Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Kann MPC Cleaner nicht entfernen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 04.07.2016, 21:44   #1
nikof2
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Hallo alle zusammen,

erst einmal Entschuldigung falls dieses Thema schon einmal aufkam und ich zu blöd war es zu finden. Ich habe mich natürlich erst einmal informiert bevor ich hier poste dennoch habe ich Probleme mit der Entfernung dieses Programmes.

Hier die Problematik:

Irgendwie ist das Program " MPC Cleaner " auf meinen Laptop gelangt und ich ich kann es nicht finden und entfernen. Seit dieses Programm auf meinem Laptop ist habe ich andauernd Viren Meldungen usw. Im internet steht viel und alles beginnt mit suche in Programme deinstallieren das Programm und entferne es. Jedoch ist es dort nicht ausfindig zu machen.
Habe alles was vor kurzem installiert wurde und nicht auf meinen Laptop gehört deinstalliert. Danach habe ich AdwCleaner runtergeladen und alle aufgelisteten Programme gelöscht. Darunter war auch MPC Cleaner aufgelistet nur leider wurde es nicht entfernt.

Bin hier mit meinem Latein am Ende und hoffe das mir jemand von euch helfen kann.

Danke

Alt 05.07.2016, 18:40   #2
M-K-D-B
/// TB-Ausbilder
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen






Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.


Bitte beachte folgende Hinweise:
  • Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo. Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!
  • Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
  • Bitte beachten: Download bei filepony.de: So ladet Ihr unsere Tools richtig!
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort als Administrator zu starten!
  • Einige Programme, die wir hier verwenden, können unter Umständen von deinem Antiviren- oder Anti-Malwareprogramm fälschlicherweise als Bedrohung eingestuft werden. Die Sicherheitsprogramme können aufgrund eines bestimmten Programmverhaltens nicht zwischen "gut" oder "böse" unterscheiden und schlagen Alarm. Dabei handelt es sich um Fehlalarme, welche du getrost ignorieren kannst. Gegebenenfalls musst du deine Sicherheitssoftware vor der Ausführung eines Programms deaktivieren, damit unsere Bereinigungsvorgänge nicht beeinträchtigt werden.



Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!




Logdatei von AdwCleaner posten bitte.


Zur ersten Analyse bitte FRST und TDSS-Killer ausführen:



Schritt 1
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)






Schritt 2
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.







Bitte poste mit deiner nächsten Antwort
  • die Logdatei von AdwCleaner mit den Funden,
  • die Logdatei von TDSS-Killer,
  • die beiden neuen Logdateien von FRST.
__________________


Alt 08.07.2016, 16:23   #3
nikof2
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v5.201 - Bericht erstellt am 08/07/2016 um 17:17:00
# Aktualisiert am 30/06/2016 von ToolsLib
# Datenbank : 2016-07-08.1 [Server]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : Niko - DESKTOP-STEMLBH
# Gestartet von : C:\Users\Niko\Downloads\adwcleaner_5.201.exe
# Option : Suchlauf
# Unterstützung : https://toolslib.net/forum

***** [ Dienste ] *****

Dienst gefunden : MPCProtectService
Dienst gefunden : MPCKpt

***** [ Ordner ] *****

Ordner gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
Ordner gefunden : C:\Program Files (x86)\MPC Cleaner
Ordner gefunden : C:\Users\Niko\AppData\Roaming\MCorp
Ordner gefunden : C:\Users\Niko\AppData\Roaming\MCorp

***** [ Dateien ] *****

Datei gefunden : C:\Users\Public\Desktop\MPC Cleaner.lnk
Datei gefunden : C:\Windows\SysNative\drivers\MPCKpt.sys

***** [ DLL ] *****


***** [ WMI ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel gefunden : HKLM\SOFTWARE\MPC
Schlüssel gefunden : HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
Schlüssel gefunden : [x64] HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
Schlüssel gefunden : HKU\.DEFAULT\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
Schlüssel gefunden : HKU\S-1-5-18\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
Daten gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - search.mpc.am
Daten gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - search.mpc.am
Daten gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - search.mpc.am
Daten gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - search.mpc.am
Daten gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - search.mpc.am
Daten gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - search.mpc.am
Daten gefunden : HKU\S-1-5-21-4253662455-609384667-3053430216-1001\Software\Microsoft\Internet Explorer\Main [Start Page] - search.mpc.am
Daten gefunden : HKU\S-1-5-21-4253662455-609384667-3053430216-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - search.mpc.am

***** [ Internetbrowser ] *****

[C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\prefs.js] gefunden : user_pref("network.hxxp.request.max-start-delay", 0);
[C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\user.js] gefunden : user_pref("network.hxxp.request.max-start-delay", 0);

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [11060 Bytes] - [04/07/2016 21:36:54]
C:\AdwCleaner\AdwCleaner[C2].txt - [3088 Bytes] - [04/07/2016 22:04:51]
C:\AdwCleaner\AdwCleaner[S1].txt - [12279 Bytes] - [04/07/2016 21:31:15]
C:\AdwCleaner\AdwCleaner[S2].txt - [2945 Bytes] - [04/07/2016 22:02:17]
C:\AdwCleaner\AdwCleaner[S3].txt - [2927 Bytes] - [08/07/2016 17:17:00]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3000 Bytes] ##########
         
--- --- ---


Code:
ATTFilter
17:19:38.0821 0x1690  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
17:19:52.0738 0x1690  ============================================================
17:19:52.0738 0x1690  Current date / time: 2016/07/08 17:19:52.0738
17:19:52.0738 0x1690  SystemInfo:
17:19:52.0738 0x1690  
17:19:52.0738 0x1690  OS Version: 10.0.10586 ServicePack: 0.0
17:19:52.0740 0x1690  Product type: Workstation
17:19:52.0740 0x1690  ComputerName: DESKTOP-STEMLBH
17:19:52.0740 0x1690  UserName: Niko
17:19:52.0740 0x1690  Windows directory: C:\Windows
17:19:52.0740 0x1690  System windows directory: C:\Windows
17:19:52.0740 0x1690  Running under WOW64
17:19:52.0740 0x1690  Processor architecture: Intel x64
17:19:52.0740 0x1690  Number of processors: 4
17:19:52.0740 0x1690  Page size: 0x1000
17:19:52.0740 0x1690  Boot type: Normal boot
17:19:52.0740 0x1690  ============================================================
17:19:53.0328 0x1690  KLMD registered as C:\Windows\system32\drivers\18605627.sys
17:19:53.0732 0x1690  System UUID: {D5070548-41D8-14DC-8827-6804FA630F8D}
17:19:54.0418 0x1690  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:19:54.0431 0x1690  ============================================================
17:19:54.0431 0x1690  \Device\Harddisk0\DR0:
17:19:54.0431 0x1690  MBR partitions:
17:19:54.0431 0x1690  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
17:19:54.0431 0x1690  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0x7460B800
17:19:54.0431 0x1690  ============================================================
17:19:54.0461 0x1690  C: <-> \Device\Harddisk0\DR0\Partition2
17:19:54.0461 0x1690  ============================================================
17:19:54.0461 0x1690  Initialize success
17:19:54.0461 0x1690  ============================================================
17:19:56.0347 0x0504  ============================================================
17:19:56.0347 0x0504  Scan started
17:19:56.0347 0x0504  Mode: Manual; 
17:19:56.0347 0x0504  ============================================================
17:19:56.0348 0x0504  KSN ping started
17:19:56.0474 0x0504  KSN ping finished: true
17:19:59.0158 0x0504  ================ Scan system memory ========================
17:19:59.0158 0x0504  System memory - ok
17:19:59.0159 0x0504  ================ Scan services =============================
17:19:59.0263 0x0504  0027791467676615mcinstcleanup - ok
17:19:59.0355 0x0504  [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
17:19:59.0359 0x0504  1394ohci - ok
17:19:59.0380 0x0504  [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware           C:\Windows\system32\drivers\3ware.sys
17:19:59.0382 0x0504  3ware - ok
17:19:59.0422 0x0504  [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI            C:\Windows\system32\drivers\ACPI.sys
17:19:59.0431 0x0504  ACPI - ok
17:19:59.0445 0x0504  [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
17:19:59.0447 0x0504  acpiex - ok
17:19:59.0460 0x0504  [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
17:19:59.0461 0x0504  acpipagr - ok
17:19:59.0485 0x0504  [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
17:19:59.0486 0x0504  AcpiPmi - ok
17:19:59.0496 0x0504  [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime        C:\Windows\System32\drivers\acpitime.sys
17:19:59.0497 0x0504  acpitime - ok
17:19:59.0624 0x0504  [ E324D38B6CCF843ED4F6D521908AEE5B, D34DAF5AB7A3C2751C0C3BD3C21E52909E6D182DD202BD3C0B4981535320E64A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:19:59.0628 0x0504  AdobeFlashPlayerUpdateSvc - ok
17:19:59.0670 0x0504  [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
17:19:59.0689 0x0504  ADP80XX - ok
17:19:59.0790 0x0504  [ 91C596BE98F65830352B466C19705533, 4FB4614839E405F127B7E9B801CF9E6166EBCBAB62506F2153CEAFB07CA6BB8D ] AdvancedSystemCareService9 C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
17:19:59.0798 0x0504  AdvancedSystemCareService9 - ok
17:19:59.0834 0x0504  [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD             C:\Windows\system32\drivers\afd.sys
17:19:59.0842 0x0504  AFD - ok
17:19:59.0860 0x0504  [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440          C:\Windows\system32\drivers\agp440.sys
17:19:59.0861 0x0504  agp440 - ok
17:19:59.0904 0x0504  [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
17:19:59.0907 0x0504  ahcache - ok
17:19:59.0936 0x0504  [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter        C:\Windows\System32\AJRouter.dll
17:19:59.0937 0x0504  AJRouter - ok
17:19:59.0971 0x0504  [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG             C:\Windows\System32\alg.exe
17:19:59.0972 0x0504  ALG - ok
17:20:00.0007 0x0504  [ FFA3C9C95FF0486529B644ADC8E720DB, 3C07DF55EE04AC595306BD7327C8F5CA4223E66F28E549EBC4DC7A92ACF200E7 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
17:20:00.0011 0x0504  AMD External Events Utility - ok
17:20:00.0026 0x0504  [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
17:20:00.0028 0x0504  AmdK8 - ok
17:20:00.0031 0x0504  amdkmdag - ok
17:20:00.0075 0x0504  [ 59A5795A131800D30E8F682099EBEEF5, 85C8DE3B781C7B8E0EE305B8F89E84D9BD9960C482F5CD6019CCC6FA49E43CC6 ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
17:20:00.0087 0x0504  amdkmdap - ok
17:20:00.0101 0x0504  [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
17:20:00.0103 0x0504  AmdPPM - ok
17:20:00.0116 0x0504  [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
17:20:00.0117 0x0504  amdsata - ok
17:20:00.0148 0x0504  [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
17:20:00.0152 0x0504  amdsbs - ok
17:20:00.0168 0x0504  [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
17:20:00.0169 0x0504  amdxata - ok
17:20:00.0276 0x0504  [ 157DA3885AA4F03C80C10DAEB0949CAA, 69EA1C9F904FBDFE904A3BC52CB0E188AF18A93EA87A119E5E6234C6F5D4742E ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
17:20:00.0292 0x0504  AntiVirMailService - ok
17:20:00.0344 0x0504  [ BD65021AB0EC790AECC503C394E61BA4, 51AD9C6F1192A3604902AE4F3B4B791DF1D58EA0B39B12AE4FA38F59E02F6D68 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
17:20:00.0353 0x0504  AntiVirSchedulerService - ok
17:20:00.0381 0x0504  [ BD65021AB0EC790AECC503C394E61BA4, 51AD9C6F1192A3604902AE4F3B4B791DF1D58EA0B39B12AE4FA38F59E02F6D68 ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
17:20:00.0390 0x0504  AntiVirService - ok
17:20:00.0440 0x0504  [ CF586007CB1F9189CDF07D0D5A02C448, 7BA6E27A835A0851C12A7A115C24665631CC77D857DAF32D24BF2D2AF676FE30 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
17:20:00.0464 0x0504  AntiVirWebService - ok
17:20:00.0498 0x0504  [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID           C:\Windows\system32\drivers\appid.sys
17:20:00.0500 0x0504  AppID - ok
17:20:00.0520 0x0504  [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
17:20:00.0521 0x0504  AppIDSvc - ok
17:20:00.0538 0x0504  [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo         C:\Windows\System32\appinfo.dll
17:20:00.0539 0x0504  Appinfo - ok
17:20:00.0557 0x0504  [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
17:20:00.0566 0x0504  AppReadiness - ok
17:20:00.0639 0x0504  [ 1CF69EF4E2844F9D297F309CF80122CB, 577428E4A364212AA5E650059C99139B8F9F4952DF228D6150D6B93E7D06AF61 ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
17:20:00.0679 0x0504  AppXSvc - ok
17:20:00.0692 0x0504  [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas          C:\Windows\system32\drivers\arcsas.sys
17:20:00.0694 0x0504  arcsas - ok
17:20:00.0703 0x0504  [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac        C:\Windows\System32\drivers\asyncmac.sys
17:20:00.0703 0x0504  AsyncMac - ok
17:20:00.0722 0x0504  [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi           C:\Windows\system32\drivers\atapi.sys
17:20:00.0723 0x0504  atapi - ok
17:20:00.0768 0x0504  [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
17:20:00.0773 0x0504  AudioEndpointBuilder - ok
17:20:00.0815 0x0504  [ 2A2C0983B6FE62F02E7183335B1F5C20, 07845269FE72894D31D3FC927EECE26333AE9A2149A995DA4AE007276B05C647 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
17:20:00.0833 0x0504  Audiosrv - ok
17:20:00.0851 0x0504  [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
17:20:00.0854 0x0504  avgntflt - ok
17:20:00.0887 0x0504  [ 8EF22CC03EFA1CB6810003C6A3B287D3, 352FE3194713D86BBD900A74AF033D5FE96A71389CC63DFC4821B43A55837206 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
17:20:00.0890 0x0504  avipbb - ok
17:20:00.0980 0x0504  [ 9C57AD1165D9F4866EBA6C18E91A8A14, E75288B3BED90CABAEE01383F8CB68719B67158FEB0FE036668693D237F275CF ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
17:20:00.0984 0x0504  Avira.ServiceHost - ok
17:20:00.0999 0x0504  [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
17:20:01.0000 0x0504  avkmgr - ok
17:20:01.0004 0x0504  [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
17:20:01.0006 0x0504  avnetflt - ok
17:20:01.0030 0x0504  [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
17:20:01.0032 0x0504  AxInstSV - ok
17:20:01.0071 0x0504  [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
17:20:01.0079 0x0504  b06bdrv - ok
17:20:01.0089 0x0504  [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
17:20:01.0090 0x0504  BasicDisplay - ok
17:20:01.0102 0x0504  [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
17:20:01.0103 0x0504  BasicRender - ok
17:20:01.0123 0x0504  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\Windows\System32\drivers\bcmfn.sys
17:20:01.0126 0x0504  bcmfn - ok
17:20:01.0129 0x0504  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
17:20:01.0133 0x0504  bcmfn2 - ok
17:20:01.0178 0x0504  [ F374C27099807E99A156953F8416D34A, D267B8CD837290F9FC6B4FFD2DB8F54867D808FB155698FC7713BCAB3AE475B5 ] BDESVC          C:\Windows\System32\bdesvc.dll
17:20:01.0183 0x0504  BDESVC - ok
17:20:01.0207 0x0504  [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep            C:\Windows\system32\drivers\Beep.sys
17:20:01.0208 0x0504  Beep - ok
17:20:01.0246 0x0504  [ 37F5E2385CB4D10AB42186974B9C241A, D38FA2B8CE19AC32056060F04B04D031F1621C07528DEDCCD5A8C01AB0A35995 ] BFE             C:\Windows\System32\bfe.dll
17:20:01.0259 0x0504  BFE - ok
17:20:01.0306 0x0504  [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS            C:\Windows\System32\qmgr.dll
17:20:01.0326 0x0504  BITS - ok
17:20:01.0358 0x0504  [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
17:20:01.0360 0x0504  bowser - ok
17:20:01.0397 0x0504  [ 4F2621E187382D22045D0BC65B23858E, E6AB3B1EB13446128BA69A4D0B00BCA36625BB656F0056D3D43F3A252F6F09AC ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
17:20:01.0406 0x0504  BrokerInfrastructure - ok
17:20:01.0431 0x0504  [ A617BE5E429A035A1CA8217C1B16F0BB, 197EE6C6EB22FF8A626540886F5A2163CC4CB177504C5423856F54BF01EB0FF1 ] Browser         C:\Windows\System32\browser.dll
17:20:01.0434 0x0504  Browser - ok
17:20:01.0462 0x0504  [ FF4E89D75628B3780716CB6C87AC1CE2, 797713EA165810FADBB5CACA855B4A1E76601641C256C3A3D9C673460349C08A ] BthA2DP         C:\Windows\system32\drivers\BthA2DP.sys
17:20:01.0465 0x0504  BthA2DP - ok
17:20:01.0473 0x0504  [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
17:20:01.0474 0x0504  BthAvrcpTg - ok
17:20:01.0505 0x0504  [ 3C7DE7B7CAD633CD2DA07710BC17361C, 50FFC48E02E132297AD6FF7FC1B7278EB39ABF0BCFAC65D58FD1A8BB01B016F3 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
17:20:01.0507 0x0504  BthEnum - ok
17:20:01.0510 0x0504  [ 0B10EFF40BBAF466D729B105CA51AAFC, 4FF1AECA2284622E8E1442CA6BF91AF4C10EAE89B111ADC4A7DD116517975BF8 ] BthHFAud        C:\Windows\system32\DRIVERS\BthHfAud.sys
17:20:01.0511 0x0504  BthHFAud - ok
17:20:01.0516 0x0504  [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
17:20:01.0517 0x0504  BthHFEnum - ok
17:20:01.0520 0x0504  [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
17:20:01.0521 0x0504  bthhfhid - ok
17:20:01.0545 0x0504  [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
17:20:01.0550 0x0504  BthHFSrv - ok
17:20:01.0578 0x0504  [ 3B3BF88BB54CB9A18DE1EF07292B5A3D, 7B9C1E7E07435B976E4AE89425F10541E1DEB153172A375CBC2D03A4D7B7F3D2 ] BthLEEnum       C:\Windows\System32\drivers\BthLEEnum.sys
17:20:01.0582 0x0504  BthLEEnum - ok
17:20:01.0597 0x0504  [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
17:20:01.0599 0x0504  BTHMODEM - ok
17:20:01.0614 0x0504  [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan          C:\Windows\System32\drivers\bthpan.sys
17:20:01.0616 0x0504  BthPan - ok
17:20:01.0654 0x0504  [ FFB773E4AA55E4F5FBBB084B41D7A86F, 911ED632DC4A234410D4A87565F55D27BFF2A050669031C868A3F5C6220DCA5A ] BTHPORT         C:\Windows\System32\drivers\BTHport.sys
17:20:01.0671 0x0504  BTHPORT - ok
17:20:01.0691 0x0504  [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv         C:\Windows\system32\bthserv.dll
17:20:01.0692 0x0504  bthserv - ok
17:20:01.0711 0x0504  [ BE265ABFB467BBAC8C73A55AD94F4216, 21186F398D700089397EAE4AC1B1197C7EB592AE0CC5FF5972000957472393CC ] BTHUSB          C:\Windows\System32\drivers\BTHUSB.sys
17:20:01.0713 0x0504  BTHUSB - ok
17:20:01.0724 0x0504  [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\Windows\System32\drivers\buttonconverter.sys
17:20:01.0725 0x0504  buttonconverter - ok
17:20:01.0752 0x0504  [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg          C:\Windows\System32\drivers\capimg.sys
17:20:01.0754 0x0504  CapImg - ok
17:20:01.0772 0x0504  [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
17:20:01.0773 0x0504  cdfs - ok
17:20:01.0794 0x0504  [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc          C:\Windows\System32\CDPSvc.dll
17:20:01.0798 0x0504  CDPSvc - ok
17:20:01.0827 0x0504  [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
17:20:01.0829 0x0504  cdrom - ok
17:20:01.0847 0x0504  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc     C:\Windows\System32\certprop.dll
17:20:01.0850 0x0504  CertPropSvc - ok
17:20:01.0876 0x0504  [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass        C:\Windows\System32\drivers\circlass.sys
17:20:01.0877 0x0504  circlass - ok
17:20:01.0887 0x0504  [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
17:20:01.0892 0x0504  CLFS - ok
17:20:01.0924 0x0504  [ F7526C133AC265F283012E9CD751F873, 6AABDD92FD880F49F63C1CC478C3D8291AF670802CEC58B32730E7675D858D88 ] ClipSVC         C:\Windows\System32\ClipSVC.dll
17:20:01.0934 0x0504  ClipSVC - ok
17:20:01.0949 0x0504  [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
17:20:01.0950 0x0504  CmBatt - ok
17:20:01.0994 0x0504  [ 3F7C80D9F16B94367646CBF8B8C052F4, 3F33980348E92876CD2A367C31E4B959C92BA6572266B1C75CB0C062095DFCB7 ] CNG             C:\Windows\system32\Drivers\cng.sys
17:20:02.0004 0x0504  CNG - ok
17:20:02.0035 0x0504  [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist     C:\Windows\system32\DRIVERS\cnghwassist.sys
17:20:02.0036 0x0504  cnghwassist - ok
17:20:02.0078 0x0504  [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus    C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys
17:20:02.0079 0x0504  CompositeBus - ok
17:20:02.0081 0x0504  COMSysApp - ok
17:20:02.0091 0x0504  [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv          C:\Windows\system32\drivers\condrv.sys
17:20:02.0092 0x0504  condrv - ok
17:20:02.0199 0x0504  [ 86BE19C6A177AEB93302EA5C4FBE2D11, 5404AB84D270549B1A46574EBDC857525F71B117BE3BA0098FA0A696E56D5C39 ] CoreMessagingRegistrar C:\Windows\system32\coremessaging.dll
17:20:02.0211 0x0504  CoreMessagingRegistrar - ok
17:20:02.0291 0x0504  [ 9BA8CD9E26EF231CBE50EC2D4EBD2653, 7C9845ECFD6F7FCB2EFFA151794B44E3FC4D849A635B8551DCD5D5442B23F48A ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
17:20:02.0296 0x0504  cphs - ok
17:20:02.0324 0x0504  [ 9E79A2208A9ED205A7383CBC92C28053, 2E6599DF30DF19BD7BE6FEF1B21FED7F349A3F2306CC5CFDB767ABA7283E8A55 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
17:20:02.0325 0x0504  CryptSvc - ok
17:20:02.0335 0x0504  [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam             C:\Windows\system32\drivers\dam.sys
17:20:02.0337 0x0504  dam - ok
17:20:02.0381 0x0504  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch      C:\Windows\system32\rpcss.dll
17:20:02.0396 0x0504  DcomLaunch - ok
17:20:02.0427 0x0504  [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc          C:\Windows\system32\dcpsvc.dll
17:20:02.0431 0x0504  DcpSvc - ok
17:20:02.0465 0x0504  [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc       C:\Windows\System32\defragsvc.dll
17:20:02.0474 0x0504  defragsvc - ok
17:20:02.0504 0x0504  [ 2F5EB7375FC3D9DBB81BDFFE2BCCB9D0, 6D2C01CB29EA220C265D6B24C791D97482D05F1C9FF4C9816FAA3F3E05B42882 ] DellRbtn        C:\Windows\System32\drivers\DellRbtn.sys
17:20:02.0504 0x0504  DellRbtn - ok
17:20:02.0523 0x0504  [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\Windows\system32\das.dll
17:20:02.0531 0x0504  DeviceAssociationService - ok
17:20:02.0552 0x0504  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
17:20:02.0555 0x0504  DeviceInstall - ok
17:20:02.0580 0x0504  [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker  C:\Windows\system32\DevQueryBroker.dll
17:20:02.0581 0x0504  DevQueryBroker - ok
17:20:02.0607 0x0504  [ 935823F79CBEDB91637B63D37E3A5A36, BE9A46F1CA631B9252C71758901D55456DC3C143053003D9FA7D67811A1E5026 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
17:20:02.0610 0x0504  Dfsc - ok
17:20:02.0633 0x0504  [ D722BC26F7431A4DA9A183E56CA9FEE3, 86AB717431CB3DDAF6213A1CFE8DF3684080BAAD569731A90AA1AA198E97506D ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
17:20:02.0635 0x0504  dg_ssudbus - ok
17:20:02.0671 0x0504  [ D461D2BECEFA661291EB1B748A8D2CCB, 7275859FCDE58DE6C0C683AFDAD910EB4602336CC724EEE42495A8839213469D ] Dhcp            C:\Windows\system32\dhcpcore.dll
17:20:02.0677 0x0504  Dhcp - ok
17:20:02.0710 0x0504  [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
17:20:02.0711 0x0504  diagnosticshub.standardcollector.service - ok
17:20:02.0770 0x0504  [ 15D174719872A30F2FDD6B5B1B8BA5D9, B0E6FF6FC47B731C204F110D4B768231906B144B31F602ECE8EAC24D70BA880D ] DiagTrack       C:\Windows\system32\diagtrack.dll
17:20:02.0795 0x0504  DiagTrack - ok
17:20:02.0827 0x0504  [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk            C:\Windows\system32\drivers\disk.sys
17:20:02.0828 0x0504  disk - ok
17:20:02.0865 0x0504  [ E32F15E26724F3BB6423FB29FF3E2A8F, E8CF9829D2A74F4423424F8D169E726B88F50734F0B1ADC735691C37C9F32DAA ] DmEnrollmentSvc C:\Windows\system32\Windows.Internal.Management.dll
17:20:02.0871 0x0504  DmEnrollmentSvc - ok
17:20:02.0885 0x0504  [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
17:20:02.0886 0x0504  dmvsc - ok
17:20:02.0914 0x0504  [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\Windows\system32\dmwappushsvc.dll
17:20:02.0915 0x0504  dmwappushservice - ok
17:20:02.0951 0x0504  [ 5839A317C25F70979433E0905DFABB1B, 7F1CD50C77A33A10259D8A208A355BE7ECAFEA69F810AD908EF8878A792741AF ] Dnscache        C:\Windows\System32\dnsrslvr.dll
17:20:02.0956 0x0504  Dnscache - ok
17:20:02.0965 0x0504  [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc         C:\Windows\System32\dot3svc.dll
17:20:02.0969 0x0504  dot3svc - ok
17:20:02.0983 0x0504  [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS             C:\Windows\system32\dps.dll
17:20:02.0986 0x0504  DPS - ok
17:20:03.0000 0x0504  [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud         C:\Windows\System32\drivers\drmkaud.sys
17:20:03.0001 0x0504  drmkaud - ok
17:20:03.0022 0x0504  [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
17:20:03.0025 0x0504  DsmSvc - ok
17:20:03.0058 0x0504  [ FBC8C56814642A7CA88ACBCA8DD1121F, 108690704A359991C3D6577477E232F5F2F46B36DF6B4B0738A893EF05D7D4EB ] DsSvc           C:\Windows\System32\DsSvc.dll
17:20:03.0061 0x0504  DsSvc - ok
17:20:03.0123 0x0504  [ 8B83335B6A86F39785FC7C9DE5F5B29F, 2B9D6BB75E0AB6408C685EBB2CEC6291D7B1F41486E30CAB1EC132C83455CE3D ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
17:20:03.0153 0x0504  DXGKrnl - ok
17:20:03.0187 0x0504  [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost         C:\Windows\System32\eapsvc.dll
17:20:03.0190 0x0504  Eaphost - ok
17:20:03.0296 0x0504  [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv           C:\Windows\system32\drivers\evbda.sys
17:20:03.0351 0x0504  ebdrv - ok
17:20:03.0379 0x0504  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS             C:\Windows\System32\lsass.exe
17:20:03.0381 0x0504  EFS - ok
17:20:03.0394 0x0504  [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
17:20:03.0395 0x0504  EhStorClass - ok
17:20:03.0411 0x0504  [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
17:20:03.0413 0x0504  EhStorTcgDrv - ok
17:20:03.0440 0x0504  [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode    C:\Windows\System32\embeddedmodesvc.dll
17:20:03.0442 0x0504  embeddedmode - ok
17:20:03.0465 0x0504  [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc       C:\Windows\system32\EnterpriseAppMgmtSvc.dll
17:20:03.0471 0x0504  EntAppSvc - ok
17:20:03.0483 0x0504  [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev          C:\Windows\System32\drivers\errdev.sys
17:20:03.0484 0x0504  ErrDev - ok
17:20:03.0519 0x0504  [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem     C:\Windows\system32\es.dll
17:20:03.0528 0x0504  EventSystem - ok
17:20:03.0547 0x0504  [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat           C:\Windows\system32\drivers\exfat.sys
17:20:03.0553 0x0504  exfat - ok
17:20:03.0601 0x0504  [ C330883C06E2D4CE4F6982F048265D37, 26044DE176056B7F5BF2A50A659243CFD7F25CFEE035B3A3C3165B3699872926 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
17:20:03.0605 0x0504  fastfat - ok
17:20:03.0641 0x0504  [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax             C:\Windows\system32\fxssvc.exe
17:20:03.0652 0x0504  Fax - ok
17:20:03.0677 0x0504  [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc             C:\Windows\System32\drivers\fdc.sys
17:20:03.0678 0x0504  fdc - ok
17:20:03.0685 0x0504  [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost         C:\Windows\system32\fdPHost.dll
17:20:03.0686 0x0504  fdPHost - ok
17:20:03.0698 0x0504  [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub        C:\Windows\system32\fdrespub.dll
17:20:03.0699 0x0504  FDResPub - ok
17:20:03.0717 0x0504  [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc           C:\Windows\system32\fhsvc.dll
17:20:03.0719 0x0504  fhsvc - ok
17:20:03.0735 0x0504  [ 8F2523C9D8F1448FF2156452AF60FA00, 1D39CA54F5F1E62385D9EC041F9445BDDCB63740859B9418AE904FDF3D8388ED ] FileCrypt       C:\Windows\system32\drivers\filecrypt.sys
17:20:03.0736 0x0504  FileCrypt - ok
17:20:03.0750 0x0504  [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
17:20:03.0752 0x0504  FileInfo - ok
17:20:03.0766 0x0504  [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
17:20:03.0767 0x0504  Filetrace - ok
17:20:03.0874 0x0504  [ 54363CF8FE538DAC8E1BCF4AE020A265, C5FD67CB75CBF5B44C8189EA1B4630A940FF8AB73B39608B26292D2FF86192F0 ] FirefoxU        C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
17:20:03.0881 0x0504  FirefoxU - ok
17:20:03.0899 0x0504  [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
17:20:03.0900 0x0504  flpydisk - ok
17:20:03.0914 0x0504  [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
17:20:03.0919 0x0504  FltMgr - ok
17:20:03.0974 0x0504  [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache       C:\Windows\system32\FntCache.dll
17:20:04.0001 0x0504  FontCache - ok
17:20:04.0034 0x0504  [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
17:20:04.0036 0x0504  FsDepends - ok
17:20:04.0046 0x0504  [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
17:20:04.0047 0x0504  Fs_Rec - ok
17:20:04.0085 0x0504  [ 50DFE05C698E9B0A63D95E3D669A105C, 3A7D5AE4A01B90C2ECF22AD2783A84C2329EAB9BACFA5237A7DCC3DC5995A864 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
17:20:04.0094 0x0504  fvevol - ok
17:20:04.0107 0x0504  [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
17:20:04.0109 0x0504  gagp30kx - ok
17:20:04.0133 0x0504  [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
17:20:04.0134 0x0504  gencounter - ok
17:20:04.0145 0x0504  [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn    C:\Windows\System32\drivers\genericusbfn.sys
17:20:04.0146 0x0504  genericusbfn - ok
17:20:04.0172 0x0504  [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
17:20:04.0174 0x0504  GPIOClx0101 - ok
17:20:04.0215 0x0504  [ B89C353AFC8F56D961D07FF1FE7B4BCD, C4491A1E33E0151AF3D7589769D4DCFABC68518A22393A7584FB573B47643B2F ] gpsvc           C:\Windows\System32\gpsvc.dll
17:20:04.0238 0x0504  gpsvc - ok
17:20:04.0276 0x0504  [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv    C:\Windows\system32\drivers\gpuenergydrv.sys
17:20:04.0277 0x0504  GpuEnergyDrv - ok
17:20:04.0303 0x0504  [ 0F93EBE9071A6BB1548BF0F816EEA24B, 79A99544C00F59996980D299BFACA0463D86158BFA51C8045CE4FF4951779A44 ] HdAudAddService C:\Windows\system32\DRIVERS\HdAudio.sys
17:20:04.0309 0x0504  HdAudAddService - ok
17:20:04.0319 0x0504  [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
17:20:04.0320 0x0504  HDAudBus - ok
17:20:04.0327 0x0504  [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
17:20:04.0328 0x0504  HidBatt - ok
17:20:04.0345 0x0504  [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
17:20:04.0347 0x0504  HidBth - ok
17:20:04.0351 0x0504  [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
17:20:04.0352 0x0504  hidi2c - ok
17:20:04.0367 0x0504  [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt    C:\Windows\System32\drivers\hidinterrupt.sys
17:20:04.0368 0x0504  hidinterrupt - ok
17:20:04.0377 0x0504  [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr           C:\Windows\System32\drivers\hidir.sys
17:20:04.0378 0x0504  HidIr - ok
17:20:04.0406 0x0504  [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv         C:\Windows\system32\hidserv.dll
17:20:04.0407 0x0504  hidserv - ok
17:20:04.0418 0x0504  [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
17:20:04.0419 0x0504  HidUsb - ok
17:20:04.0450 0x0504  [ 7CEC266216126BC9A0E1072E1A7E5702, 6B2C0768C8F2590E65B9520D266C07D1A9D89B9E185CC359B0453F399836759F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:20:04.0454 0x0504  HomeGroupListener - ok
17:20:04.0486 0x0504  [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:20:04.0495 0x0504  HomeGroupProvider - ok
17:20:04.0506 0x0504  [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
17:20:04.0508 0x0504  HpSAMD - ok
17:20:04.0552 0x0504  [ 63C3F74DC398A1C1A77E39DFB9C312CA, 283A13899838B4313BFBC406E832042696C549640A1AB11E23C0B9E499289836 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
17:20:04.0568 0x0504  HTTP - ok
17:20:04.0638 0x0504  [ EF558A02D734A1403583E95CCEEC2487, F0D052DAF48A62E4A90D067BFCB5EE9563804DE68D0EA82E0E11C8D16AD19D29 ] HWiNFO32        C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS
17:20:04.0639 0x0504  HWiNFO32 - ok
17:20:04.0654 0x0504  [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
17:20:04.0655 0x0504  hwpolicy - ok
17:20:04.0665 0x0504  [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
17:20:04.0666 0x0504  hyperkbd - ok
17:20:04.0675 0x0504  [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
17:20:04.0676 0x0504  i8042prt - ok
17:20:04.0687 0x0504  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\Windows\System32\drivers\iai2c.sys
17:20:04.0689 0x0504  iai2c - ok
17:20:04.0695 0x0504  [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C    C:\Windows\System32\drivers\iaLPSS2i_I2C.sys
17:20:04.0698 0x0504  iaLPSS2i_I2C - ok
17:20:04.0706 0x0504  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
17:20:04.0707 0x0504  iaLPSSi_GPIO - ok
17:20:04.0721 0x0504  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
17:20:04.0723 0x0504  iaLPSSi_I2C - ok
17:20:04.0750 0x0504  [ 8FD3487A6AE70321404C34AC278840D8, 2BD7720A7D907F5D036982D4DA32128D427CE5110544F51F003C7693A51A29EE ] iaLPSS_GPIO     C:\Windows\System32\drivers\iaLPSS_GPIO.sys
17:20:04.0751 0x0504  iaLPSS_GPIO - ok
17:20:04.0807 0x0504  [ 0609694A9C4D6C71319732FA82C6E5C5, 5507D20AB9C86B11564C953C6F535976A0D201295C642EA0CABF435DAD908251 ] iaStorA         C:\Windows\system32\drivers\iaStorA.sys
17:20:04.0826 0x0504  iaStorA - ok
17:20:04.0858 0x0504  [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
17:20:04.0869 0x0504  iaStorAV - ok
17:20:04.0904 0x0504  [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
17:20:04.0911 0x0504  iaStorV - ok
17:20:04.0921 0x0504  [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus           C:\Windows\System32\drivers\ibbus.sys
17:20:04.0928 0x0504  ibbus - ok
17:20:04.0956 0x0504  [ CD00FEA9F7B6C92560F41982D2509736, C284DB0E06728B048F3EDEA591E1964F594C2E0C4F2A029FB3BDDE7B9D006120 ] ibtsiva         C:\Windows\system32\ibtsiva.exe
17:20:04.0958 0x0504  ibtsiva - ok
17:20:04.0979 0x0504  [ ACCAF83867D2F6C9715F0D83AFE10207, E2744BB63C980CCD059B10F7880FBA6EA95F39BD4FACCF4D02B269EBC255B2C9 ] ibtusb          C:\Windows\system32\DRIVERS\ibtusb.sys
17:20:04.0984 0x0504  ibtusb - ok
17:20:05.0007 0x0504  [ 57C88C15CEC97318F580D7F4327AAA46, FD3AD83576804DA819F48E3E198FE470420E730F6118AD0E719A91E67C80D3FE ] icssvc          C:\Windows\System32\tetheringservice.dll
17:20:05.0010 0x0504  icssvc - ok
17:20:05.0014 0x0504  IEEtwCollectorService - ok
17:20:05.0173 0x0504  [ 300F95155C00B79E47A2001085CCF1D3, 16ECD7FFC3644B68DF06A75BAA2365312814BDC52E546B79ADE96E5297DF0ED9 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
17:20:05.0272 0x0504  igfx - ok
17:20:05.0303 0x0504  [ A2220F543C7B08464C084665483CC554, ADC836CF5E2E692C06EA40DFD33343C5D4C8D4B594D818F6AA9B40D62E337037 ] igfxCUIService2.0.0.0 C:\Windows\system32\igfxCUIService.exe
17:20:05.0308 0x0504  igfxCUIService2.0.0.0 - ok
17:20:05.0342 0x0504  [ 95A03F67830FDCB950E70261128D540D, D052CB703500E2871CF51E015E444F2A99FA9A7579AC422104F0E411F6107BD0 ] IKEEXT          C:\Windows\System32\ikeext.dll
17:20:05.0359 0x0504  IKEEXT - ok
17:20:05.0446 0x0504  [ 8D5AA86E36CAA878D71F6D6FD7ED718B, 71240DA6DD67639EDCEFF13FF33A3483AD8FEF03EAA7CDB473DEF6E0C4D3871C ] InstallerService C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe
17:20:05.0448 0x0504  InstallerService - ok
17:20:05.0577 0x0504  [ 5455252E556F4BBDA7874F5A9DF88BBD, C81436052E5514FC7616939BEB2C8C15185B9A372C52F0E32EDDB43A5AB22E7D ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
17:20:05.0657 0x0504  IntcAzAudAddService - ok
17:20:05.0691 0x0504  [ 75F82406DF455D812101146EE4EB6FCD, 771D24DFF69097C1181C46D635A6CF2FDBE3EBC81BA2C156F571875C23F11676 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
17:20:05.0698 0x0504  IntcDAud - ok
17:20:05.0824 0x0504  [ D578C6D8C13E8107394A7CE89A433B6D, 5742000801697BEF0367896D328E14F13FD21E76D448E5551FDAAA1428E07EF3 ] IntelBCAsvc     C:\Program Files\Intel\BCA\pabeSvc64.exe
17:20:05.0872 0x0504  IntelBCAsvc - ok
17:20:05.0888 0x0504  [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide        C:\Windows\system32\drivers\intelide.sys
17:20:05.0888 0x0504  intelide - ok
17:20:05.0914 0x0504  [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep        C:\Windows\system32\drivers\intelpep.sys
17:20:05.0915 0x0504  intelpep - ok
17:20:05.0933 0x0504  [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
17:20:05.0935 0x0504  intelppm - ok
17:20:05.0962 0x0504  [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos           C:\Windows\system32\drivers\ioqos.sys
17:20:05.0963 0x0504  IoQos - ok
17:20:05.0982 0x0504  [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:20:05.0984 0x0504  IpFilterDriver - ok
17:20:06.0026 0x0504  [ 5AAB28A6AC2AAC9F66D4EAB6695D0474, BDAB1D04989788EA945C7FE0DE962F0FEC672D9703C271F8469822A91D7462B9 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
17:20:06.0042 0x0504  iphlpsvc - ok
17:20:06.0061 0x0504  [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
17:20:06.0063 0x0504  IPMIDRV - ok
17:20:06.0078 0x0504  [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
17:20:06.0081 0x0504  IPNAT - ok
17:20:06.0087 0x0504  [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM          C:\Windows\system32\drivers\irenum.sys
17:20:06.0088 0x0504  IRENUM - ok
17:20:06.0103 0x0504  [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
17:20:06.0104 0x0504  isapnp - ok
17:20:06.0126 0x0504  [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
17:20:06.0131 0x0504  iScsiPrt - ok
17:20:06.0148 0x0504  [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
17:20:06.0149 0x0504  kbdclass - ok
17:20:06.0160 0x0504  [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
17:20:06.0161 0x0504  kbdhid - ok
17:20:06.0177 0x0504  [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic           C:\Windows\System32\drivers\kdnic.sys
17:20:06.0178 0x0504  kdnic - ok
17:20:06.0196 0x0504  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso          C:\Windows\system32\lsass.exe
17:20:06.0198 0x0504  KeyIso - ok
17:20:06.0206 0x0504  [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
17:20:06.0209 0x0504  KSecDD - ok
17:20:06.0235 0x0504  [ 425CFD45BDF5B9F8B790BEB20E0A8721, 0AB57F9C450A53308B41C8C884E92AACF643A74056F14E3D6C49BE2C61614879 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
17:20:06.0237 0x0504  KSecPkg - ok
17:20:06.0254 0x0504  [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
17:20:06.0255 0x0504  ksthunk - ok
17:20:06.0283 0x0504  [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm           C:\Windows\system32\msdtckrm.dll
17:20:06.0290 0x0504  KtmRm - ok
17:20:06.0327 0x0504  [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer    C:\Windows\system32\srvsvc.dll
17:20:06.0334 0x0504  LanmanServer - ok
17:20:06.0373 0x0504  [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:20:06.0377 0x0504  LanmanWorkstation - ok
17:20:06.0410 0x0504  [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc           C:\Windows\System32\lfsvc.dll
17:20:06.0411 0x0504  lfsvc - ok
17:20:06.0415 0x0504  [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager  C:\Windows\system32\LicenseManagerSvc.dll
17:20:06.0416 0x0504  LicenseManager - ok
17:20:06.0557 0x0504  [ 2D2DE301547146A79F6412075A66D731, 3F9F6F3D150C607DBDC16E6053E1DCF6D26E0141987DD6E4D826FA2A259113C2 ] LiveUpdateSvc   C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
17:20:06.0596 0x0504  LiveUpdateSvc - ok
17:20:06.0619 0x0504  [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio          C:\Windows\system32\drivers\lltdio.sys
17:20:06.0620 0x0504  lltdio - ok
17:20:06.0641 0x0504  [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
17:20:06.0647 0x0504  lltdsvc - ok
17:20:06.0671 0x0504  [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts         C:\Windows\System32\lmhsvc.dll
17:20:06.0672 0x0504  lmhosts - ok
17:20:06.0705 0x0504  [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
17:20:06.0707 0x0504  LSI_SAS - ok
17:20:06.0722 0x0504  [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i       C:\Windows\system32\drivers\lsi_sas2i.sys
17:20:06.0724 0x0504  LSI_SAS2i - ok
17:20:06.0733 0x0504  [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i       C:\Windows\system32\drivers\lsi_sas3i.sys
17:20:06.0735 0x0504  LSI_SAS3i - ok
17:20:06.0739 0x0504  [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
17:20:06.0740 0x0504  LSI_SSS - ok
17:20:06.0774 0x0504  [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM             C:\Windows\System32\lsm.dll
17:20:06.0786 0x0504  LSM - ok
17:20:06.0819 0x0504  [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv           C:\Windows\system32\drivers\luafv.sys
17:20:06.0821 0x0504  luafv - ok
17:20:06.0841 0x0504  [ FA2CDF42B3E9F53B12E506BA48BE16AA, 2E3757F21C0F6B5EBBC2F86415C1E858673B94DC4830C675567F3DCC2CD35BE5 ] MapsBroker      C:\Windows\System32\moshost.dll
17:20:06.0844 0x0504  MapsBroker - ok
17:20:06.0939 0x0504  [ 6E851C84789F69EFE8EBCBCEF163D8C2, 510747F0FA90D81E687B29FE194F783B12F60BBED9EBA90E369A65F06A6DD2A5 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\3.11.266\McCHSvc.exe
17:20:06.0943 0x0504  McComponentHostService - ok
17:20:06.0964 0x0504  [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas         C:\Windows\system32\drivers\megasas.sys
17:20:06.0965 0x0504  megasas - ok
17:20:06.0993 0x0504  [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr          C:\Windows\system32\drivers\megasr.sys
17:20:07.0002 0x0504  megasr - ok
17:20:07.0025 0x0504  [ 84178491109A97D0A0CFF0840A644CD9, B822A9F7C9623764430435DBCE1380386D0A0D9784779DDD3A7A2E59FC29AFF6 ] MEIx64          C:\Windows\System32\drivers\TeeDriverW8x64.sys
17:20:07.0028 0x0504  MEIx64 - ok
17:20:07.0053 0x0504  [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\Windows\System32\MessagingService.dll
17:20:07.0055 0x0504  MessagingService - ok
17:20:07.0109 0x0504  [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus        C:\Windows\System32\drivers\mlx4_bus.sys
17:20:07.0120 0x0504  mlx4_bus - ok
17:20:07.0129 0x0504  [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS           C:\Windows\system32\drivers\mmcss.sys
17:20:07.0131 0x0504  MMCSS - ok
17:20:07.0155 0x0504  [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem           C:\Windows\system32\drivers\modem.sys
17:20:07.0156 0x0504  Modem - ok
17:20:07.0159 0x0504  [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor         C:\Windows\System32\drivers\monitor.sys
17:20:07.0160 0x0504  monitor - ok
17:20:07.0175 0x0504  [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass        C:\Windows\System32\drivers\mouclass.sys
17:20:07.0176 0x0504  mouclass - ok
17:20:07.0194 0x0504  [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid          C:\Windows\System32\drivers\mouhid.sys
17:20:07.0195 0x0504  mouhid - ok
17:20:07.0206 0x0504  [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
17:20:07.0208 0x0504  mountmgr - ok
17:20:07.0261 0x0504  [ 8C0E32FFD5F2AB12D22D09821B3EB550, 6734510A21E54551EFAED99DBBD1B2F9480E410992E080EFFAFED6D39A782704 ] MPCKpt          C:\Windows\system32\DRIVERS\MPCKpt.sys
17:20:07.0262 0x0504  MPCKpt - ok
17:20:07.0300 0x0504  [ 69822A353EA485121678FB2A94A6A274, 3600745BB1AE2E9C7D3F54209FAD5F16269BB37EA620D3B91E79CC78A1811DED ] MPCProtectService C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
17:20:07.0307 0x0504  MPCProtectService - ok
17:20:07.0312 0x0504  [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
17:20:07.0314 0x0504  mpsdrv - ok
17:20:07.0349 0x0504  [ 0B28F2ACE5103586D322AD98FAA01309, CE3053DEB6E452C6DCDFD371CF113EB0D740DED6C1C537CB749D1BE5E97FAB09 ] MpsSvc          C:\Windows\system32\mpssvc.dll
17:20:07.0365 0x0504  MpsSvc - ok
17:20:07.0392 0x0504  [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
17:20:07.0394 0x0504  MRxDAV - ok
17:20:07.0418 0x0504  [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
17:20:07.0425 0x0504  mrxsmb - ok
17:20:07.0448 0x0504  [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:20:07.0452 0x0504  mrxsmb10 - ok
17:20:07.0487 0x0504  [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:20:07.0490 0x0504  mrxsmb20 - ok
17:20:07.0513 0x0504  [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge        C:\Windows\system32\drivers\bridge.sys
17:20:07.0515 0x0504  MsBridge - ok
17:20:07.0535 0x0504  [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC           C:\Windows\System32\msdtc.exe
17:20:07.0538 0x0504  MSDTC - ok
17:20:07.0549 0x0504  [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
17:20:07.0549 0x0504  Msfs - ok
17:20:07.0583 0x0504  [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
17:20:07.0584 0x0504  msgpiowin32 - ok
17:20:07.0592 0x0504  [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
17:20:07.0593 0x0504  mshidkmdf - ok
17:20:07.0610 0x0504  [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
17:20:07.0611 0x0504  mshidumdf - ok
17:20:07.0618 0x0504  [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
17:20:07.0619 0x0504  msisadrv - ok
17:20:07.0649 0x0504  [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
17:20:07.0652 0x0504  MSiSCSI - ok
17:20:07.0654 0x0504  msiserver - ok
17:20:07.0671 0x0504  [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV         C:\Windows\system32\DRIVERS\MSKSSRV.sys
17:20:07.0672 0x0504  MSKSSRV - ok
17:20:07.0686 0x0504  [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp          C:\Windows\system32\drivers\mslldp.sys
17:20:07.0688 0x0504  MsLldp - ok
17:20:07.0699 0x0504  [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK        C:\Windows\system32\DRIVERS\MSPCLOCK.sys
17:20:07.0700 0x0504  MSPCLOCK - ok
17:20:07.0703 0x0504  [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM           C:\Windows\system32\DRIVERS\MSPQM.sys
17:20:07.0704 0x0504  MSPQM - ok
17:20:07.0717 0x0504  [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
17:20:07.0722 0x0504  MsRPC - ok
17:20:07.0735 0x0504  [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
17:20:07.0736 0x0504  mssmbios - ok
17:20:07.0744 0x0504  [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE           C:\Windows\system32\DRIVERS\MSTEE.sys
17:20:07.0745 0x0504  MSTEE - ok
17:20:07.0758 0x0504  [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
17:20:07.0759 0x0504  MTConfig - ok
17:20:07.0764 0x0504  [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup             C:\Windows\system32\Drivers\mup.sys
17:20:07.0766 0x0504  Mup - ok
17:20:07.0778 0x0504  [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
17:20:07.0779 0x0504  mvumis - ok
17:20:07.0808 0x0504  [ AA4CD20708B7E0412A5316D7E2875103, 4E60A0865B7656735F3AB34AF5FE48304138F47DE961D4D16661617D711DEBC0 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
17:20:07.0817 0x0504  NativeWifiP - ok
17:20:07.0840 0x0504  [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc          C:\Windows\System32\ncasvc.dll
17:20:07.0843 0x0504  NcaSvc - ok
17:20:07.0861 0x0504  [ 24146738C422814EEB2A98FF1FC5C6E1, 3C70C6768681CE63DED339822EFB36194037B987D92456B9E955061A3A3C63BC ] NcbService      C:\Windows\System32\ncbservice.dll
17:20:07.0867 0x0504  NcbService - ok
17:20:07.0871 0x0504  [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
17:20:07.0873 0x0504  NcdAutoSetup - ok
17:20:07.0877 0x0504  [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr          C:\Windows\System32\drivers\ndfltr.sys
17:20:07.0879 0x0504  ndfltr - ok
17:20:07.0902 0x0504  [ E582DA849A58524E645545FB68B6625D, B74E2CF078F6C575EFC4A2E4293D03FE6BA933307D656E0E57FFA17EF324948D ] NDIS            C:\Windows\system32\drivers\ndis.sys
17:20:07.0920 0x0504  NDIS - ok
17:20:07.0941 0x0504  [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap         C:\Windows\system32\drivers\ndiscap.sys
17:20:07.0942 0x0504  NdisCap - ok
17:20:07.0958 0x0504  [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform  C:\Windows\system32\drivers\NdisImPlatform.sys
17:20:07.0960 0x0504  NdisImPlatform - ok
17:20:07.0972 0x0504  [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
17:20:07.0973 0x0504  NdisTapi - ok
17:20:07.0985 0x0504  [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio         C:\Windows\system32\drivers\ndisuio.sys
17:20:07.0986 0x0504  Ndisuio - ok
17:20:08.0003 0x0504  [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
17:20:08.0004 0x0504  NdisVirtualBus - ok
17:20:08.0019 0x0504  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan         C:\Windows\System32\drivers\ndiswan.sys
17:20:08.0022 0x0504  NdisWan - ok
17:20:08.0030 0x0504  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
17:20:08.0032 0x0504  ndiswanlegacy - ok
17:20:08.0047 0x0504  [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy         C:\Windows\system32\DRIVERS\NDProxy.sys
17:20:08.0049 0x0504  ndproxy - ok
17:20:08.0080 0x0504  [ 883A36E2FF7FA3E1281CB575579FE3AF, F1BE02B13C090E2E36BD211055FC980E79BD14F72042773A3619A5143AAEE485 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
17:20:08.0082 0x0504  Ndu - ok
17:20:08.0090 0x0504  [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS         C:\Windows\system32\drivers\netbios.sys
17:20:08.0091 0x0504  NetBIOS - ok
17:20:08.0119 0x0504  [ C03E926B0E7D66D68994067231DC3246, 1895BE28921431AA78BEF9AFE01411FE8CDA570867E527E4D925E6FAA35D8BC0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
17:20:08.0124 0x0504  NetBT - ok
17:20:08.0137 0x0504  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon        C:\Windows\system32\lsass.exe
17:20:08.0139 0x0504  Netlogon - ok
17:20:08.0172 0x0504  [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman          C:\Windows\System32\netman.dll
17:20:08.0176 0x0504  Netman - ok
17:20:08.0212 0x0504  [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm        C:\Windows\System32\netprofmsvc.dll
17:20:08.0221 0x0504  netprofm - ok
17:20:08.0255 0x0504  [ A3AA03C0C5002F3D89397637B770A1BA, CB40F8FFE2850C11C9EA309BFDBB97C2C978202AF70D052573D8CF18A0677AEB ] NetSetupSvc     C:\Windows\System32\NetSetupSvc.dll
17:20:08.0259 0x0504  NetSetupSvc - ok
17:20:08.0353 0x0504  [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
17:20:08.0355 0x0504  NetTcpPortSharing - ok
17:20:08.0455 0x0504  [ 6EDB5BBF2B4BFB525880C9A11F63C03A, E351332CA65E959EF718116F37E64D568C4A663EAA189920AE84A02CB427745C ] NETwNb64        C:\Windows\System32\drivers\Netwbw02.sys
17:20:08.0510 0x0504  NETwNb64 - ok
17:20:08.0545 0x0504  [ 0FB83658FBB2C5A18AB98C5C94DB9FAF, 2D15A49F47D8185D7914D26916D1237FCBE2F8351A64877CDDDDE26E766C3D2F ] NgcCtnrSvc      C:\Windows\System32\NgcCtnrSvc.dll
17:20:08.0551 0x0504  NgcCtnrSvc - ok
17:20:08.0585 0x0504  [ 7AAA9916AA10F4B0E9743798A5BA6549, 2E38EEF3F487A7DD0B719A048FFA0EB36B2487A1068BB322553E9DD2FCE46711 ] NgcSvc          C:\Windows\system32\ngcsvc.dll
17:20:08.0607 0x0504  NgcSvc - ok
17:20:08.0642 0x0504  [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc          C:\Windows\System32\nlasvc.dll
17:20:08.0649 0x0504  NlaSvc - ok
17:20:08.0664 0x0504  [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs            C:\Windows\system32\drivers\Npfs.sys
17:20:08.0665 0x0504  Npfs - ok
17:20:08.0685 0x0504  [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
17:20:08.0686 0x0504  npsvctrig - ok
17:20:08.0702 0x0504  [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi             C:\Windows\system32\nsisvc.dll
17:20:08.0704 0x0504  nsi - ok
17:20:08.0723 0x0504  [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
17:20:08.0724 0x0504  nsiproxy - ok
17:20:08.0798 0x0504  [ 19BD8A88AAC580592668B070AC0727D9, 60DB84895C40E6412BEB2D0E4D7F05891446B9DE992D70579CC90BA3FB27FC01 ] NTFS            C:\Windows\system32\drivers\NTFS.sys
17:20:08.0829 0x0504  NTFS - ok
17:20:08.0846 0x0504  [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null            C:\Windows\system32\drivers\Null.sys
17:20:08.0848 0x0504  Null - ok
17:20:08.0865 0x0504  [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid          C:\Windows\system32\drivers\nvraid.sys
17:20:08.0868 0x0504  nvraid - ok
17:20:08.0886 0x0504  [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
17:20:08.0888 0x0504  nvstor - ok
17:20:08.0901 0x0504  [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
17:20:08.0903 0x0504  nv_agp - ok
17:20:08.0950 0x0504  [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc      C:\Windows\System32\APHostService.dll
17:20:08.0955 0x0504  OneSyncSvc - ok
17:20:09.0008 0x0504  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
17:20:09.0014 0x0504  p2pimsvc - ok
17:20:09.0050 0x0504  [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc          C:\Windows\system32\p2psvc.dll
17:20:09.0058 0x0504  p2psvc - ok
17:20:09.0079 0x0504  [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport         C:\Windows\System32\drivers\parport.sys
17:20:09.0080 0x0504  Parport - ok
17:20:09.0100 0x0504  [ D330D74B5F99309B5CCA30AE41C57CDE, AE5186CB4B639A5241BF0D17FE8A73D6DAFA505C31E250EA225CD498C8A4A07E ] partmgr         C:\Windows\system32\drivers\partmgr.sys
17:20:09.0102 0x0504  partmgr - ok
17:20:09.0129 0x0504  [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc          C:\Windows\System32\pcasvc.dll
17:20:09.0138 0x0504  PcaSvc - ok
17:20:09.0166 0x0504  [ CF78AF126B00C1B0A6FF45BD838E8EFE, AE01B107E1D9072F10F194AEE2AE4F9D75A4EC8FF3A46E45D27E7BF615CE0985 ] pci             C:\Windows\system32\drivers\pci.sys
17:20:09.0170 0x0504  pci - ok
17:20:09.0190 0x0504  [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide          C:\Windows\system32\drivers\pciide.sys
17:20:09.0191 0x0504  pciide - ok
17:20:09.0204 0x0504  [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
17:20:09.0206 0x0504  pcmcia - ok
17:20:09.0215 0x0504  [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw             C:\Windows\system32\drivers\pcw.sys
17:20:09.0216 0x0504  pcw - ok
17:20:09.0237 0x0504  [ 67B9684B8272D5EBD1CCBB1DBD425EC8, 09BE2A2EB3A71E594D08B8D817820965DEEAD283029EBB0B74CCC658A2706233 ] pdc             C:\Windows\system32\drivers\pdc.sys
17:20:09.0239 0x0504  pdc - ok
17:20:09.0279 0x0504  [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
17:20:09.0290 0x0504  PEAUTH - ok
17:20:09.0308 0x0504  [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i       C:\Windows\system32\drivers\percsas2i.sys
17:20:09.0309 0x0504  percsas2i - ok
17:20:09.0313 0x0504  [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i       C:\Windows\system32\drivers\percsas3i.sys
17:20:09.0315 0x0504  percsas3i - ok
17:20:09.0373 0x0504  [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost        C:\Windows\SysWow64\perfhost.exe
17:20:09.0374 0x0504  PerfHost - ok
17:20:09.0416 0x0504  [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc        C:\Windows\System32\PhoneService.dll
17:20:09.0429 0x0504  PhoneSvc - ok
17:20:09.0467 0x0504  [ 04F7878E7017105AB782353231561749, FB2811D98216720D4FDF0AC0EDF16C6CD33D7224B4CAFA752B4D2A839E6DD88A ] PimIndexMaintenanceSvc C:\Windows\System32\PimIndexMaintenance.dll
17:20:09.0472 0x0504  PimIndexMaintenanceSvc - ok
17:20:09.0536 0x0504  [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla             C:\Windows\system32\pla.dll
17:20:09.0560 0x0504  pla - ok
17:20:09.0586 0x0504  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
17:20:09.0589 0x0504  PlugPlay - ok
17:20:09.0597 0x0504  [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
17:20:09.0598 0x0504  PNRPAutoReg - ok
17:20:09.0617 0x0504  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
17:20:09.0623 0x0504  PNRPsvc - ok
17:20:09.0656 0x0504  [ D67052BD0DA9C17BCBBF8AB5B6D354EE, 7FE9B414C74CF69E531B27C506216F7F5CBE00B67E90305A4A4A2ECADAA4F349 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
17:20:09.0663 0x0504  PolicyAgent - ok
17:20:09.0678 0x0504  [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power           C:\Windows\system32\umpo.dll
17:20:09.0681 0x0504  Power - ok
17:20:09.0712 0x0504  [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport    C:\Windows\System32\drivers\raspptp.sys
17:20:09.0714 0x0504  PptpMiniport - ok
17:20:09.0831 0x0504  [ 15709A9AB1411565754CEE33AAB36387, 77CBC04346F8F247B4614CE65FBD225F0A24827EDD1FDB34900D05673B682D84 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
17:20:09.0880 0x0504  PrintNotify - ok
17:20:09.0897 0x0504  [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor       C:\Windows\System32\drivers\processr.sys
17:20:09.0899 0x0504  Processor - ok
17:20:09.0931 0x0504  [ 7E0078F1EFEB6F8F47CF85C1D73C7EBC, 831BC3CE72F29AD259DEE7121D6F785CE0A8462CFB69DD7FB1F3BDAF16CDBF3E ] ProfSvc         C:\Windows\system32\profsvc.dll
17:20:09.0937 0x0504  ProfSvc - ok
17:20:09.0953 0x0504  [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched          C:\Windows\system32\drivers\pacer.sys
17:20:09.0955 0x0504  Psched - ok
17:20:09.0983 0x0504  [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE           C:\Windows\system32\qwave.dll
17:20:09.0988 0x0504  QWAVE - ok
17:20:10.0014 0x0504  [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
17:20:10.0015 0x0504  QWAVEdrv - ok
17:20:10.0022 0x0504  [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
17:20:10.0023 0x0504  RasAcd - ok
17:20:10.0053 0x0504  [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn     C:\Windows\System32\drivers\AgileVpn.sys
17:20:10.0055 0x0504  RasAgileVpn - ok
17:20:10.0079 0x0504  [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto         C:\Windows\System32\rasauto.dll
17:20:10.0082 0x0504  RasAuto - ok
17:20:10.0093 0x0504  [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp         C:\Windows\System32\drivers\rasl2tp.sys
17:20:10.0095 0x0504  Rasl2tp - ok
17:20:10.0140 0x0504  [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan          C:\Windows\System32\rasmans.dll
17:20:10.0153 0x0504  RasMan - ok
17:20:10.0163 0x0504  [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
17:20:10.0164 0x0504  RasPppoe - ok
17:20:10.0168 0x0504  [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp         C:\Windows\System32\drivers\rassstp.sys
17:20:10.0170 0x0504  RasSstp - ok
17:20:10.0189 0x0504  [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
17:20:10.0195 0x0504  rdbss - ok
17:20:10.0213 0x0504  [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
17:20:10.0214 0x0504  rdpbus - ok
17:20:10.0220 0x0504  [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
17:20:10.0222 0x0504  RDPDR - ok
17:20:10.0249 0x0504  [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
17:20:10.0250 0x0504  RdpVideoMiniport - ok
17:20:10.0255 0x0504  [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
17:20:10.0259 0x0504  rdyboost - ok
17:20:10.0297 0x0504  [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1          C:\Windows\system32\drivers\ReFSv1.sys
17:20:10.0311 0x0504  ReFSv1 - ok
17:20:10.0337 0x0504  [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess    C:\Windows\System32\mprdim.dll
17:20:10.0346 0x0504  RemoteAccess - ok
17:20:10.0368 0x0504  [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
17:20:10.0372 0x0504  RemoteRegistry - ok
17:20:10.0463 0x0504  [ 2CF10BCCE73DA7C3464E7C5FBA05A19C, B105153726AEEA179E50A05CEEA5406C218C7FF2613C3432B2D96A6FEE6DA3BC ] ReogichLauncherservice C:\Program Files (x86)\Reogich\ReogichLauncherservice.exe
17:20:10.0481 0x0504  ReogichLauncherservice - ok
17:20:10.0522 0x0504  [ DF7A59E70F398EEB9FDCDD310987D8AE, 67817FC336B2046351BDEB84A57252D6708E17656CD84FF5BCA85FCA24F430E0 ] RetailDemo      C:\Windows\system32\RDXService.dll
17:20:10.0541 0x0504  RetailDemo - ok
17:20:10.0568 0x0504  [ AEEF76F938188EBF27DF70C1806877F2, 08560C5DE13EBC46EE77F369E92B89350135D5E01A2AF61AA2EA46BEC41EEDD6 ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
17:20:10.0570 0x0504  RFCOMM - ok
17:20:10.0597 0x0504  [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
17:20:10.0600 0x0504  RpcEptMapper - ok
17:20:10.0626 0x0504  [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator      C:\Windows\system32\locator.exe
17:20:10.0627 0x0504  RpcLocator - ok
17:20:10.0657 0x0504  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs           C:\Windows\system32\rpcss.dll
17:20:10.0670 0x0504  RpcSs - ok
17:20:10.0695 0x0504  [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr          C:\Windows\system32\drivers\rspndr.sys
17:20:10.0697 0x0504  rspndr - ok
17:20:10.0741 0x0504  [ 3AEF4FB6BBA86C2CB751CF989B30EDB5, CB893D0F45041D68038490BDA99509BE8B836C32DF392B9409083B178A04B7B3 ] rt640x64        C:\Windows\System32\drivers\rt640x64.sys
17:20:10.0756 0x0504  rt640x64 - ok
17:20:10.0838 0x0504  [ 7DECE141A4FB0450AE310FE47910B75B, 8082D683925B8F6938C6113E728CA2059CC1B2D1B24E0C3536178CD37D7563E0 ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
17:20:10.0844 0x0504  RtkAudioService - ok
17:20:10.0881 0x0504  [ 1C201F1FC03ADBD7A2DE4282F6536772, 69D7FF0AE44191F2E0292F841D3E97F29697EB978D92C523F3ED4EBE619E8B8A ] RTSUER          C:\Windows\system32\Drivers\RtsUer.sys
17:20:10.0889 0x0504  RTSUER - ok
17:20:10.0911 0x0504  [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
17:20:10.0912 0x0504  s3cap - ok
17:20:10.0933 0x0504  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs           C:\Windows\system32\lsass.exe
17:20:10.0935 0x0504  SamSs - ok
17:20:10.0966 0x0504  [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
17:20:10.0968 0x0504  sbp2port - ok
17:20:10.0990 0x0504  [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
17:20:10.0995 0x0504  SCardSvr - ok
17:20:11.0001 0x0504  [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
17:20:11.0004 0x0504  ScDeviceEnum - ok
17:20:11.0028 0x0504  [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
17:20:11.0029 0x0504  scfilter - ok
17:20:11.0073 0x0504  [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule        C:\Windows\system32\schedsvc.dll
17:20:11.0090 0x0504  Schedule - ok
17:20:11.0126 0x0504  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc     C:\Windows\System32\certprop.dll
17:20:11.0129 0x0504  SCPolicySvc - ok
17:20:11.0152 0x0504  [ B24408471C1BCB17FC44F5B47EA8DEA3, 1CFE07C793F2A3D883E9071B8703C01A7619C8C0A02AAEBAA1130F36654AFD4F ] sdbus           C:\Windows\System32\drivers\sdbus.sys
17:20:11.0156 0x0504  sdbus - ok
17:20:11.0162 0x0504  [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
17:20:11.0166 0x0504  SDRSVC - ok
17:20:11.0183 0x0504  [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
17:20:11.0186 0x0504  sdstor - ok
17:20:11.0204 0x0504  [ EBD07BD20B5E0E92A398566EF8720F79, 8A88C861D4113B9938C32CBD28FD3D7F1C3133E700E23E17F5DFD7B26CCDA04A ] seclogon        C:\Windows\system32\seclogon.dll
17:20:11.0206 0x0504  seclogon - ok
17:20:11.0219 0x0504  [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS            C:\Windows\System32\sens.dll
17:20:11.0222 0x0504  SENS - ok
17:20:11.0270 0x0504  [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\Windows\System32\SensorDataService.exe
17:20:11.0293 0x0504  SensorDataService - ok
17:20:11.0328 0x0504  [ 45D26646E3AD737E5DE3DB91CCCE7DBA, B05AB32700998C8347BC5797B18EB97F303FCB2302BED852348F2703DEDE72F9 ] SensorService   C:\Windows\system32\SensorService.dll
17:20:11.0335 0x0504  SensorService - ok
17:20:11.0341 0x0504  [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc        C:\Windows\system32\sensrsvc.dll
17:20:11.0345 0x0504  SensrSvc - ok
17:20:11.0371 0x0504  [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx           C:\Windows\system32\drivers\SerCx.sys
17:20:11.0373 0x0504  SerCx - ok
17:20:11.0389 0x0504  [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
17:20:11.0392 0x0504  SerCx2 - ok
17:20:11.0408 0x0504  [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum         C:\Windows\System32\drivers\serenum.sys
17:20:11.0409 0x0504  Serenum - ok
17:20:11.0444 0x0504  [ 249A563C48DFD9E42A37587653E003BB, D022FAE2B7AC9D99B9F230A4DF0B045891588162587E1F468B5E05C8DA98AA9A ] Serial          C:\Windows\System32\drivers\serial.sys
17:20:11.0446 0x0504  Serial - ok
17:20:11.0464 0x0504  [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
17:20:11.0465 0x0504  sermouse - ok
17:20:11.0483 0x0504  [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv      C:\Windows\system32\sessenv.dll
17:20:11.0489 0x0504  SessionEnv - ok
17:20:11.0504 0x0504  [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
17:20:11.0505 0x0504  sfloppy - ok
17:20:11.0553 0x0504  [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
17:20:11.0560 0x0504  SharedAccess - ok
17:20:11.0592 0x0504  [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:20:11.0602 0x0504  ShellHWDetection - ok
17:20:11.0612 0x0504  [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
17:20:11.0613 0x0504  SiSRaid2 - ok
17:20:11.0628 0x0504  [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
17:20:11.0630 0x0504  SiSRaid4 - ok
17:20:11.0688 0x0504  [ 9A66A87BBC0EC4463042959B7C0D4AC1, 2E61DC50AD4A4D4782F3271BAD010137DA9A6AFC46C7568C709F68C7621DCD40 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
17:20:11.0694 0x0504  SkypeUpdate - ok
17:20:11.0715 0x0504  [ 6BAA82912E4D4DC791B083E3DD7C387D, 31B5193D8E91E98BA93B46086C9F6BBFEF42861722BDF7971D08C1FAE24D8B02 ] SmbDrvI         C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
17:20:11.0716 0x0504  SmbDrvI - ok
17:20:11.0746 0x0504  [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost         C:\Windows\System32\smphost.dll
17:20:11.0748 0x0504  smphost - ok
17:20:11.0780 0x0504  [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter       C:\Windows\system32\SmsRouterSvc.dll
17:20:11.0791 0x0504  SmsRouter - ok
17:20:11.0815 0x0504  [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
17:20:11.0817 0x0504  SNMPTRAP - ok
17:20:11.0848 0x0504  [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport       C:\Windows\system32\drivers\spaceport.sys
17:20:11.0854 0x0504  spaceport - ok
17:20:11.0871 0x0504  [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
17:20:11.0873 0x0504  SpbCx - ok
17:20:11.0917 0x0504  [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler         C:\Windows\System32\spoolsv.exe
17:20:11.0931 0x0504  Spooler - ok
17:20:12.0099 0x0504  [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc          C:\Windows\system32\sppsvc.exe
17:20:12.0202 0x0504  sppsvc - ok
17:20:12.0241 0x0504  [ BE88248427A6AA548A904FD867667F70, 37E7BB76881F4E896311721B1FCB7B1908524591D36F7D63B233CA0115FECC2C ] srv             C:\Windows\system32\DRIVERS\srv.sys
17:20:12.0247 0x0504  srv - ok
17:20:12.0279 0x0504  [ 2568B86F6A50D254324CB89022CA9EFC, 001B7A0061227E8E78A35FDC095C71A6974F18B1289FA392FA0B864A88C20672 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
17:20:12.0288 0x0504  srv2 - ok
17:20:12.0323 0x0504  [ 6E520D6B16EA8AE23D1F81C1194F00C8, 42CAB0772D351023DBF1DAD4BDB1FC214827CEA660284838B41062B8DF89DF10 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
17:20:12.0327 0x0504  srvnet - ok
17:20:12.0357 0x0504  [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
17:20:12.0362 0x0504  SSDPSRV - ok
17:20:12.0393 0x0504  [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
17:20:12.0398 0x0504  SstpSvc - ok
17:20:12.0421 0x0504  [ 36C3697CA09B23C77BDF95A6B0B57310, DAEF9CFBDE444A80FB41DA0BC5C3C4E1E4B535497A5EDA43EC8768A6EC42E4EA ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
17:20:12.0424 0x0504  ssudmdm - ok
17:20:12.0503 0x0504  [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\Windows\system32\windows.staterepository.dll
17:20:12.0547 0x0504  StateRepository - ok
17:20:12.0612 0x0504  [ A4FC868F6FC03876E29E4D87731B8E31, C774DA022879A69CBC2178CA1BB779438CD69D1582B4ECF22C90E4F0C4E9D9E4 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
17:20:12.0638 0x0504  Steam Client Service - ok
17:20:12.0664 0x0504  [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor
         
__________________

Geändert von nikof2 (08.07.2016 um 16:36 Uhr)

Alt 08.07.2016, 16:32   #4
nikof2
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Code:
ATTFilter
C:\Windows\system32\drivers\stexstor.sys
17:20:12.0665 0x0504  stexstor - ok
17:20:12.0713 0x0504  [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc          C:\Windows\System32\wiaservc.dll
17:20:12.0724 0x0504  stisvc - ok
17:20:12.0740 0x0504  [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci        C:\Windows\system32\drivers\storahci.sys
17:20:12.0742 0x0504  storahci - ok
17:20:12.0772 0x0504  [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
17:20:12.0773 0x0504  storflt - ok
17:20:12.0781 0x0504  [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme        C:\Windows\system32\drivers\stornvme.sys
17:20:12.0783 0x0504  stornvme - ok
17:20:12.0792 0x0504  [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt      C:\Windows\system32\drivers\storqosflt.sys
17:20:12.0794 0x0504  storqosflt - ok
17:20:12.0837 0x0504  [ FE42F8A07885E518ED1E846C93E4B78C, 264B21A5E07654F159A3E324F3B38A8C11AF619F61B5779A46367DD99EBD00A6 ] StorSvc         C:\Windows\system32\storsvc.dll
17:20:12.0848 0x0504  StorSvc - ok
17:20:12.0864 0x0504  [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs         C:\Windows\system32\drivers\storufs.sys
17:20:12.0865 0x0504  storufs - ok
17:20:12.0881 0x0504  [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
17:20:12.0882 0x0504  storvsc - ok
17:20:12.0905 0x0504  [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc           C:\Windows\system32\svsvc.dll
17:20:12.0907 0x0504  svsvc - ok
17:20:12.0921 0x0504  [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum          C:\Windows\System32\drivers\swenum.sys
17:20:12.0922 0x0504  swenum - ok
17:20:12.0948 0x0504  [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv           C:\Windows\System32\swprv.dll
17:20:12.0956 0x0504  swprv - ok
17:20:12.0981 0x0504  [ D79DAF239126C945C17B19322A084025, 9EC5B0BF970A58F8C969AAE8987D8DEA99EBABDC6064572D204FAB1BDDD16CF7 ] SynRMIHID       C:\Windows\system32\DRIVERS\SynRMIHID.sys
17:20:12.0983 0x0504  SynRMIHID - ok
17:20:13.0003 0x0504  [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc      C:\Windows\System32\drivers\Synth3dVsc.sys
17:20:13.0004 0x0504  Synth3dVsc - ok
17:20:13.0026 0x0504  [ 7E278DCD635DABB2F39F7266AC9AAD32, D217E7FB62E2311C015F813111AB810DA2D5E8C54A10861968F96A464A0D45E0 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
17:20:13.0036 0x0504  SynTP - ok
17:20:13.0068 0x0504  [ A22517F0FA7291B5179190A41E9D3365, 7C36DF43FFCC7E6033C8C6C3B701C63DD93F899654DFA390AEEEF7B357D394BE ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
17:20:13.0072 0x0504  SynTPEnhService - ok
17:20:13.0115 0x0504  [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain         C:\Windows\system32\sysmain.dll
17:20:13.0134 0x0504  SysMain - ok
17:20:13.0165 0x0504  [ FA8E0A9C648035CA1B47C9DA77EDB7EA, 4097AB89D2DB4741B138F3939AED4C5DB00BA124BF66E5DC2218ACF3A37513A3 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
17:20:13.0173 0x0504  SystemEventsBroker - ok
17:20:13.0196 0x0504  [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:20:13.0199 0x0504  TabletInputService - ok
17:20:13.0207 0x0504  [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv         C:\Windows\System32\tapisrv.dll
17:20:13.0214 0x0504  TapiSrv - ok
17:20:13.0252 0x0504  [ 79E084FCCFEF637580A06F3DC36C1A6C, 2BCDBCDF5EFF1259424F4BB68DE5A78347BCC3C12E2AA1E8E6EB811F791BB5E3 ] TASCAM_US122144 C:\Windows\System32\Drivers\tascusb2.sys
17:20:13.0259 0x0504  TASCAM_US122144 - ok
17:20:13.0283 0x0504  [ DE0AE9891AA5D08A9EC92C326D8000F9, 2162F3362B3D0370DA9B5E0409ED60688E96D726A291491CEEBD2BB996B554A3 ] TASCAM_US144_MIDI C:\Windows\system32\drivers\tscusb2m.sys
17:20:13.0284 0x0504  TASCAM_US144_MIDI - ok
17:20:13.0293 0x0504  [ BC94143174B92C181AE6135750DAEA7D, 3290D5E303FD65C31C2D730B6E28E30CFCA10A4C96DC0DA9D6149EE7171A4377 ] TASCAM_US144_WDM C:\Windows\system32\drivers\tscusb2a.sys
17:20:13.0295 0x0504  TASCAM_US144_WDM - ok
17:20:13.0360 0x0504  [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
17:20:13.0396 0x0504  Tcpip - ok
17:20:13.0439 0x0504  [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip6          C:\Windows\system32\drivers\tcpip.sys
17:20:13.0471 0x0504  Tcpip6 - ok
17:20:13.0491 0x0504  [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
17:20:13.0493 0x0504  tcpipreg - ok
17:20:13.0522 0x0504  [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
17:20:13.0524 0x0504  tdx - ok
17:20:13.0547 0x0504  [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
17:20:13.0548 0x0504  terminpt - ok
17:20:13.0596 0x0504  [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService     C:\Windows\System32\termsrv.dll
17:20:13.0614 0x0504  TermService - ok
17:20:13.0619 0x0504  [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes          C:\Windows\system32\themeservice.dll
17:20:13.0621 0x0504  Themes - ok
17:20:13.0654 0x0504  [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\Windows\system32\TieringEngineService.exe
17:20:13.0660 0x0504  TieringEngineService - ok
17:20:13.0695 0x0504  [ 7ECACE6D0B4C2D323408EB00FD93C682, EE7F5E5185EA8C8098046FA573659443014ED7C9DA9E710D9EF3FCACBBFFA100 ] tiledatamodelsvc C:\Windows\system32\tileobjserver.dll
17:20:13.0704 0x0504  tiledatamodelsvc - ok
17:20:13.0719 0x0504  [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
17:20:13.0722 0x0504  TimeBroker - ok
17:20:13.0753 0x0504  [ 87B9ABB965F7AF987D52791F0DD1663D, 6E42F764D47ACAD644E5F547E503B7AEA8D700C335674D1B0EB5493914F747E7 ] TPM             C:\Windows\System32\drivers\tpm.sys
17:20:13.0757 0x0504  TPM - ok
17:20:13.0771 0x0504  [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks          C:\Windows\System32\trkwks.dll
17:20:13.0774 0x0504  TrkWks - ok
17:20:13.0835 0x0504  [ FA43D8F47038B657A3E70AF5A3A330C7, D554E7EB9B0FB704B18801732B9FA4AF2ADDEADFF0F50CBF1278425EDCBF0FA5 ] TrueKey         C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
17:20:13.0848 0x0504  TrueKey - ok
17:20:13.0875 0x0504  [ 5F4A2392C030F712DBAB11B8B38054AB, 8AC64512A8BDD7CE000AF941A9427DB734F3C67FA36FB874CCEE1ADF981DAEC5 ] TrueKeyScheduler C:\Program Files\TrueKey\McTkSchedulerService.exe
17:20:13.0875 0x0504  TrueKeyScheduler - ok
17:20:13.0895 0x0504  [ E30DA7645DA6744BDF44637AEC9D2852, 7991C2968C106D9EEE0CCF264E03FD9EEAA2C09DFCBEBC344889DCBE27BE9087 ] TrueKeyServiceHelper C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe
17:20:13.0897 0x0504  TrueKeyServiceHelper - ok
17:20:13.0942 0x0504  [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:20:13.0944 0x0504  TrustedInstaller - ok
17:20:13.0958 0x0504  [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt        C:\Windows\system32\drivers\TsUsbFlt.sys
17:20:13.0960 0x0504  tsusbflt - ok
17:20:13.0967 0x0504  [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
17:20:13.0969 0x0504  TsUsbGD - ok
17:20:13.0992 0x0504  [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel          C:\Windows\System32\drivers\tunnel.sys
17:20:13.0995 0x0504  tunnel - ok
17:20:14.0019 0x0504  [ 56C238ACFE4CB020D3E38508249039EA, 172868080F07D98175229A02410FE751B5958ED5A3D567D4AE5736F4025DF432 ] tzautoupdate    C:\Windows\system32\tzautoupdate.dll
17:20:14.0022 0x0504  tzautoupdate - ok
17:20:14.0047 0x0504  [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
17:20:14.0049 0x0504  uagp35 - ok
17:20:14.0060 0x0504  [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
17:20:14.0061 0x0504  UASPStor - ok
17:20:14.0082 0x0504  [ 82D3B1F4D80057826AA649D78147DE36, 344A738F6866BFD3095BB802206DDB2F9E9AD89DC39CAA7DE96455F410683829 ] UcmCx0101       C:\Windows\system32\Drivers\UcmCx.sys
17:20:14.0084 0x0504  UcmCx0101 - ok
17:20:14.0100 0x0504  [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi         C:\Windows\System32\drivers\UcmUcsi.sys
17:20:14.0101 0x0504  UcmUcsi - ok
17:20:14.0117 0x0504  [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000        C:\Windows\system32\drivers\ucx01000.sys
17:20:14.0120 0x0504  Ucx01000 - ok
17:20:14.0132 0x0504  [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx           C:\Windows\system32\drivers\udecx.sys
17:20:14.0133 0x0504  UdeCx - ok
17:20:14.0142 0x0504  [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
17:20:14.0147 0x0504  udfs - ok
17:20:14.0153 0x0504  [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
17:20:14.0154 0x0504  UEFI - ok
17:20:14.0182 0x0504  [ 05DD22294A4F3F89E52351C7721E6D2C, 300A7D4BD5F26814CF73400E01DEB810CA3F91BD190B3D37B74ADF080F582829 ] Ufx01000        C:\Windows\system32\drivers\ufx01000.sys
17:20:14.0186 0x0504  Ufx01000 - ok
17:20:14.0189 0x0504  [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea     C:\Windows\System32\drivers\UfxChipidea.sys
17:20:14.0191 0x0504  UfxChipidea - ok
17:20:14.0207 0x0504  [ 2A87EA182EA333D79AA0B03833EA67F2, 227792A8B4E63CF60A3DEECF829448C8FD59A40DEF3F42414E432820F8D34F64 ] ufxsynopsys     C:\Windows\System32\drivers\ufxsynopsys.sys
17:20:14.0209 0x0504  ufxsynopsys - ok
17:20:14.0238 0x0504  [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
17:20:14.0240 0x0504  UI0Detect - ok
17:20:14.0245 0x0504  [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
17:20:14.0247 0x0504  uliagpkx - ok
17:20:14.0264 0x0504  [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus           C:\Windows\System32\drivers\umbus.sys
17:20:14.0265 0x0504  umbus - ok
17:20:14.0281 0x0504  [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass          C:\Windows\System32\drivers\umpass.sys
17:20:14.0282 0x0504  UmPass - ok
17:20:14.0310 0x0504  [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService    C:\Windows\System32\umrdp.dll
17:20:14.0317 0x0504  UmRdpService - ok
17:20:14.0368 0x0504  [ CB902A15DD21B363FECA5DCCF34F5C57, 6A0836A12A410EBD5C667982852B58CA9E9EDB11EA666C413CC0F811E01A549D ] UnistoreSvc     C:\Windows\System32\unistore.dll
17:20:14.0388 0x0504  UnistoreSvc - ok
17:20:14.0404 0x0504  [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost        C:\Windows\System32\upnphost.dll
17:20:14.0413 0x0504  upnphost - ok
17:20:14.0425 0x0504  [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea     C:\Windows\System32\drivers\urschipidea.sys
17:20:14.0426 0x0504  UrsChipidea - ok
17:20:14.0448 0x0504  [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000      C:\Windows\system32\drivers\urscx01000.sys
17:20:14.0450 0x0504  UrsCx01000 - ok
17:20:14.0462 0x0504  [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys     C:\Windows\System32\drivers\urssynopsys.sys
17:20:14.0463 0x0504  UrsSynopsys - ok
17:20:14.0475 0x0504  [ 9F9D5E2086BB9AEEA96E9BF73B7B2D32, AFA84CE1E96C07EBFB7A05D0181C876E027B848AF6C6DB932765912B814CAF56 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
17:20:14.0478 0x0504  usbaudio - ok
17:20:14.0506 0x0504  [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
17:20:14.0508 0x0504  usbccgp - ok
17:20:14.0524 0x0504  [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir          C:\Windows\System32\drivers\usbcir.sys
17:20:14.0526 0x0504  usbcir - ok
17:20:14.0536 0x0504  [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci         C:\Windows\System32\drivers\usbehci.sys
17:20:14.0538 0x0504  usbehci - ok
17:20:14.0549 0x0504  [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub          C:\Windows\System32\drivers\usbhub.sys
17:20:14.0557 0x0504  usbhub - ok
17:20:14.0599 0x0504  [ E7463CE8579A0418A98BE9BE42C647D7, 923CD51C82FCF9DC4E9EEA99E53634EE07EBF62FB5DFC337F01309D7D5C7622C ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
17:20:14.0607 0x0504  USBHUB3 - ok
17:20:14.0624 0x0504  [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
17:20:14.0625 0x0504  usbohci - ok
17:20:14.0639 0x0504  [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
17:20:14.0640 0x0504  usbprint - ok
17:20:14.0665 0x0504  [ 4AAD6547953D373A1EB5B2DF583D868B, 4E3DCEC9644550996C314FCC39F885DDE4AA7AD821B8596D96C5BEA5D60795F7 ] usbser          C:\Windows\System32\drivers\usbser.sys
17:20:14.0667 0x0504  usbser - ok
17:20:14.0694 0x0504  [ 8949F77132A4F8F3BA17C6727099F002, 86AD4A2263B34983335180FDAE775D1744E042D2A11300D27DF546F15F285A25 ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
17:20:14.0696 0x0504  USBSTOR - ok
17:20:14.0710 0x0504  [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
17:20:14.0711 0x0504  usbuhci - ok
17:20:14.0728 0x0504  [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
17:20:14.0731 0x0504  usbvideo - ok
17:20:14.0760 0x0504  [ 9E9D58F5E1702955B2F4D62996F80E8E, 6C21C250B9D98346D0D5CB7D6C11AB120A1D195C28313BDB0CE532663F0114E2 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
17:20:14.0766 0x0504  USBXHCI - ok
17:20:14.0817 0x0504  [ 2771EBB565F5C121E66060B173991D4D, 1EB34A6262A18E47ADCA392FDB2D58E8428A1CA43EB4196D76A897F74A03CA7F ] UserDataSvc     C:\Windows\System32\userdataservice.dll
17:20:14.0843 0x0504  UserDataSvc - ok
17:20:14.0899 0x0504  [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager     C:\Windows\System32\usermgr.dll
17:20:14.0915 0x0504  UserManager - ok
17:20:14.0947 0x0504  [ 0D33D06EF42E3BC6A7BBC4F7F7517C25, 1B19739341F5D76C0C491D20BD676877D7D59C73AFC3108567C81E6963E6384A ] UsoSvc          C:\Windows\system32\usocore.dll
17:20:14.0953 0x0504  UsoSvc - ok
17:20:14.0971 0x0504  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc        C:\Windows\system32\lsass.exe
17:20:14.0973 0x0504  VaultSvc - ok
17:20:14.0996 0x0504  [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
17:20:14.0997 0x0504  vdrvroot - ok
17:20:15.0031 0x0504  [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds             C:\Windows\System32\vds.exe
17:20:15.0041 0x0504  vds - ok
17:20:15.0061 0x0504  [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
17:20:15.0064 0x0504  VerifierExt - ok
17:20:15.0090 0x0504  [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
17:20:15.0101 0x0504  vhdmp - ok
17:20:15.0114 0x0504  [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf             C:\Windows\System32\drivers\vhf.sys
17:20:15.0115 0x0504  vhf - ok
17:20:15.0132 0x0504  [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus           C:\Windows\system32\drivers\vmbus.sys
17:20:15.0134 0x0504  vmbus - ok
17:20:15.0143 0x0504  [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
17:20:15.0144 0x0504  VMBusHID - ok
17:20:15.0180 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\Windows\System32\ICSvc.dll
17:20:15.0188 0x0504  vmicguestinterface - ok
17:20:15.0199 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
17:20:15.0207 0x0504  vmicheartbeat - ok
17:20:15.0217 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\Windows\System32\ICSvc.dll
17:20:15.0225 0x0504  vmickvpexchange - ok
17:20:15.0236 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv         C:\Windows\System32\ICSvc.dll
17:20:15.0244 0x0504  vmicrdv - ok
17:20:15.0255 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown    C:\Windows\System32\ICSvc.dll
17:20:15.0262 0x0504  vmicshutdown - ok
17:20:15.0272 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync    C:\Windows\System32\ICSvc.dll
17:20:15.0280 0x0504  vmictimesync - ok
17:20:15.0290 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession   C:\Windows\System32\ICSvc.dll
17:20:15.0299 0x0504  vmicvmsession - ok
17:20:15.0309 0x0504  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss         C:\Windows\System32\ICSvc.dll
17:20:15.0317 0x0504  vmicvss - ok
17:20:15.0335 0x0504  [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
17:20:15.0337 0x0504  volmgr - ok
17:20:15.0365 0x0504  [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
17:20:15.0370 0x0504  volmgrx - ok
17:20:15.0380 0x0504  [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
17:20:15.0386 0x0504  volsnap - ok
17:20:15.0417 0x0504  [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci            C:\Windows\System32\drivers\vpci.sys
17:20:15.0419 0x0504  vpci - ok
17:20:15.0424 0x0504  [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
17:20:15.0427 0x0504  vsmraid - ok
17:20:15.0485 0x0504  [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS             C:\Windows\system32\vssvc.exe
17:20:15.0508 0x0504  VSS - ok
17:20:15.0529 0x0504  [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
17:20:15.0534 0x0504  VSTXRAID - ok
17:20:15.0546 0x0504  [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
17:20:15.0547 0x0504  vwifibus - ok
17:20:15.0551 0x0504  [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt        C:\Windows\system32\drivers\vwififlt.sys
17:20:15.0553 0x0504  vwififlt - ok
17:20:15.0556 0x0504  [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp         C:\Windows\System32\drivers\vwifimp.sys
17:20:15.0557 0x0504  vwifimp - ok
17:20:15.0589 0x0504  [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time         C:\Windows\system32\w32time.dll
17:20:15.0598 0x0504  W32Time - ok
17:20:15.0633 0x0504  [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
17:20:15.0633 0x0504  WacomPen - ok
17:20:15.0676 0x0504  [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService   C:\Windows\system32\WalletService.dll
17:20:15.0684 0x0504  WalletService - ok
17:20:15.0700 0x0504  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
17:20:15.0701 0x0504  wanarp - ok
17:20:15.0704 0x0504  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
17:20:15.0706 0x0504  wanarpv6 - ok
17:20:15.0751 0x0504  [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine        C:\Windows\system32\wbengine.exe
17:20:15.0777 0x0504  wbengine - ok
17:20:15.0819 0x0504  [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
17:20:15.0830 0x0504  WbioSrvc - ok
17:20:15.0853 0x0504  [ 0BF8D8C7EC9FB15D6480A12101E88B71, E7BC6A4E53D8C9D73BF83097DFE43ED8038B7BED0AE56E5AF7983F74562F15A3 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
17:20:15.0864 0x0504  Wcmsvc - ok
17:20:15.0897 0x0504  [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
17:20:15.0907 0x0504  wcncsvc - ok
17:20:15.0923 0x0504  [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:20:15.0925 0x0504  WcsPlugInService - ok
17:20:15.0940 0x0504  [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
17:20:15.0942 0x0504  WdBoot - ok
17:20:15.0970 0x0504  [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
17:20:15.0986 0x0504  Wdf01000 - ok
17:20:16.0031 0x0504  [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
17:20:16.0036 0x0504  WdFilter - ok
17:20:16.0041 0x0504  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost  C:\Windows\system32\wdi.dll
17:20:16.0044 0x0504  WdiServiceHost - ok
17:20:16.0049 0x0504  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost   C:\Windows\system32\wdi.dll
17:20:16.0052 0x0504  WdiSystemHost - ok
17:20:16.0105 0x0504  [ 2BC2E99623119521EEF7910A11D0FDE0, 3F3E48A79534F0F65F961D9B170D534562E04901B630127B16DF02E6D42F2BBF ] wdiwifi         C:\Windows\system32\DRIVERS\wdiwifi.sys
17:20:16.0122 0x0504  wdiwifi - ok
17:20:16.0156 0x0504  [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
17:20:16.0158 0x0504  WdNisDrv - ok
17:20:16.0175 0x0504  WdNisSvc - ok
17:20:16.0189 0x0504  [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient       C:\Windows\System32\webclnt.dll
17:20:16.0195 0x0504  WebClient - ok
17:20:16.0211 0x0504  [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc          C:\Windows\system32\wecsvc.dll
17:20:16.0217 0x0504  Wecsvc - ok
17:20:16.0227 0x0504  [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
17:20:16.0230 0x0504  WEPHOSTSVC - ok
17:20:16.0239 0x0504  [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
17:20:16.0242 0x0504  wercplsupport - ok
17:20:16.0257 0x0504  [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc          C:\Windows\System32\WerSvc.dll
17:20:16.0263 0x0504  WerSvc - ok
17:20:16.0284 0x0504  [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS         C:\Windows\system32\drivers\wfplwfs.sys
17:20:16.0287 0x0504  WFPLWFS - ok
17:20:16.0291 0x0504  [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc          C:\Windows\System32\wiarpc.dll
17:20:16.0294 0x0504  WiaRpc - ok
17:20:16.0320 0x0504  [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
17:20:16.0321 0x0504  WIMMount - ok
17:20:16.0322 0x0504  WinDefend - ok
17:20:16.0329 0x0504  [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\Windows\system32\drivers\WindowsTrustedRT.sys
17:20:16.0331 0x0504  WindowsTrustedRT - ok
17:20:16.0334 0x0504  [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\Windows\system32\drivers\WindowsTrustedRTProxy.sys
17:20:16.0335 0x0504  WindowsTrustedRTProxy - ok
17:20:16.0379 0x0504  [ D4B30E23A3B373648F61290DAF432CB2, 7084E24A2E813BDD11C880F2B2D2626CD3600D9BABAA8AA8F068748E90BC8D58 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
17:20:16.0393 0x0504  WinHttpAutoProxySvc - ok
17:20:16.0421 0x0504  [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad          C:\Windows\System32\drivers\winmad.sys
17:20:16.0421 0x0504  WinMad - ok
17:20:16.0489 0x0504  [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
17:20:16.0493 0x0504  Winmgmt - ok
17:20:16.0578 0x0504  [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM           C:\Windows\system32\WsmSvc.dll
17:20:16.0622 0x0504  WinRM - ok
17:20:16.0659 0x0504  [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB          C:\Windows\System32\drivers\WinUSB.SYS
17:20:16.0661 0x0504  WINUSB - ok
17:20:16.0671 0x0504  [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs        C:\Windows\System32\drivers\winverbs.sys
17:20:16.0672 0x0504  WinVerbs - ok
17:20:16.0742 0x0504  [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc         C:\Windows\System32\wlansvc.dll
17:20:16.0778 0x0504  WlanSvc - ok
17:20:16.0833 0x0504  [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
17:20:16.0867 0x0504  wlidsvc - ok
17:20:16.0882 0x0504  [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
17:20:16.0883 0x0504  WmiAcpi - ok
17:20:16.0902 0x0504  [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
17:20:16.0905 0x0504  wmiApSrv - ok
17:20:16.0918 0x0504  WMPNetworkSvc - ok
17:20:16.0928 0x0504  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\Windows\system32\drivers\Wof.sys
17:20:16.0932 0x0504  Wof - ok
17:20:16.0988 0x0504  [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
17:20:17.0018 0x0504  workfolderssvc - ok
17:20:17.0040 0x0504  [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
17:20:17.0041 0x0504  wpcfltr - ok
17:20:17.0071 0x0504  [ 45FA01F8B7971ACB65202038E34D04A3, 9B2C2ABC7DB716295B0BD0AF04DA08E6B4200D7CF1C7DB59DD8FD8FEBD56D94C ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
17:20:17.0074 0x0504  WPDBusEnum - ok
17:20:17.0082 0x0504  [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
17:20:17.0083 0x0504  WpdUpFltr - ok
17:20:17.0095 0x0504  [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService      C:\Windows\system32\WpnService.dll
17:20:17.0097 0x0504  WpnService - ok
17:20:17.0120 0x0504  [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
17:20:17.0120 0x0504  ws2ifsl - ok
17:20:17.0140 0x0504  [ 5B813FADEA5BE9195F01C83287F823F7, B186175B12AF444F987FE9F0F9D329A0F9186C06E3D228824E0929BB0084853F ] wscsvc          C:\Windows\System32\wscsvc.dll
17:20:17.0144 0x0504  wscsvc - ok
17:20:17.0147 0x0504  WSearch - ok
17:20:17.0252 0x0504  [ 6E04BBE242E2889B37300C4DF5CE1126, FBDAEAC62C48A4FC5EF412AE47FF10590AE83E8871412F76F6F9BAE910542DFA ] WSService       C:\Windows\System32\WSService.dll
17:20:17.0306 0x0504  WSService - ok
17:20:17.0376 0x0504  [ 8D3AC00C88BC2A63D1D3CC320E0EAA19, 0E46765269B6FAD8ED8F032C42B38FA5998610CD9E85EB91A414135C595B3E75 ] wuauserv        C:\Windows\system32\wuaueng.dll
17:20:17.0415 0x0504  wuauserv - ok
17:20:17.0439 0x0504  [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
17:20:17.0441 0x0504  WudfPf - ok
17:20:17.0455 0x0504  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd          C:\Windows\system32\drivers\WudfRd.sys
17:20:17.0458 0x0504  WUDFRd - ok
17:20:17.0490 0x0504  [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
17:20:17.0493 0x0504  wudfsvc - ok
17:20:17.0499 0x0504  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
17:20:17.0502 0x0504  WUDFWpdFs - ok
17:20:17.0508 0x0504  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp      C:\Windows\system32\DRIVERS\WUDFRd.sys
17:20:17.0512 0x0504  WUDFWpdMtp - ok
17:20:17.0572 0x0504  [ 5DA95027DF2317174E8C39B4A8D1FCD8, 99B356411CB08B8BCCF2348DBF1FD5D4F417EA509D9C7CE23E5877C333F4D304 ] WwanSvc         C:\Windows\System32\wwansvc.dll
17:20:17.0593 0x0504  WwanSvc - ok
17:20:17.0632 0x0504  [ 5DFAF8BE5A3CABAABF6795BC09EB7876, 1AFD0BC50EA5C2CCB2874E97FE5205175C80849BD6C9BDAF9FBC49174D478997 ] XblAuthManager  C:\Windows\System32\XblAuthManager.dll
17:20:17.0648 0x0504  XblAuthManager - ok
17:20:17.0698 0x0504  [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave     C:\Windows\System32\XblGameSave.dll
17:20:17.0718 0x0504  XblGameSave - ok
17:20:17.0747 0x0504  [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip         C:\Windows\System32\drivers\xboxgip.sys
17:20:17.0752 0x0504  xboxgip - ok
17:20:17.0803 0x0504  [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc   C:\Windows\system32\XboxNetApiSvc.dll
17:20:17.0821 0x0504  XboxNetApiSvc - ok
17:20:17.0845 0x0504  [ DA0807D87A62D076C29C4E30F1E84F46, CA3079350038091AEE04D4DA7C06865E9DB3095120AE61AAB575AA77E86A6223 ] xinputhid       C:\Windows\System32\drivers\xinputhid.sys
17:20:17.0846 0x0504  xinputhid - ok
17:20:17.0875 0x0504  [ 47FA89EC25AD563A19FACED01DF87E3A, 05909B40E257C4337D02903D027CA3A5E3933A285C02B0BADA0BFF80697C90A2 ] ysusb64         C:\Windows\system32\drivers\ysusb64.sys
17:20:17.0878 0x0504  ysusb64 - ok
17:20:17.0891 0x0504  ================ Scan global ===============================
17:20:17.0915 0x0504  [ 82E25186617BA6C15010F0D47C705705, 5BF9E38918E6EAE86448137E2D120B80318AA1143CDDF539A2BFBEE227646816 ] C:\Windows\system32\basesrv.dll
17:20:17.0943 0x0504  [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\Windows\system32\winsrv.dll
17:20:17.0963 0x0504  [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\Windows\system32\sxssrv.dll
17:20:17.0973 0x0504  [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\Windows\system32\services.exe
17:20:17.0981 0x0504  [ Global ] - ok
17:20:17.0982 0x0504  ================ Scan MBR ==================================
17:20:17.0993 0x0504  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:20:18.0155 0x0504  \Device\Harddisk0\DR0 - ok
17:20:18.0155 0x0504  ================ Scan VBR ==================================
17:20:18.0156 0x0504  [ 47C51E248746592366859EEA5F243C51 ] \Device\Harddisk0\DR0\Partition1
17:20:18.0213 0x0504  \Device\Harddisk0\DR0\Partition1 - ok
17:20:18.0214 0x0504  [ B731DAF5E6E7B4F50D93BAF6881739B1 ] \Device\Harddisk0\DR0\Partition2
17:20:18.0293 0x0504  \Device\Harddisk0\DR0\Partition2 - ok
17:20:18.0294 0x0504  ================ Scan generic autorun ======================
17:20:18.0294 0x0504  SynTPEnh - ok
17:20:18.0506 0x0504  [ 28E13083399EE091ED4DEF0D595E5A83, B6866F3E26C6115114708CAFFDDF3433A2B2C3F950FD66B1D96B63A2E963F61E ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
17:20:18.0618 0x0504  RTHDVCPL - ok
17:20:18.0685 0x0504  [ 9F0E1FFFE7E2FABE8510DE558175722A, E93A7D73A2FE1A525F87CE30D13F06EA75FDD3825BF922AD2834CDE0651213B5 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
17:20:18.0704 0x0504  RtHDVBg - ok
17:20:18.0787 0x0504  [ F316A9C0C8BBA9D2A98BE70EE0D8CA96, 20C83B6D1706DED7B645008CD29346A5FD14A4F67FCF17FED28E7A17F021E15B ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
17:20:18.0801 0x0504  avgnt - ok
17:20:18.0842 0x0504  [ 97B71ADAABD4E9468FCFA58E99133C42, 03AFEBBA2257BC9457B7A3976174B1CD329AE84806F794DA1ADF389E3D87F132 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
17:20:18.0843 0x0504  Avira SystrayStartTrigger - ok
17:20:19.0063 0x0504  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
17:20:19.0172 0x0504  OneDriveSetup - ok
17:20:19.0301 0x0504  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
17:20:19.0403 0x0504  OneDriveSetup - ok
17:20:19.0528 0x0504  [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Niko\AppData\Local\Microsoft\OneDrive\OneDrive.exe
17:20:19.0535 0x0504  OneDrive - ok
17:20:19.0642 0x0504  [ 88B052F686DA7B7E1423F0879E68CF41, 97FDFEF5A2E393642BC0136C64C0570668E58A49CA2EAD8ACFF61EF25383B3CB ] C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
17:20:19.0671 0x0504  Advanced SystemCare 9 - ok
17:20:19.0701 0x0504  Skype - ok
17:20:19.0702 0x0504  Waiting for KSN requests completion. In queue: 220
17:20:20.0713 0x0504  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 15.0.17.264 ), 0x41000 ( enabled : updated )
17:20:20.0713 0x0504  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
17:20:20.0716 0x0504  Win FW state via NFP2: enabled ( trusted )
17:20:20.0844 0x0504  ============================================================
17:20:20.0844 0x0504  Scan finished
17:20:20.0844 0x0504  ============================================================
17:20:20.0848 0x0aec  Detected object count: 0
17:20:20.0848 0x0aec  Actual detected object count: 0
         

FRST Logfile:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-07-2016
durchgeführt von Niko (Administrator) auf DESKTOP-STEMLBH (08-07-2016 17:28:59)
Gestartet von C:\Users\Niko\Downloads
Geladene Profile: Niko (Verfügbare Profile: Niko)
Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: "C:\Program Files (x86)\Firefox\firefox.exe" "%1")
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.11.266\SSScheduler.exe
(Mozilla Corporation) C:\Program Files (x86)\Firefox\Firefox.exe
(Intel(R) Corporation) C:\Program Files\Intel\BCA\pabeSvc64.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McT6231.tmp
(Mozilla Corporation) C:\Program Files (x86)\Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
() C:\Users\Niko\Downloads\adwcleaner_5.201.exe
(Kaspersky Lab ZAO) C:\Users\Niko\Downloads\tdsskiller.exe
(Kaspersky Lab ZAO) C:\Users\Niko\AppData\Local\Temp\{C1EBA4F8-16FB-4903-BE10-626235443CA3}\{4F193D11-3F1F-4C5E-B899-B9E0B904EB74}.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3955888 2015-09-01] (Synaptics Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8822528 2016-06-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1429248 2016-06-13] (Realtek Semiconductor)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [814608 2016-05-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-06-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\Run: [Advanced SystemCare 9] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2019616 2016-01-11] (IObit)
HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
ShellExecuteHooks:  - {7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} - C:\Users\Niko\AppData\Local\Microsoft\Windows\INetCookies\x64explibss.dll [415936 2016-05-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-07-05]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.11.266\SSScheduler.exe (McAfee, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{3d03e5c2-6b95-4089-ac87-8d9cab8b8b8c}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{4e8a98c2-fcb8-4b5d-9eab-13814f82190e}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = search.mpc.am
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = search.mpc.am
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-4253662455-609384667-3053430216-1001\Software\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-06-28] (Intel Security)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-04-03] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-04-03] (Oracle Corporation)
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-06-28] (Intel Security)

Edge: 
======
Edge HomeButtonPage: HKU\S-1-5-21-4253662455-609384667-3053430216-1001 -> hxxp://www.nuesearch.com/?type=hp&ts=1466770059&z=5b20683e1a74c9b1c4126f3g2z5qfq0m7mdefe7q7e&from=ihpm0624&uid=ST1000LM024XHN-M101MBB_S314JA0GB35282B35282

FireFox:
========
FF ProfilePath: C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default
FF DefaultSearchEngine: Google
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-07-05] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-07-05] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-04-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-04-03] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF user.js: detected! => C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\user.js [2016-04-05]
FF SearchPlugin: C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\searchplugins\nice.xml [2016-06-30]
FF Extension: Kein Name - C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\extensions\arthurj8283@gmail.com [nicht gefunden]
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\Extensions\ich@maltegoetz.de.xpi [2016-04-27]
FF Extension: Adblock Plus - C:\Users\Niko\AppData\Roaming\Mozilla\Firefox\Profiles\c87nel9z.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 0027791467676615mcinstcleanup; C:\Windows\TEMP\0027791467676615mcinst.exe [922152 2016-03-02] (McAfee, Inc.)
R2 AdvancedSystemCareService9; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240 2016-01-05] (IObit)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [970656 2016-05-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [467016 2016-05-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [467016 2016-05-10] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1435704 2016-05-10] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [302680 2016-06-01] (Avira Operations GmbH & Co. KG)
R2 FirefoxU; C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe [501632 2016-06-29] ()
R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [164968 2016-03-31] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [361376 2015-09-17] (Intel Corporation)
S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe [157904 2016-05-26] (McAfee, Inc.)
R2 IntelBCAsvc; C:\Program Files\Intel\BCA\pabeSvc64.exe [3026584 2016-05-06] (Intel(R) Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.11.266\McCHSvc.exe [235696 2015-12-02] (McAfee, Inc.)
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-05-26] (DotC United Inc)
S2 ReogichLauncherservice; C:\Program Files (x86)\Reogich\ReogichLauncherservice.exe [1008280 2016-05-26] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312576 2016-06-13] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [256688 2015-09-01] (Synaptics Incorporated)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [905672 2016-06-22] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [15736 2016-06-22] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2016-06-22] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-31] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146712 2016-05-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-03-31] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-05-10] (Avira Operations GmbH & Co. KG)
R3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [165376 2015-10-30] (Microsoft Corporation)
R3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [36864 2015-10-30] (Microsoft Corporation)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-03-31] (REALiX(tm))
R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [46856 2016-03-31] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [300304 2016-03-31] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185896 2016-05-25] (Intel Corporation)
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-05-26] (DotC United Inc)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3517192 2016-06-13] (Intel Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [936192 2016-06-13] (Realtek                                            )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [422656 2016-03-14] (Realsil Semiconductor Corporation)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42600 2016-04-07] (Synaptics Incorporated)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [67248 2015-09-01] (Synaptics Incorporated)
S3 TASCAM_US122144; C:\Windows\System32\Drivers\tascusb2.sys [419160 2016-03-31] (TASCAM)
S3 TASCAM_US144_MIDI; C:\Windows\system32\drivers\tscusb2m.sys [31576 2016-03-31] (TASCAM)
S3 TASCAM_US144_WDM; C:\Windows\system32\drivers\tscusb2a.sys [53080 2016-03-31] (TASCAM)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 ysusb64; C:\Windows\system32\drivers\ysusb64.sys [123904 2015-06-11] (Yamaha Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-07-08 17:28 - 2016-07-08 17:29 - 00016323 _____ C:\Users\Niko\Downloads\FRST.txt
2016-07-08 17:28 - 2016-07-08 17:28 - 00000000 ____D C:\FRST
2016-07-08 17:26 - 2016-07-08 17:28 - 02390016 _____ (Farbar) C:\Users\Niko\Downloads\FRST64.exe
2016-07-08 17:19 - 2016-07-08 17:27 - 00501700 _____ C:\TDSSKiller.3.1.0.9_08.07.2016_17.19.38_log.txt
2016-07-08 17:19 - 2016-07-08 17:19 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Niko\Downloads\tdsskiller.exe
2016-07-08 17:19 - 2016-07-08 17:19 - 00246848 ____N (Kaspersky Lab, Yury Parshin) C:\Windows\system32\Drivers\18605627.sys
2016-07-05 01:57 - 2016-07-07 00:11 - 00001247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Key.lnk
2016-07-05 01:57 - 2016-07-05 01:59 - 00000000 ____D C:\Users\Niko\AppData\Local\tkdata
2016-07-05 01:57 - 2016-07-05 01:57 - 00001233 _____ C:\Users\Public\Desktop\True Key.lnk
2016-07-05 01:57 - 2016-07-05 01:57 - 00000000 ____D C:\ProgramData\TrueKey
2016-07-05 01:57 - 2016-07-05 01:57 - 00000000 ____D C:\Program Files\Intel Security
2016-07-05 01:56 - 2016-07-05 01:56 - 00000000 ____D C:\Program Files\Common Files\AV
2016-07-05 01:47 - 2016-07-08 17:21 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-07-05 01:47 - 2016-07-07 00:11 - 00000000 ____D C:\Program Files\TrueKey
2016-07-05 01:47 - 2016-07-05 01:47 - 00003860 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-07-05 01:47 - 2016-07-05 01:47 - 00002238 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-07-05 01:47 - 2016-07-05 01:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-07-05 01:47 - 2016-07-05 01:47 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2016-07-05 01:47 - 2016-07-05 01:47 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan
2016-07-04 22:21 - 2016-07-04 22:21 - 00000000 ____D C:\Users\Niko\Desktop\Old Firefox Data
2016-07-04 22:12 - 2016-07-04 22:12 - 00003022 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Niko)
2016-07-04 22:12 - 2016-07-04 22:12 - 00000000 ____D C:\Users\Niko\AppData\Roaming\MCorp
2016-07-04 22:06 - 2016-07-04 22:06 - 00001798 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-07-04 22:06 - 2016-07-04 22:06 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-07-04 22:06 - 2016-07-04 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-07-04 21:54 - 2016-07-04 21:54 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-07-04 21:37 - 2016-07-04 21:37 - 00001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-07-04 21:37 - 2016-07-04 21:37 - 00001046 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-07-04 21:30 - 2016-07-08 17:17 - 00000000 ____D C:\AdwCleaner
2016-07-04 21:29 - 2016-07-04 21:30 - 03712064 _____ C:\Users\Niko\Downloads\adwcleaner_5.201.exe
2016-07-04 21:19 - 2016-07-04 21:46 - 00000000 ____D C:\ProgramData\Avg
2016-07-04 21:19 - 2016-07-04 21:45 - 00000000 ____D C:\Users\Niko\AppData\Local\AvgSetupLog
2016-07-04 21:19 - 2016-07-04 21:19 - 00000000 ____D C:\Users\Niko\AppData\Local\Avg
2016-07-04 21:16 - 2016-07-04 21:18 - 00586856 _____ C:\Users\Niko\Downloads\adwcleaner_5.201_CB-DL-Manager.exe
2016-07-02 12:30 - 2016-07-02 12:30 - 00000000 ____D C:\Users\Niko\Downloads\Instrumentals - THE PRESIDENTZ  J ARMZ BEATS 4 B (DatPiff.com)
2016-07-02 12:13 - 2016-07-02 12:16 - 141549613 _____ C:\Users\Niko\Downloads\THE_PRESIDENTZ_J_ARMZ_BEATS_4_BREAKFAST_VOL_2-(DatPiff.com).zip
2016-07-01 19:10 - 2016-07-01 19:10 - 00000222 _____ C:\Users\Niko\Desktop\SMITE.url
2016-06-30 00:57 - 2016-06-30 00:57 - 00000000 ____D C:\Program Files (x86)\rcioux30
2016-06-30 00:03 - 2016-06-30 00:04 - 00000000 ____D C:\Program Files (x86)\nfomswty
2016-06-30 00:00 - 2016-07-04 23:37 - 00000000 ____D C:\Program Files (x86)\Firefox
2016-06-30 00:00 - 2016-06-30 00:00 - 00000000 ____D C:\Users\Niko\AppData\Roaming\Firefox
2016-06-30 00:00 - 2016-06-30 00:00 - 00000000 ____D C:\Users\Niko\AppData\Local\Firefox
2016-06-29 23:59 - 2016-07-04 21:37 - 00000000 ____D C:\Windows\system32\log
2016-06-29 23:58 - 2016-07-08 16:45 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-06-29 00:38 - 2016-06-29 00:38 - 00001215 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2016-06-25 04:18 - 2016-06-25 04:19 - 00000000 ____D C:\Windows\LastGood.Tmp
2016-06-24 14:08 - 2016-06-24 14:08 - 00000072 _____ C:\Windows\SysWOW64\EN_816657796.html
2016-06-24 14:08 - 2016-06-24 14:08 - 00000072 _____ C:\Windows\SysWOW64\EN_816656562.html
2016-06-24 14:08 - 2016-06-24 14:08 - 00000072 _____ C:\Windows\SysWOW64\EN_816656359.html
2016-06-24 14:08 - 2016-06-24 14:08 - 00000072 _____ C:\Windows\SysWOW64\EN_816625906.html
2016-06-24 14:08 - 2016-06-24 14:08 - 00000072 _____ C:\Windows\SysWOW64\EN_816625671.html
2016-06-24 14:07 - 2016-07-04 21:25 - 00000000 ____D C:\Windows\SysWOW64\_TSpm
2016-06-24 14:07 - 2016-06-24 14:07 - 04398324 _____ (Update) C:\Windows\SysWOW64\de1.exe
2016-06-24 14:07 - 2016-06-24 14:07 - 00000380 _____ C:\Windows\SysWOW64\data.bin
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816621953.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816621734.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816620781.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816620578.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816620265.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816620046.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816609000.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816608796.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\EN_816598218.html
2016-06-24 14:07 - 2016-06-24 14:07 - 00000072 _____ C:\Windows\SysWOW64\de_816597765.html
2016-06-24 12:47 - 2016-06-24 12:47 - 00000000 ____D C:\Program Files (x86)\Steinberg
2016-06-24 12:47 - 2011-02-02 07:53 - 00000000 ____D C:\Users\Niko\Downloads\Antares Autotune Evo VST 6.09 AiR
2016-06-24 12:47 - 2003-03-18 20:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2016-06-24 12:47 - 2003-02-21 04:42 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2016-06-24 12:46 - 2016-06-24 12:46 - 04882633 _____ C:\Users\Niko\Downloads\AA Evo 6.09 AiR.rar
2016-06-24 12:40 - 2010-03-18 08:12 - 22085632 ____N (Antares Audio Technologies) C:\Users\Niko\Downloads\Auto-Tune Evo TDM v6.0.9.2 Installer.exe
2016-06-17 22:57 - 2016-06-17 22:57 - 00000000 ____D C:\Program Files (x86)\zbvd83yy
2016-06-17 20:57 - 2016-06-17 20:57 - 00000000 ____D C:\Program Files (x86)\3psiwvq2
2016-06-17 19:36 - 2016-06-14 20:33 - 00828408 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-06-17 19:36 - 2016-06-14 20:33 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-06-17 18:57 - 2016-06-17 18:57 - 00000000 ____D C:\Program Files (x86)\2vq33qst
2016-06-17 18:42 - 2016-06-17 18:42 - 00000000 ____D C:\Program Files (x86)\bpjobf61
2016-06-15 11:45 - 2016-06-15 11:45 - 00000000 ____D C:\Users\Niko\Downloads\Chance The Rapper - Coloring Book
2016-06-15 01:04 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-15 01:04 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-06-15 01:03 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-06-15 01:03 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2016-06-15 01:03 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-15 01:03 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-15 01:03 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-06-15 01:03 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-06-15 01:03 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-06-15 01:03 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-06-15 01:03 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-06-15 01:03 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-15 01:03 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-15 01:03 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-06-15 01:03 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-06-15 01:03 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.exe
2016-06-15 01:03 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-06-15 01:03 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-06-15 01:03 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ufx01000.sys
2016-06-15 01:03 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-06-15 01:03 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-06-15 01:03 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-06-15 01:03 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-06-15 01:03 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-06-15 01:03 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-06-15 01:03 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-06-15 01:03 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-06-15 01:03 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-15 01:03 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-15 01:03 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2016-06-15 01:03 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-06-15 01:03 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-06-15 01:03 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-15 01:03 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-15 01:03 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-15 01:03 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-06-15 01:03 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-06-15 01:03 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2016-06-15 01:03 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2016-06-15 01:03 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2016-06-15 01:03 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-06-15 01:03 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-06-15 01:03 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-06-15 01:03 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-06-15 01:03 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-06-15 01:03 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-15 01:03 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\tdlrecover.exe
2016-06-15 01:03 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-06-15 01:03 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsdport.sys
2016-06-15 01:03 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdlrecover.exe
2016-06-15 01:03 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-06-15 01:03 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-06-15 01:03 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-06-15 01:03 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2016-06-15 01:03 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-15 01:03 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2016-06-15 01:03 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-06-15 01:03 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-15 01:03 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2016-06-15 01:03 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-06-15 01:03 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-06-15 01:03 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2016-06-15 01:03 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-06-15 01:03 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2016-06-15 01:03 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-06-15 01:03 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-06-15 01:03 - 2016-05-28 06:25 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2016-06-15 01:03 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys
2016-06-15 01:03 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2016-06-15 01:03 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2016-06-15 01:03 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-06-15 01:03 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-15 01:03 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2016-06-15 01:03 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-06-15 01:03 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-06-15 01:03 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2016-06-15 01:03 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\BrokerLib.dll
2016-06-15 01:03 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-06-15 01:03 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\GnssAdapter.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll
2016-06-15 01:03 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2016-06-15 01:03 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-06-15 01:03 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-06-15 01:03 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2016-06-15 01:03 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-06-15 01:03 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-06-15 01:03 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-15 01:03 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2016-06-15 01:03 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-06-15 01:03 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-15 01:03 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-15 01:03 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2016-06-15 01:03 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2016-06-15 01:03 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-15 01:03 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll
2016-06-15 01:03 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-06-15 01:03 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 00954368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2016-06-15 01:03 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-06-15 01:03 - 2016-05-28 06:13 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2016-06-15 01:03 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-06-15 01:03 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-15 01:03 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-06-15 01:03 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2016-06-15 01:03 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-06-15 01:03 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-06-15 01:03 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-06-15 01:03 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-06-15 01:03 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-06-15 01:03 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-15 01:03 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2016-06-15 01:03 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-06-15 01:03 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-06-15 01:03 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-06-15 01:03 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-06-15 01:03 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2016-06-15 01:03 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationFramework.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\internetmail.dll
2016-06-15 01:03 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-06-15 01:03 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-06-15 01:03 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-06-15 01:03 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-06-15 01:03 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2016-06-15 01:03 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2016-06-15 01:03 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-06-15 01:03 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-06-15 01:03 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2016-06-15 01:03 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-06-15 01:03 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-06-15 01:03 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-06-15 01:03 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-06-15 01:03 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-06-15 01:03 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2016-06-15 01:03 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2016-06-15 01:03 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-06-15 01:03 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2016-06-15 01:03 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2016-06-14 15:44 - 2016-06-14 16:02 - 136688426 _____ C:\Users\Niko\Downloads\Chance_The_Rapper-Coloring_Book.zip
2016-06-13 16:57 - 2016-06-13 16:57 - 00000000 ____D C:\Program Files (x86)\mr05lm4l
2016-06-13 14:46 - 2016-06-13 14:46 - 00000000 ____D C:\Program Files (x86)\5uibhy2s
2016-06-13 14:41 - 2016-06-13 14:41 - 72520720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCORES64.dat
2016-06-13 14:41 - 2016-06-13 14:41 - 13122584 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 12016264 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxVoiceAPO30.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 05989809 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-06-13 14:41 - 2016-06-13 14:41 - 05085952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-06-13 14:41 - 2016-06-13 14:41 - 03700360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioMeters64.exe
2016-06-13 14:41 - 2016-06-13 14:41 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 03282544 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 03199232 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 03094704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 02895104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-06-13 14:41 - 2016-06-13 14:41 - 02060032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 02050176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01978608 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01745160 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01422928 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01355616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01213664 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 01166160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00999864 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00914024 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00768824 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00677672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00642928 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00577840 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00445400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00410032 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00253864 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00221976 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00203560 _____ (Waves Audio) C:\Windows\system32\MaxxAudioVienna264.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00192984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00164432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkXInterface64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00084624 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00074608 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00069928 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll
2016-06-13 14:41 - 2016-06-13 14:41 - 00023696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-06-13 14:40 - 2016-06-13 14:40 - 10719648 _____ C:\Windows\system32\Drivers\Netwfw02.dat
2016-06-13 14:40 - 2016-06-13 14:40 - 03517192 _____ (Intel Corporation) C:\Windows\system32\Drivers\Netwbw02.sys
2016-06-13 14:40 - 2016-06-13 14:40 - 00481768 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2016-06-13 14:39 - 2016-06-13 14:39 - 01469952 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2016-06-13 14:39 - 2016-06-13 14:39 - 00936192 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2016-06-13 14:39 - 2016-06-13 14:39 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-06-13 12:45 - 2016-06-13 12:45 - 00000000 ____D C:\Program Files (x86)\9yyzk6fj
2016-06-13 00:48 - 2016-06-27 15:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-07-08 17:19 - 2016-04-25 14:01 - 00000000 ____D C:\Users\Niko\AppData\Roaming\Skype
2016-07-08 16:48 - 2016-04-03 18:06 - 00004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3D70B1AD-5AA9-43FC-AB95-D44854BD6545}
2016-07-07 22:17 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\AppReadiness
2016-07-07 19:15 - 2016-04-05 02:12 - 00002236 _____ C:\Users\Public\Desktop\Advanced SystemCare 9.lnk
2016-07-07 00:13 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-07 00:09 - 2016-03-31 16:50 - 00000000 ____D C:\ProgramData\McAfee
2016-07-05 01:57 - 2016-03-31 13:18 - 00000000 ____D C:\Program Files\Intel
2016-07-05 01:56 - 2016-03-31 18:24 - 00000000 ____D C:\Program Files\Common Files\McAfee
2016-07-05 01:56 - 2016-03-31 18:24 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-07-05 01:47 - 2016-03-31 16:49 - 00000000 ____D C:\Users\Niko\AppData\Local\Adobe
2016-07-04 22:06 - 2016-03-31 13:19 - 00000000 __SHD C:\Users\Niko\IntelGraphicsProfiles
2016-07-04 22:05 - 2016-03-31 12:58 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-04 22:05 - 2015-10-30 08:28 - 00524288 ___SH C:\Windows\system32\config\BBI
2016-07-04 22:04 - 2016-04-05 02:12 - 00000268 _____ C:\Windows\Tasks\ASC9_SkipUac_Niko.job
2016-07-04 22:01 - 2016-05-18 21:17 - 00000000 ____D C:\Program Files (x86)\Image-Line
2016-07-04 22:00 - 2016-05-18 21:23 - 00000000 ____D C:\Users\Niko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-07-04 22:00 - 2016-05-18 21:23 - 00000000 ____D C:\Program Files\Image-Line
2016-07-04 21:59 - 2016-04-25 14:00 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-07-04 21:06 - 2015-10-30 09:21 - 00000000 ____D C:\Windows\INF
2016-07-04 20:02 - 2016-04-03 17:25 - 00000000 ____D C:\Program Files (x86)\Steam
2016-07-04 19:59 - 2016-03-31 13:21 - 00000000 ____D C:\ProgramData\ProductData
2016-07-02 12:08 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\NDF
2016-06-29 00:38 - 2016-03-31 16:37 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-29 00:38 - 2016-03-31 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-06-27 17:11 - 2016-03-31 13:12 - 01708398 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-27 17:11 - 2015-10-30 20:35 - 00739114 _____ C:\Windows\system32\perfh007.dat
2016-06-27 17:11 - 2015-10-30 20:35 - 00147764 _____ C:\Windows\system32\perfc007.dat
2016-06-27 16:47 - 2016-05-26 16:56 - 00000000 ____D C:\Program Files (x86)\Chinutygoheph
2016-06-27 16:44 - 2016-05-26 16:56 - 00000000 ____D C:\Program Files (x86)\Rritckesock
2016-06-27 16:43 - 2016-03-31 13:21 - 00000000 ____D C:\ProgramData\IObit
2016-06-27 15:46 - 2016-03-31 13:06 - 00000000 ____D C:\Users\Niko
2016-06-27 15:26 - 2016-03-31 18:24 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-06-27 15:26 - 2016-03-31 18:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-06-24 12:47 - 2016-05-26 17:24 - 00000000 ____D C:\Users\Niko\AppData\Roaming\Antares
2016-06-24 12:47 - 2016-05-26 17:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antares Audio Technologies
2016-06-24 12:47 - 2016-05-26 17:24 - 00000000 ____D C:\Program Files (x86)\Antares Audio Technologies
2016-06-23 18:00 - 2016-03-31 18:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-06-18 14:38 - 2016-04-20 15:15 - 00000000 ____D C:\Users\Niko\AppData\Roaming\vlc
2016-06-17 19:36 - 2015-10-30 09:11 - 00000000 ____D C:\Windows\CbsTemp
2016-06-15 15:43 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\rescache
2016-06-15 11:42 - 2016-03-31 13:06 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-15 03:18 - 2016-03-31 12:55 - 00194272 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-15 03:16 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-06-15 03:16 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2016-06-15 03:16 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\bcastdvr
2016-06-15 01:25 - 2016-03-31 16:43 - 00000000 ____D C:\Windows\system32\MRT
2016-06-15 01:23 - 2016-03-31 16:43 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-06-14 13:03 - 2016-04-07 23:19 - 00000000 ____D C:\Users\Niko\AppData\Local\ElevatedDiagnostics
2016-06-13 14:43 - 2016-03-31 13:32 - 01019725 _____ C:\Windows\system32\Drivers\rtwavesskdy.dat
2016-06-13 14:43 - 2016-03-31 13:32 - 00456036 _____ C:\Windows\system32\Drivers\rtwavesmapro.dat
2016-06-13 14:43 - 2016-03-31 13:32 - 00031095 _____ C:\Windows\system32\Drivers\rtwavesEFX.dat
2016-06-13 14:43 - 2016-03-31 13:32 - 00010945 _____ C:\Windows\system32\Drivers\rtwavesMFX.dat
2016-06-13 14:43 - 2016-03-31 13:21 - 00002237 _____ C:\Users\Public\Desktop\Driver Booster 3.lnk
2016-06-13 14:42 - 2016-03-31 13:14 - 00000000 ____D C:\Windows\SysWOW64\RTCOM

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-05-26 17:22 - 2016-05-26 17:23 - 22085632 _____ (Antares Audio Technologies) C:\Program Files\Auto-Tune Evo TDM v6.0.9.2 Installer.exe
2016-03-31 13:14 - 2016-03-31 13:14 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Niko\AppData\Local\Temp\0200791467661844McInst.exe
C:\Users\Niko\AppData\Local\Temp\avgnt.exe
C:\Users\Niko\AppData\Local\Temp\inject.dll
C:\Users\Niko\AppData\Local\Temp\libeay32.dll
C:\Users\Niko\AppData\Local\Temp\msvcr120.dll
C:\Users\Niko\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-07-07 19:47

==================== Ende von FRST.txt ============================
         
--- --- ---

Geändert von nikof2 (08.07.2016 um 16:37 Uhr)

Alt 08.07.2016, 16:32   #5
nikof2
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



FRST Additions Logfile:
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-07-2016
durchgeführt von Niko (2016-07-08 17:29:46)
Gestartet von C:\Users\Niko\Downloads
Windows 10 Home Version 1511 (X64) (2016-03-31 11:04:45)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-4253662455-609384667-3053430216-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4253662455-609384667-3053430216-503 - Limited - Disabled)
Gast (S-1-5-21-4253662455-609384667-3053430216-501 - Limited - Disabled)
Niko (S-1-5-21-4253662455-609384667-3053430216-1001 - Administrator - Enabled) => C:\Users\Niko

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated)
Antares Auto-Tune Evo TDM (HKLM-x32\...\{E43E5F45-E924-4D83-9DB9-8D74BCF7A9DD}) (Version: 6.00.0009 - Antares Audio Technologies)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.17.273 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{3d9e0476-943f-4962-99dc-b9c937a43840}) (Version: 1.1.65.9690 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.65.9690 - Avira Operations GmbH & Co. KG) Hidden
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 19.0.15.2 - Synaptics Incorporated)
FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version:  - Image-Line)
Intel Security True Key (HKLM\...\TrueKey) (Version: 4.3.145.1 - Intel Security)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4281 - Intel Corporation)
Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation)
McAfee Security Scan Plus (HKLM-x32\...\McAfee Security Scan) (Version: 3.11.266.3 - McAfee, Inc.)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 47.0 (x64 de) (HKLM\...\Mozilla Firefox 47.0 (x64 de)) (Version: 47.0 - Mozilla)
Python 3.3.5 (64-bit) (HKLM\...\{51f10cac-4175-3b46-8143-e9442d562ea5}) (Version: 3.3.5150 - Python Software Foundation)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7829 - Realtek Semiconductor Corp.)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16035.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.16035.2 - Samsung Electronics Co., Ltd.) Hidden
Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SMITE (HKLM\...\Steam App 386360) (Version:  - Hi-Rez Studios)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
US-122 MKII / US-144 MKII (HKLM\...\USB_AUDIO_DEusb-audio.deTascam) (Version:  - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN)
WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Yamaha Steinberg USB Driver (HKLM-x32\...\InstallShield_{5355C6A0-C19D-4AD3-8295-7B9A49BAAF7B}) (Version: 1.9.4 - Yamaha Corporation)
Yamaha Steinberg USB Driver (Version: 1.9.4 - Yamaha Corporation) Hidden

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-4253662455-609384667-3053430216-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Niko\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07793E7C-E6FA-452A-AB1C-75E4578DE578} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2016-03-23] (IObit)
Task: {12164408-DF96-4CD0-8832-8DC3CC979D99} - System32\Tasks\ASC9_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-03-04] (IObit)
Task: {3F812621-AB8F-4E45-8DE7-052A6C07939B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-05] (Adobe Systems Incorporated)
Task: {6DAC287C-2EF3-4B8A-90EA-34BAF9FA5D0A} - System32\Tasks\Driver Booster SkipUAC (Niko) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2016-03-23] (IObit)
Task: {7EBC4813-FCD0-4DA6-9568-3BD187C1EF4F} - System32\Tasks\ASC9_SkipUac_Niko => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-03-11] (IObit)
Task: {8CA81D37-9EF5-430D-A218-A273C956822B} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-06-13] (Realtek Semiconductor)
Task: {94B7EFD3-9D8E-4A88-92F2-4FB9AB0E6A34} - System32\Tasks\Reogich Launcher => C:\Program Files (x86)\Reogich\ReogichLaunchertask.exe [2016-05-26] () <==== ACHTUNG

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ASC9_SkipUac_Niko.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-04-13 17:53 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-09-17 22:03 - 2015-09-17 22:03 - 00405416 _____ () C:\Windows\system32\igfxTray.exe
2016-04-13 17:53 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-05-17 22:00 - 2016-05-17 22:00 - 00959168 _____ () C:\Users\Niko\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-05-26 16:56 - 2016-05-26 12:00 - 00415936 _____ () C:\Users\Niko\AppData\Local\Microsoft\Windows\INetCookies\x64explibss.dll
2016-04-19 10:01 - 2016-04-19 10:01 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-03-31 16:42 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-10 20:09 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-05-10 20:09 - 2016-04-23 06:25 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll
2016-06-30 00:00 - 2016-06-29 05:50 - 00501632 _____ () C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
2016-06-15 01:03 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-15 01:03 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-15 01:03 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-15 01:03 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-06-15 01:03 - 2016-05-28 05:55 - 00936960 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-07-04 21:29 - 2016-07-04 21:30 - 03712064 _____ () C:\Users\Niko\Downloads\adwcleaner_5.201.exe
2016-04-05 02:12 - 2015-12-28 13:49 - 00629536 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2016-04-19 10:01 - 2016-04-19 10:01 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 10:01 - 2016-04-19 10:01 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-05-17 22:00 - 2016-05-17 22:00 - 00679624 _____ () C:\Users\Niko\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-04-05 02:12 - 2015-12-28 13:50 - 00899872 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\webres.dll
2016-04-05 02:12 - 2015-12-28 13:49 - 00629536 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\ProductStatistics.dll
2016-04-05 02:12 - 2015-12-23 18:32 - 00355616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl
2016-04-05 02:12 - 2015-12-23 18:32 - 00190240 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl
2016-04-05 02:12 - 2015-12-23 18:32 - 00057632 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)

HKU\S-1-5-21-4253662455-609384667-3053430216-1001\Software\Classes\regfile: regedit.exe "%1" <===== ACHTUNG

==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-4253662455-609384667-3053430216-1001\...\100sexlinks.com -> 100sexlinks.com

Da befinden sich 4789 mehr Seiten.


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2015-10-30 09:24 - 2015-10-30 09:21 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-4253662455-609384667-3053430216-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{82DD2FAA-0E9E-4FE8-A688-63C6F5C618FD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{848012E8-239C-4C2C-AA3A-621BE2371333}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F179088E-F103-412B-B59C-38733EB8C983}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E23B076F-07DE-4317-805B-1C30C149CE53}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CDDD53A1-06F8-4AEA-94B2-3A143A89C5D5}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{7DD02356-CC7E-425B-80FF-0297025E8D76}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{A0E361B6-4C84-4252-86F2-34F9BADAF2CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{4CA63B56-0442-4595-BEF7-AEBFC0F28EEC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B4DE08C7-C951-43B3-8346-BF62E4A29D6B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{BB6FA6AF-E593-43D5-8D86-A08EAB9AE1FC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{7937DB27-0137-401C-A9B3-21BC0CBED2C8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{BF43EBC3-5856-4388-88C4-7945D6190918}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{07513329-1884-42AF-B69D-FBCAF7C740D2}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{E66E1239-E45E-432C-A75C-BD3F71DEE386}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{A34E874D-0357-44AF-AD41-AD49DE0FC700}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{5BEF4EEF-9344-4171-B614-1AE3228D36B6}] => (Allow) C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
FirewallRules: [{6EF18E93-F0ED-4CCF-80AC-C76AE302270D}] => (Allow) C:\Program Files (x86)\Firefox\firefox.exe

==================== Wiederherstellungspunkte =========================

04-07-2016 21:46:42 Removed Visual Studio 2012 x86 Redistributables
04-07-2016 21:48:05 Removed Visual Studio 2012 x64 Redistributables
04-07-2016 21:59:29 Removed Skype Click to Call
04-07-2016 21:59:56 Removed Interlok driver setup x64.

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (07/08/2016 04:45:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-STEMLBH)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (07/07/2016 07:14:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-STEMLBH)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (07/06/2016 10:27:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-STEMLBH)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (07/04/2016 09:59:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (07/04/2016 09:59:30 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (07/04/2016 09:48:06 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (07/04/2016 09:47:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (07/04/2016 09:48:17 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-STEMLBH)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (07/03/2016 05:47:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-STEMLBH)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (07/01/2016 09:21:13 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.


Systemfehler:
=============
Error: (07/08/2016 05:57:20 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (07/07/2016 06:33:00 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (07/07/2016 12:11:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: 
%%1 = Unzulässige Funktion.


Error: (07/05/2016 05:17:41 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (07/05/2016 01:57:33 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: 
%%1 = Unzulässige Funktion.


Error: (07/04/2016 10:04:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_56b0c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (07/04/2016 10:04:59 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (07/04/2016 10:04:51 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen: 
%%5 = Zugriff verweigert


Error: (07/04/2016 10:04:51 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Der Aufruf "ScRegSetValueExW" ist für "Security" aufgrund folgenden Fehlers fehlgeschlagen: 
%%5 = Zugriff verweigert


Error: (07/04/2016 10:04:51 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Der Aufruf "ScRegSetValueExW" ist für "Security" aufgrund folgenden Fehlers fehlgeschlagen: 
%%5 = Zugriff verweigert



CodeIntegrity:
===================================
  Date: 2016-07-04 21:48:06.089
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-04 21:47:17.767
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-04 21:30:00.110
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-04 21:20:56.615
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-04 19:44:49.569
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-04 19:20:52.308
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-03 22:16:02.257
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-03 19:19:42.265
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-03 18:53:33.594
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-07-03 18:49:05.852
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 8080.36 MB
Verfügbarer physikalischer RAM: 4913.64 MB
Summe virtueller Speicher: 9360.36 MB
Verfügbarer virtueller Speicher: 5863.18 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:931.02 GB) (Free:875.36 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8D1B13A0)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
--- --- ---


Alt 08.07.2016, 20:31   #6
M-K-D-B
/// TB-Ausbilder
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Servus,



wenn du die folgende Reihenfolge einhältst, sollte es mit der Entfernung klappen.






Schritt 1
Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.








Schritt 1
  • Schließe alle offenen Programme und Browser.
  • Starte die adwcleaner.exe mit einem Doppelklick.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • "Prefetch" Dateien löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Chrome Einstellungen zurücksetzen
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).





Schritt 3

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.







Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt nun zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.






Bitte poste mit deiner nächsten Antwort
  • die Logdatei von MBAM,
  • die Logdatei von AdwCleaner,
  • die Logdatei von JRT,
  • die beiden neuen Logdateien von FRST.

Alt 11.07.2016, 00:10   #7
nikof2
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Hat geklappt vielen dank

Alt 11.07.2016, 14:18   #8
M-K-D-B
/// TB-Ausbilder
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Zitat:
Zitat von nikof2 Beitrag anzeigen
Hat geklappt vielen dank
Magst du bitte noch die Logdateien posten?

Alt 14.07.2016, 13:58   #9
M-K-D-B
/// TB-Ausbilder
 
Kann MPC Cleaner nicht entfernen - Standard

Kann MPC Cleaner nicht entfernen



Fehlende Rückmeldung
Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten.
PM an mich falls Du denoch weiter machen willst.

Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist.

Jeder andere bitte hier klicken und einen eigenen Thread erstellen!

Antwort

Themen zu Kann MPC Cleaner nicht entfernen
andauernd, beginnt, blöd, cleaner, dauernd, deinstallieren, entferne, entfernen, entfernung, formiert, hoffe, installiert, interne, internet, kurzem, laptop, latein, malware / adware / spyware etc, meldungen, natürlich, poste, probleme, suche, thema, viren, zusammen



Ähnliche Themen: Kann MPC Cleaner nicht entfernen


  1. Malware MPC-Cleaner lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 24.06.2016 (16)
  2. Windows 10 : MPC Cleaner lässt sich nicht richtig entfernen
    Log-Analyse und Auswertung - 02.05.2016 (49)
  3. Win 8.1 MPC Cleaner lässt sich nicht entfernen
    Log-Analyse und Auswertung - 30.04.2016 (30)
  4. MPC Cleaner lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 24.03.2016 (29)
  5. MPC Cleaner lässt sich nicht komplett Entfernen
    Log-Analyse und Auswertung - 17.03.2016 (9)
  6. MPC Cleaner läßt sich nicht entfernen
    Log-Analyse und Auswertung - 11.03.2016 (12)
  7. Win 10: "MPC Cleaner" lässt sich nicht entfernen
    Log-Analyse und Auswertung - 11.03.2016 (1)
  8. MPC Cleaner lässt sich nicht entfernen
    Log-Analyse und Auswertung - 20.01.2016 (82)
  9. MPC Cleaner lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 07.01.2016 (2)
  10. Adw Cleaner zeigt immer noch in Scheduled tasks Daten an die der Cleaner nicht Löscht
    Log-Analyse und Auswertung - 23.08.2015 (5)
  11. Laut Adw-Cleaner Virus in Chrome und kann ihn nicht entfernen.
    Plagegeister aller Art und deren Bekämpfung - 27.04.2015 (14)
  12. ADW-Cleaner kann Virus nicht löschen
    Plagegeister aller Art und deren Bekämpfung - 25.03.2015 (11)
  13. HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA - Dieser key kann auch adw cleaner nicht entfernen
    Log-Analyse und Auswertung - 02.03.2015 (1)
  14. Adware Cleaner kann Malware nicht löschen
    Plagegeister aller Art und deren Bekämpfung - 25.12.2014 (9)
  15. TR/Matsnu.EB.137 lässt sich mit AVIRA EU Cleaner nicht entfernen
    Log-Analyse und Auswertung - 13.03.2014 (41)
  16. Win 7 - Trojanerfund durch Avira PC Cleaner - Kann nicht gelöscht werden?
    Log-Analyse und Auswertung - 31.01.2014 (13)

Zum Thema Kann MPC Cleaner nicht entfernen - Hallo alle zusammen, erst einmal Entschuldigung falls dieses Thema schon einmal aufkam und ich zu blöd war es zu finden. Ich habe mich natürlich erst einmal informiert bevor ich hier - Kann MPC Cleaner nicht entfernen...
Archiv
Du betrachtest: Kann MPC Cleaner nicht entfernen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.