581 0x3278  [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
09:52:25.0590 0x3278  fdc - ok
09:52:25.0593 0x3278  [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
09:52:25.0605 0x3278  fdPHost - ok
09:52:25.0608 0x3278  [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
09:52:25.0621 0x3278  FDResPub - ok
09:52:25.0626 0x3278  [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
09:52:25.0641 0x3278  fhsvc - ok
09:52:25.0645 0x3278  [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt       C:\WINDOWS\system32\drivers\filecrypt.sys
09:52:25.0655 0x3278  FileCrypt - ok
09:52:25.0659 0x3278  [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
09:52:25.0668 0x3278  FileInfo - ok
09:52:25.0671 0x3278  [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
09:52:25.0683 0x3278  Filetrace - ok
09:52:25.0687 0x3278  [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
09:52:25.0696 0x3278  flpydisk - ok
09:52:25.0704 0x3278  [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
09:52:25.0718 0x3278  FltMgr - ok
09:52:25.0749 0x3278  [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache       C:\WINDOWS\system32\FntCache.dll
09:52:25.0802 0x3278  FontCache - ok
09:52:25.0808 0x3278  [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
09:52:25.0815 0x3278  FontCache3.0.0.0 - ok
09:52:25.0818 0x3278  [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
09:52:25.0826 0x3278  FsDepends - ok
09:52:25.0830 0x3278  [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
09:52:25.0837 0x3278  Fs_Rec - ok
09:52:25.0852 0x3278  [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
09:52:25.0872 0x3278  fvevol - ok
         

Alt 10.03.2016, 10:01   #9
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

TDSSKiller Report Teil 3



Code:
ATTFilter
09:52:25.0872 0x3278  fvevol - ok
09:52:25.0876 0x3278  [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
09:52:25.0884 0x3278  gagp30kx - ok
09:52:25.0887 0x3278  [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
09:52:25.0895 0x3278  gencounter - ok
09:52:25.0898 0x3278  [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn    C:\WINDOWS\System32\drivers\genericusbfn.sys
09:52:25.0907 0x3278  genericusbfn - ok
09:52:25.0913 0x3278  [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
09:52:25.0924 0x3278  GPIOClx0101 - ok
09:52:25.0950 0x3278  [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
09:52:25.0993 0x3278  gpsvc - ok
09:52:26.0001 0x3278  [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv    C:\WINDOWS\system32\drivers\gpuenergydrv.sys
09:52:26.0012 0x3278  GpuEnergyDrv - ok
09:52:26.0019 0x3278  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:52:26.0026 0x3278  gupdate - ok
09:52:26.0031 0x3278  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:52:26.0036 0x3278  gupdatem - ok
09:52:26.0041 0x3278  [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
09:52:26.0051 0x3278  HDAudBus - ok
09:52:26.0054 0x3278  [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
09:52:26.0063 0x3278  HidBatt - ok
09:52:26.0067 0x3278  [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
09:52:26.0078 0x3278  HidBth - ok
09:52:26.0081 0x3278  [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
09:52:26.0091 0x3278  hidi2c - ok
09:52:26.0095 0x3278  [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt    C:\WINDOWS\System32\drivers\hidinterrupt.sys
09:52:26.0103 0x3278  hidinterrupt - ok
09:52:26.0107 0x3278  [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
09:52:26.0117 0x3278  HidIr - ok
09:52:26.0120 0x3278  [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv         C:\WINDOWS\system32\hidserv.dll
09:52:26.0131 0x3278  hidserv - ok
09:52:26.0134 0x3278  [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
09:52:26.0143 0x3278  HidUsb - ok
09:52:26.0150 0x3278  [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
09:52:26.0166 0x3278  HomeGroupListener - ok
09:52:26.0177 0x3278  [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
09:52:26.0203 0x3278  HomeGroupProvider - ok
09:52:26.0207 0x3278  [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
09:52:26.0215 0x3278  HpSAMD - ok
09:52:26.0235 0x3278  [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
09:52:26.0263 0x3278  HTTP - ok
09:52:26.0268 0x3278  [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys
09:52:26.0278 0x3278  huawei_enumerator - ok
09:52:26.0282 0x3278  [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
09:52:26.0290 0x3278  hwpolicy - ok
09:52:26.0293 0x3278  [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
09:52:26.0301 0x3278  hyperkbd - ok
09:52:26.0306 0x3278  [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
09:52:26.0317 0x3278  i8042prt - ok
09:52:26.0320 0x3278  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\WINDOWS\System32\drivers\iai2c.sys
09:52:26.0331 0x3278  iai2c - ok
09:52:26.0331 0x3278  Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c
09:52:28.0975 0x3278  Object send P2P result: true
09:52:28.0998 0x3278  [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C    C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
09:52:29.0030 0x3278  iaLPSS2i_I2C - ok
09:52:29.0031 0x3278  Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C
09:52:31.0674 0x3278  Object send P2P result: true
09:52:31.0689 0x3278  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
09:52:31.0710 0x3278  iaLPSSi_GPIO - ok
09:52:31.0720 0x3278  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
09:52:31.0738 0x3278  iaLPSSi_I2C - ok
09:52:31.0754 0x3278  [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
09:52:31.0770 0x3278  iaStorA - ok
09:52:31.0785 0x3278  [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
09:52:31.0805 0x3278  iaStorAV - ok
09:52:31.0815 0x3278  [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
09:52:31.0830 0x3278  iaStorV - ok
09:52:31.0840 0x3278  [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus           C:\WINDOWS\System32\drivers\ibbus.sys
09:52:31.0854 0x3278  ibbus - ok
09:52:31.0859 0x3278  [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV        C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys
09:52:31.0864 0x3278  IBMPMDRV - ok
09:52:31.0869 0x3278  [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC        C:\WINDOWS\system32\ibmpmsvc.exe
09:52:31.0876 0x3278  IBMPMSVC - ok
09:52:31.0884 0x3278  [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb          C:\WINDOWS\system32\DRIVERS\ibtusb.sys
09:52:31.0894 0x3278  ibtusb - ok
09:52:31.0900 0x3278  [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc          C:\WINDOWS\System32\tetheringservice.dll
09:52:31.0914 0x3278  icssvc - ok
09:52:31.0917 0x3278  IEEtwCollectorService - ok
09:52:32.0041 0x3278  [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
09:52:32.0206 0x3278  igfx - ok
09:52:32.0228 0x3278  [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
09:52:32.0243 0x3278  igfxCUIService2.0.0.0 - ok
09:52:32.0247 0x3278  [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent        C:\WINDOWS\system32\DRIVERS\ikbevent.sys
09:52:32.0253 0x3278  ikbevent - ok
09:52:32.0273 0x3278  [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
09:52:32.0305 0x3278  IKEEXT - ok
09:52:32.0308 0x3278  [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent        C:\WINDOWS\system32\DRIVERS\imsevent.sys
09:52:32.0313 0x3278  imsevent - ok
09:52:32.0317 0x3278  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
09:52:32.0322 0x3278  intaud_WaveExtensible - ok
09:52:32.0395 0x3278  [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
09:52:32.0471 0x3278  IntcAzAudAddService - ok
09:52:32.0491 0x3278  [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
09:52:32.0504 0x3278  IntcDAud - ok
09:52:32.0521 0x3278  [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
09:52:32.0542 0x3278  Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
09:52:32.0542 0x3278  Detect skipped due to KSN trusted
09:52:32.0542 0x3278  Intel(R) Capability Licensing Service Interface - ok
09:52:32.0558 0x3278  [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
09:52:32.0577 0x3278  Intel(R) Capability Licensing Service TCP IP Interface - ok
09:52:32.0582 0x3278  [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
09:52:32.0590 0x3278  Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok
09:52:32.0594 0x3278  [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc     C:\WINDOWS\system32\drivers\IntelPcc.sys
09:52:32.0601 0x3278  IntelHSWPcc - ok
09:52:32.0604 0x3278  [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
09:52:32.0612 0x3278  intelide - ok
09:52:32.0615 0x3278  [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
09:52:32.0623 0x3278  intelpep - ok
09:52:32.0627 0x3278  [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
09:52:32.0639 0x3278  intelppm - ok
09:52:32.0642 0x3278  [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos           C:\WINDOWS\system32\drivers\ioqos.sys
09:52:32.0651 0x3278  IoQos - ok
09:52:32.0654 0x3278  [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
09:52:32.0666 0x3278  IpFilterDriver - ok
09:52:32.0684 0x3278  [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
09:52:32.0718 0x3278  iphlpsvc - ok
09:52:32.0723 0x3278  [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
09:52:32.0733 0x3278  IPMIDRV - ok
09:52:32.0738 0x3278  [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
09:52:32.0749 0x3278  IPNAT - ok
09:52:32.0752 0x3278  [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
09:52:32.0763 0x3278  IRENUM - ok
09:52:32.0766 0x3278  [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
09:52:32.0774 0x3278  isapnp - ok
09:52:32.0781 0x3278  [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
09:52:32.0793 0x3278  iScsiPrt - ok
09:52:32.0797 0x3278  [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT            C:\WINDOWS\System32\drivers\ISCTD64.sys
09:52:32.0802 0x3278  ISCT - ok
09:52:32.0808 0x3278  [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent       C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
09:52:32.0815 0x3278  ISCTAgent - ok
09:52:32.0822 0x3278  [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc          C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
09:52:32.0832 0x3278  iumsvc - ok
09:52:32.0835 0x3278  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\WINDOWS\System32\drivers\iwdbus.sys
09:52:32.0840 0x3278  iwdbus - ok
09:52:32.0846 0x3278  [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
09:52:32.0853 0x3278  jhi_service - ok
09:52:32.0858 0x3278  [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
09:52:32.0866 0x3278  kbdclass - ok
09:52:32.0869 0x3278  [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
09:52:32.0878 0x3278  kbdhid - ok
09:52:32.0881 0x3278  [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic           C:\WINDOWS\System32\drivers\kdnic.sys
09:52:32.0890 0x3278  kdnic - ok
09:52:32.0894 0x3278  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso          C:\WINDOWS\system32\lsass.exe
09:52:32.0902 0x3278  KeyIso - ok
09:52:32.0907 0x3278  [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
09:52:32.0917 0x3278  KSecDD - ok
09:52:32.0923 0x3278  [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
09:52:32.0933 0x3278  KSecPkg - ok
09:52:32.0936 0x3278  [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
09:52:32.0946 0x3278  ksthunk - ok
09:52:32.0955 0x3278  [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
09:52:32.0974 0x3278  KtmRm - ok
09:52:32.0981 0x3278  [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
09:52:32.0998 0x3278  LanmanServer - ok
09:52:33.0005 0x3278  [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
09:52:33.0021 0x3278  LanmanWorkstation - ok
09:52:33.0059 0x3278  [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
09:52:33.0095 0x3278  Lenovo Settings Service - ok
09:52:33.0113 0x3278  [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
09:52:33.0129 0x3278  Lenovo System Agent Service - ok
09:52:33.0142 0x3278  [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE  C:\Program Files\Lenovo\Communications Utility\cammute.exe
09:52:33.0153 0x3278  LENOVO.CAMMUTE - ok
09:52:33.0158 0x3278  [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE  C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
09:52:33.0164 0x3278  LENOVO.MICMUTE - ok
09:52:33.0174 0x3278  [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
09:52:33.0185 0x3278  LENOVO.TPKNRSVC - ok
09:52:33.0198 0x3278  [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM  C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
09:52:33.0212 0x3278  LENOVO.TVTVCAM - ok
09:52:33.0217 0x3278  [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
09:52:33.0223 0x3278  Lenovo.VIRTSCRLSVC - ok
09:52:33.0227 0x3278  [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc           C:\WINDOWS\System32\lfsvc.dll
09:52:33.0236 0x3278  lfsvc - ok
09:52:33.0240 0x3278  [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager  C:\WINDOWS\system32\LicenseManagerSvc.dll
09:52:33.0249 0x3278  LicenseManager - ok
09:52:33.0253 0x3278  [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio          C:\WINDOWS\system32\drivers\lltdio.sys
09:52:33.0265 0x3278  lltdio - ok
09:52:33.0273 0x3278  [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
09:52:33.0290 0x3278  lltdsvc - ok
09:52:33.0294 0x3278  [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
09:52:33.0303 0x3278  lmhosts - ok
09:52:33.0311 0x3278  [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
09:52:33.0322 0x3278  LMS - ok
09:52:33.0332 0x3278  [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc   C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
09:52:33.0344 0x3278  LnvHotSpotSvc - ok
09:52:33.0357 0x3278  [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
09:52:33.0368 0x3278  LocationTaskManager - ok
09:52:33.0377 0x3278  [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService   C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
09:52:33.0386 0x3278  LSCWinService - ok
09:52:33.0392 0x3278  [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
09:52:33.0401 0x3278  LSI_SAS - ok
09:52:33.0405 0x3278  [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i       C:\WINDOWS\system32\drivers\lsi_sas2i.sys
09:52:33.0414 0x3278  LSI_SAS2i - ok
09:52:33.0418 0x3278  [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i       C:\WINDOWS\system32\drivers\lsi_sas3i.sys
09:52:33.0428 0x3278  LSI_SAS3i - ok
09:52:33.0432 0x3278  [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
09:52:33.0440 0x3278  LSI_SSS - ok
09:52:33.0455 0x3278  [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM             C:\WINDOWS\System32\lsm.dll
09:52:33.0482 0x3278  LSM - ok
09:52:33.0487 0x3278  [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
09:52:33.0502 0x3278  luafv - ok
09:52:33.0505 0x3278  [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker      C:\WINDOWS\System32\moshost.dll
09:52:33.0516 0x3278  MapsBroker - ok
09:52:33.0518 0x3278  [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter      C:\WINDOWS\system32\drivers\massfilter.sys
09:52:33.0526 0x3278  massfilter - ok
09:52:33.0529 0x3278  [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
09:52:33.0534 0x3278  MBAMProtector - ok
09:52:33.0554 0x3278  [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
09:52:33.0577 0x3278  MBAMService - ok
09:52:33.0581 0x3278  [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
09:52:33.0586 0x3278  MBAMWebAccessControl - ok
09:52:33.0594 0x3278  [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe
09:52:33.0604 0x3278  McComponentHostService - ok
09:52:33.0607 0x3278  [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
09:52:33.0616 0x3278  megasas - ok
09:52:33.0628 0x3278  [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
09:52:33.0646 0x3278  megasr - ok
09:52:33.0650 0x3278  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
09:52:33.0656 0x3278  MEIx64 - ok
09:52:33.0660 0x3278  [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll
09:52:33.0672 0x3278  MessagingService - ok
09:52:33.0680 0x3278  [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd     C:\WINDOWS\System32\drivers\MiraDispKmd.sys
09:52:33.0688 0x3278  MiraDispKmd - ok
09:52:33.0703 0x3278  [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus        C:\WINDOWS\System32\drivers\mlx4_bus.sys
09:52:33.0723 0x3278  mlx4_bus - ok
09:52:33.0727 0x3278  [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS           C:\WINDOWS\system32\drivers\mmcss.sys
09:52:33.0736 0x3278  MMCSS - ok
09:52:33.0740 0x3278  [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem           C:\WINDOWS\system32\drivers\modem.sys
09:52:33.0750 0x3278  Modem - ok
09:52:33.0753 0x3278  [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
09:52:33.0763 0x3278  monitor - ok
09:52:33.0767 0x3278  [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
09:52:33.0776 0x3278  mouclass - ok
09:52:33.0779 0x3278  [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
09:52:33.0787 0x3278  mouhid - ok
09:52:33.0792 0x3278  [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
09:52:33.0801 0x3278  mountmgr - ok
09:52:33.0805 0x3278  [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
09:52:33.0813 0x3278  MozillaMaintenance - ok
09:52:33.0817 0x3278  [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
09:52:33.0828 0x3278  mpsdrv - ok
09:52:33.0845 0x3278  [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
09:52:33.0874 0x3278  MpsSvc - ok
09:52:33.0880 0x3278  [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
09:52:33.0892 0x3278  MRxDAV - ok
09:52:33.0903 0x3278  [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
09:52:33.0918 0x3278  mrxsmb - ok
09:52:33.0926 0x3278  [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
09:52:33.0940 0x3278  mrxsmb10 - ok
09:52:33.0947 0x3278  [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
09:52:33.0958 0x3278  mrxsmb20 - ok
09:52:33.0963 0x3278  [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge        C:\WINDOWS\system32\drivers\bridge.sys
09:52:33.0974 0x3278  MsBridge - ok
09:52:33.0979 0x3278  [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
09:52:33.0992 0x3278  MSDTC - ok
09:52:33.0992 0x3278  Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC
09:52:36.0626 0x3278  Object send P2P result: true
09:52:36.0647 0x3278  [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
09:52:36.0676 0x3278  Msfs - ok
09:52:36.0683 0x3278  [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
09:52:36.0700 0x3278  msgpiowin32 - ok
09:52:36.0702 0x3278  [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
09:52:36.0712 0x3278  mshidkmdf - ok
09:52:36.0714 0x3278  [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
09:52:36.0723 0x3278  mshidumdf - ok
09:52:36.0726 0x3278  [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
09:52:36.0733 0x3278  msisadrv - ok
09:52:36.0738 0x3278  [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
09:52:36.0750 0x3278  MSiSCSI - ok
09:52:36.0753 0x3278  msiserver - ok
09:52:36.0756 0x3278  [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV         C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys
09:52:36.0765 0x3278  MSKSSRV - ok
09:52:36.0768 0x3278  [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp          C:\WINDOWS\system32\drivers\mslldp.sys
09:52:36.0780 0x3278  MsLldp - ok
09:52:36.0783 0x3278  [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK        C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys
09:52:36.0792 0x3278  MSPCLOCK - ok
09:52:36.0795 0x3278  [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM           C:\WINDOWS\system32\DRIVERS\MSPQM.sys
09:52:36.0803 0x3278  MSPQM - ok
09:52:36.0813 0x3278  [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
09:52:36.0827 0x3278  MsRPC - ok
09:52:36.0832 0x3278  [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
09:52:36.0839 0x3278  mssmbios - ok
09:52:36.0842 0x3278  [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE           C:\WINDOWS\system32\DRIVERS\MSTEE.sys
09:52:36.0850 0x3278  MSTEE - ok
09:52:36.0853 0x3278  [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
09:52:36.0863 0x3278  MTConfig - ok
09:52:36.0867 0x3278  [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
09:52:36.0876 0x3278  Mup - ok
09:52:36.0881 0x3278  [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
09:52:36.0889 0x3278  mvumis - ok
09:52:36.0901 0x3278  [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
09:52:36.0925 0x3278  NativeWifiP - ok
09:52:36.0930 0x3278  [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
09:52:36.0943 0x3278  NcaSvc - ok
09:52:36.0951 0x3278  [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService      C:\WINDOWS\System32\ncbservice.dll
09:52:36.0969 0x3278  NcbService - ok
09:52:36.0973 0x3278  [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
09:52:36.0995 0x3278  NcdAutoSetup - ok
09:52:36.0999 0x3278  [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr          C:\WINDOWS\System32\drivers\ndfltr.sys
09:52:37.0008 0x3278  ndfltr - ok
09:52:37.0029 0x3278  [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
09:52:37.0057 0x3278  NDIS - ok
09:52:37.0062 0x3278  [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap         C:\WINDOWS\system32\drivers\ndiscap.sys
09:52:37.0071 0x3278  NdisCap - ok
09:52:37.0076 0x3278  [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform  C:\WINDOWS\system32\drivers\NdisImPlatform.sys
09:52:37.0089 0x3278  NdisImPlatform - ok
09:52:37.0092 0x3278  [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
09:52:37.0102 0x3278  NdisTapi - ok
09:52:37.0106 0x3278  [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio         C:\WINDOWS\system32\drivers\ndisuio.sys
09:52:37.0115 0x3278  Ndisuio - ok
09:52:37.0119 0x3278  [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
09:52:37.0129 0x3278  NdisVirtualBus - ok
09:52:37.0135 0x3278  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan         C:\WINDOWS\System32\drivers\ndiswan.sys
09:52:37.0149 0x3278  NdisWan - ok
09:52:37.0155 0x3278  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
09:52:37.0169 0x3278  ndiswanlegacy - ok
09:52:37.0173 0x3278  [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy         C:\WINDOWS\system32\DRIVERS\NDProxy.sys
09:52:37.0184 0x3278  ndproxy - ok
09:52:37.0189 0x3278  [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
09:52:37.0200 0x3278  Ndu - ok
09:52:37.0204 0x3278  [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS         C:\WINDOWS\system32\drivers\netbios.sys
09:52:37.0212 0x3278  NetBIOS - ok
09:52:37.0221 0x3278  [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
09:52:37.0236 0x3278  NetBT - ok
09:52:37.0240 0x3278  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon        C:\WINDOWS\system32\lsass.exe
09:52:37.0248 0x3278  Netlogon - ok
09:52:37.0255 0x3278  [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman          C:\WINDOWS\System32\netman.dll
09:52:37.0273 0x3278  Netman - ok
09:52:37.0285 0x3278  [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
09:52:37.0309 0x3278  netprofm - ok
09:52:37.0316 0x3278  [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc     C:\WINDOWS\System32\NetSetupSvc.dll
09:52:37.0329 0x3278  NetSetupSvc - ok
09:52:37.0337 0x3278  [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:52:37.0347 0x3278  NetTcpPortSharing - ok
09:52:37.0406 0x3278  [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64        C:\WINDOWS\System32\drivers\Netwbw02.sys
09:52:37.0498 0x3278  NETwNb64 - ok
09:52:37.0513 0x3278  [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc      C:\WINDOWS\System32\NgcCtnrSvc.dll
09:52:37.0529 0x3278  NgcCtnrSvc - ok
09:52:37.0543 0x3278  [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc          C:\WINDOWS\system32\ngcsvc.dll
09:52:37.0568 0x3278  NgcSvc - ok
09:52:37.0576 0x3278  [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
09:52:37.0583 0x3278  NitroDriverReadSpool9 - ok
09:52:37.0593 0x3278  [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
09:52:37.0603 0x3278  NitroUpdateService - ok
09:52:37.0613 0x3278  [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
09:52:37.0633 0x3278  NlaSvc - ok
09:52:37.0651 0x3278  [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc        C:\WINDOWS\SysWOW64\NLSSRV32.EXE
09:52:37.0657 0x3278  nlsX86cc - ok
09:52:37.0660 0x3278  [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
09:52:37.0670 0x3278  Npfs - ok
09:52:37.0673 0x3278  [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
09:52:37.0681 0x3278  npsvctrig - ok
09:52:37.0685 0x3278  [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi             C:\WINDOWS\system32\nsisvc.dll
09:52:37.0695 0x3278  nsi - ok
09:52:37.0698 0x3278  [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
09:52:37.0708 0x3278  nsiproxy - ok
09:52:37.0745 0x3278  [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS            C:\WINDOWS\system32\drivers\NTFS.sys
09:52:37.0792 0x3278  NTFS - ok
09:52:37.0801 0x3278  [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null            C:\WINDOWS\system32\drivers\Null.sys
09:52:37.0810 0x3278  Null - ok
09:52:37.0815 0x3278  [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
09:52:37.0825 0x3278  nvraid - ok
09:52:37.0830 0x3278  [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
09:52:37.0840 0x3278  nvstor - ok
09:52:37.0845 0x3278  [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
09:52:37.0854 0x3278  nv_agp - ok
09:52:37.0858 0x3278  [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI         C:\WINDOWS\SysWOW64\drivers\omnismi.sys
09:52:37.0863 0x3278  OMNISMI - ok
09:52:37.0872 0x3278  [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc      C:\WINDOWS\System32\APHostService.dll
09:52:37.0891 0x3278  OneSyncSvc - ok
09:52:37.0902 0x3278  [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
09:52:37.0911 0x3278  ose - ok
09:52:37.0920 0x3278  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
09:52:37.0937 0x3278  p2pimsvc - ok
09:52:37.0948 0x3278  [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
09:52:37.0967 0x3278  p2psvc - ok
09:52:37.0973 0x3278  [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
09:52:37.0984 0x3278  Parport - ok
09:52:37.0988 0x3278  [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
09:52:37.0997 0x3278  partmgr - ok
09:52:38.0010 0x3278  [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
09:52:38.0029 0x3278  PcaSvc - ok
09:52:38.0037 0x3278  [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci             C:\WINDOWS\system32\drivers\pci.sys
09:52:38.0050 0x3278  pci - ok
09:52:38.0053 0x3278  [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
09:52:38.0061 0x3278  pciide - ok
09:52:38.0065 0x3278  [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
09:52:38.0076 0x3278  pcmcia - ok
09:52:38.0079 0x3278  [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
09:52:38.0087 0x3278  pcw - ok
09:52:38.0091 0x3278  [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
09:52:38.0100 0x3278  pdc - ok
09:52:38.0115 0x3278  [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
09:52:38.0144 0x3278  PEAUTH - ok
09:52:38.0179 0x3278  [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc     C:\WINDOWS\system32\peerdistsvc.dll
09:52:38.0237 0x3278  PeerDistSvc - ok
09:52:38.0247 0x3278  [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i       C:\WINDOWS\system32\drivers\percsas2i.sys
09:52:38.0255 0x3278  percsas2i - ok
09:52:38.0259 0x3278  [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i       C:\WINDOWS\system32\drivers\percsas3i.sys
09:52:38.0267 0x3278  percsas3i - ok
09:52:38.0271 0x3278  [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
09:52:38.0282 0x3278  PerfHost - ok
09:52:38.0300 0x3278  [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc        C:\WINDOWS\System32\PhoneService.dll
09:52:38.0327 0x3278  PhoneSvc - ok
09:52:38.0334 0x3278  [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
09:52:38.0349 0x3278  PimIndexMaintenanceSvc - ok
09:52:38.0386 0x3278  [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla             C:\WINDOWS\system32\pla.dll
09:52:38.0434 0x3278  pla - ok
09:52:38.0443 0x3278  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
09:52:38.0458 0x3278  PlugPlay - ok
09:52:38.0461 0x3278  [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
09:52:38.0470 0x3278  PNRPAutoReg - ok
09:52:38.0480 0x3278  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
09:52:38.0497 0x3278  PNRPsvc - ok
09:52:38.0507 0x3278  [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
09:52:38.0527 0x3278  PolicyAgent - ok
09:52:38.0532 0x3278  [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power           C:\WINDOWS\system32\umpo.dll
09:52:38.0545 0x3278  Power - ok
09:52:38.0574 0x3278  [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
09:52:38.0604 0x3278  Power Manager DBC Service - ok
09:52:38.0610 0x3278  [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport    C:\WINDOWS\System32\drivers\raspptp.sys
09:52:38.0622 0x3278  PptpMiniport - ok
09:52:38.0686 0x3278  [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
09:52:38.0775 0x3278  PrintNotify - ok
09:52:38.0787 0x3278  [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor       C:\WINDOWS\System32\drivers\processr.sys
09:52:38.0798 0x3278  Processor - ok
09:52:38.0807 0x3278  [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
09:52:38.0824 0x3278  ProfSvc - ok
09:52:38.0829 0x3278  [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched          C:\WINDOWS\system32\drivers\pacer.sys
09:52:38.0839 0x3278  Psched - ok
09:52:38.0844 0x3278  [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
09:52:38.0849 0x3278  QuickControlMasterSvc - ok
09:52:38.0854 0x3278  [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
09:52:38.0861 0x3278  QuickControlService - ok
09:52:38.0868 0x3278  [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE           C:\WINDOWS\system32\qwave.dll
09:52:38.0884 0x3278  QWAVE - ok
09:52:38.0888 0x3278  [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
09:52:38.0897 0x3278  QWAVEdrv - ok
09:52:38.0900 0x3278  [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
09:52:38.0909 0x3278  RasAcd - ok
09:52:38.0913 0x3278  [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn     C:\WINDOWS\System32\drivers\AgileVpn.sys
09:52:38.0926 0x3278  RasAgileVpn - ok
09:52:38.0930 0x3278  [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
09:52:38.0941 0x3278  RasAuto - ok
09:52:38.0946 0x3278  [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp         C:\WINDOWS\System32\drivers\rasl2tp.sys
09:52:38.0956 0x3278  Rasl2tp - ok
09:52:38.0971 0x3278  [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan          C:\WINDOWS\System32\rasmans.dll
09:52:38.0998 0x3278  RasMan - ok
09:52:39.0003 0x3278  [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
09:52:39.0015 0x3278  RasPppoe - ok
09:52:39.0019 0x3278  [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp         C:\WINDOWS\System32\drivers\rassstp.sys
09:52:39.0031 0x3278  RasSstp - ok
09:52:39.0041 0x3278  [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
09:52:39.0055 0x3278  rdbss - ok
09:52:39.0060 0x3278  [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
09:52:39.0068 0x3278  rdpbus - ok
09:52:39.0074 0x3278  [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
09:52:39.0086 0x3278  RDPDR - ok
09:52:39.0092 0x3278  [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
09:52:39.0100 0x3278  RdpVideoMiniport - ok
09:52:39.0107 0x3278  [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
09:52:39.0118 0x3278  rdyboost - ok
09:52:39.0137 0x3278  [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1          C:\WINDOWS\system32\drivers\ReFSv1.sys
09:52:39.0161 0x3278  ReFSv1 - ok
09:52:39.0174 0x3278  [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
09:52:39.0197 0x3278  RemoteAccess - ok
09:52:39.0203 0x3278  [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
09:52:39.0219 0x3278  RemoteRegistry - ok
09:52:39.0240 0x3278  [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo      C:\WINDOWS\system32\RDXService.dll
09:52:39.0281 0x3278  RetailDemo - ok
09:52:39.0282 0x3278  Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo
09:52:41.0929 0x3278  Object send P2P result: true
09:52:41.0951 0x3278  [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
09:52:41.0979 0x3278  RFCOMM - ok
09:52:41.0984 0x3278  [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
09:52:42.0001 0x3278  RpcEptMapper - ok
09:52:42.0004 0x3278  [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator      C:\WINDOWS\system32\locator.exe
09:52:42.0014 0x3278  RpcLocator - ok
09:52:42.0033 0x3278  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
09:52:42.0063 0x3278  RpcSs - ok
09:52:42.0068 0x3278  [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr          C:\WINDOWS\system32\drivers\rspndr.sys
09:52:42.0080 0x3278  rspndr - ok
09:52:42.0096 0x3278  [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER          C:\WINDOWS\system32\DRIVERS\RtsPer.sys
09:52:42.0113 0x3278  RTSPER - ok
09:52:42.0116 0x3278  [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
09:52:42.0124 0x3278  s3cap - ok
09:52:42.0128 0x3278  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs           C:\WINDOWS\system32\lsass.exe
09:52:42.0137 0x3278  SamSs - ok
09:52:42.0142 0x3278  [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
09:52:42.0151 0x3278  sbp2port - ok
09:52:42.0157 0x3278  [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
09:52:42.0175 0x3278  SCardSvr - ok
09:52:42.0181 0x3278  [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
09:52:42.0198 0x3278  ScDeviceEnum - ok
09:52:42.0201 0x3278  [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
09:52:42.0213 0x3278  scfilter - ok
09:52:42.0232 0x3278  [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
09:52:42.0271 0x3278  Schedule - ok
09:52:42.0280 0x3278  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
09:52:42.0304 0x3278  SCPolicySvc - ok
09:52:42.0314 0x3278  [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
09:52:42.0329 0x3278  sdbus - ok
09:52:42.0336 0x3278  [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC          C:\WINDOWS\System32\SDRSVC.dll
09:52:42.0352 0x3278  SDRSVC - ok
09:52:42.0358 0x3278  [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
09:52:42.0370 0x3278  sdstor - ok
09:52:42.0375 0x3278  [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon        C:\WINDOWS\system32\seclogon.dll
09:52:42.0388 0x3278  seclogon - ok
09:52:42.0393 0x3278  [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS            C:\WINDOWS\System32\sens.dll
09:52:42.0416 0x3278  SENS - ok
09:52:42.0440 0x3278  [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
09:52:42.0484 0x3278  SensorDataService - ok
09:52:42.0493 0x3278  [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService   C:\WINDOWS\system32\SensorService.dll
09:52:42.0512 0x3278  SensorService - ok
09:52:42.0518 0x3278  [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
09:52:42.0531 0x3278  SensrSvc - ok
09:52:42.0535 0x3278  [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
09:52:42.0544 0x3278  SerCx - ok
09:52:42.0548 0x3278  [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
09:52:42.0559 0x3278  SerCx2 - ok
09:52:42.0562 0x3278  [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
09:52:42.0571 0x3278  Serenum - ok
09:52:42.0575 0x3278  [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial          C:\WINDOWS\System32\drivers\serial.sys
09:52:42.0586 0x3278  Serial - ok
09:52:42.0589 0x3278  [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
09:52:42.0598 0x3278  sermouse - ok
09:52:42.0610 0x3278  [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
09:52:42.0628 0x3278  SessionEnv - ok
09:52:42.0631 0x3278  [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
09:52:42.0641 0x3278  sfloppy - ok
09:52:42.0651 0x3278  [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
09:52:42.0670 0x3278  SharedAccess - ok
09:52:42.0684 0x3278  [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
09:52:42.0714 0x3278  ShellHWDetection - ok
09:52:42.0720 0x3278  [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf        C:\WINDOWS\system32\DRIVERS\Apsx64.sys
09:52:42.0726 0x3278  Shockprf - ok
09:52:42.0729 0x3278  [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
09:52:42.0738 0x3278  SiSRaid2 - ok
09:52:42.0742 0x3278  [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
09:52:42.0750 0x3278  SiSRaid4 - ok
09:52:42.0758 0x3278  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
09:52:42.0770 0x3278  SkypeUpdate - ok
09:52:42.0774 0x3278  [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI         C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
09:52:42.0780 0x3278  SmbDrvI - ok
09:52:42.0783 0x3278  [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver       C:\WINDOWS\system32\DRIVERS\smi.sys
09:52:42.0788 0x3278  SMIDriver - ok
09:52:42.0792 0x3278  [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost         C:\WINDOWS\System32\smphost.dll
09:52:42.0806 0x3278  smphost - ok
09:52:42.0819 0x3278  [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter       C:\WINDOWS\system32\SmsRouterSvc.dll
09:52:42.0843 0x3278  SmsRouter - ok
09:52:42.0850 0x3278  [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
09:52:42.0861 0x3278  SNMPTRAP - ok
09:52:42.0874 0x3278  [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
09:52:42.0891 0x3278  spaceport - ok
09:52:42.0895 0x3278  [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
09:52:42.0903 0x3278  SpbCx - ok
09:52:42.0907 0x3278  [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService  C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
09:52:42.0912 0x3278  SpeedupService - ok
09:52:42.0928 0x3278  [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler         C:\WINDOWS\System32\spoolsv.exe
09:52:42.0957 0x3278  Spooler - ok
09:52:43.0060 0x3278  [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
09:52:43.0188 0x3278  sppsvc - ok
09:52:43.0192 0x3278  Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc
09:52:45.0848 0x3278  Object send P2P result: true
09:52:45.0892 0x3278  [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv         C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys
09:52:45.0916 0x3278  SPUVCbv - ok
09:52:45.0916 0x3278  Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv
09:52:48.0562 0x3278  Object send P2P result: true
09:52:48.0578 0x3278  [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
09:52:48.0596 0x3278  srv - ok
09:52:48.0610 0x3278  [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
09:52:48.0636 0x3278  srv2 - ok
09:52:48.0643 0x3278  [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
09:52:48.0658 0x3278  srvnet - ok
09:52:48.0665 0x3278  [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
09:52:48.0684 0x3278  SSDPSRV - ok
09:52:48.0691 0x3278  [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
09:52:48.0709 0x3278  SstpSvc - ok
09:52:48.0762 0x3278  [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
09:52:48.0859 0x3278  StateRepository - ok
09:52:48.0865 0x3278  [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
09:52:48.0873 0x3278  stexstor - ok
09:52:48.0886 0x3278  [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
09:52:48.0913 0x3278  stisvc - ok
09:52:48.0918 0x3278  [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
09:52:48.0929 0x3278  storahci - ok
09:52:48.0932 0x3278  [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
09:52:48.0941 0x3278  storflt - ok
09:52:48.0945 0x3278  [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
09:52:48.0953 0x3278  stornvme - ok
09:52:48.0958 0x3278  [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt      C:\WINDOWS\system32\drivers\storqosflt.sys
09:52:48.0969 0x3278  storqosflt - ok
09:52:48.0982 0x3278  [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc         C:\WINDOWS\system32\storsvc.dll
09:52:49.0006 0x3278  StorSvc - ok
09:52:49.0010 0x3278  [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs         C:\WINDOWS\system32\drivers\storufs.sys
09:52:49.0018 0x3278  storufs - ok
09:52:49.0021 0x3278  [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
09:52:49.0029 0x3278  storvsc - ok
09:52:49.0033 0x3278  [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService       C:\Program Files (x86)\Lenovo\System Update\SUService.exe
09:52:49.0037 0x3278  SUService - ok
09:52:49.0041 0x3278  [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc           C:\WINDOWS\system32\svsvc.dll
09:52:49.0054 0x3278  svsvc - ok
09:52:49.0057 0x3278  [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
09:52:49.0065 0x3278  swenum - ok
09:52:49.0076 0x3278  [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv           C:\WINDOWS\System32\swprv.dll
09:52:49.0099 0x3278  swprv - ok
09:52:49.0104 0x3278  [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc      C:\WINDOWS\System32\drivers\Synth3dVsc.sys
09:52:49.0114 0x3278  Synth3dVsc - ok
09:52:49.0135 0x3278  [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
09:52:49.0152 0x3278  SynTP - ok
09:52:49.0164 0x3278  [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
09:52:49.0178 0x3278  SynTPEnhService - ok
09:52:49.0203 0x3278  [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain         C:\WINDOWS\system32\sysmain.dll
09:52:49.0245 0x3278  SysMain - ok
09:52:49.0246 0x3278  Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain
09:52:51.0898 0x3278  Object send P2P result: true
09:52:51.0932 0x3278  [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
09:52:51.0974 0x3278  SystemEventsBroker - ok
09:52:51.0985 0x3278  [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
09:52:52.0005 0x3278  TabletInputService - ok
09:52:52.0016 0x3278  [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
09:52:52.0037 0x3278  TapiSrv - ok
09:52:52.0079 0x3278  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
09:52:52.0137 0x3278  Tcpip - ok
09:52:52.0182 0x3278  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6          C:\WINDOWS\system32\drivers\tcpip.sys
09:52:52.0235 0x3278  Tcpip6 - ok
09:52:52.0247 0x3278  [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
09:52:52.0258 0x3278  tcpipreg - ok
09:52:52.0263 0x3278  [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
09:52:52.0272 0x3278  tdx - ok
09:52:52.0275 0x3278  [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
09:52:52.0284 0x3278  terminpt - ok
09:52:52.0304 0x3278  [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService     C:\WINDOWS\System32\termsrv.dll
09:52:52.0339 0x3278  TermService - ok
09:52:52.0344 0x3278  [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes          C:\WINDOWS\system32\themeservice.dll
09:52:52.0361 0x3278  Themes - ok
09:52:52.0369 0x3278  [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
09:52:52.0388 0x3278  TieringEngineService - ok
09:52:52.0399 0x3278  [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
09:52:52.0420 0x3278  tiledatamodelsvc - ok
09:52:52.0427 0x3278  [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
09:52:52.0446 0x3278  TimeBroker - ok
09:52:52.0449 0x3278  [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN        C:\WINDOWS\system32\DRIVERS\ApsHM64.sys
09:52:52.0454 0x3278  TPDIGIMN - ok
09:52:52.0459 0x3278  [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC     C:\WINDOWS\system32\TPHDEXLG64.exe
09:52:52.0467 0x3278  TPHDEXLGSVC - ok
09:52:52.0473 0x3278  [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD        C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
09:52:52.0481 0x3278  TPHKLOAD - ok
09:52:52.0489 0x3278  [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM             C:\WINDOWS\System32\drivers\tpm.sys
09:52:52.0504 0x3278  TPM - ok
09:52:52.0509 0x3278  [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF         C:\WINDOWS\system32\drivers\Tppwr64v.sys
09:52:52.0515 0x3278  TPPWRIF - ok
09:52:52.0521 0x3278  [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks          C:\WINDOWS\System32\trkwks.dll
09:52:52.0537 0x3278  TrkWks - ok
09:52:52.0543 0x3278  [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
09:52:52.0561 0x3278  TrustedInstaller - ok
09:52:52.0568 0x3278  [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt        C:\WINDOWS\system32\drivers\TsUsbFlt.sys
09:52:52.0581 0x3278  tsusbflt - ok
09:52:52.0584 0x3278  [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
09:52:52.0593 0x3278  TsUsbGD - ok
09:52:52.0599 0x3278  [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel          C:\WINDOWS\System32\drivers\tunnel.sys
09:52:52.0613 0x3278  tunnel - ok
09:52:52.0617 0x3278  [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate    C:\WINDOWS\system32\tzautoupdate.dll
09:52:52.0629 0x3278  tzautoupdate - ok
09:52:52.0633 0x3278  [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
09:52:52.0643 0x3278  uagp35 - ok
09:52:52.0647 0x3278  [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
09:52:52.0657 0x3278  UASPStor - ok
09:52:52.0661 0x3278  [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
09:52:52.0670 0x3278  UcmCx0101 - ok
09:52:52.0674 0x3278  [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
09:52:52.0683 0x3278  UcmUcsi - ok
09:52:52.0689 0x3278  [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
09:52:52.0700 0x3278  Ucx01000 - ok
09:52:52.0703 0x3278  [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
09:52:52.0713 0x3278  UdeCx - ok
09:52:52.0721 0x3278  [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
09:52:52.0742 0x3278  udfs - ok
09:52:52.0746 0x3278  [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
09:52:52.0754 0x3278  UEFI - ok
09:52:52.0762 0x3278  [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
09:52:52.0774 0x3278  Ufx01000 - ok
09:52:52.0779 0x3278  [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
09:52:52.0787 0x3278  UfxChipidea - ok
09:52:52.0794 0x3278  [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
09:52:52.0803 0x3278  ufxsynopsys - ok
09:52:52.0809 0x3278  [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
09:52:52.0822 0x3278  UI0Detect - ok
09:52:52.0826 0x3278  [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
09:52:52.0835 0x3278  uliagpkx - ok
09:52:52.0839 0x3278  [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
09:52:52.0850 0x3278  umbus - ok
09:52:52.0853 0x3278  [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
09:52:52.0864 0x3278  UmPass - ok
09:52:52.0872 0x3278  [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
09:52:52.0888 0x3278  UmRdpService - ok
09:52:52.0912 0x3278  [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
09:52:52.0950 0x3278  UnistoreSvc - ok
09:52:52.0980 0x3278  [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost        C:\WINDOWS\System32\upnphost.dll
09:52:53.0003 0x3278  upnphost - ok
09:52:53.0006 0x3278  [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
09:52:53.0014 0x3278  UrsChipidea - ok
09:52:53.0017 0x3278  [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
09:52:53.0026 0x3278  UrsCx01000 - ok
09:52:53.0029 0x3278  [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
09:52:53.0037 0x3278  UrsSynopsys - ok
09:52:53.0043 0x3278  [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub         C:\WINDOWS\System32\drivers\usb3Hub.sys
09:52:53.0051 0x3278  usb3Hub - ok
09:52:53.0057 0x3278  [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
09:52:53.0067 0x3278  usbccgp - ok
09:52:53.0071 0x3278  [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
09:52:53.0082 0x3278  usbcir - ok
09:52:53.0086 0x3278  [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
09:52:53.0096 0x3278  usbehci - ok
09:52:53.0107 0x3278  [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
09:52:53.0124 0x3278  usbhub - ok
09:52:53.0136 0x3278  [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
09:52:53.0157 0x3278  USBHUB3 - ok
09:52:53.0161 0x3278  [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
09:52:53.0169 0x3278  usbohci - ok
09:52:53.0173 0x3278  [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
09:52:53.0182 0x3278  usbprint - ok
09:52:53.0185 0x3278  [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
09:52:53.0195 0x3278  usbscan - ok
09:52:53.0198 0x3278  [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
09:52:53.0209 0x3278  usbser - ok
09:52:53.0213 0x3278  [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
09:52:53.0223 0x3278  USBSTOR - ok
09:52:53.0226 0x3278  [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
09:52:53.0235 0x3278  usbuhci - ok
09:52:53.0241 0x3278  [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo        C:\WINDOWS\System32\Drivers\usbvideo.sys
09:52:53.0255 0x3278  usbvideo - ok
09:52:53.0265 0x3278  [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
09:52:53.0279 0x3278  USBXHCI - ok
09:52:53.0307 0x3278  [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
09:52:53.0352 0x3278  UserDataSvc - ok
09:52:53.0380 0x3278  [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager     C:\WINDOWS\System32\usermgr.dll
09:52:53.0413 0x3278  UserManager - ok
09:52:53.0422 0x3278  [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc          C:\WINDOWS\system32\usocore.dll
09:52:53.0441 0x3278  UsoSvc - ok
09:52:53.0446 0x3278  [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe
09:52:53.0455 0x3278  valWBFPolicyService - ok
09:52:53.0459 0x3278  [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc  C:\WINDOWS\system32\valWbioSyncSvc.exe
09:52:53.0468 0x3278  valWbioSyncSvc - ok
09:52:53.0472 0x3278  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
09:52:53.0481 0x3278  VaultSvc - ok
09:52:53.0484 0x3278  [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
09:52:53.0492 0x3278  vdrvroot - ok
09:52:53.0506 0x3278  [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds             C:\WINDOWS\System32\vds.exe
09:52:53.0535 0x3278  vds - ok
09:52:53.0542 0x3278  [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
09:52:53.0553 0x3278  VerifierExt - ok
09:52:53.0568 0x3278  [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
09:52:53.0588 0x3278  vhdmp - ok
09:52:53.0592 0x3278  [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
09:52:53.0601 0x3278  vhf - ok
09:52:53.0605 0x3278  [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
09:52:53.0614 0x3278  vmbus - ok
09:52:53.0616 0x3278  [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
09:52:53.0626 0x3278  VMBusHID - ok
09:52:53.0637 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
09:52:53.0660 0x3278  vmicguestinterface - ok
09:52:53.0671 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
09:52:53.0693 0x3278  vmicheartbeat - ok
09:52:53.0704 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
09:52:53.0726 0x3278  vmickvpexchange - ok
09:52:53.0737 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
09:52:53.0760 0x3278  vmicrdv - ok
09:52:53.0770 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
09:52:53.0793 0x3278  vmicshutdown - ok
09:52:53.0803 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
09:52:53.0825 0x3278  vmictimesync - ok
09:52:53.0836 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession   C:\WINDOWS\System32\ICSvc.dll
09:52:53.0857 0x3278  vmicvmsession - ok
09:52:53.0868 0x3278  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
09:52:53.0891 0x3278  vmicvss - ok
09:52:53.0896 0x3278  [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
09:52:53.0904 0x3278  volmgr - ok
09:52:53.0913 0x3278  [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
09:52:53.0927 0x3278  volmgrx - ok
09:52:53.0937 0x3278  [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
09:52:53.0952 0x3278  volsnap - ok
09:52:53.0957 0x3278  [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
09:52:53.0966 0x3278  vpci - ok
09:52:53.0972 0x3278  [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
09:52:53.0982 0x3278  vsmraid - ok
09:52:54.0010 0x3278  [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS             C:\WINDOWS\system32\vssvc.exe
09:52:54.0064 0x3278  VSS - ok
09:52:54.0065 0x3278  Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS
09:52:56.0708 0x3278  Object send P2P result: true
09:52:56.0738 0x3278  [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
09:52:56.0763 0x3278  VSTXRAID - ok
09:52:56.0768 0x3278  [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
09:52:56.0779 0x3278  vwifibus - ok
09:52:56.0783 0x3278  [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
09:52:56.0795 0x3278  vwififlt - ok
09:52:56.0798 0x3278  [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp         C:\WINDOWS\System32\drivers\vwifimp.sys
09:52:56.0810 0x3278  vwifimp - ok
09:52:56.0823 0x3278  [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time         C:\WINDOWS\system32\w32time.dll
09:52:56.0849 0x3278  W32Time - ok
09:52:56.0853 0x3278  [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
09:52:56.0863 0x3278  WacomPen - ok
09:52:56.0874 0x3278  [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService   C:\WINDOWS\system32\WalletService.dll
09:52:56.0895 0x3278  WalletService - ok
09:52:56.0899 0x3278  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
09:52:56.0911 0x3278  wanarp - ok
09:52:56.0914 0x3278  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
09:52:56.0926 0x3278  wanarpv6 - ok
09:52:56.0956 0x3278  [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine        C:\WINDOWS\system32\wbengine.exe
09:52:57.0004 0x3278  wbengine - ok
09:52:57.0024 0x3278  [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
09:52:57.0049 0x3278  WbioSrvc - ok
09:52:57.0063 0x3278  [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
09:52:57.0087 0x3278  Wcmsvc - ok
09:52:57.0098 0x3278  [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
09:52:57.0121 0x3278  wcncsvc - ok
09:52:57.0125 0x3278  [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
09:52:57.0135 0x3278  WcsPlugInService - ok
09:52:57.0138 0x3278  [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
09:52:57.0147 0x3278  WdBoot - ok
09:52:57.0163 0x3278  [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
09:52:57.0184 0x3278  Wdf01000 - ok
09:52:57.0192 0x3278  [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
09:52:57.0205 0x3278  WdFilter - ok
09:52:57.0210 0x3278  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
09:52:57.0225 0x3278  WdiServiceHost - ok
09:52:57.0229 0x3278  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
09:52:57.0245 0x3278  WdiSystemHost - ok
09:52:57.0260 0x3278  [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
09:52:57.0287 0x3278  wdiwifi - ok
09:52:57.0293 0x3278  [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
09:52:57.0304 0x3278  WdNisDrv - ok
09:52:57.0307 0x3278  WdNisSvc - ok
09:52:57.0313 0x3278  [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient       C:\WINDOWS\System32\webclnt.dll
09:52:57.0333 0x3278  WebClient - ok
09:52:57.0339 0x3278  [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
09:52:57.0361 0x3278  Wecsvc - ok
09:52:57.0365 0x3278  [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
09:52:57.0380 0x3278  WEPHOSTSVC - ok
09:52:57.0385 0x3278  [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
09:52:57.0403 0x3278  wercplsupport - ok
09:52:57.0408 0x3278  [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
09:52:57.0427 0x3278  WerSvc - ok
09:52:57.0433 0x3278  [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
09:52:57.0444 0x3278  WFPLWFS - ok
09:52:57.0449 0x3278  [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
09:52:57.0462 0x3278  WiaRpc - ok
09:52:57.0465 0x3278  [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
09:52:57.0475 0x3278  WIMMount - ok
09:52:57.0479 0x3278  WinDefend - ok
09:52:57.0486 0x3278  [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
09:52:57.0496 0x3278  WindowsTrustedRT - ok
09:52:57.0499 0x3278  [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
09:52:57.0509 0x3278  WindowsTrustedRTProxy - ok
09:52:57.0526 0x3278  [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
09:52:57.0555 0x3278  WinHttpAutoProxySvc - ok
09:52:57.0562 0x3278  [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
09:52:57.0570 0x3278  WinMad - ok
09:52:57.0581 0x3278  [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
09:52:57.0594 0x3278  Winmgmt - ok
09:52:57.0642 0x3278  [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
09:52:57.0716 0x3278  WinRM - ok
09:52:57.0765 0x3278  [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
09:52:57.0779 0x3278  WINUSB - ok
09:52:57.0785 0x3278  [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
09:52:57.0796 0x3278  WinVerbs - ok
09:52:57.0838 0x3278  [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
09:52:57.0905 0x3278  WlanSvc - ok
09:52:57.0952 0x3278  [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
09:52:58.0015 0x3278  wlidsvc - ok
09:52:58.0025 0x3278  [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
09:52:58.0034 0x3278  WmiAcpi - ok
09:52:58.0043 0x3278  [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
09:52:58.0057 0x3278  wmiApSrv - ok
09:52:58.0061 0x3278  WMPNetworkSvc - ok
09:52:58.0067 0x3278  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
09:52:58.0079 0x3278  Wof - ok
09:52:58.0116 0x3278  [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
09:52:58.0179 0x3278  workfolderssvc - ok
09:52:58.0185 0x3278  [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
09:52:58.0194 0x3278  wpcfltr - ok
09:52:58.0199 0x3278  [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
09:52:58.0210 0x3278  WPDBusEnum - ok
09:52:58.0215 0x3278  [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
09:52:58.0223 0x3278  WpdUpFltr - ok
09:52:58.0227 0x3278  [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService      C:\WINDOWS\system32\WpnService.dll
09:52:58.0238 0x3278  WpnService - ok
09:52:58.0242 0x3278  [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001    C:\WINDOWS\system32\drivers\WPRO_41_2001.sys
09:52:58.0247 0x3278  WPRO_41_2001 - ok
09:52:58.0251 0x3278  [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
09:52:58.0262 0x3278  ws2ifsl - ok
09:52:58.0268 0x3278  [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
09:52:58.0283 0x3278  wscsvc - ok
09:52:58.0292 0x3278  [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice  C:\WINDOWS\System32\drivers\WSDPrint.sys
09:52:58.0303 0x3278  WSDPrintDevice - ok
09:52:58.0307 0x3278  [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan         C:\WINDOWS\system32\DRIVERS\WSDScan.sys
09:52:58.0316 0x3278  WSDScan - ok
09:52:58.0320 0x3278  WSearch - ok
09:52:58.0388 0x3278  [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService       C:\WINDOWS\System32\WSService.dll
09:52:58.0467 0x3278  WSService - ok
09:52:58.0516 0x3278  [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
09:52:58.0589 0x3278  wuauserv - ok
09:52:58.0597 0x3278  [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
09:52:58.0609 0x3278  WudfPf - ok
09:52:58.0615 0x3278  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
09:52:58.0632 0x3278  WUDFRd - ok
09:52:58.0636 0x3278  [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
09:52:58.0650 0x3278  wudfsvc - ok
09:52:58.0657 0x3278  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
09:52:58.0671 0x3278  WUDFWpdFs - ok
09:52:58.0678 0x3278  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
09:52:58.0693 0x3278  WUDFWpdMtp - ok
09:52:58.0718 0x3278  [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
09:52:58.0761 0x3278  WwanSvc - ok
09:52:58.0785 0x3278  [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
09:52:58.0819 0x3278  XblAuthManager - ok
09:52:58.0844 0x3278  [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
09:52:58.0884 0x3278  XblGameSave - ok
09:52:58.0893 0x3278  [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
09:52:58.0909 0x3278  xboxgip - ok
09:52:58.0930 0x3278  [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
09:52:58.0966 0x3278  XboxNetApiSvc - ok
09:52:58.0970 0x3278  [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
09:52:58.0980 0x3278  xinputhid - ok
09:52:58.0986 0x3278  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k     C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
09:52:58.0998 0x3278  ZTEusbmdm6k - ok
09:52:59.0003 0x3278  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea      C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
09:52:59.0014 0x3278  ZTEusbnmea - ok
09:52:59.0019 0x3278  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k     C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
09:52:59.0029 0x3278  ZTEusbser6k - ok
09:52:59.0030 0x3278  ================ Scan global ===============================
09:52:59.0033 0x3278  [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll
09:52:59.0040 0x3278  [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
09:52:59.0046 0x3278  [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
09:52:59.0056 0x3278  [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
09:52:59.0063 0x3278  [ Global ] - ok
09:52:59.0063 0x3278  ================ Scan MBR ==================================
09:52:59.0066 0x3278  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
09:52:59.0437 0x3278  \Device\Harddisk2\DR7 - ok
09:52:59.0446 0x3278  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
09:52:59.0490 0x3278  \Device\Harddisk0\DR0 - ok
09:52:59.0506 0x3278  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4
09:52:59.0605 0x3278  \Device\Harddisk1\DR4 - ok
09:52:59.0609 0x3278  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
09:52:59.0652 0x3278  \Device\Harddisk2\DR7 - ok
09:52:59.0653 0x3278  ================ Scan VBR ==================================
09:52:59.0655 0x3278  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
09:52:59.0658 0x3278  \Device\Harddisk2\DR7\Partition1 - ok
09:52:59.0664 0x3278  [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1
09:52:59.0667 0x3278  \Device\Harddisk0\DR0\Partition1 - ok
09:52:59.0671 0x3278  [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2
09:52:59.0673 0x3278  \Device\Harddisk0\DR0\Partition2 - ok
09:52:59.0676 0x3278  [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3
09:52:59.0676 0x3278  \Device\Harddisk0\DR0\Partition3 - ok
09:52:59.0679 0x3278  [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4
09:52:59.0681 0x3278  \Device\Harddisk0\DR0\Partition4 - ok
09:52:59.0684 0x3278  [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5
09:52:59.0686 0x3278  \Device\Harddisk0\DR0\Partition5 - ok
09:52:59.0689 0x3278  [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6
09:52:59.0692 0x3278  \Device\Harddisk0\DR0\Partition6 - ok
09:52:59.0694 0x3278  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7
09:52:59.0694 0x3278  \Device\Harddisk0\DR0\Partition7 - ok
09:52:59.0698 0x3278  [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1
09:52:59.0699 0x3278  \Device\Harddisk1\DR4\Partition1 - ok
09:52:59.0704 0x3278  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
09:52:59.0707 0x3278  \Device\Harddisk2\DR7\Partition1 - ok
09:52:59.0707 0x3278  ================ Scan generic autorun ======================
09:52:59.0713 0x3278  [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe
09:52:59.0741 0x3278  Logitech Download Assistant - ok
09:52:59.0753 0x3278  [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe
09:52:59.0781 0x3278  IgfxTray - ok
09:52:59.0829 0x3278  [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe
09:52:59.0850 0x3278  TpShocks - ok
09:52:59.0869 0x3278  [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
09:52:59.0892 0x3278  LnvMobHotspotClient - ok
09:52:59.0908 0x3278  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:52:59.0913 0x3278  LMCSSTART1 - ok
09:52:59.0917 0x3278  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:52:59.0922 0x3278  LMCSSTART2 - ok
09:52:59.0925 0x3278  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
09:52:59.0931 0x3278  LMCSSTART3 - ok
09:52:59.0931 0x3278  SynLenovoHelper - ok
09:52:59.0962 0x3278  [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
09:52:59.0992 0x3278  Integrated Camera_Monitor - ok
09:52:59.0994 0x3278  Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
09:53:02.0644 0x3278  Object send P2P result: true
09:53:02.0689 0x3278  [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe
09:53:02.0767 0x3278  Integrated Camera_Monitor - detected UnsignedFile.Multi.Generic ( 1 )
09:53:02.0767 0x3278  Detect skipped due to KSN trusted
09:53:02.0767 0x3278  Integrated Camera_Monitor - ok
09:53:02.0772 0x3278  [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
09:53:02.0781 0x3278  IMSS - ok
09:53:02.0785 0x3278  [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
09:53:02.0792 0x3278  Avira SystrayStartTrigger - ok
09:53:02.0811 0x3278  [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
09:53:02.0830 0x3278  avgnt - ok
09:53:02.0834 0x3278  [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe
09:53:02.0839 0x3278  Avira System Speedup User Starter - ok
09:53:02.0851 0x3278  [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
09:53:02.0865 0x3278  SunJavaUpdateSched - ok
09:53:02.0988 0x3278  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
09:53:03.0142 0x3278  OneDriveSetup - ok
09:53:03.0280 0x3278  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
09:53:03.0409 0x3278  OneDriveSetup - ok
09:53:03.0419 0x3278  GoogleDriveSync - ok
09:53:03.0435 0x3278  [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe
09:53:03.0450 0x3278  OneDrive - ok
09:53:03.0482 0x3278  [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe
09:53:03.0520 0x3278  Spotify Web Helper - ok
09:53:03.0526 0x3278  Skype - ok
09:53:03.0541 0x3278  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:53:03.0560 0x3278  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok
09:53:03.0560 0x3278  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:53:06.0219 0x3278  Object send P2P result: true
09:53:06.0249 0x3278  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:53:06.0287 0x3278  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok
09:53:06.0287 0x3278  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:53:08.0938 0x3278  Object send P2P result: true
09:53:08.0981 0x3278  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
09:53:09.0014 0x3278  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok
09:53:09.0014 0x3278  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
09:53:11.0663 0x3278  Object send P2P result: true
09:53:11.0668 0x3278  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated )
09:53:11.0669 0x3278  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
09:53:11.0671 0x3278  Win FW state via NFP2: enabled ( trusted )
09:53:14.0209 0x3278  ============================================================
09:53:14.0209 0x3278  Scan finished
09:53:14.0209 0x3278  ============================================================
09:53:14.0234 0x330c  Detected object count: 0
09:53:14.0234 0x330c  Actual detected object count: 0
         

Alt 10.03.2016, 10:07   #10
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.



Scan wurde nicht nach Anweisung ausgeführt. Bitte wiederholen und Log posten falls was gefunden wurde.

Jetzt bitte Suchscan durchführen:

Schritt 1

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 10.03.2016, 10:19   #11
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

TDSSKiller Report Teil 1



Code:
ATTFilter
10:15:49.0685 0x2180  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
10:15:49.0685 0x2180  UEFI system
10:15:51.0462 0x2180  ============================================================
10:15:51.0462 0x2180  Current date / time: 2016/03/10 10:15:51.0462
10:15:51.0462 0x2180  SystemInfo:
10:15:51.0466 0x2180  
10:15:51.0466 0x2180  OS Version: 10.0.10586 ServicePack: 0.0
10:15:51.0466 0x2180  Product type: Workstation
10:15:51.0466 0x2180  ComputerName: FLOSCHWAIGER-PC
10:15:51.0466 0x2180  UserName: FloSchwaiger
10:15:51.0466 0x2180  Windows directory: C:\WINDOWS
10:15:51.0466 0x2180  System windows directory: C:\WINDOWS
10:15:51.0466 0x2180  Running under WOW64
10:15:51.0466 0x2180  Processor architecture: Intel x64
10:15:51.0466 0x2180  Number of processors: 4
10:15:51.0466 0x2180  Page size: 0x1000
10:15:51.0466 0x2180  Boot type: Normal boot
10:15:51.0466 0x2180  ============================================================
10:15:52.0649 0x2180  KLMD registered as C:\WINDOWS\system32\drivers\03251342.sys
10:15:52.0713 0x2180  System UUID: {64636FEE-1AC5-D94F-2DF1-0CE00301AE99}
10:15:52.0965 0x2180  Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:15:52.0965 0x2180  Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:15:52.0968 0x2180  Drive \Device\Harddisk1\DR4 - Size: 0x1D9C00000 ( 7.40 Gb ), SectorSize: 0x200, Cylinders: 0x3C6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
10:15:52.0981 0x2180  Drive \Device\Harddisk2\DR7 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
10:15:52.0982 0x2180  ============================================================
10:15:52.0982 0x2180  \Device\Harddisk2\DR7:
10:15:52.0982 0x2180  MBR partitions:
10:15:52.0982 0x2180  \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF
10:15:52.0982 0x2180  \Device\Harddisk0\DR0:
10:15:52.0983 0x2180  GPT partitions:
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {742A5203-8965-41BE-BEA7-67D2A8E54068}, Name: , StartLBA 0x800, BlocksNum 0x1F4000
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {AA2895CE-1EC9-4C2F-9888-BC310EED052C}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {547C710A-96B7-421B-B4A1-FD90F528EDAC}, Name: Microsoft reserved partition, StartLBA 0x276800, BlocksNum 0x40000
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C58DDAF5-20AA-4E0F-89D8-5A3C019C7809}, Name: Basic data partition, StartLBA 0x2B6800, BlocksNum 0x1B2E7B14
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {1CB8E3D8-37DC-45E2-A40A-97057AFB05E5}, Name: , StartLBA 0x1B59E800, BlocksNum 0xFB000
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {01398853-C4D6-4B88-A82D-7EBCE3F12716}, Name: , StartLBA 0x1B699800, BlocksNum 0x1859800
10:15:52.0984 0x2180  \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {DFEBFDC9-B393-4D67-8744-4D13DDBF0B74}, Name: Basic data partition, StartLBA 0x1CEF3000, BlocksNum 0xE00000
10:15:52.0984 0x2180  MBR partitions:
10:15:52.0984 0x2180  \Device\Harddisk1\DR4:
10:15:52.0984 0x2180  MBR partitions:
10:15:52.0984 0x2180  \Device\Harddisk1\DR4\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xECC000
10:15:52.0984 0x2180  \Device\Harddisk2\DR7:
10:15:52.0985 0x2180  MBR partitions:
10:15:52.0985 0x2180  \Device\Harddisk2\DR7\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AF
10:15:52.0985 0x2180  ============================================================
10:15:52.0987 0x2180  C: <-> \Device\Harddisk0\DR0\Partition4
10:15:52.0989 0x2180  D: <-> \Device\Harddisk2\DR7\Partition1
10:15:52.0989 0x2180  ============================================================
10:15:52.0989 0x2180  Initialize success
10:15:52.0989 0x2180  ============================================================
10:16:47.0679 0x031c  ============================================================
10:16:47.0679 0x031c  Scan started
10:16:47.0679 0x031c  Mode: Manual; SigCheck; TDLFS; 
10:16:47.0679 0x031c  ============================================================
10:16:47.0679 0x031c  KSN ping started
10:16:50.0228 0x031c  KSN ping finished: true
10:16:51.0482 0x031c  ================ Scan system memory ========================
10:16:51.0482 0x031c  System memory - ok
10:16:51.0482 0x031c  ================ Scan services =============================
10:16:51.0514 0x031c  [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
10:16:51.0544 0x031c  1394ohci - ok
10:16:51.0551 0x031c  [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
10:16:51.0565 0x031c  3ware - ok
10:16:51.0578 0x031c  [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
10:16:51.0596 0x031c  ACPI - ok
10:16:51.0601 0x031c  [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
10:16:51.0611 0x031c  acpiex - ok
10:16:51.0614 0x031c  [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
10:16:51.0624 0x031c  acpipagr - ok
10:16:51.0627 0x031c  [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
10:16:51.0636 0x031c  AcpiPmi - ok
10:16:51.0640 0x031c  [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
10:16:51.0649 0x031c  acpitime - ok
10:16:51.0655 0x031c  [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
10:16:51.0667 0x031c  AdobeARMservice - ok
10:16:51.0687 0x031c  [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
10:16:51.0696 0x031c  AdobeFlashPlayerUpdateSvc - ok
10:16:51.0719 0x031c  [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
10:16:51.0752 0x031c  ADP80XX - ok
10:16:51.0767 0x031c  [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD             C:\WINDOWS\system32\drivers\afd.sys
10:16:51.0785 0x031c  AFD - ok
10:16:51.0789 0x031c  [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
10:16:51.0798 0x031c  agp440 - ok
10:16:51.0805 0x031c  [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
10:16:51.0819 0x031c  ahcache - ok
10:16:51.0822 0x031c  [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter        C:\WINDOWS\System32\AJRouter.dll
10:16:51.0832 0x031c  AJRouter - ok
10:16:51.0836 0x031c  [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG             C:\WINDOWS\System32\alg.exe
10:16:51.0848 0x031c  ALG - ok
10:16:51.0853 0x031c  [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
10:16:51.0864 0x031c  AmdK8 - ok
10:16:51.0868 0x031c  [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
10:16:51.0880 0x031c  AmdPPM - ok
10:16:51.0884 0x031c  [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
10:16:51.0898 0x031c  amdsata - ok
10:16:51.0904 0x031c  [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
10:16:51.0921 0x031c  amdsbs - ok
10:16:51.0924 0x031c  [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
10:16:51.0935 0x031c  amdxata - ok
10:16:51.0957 0x031c  [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
10:16:51.0981 0x031c  AntiVirMailService - ok
10:16:51.0992 0x031c  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
10:16:52.0010 0x031c  AntiVirSchedulerService - ok
10:16:52.0020 0x031c  [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService  C:\Program Files (x86)\Avira\Antivirus\avguard.exe
10:16:52.0033 0x031c  AntiVirService - ok
10:16:52.0058 0x031c  [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
10:16:52.0098 0x031c  AntiVirWebService - ok
10:16:52.0103 0x031c  [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID           C:\WINDOWS\system32\drivers\appid.sys
10:16:52.0113 0x031c  AppID - ok
10:16:52.0117 0x031c  [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
10:16:52.0130 0x031c  AppIDSvc - ok
10:16:52.0134 0x031c  [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
10:16:52.0147 0x031c  Appinfo - ok
10:16:52.0154 0x031c  [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
10:16:52.0167 0x031c  AppMgmt - ok
10:16:52.0178 0x031c  [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
10:16:52.0200 0x031c  AppReadiness - ok
10:16:52.0239 0x031c  [ F9DB9AC8AAB16E2DF60DEAB5355759B2, 9B7D2BCA8DC07E358DE34124F2AF51066DB60C778FF754FFD13DCFAE3B2E0148 ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
10:16:52.0299 0x031c  AppXSvc - ok
10:16:52.0310 0x031c  [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
10:16:52.0324 0x031c  arcsas - ok
10:16:52.0327 0x031c  [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac        C:\WINDOWS\System32\drivers\asyncmac.sys
10:16:52.0338 0x031c  AsyncMac - ok
10:16:52.0341 0x031c  [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
10:16:52.0348 0x031c  atapi - ok
10:16:52.0356 0x031c  [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
10:16:52.0371 0x031c  AudioEndpointBuilder - ok
10:16:52.0392 0x031c  [ 9610CE53A9ED0789C8B669A5F86008F7, 9EE4B3F8528B20682595DDBDB0FF9F98FD8B957EE4C335FDD4382AE30D3C2EA0 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
10:16:52.0426 0x031c  Audiosrv - ok
10:16:52.0443 0x031c  [ 70502DE460D4AE53D0BC76C3B0B98BCE, 0A4E7B1B0673B1459847DCF3EAD11154C01B613A82BC37CB75BD6B0E46020F93 ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
10:16:52.0464 0x031c  AVControlCenter - ok
10:16:52.0469 0x031c  [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt        C:\WINDOWS\system32\DRIVERS\avgntflt.sys
10:16:52.0475 0x031c  avgntflt - ok
10:16:52.0481 0x031c  [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb          C:\WINDOWS\system32\DRIVERS\avipbb.sys
10:16:52.0494 0x031c  avipbb - ok
10:16:52.0502 0x031c  [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
10:16:52.0511 0x031c  Avira.ServiceHost - ok
10:16:52.0515 0x031c  [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr          C:\WINDOWS\system32\DRIVERS\avkmgr.sys
10:16:52.0525 0x031c  avkmgr - ok
10:16:52.0529 0x031c  [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt        C:\WINDOWS\system32\DRIVERS\avnetflt.sys
10:16:52.0539 0x031c  avnetflt - ok
10:16:52.0543 0x031c  [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
10:16:52.0558 0x031c  AxInstSV - ok
10:16:52.0571 0x031c  [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
10:16:52.0593 0x031c  b06bdrv - ok
10:16:52.0597 0x031c  [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
10:16:52.0606 0x031c  BasicDisplay - ok
10:16:52.0609 0x031c  [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
10:16:52.0619 0x031c  BasicRender - ok
10:16:52.0623 0x031c  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\WINDOWS\System32\drivers\bcmfn.sys
10:16:52.0635 0x031c  bcmfn - ok
10:16:52.0637 0x031c  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
10:16:52.0649 0x031c  bcmfn2 - ok
10:16:52.0658 0x031c  [ F8F398A4AF7E0917320BC2B2CD812888, 02B9A6EA0AA750CA9B62AB09E99956C35E252A12B22C2CBFDC4E941ED5870591 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
10:16:52.0677 0x031c  BDESVC - ok
10:16:52.0679 0x031c  [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
10:16:52.0690 0x031c  Beep - ok
10:16:52.0707 0x031c  [ 8EA08141590CB9331FA773FB430E91E4, 0507499EF423CC9EE9AC18C2B5CBF9965E69481C69DC96E361C2184C53C3F404 ] BFE             C:\WINDOWS\System32\bfe.dll
10:16:52.0735 0x031c  BFE - ok
10:16:52.0757 0x031c  [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS            C:\WINDOWS\System32\qmgr.dll
10:16:52.0794 0x031c  BITS - ok
10:16:52.0805 0x031c  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
10:16:52.0822 0x031c  Bonjour Service - ok
10:16:52.0826 0x031c  [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
10:16:52.0837 0x031c  bowser - ok
10:16:52.0847 0x031c  [ 190E0C4CD4E5B2BA9C39331E548EB9E5, BC2ED68FCF2BE09CB0BD4E05DD197BF3EF6E13B5BDE5EE9574BA27EED1BA1AA1 ] BrcmSetSecurity C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
10:16:52.0862 0x031c  BrcmSetSecurity - ok
10:16:52.0875 0x031c  [ 9972A886D911234F833A265D5D641D30, E64199AB64CC60C75371D8421031DC02818C852427C4F66AD3DF7DCDF33952B1 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
10:16:52.0898 0x031c  BrokerInfrastructure - ok
10:16:52.0903 0x031c  [ DA4C9335434E71D6CC86A3CA567769CC, 9FE5EE3CC91CADBF952446E0A9A79A8834B03C8D4C47D6E9257AF64B2C17F518 ] Browser         C:\WINDOWS\System32\browser.dll
10:16:52.0915 0x031c  Browser - ok
10:16:52.0919 0x031c  [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
10:16:52.0929 0x031c  BthAvrcpTg - ok
10:16:52.0933 0x031c  [ 6903A715EABFAA39AC9AF774BEDC256A, 968ACA04D8BDD6EC25A2E1E232C4A69C23D9051C6207D0049012C5ED0B5BFC1A ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
10:16:52.0945 0x031c  BthEnum - ok
10:16:52.0948 0x031c  [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
10:16:52.0959 0x031c  BthHFEnum - ok
10:16:52.0963 0x031c  [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
10:16:52.0973 0x031c  bthhfhid - ok
10:16:52.0981 0x031c  [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
10:16:52.0998 0x031c  BthHFSrv - ok
10:16:53.0006 0x031c  [ CC6C1393B423EBFF9F6696CB9CC4CBCB, AB1861727631EDDD5B8404C51E75A67CAA42FD640E067A6ECC07EF0FCC871840 ] BthLEEnum       C:\WINDOWS\System32\drivers\BthLEEnum.sys
10:16:53.0021 0x031c  BthLEEnum - ok
10:16:53.0025 0x031c  [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
10:16:53.0035 0x031c  BTHMODEM - ok
10:16:53.0040 0x031c  [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
10:16:53.0051 0x031c  BthPan - ok
10:16:53.0070 0x031c  [ 63B4A5A80C51C5236A4A2F05FBD113B9, C43DCFBB5A2387884E94E1EE6B64F676BCBB06FC5B8B66DF3ADAD34C159EAF90 ] BTHPORT         C:\WINDOWS\System32\drivers\BTHport.sys
10:16:53.0101 0x031c  BTHPORT - ok
10:16:53.0107 0x031c  [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv         C:\WINDOWS\system32\bthserv.dll
10:16:53.0118 0x031c  bthserv - ok
10:16:53.0122 0x031c  [ F001B81D47CEBF96E60CE971FFCC45C4, EE419B557C52B0F1704B5D58E7FA9A996B33E78CC02EA4CA1D28CAB8CFD77D95 ] BTHUSB          C:\WINDOWS\System32\drivers\BTHUSB.sys
10:16:53.0133 0x031c  BTHUSB - ok
10:16:53.0136 0x031c  [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
10:16:53.0146 0x031c  buttonconverter - ok
10:16:53.0150 0x031c  [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg          C:\WINDOWS\System32\drivers\capimg.sys
10:16:53.0167 0x031c  CapImg - ok
10:16:53.0172 0x031c  [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
10:16:53.0183 0x031c  cdfs - ok
10:16:53.0191 0x031c  [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc          C:\WINDOWS\System32\CDPSvc.dll
10:16:53.0208 0x031c  CDPSvc - ok
10:16:53.0213 0x031c  [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
10:16:53.0226 0x031c  cdrom - ok
10:16:53.0233 0x031c  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
10:16:53.0249 0x031c  CertPropSvc - ok
10:16:53.0252 0x031c  [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
10:16:53.0262 0x031c  circlass - ok
10:16:53.0273 0x031c  [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
10:16:53.0286 0x031c  CLFS - ok
10:16:53.0334 0x031c  [ 1B199B0AC13F71A1972F83591BD6E25F, A35C6326B691071B42DA2E689BAA9796E1EFF47DE5D089F1942B010E2306C8C7 ] ClickToRunSvc   C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
10:16:53.0386 0x031c  ClickToRunSvc - ok
10:16:53.0406 0x031c  [ BE10905777246CA6AA74F48FE9236517, D51B13FB176D82665C91B59B3C6E229CE746E20ED1BB20DADF6184C7A29E69AF ] ClipSVC         C:\WINDOWS\System32\ClipSVC.dll
10:16:53.0425 0x031c  ClipSVC - ok
10:16:53.0432 0x031c  [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
10:16:53.0442 0x031c  CmBatt - ok
10:16:53.0455 0x031c  [ A1105260EEEE3DBD8D38FD054B22BD00, CA943B0B03527B07690CAFFD53F8ABF14FB3974DAAA1036E54815BD0DAF803D8 ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
10:16:53.0474 0x031c  CNG - ok
10:16:53.0478 0x031c  [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist     C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
10:16:53.0485 0x031c  cnghwassist - ok
10:16:53.0496 0x031c  [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus    C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys
10:16:53.0507 0x031c  CompositeBus - ok
10:16:53.0510 0x031c  COMSysApp - ok
10:16:53.0513 0x031c  [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
10:16:53.0521 0x031c  condrv - ok
10:16:53.0537 0x031c  [ DE6DF2C34718EADCFF8776E597F2104D, 35D03E95853CEAC69F674FB09C819A4698EBEDFD8AC0474F0ADF02741492401E ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
10:16:53.0559 0x031c  CoreMessagingRegistrar - ok
10:16:53.0583 0x031c  [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
10:16:53.0601 0x031c  cphs - ok
10:16:53.0607 0x031c  [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
10:16:53.0619 0x031c  CryptSvc - ok
10:16:53.0632 0x031c  [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC             C:\WINDOWS\system32\drivers\csc.sys
10:16:53.0653 0x031c  CSC - ok
10:16:53.0670 0x031c  [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService      C:\WINDOWS\System32\cscsvc.dll
10:16:53.0697 0x031c  CscService - ok
10:16:53.0701 0x031c  [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam             C:\WINDOWS\system32\drivers\dam.sys
10:16:53.0710 0x031c  dam - ok
10:16:53.0730 0x031c  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
10:16:53.0761 0x031c  DcomLaunch - ok
10:16:53.0768 0x031c  [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc          C:\WINDOWS\system32\dcpsvc.dll
10:16:53.0784 0x031c  DcpSvc - ok
10:16:53.0797 0x031c  [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
10:16:53.0822 0x031c  defragsvc - ok
10:16:53.0833 0x031c  [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
10:16:53.0852 0x031c  DeviceAssociationService - ok
10:16:53.0857 0x031c  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
10:16:53.0874 0x031c  DeviceInstall - ok
10:16:53.0877 0x031c  [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker  C:\WINDOWS\system32\DevQueryBroker.dll
10:16:53.0887 0x031c  DevQueryBroker - ok
10:16:53.0892 0x031c  [ C9478D7DB7BE5D7ACE65CB1167F07320, D5082D09EE62E34A195768040B741E22ACC9421CFF315423D77A63ABF8F5E39E ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
10:16:53.0904 0x031c  Dfsc - ok
10:16:53.0913 0x031c  [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
10:16:53.0931 0x031c  Dhcp - ok
10:16:53.0935 0x031c  [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
10:16:53.0945 0x031c  diagnosticshub.standardcollector.service - ok
10:16:53.0974 0x031c  [ 5680526A17EE1D79CA6E8462531F29B2, 82D312FBAF6BDFCC2374C76F4E85C9D71AF83E2027158A86DC439CDF23F58314 ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
10:16:54.0011 0x031c  DiagTrack - ok
10:16:54.0020 0x031c  [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk            C:\WINDOWS\system32\drivers\disk.sys
10:16:54.0029 0x031c  disk - ok
10:16:54.0037 0x031c  [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
10:16:54.0055 0x031c  DmEnrollmentSvc - ok
10:16:54.0059 0x031c  [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
10:16:54.0068 0x031c  dmvsc - ok
10:16:54.0072 0x031c  [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
10:16:54.0084 0x031c  dmwappushservice - ok
10:16:54.0091 0x031c  [ 570BB222E3AFC4407636B53F6EABFA70, D0194A128370BB0A337B61402F9EEDD6F7942ADB19BF672D0F92DA2DA563D0DD ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
10:16:54.0107 0x031c  Dnscache - ok
10:16:54.0115 0x031c  [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
10:16:54.0133 0x031c  dot3svc - ok
10:16:54.0138 0x031c  [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS             C:\WINDOWS\system32\dps.dll
10:16:54.0152 0x031c  DPS - ok
10:16:54.0156 0x031c  [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud         C:\WINDOWS\System32\drivers\drmkaud.sys
10:16:54.0164 0x031c  drmkaud - ok
10:16:54.0170 0x031c  [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
10:16:54.0184 0x031c  DsmSvc - ok
10:16:54.0189 0x031c  [ 120BECF7452992DAEBD3878BFE5B2412, A1FE8FC039835A5B59ABD789F5C1BFEA2C091A29978CE386C9880E13178930E5 ] DsSvc           C:\WINDOWS\System32\DsSvc.dll
10:16:54.0203 0x031c  DsSvc - ok
10:16:54.0240 0x031c  [ 3F8CAFC26F4E397934DB7247DF299975, 3F8E53BAC958B4045AB5E686DDA0AF0E8DB7A1097C8E2765532D60FC089895DB ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
10:16:54.0283 0x031c  DXGKrnl - ok
10:16:54.0299 0x031c  [ 4787BD0EED0E035EEA85625FB5F1F77E, B79E998CCC9D0D6D431645C87C7802AE90FE1A2522BD77EB16CDBF65F6F88507 ] e1dexpress      C:\WINDOWS\system32\DRIVERS\e1d64x64.sys
10:16:54.0317 0x031c  e1dexpress - ok
10:16:54.0322 0x031c  [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
10:16:54.0335 0x031c  Eaphost - ok
10:16:54.0395 0x031c  [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
10:16:54.0478 0x031c  ebdrv - ok
10:16:54.0488 0x031c  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS             C:\WINDOWS\System32\lsass.exe
10:16:54.0498 0x031c  EFS - ok
10:16:54.0501 0x031c  [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
10:16:54.0511 0x031c  EhStorClass - ok
10:16:54.0515 0x031c  [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
10:16:54.0525 0x031c  EhStorTcgDrv - ok
10:16:54.0532 0x031c  [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode    C:\WINDOWS\System32\embeddedmodesvc.dll
10:16:54.0545 0x031c  embeddedmode - ok
10:16:54.0553 0x031c  [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc       C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
10:16:54.0570 0x031c  EntAppSvc - ok
10:16:54.0573 0x031c  [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
10:16:54.0583 0x031c  ErrDev - ok
10:16:54.0595 0x031c  [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem     C:\WINDOWS\system32\es.dll
10:16:54.0617 0x031c  EventSystem - ok
10:16:54.0627 0x031c  [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
10:16:54.0644 0x031c  exfat - ok
10:16:54.0654 0x031c  [ 03DE0EC072C5EBD5B018CAD83F1E522A, 9D0B30A2870FBA20B95017CE3A4205F2DD53FE169A0D16715E962D83DE040FB3 ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
10:16:54.0675 0x031c  fastfat - ok
10:16:54.0691 0x031c  [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax             C:\WINDOWS\system32\fxssvc.exe
10:16:54.0717 0x031c  Fax - ok
10:16:54.0723 0x031c  [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
10:16:54.0733 0x031c  fdc - ok
10:16:54.0735 0x031c  [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
10:16:54.0750 0x031c  fdPHost - ok
10:16:54.0754 0x031c  [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
10:16:54.0768 0x031c  FDResPub - ok
10:16:54.0773 0x031c  [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
10:16:54.0783 0x2c60  Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService
10:16:54.0791 0x031c  fhsvc - ok
10:16:54.0795 0x031c  [ 8F12AB59336143B680F71B217B495AD2, A28F62F065C68CC1A7EEF0CA52F83C3284B001565D8E154BF8568DE4A525104E ] FileCrypt       C:\WINDOWS\system32\drivers\filecrypt.sys
10:16:54.0805 0x031c  FileCrypt - ok
10:16:54.0810 0x031c  [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
10:16:54.0819 0x031c  FileInfo - ok
10:16:54.0824 0x031c  [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
10:16:54.0837 0x031c  Filetrace - ok
10:16:54.0841 0x031c  [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
10:16:54.0851 0x031c  flpydisk - ok
10:16:54.0860 0x031c  [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
10:16:54.0875 0x031c  FltMgr - ok
10:16:54.0906 0x031c  [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache       C:\WINDOWS\system32\FntCache.dll
10:16:54.0958 0x031c  FontCache - ok
10:16:54.0969 0x031c  [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
10:16:54.0977 0x031c  FontCache3.0.0.0 - ok
10:16:54.0979 0x031c  [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
10:16:54.0989 0x031c  FsDepends - ok
10:16:54.0994 0x031c  [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:16:55.0002 0x031c  Fs_Rec - ok
10:16:55.0016 0x031c  [ 421497634C86EF4B8F86D0EBC076728F, E0D1449555D8849364E00AA747DBC820EF914A9F5B796E35070072FCBC532ADE ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
10:16:55.0035 0x031c  fvevol - ok
10:16:55.0041 0x031c  [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
10:16:55.0050 0x031c  gagp30kx - ok
10:16:55.0054 0x031c  [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
10:16:55.0064 0x031c  gencounter - ok
10:16:55.0067 0x031c  [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn    C:\WINDOWS\System32\drivers\genericusbfn.sys
10:16:55.0077 0x031c  genericusbfn - ok
10:16:55.0082 0x031c  [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
10:16:55.0094 0x031c  GPIOClx0101 - ok
10:16:55.0119 0x031c  [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
10:16:55.0169 0x031c  gpsvc - ok
10:16:55.0173 0x031c  [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv    C:\WINDOWS\system32\drivers\gpuenergydrv.sys
10:16:55.0186 0x031c  GpuEnergyDrv - ok
10:16:55.0194 0x031c  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:16:55.0209 0x031c  gupdate - ok
10:16:55.0215 0x031c  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:16:55.0220 0x031c  gupdatem - ok
10:16:55.0226 0x031c  [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
10:16:55.0237 0x031c  HDAudBus - ok
10:16:55.0241 0x031c  [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
10:16:55.0252 0x031c  HidBatt - ok
10:16:55.0256 0x031c  [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
10:16:55.0268 0x031c  HidBth - ok
10:16:55.0275 0x031c  [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
10:16:55.0285 0x031c  hidi2c - ok
10:16:55.0290 0x031c  [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt    C:\WINDOWS\System32\drivers\hidinterrupt.sys
10:16:55.0298 0x031c  hidinterrupt - ok
10:16:55.0302 0x031c  [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
10:16:55.0313 0x031c  HidIr - ok
10:16:55.0317 0x031c  [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv         C:\WINDOWS\system32\hidserv.dll
10:16:55.0328 0x031c  hidserv - ok
10:16:55.0332 0x031c  [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
10:16:55.0343 0x031c  HidUsb - ok
10:16:55.0351 0x031c  [ 2FEF4D90C0CAED258C93CFF72A8FFD71, 56473D90E9FE52849067D080FD88B29C0BBE76E5266657E2ABD6366B7A4E9474 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
10:16:55.0367 0x031c  HomeGroupListener - ok
10:16:55.0378 0x031c  [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
10:16:55.0399 0x031c  HomeGroupProvider - ok
10:16:55.0404 0x031c  [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
10:16:55.0417 0x031c  HpSAMD - ok
10:16:55.0439 0x031c  [ 318E816717431D3C23DC82779900C744, 363702CC8A5B5FBF5E8CE2DA5C48D52CBD6244C9398B164EFDF1A4B0FAF592E6 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
10:16:55.0470 0x031c  HTTP - ok
10:16:55.0476 0x031c  [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys
10:16:55.0492 0x031c  huawei_enumerator - ok
10:16:55.0495 0x031c  [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
10:16:55.0500 0x33f4  Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt
10:16:55.0505 0x031c  hwpolicy - ok
10:16:55.0509 0x031c  [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
10:16:55.0517 0x031c  hyperkbd - ok
10:16:55.0522 0x031c  [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
10:16:55.0533 0x031c  i8042prt - ok
10:16:55.0537 0x031c  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\WINDOWS\System32\drivers\iai2c.sys
10:16:55.0554 0x031c  iai2c - ok
10:16:55.0562 0x031c  [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C    C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
10:16:55.0580 0x031c  iaLPSS2i_I2C - ok
10:16:55.0582 0x031c  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
10:16:55.0592 0x031c  iaLPSSi_GPIO - ok
10:16:55.0596 0x031c  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
10:16:55.0612 0x031c  iaLPSSi_I2C - ok
10:16:55.0627 0x031c  [ 5A33CA10572C3087F76A5D1C34B22512, AC32BF6EAE26CBD3D9D9EAB0E3097E3582962CBC51D9F073AE244C8C7D5B5621 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
10:16:55.0643 0x031c  iaStorA - ok
10:16:55.0658 0x031c  [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
10:16:55.0685 0x031c  iaStorAV - ok
10:16:55.0695 0x031c  [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
10:16:55.0715 0x031c  iaStorV - ok
10:16:55.0726 0x031c  [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus           C:\WINDOWS\System32\drivers\ibbus.sys
10:16:55.0747 0x031c  ibbus - ok
10:16:55.0752 0x031c  [ DB706D75DADEA0ED1D939C3FC7508AF9, B3F6535422B6AFD83B9DAF661988293511BA33D8472D756232047F310E56B571 ] IBMPMDRV        C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys
10:16:55.0762 0x031c  IBMPMDRV - ok
10:16:55.0767 0x031c  [ 9E60D9F0E66480EF6D3355BD1FD20127, 3D24F4CB628E362EA2A975D8DED9CD930974E885BA70E19E7EAC069EEB7CBC53 ] IBMPMSVC        C:\WINDOWS\system32\ibmpmsvc.exe
10:16:55.0774 0x031c  IBMPMSVC - ok
10:16:55.0781 0x031c  [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34CEB5B183FCFCF86 ] ibtusb          C:\WINDOWS\system32\DRIVERS\ibtusb.sys
10:16:55.0797 0x031c  ibtusb - ok
10:16:55.0802 0x031c  [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc          C:\WINDOWS\System32\tetheringservice.dll
10:16:55.0819 0x031c  icssvc - ok
10:16:55.0822 0x031c  IEEtwCollectorService - ok
10:16:55.0951 0x031c  [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
10:16:56.0095 0x031c  igfx - ok
10:16:56.0116 0x031c  [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
10:16:56.0136 0x031c  igfxCUIService2.0.0.0 - ok
10:16:56.0140 0x031c  [ E18725531054FE222115873AC1CCB02B, 0FC4B9D5DF77E19E4732759B848B4BCBBD44A124304FA8333BB3B7BC37E15FB8 ] ikbevent        C:\WINDOWS\system32\DRIVERS\ikbevent.sys
10:16:56.0150 0x031c  ikbevent - ok
10:16:56.0170 0x031c  [ 12F8D27ED8623DDDC09A549EDADCBAC9, D3A3F0588D9CAF1027D8BC14601E2A6AB7E5924A2C23C90D38A9E14538DB02A9 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
10:16:56.0203 0x031c  IKEEXT - ok
10:16:56.0207 0x031c  [ 45060257BCA3D60204FEC29F6E6DE458, C9FB92FEEFC0DC5386B545A8E429D60B932360B9044A920F6F2EDD5CF3B7B5A0 ] imsevent        C:\WINDOWS\system32\DRIVERS\imsevent.sys
10:16:56.0215 0x031c  imsevent - ok
10:16:56.0221 0x031c  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
10:16:56.0230 0x031c  intaud_WaveExtensible - ok
10:16:56.0304 0x031c  [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
10:16:56.0388 0x031c  IntcAzAudAddService - ok
10:16:56.0407 0x031c  [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
10:16:56.0420 0x031c  IntcDAud - ok
10:16:56.0438 0x031c  [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
10:16:56.0467 0x031c  Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
10:16:56.0901 0x14a0  Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam
10:16:57.0462 0x2c60  Object send P2P result: true
10:16:58.0138 0x33f4  Object send P2P result: true
10:16:58.0138 0x33f4  Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost
10:16:58.0214 0x30ac  Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c
10:16:59.0029 0x031c  Detect skipped due to KSN trusted
10:16:59.0029 0x031c  Intel(R) Capability Licensing Service Interface - ok
10:16:59.0049 0x031c  [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
10:16:59.0079 0x031c  Intel(R) Capability Licensing Service TCP IP Interface - ok
10:16:59.0086 0x031c  [ 459031F15C42845E0AB879C420FFC979, B3CEE82AB75B9FC91C58545B2DCA97BF0C81E8193D2ECBF6D14E9DBA0C6815D2 ] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
10:16:59.0102 0x031c  Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - ok
10:16:59.0109 0x031c  [ A4DDEA1CBAB3B2A14366A8F1098C93CA, 5A1BD1DC0F5FA98503C83ED01B409286763AFA9C69B958507581E5151D90B839 ] IntelHSWPcc     C:\WINDOWS\system32\drivers\IntelPcc.sys
10:16:59.0116 0x031c  IntelHSWPcc - ok
10:16:59.0119 0x031c  [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
10:16:59.0127 0x031c  intelide - ok
10:16:59.0131 0x031c  [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
10:16:59.0140 0x031c  intelpep - ok
10:16:59.0144 0x031c  [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
10:16:59.0156 0x031c  intelppm - ok
10:16:59.0160 0x031c  [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos           C:\WINDOWS\system32\drivers\ioqos.sys
10:16:59.0169 0x031c  IoQos - ok
10:16:59.0173 0x031c  [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:16:59.0186 0x031c  IpFilterDriver - ok
10:16:59.0206 0x031c  [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
10:16:59.0242 0x031c  iphlpsvc - ok
10:16:59.0246 0x031c  [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
10:16:59.0257 0x031c  IPMIDRV - ok
10:16:59.0261 0x031c  [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
10:16:59.0273 0x031c  IPNAT - ok
10:16:59.0277 0x031c  [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
10:16:59.0287 0x031c  IRENUM - ok
10:16:59.0290 0x031c  [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
10:16:59.0298 0x031c  isapnp - ok
10:16:59.0305 0x031c  [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
10:16:59.0317 0x031c  iScsiPrt - ok
10:16:59.0321 0x031c  [ 4EE2423C38F43D37F8497A672FD10BDC, 031C5272DD28809255CF4FA8E6DE45DBFBD9A363BBD5156D0AEE0787C4297980 ] ISCT            C:\WINDOWS\System32\drivers\ISCTD64.sys
10:16:59.0329 0x031c  ISCT - ok
10:16:59.0336 0x031c  [ 6E5767C95F746B6834F412CDBDCFEC48, DE4FC70159D0A4C0B15DE8F69554F8FF6EED9C6480C0CBE33BF74FCB0BD975FE ] ISCTAgent       C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
10:16:59.0349 0x031c  ISCTAgent - ok
10:16:59.0356 0x031c  [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc          C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
10:16:59.0372 0x031c  iumsvc - ok
10:16:59.0375 0x031c  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\WINDOWS\System32\drivers\iwdbus.sys
10:16:59.0384 0x031c  iwdbus - ok
10:16:59.0389 0x031c  [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
10:16:59.0403 0x031c  jhi_service - ok
10:16:59.0407 0x031c  [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
10:16:59.0415 0x031c  kbdclass - ok
10:16:59.0418 0x031c  [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
10:16:59.0428 0x031c  kbdhid - ok
10:16:59.0431 0x031c  [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic           C:\WINDOWS\System32\drivers\kdnic.sys
10:16:59.0440 0x031c  kdnic - ok
10:16:59.0444 0x031c  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso          C:\WINDOWS\system32\lsass.exe
10:16:59.0452 0x031c  KeyIso - ok
10:16:59.0457 0x031c  [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
10:16:59.0467 0x031c  KSecDD - ok
10:16:59.0472 0x031c  [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
10:16:59.0482 0x031c  KSecPkg - ok
10:16:59.0484 0x031c  [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
10:16:59.0494 0x031c  ksthunk - ok
10:16:59.0503 0x031c  [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
10:16:59.0523 0x031c  KtmRm - ok
10:16:59.0530 0x031c  [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
10:16:59.0533 0x14a0  Object send P2P result: true
10:16:59.0548 0x031c  LanmanServer - ok
10:16:59.0555 0x031c  [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
10:16:59.0572 0x031c  LanmanWorkstation - ok
10:16:59.0610 0x031c  [ F1E4002541DC3FF409CFF8DA653E3504, C82B3146EB2E3F6CC590AFA9935A557261A6C9DBBC8F562FD0E037DDCB6167A3 ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
10:16:59.0654 0x031c  Lenovo Settings Service - ok
10:16:59.0673 0x031c  [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
10:16:59.0696 0x031c  Lenovo System Agent Service - ok
10:16:59.0708 0x031c  [ AB678C691773820CD73AEAFAF5A21AD8, E099D424D79C759A4AF64B60D88906153165AC7E01461EB48FEC0B8559776B00 ] LENOVO.CAMMUTE  C:\Program Files\Lenovo\Communications Utility\cammute.exe
10:16:59.0725 0x031c  LENOVO.CAMMUTE - ok
10:16:59.0730 0x031c  [ 521ADEA6D54C519EA3BE8202FF3EC36D, E29C88321C0F8B136951B617C206B36AE25D68EF08E723DE99064EF9BE87A3F9 ] LENOVO.MICMUTE  C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
10:16:59.0742 0x031c  LENOVO.MICMUTE - ok
10:16:59.0752 0x031c  [ 5A89EDA6545ADCB5767EB49AF0728A00, 15F28A58F1D4A013BA3763BE2578A1D22B44E664111E974F8D761ED6F15BDD32 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
10:16:59.0767 0x031c  LENOVO.TPKNRSVC - ok
10:16:59.0780 0x031c  [ 4E9E21789513A45FD51C7316528F4775, ADAA91DA2FBA0816A225499FD41A0A9DD92EB52EDA1C56D0A659B96F50102BAA ] LENOVO.TVTVCAM  C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
10:16:59.0802 0x031c  LENOVO.TVTVCAM - ok
10:16:59.0807 0x031c  [ D253E6009F05776F505F96866CCF460F, 8A39E77B4FC780BB9C6C8A892603248D87ED70255BF9BED0218BE2420B5E8C53 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
10:16:59.0819 0x031c  Lenovo.VIRTSCRLSVC - ok
10:16:59.0822 0x031c  [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc           C:\WINDOWS\System32\lfsvc.dll
10:16:59.0832 0x031c  lfsvc - ok
10:16:59.0835 0x031c  [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager  C:\WINDOWS\system32\LicenseManagerSvc.dll
10:16:59.0845 0x031c  LicenseManager - ok
10:16:59.0848 0x031c  [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio          C:\WINDOWS\system32\drivers\lltdio.sys
10:16:59.0860 0x031c  lltdio - ok
10:16:59.0868 0x031c  [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
10:16:59.0886 0x031c  lltdsvc - ok
10:16:59.0890 0x031c  [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
10:16:59.0899 0x031c  lmhosts - ok
10:16:59.0908 0x031c  [ AD69C6F5A68550ECB8F1CC388620D9A1, 7D1A27CBC6C92EE589EACA2DC189CE42F5A5C5FB3586755DD2F569FC23116BFB ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
10:16:59.0919 0x031c  LMS - ok
10:16:59.0930 0x031c  [ D415BA9B73E9B2270320FE53563CA5D8, D22888D548ED05C34463255EB381E223D3AF2D425CFFB0B8847C7B338A8925C9 ] LnvHotSpotSvc   C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
10:16:59.0946 0x031c  LnvHotSpotSvc - ok
10:16:59.0957 0x031c  [ 2C756AFCEA605EED6731589F34EF2D84, F92A3071FF989DF0A7ECE96410E72F8180DE646E38A94582517F8E59D289F419 ] LocationTaskManager C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
10:16:59.0974 0x031c  LocationTaskManager - ok
10:16:59.0984 0x031c  [ 37DFBF0D4E4657C6AD1200A3A1C6DDF1, 6F45469D7E8803419774DBD3A05187574B15358545C8781BE3314F475C56061A ] LSCWinService   C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
10:16:59.0994 0x031c  LSCWinService - ok
10:16:59.0998 0x031c  [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
10:17:00.0013 0x031c  LSI_SAS - ok
10:17:00.0017 0x031c  [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i       C:\WINDOWS\system32\drivers\lsi_sas2i.sys
10:17:00.0031 0x031c  LSI_SAS2i - ok
10:17:00.0035 0x031c  [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i       C:\WINDOWS\system32\drivers\lsi_sas3i.sys
10:17:00.0049 0x031c  LSI_SAS3i - ok
10:17:00.0052 0x031c  [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
10:17:00.0066 0x031c  LSI_SSS - ok
10:17:00.0080 0x031c  [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM             C:\WINDOWS\System32\lsm.dll
10:17:00.0107 0x031c  LSM - ok
10:17:00.0112 0x031c  [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
10:17:00.0127 0x031c  luafv - ok
10:17:00.0130 0x031c  [ 88B38A7435DFA9B7E8F94F5D5FE999D2, FF4EBB6CE013D0EA62FEDA5FBBD1205D9A6F684E701F40039A95A4EF4145DC16 ] MapsBroker      C:\WINDOWS\System32\moshost.dll
10:17:00.0142 0x031c  MapsBroker - ok
10:17:00.0144 0x031c  [ 830708A5CC0A19196C1DC205BED5A3A8, 551B69372AB7A49586498BFDF1AE83311D837B25558C7CEF04118010A99F5A1D ] massfilter      C:\WINDOWS\system32\drivers\massfilter.sys
10:17:00.0155 0x031c  massfilter - ok
10:17:00.0158 0x031c  [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
10:17:00.0166 0x031c  MBAMProtector - ok
10:17:00.0280 0x031c  [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
10:17:00.0311 0x031c  MBAMService - ok
10:17:00.0318 0x031c  [ 08DECFCB9BA97786165A69AB1015BC30, EDC8C8447B57BD412E2DEBCA9B5B1B58C19D40105DC7CE9520DE214081696B05 ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
10:17:00.0327 0x031c  MBAMWebAccessControl - ok
10:17:00.0336 0x031c  [ 9F09E022819AE3D5E06E3864B0C36821, DDE841E662FC2954FBBF1E3189E25D4C8F41001B3D9A6FBE35BC1999C629B7D2 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe
10:17:00.0345 0x031c  McComponentHostService - ok
10:17:00.0349 0x031c  [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
10:17:00.0361 0x031c  megasas - ok
10:17:00.0374 0x031c  [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
10:17:00.0397 0x031c  megasr - ok
10:17:00.0403 0x031c  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
10:17:00.0413 0x031c  MEIx64 - ok
10:17:00.0416 0x031c  [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll
10:17:00.0428 0x031c  MessagingService - ok
10:17:00.0437 0x031c  [ 140484CBC1DAA0B012F3B8616369A8C6, BEDFE7370B58CF4D91FC3D8BFB9C18F65A5286001E4001E040B374D95352F9A2 ] MiraDispKmd     C:\WINDOWS\System32\drivers\MiraDispKmd.sys
10:17:00.0446 0x031c  MiraDispKmd - ok
10:17:00.0461 0x031c  [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus        C:\WINDOWS\System32\drivers\mlx4_bus.sys
10:17:00.0488 0x031c  mlx4_bus - ok
10:17:00.0492 0x031c  [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS           C:\WINDOWS\system32\drivers\mmcss.sys
10:17:00.0501 0x031c  MMCSS - ok
10:17:00.0504 0x031c  [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem           C:\WINDOWS\system32\drivers\modem.sys
10:17:00.0516 0x031c  Modem - ok
10:17:00.0519 0x031c  [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
10:17:00.0528 0x031c  monitor - ok
10:17:00.0532 0x031c  [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
10:17:00.0540 0x031c  mouclass - ok
10:17:00.0543 0x031c  [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
10:17:00.0553 0x031c  mouhid - ok
10:17:00.0557 0x031c  [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
10:17:00.0566 0x031c  mountmgr - ok
10:17:00.0571 0x031c  [ E96D4881189E3241A80EE54EFAB02E00, 13DC3174A2A5CF20C63C3EA5E2FF4060B15B40B02CCB29B41EC7A53047B69D9F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
10:17:00.0585 0x031c  MozillaMaintenance - ok
10:17:00.0590 0x031c  [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
10:17:00.0600 0x031c  mpsdrv - ok
10:17:00.0617 0x031c  [ 3B3906F069DB567C3D092F195FEA5F87, 1EAD704AD8E81D083FE3D458B529F8ECBE99569EFD20F7B520339F054E2F6515 ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
10:17:00.0647 0x031c  MpsSvc - ok
10:17:00.0652 0x031c  [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
10:17:00.0665 0x031c  MRxDAV - ok
10:17:00.0676 0x031c  [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:17:00.0691 0x031c  mrxsmb - ok
10:17:00.0699 0x031c  [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
10:17:00.0715 0x031c  mrxsmb10 - ok
10:17:00.0721 0x031c  [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
10:17:00.0732 0x031c  mrxsmb20 - ok
10:17:00.0737 0x031c  [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge        C:\WINDOWS\system32\drivers\bridge.sys
10:17:00.0749 0x031c  MsBridge - ok
10:17:00.0754 0x031c  [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
10:17:00.0767 0x031c  MSDTC - ok
10:17:00.0772 0x031c  [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
10:17:00.0774 0x33f4  Object send P2P result: true
10:17:00.0781 0x031c  Msfs - ok
10:17:00.0785 0x031c  [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
10:17:00.0794 0x031c  msgpiowin32 - ok
10:17:00.0797 0x031c  [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
10:17:00.0805 0x031c  mshidkmdf - ok
10:17:00.0808 0x031c  [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
10:17:00.0817 0x031c  mshidumdf - ok
10:17:00.0819 0x031c  [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
10:17:00.0827 0x031c  msisadrv - ok
10:17:00.0832 0x031c  [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
10:17:00.0844 0x30ac  Object send P2P result: true
10:17:00.0844 0x30ac  Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C
10:17:00.0846 0x031c  MSiSCSI - ok
10:17:00.0849 0x031c  msiserver - ok
10:17:00.0852 0x031c  [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV         C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys
10:17:00.0861 0x031c  MSKSSRV - ok
10:17:00.0864 0x031c  [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp          C:\WINDOWS\system32\drivers\mslldp.sys
10:17:00.0876 0x031c  MsLldp - ok
10:17:00.0879 0x031c  [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK        C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys
10:17:00.0889 0x031c  MSPCLOCK - ok
10:17:00.0892 0x031c  [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM           C:\WINDOWS\system32\DRIVERS\MSPQM.sys
10:17:00.0900 0x031c  MSPQM - ok
10:17:00.0908 0x031c  [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
10:17:00.0922 0x031c  MsRPC - ok
10:17:00.0926 0x031c  [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
10:17:00.0934 0x031c  mssmbios - ok
10:17:00.0936 0x031c  [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE           C:\WINDOWS\system32\DRIVERS\MSTEE.sys
10:17:00.0946 0x031c  MSTEE - ok
10:17:00.0948 0x031c  [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
10:17:00.0957 0x031c  MTConfig - ok
10:17:00.0962 0x031c  [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
10:17:00.0971 0x031c  Mup - ok
         
Code:
ATTFilter
10:17:00.0976 0x031c  [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
10:17:00.0990 0x031c  mvumis - ok
10:17:01.0003 0x031c  [ 536A0806CE2061A2157E65D4D8ABF30C, F9893F66505E3F748365CD4625B34357531804BDFE33E57285C0106C03F7916C ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
10:17:01.0025 0x031c  NativeWifiP - ok
10:17:01.0031 0x031c  [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
10:17:01.0043 0x031c  NcaSvc - ok
10:17:01.0052 0x031c  [ 7467BD76D6ED5981E6C3DBFEB50F0F4D, 237E1C2E15D5F3BAC49B09E1CD0EAE56A6998AE1FF560A4F7A7EFFEB46884798 ] NcbService      C:\WINDOWS\System32\ncbservice.dll
10:17:01.0068 0x031c  NcbService - ok
10:17:01.0073 0x031c  [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
10:17:01.0090 0x031c  NcdAutoSetup - ok
10:17:01.0094 0x031c  [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr          C:\WINDOWS\System32\drivers\ndfltr.sys
10:17:01.0106 0x031c  ndfltr - ok
10:17:01.0129 0x031c  [ AFAECF904F1C343EBD50F91BC8D0DBE8, FABAE70F62895708415B8E176A880D2D20D46D9A14C3D41D371B905CE4D64BA0 ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
10:17:01.0157 0x031c  NDIS - ok
10:17:01.0162 0x031c  [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap         C:\WINDOWS\system32\drivers\ndiscap.sys
10:17:01.0170 0x031c  NdisCap - ok
10:17:01.0175 0x031c  [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform  C:\WINDOWS\system32\drivers\NdisImPlatform.sys
10:17:01.0187 0x031c  NdisImPlatform - ok
10:17:01.0190 0x031c  [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:17:01.0201 0x031c  NdisTapi - ok
10:17:01.0204 0x031c  [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio         C:\WINDOWS\system32\drivers\ndisuio.sys
10:17:01.0213 0x031c  Ndisuio - ok
10:17:01.0216 0x031c  [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
10:17:01.0227 0x031c  NdisVirtualBus - ok
10:17:01.0233 0x031c  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan         C:\WINDOWS\System32\drivers\ndiswan.sys
10:17:01.0247 0x031c  NdisWan - ok
10:17:01.0253 0x031c  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:17:01.0268 0x031c  ndiswanlegacy - ok
10:17:01.0271 0x031c  [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy         C:\WINDOWS\system32\DRIVERS\NDProxy.sys
10:17:01.0282 0x031c  ndproxy - ok
10:17:01.0288 0x031c  [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
10:17:01.0299 0x031c  Ndu - ok
10:17:01.0302 0x031c  [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS         C:\WINDOWS\system32\drivers\netbios.sys
10:17:01.0311 0x031c  NetBIOS - ok
10:17:01.0318 0x031c  [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
10:17:01.0333 0x031c  NetBT - ok
10:17:01.0336 0x031c  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon        C:\WINDOWS\system32\lsass.exe
10:17:01.0346 0x031c  Netlogon - ok
10:17:01.0355 0x031c  [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman          C:\WINDOWS\System32\netman.dll
10:17:01.0372 0x031c  Netman - ok
10:17:01.0383 0x031c  [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
10:17:01.0408 0x031c  netprofm - ok
10:17:01.0414 0x031c  [ 3D58D04A9269CE21B61960544A05573D, 250DB1266EE37BAAA9F9E51434879DB4564A8550FCAB28BAB3308772882850CF ] NetSetupSvc     C:\WINDOWS\System32\NetSetupSvc.dll
10:17:01.0428 0x031c  NetSetupSvc - ok
10:17:01.0436 0x031c  [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:17:01.0445 0x031c  NetTcpPortSharing - ok
10:17:01.0504 0x031c  [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3B7D36B28BBA2ED ] NETwNb64        C:\WINDOWS\System32\drivers\Netwbw02.sys
10:17:01.0604 0x031c  NETwNb64 - ok
10:17:01.0620 0x031c  [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc      C:\WINDOWS\System32\NgcCtnrSvc.dll
10:17:01.0635 0x031c  NgcCtnrSvc - ok
10:17:01.0650 0x031c  [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc          C:\WINDOWS\system32\ngcsvc.dll
10:17:01.0674 0x031c  NgcSvc - ok
10:17:01.0682 0x031c  [ 66965DD61BDB0BA4A08C55DA71FF608F, 1FD6DAE1BB6CC3931270989C795FE1B3E2E264A72B5B2B04B2B9726F0FF827ED ] NitroDriverReadSpool9 C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
10:17:01.0696 0x031c  NitroDriverReadSpool9 - ok
10:17:01.0707 0x031c  [ F22C29CF59CBEF4E38BD5A0C0D8B070B, 2A049D73B70662B6490193CCE2073443076565AFDE08EDFE499B180FF0D35B25 ] NitroUpdateService C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
10:17:01.0726 0x031c  NitroUpdateService - ok
10:17:01.0735 0x031c  [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
10:17:01.0754 0x031c  NlaSvc - ok
10:17:01.0772 0x031c  [ 3770DCA20381F6F82D481EA4B8773426, 4CA6D79E74F4328C828A7084578E265CAE2DE4027BBCDC0D4B832720FD558E8A ] nlsX86cc        C:\WINDOWS\SysWOW64\NLSSRV32.EXE
10:17:01.0782 0x031c  nlsX86cc - ok
10:17:01.0786 0x031c  [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
10:17:01.0796 0x031c  Npfs - ok
10:17:01.0799 0x031c  [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
10:17:01.0808 0x031c  npsvctrig - ok
10:17:01.0811 0x031c  [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi             C:\WINDOWS\system32\nsisvc.dll
10:17:01.0820 0x031c  nsi - ok
10:17:01.0824 0x031c  [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
10:17:01.0832 0x031c  nsiproxy - ok
10:17:01.0871 0x031c  [ 58BFFEF692A47FCE3FAAEDBC8F3DCBBB, 4F55CDF153306B17EDEA6F621939990667735676CBA460CC3078789C2766EF68 ] NTFS            C:\WINDOWS\system32\drivers\NTFS.sys
10:17:01.0920 0x031c  NTFS - ok
10:17:01.0930 0x031c  [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null            C:\WINDOWS\system32\drivers\Null.sys
10:17:01.0940 0x031c  Null - ok
10:17:01.0946 0x031c  [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
10:17:01.0964 0x031c  nvraid - ok
10:17:01.0969 0x031c  [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
10:17:01.0988 0x031c  nvstor - ok
10:17:01.0996 0x031c  [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
10:17:02.0006 0x031c  nv_agp - ok
10:17:02.0011 0x031c  [ E7B6DF2BF970BA75884AA5222E79AAE3, 4A0A52244F0787FF4380AAEF878E9E58AAE10251BA5434ADCF246173D5E68D0B ] OMNISMI         C:\WINDOWS\SysWOW64\drivers\omnismi.sys
10:17:02.0020 0x031c  OMNISMI - ok
10:17:02.0032 0x031c  [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc      C:\WINDOWS\System32\APHostService.dll
10:17:02.0053 0x031c  OneSyncSvc - ok
10:17:02.0068 0x031c  [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:17:02.0078 0x031c  ose - ok
10:17:02.0088 0x031c  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
10:17:02.0107 0x031c  p2pimsvc - ok
10:17:02.0119 0x031c  [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
10:17:02.0141 0x031c  p2psvc - ok
10:17:02.0148 0x031c  [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
10:17:02.0160 0x031c  Parport - ok
10:17:02.0165 0x031c  [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
10:17:02.0176 0x031c  partmgr - ok
10:17:02.0189 0x031c  [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
10:17:02.0208 0x031c  PcaSvc - ok
10:17:02.0217 0x031c  [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci             C:\WINDOWS\system32\drivers\pci.sys
10:17:02.0232 0x031c  pci - ok
10:17:02.0235 0x031c  [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
10:17:02.0245 0x031c  pciide - ok
10:17:02.0250 0x031c  [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
10:17:02.0261 0x031c  pcmcia - ok
10:17:02.0264 0x031c  [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
10:17:02.0273 0x031c  pcw - ok
10:17:02.0277 0x031c  [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
10:17:02.0286 0x031c  pdc - ok
10:17:02.0303 0x031c  [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
10:17:02.0332 0x031c  PEAUTH - ok
10:17:02.0368 0x031c  [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc     C:\WINDOWS\system32\peerdistsvc.dll
10:17:02.0423 0x031c  PeerDistSvc - ok
10:17:02.0432 0x031c  [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i       C:\WINDOWS\system32\drivers\percsas2i.sys
10:17:02.0445 0x031c  percsas2i - ok
10:17:02.0448 0x031c  [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i       C:\WINDOWS\system32\drivers\percsas3i.sys
10:17:02.0460 0x031c  percsas3i - ok
10:17:02.0464 0x031c  [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
10:17:02.0473 0x031c  PerfHost - ok
10:17:02.0493 0x031c  [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc        C:\WINDOWS\System32\PhoneService.dll
10:17:02.0519 0x031c  PhoneSvc - ok
10:17:02.0526 0x031c  [ 940BD7A32391F325A1A4285F91FAF7AC, A0FE4B8705B268E1978D9C66EB39B3DBBCB2A70F02F380C7062FE72E92DDF964 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
10:17:02.0541 0x031c  PimIndexMaintenanceSvc - ok
10:17:02.0574 0x031c  [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla             C:\WINDOWS\system32\pla.dll
10:17:02.0621 0x031c  pla - ok
10:17:02.0631 0x031c  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
10:17:02.0646 0x031c  PlugPlay - ok
10:17:02.0649 0x031c  [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
10:17:02.0659 0x031c  PNRPAutoReg - ok
10:17:02.0667 0x031c  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
10:17:02.0684 0x031c  PNRPsvc - ok
10:17:02.0692 0x031c  [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
10:17:02.0712 0x031c  PolicyAgent - ok
10:17:02.0717 0x031c  [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power           C:\WINDOWS\system32\umpo.dll
10:17:02.0730 0x031c  Power - ok
10:17:02.0760 0x031c  [ FA9A5B84900443A1309FE62F92C8A228, B915EFC84CF3A16D4EB6CB246AB6819303D871630F3E61416D4CACDF6BBA6487 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
10:17:02.0798 0x031c  Power Manager DBC Service - ok
10:17:02.0807 0x031c  [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport    C:\WINDOWS\System32\drivers\raspptp.sys
10:17:02.0819 0x031c  PptpMiniport - ok
10:17:02.0878 0x031c  [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
10:17:02.0980 0x031c  PrintNotify - ok
10:17:02.0991 0x031c  [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor       C:\WINDOWS\System32\drivers\processr.sys
10:17:03.0002 0x031c  Processor - ok
10:17:03.0011 0x031c  [ A08AAC62EF7A1E291B3E895B5864BB86, 340E6648F9A5F4B7543FDEC5BDAFBDA3DE319B8F998FF2EF60D02EE5EF3D56CB ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
10:17:03.0027 0x031c  ProfSvc - ok
10:17:03.0032 0x031c  [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched          C:\WINDOWS\system32\drivers\pacer.sys
10:17:03.0043 0x031c  Psched - ok
10:17:03.0047 0x031c  [ BBDFF5E4128FC2B8FC2408BD6D18310F, F39F8E1F944BC53D0B63D7D6BE3D8D4E763742C8A9F9492A115795B46F2FFDF1 ] QuickControlMasterSvc C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe
10:17:03.0058 0x031c  QuickControlMasterSvc - ok
10:17:03.0062 0x031c  [ FA39A899EB5A71CAE300888EBECFCA2B, E0ECA111BD324F243DCE4D9AA023843835B67798356D4C48A7FB5E82A5BEDF3E ] QuickControlService C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
10:17:03.0074 0x031c  QuickControlService - ok
10:17:03.0081 0x031c  [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE           C:\WINDOWS\system32\qwave.dll
10:17:03.0097 0x031c  QWAVE - ok
10:17:03.0101 0x031c  [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
10:17:03.0111 0x031c  QWAVEdrv - ok
10:17:03.0113 0x031c  [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:17:03.0123 0x031c  RasAcd - ok
10:17:03.0127 0x031c  [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn     C:\WINDOWS\System32\drivers\AgileVpn.sys
10:17:03.0140 0x031c  RasAgileVpn - ok
10:17:03.0144 0x031c  [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
10:17:03.0157 0x031c  RasAuto - ok
10:17:03.0162 0x031c  [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp         C:\WINDOWS\System32\drivers\rasl2tp.sys
10:17:03.0173 0x031c  Rasl2tp - ok
10:17:03.0187 0x031c  [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan          C:\WINDOWS\System32\rasmans.dll
10:17:03.0217 0x031c  RasMan - ok
10:17:03.0222 0x031c  [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:17:03.0234 0x031c  RasPppoe - ok
10:17:03.0237 0x031c  [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp         C:\WINDOWS\System32\drivers\rassstp.sys
10:17:03.0250 0x031c  RasSstp - ok
10:17:03.0260 0x031c  [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:17:03.0274 0x031c  rdbss - ok
10:17:03.0278 0x031c  [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
10:17:03.0287 0x031c  rdpbus - ok
10:17:03.0293 0x031c  [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
10:17:03.0306 0x031c  RDPDR - ok
10:17:03.0311 0x031c  [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
10:17:03.0318 0x031c  RdpVideoMiniport - ok
10:17:03.0325 0x031c  [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
10:17:03.0337 0x031c  rdyboost - ok
10:17:03.0356 0x031c  [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1          C:\WINDOWS\system32\drivers\ReFSv1.sys
10:17:03.0381 0x031c  ReFSv1 - ok
10:17:03.0394 0x031c  [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
10:17:03.0417 0x031c  RemoteAccess - ok
10:17:03.0423 0x031c  [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
10:17:03.0440 0x031c  RemoteRegistry - ok
10:17:03.0460 0x031c  [ AD43141CE6D5074DA1D28B5BCD4E4507, C1A9AA856DD4FEE00BBA329C150E0CBCD1CE13ED0BB7B4AC9B152321CD854212 ] RetailDemo      C:\WINDOWS\system32\RDXService.dll
10:17:03.0473 0x30ac  Object send P2P result: true
10:17:03.0502 0x031c  RetailDemo - ok
10:17:03.0509 0x031c  [ 74727B8BF0227820660A79450F2D94EF, 86BC249322A3C63CBC3B532AD86BFDCB5A46A24A767137D02C944B94A899C521 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
10:17:03.0522 0x031c  RFCOMM - ok
10:17:03.0526 0x031c  [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
10:17:03.0537 0x031c  RpcEptMapper - ok
10:17:03.0540 0x031c  [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator      C:\WINDOWS\system32\locator.exe
10:17:03.0550 0x031c  RpcLocator - ok
10:17:03.0567 0x031c  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
10:17:03.0599 0x031c  RpcSs - ok
10:17:03.0604 0x031c  [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr          C:\WINDOWS\system32\drivers\rspndr.sys
10:17:03.0616 0x031c  rspndr - ok
10:17:03.0631 0x031c  [ BE7E1D29CD6DAF79EF08A24A03E10D38, 6DD736E4AFFA8C2237990C3BB2B0313A2A18A77745198F847891128A1BA4D9FD ] RTSPER          C:\WINDOWS\system32\DRIVERS\RtsPer.sys
10:17:03.0653 0x031c  RTSPER - ok
10:17:03.0657 0x031c  [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
10:17:03.0665 0x031c  s3cap - ok
10:17:03.0669 0x031c  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs           C:\WINDOWS\system32\lsass.exe
10:17:03.0677 0x031c  SamSs - ok
10:17:03.0682 0x031c  [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
10:17:03.0691 0x031c  sbp2port - ok
10:17:03.0698 0x031c  [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
10:17:03.0716 0x031c  SCardSvr - ok
10:17:03.0721 0x031c  [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
10:17:03.0739 0x031c  ScDeviceEnum - ok
10:17:03.0743 0x031c  [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
10:17:03.0755 0x031c  scfilter - ok
10:17:03.0775 0x031c  [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
10:17:03.0808 0x031c  Schedule - ok
10:17:03.0815 0x031c  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
10:17:03.0830 0x031c  SCPolicySvc - ok
10:17:03.0838 0x031c  [ 70165A0A2653FB8AFDE3D85000727F29, BAC35D7B0296CAC78EAC4266FC96E292174827E0B24ECAF085228B26A5052911 ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
10:17:03.0850 0x031c  sdbus - ok
10:17:03.0855 0x031c  [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC          C:\WINDOWS\System32\SDRSVC.dll
10:17:03.0868 0x031c  SDRSVC - ok
10:17:03.0872 0x031c  [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
10:17:03.0880 0x031c  sdstor - ok
10:17:03.0885 0x031c  [ 286450F698EBD81A8AC1B22CF6BABF11, ED05C2723FCD399FD085AE7AB1178D24F9745A4F31DD711DE896D15412B82BA2 ] seclogon        C:\WINDOWS\system32\seclogon.dll
10:17:03.0896 0x031c  seclogon - ok
10:17:03.0900 0x031c  [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS            C:\WINDOWS\System32\sens.dll
10:17:03.0914 0x031c  SENS - ok
10:17:03.0940 0x031c  [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
10:17:03.0985 0x031c  SensorDataService - ok
10:17:03.0999 0x031c  [ A74C62AE99A015CD6275F0D8D8843886, DF08E0BB1160E054C6B000BC5F62DEF77C6D9E4B5679AD013C313BA14207B589 ] SensorService   C:\WINDOWS\system32\SensorService.dll
10:17:04.0017 0x031c  SensorService - ok
10:17:04.0022 0x031c  [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
10:17:04.0037 0x031c  SensrSvc - ok
10:17:04.0041 0x031c  [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
10:17:04.0050 0x031c  SerCx - ok
10:17:04.0055 0x031c  [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
10:17:04.0064 0x031c  SerCx2 - ok
10:17:04.0067 0x031c  [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
10:17:04.0078 0x031c  Serenum - ok
10:17:04.0081 0x031c  [ 88D58E1DAA6C5062DD3A26273106961F, D1E2FF37C888245BD0BABCD7C6B76AD5A87415B68FEFE37B5FA29AE3342AE50B ] Serial          C:\WINDOWS\System32\drivers\serial.sys
10:17:04.0093 0x031c  Serial - ok
10:17:04.0096 0x031c  [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
10:17:04.0105 0x031c  sermouse - ok
10:17:04.0117 0x031c  [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
10:17:04.0136 0x031c  SessionEnv - ok
10:17:04.0140 0x031c  [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
10:17:04.0150 0x031c  sfloppy - ok
10:17:04.0160 0x031c  [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
10:17:04.0181 0x031c  SharedAccess - ok
10:17:04.0196 0x031c  [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:17:04.0232 0x031c  ShellHWDetection - ok
10:17:04.0237 0x031c  [ 21144BECAEC1012FF0F6C6C1D6177232, 4ACDC8B9F2EB862F440A7C1D31FEC9A13386DEA50D9B98EAB5FC311BC8FF0065 ] Shockprf        C:\WINDOWS\system32\DRIVERS\Apsx64.sys
10:17:04.0247 0x031c  Shockprf - ok
10:17:04.0251 0x031c  [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
10:17:04.0267 0x031c  SiSRaid2 - ok
10:17:04.0271 0x031c  [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
10:17:04.0286 0x031c  SiSRaid4 - ok
10:17:04.0296 0x031c  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
10:17:04.0318 0x031c  SkypeUpdate - ok
10:17:04.0323 0x031c  [ DACC0695CBB48C9BFFE7CB6147E2E693, 32CFAD780E38E29C8AD1AB32F896916E529F52665E61A1401A081499BA0FF2C9 ] SmbDrvI         C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
10:17:04.0335 0x031c  SmbDrvI - ok
10:17:04.0342 0x031c  [ 0CF57B6A7F15A6820E94B24F0A394954, C9EADF69C05C1E3C035194E271E95CBB322F043B99F413DB24E666778F1FE4C1 ] SMIDriver       C:\WINDOWS\system32\DRIVERS\smi.sys
10:17:04.0352 0x031c  SMIDriver - ok
10:17:04.0358 0x031c  [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost         C:\WINDOWS\System32\smphost.dll
10:17:04.0377 0x031c  smphost - ok
10:17:04.0391 0x031c  [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter       C:\WINDOWS\system32\SmsRouterSvc.dll
10:17:04.0416 0x031c  SmsRouter - ok
10:17:04.0424 0x031c  [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
10:17:04.0438 0x031c  SNMPTRAP - ok
10:17:04.0454 0x031c  [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
10:17:04.0473 0x031c  spaceport - ok
10:17:04.0480 0x031c  [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
10:17:04.0488 0x031c  SpbCx - ok
10:17:04.0496 0x031c  [ 13942BF96D0802300EE0054C09425B49, B24DD750060143FA6AD5CB31EF272C3639B4BB617762FD30713EEE3443A02FDF ] SpeedupService  C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
10:17:04.0501 0x031c  SpeedupService - ok
10:17:04.0517 0x031c  [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler         C:\WINDOWS\System32\spoolsv.exe
10:17:04.0547 0x031c  Spooler - ok
10:17:04.0650 0x031c  [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
10:17:04.0787 0x031c  sppsvc - ok
10:17:04.0810 0x031c  [ 836C468B119646B5F03FA35EF8BE66DD, 0C828FDC76AF28363248CBF1376738146B214DF536C2FD56B447FE651FB681C1 ] SPUVCbv         C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys
10:17:04.0830 0x031c  SPUVCbv - ok
10:17:04.0840 0x031c  [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
10:17:04.0858 0x031c  srv - ok
10:17:04.0872 0x031c  [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
10:17:04.0899 0x031c  srv2 - ok
10:17:04.0906 0x031c  [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
10:17:04.0921 0x031c  srvnet - ok
10:17:04.0928 0x031c  [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
10:17:04.0945 0x031c  SSDPSRV - ok
10:17:04.0951 0x031c  [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
10:17:04.0967 0x031c  SstpSvc - ok
10:17:05.0013 0x031c  [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
10:17:05.0087 0x031c  StateRepository - ok
10:17:05.0096 0x031c  [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
10:17:05.0108 0x031c  stexstor - ok
10:17:05.0121 0x031c  [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
10:17:05.0147 0x031c  stisvc - ok
10:17:05.0152 0x031c  [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
10:17:05.0162 0x031c  storahci - ok
10:17:05.0165 0x031c  [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
10:17:05.0174 0x031c  storflt - ok
10:17:05.0177 0x031c  [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
10:17:05.0186 0x031c  stornvme - ok
10:17:05.0191 0x031c  [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt      C:\WINDOWS\system32\drivers\storqosflt.sys
10:17:05.0201 0x031c  storqosflt - ok
10:17:05.0215 0x031c  [ 9953FA89A4E3BC33296DAFB1ACFDC62F, D2F2698834691FF7915BDFFB82DB549354311A5DD7D37BF767F95D407AC4019F ] StorSvc         C:\WINDOWS\system32\storsvc.dll
10:17:05.0241 0x031c  StorSvc - ok
10:17:05.0244 0x031c  [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs         C:\WINDOWS\system32\drivers\storufs.sys
10:17:05.0252 0x031c  storufs - ok
10:17:05.0256 0x031c  [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
10:17:05.0264 0x031c  storvsc - ok
10:17:05.0267 0x031c  [ FBB679A987A096E37330033863CA710F, 7C7DBB84B7619E689C3FC4CF90364BA05497E8BAA3833D51D288F865D1E226FB ] SUService       C:\Program Files (x86)\Lenovo\System Update\SUService.exe
10:17:05.0276 0x031c  SUService - ok
10:17:05.0279 0x031c  [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc           C:\WINDOWS\system32\svsvc.dll
10:17:05.0292 0x031c  svsvc - ok
10:17:05.0295 0x031c  [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
10:17:05.0303 0x031c  swenum - ok
10:17:05.0314 0x031c  [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv           C:\WINDOWS\System32\swprv.dll
10:17:05.0344 0x031c  swprv - ok
10:17:05.0355 0x031c  [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc      C:\WINDOWS\System32\drivers\Synth3dVsc.sys
10:17:05.0365 0x031c  Synth3dVsc - ok
10:17:05.0378 0x031c  [ 02201A9C2BF66578F0A0B5FE9944F140, AC47A390322F2C1A529FD1599EF549AC3967E973B9659CAA8286B82849E6BC87 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
10:17:05.0399 0x031c  SynTP - ok
10:17:05.0409 0x031c  [ 9EA5F5E5004CC0371FE28BF679BE78E3, CB73CF1ABD3B6AE149D9BA1C24ABE23E3AE5A8C1DCBF3F60A977CD7F73411975 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
10:17:05.0425 0x031c  SynTPEnhService - ok
10:17:05.0448 0x031c  [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain         C:\WINDOWS\system32\sysmain.dll
10:17:05.0488 0x031c  SysMain - ok
10:17:05.0498 0x031c  [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
10:17:05.0517 0x031c  SystemEventsBroker - ok
10:17:05.0522 0x031c  [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
10:17:05.0536 0x031c  TabletInputService - ok
10:17:05.0543 0x031c  [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
10:17:05.0561 0x031c  TapiSrv - ok
10:17:05.0602 0x031c  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
10:17:05.0653 0x031c  Tcpip - ok
10:17:05.0700 0x031c  [ 892F30506DCCF230C5A57019C1D8D31B, 52C83A963E2D05770B6A281E8E559C8203E102D6B4C9C37801B1F58CB4B92D2F ] Tcpip6          C:\WINDOWS\system32\drivers\tcpip.sys
10:17:05.0754 0x031c  Tcpip6 - ok
10:17:05.0789 0x031c  [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
10:17:05.0801 0x031c  tcpipreg - ok
10:17:05.0808 0x031c  [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
10:17:05.0817 0x031c  tdx - ok
10:17:05.0821 0x031c  [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
10:17:05.0829 0x031c  terminpt - ok
10:17:05.0849 0x031c  [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService     C:\WINDOWS\System32\termsrv.dll
10:17:05.0885 0x031c  TermService - ok
10:17:05.0889 0x031c  [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes          C:\WINDOWS\system32\themeservice.dll
10:17:05.0906 0x031c  Themes - ok
10:17:05.0914 0x031c  [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
10:17:05.0934 0x031c  TieringEngineService - ok
10:17:05.0946 0x031c  [ FC971E1D1B5900C231591A7720FCD8B8, DF58C350977019E4A8F381FB35702E9BEA89F6A8C6BF36C56376D36BC8FE630F ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
10:17:05.0967 0x031c  tiledatamodelsvc - ok
10:17:05.0973 0x031c  [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
10:17:05.0986 0x031c  TimeBroker - ok
10:17:05.0989 0x031c  [ 8CC4CABFC4D35B61ABF596CE024C438C, 674BC35916AE4D0C425D9F0A4473335408499B06BCEF8AF64DF724D44FB310C5 ] TPDIGIMN        C:\WINDOWS\system32\DRIVERS\ApsHM64.sys
10:17:05.0994 0x031c  TPDIGIMN - ok
10:17:05.0997 0x031c  [ 25AD1E90D51382173D49F55963B59C64, 84CE25338E1CE78037488160B204392FD85EBB1F3E4CD636F60FDB2E24839D9B ] TPHDEXLGSVC     C:\WINDOWS\system32\TPHDEXLG64.exe
10:17:06.0008 0x031c  TPHDEXLGSVC - ok
10:17:06.0014 0x031c  [ D6265A9008DC7B6411ACBAEB7CA26F75, C4992ACB4BB2BBB7249B52791BF4E5ED67AC854998733A7BBC6CEB3275D6726D ] TPHKLOAD        C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
10:17:06.0026 0x031c  TPHKLOAD - ok
10:17:06.0031 0x031c  [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM             C:\WINDOWS\System32\drivers\tpm.sys
10:17:06.0043 0x031c  TPM - ok
10:17:06.0046 0x031c  [ A9EF6C7E62DC3B01C51CFB92C1596C62, 432335FDA5DF9FF8C9B86767980A07C720E7158D5362E40D3A745817D4275A07 ] TPPWRIF         C:\WINDOWS\system32\drivers\Tppwr64v.sys
10:17:06.0055 0x031c  TPPWRIF - ok
10:17:06.0059 0x031c  [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks          C:\WINDOWS\System32\trkwks.dll
10:17:06.0073 0x031c  TrkWks - ok
10:17:06.0077 0x031c  [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
10:17:06.0088 0x031c  TrustedInstaller - ok
10:17:06.0092 0x031c  [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt        C:\WINDOWS\system32\drivers\TsUsbFlt.sys
10:17:06.0102 0x031c  tsusbflt - ok
10:17:06.0106 0x031c  [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
10:17:06.0114 0x031c  TsUsbGD - ok
10:17:06.0120 0x031c  [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel          C:\WINDOWS\System32\drivers\tunnel.sys
10:17:06.0134 0x031c  tunnel - ok
10:17:06.0138 0x031c  [ 1A9A77ACDAC29C39F50D2A492FD0DB16, E21F2E2BA6EABE0F6B5A1930DDB2CE5A921389A58C08A2D3F66D245E8698E6B4 ] tzautoupdate    C:\WINDOWS\system32\tzautoupdate.dll
10:17:06.0151 0x031c  tzautoupdate - ok
10:17:06.0155 0x031c  [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
10:17:06.0164 0x031c  uagp35 - ok
10:17:06.0167 0x031c  [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
10:17:06.0175 0x031c  UASPStor - ok
10:17:06.0179 0x031c  [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
10:17:06.0189 0x031c  UcmCx0101 - ok
10:17:06.0193 0x031c  [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
10:17:06.0203 0x031c  UcmUcsi - ok
10:17:06.0209 0x031c  [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
10:17:06.0220 0x031c  Ucx01000 - ok
10:17:06.0224 0x031c  [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
10:17:06.0234 0x031c  UdeCx - ok
10:17:06.0242 0x031c  [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
10:17:06.0261 0x031c  udfs - ok
10:17:06.0265 0x031c  [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
10:17:06.0273 0x031c  UEFI - ok
         

Alt 10.03.2016, 11:29   #12
slamflo
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

TDSSKiller Report Teil 3



Code:
ATTFilter
10:17:06.0279 0x031c  [ 5F0D997E6FC5A418D7673148CEF72887, 6C142CB8F06E5958045451253C9188CE876A84D08266FFD7F64AAE09964D8431 ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
10:17:06.0292 0x031c  Ufx01000 - ok
10:17:06.0297 0x031c  [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
10:17:06.0306 0x031c  UfxChipidea - ok
10:17:06.0311 0x031c  [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
10:17:06.0320 0x031c  ufxsynopsys - ok
10:17:06.0326 0x031c  [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
10:17:06.0338 0x031c  UI0Detect - ok
10:17:06.0343 0x031c  [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
10:17:06.0351 0x031c  uliagpkx - ok
10:17:06.0354 0x031c  [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
10:17:06.0364 0x031c  umbus - ok
10:17:06.0368 0x031c  [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
10:17:06.0378 0x031c  UmPass - ok
10:17:06.0386 0x031c  [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
10:17:06.0404 0x031c  UmRdpService - ok
10:17:06.0428 0x031c  [ 4C3A922DE7A417B5E3BF350C1113BCD4, 8A47CFCB30BA6C42D112C256415C7F7B656A9DDFAE17A5D3E8F0EDAFB7AD6B9D ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
10:17:06.0466 0x031c  UnistoreSvc - ok
10:17:06.0489 0x031c  [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost        C:\WINDOWS\System32\upnphost.dll
10:17:06.0512 0x031c  upnphost - ok
10:17:06.0515 0x031c  [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
10:17:06.0523 0x031c  UrsChipidea - ok
10:17:06.0526 0x031c  [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
10:17:06.0534 0x031c  UrsCx01000 - ok
10:17:06.0537 0x031c  [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
10:17:06.0546 0x031c  UrsSynopsys - ok
10:17:06.0551 0x031c  [ 524BFB402B1AB1007ED91E94D6AB6F72, 5A970292D2E7A580FAD86615BC6E66C2A5C74044EFF6C1543E928773E5B9C0F8 ] usb3Hub         C:\WINDOWS\System32\drivers\usb3Hub.sys
10:17:06.0565 0x031c  usb3Hub - ok
10:17:06.0570 0x031c  [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
10:17:06.0580 0x031c  usbccgp - ok
10:17:06.0585 0x031c  [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
10:17:06.0597 0x031c  usbcir - ok
10:17:06.0601 0x031c  [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
10:17:06.0610 0x031c  usbehci - ok
10:17:06.0621 0x031c  [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
10:17:06.0637 0x031c  usbhub - ok
10:17:06.0650 0x031c  [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
10:17:06.0668 0x031c  USBHUB3 - ok
10:17:06.0671 0x031c  [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
10:17:06.0680 0x031c  usbohci - ok
10:17:06.0683 0x031c  [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
10:17:06.0693 0x031c  usbprint - ok
10:17:06.0696 0x031c  [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:17:06.0710 0x031c  usbscan - ok
10:17:06.0714 0x031c  [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
10:17:06.0724 0x031c  usbser - ok
10:17:06.0729 0x031c  [ 37C2CD8587BF7F785381EB7B26916B52, E8F65BF7BBDEF82BD97629921A1148304CA44DCD03E079E28D75D04244B71C39 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
10:17:06.0739 0x031c  USBSTOR - ok
10:17:06.0743 0x031c  [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
10:17:06.0752 0x031c  usbuhci - ok
10:17:06.0759 0x031c  [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo        C:\WINDOWS\System32\Drivers\usbvideo.sys
10:17:06.0774 0x031c  usbvideo - ok
10:17:06.0783 0x031c  [ 325727F01F03C504CF788618A13DC266, 9F685113F714ADBC6DCD423CCD205F71E00D1AA9B5DD045B95E61E53B0F8E9AF ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
10:17:06.0797 0x031c  USBXHCI - ok
10:17:06.0826 0x031c  [ F09829ADADCD300611C7EC35B746CEF1, 323051A38BF87E048C99F0D6941D3B3A1D6801CBCD880629E60EB4E9F9C89179 ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
10:17:06.0871 0x031c  UserDataSvc - ok
10:17:06.0900 0x031c  [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager     C:\WINDOWS\System32\usermgr.dll
10:17:06.0932 0x031c  UserManager - ok
10:17:06.0942 0x031c  [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc          C:\WINDOWS\system32\usocore.dll
10:17:06.0961 0x031c  UsoSvc - ok
10:17:06.0965 0x031c  [ 873E2832FE0882D121DEBCEA9140A27D, C2BFFB5539BB2DD486F3E7C84DE4C3FA706633ED0837F8D432DB0D670A6E9937 ] valWBFPolicyService C:\WINDOWS\system32\valWBFPolicyService.exe
10:17:06.0980 0x031c  valWBFPolicyService - ok
10:17:06.0984 0x031c  [ C0729CE9F3E29BA57D482ED4E98539CC, 08D1BC32A1686C9C0AAD5E7366A3E036ECBBB2E6FC568674EE4988FBAF833727 ] valWbioSyncSvc  C:\WINDOWS\system32\valWbioSyncSvc.exe
10:17:06.0993 0x031c  valWbioSyncSvc - ok
10:17:06.0996 0x031c  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
10:17:07.0005 0x031c  VaultSvc - ok
10:17:07.0009 0x031c  [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
10:17:07.0017 0x031c  vdrvroot - ok
10:17:07.0031 0x031c  [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds             C:\WINDOWS\System32\vds.exe
10:17:07.0060 0x031c  vds - ok
10:17:07.0066 0x031c  [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
10:17:07.0077 0x031c  VerifierExt - ok
10:17:07.0092 0x031c  [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
10:17:07.0112 0x031c  vhdmp - ok
10:17:07.0115 0x031c  [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
10:17:07.0125 0x031c  vhf - ok
10:17:07.0130 0x031c  [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
10:17:07.0139 0x031c  vmbus - ok
10:17:07.0141 0x031c  [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
10:17:07.0151 0x031c  VMBusHID - ok
10:17:07.0162 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
10:17:07.0184 0x031c  vmicguestinterface - ok
10:17:07.0196 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
10:17:07.0217 0x031c  vmicheartbeat - ok
10:17:07.0228 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
10:17:07.0250 0x031c  vmickvpexchange - ok
10:17:07.0261 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
10:17:07.0282 0x031c  vmicrdv - ok
10:17:07.0292 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
10:17:07.0313 0x031c  vmicshutdown - ok
10:17:07.0324 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
10:17:07.0345 0x031c  vmictimesync - ok
10:17:07.0356 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession   C:\WINDOWS\System32\ICSvc.dll
10:17:07.0377 0x031c  vmicvmsession - ok
10:17:07.0387 0x031c  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
10:17:07.0409 0x031c  vmicvss - ok
10:17:07.0412 0x031c  [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
10:17:07.0421 0x031c  volmgr - ok
10:17:07.0429 0x031c  [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
10:17:07.0443 0x031c  volmgrx - ok
10:17:07.0453 0x031c  [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
10:17:07.0468 0x031c  volsnap - ok
10:17:07.0473 0x031c  [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
10:17:07.0481 0x031c  vpci - ok
10:17:07.0486 0x031c  [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
10:17:07.0501 0x031c  vsmraid - ok
10:17:07.0526 0x031c  [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS             C:\WINDOWS\system32\vssvc.exe
10:17:07.0574 0x031c  VSS - ok
10:17:07.0587 0x031c  [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
10:17:07.0605 0x031c  VSTXRAID - ok
10:17:07.0609 0x031c  [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
10:17:07.0619 0x031c  vwifibus - ok
10:17:07.0623 0x031c  [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
10:17:07.0635 0x031c  vwififlt - ok
10:17:07.0638 0x031c  [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp         C:\WINDOWS\System32\drivers\vwifimp.sys
10:17:07.0650 0x031c  vwifimp - ok
10:17:07.0662 0x031c  [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time         C:\WINDOWS\system32\w32time.dll
10:17:07.0687 0x031c  W32Time - ok
10:17:07.0690 0x031c  [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
10:17:07.0701 0x031c  WacomPen - ok
10:17:07.0712 0x031c  [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService   C:\WINDOWS\system32\WalletService.dll
10:17:07.0734 0x031c  WalletService - ok
10:17:07.0739 0x031c  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:17:07.0752 0x031c  wanarp - ok
10:17:07.0755 0x031c  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:17:07.0768 0x031c  wanarpv6 - ok
10:17:07.0795 0x031c  [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine        C:\WINDOWS\system32\wbengine.exe
10:17:07.0843 0x031c  wbengine - ok
10:17:07.0860 0x031c  [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
10:17:07.0885 0x031c  WbioSrvc - ok
10:17:07.0899 0x031c  [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
10:17:07.0924 0x031c  Wcmsvc - ok
10:17:07.0935 0x031c  [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
10:17:07.0957 0x031c  wcncsvc - ok
10:17:07.0962 0x031c  [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
10:17:07.0972 0x031c  WcsPlugInService - ok
10:17:07.0976 0x031c  [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
10:17:07.0984 0x031c  WdBoot - ok
10:17:08.0000 0x031c  [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
10:17:08.0020 0x031c  Wdf01000 - ok
10:17:08.0029 0x031c  [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
10:17:08.0041 0x031c  WdFilter - ok
10:17:08.0046 0x031c  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
10:17:08.0062 0x031c  WdiServiceHost - ok
10:17:08.0065 0x031c  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
10:17:08.0080 0x031c  WdiSystemHost - ok
10:17:08.0096 0x031c  [ E70DDD8E2245CC67547B0861983912D8, 64C73B1496FFF1F6BB3D877CB5BE54DE35C303AE234B11FC90038DC4F73241D9 ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
10:17:08.0123 0x031c  wdiwifi - ok
10:17:08.0128 0x031c  [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
10:17:08.0136 0x031c  WdNisDrv - ok
10:17:08.0138 0x031c  WdNisSvc - ok
10:17:08.0145 0x031c  [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient       C:\WINDOWS\System32\webclnt.dll
10:17:08.0165 0x031c  WebClient - ok
10:17:08.0171 0x031c  [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
10:17:08.0188 0x031c  Wecsvc - ok
10:17:08.0191 0x031c  [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
10:17:08.0205 0x031c  WEPHOSTSVC - ok
10:17:08.0209 0x031c  [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
10:17:08.0226 0x031c  wercplsupport - ok
10:17:08.0231 0x031c  [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
10:17:08.0248 0x031c  WerSvc - ok
10:17:08.0254 0x031c  [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
10:17:08.0264 0x031c  WFPLWFS - ok
10:17:08.0268 0x031c  [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
10:17:08.0279 0x031c  WiaRpc - ok
10:17:08.0283 0x031c  [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
10:17:08.0293 0x031c  WIMMount - ok
10:17:08.0295 0x031c  WinDefend - ok
10:17:08.0302 0x031c  [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
10:17:08.0312 0x031c  WindowsTrustedRT - ok
10:17:08.0315 0x031c  [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
10:17:08.0323 0x031c  WindowsTrustedRTProxy - ok
10:17:08.0340 0x031c  [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
10:17:08.0369 0x031c  WinHttpAutoProxySvc - ok
10:17:08.0373 0x031c  [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
10:17:08.0384 0x031c  WinMad - ok
10:17:08.0395 0x031c  [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
10:17:08.0410 0x031c  Winmgmt - ok
10:17:08.0455 0x031c  [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
10:17:08.0528 0x031c  WinRM - ok
10:17:08.0540 0x031c  [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
10:17:08.0551 0x031c  WINUSB - ok
10:17:08.0555 0x031c  [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
10:17:08.0567 0x031c  WinVerbs - ok
10:17:08.0607 0x031c  [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
10:17:08.0673 0x031c  WlanSvc - ok
10:17:08.0715 0x031c  [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
10:17:08.0774 0x031c  wlidsvc - ok
10:17:08.0782 0x031c  [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
10:17:08.0792 0x031c  WmiAcpi - ok
10:17:08.0799 0x031c  [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
10:17:08.0812 0x031c  wmiApSrv - ok
10:17:08.0815 0x031c  WMPNetworkSvc - ok
10:17:08.0821 0x031c  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
10:17:08.0832 0x031c  Wof - ok
10:17:08.0867 0x031c  [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
10:17:08.0923 0x031c  workfolderssvc - ok
10:17:08.0931 0x031c  [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
10:17:08.0939 0x031c  wpcfltr - ok
10:17:08.0943 0x031c  [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
10:17:08.0956 0x031c  WPDBusEnum - ok
10:17:08.0959 0x031c  [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
10:17:08.0967 0x031c  WpdUpFltr - ok
10:17:08.0970 0x031c  [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService      C:\WINDOWS\system32\WpnService.dll
10:17:08.0981 0x031c  WpnService - ok
10:17:08.0984 0x031c  [ 7CA09731EB7FC99B910C7F239E57720F, 502F8917A0811F37C39B2B3F5E9B4F38A0E899C30CB29D3ECD87A50FF228E536 ] WPRO_41_2001    C:\WINDOWS\system32\drivers\WPRO_41_2001.sys
10:17:08.0993 0x031c  WPRO_41_2001 - ok
10:17:08.0997 0x031c  [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
10:17:09.0009 0x031c  ws2ifsl - ok
10:17:09.0016 0x031c  [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
10:17:09.0034 0x031c  wscsvc - ok
10:17:09.0038 0x031c  [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice  C:\WINDOWS\System32\drivers\WSDPrint.sys
10:17:09.0051 0x031c  WSDPrintDevice - ok
10:17:09.0055 0x031c  [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan         C:\WINDOWS\system32\DRIVERS\WSDScan.sys
10:17:09.0067 0x031c  WSDScan - ok
10:17:09.0071 0x031c  WSearch - ok
10:17:09.0120 0x2acc  Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC
10:17:09.0152 0x031c  [ A904D7950ED275273357AA7B1EAE445F, 0E41EA26A923FCE7072CC7DDDDB852E54C95992E01A79C67D1D544B1CB1E18DA ] WSService       C:\WINDOWS\System32\WSService.dll
10:17:09.0229 0x031c  WSService - ok
10:17:09.0273 0x031c  [ 3917FA47B3A46E8B07EF09DB4E3990DB, D12F60CD796DB4AD3C7C1EEBAFCF08FCECD431698F822576B0395190DBC098A3 ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
10:17:09.0337 0x031c  wuauserv - ok
10:17:09.0346 0x031c  [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
10:17:09.0357 0x031c  WudfPf - ok
10:17:09.0363 0x031c  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
10:17:09.0377 0x031c  WUDFRd - ok
10:17:09.0382 0x031c  [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
10:17:09.0395 0x031c  wudfsvc - ok
10:17:09.0400 0x031c  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
10:17:09.0414 0x031c  WUDFWpdFs - ok
10:17:09.0420 0x031c  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
10:17:09.0435 0x031c  WUDFWpdMtp - ok
10:17:09.0459 0x031c  [ 417D1526811D9646A7E8779209F11361, 220FE28801474AB26579F2A37D792975D9AAD2384B420BCE52215B1389E08F91 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
10:17:09.0497 0x031c  WwanSvc - ok
10:17:09.0516 0x031c  [ 405A419F4CDAC3C18F91FEDBD146C0A8, 92A6539AE6FC1B140366A0F733FDB784CAFB2359C4E0E2DF80629FEEA2CBFC98 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
10:17:09.0549 0x031c  XblAuthManager - ok
10:17:09.0572 0x031c  [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
10:17:09.0608 0x031c  XblGameSave - ok
10:17:09.0616 0x031c  [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
10:17:09.0629 0x031c  xboxgip - ok
10:17:09.0649 0x031c  [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
10:17:09.0683 0x031c  XboxNetApiSvc - ok
10:17:09.0687 0x031c  [ DBACD4E4FE191D0CE7C624ACA389535E, A706DA0A284398E80AEB6FBE1B5F6C3192C3F4D1C1B7533528D689D163374DDF ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
10:17:09.0696 0x031c  xinputhid - ok
10:17:09.0701 0x031c  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbmdm6k     C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
10:17:09.0715 0x031c  ZTEusbmdm6k - ok
10:17:09.0720 0x031c  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbnmea      C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
10:17:09.0733 0x031c  ZTEusbnmea - ok
10:17:09.0738 0x031c  [ D6959A4FC3B56AFD9E31B0E71377C05F, 95ACE7E58C1DCB8DE6E64CD0E0FF06D5B84311C2D864E7B6E29F59B2D8888F5B ] ZTEusbser6k     C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
10:17:09.0750 0x031c  ZTEusbser6k - ok
10:17:09.0750 0x031c  ================ Scan global ===============================
10:17:09.0755 0x031c  [ D923EC03E24F7633DED3F2D46AD59A28, C635DB4483E24BE0188583E63B06D0F37BDE7AD944E4D0246A7D19CBC3EA3A6B ] C:\WINDOWS\system32\basesrv.dll
10:17:09.0761 0x031c  [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
10:17:09.0767 0x031c  [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
10:17:09.0778 0x031c  [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
10:17:09.0784 0x031c  [ Global ] - ok
10:17:09.0784 0x031c  ================ Scan MBR ==================================
10:17:09.0787 0x031c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
10:17:09.0835 0x031c  \Device\Harddisk2\DR7 - ok
10:17:09.0840 0x031c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
10:17:09.0877 0x031c  \Device\Harddisk0\DR0 - ok
10:17:09.0892 0x031c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR4
10:17:09.0996 0x031c  \Device\Harddisk1\DR4 - ok
10:17:10.0001 0x031c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR7
10:17:10.0044 0x031c  \Device\Harddisk2\DR7 - ok
10:17:10.0044 0x031c  ================ Scan VBR ==================================
10:17:10.0048 0x031c  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
10:17:10.0052 0x031c  \Device\Harddisk2\DR7\Partition1 - ok
10:17:10.0058 0x031c  [ 788D5DC8865A083C25C8C75059B497CC ] \Device\Harddisk0\DR0\Partition1
10:17:10.0060 0x031c  \Device\Harddisk0\DR0\Partition1 - ok
10:17:10.0063 0x031c  [ B8AD3E6C8D38A459459684DE3D4B5318 ] \Device\Harddisk0\DR0\Partition2
10:17:10.0063 0x031c  \Device\Harddisk0\DR0\Partition2 - ok
10:17:10.0065 0x031c  [ EEB518B941D5EF6D12FF35F7B7D8199F ] \Device\Harddisk0\DR0\Partition3
10:17:10.0065 0x031c  \Device\Harddisk0\DR0\Partition3 - ok
10:17:10.0067 0x031c  [ 6F2868E4B104683D6299822083B6BE62 ] \Device\Harddisk0\DR0\Partition4
10:17:10.0069 0x031c  \Device\Harddisk0\DR0\Partition4 - ok
10:17:10.0070 0x031c  [ 83D62F103FD00DFF71784C67A4BFF004 ] \Device\Harddisk0\DR0\Partition5
10:17:10.0072 0x031c  \Device\Harddisk0\DR0\Partition5 - ok
10:17:10.0074 0x031c  [ 13669BAA8E659E8B112DC7667A7121BA ] \Device\Harddisk0\DR0\Partition6
10:17:10.0075 0x031c  \Device\Harddisk0\DR0\Partition6 - ok
10:17:10.0077 0x031c  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition7
10:17:10.0077 0x031c  \Device\Harddisk0\DR0\Partition7 - ok
10:17:10.0080 0x031c  [ 7D7A8339C4748E09FD7B2C0B5F1FFEF4 ] \Device\Harddisk1\DR4\Partition1
10:17:10.0081 0x031c  \Device\Harddisk1\DR4\Partition1 - ok
10:17:10.0083 0x031c  [ CA81A133C5E8E909DE08B7095ED0C9EE ] \Device\Harddisk2\DR7\Partition1
10:17:10.0085 0x031c  \Device\Harddisk2\DR7\Partition1 - ok
10:17:10.0085 0x031c  ================ Scan generic autorun ======================
10:17:10.0089 0x031c  [ 0DCB89B1F3689BC6262FF30BBD603171, 594E6E07BC6B161469848A477F28211B70E759A8D369276810F622EE00D97783 ] C:\Windows\system32\rundll32.exe
10:17:10.0106 0x031c  Logitech Download Assistant - ok
10:17:10.0115 0x031c  [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\WINDOWS\system32\igfxtray.exe
10:17:10.0127 0x031c  IgfxTray - ok
10:17:10.0136 0x031c  [ 747A1B5CF84312898E836D60EB0D0D7D, 3734A74A1FB734E690E8C2263FA41F77B250C5E497E92B1BB1AB620D3B7511E0 ] C:\WINDOWS\system32\TpShocks.exe
10:17:10.0153 0x031c  TpShocks - ok
10:17:10.0172 0x031c  [ 380620D8B873D1DDDF02602C31632597, 0E3C96550BB2F8501718CFDB8EEC228804283C3403E816173CA4D245521338DB ] C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
10:17:10.0196 0x031c  LnvMobHotspotClient - ok
10:17:10.0213 0x031c  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
10:17:10.0223 0x031c  LMCSSTART1 - ok
10:17:10.0226 0x031c  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
10:17:10.0231 0x031c  LMCSSTART2 - ok
10:17:10.0234 0x031c  [ C484B02BF40E68EA2F58A5148B5A79A4, E3F2495711D8DE16BE031BD6BD36AC37602E00C6AB75615DF377C91C1CF2235C ] C:\WINDOWS\SysWOW64\lmcfrundll.exe
10:17:10.0239 0x031c  LMCSSTART3 - ok
10:17:10.0239 0x031c  SynLenovoHelper - ok
10:17:10.0271 0x031c  [ 4706B28CCEA45C75DD5683117A4557CC, 508924F2A808DF6161B0E6F8E6F5712EAA2B81221849AE1276951D8320B5D222 ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
10:17:10.0300 0x031c  Integrated Camera_Monitor - ok
10:17:10.0334 0x031c  [ 47B762119AB5C50881FEEEE4764D23F3, 7831F4F0194C01D7A120939C10ED14B63735B6FB6E38496F93FBD80D5447345C ] C:\Program Files (x86)\Integrated Camera\monitor.exe
10:17:10.0383 0x031c  Integrated Camera_Monitor - detected UnsignedFile.Multi.Generic ( 1 )
10:17:11.0768 0x2acc  Object send P2P result: true
10:17:11.0790 0x2acc  Object required for P2P: [ AD43141CE6D5074DA1D28B5BCD4E4507 ] RetailDemo
10:17:12.0984 0x031c  Detect skipped due to KSN trusted
10:17:12.0984 0x031c  Integrated Camera_Monitor - ok
10:17:13.0005 0x031c  [ B6CBE56FCFFC36E8097D8D248ACDB343, C8CE91F462540234A24F103D7CEE4A4D64E1C0E0E1BF58218C8F857C7A0FD20F ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
10:17:13.0040 0x031c  IMSS - ok
10:17:13.0048 0x031c  [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
10:17:13.0064 0x031c  Avira SystrayStartTrigger - ok
10:17:13.0083 0x031c  [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
10:17:13.0101 0x031c  avgnt - ok
10:17:13.0105 0x031c  [ 7EB700CD4691E62ED605328EBA9093C1, 4407F43870999E2CBC7A5C4862B27F9D42E869C404EC51068393AC314DA5E7EB ] C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe
10:17:13.0113 0x031c  Avira System Speedup User Starter - ok
10:17:13.0125 0x031c  [ 163E43BC69AE78F468024EC2133C94A8, 782C79FA3A841FDC4F549A212E07C3B8397E1FBEE44833C0662FC7E43EA24997 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
10:17:13.0149 0x031c  SunJavaUpdateSched - ok
10:17:13.0280 0x031c  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
10:17:13.0416 0x031c  OneDriveSetup - ok
10:17:13.0551 0x031c  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
10:17:13.0677 0x031c  OneDriveSetup - ok
10:17:13.0689 0x031c  GoogleDriveSync - ok
10:17:13.0703 0x031c  [ 1F93DAF10BC91666F52FC5B9632C86EB, 3D2AE1090198AAEE7CDB587ED1D2784B9FF4E4B03F4F65BC2F46E28B136F3F01 ] C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe
10:17:13.0718 0x031c  OneDrive - ok
10:17:13.0751 0x031c  [ 5400677699FBBBDFF1CB48D05AF55EEC, A3F3DC72CAB8FD57B5D7FB5BB2DFD67170BD43063F9AAE3EEAD5BC3CF22A0A0D ] C:\Users\FloSchwaiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe
10:17:13.0786 0x031c  Spotify Web Helper - ok
10:17:13.0790 0x031c  Skype - ok
10:17:13.0799 0x031c  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
10:17:13.0816 0x031c  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64 - ok
10:17:13.0825 0x031c  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
10:17:13.0841 0x031c  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1 - ok
10:17:13.0850 0x031c  [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
10:17:13.0867 0x031c  Uninstall C:\Users\FloSchwaiger\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok
10:17:13.0868 0x031c  Waiting for KSN requests completion. In queue: 240
10:17:14.0446 0x2acc  Object send P2P result: true
10:17:14.0453 0x2acc  Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc
10:17:14.0869 0x031c  Waiting for KSN requests completion. In queue: 198
10:17:15.0869 0x031c  Waiting for KSN requests completion. In queue: 198
10:17:16.0519 0x0810  Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS
10:17:16.0870 0x031c  Waiting for KSN requests completion. In queue: 152
10:17:17.0130 0x2acc  Object send P2P result: true
10:17:17.0133 0x2acc  Object required for P2P: [ 836C468B119646B5F03FA35EF8BE66DD ] SPUVCbv
10:17:17.0871 0x031c  Waiting for KSN requests completion. In queue: 151
10:17:18.0871 0x031c  Waiting for KSN requests completion. In queue: 151
10:17:19.0169 0x0810  Object send P2P result: true
10:17:19.0190 0x0810  Object required for P2P: [ 4706B28CCEA45C75DD5683117A4557CC ] C:\Program Files (x86)\SunplusIT Integrated Camera\Monitor.exe
10:17:19.0779 0x2acc  Object send P2P result: true
10:17:19.0785 0x2acc  Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain
10:17:19.0872 0x031c  Waiting for KSN requests completion. In queue: 52
10:17:20.0873 0x031c  Waiting for KSN requests completion. In queue: 52
10:17:21.0873 0x031c  Waiting for KSN requests completion. In queue: 52
10:17:21.0888 0x0810  Object send P2P result: true
10:17:21.0889 0x0810  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
10:17:22.0433 0x2acc  Object send P2P result: true
10:17:22.0873 0x031c  Waiting for KSN requests completion. In queue: 3
10:17:23.0873 0x031c  Waiting for KSN requests completion. In queue: 3
10:17:24.0546 0x0810  Object send P2P result: true
10:17:24.0546 0x0810  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
10:17:24.0874 0x031c  Waiting for KSN requests completion. In queue: 2
10:17:25.0875 0x031c  Waiting for KSN requests completion. In queue: 2
10:17:26.0875 0x031c  Waiting for KSN requests completion. In queue: 2
10:17:27.0194 0x0810  Object send P2P result: true
10:17:27.0194 0x0810  Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
10:17:27.0875 0x031c  Waiting for KSN requests completion. In queue: 1
10:17:28.0875 0x031c  Waiting for KSN requests completion. In queue: 1
10:17:29.0843 0x0810  Object send P2P result: true
10:17:29.0899 0x031c  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated )
10:17:29.0900 0x031c  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
10:17:29.0905 0x031c  Win FW state via NFP2: enabled ( trusted )
10:17:32.0492 0x031c  ============================================================
10:17:32.0492 0x031c  Scan finished
10:17:32.0492 0x031c  ============================================================
10:17:32.0512 0x2ac0  Detected object count: 0
10:17:32.0512 0x2ac0  Actual detected object count: 0
         
Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=1524f04b3c297e4daa05f62ca5293f0d
# end=init
# utc_time=2016-03-10 09:22:20
# local_time=2016-03-10 10:22:20 (+0100, Mitteleuropäische Zeit)
# country="Austria"
# osver=6.2.9200 NT 
Update Init
Update Download
Update Finalize
Updated modules version: 28509
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=1524f04b3c297e4daa05f62ca5293f0d
# end=updated
# utc_time=2016-03-10 09:29:13
# local_time=2016-03-10 10:29:13 (+0100, Mitteleuropäische Zeit)
# country="Austria"
# osver=6.2.9200 NT 
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=1524f04b3c297e4daa05f62ca5293f0d
# engine=28509
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2016-03-10 10:26:33
# local_time=2016-03-10 11:26:33 (+0100, Mitteleuropäische Zeit)
# country="Austria"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 4920179 11419736 0 0
# scanned=335243
# found=3
# cleaned=0
# scan_time=3439
sh=25EFC5F0778A51028FF49B40816F17F841C166E7 ft=1 fh=b79ba7112d2a946c vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\AppData\Local\Temp\DMR\dmr_72.exe"
sh=F292BE3EF1E7D4D81F764824FE4D2B23326B3B53 ft=1 fh=69c476e297d7e51e vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe"
sh=EEEDBFBC9F0B6350913DEA236DEAD330582216D3 ft=1 fh=975e7330c41d96ce vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\FloSchwaiger\Downloads\Trojan Remover - CHIP-Installer.exe"
         

Alt 10.03.2016, 20:42   #13
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Standard

Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.



PC ist für mich sauber.
Nur weil Deine Email-Adresse dort steht, heißt es noch lange nicht, dass sie von Deinem Account versendet wurden. Man kann jeden Absender in einer Email fälschen.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Antwort

Themen zu Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.
account, adresse, android, antivirus, avira, business, compu, computer, domain, goolge, hello, kennwörter, mails, message, ordner, phone, please, sofort, versand, verschicke, verschickt, win, woche, wochen, world



Ähnliche Themen: Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner.


  1. GMX Mail Adresse: Rückläufer von E-Mails die ich nicht versendet habe.
    Log-Analyse und Auswertung - 21.02.2016 (34)
  2. Spam-Mails mit meiner Adresse versendet
    Plagegeister aller Art und deren Bekämpfung - 24.10.2015 (19)
  3. Spam Mails an einige meiner Kontakte mit Betreff FW: important message
    Plagegeister aller Art und deren Bekämpfung - 14.10.2015 (2)
  4. E-Mail: Spam-Mails werden von meiner @web.de Adresse aus verschickt
    Plagegeister aller Art und deren Bekämpfung - 21.08.2015 (4)
  5. Spam-Mails werden von meiner web.de Adresse versendet
    Log-Analyse und Auswertung - 19.04.2015 (2)
  6. Win7: Hunderte Mails kommen bei mir an. Mail delivery failed: returing message to sender
    Log-Analyse und Auswertung - 05.01.2015 (11)
  7. Hunderte Mails kommen bei mir an. Mail delivery failed: returning message to senderHa
    Log-Analyse und Auswertung - 07.09.2014 (3)
  8. Viele Mails mit Inhalt: This message was created automatically by mail delivery software. A message that you sent could not be delivered to
    Plagegeister aller Art und deren Bekämpfung - 13.07.2014 (13)
  9. Yahoo Mail Account sendet Spam Mails (von .com bei .de Adresse)
    Plagegeister aller Art und deren Bekämpfung - 23.06.2014 (11)
  10. Windows 7 -- Mail delivery failed obwohl ich keine Mails verschicke
    Log-Analyse und Auswertung - 01.11.2013 (11)
  11. Web.de: Spam-Mails von meiner Adresse versendet
    Plagegeister aller Art und deren Bekämpfung - 15.10.2013 (5)
  12. Spam Mails - Mail delivery failed obwohl ich keine E-Mails versendet habe
    Plagegeister aller Art und deren Bekämpfung - 16.06.2013 (11)
  13. Eigene E-Mail Adresse verschickt Spam Mails
    Log-Analyse und Auswertung - 22.03.2013 (21)
  14. GMX-Account versendet Spam-Mails von meiner Adresse
    Log-Analyse und Auswertung - 26.07.2012 (5)
  15. mails versenden mit meiner adresse als absender?
    Überwachung, Datenschutz und Spam - 26.09.2010 (1)
  16. Es werden Spam Mails von meiner E-Mail Adresse versendet.
    Plagegeister aller Art und deren Bekämpfung - 08.08.2010 (20)
  17. Von meiner KUndenNr. bzw IP Adresse werden Spam Mails verschickt
    Plagegeister aller Art und deren Bekämpfung - 28.08.2007 (10)

Zum Thema Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. - Hallo, schon zum dritten Mal verschicke ich Mails wie: Hello! New message, please read <hxxp://repeeps.com/hands.php?p39l> office@floschwaiger.at Die Mails gehen an meine Kontakte. Sie werden immer ein Mal verschickt, danach war - Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner....
Archiv
Du betrachtest: Verschicke Mails (New Message, bplease read...) mit meiner Mail Adresse, keine gesendeten Mails jedoch im Ordner. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.