Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Thema geschlossen
Alt 26.10.2016, 23:14   #1
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Hallo und guten Tag,

ich habe seit ein paar Tagen ein wirklich sehr eigenartiges Problem.

Da ich absolut nicht mehr weiter weis, wende ich mich an euch.

Als ich vor 5 Tagen am Rechner saß, hat sich meine Maus plötzlich von allein bewegt.
Nicht einfach nur mit sprügen (wie zum Beispiel bei Hardwareproblemen der Maus) sonder zielgerichtet. (Ich hatte ein Mail gelesen und der Zeiger wanderte auf "Löschen")
Um den Mauszeiger wurde ein transparenter Kreis erzeugt und ich hatte die Kontrolle über die Maus völlig verloren. Noch im Schreckzustand habe ich sofort das Netzwerkkabel gezogen. Dann war der Kreis verschwunden und ich konnte die Maus wieder kontrollieren/bewegen. Ich dachte zunächst an die geöffnete Mail, aber diese hatte keinen Anhang und ich hatte auch nie einen anderen verdächtigen Anhang geöffnet. (Es war ein Online-Account des Mailprograms GroupWise)

Natürlich habe ich dem Rechner absolut nicht mehr vertraut und erstmal Kaspersky im normalen und abgesicherten Modus einen Suchlauf starten lassen. Es wurde aber nichts gefunden.

Ich habe mich daraufhin im Netz belesen und keine wirklichen Antworten gefunden. Daher hatte ich den PC neu aufgesetzt, da ich dachte so alles wieder zu bereinigen.
Kaum bin ich mit dem Einrichten der Treiber fertig, passiert es schon wieder.
Das gleiche Problem, die Maus bewegt sich in einem transparenten Kreis ganz von allein. Ich habe diesmal ein Video davon machen können. siehe Anhang
Ich habe das Netzwerkkabel nicht gezogen und habe den Zeiger beobachtet. Die Bewegung war noch immer zielgrichtet, blieb dann aber irgendwann stehen. Die Kontrolle über die Maus bekam ich dennoch nicht zurück. Ich betreibe die Maus an einem KVM Switch. Man kann per Taste zwischen den Rechner wechseln. Als ich diese Taste betätigte, war der Kreis wieder verschwunden. Im Anhang sind das Video und die beiden Datein FRST.txt und Addition.txt

Meine Frage ist nun: Kann es sich dabei um einen Trojaner handeln oder gibt es solch ein Phänomen auch bei Hardwareproblemen?

Über eure Hilfe und Antworten würde ich mich sehr freuen.

Alt 27.10.2016, 00:32   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Hi und

Logs bitte nicht anhängen, notfalls splitten und über mehrere Postings verteilt posten

Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 27.10.2016, 09:34   #3
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 26-10-2016
durchgeführt von Kolle (26-10-2016 22:42:56)
Gestartet von C:\Users\Kolle\Downloads
Windows 10 Pro Version 1607 (X64) (2016-10-26 12:02:34)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2564016768-1235221782-314094893-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2564016768-1235221782-314094893-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2564016768-1235221782-314094893-1001 - Limited - Disabled) => C:\Users\defaultuser0.DESKTOP-9RCQFIO
Gast (S-1-5-21-2564016768-1235221782-314094893-501 - Limited - Disabled)
Kolle (S-1-5-21-2564016768-1235221782-314094893-1002 - Administrator - Enabled) => C:\Users\Kolle

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Kaspersky Internet Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

. . . (Version: 2.1.28.3 - Intel) Hidden
. . . (x32 Version: 2.6.1.4 - Intel) Hidden
7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
FreePDF (Remove only) (HKLM-x32\...\FreePDF_XP) (Version:  - )
GPL Ghostscript (HKLM-x32\...\GPL Ghostscript 9.18) (Version: 9.18 - Artifex Software Inc.)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.14 - Intel(R) Corporation) Hidden
Intel® Driver Update Utility (HKLM-x32\...\{fe2eebd3-ee15-4538-bb19-b627e3f2a911}) (Version: 2.6.1.4 - Intel)
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden
Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Kaspersky Lab)
Kaspersky Secure Connection (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden
KeePass Password Safe 1.31 (HKLM-x32\...\KeePass Password Safe_is1) (Version: 1.31 - Dominik Reichl)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 49.0.2 (x64 de) (HKLM\...\Mozilla Firefox 49.0.2 (x64 de)) (Version: 49.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2 - Mozilla)
Oracle VM VirtualBox 5.0.28 (HKLM\...\{912B13BA-9046-4917-815F-B0060362228C}) (Version: 5.0.28 - Oracle Corporation)
RedMon - Redirection Port Monitor (HKLM\...\Redirection Port Monitor) (Version: 1.90 - Ghostgum Software Pty Ltd)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version:  - Microsoft) Hidden
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
VeraCrypt (HKLM-x32\...\VeraCrypt) (Version: 1.17 - IDRIX)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WinRAR 5.30 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-2564016768-1235221782-314094893-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Kolle\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {9DAE061D-4C0B-4100-B735-9709F6676221} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs"
Task: {B63E3854-3F15-4E8D-B787-F0F504DAD26A} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation)
Task: {C62BCF8A-74BA-4E67-B5D6-4D3846DD5AF0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-10-26 21:48 - 2016-09-15 19:25 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-10-26 21:03 - 2012-06-21 07:25 - 00113152 _____ () C:\Windows\System32\redmon64.dll
2016-06-08 18:04 - 2016-06-08 18:04 - 00117400 _____ () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
2016-10-26 21:48 - 2016-09-15 19:25 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-10-26 21:28 - 2016-10-26 21:28 - 00959168 _____ () C:\Users\Kolle\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\Windows\SYSTEM32\CHARTV.dll
2015-12-19 01:08 - 2015-12-19 01:08 - 00402344 _____ () C:\Windows\system32\igfxTray.exe
2016-10-26 21:48 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-26 21:47 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-26 21:48 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-26 21:04 - 2016-06-08 18:07 - 00458904 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
2016-10-26 21:04 - 2016-06-08 18:18 - 00709272 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll
2016-10-26 21:04 - 2016-06-08 18:17 - 00188568 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll
2016-10-26 21:04 - 2016-06-08 18:12 - 00416408 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
2016-10-26 21:04 - 2016-06-08 18:15 - 00130712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll
2016-10-26 21:04 - 2016-06-08 18:16 - 00025752 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll
2016-10-26 21:04 - 2016-06-08 18:16 - 00059544 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll
2016-10-26 21:04 - 2016-06-08 18:16 - 00194712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll
2016-10-26 21:04 - 2016-06-08 18:17 - 00159896 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll
2016-10-26 21:04 - 2016-06-08 18:17 - 00158360 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll
2016-10-26 21:04 - 2016-06-08 18:16 - 00050840 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll
2016-10-26 21:04 - 2016-06-08 18:15 - 00032920 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll
2016-06-28 00:19 - 2016-06-28 00:19 - 00865232 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\kpcengine.2.3.dll
2016-10-26 21:28 - 2016-10-26 21:28 - 00679624 _____ () C:\Users\Kolle\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-10-26 22:16 - 2016-10-26 22:16 - 00158720 _____ () C:\Users\Kolle\AppData\Local\Temp\sfareca00001.dll
2016-10-26 21:06 - 2016-10-26 22:16 - 00192512 _____ () C:\Users\Kolle\AppData\Local\Temp\sfamcc00001.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-07-16 13:47 - 2016-07-16 13:45 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2564016768-1235221782-314094893-1002\Control Panel\Desktop\\Wallpaper -> V:\Foto\2016\Julius\IMG_0003_2 (1).jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{CEBB21BA-501A-4559-A376-ABFF51759D5C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{91428788-4E29-4362-BCBB-7A21E4271CAD}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (10/26/2016 09:53:01 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.

Error: (10/26/2016 07:51:58 PM) (Source: Windows Search Service) (EventID: 3104) (User: )
Description: Fehler beim Aufzählen von Benutzersitzungen zum Generieren von Filterpools.

Details:
	(HRESULT : 0x80040210) (0x80040210)

Error: (10/26/2016 04:56:09 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-9RCQFIO)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (10/26/2016 04:27:23 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8024402C
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (10/26/2016 04:20:01 PM) (Source: Windows Search Service) (EventID: 3104) (User: )
Description: Fehler beim Aufzählen von Benutzersitzungen zum Generieren von Filterpools.

Details:
	(HRESULT : 0x80040210) (0x80040210)

Error: (10/26/2016 02:03:24 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8024402C
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=2

Error: (10/26/2016 02:02:37 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8024402C
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (10/26/2016 02:02:33 PM) (Source: Windows Search Service) (EventID: 3104) (User: )
Description: Fehler beim Aufzählen von Benutzersitzungen zum Generieren von Filterpools.

Details:
	(HRESULT : 0x80040210) (0x80040210)

Error: (10/26/2016 02:02:33 PM) (Source: Windows Search Service) (EventID: 3104) (User: )
Description: Fehler beim Aufzählen von Benutzersitzungen zum Generieren von Filterpools.

Details:
	(HRESULT : 0x80040210) (0x80040210)

Error: (10/26/2016 01:56:12 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Fehler beim Aktualisieren des Windows Defender-Status auf SECURITY_PRODUCT_STATE_ON (Fehler %3).


Systemfehler:
=============
Error: (10/26/2016 10:14:11 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (10/26/2016 10:13:14 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 10:13:14 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 10:13:14 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 10:13:14 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 10:13:13 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 10:13:13 PM) (Source: cdrom) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\CdRom0.

Error: (10/26/2016 09:43:25 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (10/26/2016 09:27:30 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (10/26/2016 09:27:22 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎26.‎10.‎2016 um 21:05:41 unerwartet heruntergefahren.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i3-4170 CPU @ 3.70GHz
Prozentuale Nutzung des RAM: 13%
Installierter physikalischer RAM: 15834.46 MB
Verfügbarer physikalischer RAM: 13621.08 MB
Summe virtueller Speicher: 18778.46 MB
Verfügbarer virtueller Speicher: 16682.5 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:118.75 GB) (Free:85.47 GB) NTFS
Drive d: (Volume) (Fixed) (Total:698.63 GB) (Free:424.65 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: CB02F2AF)
Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: FFF23AB1)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.8 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
__________________

Alt 27.10.2016, 09:36   #4
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 26-10-2016
durchgeführt von Kolle (Administrator) auf DESKTOP-9RCQFIO (26-10-2016 22:42:35)
Gestartet von C:\Users\Kolle\Downloads
Geladene Profile: Kolle (Verfügbare Profile: defaultuser0 & Kolle)
Platform: Windows 10 Pro Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe
() C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(shbox.de) C:\Program Files (x86)\FreePDF_XP\fpassist.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
() C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe
(Almico Software (almico.com)) C:\Program Files (x86)\SpeedFan\speedfan.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [FreePDF Assistant] => C:\Program Files (x86)\FreePDF_XP\fpassist.exe [373760 2014-03-18] (shbox.de)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKU\S-1-5-21-2564016768-1235221782-314094893-1002\...\MountPoints2: {593bee9f-9bb2-11e6-ace7-408d5c727546} - "F:\SETUP.EXE" 
Startup: C:\Users\Kolle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SpeedFan.lnk [2016-10-26]
ShortcutTarget: SpeedFan.lnk -> C:\Program Files (x86)\SpeedFan\speedfan.exe (Almico Software (almico.com))

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{4e7dac59-ea54-4eee-b75e-6a84eba59461}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2016-06-28] (AO Kaspersky Lab)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2016-06-28] (AO Kaspersky Lab)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2016-06-28] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2016-06-28] (AO Kaspersky Lab)

FireFox:
========
FF ProfilePath: C:\Users\Kolle\AppData\Roaming\Mozilla\Firefox\Profiles\noelwjbt.default [2016-10-26]
FF HKLM\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2016-06-28]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab)
R2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] ()
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab)
R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [117400 2016-06-08] ()
S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-07] (AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [78216 2016-05-31] (AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [191312 2016-06-26] (AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\drivers\klhk.sys [435032 2016-10-26] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys [182360 2016-10-26] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1012056 2016-10-26] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [50008 2016-10-26] (AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [45488 2016-05-31] (AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [223528 2016-10-26] (AO Kaspersky Lab)
R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [252560 2016-10-26] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [112336 2016-10-26] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [167904 2016-10-26] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [127896 2016-10-26] (AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [194480 2016-06-14] (AO Kaspersky Lab)
R0 megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek                                            )
R3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2015-06-04] ()
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [131096 2016-10-18] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [203856 2016-10-18] (Oracle Corporation)
R1 veracrypt; C:\Windows\System32\drivers\veracrypt.sys [198248 2016-10-26] (IDRIX)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-10-26 22:42 - 2016-10-26 22:42 - 00011134 _____ C:\Users\Kolle\Downloads\FRST.txt
2016-10-26 22:42 - 2016-10-26 22:42 - 00000000 ____D C:\FRST
2016-10-26 22:41 - 2016-10-26 22:42 - 02407936 _____ (Farbar) C:\Users\Kolle\Downloads\FRST64.exe
2016-10-26 22:37 - 2016-10-26 22:37 - 00000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-10-26 22:37 - 2016-10-26 22:37 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\vlc
2016-10-26 22:37 - 2016-10-26 22:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-10-26 22:36 - 2016-10-26 22:36 - 31717016 _____ C:\Users\Kolle\Downloads\vlc-2.2.4-win64.exe
2016-10-26 22:36 - 2016-10-26 22:36 - 00000000 ____D C:\Program Files\VideoLAN
2016-10-26 22:35 - 2016-10-26 22:35 - 01468928 _____ C:\Users\Kolle\Desktop\maus.avi
2016-10-26 22:32 - 2016-10-26 22:35 - 00000000 ____D C:\Users\Kolle\Documents\My CamStudio Temp Files
2016-10-26 22:32 - 2016-10-26 22:32 - 13800280 _____ (PortableApps.com) C:\Users\Kolle\Downloads\CamStudioPortable_2.7.2_English.paf.exe
2016-10-26 22:32 - 2016-10-26 22:32 - 00000096 _____ C:\Users\Kolle\AppData\Roaming\version2.xml
2016-10-26 22:32 - 2016-10-26 22:32 - 00000000 ____D C:\Users\Kolle\Downloads\CamStudioPortable
2016-10-26 22:32 - 2016-10-26 22:32 - 00000000 ____D C:\Users\Kolle\Documents\My CamStudio Videos
2016-10-26 22:26 - 2016-10-26 22:27 - 00767872 _____ ( ) C:\Users\Kolle\Downloads\camstudiosetup_v2.7.2.exe
2016-10-26 22:23 - 2016-10-26 22:24 - 122546523 _____ C:\Users\Kolle\Desktop\IMG_5777.MOV
2016-10-26 21:58 - 2016-10-26 21:58 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-10-26 21:56 - 2016-10-26 21:56 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 __RHD C:\MSOCache
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Windows\SHELLNEW
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Windows\PCHEALTH
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Users\Kolle\AppData\Local\Microsoft Help
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Program Files\Microsoft Office
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-10-26 21:55 - 2016-10-26 21:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-10-26 21:52 - 2016-10-26 21:53 - 00000000 ____D C:\Windows\system32\MRT
2016-10-26 21:52 - 2016-10-26 21:52 - 143495576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-10-26 21:49 - 2016-10-26 21:49 - 01710680 _____ C:\Users\Kolle\Downloads\SetupVirtualCloneDrive5500.exe
2016-10-26 21:49 - 2016-10-26 21:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2016-10-26 21:49 - 2016-10-26 21:49 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2016-10-26 21:49 - 2016-10-05 12:12 - 02446696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-10-26 21:49 - 2016-10-05 11:22 - 13081088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-10-26 21:49 - 2016-10-05 11:21 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-10-26 21:49 - 2016-10-05 11:17 - 02914304 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-10-26 21:49 - 2016-10-05 11:15 - 07625728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-10-26 21:49 - 2016-10-05 11:11 - 12174848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-10-26 21:49 - 2016-09-15 20:14 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-10-26 21:49 - 2016-09-15 19:23 - 01503032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-10-26 21:49 - 2016-09-15 19:17 - 04311736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-10-26 21:49 - 2016-09-15 19:16 - 00527808 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2016-10-26 21:49 - 2016-09-15 19:15 - 00649568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-10-26 21:49 - 2016-09-15 19:13 - 01264912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-10-26 21:49 - 2016-09-15 19:08 - 05683712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-10-26 21:49 - 2016-09-15 18:56 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManagerApi.dll
2016-10-26 21:49 - 2016-09-15 18:55 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetworkCollectionAgent.dll
2016-10-26 21:49 - 2016-09-15 18:53 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-10-26 21:49 - 2016-09-15 18:43 - 03196416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-10-26 21:49 - 2016-09-15 18:38 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2016-10-26 21:49 - 2016-09-15 18:38 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\NetworkCollectionAgent.dll
2016-10-26 21:49 - 2016-09-15 18:38 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2016-10-26 21:49 - 2016-09-15 18:37 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-10-26 21:49 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2016-10-26 21:49 - 2016-09-15 18:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2016-10-26 21:49 - 2016-09-15 18:34 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-10-26 21:49 - 2016-09-15 18:32 - 01037312 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2016-10-26 21:49 - 2016-09-15 18:31 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-10-26 21:49 - 2016-09-15 18:30 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-10-26 21:49 - 2016-09-15 18:28 - 03288064 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2016-10-26 21:49 - 2016-09-15 18:28 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2016-10-26 21:49 - 2016-09-15 18:27 - 02860032 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2016-10-26 21:49 - 2016-09-15 18:25 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2016-10-26 21:49 - 2016-09-15 18:22 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-10-26 21:49 - 2016-09-15 18:19 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-10-26 21:49 - 2016-09-15 18:18 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-10-26 21:49 - 2016-09-15 18:16 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-10-26 21:49 - 2016-09-15 18:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\spaceman.exe
2016-10-26 21:49 - 2016-09-07 07:50 - 00773200 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-10-26 21:49 - 2016-09-07 07:33 - 00681304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2016-10-26 21:49 - 2016-09-07 07:29 - 01274712 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-10-26 21:49 - 2016-09-07 07:17 - 00509792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2016-10-26 21:49 - 2016-09-07 06:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-10-26 21:49 - 2016-09-07 06:40 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-10-26 21:49 - 2016-09-07 06:39 - 05384192 _____ (Microsoft) C:\Windows\system32\dbgeng.dll
2016-10-26 21:49 - 2016-09-07 06:38 - 02315264 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-10-26 21:49 - 2016-09-07 06:37 - 04148224 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-10-26 21:49 - 2016-09-07 06:36 - 02423296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAJApi.dll
2016-10-26 21:49 - 2016-09-07 06:34 - 00860672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2016-10-26 21:49 - 2016-09-07 06:32 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-10-26 21:49 - 2016-08-20 07:12 - 00521728 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-10-26 21:49 - 2016-08-06 05:35 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2016-10-26 21:49 - 2016-07-22 03:25 - 00389000 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2016-10-26 21:48 - 2016-10-26 21:48 - 00000000 ____D C:\Users\Kolle\AppData\LocalLow\Adobe
2016-10-26 21:48 - 2016-10-26 21:48 - 00000000 ____D C:\Users\Kolle\AppData\Local\CEF
2016-10-26 21:48 - 2016-10-05 12:34 - 01051104 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-10-26 21:48 - 2016-10-05 12:34 - 00894088 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-10-26 21:48 - 2016-10-05 12:33 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2016-10-26 21:48 - 2016-10-05 12:31 - 02213248 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-10-26 21:48 - 2016-10-05 12:31 - 01353768 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-10-26 21:48 - 2016-10-05 12:31 - 01172472 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-10-26 21:48 - 2016-10-05 12:17 - 01322848 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2016-10-26 21:48 - 2016-10-05 12:13 - 02750384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-10-26 21:48 - 2016-10-05 12:13 - 01859264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-10-26 21:48 - 2016-10-05 12:13 - 00146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2016-10-26 21:48 - 2016-10-05 12:12 - 01112928 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-10-26 21:48 - 2016-10-05 12:12 - 00619368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-10-26 21:48 - 2016-10-05 12:09 - 22219328 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-10-26 21:48 - 2016-10-05 12:09 - 00064352 _____ (Avago Technologies) C:\Windows\system32\Drivers\MegaSas2i.sys
2016-10-26 21:48 - 2016-10-05 12:08 - 00241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2016-10-26 21:48 - 2016-10-05 12:03 - 01705976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-10-26 21:48 - 2016-10-05 11:51 - 01430720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-10-26 21:48 - 2016-10-05 11:50 - 02256592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-10-26 21:48 - 2016-10-05 11:50 - 00116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2016-10-26 21:48 - 2016-10-05 11:48 - 01022304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-10-26 21:48 - 2016-10-05 11:46 - 03892352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2016-10-26 21:48 - 2016-10-05 11:46 - 01360456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2016-10-26 21:48 - 2016-10-05 11:46 - 00980824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2016-10-26 21:48 - 2016-10-05 11:45 - 20965240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-10-26 21:48 - 2016-10-05 11:44 - 22568960 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-10-26 21:48 - 2016-10-05 11:41 - 00545944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-10-26 21:48 - 2016-10-05 11:38 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2016-10-26 21:48 - 2016-10-05 11:36 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-26 21:48 - 2016-10-05 11:35 - 00327680 _____ C:\Windows\system32\wc_storage.dll
2016-10-26 21:48 - 2016-10-05 11:35 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2016-10-26 21:48 - 2016-10-05 11:35 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-10-26 21:48 - 2016-10-05 11:34 - 00463360 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2016-10-26 21:48 - 2016-10-05 11:34 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-10-26 21:48 - 2016-10-05 11:33 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-10-26 21:48 - 2016-10-05 11:33 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-10-26 21:48 - 2016-10-05 11:33 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2016-10-26 21:48 - 2016-10-05 11:33 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2016-10-26 21:48 - 2016-10-05 11:32 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2016-10-26 21:48 - 2016-10-05 11:32 - 00379904 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-10-26 21:48 - 2016-10-05 11:32 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2016-10-26 21:48 - 2016-10-05 11:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2016-10-26 21:48 - 2016-10-05 11:31 - 00837632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2016-10-26 21:48 - 2016-10-05 11:31 - 00480768 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2016-10-26 21:48 - 2016-10-05 11:31 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-10-26 21:48 - 2016-10-05 11:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-10-26 21:48 - 2016-10-05 11:30 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-10-26 21:48 - 2016-10-05 11:29 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-10-26 21:48 - 2016-10-05 11:29 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-10-26 21:48 - 2016-10-05 11:28 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-10-26 21:48 - 2016-10-05 11:28 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2016-10-26 21:48 - 2016-10-05 11:27 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 23680512 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovs.dll
2016-10-26 21:48 - 2016-10-05 11:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-10-26 21:48 - 2016-10-05 11:25 - 01589248 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-10-26 21:48 - 2016-10-05 11:25 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2016-10-26 21:48 - 2016-10-05 11:25 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2016-10-26 21:48 - 2016-10-05 11:25 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2016-10-26 21:48 - 2016-10-05 11:25 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2016-10-26 21:48 - 2016-10-05 11:24 - 13434368 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-10-26 21:48 - 2016-10-05 11:24 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2016-10-26 21:48 - 2016-10-05 11:24 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2016-10-26 21:48 - 2016-10-05 11:23 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2016-10-26 21:48 - 2016-10-05 11:23 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-10-26 21:48 - 2016-10-05 11:23 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-10-26 21:48 - 2016-10-05 11:23 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2016-10-26 21:48 - 2016-10-05 11:23 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-10-26 21:48 - 2016-10-05 11:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2016-10-26 21:48 - 2016-10-05 11:21 - 08075264 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-10-26 21:48 - 2016-10-05 11:21 - 03689984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-10-26 21:48 - 2016-10-05 11:21 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2016-10-26 21:48 - 2016-10-05 11:21 - 00310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2016-10-26 21:48 - 2016-10-05 11:20 - 00804864 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-10-26 21:48 - 2016-10-05 11:20 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2016-10-26 21:48 - 2016-10-05 11:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-10-26 21:48 - 2016-10-05 11:19 - 02390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2016-10-26 21:48 - 2016-10-05 11:19 - 02265088 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2016-10-26 21:48 - 2016-10-05 11:19 - 01690112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2016-10-26 21:48 - 2016-10-05 11:19 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-10-26 21:48 - 2016-10-05 11:19 - 00779776 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2016-10-26 21:48 - 2016-10-05 11:18 - 04612608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2016-10-26 21:48 - 2016-10-05 11:18 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2016-10-26 21:48 - 2016-10-05 11:18 - 00911872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-10-26 21:48 - 2016-10-05 11:18 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2016-10-26 21:48 - 2016-10-05 11:18 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-10-26 21:48 - 2016-10-05 11:17 - 08126464 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-10-26 21:48 - 2016-10-05 11:17 - 01493504 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-10-26 21:48 - 2016-10-05 11:16 - 19418624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-10-26 21:48 - 2016-10-05 11:16 - 04747776 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-10-26 21:48 - 2016-10-05 11:16 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2016-10-26 21:48 - 2016-10-05 11:16 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-10-26 21:48 - 2016-10-05 11:15 - 02800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-10-26 21:48 - 2016-10-05 11:15 - 01980416 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-10-26 21:48 - 2016-10-05 11:15 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-10-26 21:48 - 2016-10-05 11:15 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2016-10-26 21:48 - 2016-10-05 11:15 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 19416576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 02688512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 02667520 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 02476544 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 01778176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2016-10-26 21:48 - 2016-10-05 11:14 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 12345856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2016-10-26 21:48 - 2016-10-05 11:13 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2016-10-26 21:48 - 2016-10-05 11:12 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2016-10-26 21:48 - 2016-10-05 11:12 - 00998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-10-26 21:48 - 2016-10-05 11:12 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-26 21:48 - 2016-10-05 11:11 - 06108672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-10-26 21:48 - 2016-10-05 11:11 - 06043136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-10-26 21:48 - 2016-10-05 11:11 - 03496960 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-10-26 21:48 - 2016-10-05 11:11 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2016-10-26 21:48 - 2016-10-05 11:10 - 06474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2016-10-26 21:48 - 2016-10-05 11:09 - 07467520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-10-26 21:48 - 2016-10-05 11:09 - 03369984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2016-10-26 21:48 - 2016-10-05 11:09 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-10-26 21:48 - 2016-10-05 11:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2016-10-26 21:48 - 2016-10-05 11:09 - 00691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-10-26 21:48 - 2016-10-05 11:08 - 02356736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-10-26 21:48 - 2016-10-05 11:08 - 00873472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2016-10-26 21:48 - 2016-10-05 11:08 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2016-10-26 21:48 - 2016-10-05 11:07 - 03667456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-10-26 21:48 - 2016-10-05 11:07 - 02682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-10-26 21:48 - 2016-10-05 11:07 - 02646016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-10-26 21:48 - 2016-10-05 11:07 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 02999296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2016-10-26 21:48 - 2016-10-05 11:06 - 02254336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 02005504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 01880576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 01594368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2016-10-26 21:48 - 2016-10-05 11:06 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-10-26 21:48 - 2016-10-05 11:05 - 03105792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-10-26 21:48 - 2016-10-05 11:05 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-10-26 21:48 - 2016-10-05 02:01 - 00446124 _____ C:\Windows\system32\ApnDatabase.xml
2016-10-26 21:48 - 2016-09-15 19:37 - 00590960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-10-26 21:48 - 2016-09-15 19:35 - 01570680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-10-26 21:48 - 2016-09-15 19:35 - 00455040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2016-10-26 21:48 - 2016-09-15 19:32 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-10-26 21:48 - 2016-09-15 19:30 - 00646136 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-10-26 21:48 - 2016-09-15 19:30 - 00354264 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2016-10-26 21:48 - 2016-09-15 19:29 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-10-26 21:48 - 2016-09-15 19:29 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-10-26 21:48 - 2016-09-15 19:29 - 00512416 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2016-10-26 21:48 - 2016-09-15 19:29 - 00218008 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2016-10-26 21:48 - 2016-09-15 19:29 - 00081760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2016-10-26 21:48 - 2016-09-15 19:29 - 00074080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2016-10-26 21:48 - 2016-09-15 19:29 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-10-26 21:48 - 2016-09-15 19:28 - 00498960 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2016-10-26 21:48 - 2016-09-15 19:27 - 05622088 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-10-26 21:48 - 2016-09-15 19:27 - 01883784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-10-26 21:48 - 2016-09-15 19:27 - 00553312 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-10-26 21:48 - 2016-09-15 19:27 - 00128352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-10-26 21:48 - 2016-09-15 19:26 - 00090400 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-10-26 21:48 - 2016-09-15 19:25 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
2016-10-26 21:48 - 2016-09-15 19:25 - 00340320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-10-26 21:48 - 2016-09-15 19:25 - 00280472 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2016-10-26 21:48 - 2016-09-15 19:25 - 00262960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2016-10-26 21:48 - 2016-09-15 19:24 - 00764936 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-10-26 21:48 - 2016-09-15 19:22 - 05722320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2016-10-26 21:48 - 2016-09-15 19:22 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2016-10-26 21:48 - 2016-09-15 19:22 - 00860512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2016-10-26 21:48 - 2016-09-15 19:22 - 00433832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2016-10-26 21:48 - 2016-09-15 19:21 - 01218912 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-10-26 21:48 - 2016-09-15 19:21 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-10-26 21:48 - 2016-09-15 19:20 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2016-10-26 21:48 - 2016-09-15 19:20 - 00634944 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-10-26 21:48 - 2016-09-15 19:19 - 00361104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 06654616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 01201872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 01123368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 00955528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 00856872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 00404832 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-10-26 21:48 - 2016-09-15 19:18 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2016-10-26 21:48 - 2016-09-15 19:16 - 07219672 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-10-26 21:48 - 2016-09-15 19:16 - 02190176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-10-26 21:48 - 2016-09-15 19:16 - 01738040 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-10-26 21:48 - 2016-09-15 19:16 - 01292640 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-10-26 21:48 - 2016-09-15 19:16 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2016-10-26 21:48 - 2016-09-15 19:16 - 00657760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-10-26 21:48 - 2016-09-15 19:16 - 00401760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-10-26 21:48 - 2016-09-15 19:16 - 00206096 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-10-26 21:48 - 2016-09-15 19:15 - 00557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-10-26 21:48 - 2016-09-15 19:15 - 00341936 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-10-26 21:48 - 2016-09-15 19:15 - 00335712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-10-26 21:48 - 2016-09-15 19:15 - 00223584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-10-26 21:48 - 2016-09-15 19:15 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2016-10-26 21:48 - 2016-09-15 19:14 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-10-26 21:48 - 2016-09-15 19:14 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2016-10-26 21:48 - 2016-09-15 19:14 - 00988512 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2016-10-26 21:48 - 2016-09-15 19:14 - 00947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2016-10-26 21:48 - 2016-09-15 19:14 - 00811872 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.exe
2016-10-26 21:48 - 2016-09-15 19:14 - 00435040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-10-26 21:48 - 2016-09-15 19:14 - 00119648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2016-10-26 21:48 - 2016-09-15 19:13 - 00113504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2016-10-26 21:48 - 2016-09-15 19:12 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2016-10-26 21:48 - 2016-09-15 19:11 - 00773168 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-10-26 21:48 - 2016-09-15 19:11 - 00160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2016-10-26 21:48 - 2016-09-15 19:10 - 01600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-10-26 21:48 - 2016-09-15 19:10 - 00918848 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-10-26 21:48 - 2016-09-15 19:06 - 01469120 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-10-26 21:48 - 2016-09-15 19:06 - 00587968 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-10-26 21:48 - 2016-09-15 19:06 - 00455520 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2016-10-26 21:48 - 2016-09-15 19:06 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-10-26 21:48 - 2016-09-15 19:06 - 00372440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2016-10-26 21:48 - 2016-09-15 19:06 - 00050880 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-10-26 21:48 - 2016-09-15 19:03 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2016-10-26 21:48 - 2016-09-15 19:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-10-26 21:48 - 2016-09-15 19:03 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-10-26 21:48 - 2016-09-15 19:01 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2016-10-26 21:48 - 2016-09-15 19:01 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2016-10-26 21:48 - 2016-09-15 19:00 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-10-26 21:48 - 2016-09-15 19:00 - 00518656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2016-10-26 21:48 - 2016-09-15 19:00 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2016-10-26 21:48 - 2016-09-15 18:59 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2016-10-26 21:48 - 2016-09-15 18:58 - 00491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2016-10-26 21:48 - 2016-09-15 18:58 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-10-26 21:48 - 2016-09-15 18:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2016-10-26 21:48 - 2016-09-15 18:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-10-26 21:48 - 2016-09-15 18:58 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-26 21:48 - 2016-09-15 18:58 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-10-26 21:48 - 2016-09-15 18:57 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2016-10-26 21:48 - 2016-09-15 18:57 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ClipboardServer.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 01300480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00413184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00257536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2016-10-26 21:48 - 2016-09-15 18:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2016-10-26 21:48 - 2016-09-15 18:55 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2016-10-26 21:48 - 2016-09-15 18:55 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-10-26 21:48 - 2016-09-15 18:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-10-26 21:48 - 2016-09-15 18:53 - 00466432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2016-10-26 21:48 - 2016-09-15 18:53 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-10-26 21:48 - 2016-09-15 18:53 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2016-10-26 21:48 - 2016-09-15 18:53 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2016-10-26 21:48 - 2016-09-15 18:52 - 01358336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2016-10-26 21:48 - 2016-09-15 18:52 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2016-10-26 21:48 - 2016-09-15 18:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-10-26 21:48 - 2016-09-15 18:52 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-10-26 21:48 - 2016-09-15 18:52 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2016-10-26 21:48 - 2016-09-15 18:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-10-26 21:48 - 2016-09-15 18:51 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2016-10-26 21:48 - 2016-09-15 18:50 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-10-26 21:48 - 2016-09-15 18:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2016-10-26 21:48 - 2016-09-15 18:49 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-10-26 21:48 - 2016-09-15 18:49 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2016-10-26 21:48 - 2016-09-15 18:49 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2016-10-26 21:48 - 2016-09-15 18:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-10-26 21:48 - 2016-09-15 18:48 - 01321472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2016-10-26 21:48 - 2016-09-15 18:48 - 01320448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2016-10-26 21:48 - 2016-09-15 18:48 - 01112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2016-10-26 21:48 - 2016-09-15 18:47 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2016-10-26 21:48 - 2016-09-15 18:47 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-10-26 21:48 - 2016-09-15 18:47 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2016-10-26 21:48 - 2016-09-15 18:47 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2016-10-26 21:48 - 2016-09-15 18:46 - 03305984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-10-26 21:48 - 2016-09-15 18:46 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2016-10-26 21:48 - 2016-09-15 18:46 - 00471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-10-26 21:48 - 2016-09-15 18:46 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2016-10-26 21:48 - 2016-09-15 18:45 - 02749440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2016-10-26 21:48 - 2016-09-15 18:45 - 02642944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-10-26 21:48 - 2016-09-15 18:45 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-26 21:48 - 2016-09-15 18:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2016-10-26 21:48 - 2016-09-15 18:44 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2016-10-26 21:48 - 2016-09-15 18:44 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-10-26 21:48 - 2016-09-15 18:44 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-10-26 21:48 - 2016-09-15 18:43 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\mfksproxy.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2016-10-26 21:48 - 2016-09-15 18:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-10-26 21:48 - 2016-09-15 18:42 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2016-10-26 21:48 - 2016-09-15 18:42 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2016-10-26 21:48 - 2016-09-15 18:42 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-10-26 21:48 - 2016-09-15 18:42 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2016-10-26 21:48 - 2016-09-15 18:42 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundMediaPolicy.dll
2016-10-26 21:48 - 2016-09-15 18:41 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2016-10-26 21:48 - 2016-09-15 18:41 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2016-10-26 21:48 - 2016-09-15 18:41 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-10-26 21:48 - 2016-09-15 18:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-10-26 21:48 - 2016-09-15 18:41 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2016-10-26 21:48 - 2016-09-15 18:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\NfcRadioMedia.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 05061120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-10-26 21:48 - 2016-09-15 18:40 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-10-26 21:48 - 2016-09-15 18:40 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-10-26 21:48 - 2016-09-15 18:39 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-10-26 21:48 - 2016-09-15 18:38 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-10-26 21:48 - 2016-09-15 18:38 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2016-10-26 21:48 - 2016-09-15 18:38 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2016-10-26 21:48 - 2016-09-15 18:38 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\icsvcext.dll
2016-10-26 21:48 - 2016-09-15 18:38 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll
2016-10-26 21:48 - 2016-09-15 18:38 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2016-10-26 21:48 - 2016-09-15 18:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2016-10-26 21:48 - 2016-09-15 18:38 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00690176 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2016-10-26 21:48 - 2016-09-15 18:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2016-10-26 21:48 - 2016-09-15 18:36 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2016-10-26 21:48 - 2016-09-15 18:36 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00640000 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\credprovslegacy.dll
2016-10-26 21:48 - 2016-09-15 18:36 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-10-26 21:48 - 2016-09-15 18:35 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-10-26 21:48 - 2016-09-15 18:35 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll
2016-10-26 21:48 - 2016-09-15 18:34 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-10-26 21:48 - 2016-09-15 18:34 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2016-10-26 21:48 - 2016-09-15 18:34 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2016-10-26 21:48 - 2016-09-15 18:34 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 01004032 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 00966144 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 00963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2016-10-26 21:48 - 2016-09-15 18:33 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-10-26 21:48 - 2016-09-15 18:32 - 02716672 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-10-26 21:48 - 2016-09-15 18:32 - 00634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-10-26 21:48 - 2016-09-15 18:32 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2016-10-26 21:48 - 2016-09-15 18:31 - 01912320 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2016-10-26 21:48 - 2016-09-15 18:31 - 01553408 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2016-10-26 21:48 - 2016-09-15 18:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2016-10-26 21:48 - 2016-09-15 18:31 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-10-26 21:48 - 2016-09-15 18:30 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-10-26 21:48 - 2016-09-15 18:30 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-10-26 21:48 - 2016-09-15 18:30 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2016-10-26 21:48 - 2016-09-15 18:30 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2016-10-26 21:48 - 2016-09-15 18:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\baaupdate.exe
2016-10-26 21:48 - 2016-09-15 18:29 - 01082368 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-10-26 21:48 - 2016-09-15 18:29 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-10-26 21:48 - 2016-09-15 18:28 - 00798720 _____ (Microsoft Corporation) C:\Windows\system32\pwcreator.exe
2016-10-26 21:48 - 2016-09-15 18:28 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2016-10-26 21:48 - 2016-09-15 18:28 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2016-10-26 21:48 - 2016-09-15 18:28 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\fveprompt.exe
2016-10-26 21:48 - 2016-09-15 18:27 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2016-10-26 21:48 - 2016-09-15 18:27 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-10-26 21:48 - 2016-09-15 18:27 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-10-26 21:48 - 2016-09-15 18:27 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2016-10-26 21:48 - 2016-09-15 18:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2016-10-26 21:48 - 2016-09-15 18:26 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2016-10-26 21:48 - 2016-09-15 18:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2016-10-26 21:48 - 2016-09-15 18:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2016-10-26 21:48 - 2016-09-15 18:25 - 00947200 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
2016-10-26 21:48 - 2016-09-15 18:25 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2016-10-26 21:48 - 2016-09-15 18:25 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2016-10-26 21:48 - 2016-09-15 18:25 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2016-10-26 21:48 - 2016-09-15 18:24 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2016-10-26 21:48 - 2016-09-15 18:24 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-10-26 21:48 - 2016-09-15 18:24 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 00611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2016-10-26 21:48 - 2016-09-15 18:23 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2016-10-26 21:48 - 2016-09-15 18:22 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-10-26 21:48 - 2016-09-15 18:22 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-10-26 21:48 - 2016-09-15 18:22 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-10-26 21:48 - 2016-09-15 18:22 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2016-10-26 21:48 - 2016-09-15 18:21 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-10-26 21:48 - 2016-09-15 18:21 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2016-10-26 21:48 - 2016-09-15 18:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2016-10-26 21:48 - 2016-09-15 18:21 - 00674304 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-10-26 21:48 - 2016-09-15 18:20 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2016-10-26 21:48 - 2016-09-15 18:20 - 02095616 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-10-26 21:48 - 2016-09-15 18:20 - 01710080 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-10-26 21:48 - 2016-09-15 18:20 - 00691712 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2016-10-26 21:48 - 2016-09-15 18:20 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-10-26 21:48 - 2016-09-15 18:19 - 03202048 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-10-26 21:48 - 2016-09-15 18:19 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-10-26 21:48 - 2016-09-15 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2016-10-26 21:48 - 2016-09-15 18:16 - 01817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2016-10-26 21:48 - 2016-09-15 18:16 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-10-26 21:48 - 2016-09-15 18:16 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2016-10-26 21:48 - 2016-09-15 18:16 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2016-10-26 21:48 - 2016-09-15 18:16 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2016-10-26 21:48 - 2016-09-07 07:53 - 02481768 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-10-26 21:48 - 2016-09-07 07:53 - 02183792 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-10-26 21:48 - 2016-09-07 07:48 - 02256224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-10-26 21:48 - 2016-09-07 07:48 - 00379744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-10-26 21:48 - 2016-09-07 07:44 - 02049480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-10-26 21:48 - 2016-09-07 07:41 - 00303968 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-10-26 21:48 - 2016-09-07 07:37 - 01966288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-10-26 21:48 - 2016-09-07 07:34 - 00857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-10-26 21:48 - 2016-09-07 07:34 - 00360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-10-26 21:48 - 2016-09-07 07:34 - 00178528 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2016-10-26 21:48 - 2016-09-07 07:33 - 00450392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-10-26 21:48 - 2016-09-07 07:32 - 02913104 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-10-26 21:48 - 2016-09-07 07:32 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-10-26 21:48 - 2016-09-07 07:30 - 00601200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-10-26 21:48 - 2016-09-07 07:29 - 01694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2016-10-26 21:48 - 2016-09-07 07:29 - 00755656 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-10-26 21:48 - 2016-09-07 07:29 - 00523712 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2016-10-26 21:48 - 2016-09-07 07:29 - 00118112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorTcgDrv.sys
2016-10-26 21:48 - 2016-09-07 07:27 - 01362504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-10-26 21:48 - 2016-09-07 07:17 - 00782176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-10-26 21:48 - 2016-09-07 07:15 - 02166232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-10-26 21:48 - 2016-09-07 07:13 - 01853232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2016-10-26 21:48 - 2016-09-07 07:13 - 00959104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-10-26 21:48 - 2016-09-07 07:13 - 00640976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-10-26 21:48 - 2016-09-07 07:13 - 00529928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-10-26 21:48 - 2016-09-07 07:07 - 00117240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-10-26 21:48 - 2016-09-07 07:03 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2016-10-26 21:48 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-10-26 21:48 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2016-10-26 21:48 - 2016-09-07 07:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-10-26 21:48 - 2016-09-07 07:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-10-26 21:48 - 2016-09-07 07:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00110080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExtrasXmlParser.dll
2016-10-26 21:48 - 2016-09-07 06:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\POSyncServices.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AddressParser.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTypeHelperUtil.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataLanguageUtil.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccessRes.dll
2016-10-26 21:48 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneutilRes.dll
2016-10-26 21:48 - 2016-09-07 06:57 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2016-10-26 21:48 - 2016-09-07 06:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-10-26 21:48 - 2016-09-07 06:56 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-10-26 21:48 - 2016-09-07 06:56 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-10-26 21:48 - 2016-09-07 06:56 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-10-26 21:48 - 2016-09-07 06:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-10-26 21:48 - 2016-09-07 06:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactActivation.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-10-26 21:48 - 2016-09-07 06:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-10-26 21:48 - 2016-09-07 06:54 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataPlatformHelperUtil.dll
2016-10-26 21:48 - 2016-09-07 06:53 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-10-26 21:48 - 2016-09-07 06:53 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-10-26 21:48 - 2016-09-07 06:53 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2016-10-26 21:48 - 2016-09-07 06:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2016-10-26 21:48 - 2016-09-07 06:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 17187840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-10-26 21:48 - 2016-09-07 06:52 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Bluetooth.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 00331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NmaDirect.dll
2016-10-26 21:48 - 2016-09-07 06:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-10-26 21:48 - 2016-09-07 06:50 - 01755136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2016-10-26 21:48 - 2016-09-07 06:50 - 00866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2016-10-26 21:48 - 2016-09-07 06:50 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-10-26 21:48 - 2016-09-07 06:50 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-10-26 21:48 - 2016-09-07 06:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-10-26 21:48 - 2016-09-07 06:49 - 13867520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2016-10-26 21:48 - 2016-09-07 06:49 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-10-26 21:48 - 2016-09-07 06:49 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-10-26 21:48 - 2016-09-07 06:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2016-10-26 21:48 - 2016-09-07 06:47 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-10-26 21:48 - 2016-09-07 06:46 - 00846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2016-10-26 21:48 - 2016-09-07 06:46 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-10-26 21:48 - 2016-09-07 06:46 - 00755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-10-26 21:48 - 2016-09-07 06:46 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2016-10-26 21:48 - 2016-09-07 06:45 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-10-26 21:48 - 2016-09-07 06:43 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2016-10-26 21:48 - 2016-09-07 06:41 - 05511680 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2016-10-26 21:48 - 2016-09-07 06:41 - 02510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-10-26 21:48 - 2016-09-07 06:41 - 01891328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-10-26 21:48 - 2016-09-07 06:41 - 00932864 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-10-26 21:48 - 2016-09-07 06:40 - 02852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-10-26 21:48 - 2016-09-07 06:40 - 01312768 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2016-10-26 21:48 - 2016-09-07 06:39 - 05376000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-10-26 21:48 - 2016-09-07 06:39 - 03116544 _____ (Microsoft Corporation) C:\Windows\system32\MSAJApi.dll
2016-10-26 21:48 - 2016-09-07 06:39 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2016-10-26 21:48 - 2016-09-07 06:38 - 02289664 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-10-26 21:48 - 2016-09-07 06:38 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2016-10-26 21:48 - 2016-09-07 06:38 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-10-26 21:48 - 2016-09-07 06:37 - 02820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-10-26 21:48 - 2016-09-07 06:37 - 02370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2016-10-26 21:48 - 2016-09-07 06:37 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-10-26 21:48 - 2016-09-07 06:37 - 00540160 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2016-10-26 21:48 - 2016-09-07 06:36 - 02360832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2016-10-26 21:48 - 2016-09-07 06:36 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-10-26 21:48 - 2016-09-07 06:35 - 03299328 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-10-26 21:48 - 2016-09-07 06:35 - 02107392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2016-10-26 21:48 - 2016-09-07 06:35 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-10-26 21:48 - 2016-09-07 06:35 - 00650240 _____ (Microsoft) C:\Windows\system32\DbgModel.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 01993216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 00761344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 00715264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-10-26 21:48 - 2016-09-07 06:34 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2016-10-26 21:48 - 2016-09-07 06:33 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-10-26 21:48 - 2016-09-07 06:31 - 01293312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2016-10-26 21:48 - 2016-09-07 06:31 - 00461312 _____ (Microsoft) C:\Windows\SysWOW64\DbgModel.dll
2016-10-26 21:48 - 2016-08-27 06:58 - 00121368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-10-26 21:48 - 2016-08-27 06:44 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2016-10-26 21:48 - 2016-08-27 06:39 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-10-26 21:48 - 2016-08-20 08:06 - 00108384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2016-10-26 21:48 - 2016-08-20 07:34 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2016-10-26 21:48 - 2016-08-20 07:21 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\C_G18030.DLL
2016-10-26 21:48 - 2016-08-20 07:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\c_GSM7.DLL
2016-10-26 21:48 - 2016-08-20 07:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-10-26 21:48 - 2016-08-20 07:20 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2016-10-26 21:48 - 2016-08-20 07:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2016-10-26 21:48 - 2016-08-20 07:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-10-26 21:48 - 2016-08-20 07:17 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerSvc.dll
2016-10-26 21:48 - 2016-08-20 07:16 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2016-10-26 21:48 - 2016-08-20 07:12 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-10-26 21:48 - 2016-08-20 07:11 - 00410624 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-10-26 21:48 - 2016-08-20 07:11 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2016-10-26 21:48 - 2016-08-20 07:10 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2016-10-26 21:48 - 2016-08-20 07:08 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll
2016-10-26 21:48 - 2016-08-20 07:07 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2016-10-26 21:48 - 2016-08-20 07:06 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-10-26 21:48 - 2016-08-20 07:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2016-10-26 21:48 - 2016-08-20 07:04 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-10-26 21:48 - 2016-08-20 07:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2016-10-26 21:48 - 2016-08-20 07:04 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2016-10-26 21:48 - 2016-08-20 07:00 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\DscCoreConfProv.dll
2016-10-26 21:48 - 2016-08-20 06:58 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2016-10-26 21:48 - 2016-08-20 06:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2016-10-26 21:48 - 2016-08-19 03:33 - 00162850 _____ C:\Windows\system32\C_932.NLS
2016-10-26 21:48 - 2016-08-06 06:31 - 00041824 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2016-10-26 21:48 - 2016-08-06 06:29 - 00199008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2016-10-26 21:48 - 2016-08-06 06:23 - 00168800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-10-26 21:48 - 2016-08-06 06:18 - 00396168 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2016-10-26 21:48 - 2016-08-06 06:17 - 00790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-10-26 21:48 - 2016-08-06 06:16 - 00073568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2016-10-26 21:48 - 2016-08-06 06:16 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-10-26 21:48 - 2016-08-06 06:16 - 00020320 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2016-10-26 21:48 - 2016-08-06 06:15 - 00408600 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-10-26 21:48 - 2016-08-06 06:09 - 00151224 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-10-26 21:48 - 2016-08-06 06:03 - 01343928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2016-10-26 21:48 - 2016-08-06 06:03 - 00036168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2016-10-26 21:48 - 2016-08-06 05:50 - 02755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-10-26 21:48 - 2016-08-06 05:48 - 02755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-10-26 21:48 - 2016-08-06 05:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2016-10-26 21:48 - 2016-08-06 05:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-10-26 21:48 - 2016-08-06 05:47 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-10-26 21:48 - 2016-08-06 05:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModelOOBE.exe
2016-10-26 21:48 - 2016-08-06 05:45 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2016-10-26 21:48 - 2016-08-06 05:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-10-26 21:48 - 2016-08-06 05:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2016-10-26 21:48 - 2016-08-06 05:45 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-10-26 21:48 - 2016-08-06 05:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-10-26 21:48 - 2016-08-06 05:44 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-10-26 21:48 - 2016-08-06 05:43 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-10-26 21:48 - 2016-08-06 05:41 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2016-10-26 21:48 - 2016-08-06 05:41 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2016-10-26 21:48 - 2016-08-06 05:41 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2016-10-26 21:48 - 2016-08-06 05:40 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2016-10-26 21:48 - 2016-08-06 05:40 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\dafpos.dll
2016-10-26 21:48 - 2016-08-06 05:40 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-10-26 21:48 - 2016-08-06 05:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2016-10-26 21:48 - 2016-08-06 05:39 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2016-10-26 21:48 - 2016-08-06 05:39 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2016-10-26 21:48 - 2016-08-06 05:39 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-10-26 21:48 - 2016-08-06 05:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-26 21:48 - 2016-08-06 05:37 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-26 21:48 - 2016-08-06 05:37 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2016-10-26 21:48 - 2016-08-06 05:34 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2016-10-26 21:48 - 2016-08-06 05:33 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2016-10-26 21:48 - 2016-08-06 05:31 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2016-10-26 21:48 - 2016-08-06 05:29 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-10-26 21:48 - 2016-08-06 05:23 - 00520192 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2016-10-26 21:48 - 2016-08-06 05:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2016-10-26 21:48 - 2016-08-05 11:14 - 01066328 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2016-10-26 21:48 - 2016-08-05 11:10 - 00939872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pidgenx.dll
2016-10-26 21:48 - 2016-08-05 11:05 - 00665768 _____ (Microsoft Corporation) C:\Windows\system32\GenValObj.exe
2016-10-26 21:48 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2016-10-26 21:48 - 2016-08-05 10:29 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2016-10-26 21:48 - 2016-08-05 10:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2016-10-26 21:48 - 2016-08-05 10:22 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-10-26 21:48 - 2016-08-05 10:08 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2016-10-26 21:48 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2016-10-26 21:48 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-10-26 21:48 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-10-26 21:48 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2016-10-26 21:48 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2016-10-26 21:48 - 2016-07-22 03:32 - 00062816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2016-10-26 21:48 - 2016-07-22 03:18 - 00297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2016-10-26 21:48 - 2016-07-22 02:49 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-10-26 21:47 - 2016-10-26 22:26 - 00000000 ____D C:\ProgramData\Adobe
2016-10-26 21:47 - 2016-10-26 21:47 - 00004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-10-26 21:47 - 2016-10-26 21:47 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-10-26 21:47 - 2016-10-26 21:47 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-10-26 21:47 - 2016-10-05 12:35 - 00279904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2016-10-26 21:47 - 2016-10-05 12:30 - 07812448 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-10-26 21:47 - 2016-10-05 12:22 - 01181536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-10-26 21:47 - 2016-10-05 12:16 - 00187232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2016-10-26 21:47 - 2016-10-05 12:09 - 04129928 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-10-26 21:47 - 2016-10-05 12:09 - 01071728 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2016-10-26 21:47 - 2016-10-05 12:09 - 00244816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-10-26 21:47 - 2016-10-05 12:04 - 02537824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-10-26 21:47 - 2016-10-05 12:04 - 00628032 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-10-26 21:47 - 2016-10-05 11:49 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-10-26 21:47 - 2016-10-05 11:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-10-26 21:47 - 2016-10-05 11:36 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-10-26 21:47 - 2016-10-05 11:35 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2016-10-26 21:47 - 2016-10-05 11:35 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-10-26 21:47 - 2016-10-05 11:31 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2016-10-26 21:47 - 2016-10-05 11:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2016-10-26 21:47 - 2016-10-05 11:31 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2016-10-26 21:47 - 2016-10-05 11:29 - 09129984 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-10-26 21:47 - 2016-10-05 11:29 - 06285312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2016-10-26 21:47 - 2016-10-05 11:29 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2016-10-26 21:47 - 2016-10-05 11:28 - 03059200 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-10-26 21:47 - 2016-10-05 11:28 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-10-26 21:47 - 2016-10-05 11:28 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-10-26 21:47 - 2016-10-05 11:28 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2016-10-26 21:47 - 2016-10-05 11:27 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2016-10-26 21:47 - 2016-10-05 11:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-26 21:47 - 2016-10-05 11:26 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2016-10-26 21:47 - 2016-10-05 11:23 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2016-10-26 21:47 - 2016-10-05 11:22 - 07654912 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-10-26 21:47 - 2016-10-05 11:22 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2016-10-26 21:47 - 2016-10-05 11:21 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2016-10-26 21:47 - 2016-10-05 11:20 - 00936960 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2016-10-26 21:47 - 2016-10-05 11:18 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-10-26 21:47 - 2016-10-05 11:17 - 04136960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2016-10-26 21:47 - 2016-10-05 11:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2016-10-26 21:47 - 2016-10-05 11:16 - 06664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2016-10-26 21:47 - 2016-10-05 11:16 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2016-10-26 21:47 - 2016-10-05 11:15 - 03617792 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-10-26 21:47 - 2016-10-05 11:15 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-10-26 21:47 - 2016-10-05 11:15 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-10-26 21:47 - 2016-10-05 11:15 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2016-10-26 21:47 - 2016-10-05 11:14 - 01013760 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2016-10-26 21:47 - 2016-10-05 11:14 - 00701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-10-26 21:47 - 2016-10-05 11:09 - 00674304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2016-10-26 21:47 - 2016-10-05 11:07 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2016-10-26 21:47 - 2016-10-05 11:07 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2016-10-26 21:47 - 2016-09-15 19:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-10-26 21:47 - 2016-09-15 19:37 - 00496872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-10-26 21:47 - 2016-09-15 19:37 - 00402352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-10-26 21:47 - 2016-09-15 19:33 - 00083120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-10-26 21:47 - 2016-09-15 19:29 - 01377016 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2016-10-26 21:47 - 2016-09-15 19:29 - 00823136 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2016-10-26 21:47 - 2016-09-15 19:29 - 00704352 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2016-10-26 21:47 - 2016-09-15 19:29 - 00424640 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-10-26 21:47 - 2016-09-15 19:29 - 00169056 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2016-10-26 21:47 - 2016-09-15 19:29 - 00127328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppVStrm.sys
2016-10-26 21:47 - 2016-09-15 19:27 - 00434528 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-10-26 21:47 - 2016-09-15 19:23 - 00170960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-10-26 21:47 - 2016-09-15 19:21 - 01000288 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-10-26 21:47 - 2016-09-15 19:15 - 00218976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-10-26 21:47 - 2016-09-15 19:14 - 01415752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2016-10-26 21:47 - 2016-09-15 19:12 - 08158672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-10-26 21:47 - 2016-09-15 19:12 - 01472536 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-10-26 21:47 - 2016-09-15 19:11 - 04673296 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-10-26 21:47 - 2016-09-15 19:11 - 01990640 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2016-10-26 21:47 - 2016-09-15 19:11 - 01300600 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2016-10-26 21:47 - 2016-09-15 19:11 - 01066104 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-10-26 21:47 - 2016-09-15 19:11 - 00862064 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-10-26 21:47 - 2016-09-15 19:11 - 00725664 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2016-10-26 21:47 - 2016-09-15 19:07 - 01572768 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-10-26 21:47 - 2016-09-15 19:07 - 01418304 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-10-26 21:47 - 2016-09-15 19:07 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2016-10-26 21:47 - 2016-09-15 19:06 - 01046880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-10-26 21:47 - 2016-09-15 19:02 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfksproxy.dll
2016-10-26 21:47 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2016-10-26 21:47 - 2016-09-15 18:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-10-26 21:47 - 2016-09-15 18:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovslegacy.dll
2016-10-26 21:47 - 2016-09-15 18:58 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2016-10-26 21:47 - 2016-09-15 18:58 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2016-10-26 21:47 - 2016-09-15 18:55 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-10-26 21:47 - 2016-09-15 18:55 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-10-26 21:47 - 2016-09-15 18:54 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2016-10-26 21:47 - 2016-09-15 18:54 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2016-10-26 21:47 - 2016-09-15 18:54 - 00431104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2016-10-26 21:47 - 2016-09-15 18:54 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2016-10-26 21:47 - 2016-09-15 18:54 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2016-10-26 21:47 - 2016-09-15 18:52 - 00816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-10-26 21:47 - 2016-09-15 18:52 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2016-10-26 21:47 - 2016-09-15 18:52 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2016-10-26 21:47 - 2016-09-15 18:51 - 02333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-10-26 21:47 - 2016-09-15 18:50 - 07219200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-10-26 21:47 - 2016-09-15 18:50 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-10-26 21:47 - 2016-09-15 18:46 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2016-10-26 21:47 - 2016-09-15 18:46 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-10-26 21:47 - 2016-09-15 18:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\ffbroker.dll
2016-10-26 21:47 - 2016-09-15 18:44 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2016-10-26 21:47 - 2016-09-15 18:43 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2016-10-26 21:47 - 2016-09-15 18:43 - 00130560 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-10-26 21:47 - 2016-09-15 18:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-10-26 21:47 - 2016-09-15 18:42 - 00545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2016-10-26 21:47 - 2016-09-15 18:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-10-26 21:47 - 2016-09-15 18:41 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2016-10-26 21:47 - 2016-09-15 18:41 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2016-10-26 21:47 - 2016-09-15 18:41 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2016-10-26 21:47 - 2016-09-15 18:41 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2016-10-26 21:47 - 2016-09-15 18:40 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2016-10-26 21:47 - 2016-09-15 18:40 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2016-10-26 21:47 - 2016-09-15 18:40 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
         

Alt 27.10.2016, 09:37   #5
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Code:
ATTFilter
2016-10-26 21:47 - 2016-09-15 18:40 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-10-26 21:47 - 2016-09-15 18:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2016-10-26 21:47 - 2016-09-15 18:40 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2016-10-26 21:47 - 2016-09-15 18:39 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrGidsHandler.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2016-10-26 21:47 - 2016-09-15 18:38 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenance.dll
2016-10-26 21:47 - 2016-09-15 18:38 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-10-26 21:47 - 2016-09-15 18:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2016-10-26 21:47 - 2016-09-15 18:37 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-10-26 21:47 - 2016-09-15 18:37 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-10-26 21:47 - 2016-09-15 18:36 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2016-10-26 21:47 - 2016-09-15 18:36 - 00410624 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2016-10-26 21:47 - 2016-09-15 18:36 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-10-26 21:47 - 2016-09-15 18:36 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-10-26 21:47 - 2016-09-15 18:36 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2016-10-26 21:47 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 01013248 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-10-26 21:47 - 2016-09-15 18:35 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2016-10-26 21:47 - 2016-09-15 18:34 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2016-10-26 21:47 - 2016-09-15 18:34 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2016-10-26 21:47 - 2016-09-15 18:33 - 03753984 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2016-10-26 21:47 - 2016-09-15 18:30 - 03776512 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-10-26 21:47 - 2016-09-15 18:30 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2016-10-26 21:47 - 2016-09-15 18:30 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-10-26 21:47 - 2016-09-15 18:30 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\CastLaunch.dll
2016-10-26 21:47 - 2016-09-15 18:29 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2016-10-26 21:47 - 2016-09-15 18:29 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-26 21:47 - 2016-09-15 18:29 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2016-10-26 21:47 - 2016-09-15 18:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2016-10-26 21:47 - 2016-09-15 18:28 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-26 21:47 - 2016-09-15 18:27 - 05111296 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-10-26 21:47 - 2016-09-15 18:27 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2016-10-26 21:47 - 2016-09-15 18:27 - 00702976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-26 21:47 - 2016-09-15 18:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-10-26 21:47 - 2016-09-15 18:26 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdechangepin.exe
2016-10-26 21:47 - 2016-09-15 18:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-10-26 21:47 - 2016-09-15 18:25 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2016-10-26 21:47 - 2016-09-15 18:25 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundMediaPolicy.dll
2016-10-26 21:47 - 2016-09-15 18:24 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2016-10-26 21:47 - 2016-09-15 18:24 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-10-26 21:47 - 2016-09-15 18:24 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2016-10-26 21:47 - 2016-09-15 18:23 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2016-10-26 21:47 - 2016-09-15 18:23 - 03405824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-10-26 21:47 - 2016-09-15 18:23 - 01361408 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-10-26 21:47 - 2016-09-15 18:23 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2016-10-26 21:47 - 2016-09-15 18:22 - 05611008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-10-26 21:47 - 2016-09-15 18:22 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-10-26 21:47 - 2016-09-15 18:22 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-10-26 21:47 - 2016-09-15 18:21 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-10-26 21:47 - 2016-09-15 18:20 - 01535488 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2016-10-26 21:47 - 2016-09-15 18:20 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-10-26 21:47 - 2016-09-15 18:20 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-10-26 21:47 - 2016-09-15 18:20 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2016-10-26 21:47 - 2016-09-15 18:20 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-10-26 21:47 - 2016-09-15 18:19 - 01130496 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-10-26 21:47 - 2016-09-15 18:19 - 00903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-10-26 21:47 - 2016-09-15 18:19 - 00788992 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-10-26 21:47 - 2016-09-15 18:18 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-10-26 21:47 - 2016-09-15 18:17 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2016-10-26 21:47 - 2016-09-15 18:17 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\FontProvider.dll
2016-10-26 21:47 - 2016-09-07 07:54 - 00133472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-10-26 21:47 - 2016-09-07 07:46 - 00423776 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-10-26 21:47 - 2016-09-07 07:41 - 00172528 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-10-26 21:47 - 2016-09-07 07:34 - 00584544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2016-10-26 21:47 - 2016-09-07 07:29 - 00811416 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2016-10-26 21:47 - 2016-09-07 07:29 - 00595488 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-10-26 21:47 - 2016-09-07 07:29 - 00382272 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-10-26 21:47 - 2016-09-07 07:24 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-10-26 21:47 - 2016-09-07 07:13 - 01557296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2016-10-26 21:47 - 2016-09-07 07:12 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-10-26 21:47 - 2016-09-07 07:04 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2016-10-26 21:47 - 2016-09-07 07:03 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2016-10-26 21:47 - 2016-09-07 07:03 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2016-10-26 21:47 - 2016-09-07 07:03 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-10-26 21:47 - 2016-09-07 07:03 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2016-10-26 21:47 - 2016-09-07 07:03 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccessRes.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\UserDataLanguageUtil.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\ExtrasXmlParser.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneutilRes.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneServiceRes.dll
2016-10-26 21:47 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2016-10-26 21:47 - 2016-09-07 07:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll
2016-10-26 21:47 - 2016-09-07 07:01 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\AddressParser.dll
2016-10-26 21:47 - 2016-09-07 07:01 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\POSyncServices.dll
2016-10-26 21:47 - 2016-09-07 07:00 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\ExSMime.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\ContactActivation.dll
2016-10-26 21:47 - 2016-09-07 06:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-10-26 21:47 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2016-10-26 21:47 - 2016-09-07 06:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-10-26 21:47 - 2016-09-07 06:56 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2016-10-26 21:47 - 2016-09-07 06:56 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2016-10-26 21:47 - 2016-09-07 06:56 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\XamlTileRender.dll
2016-10-26 21:47 - 2016-09-07 06:56 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2016-10-26 21:47 - 2016-09-07 06:56 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-10-26 21:47 - 2016-09-07 06:55 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2016-10-26 21:47 - 2016-09-07 06:55 - 00820736 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2016-10-26 21:47 - 2016-09-07 06:55 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2016-10-26 21:47 - 2016-09-07 06:55 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-10-26 21:47 - 2016-09-07 06:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2016-10-26 21:47 - 2016-09-07 06:54 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-10-26 21:47 - 2016-09-07 06:54 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\NmaDirect.dll
2016-10-26 21:47 - 2016-09-07 06:54 - 00315904 _____ (Microsoft Corporation) C:\Windows\system32\Phoneutil.dll
2016-10-26 21:47 - 2016-09-07 06:54 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-10-26 21:47 - 2016-09-07 06:53 - 02083840 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2016-10-26 21:47 - 2016-09-07 06:53 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-10-26 21:47 - 2016-09-07 06:52 - 00438784 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-10-26 21:47 - 2016-09-07 06:52 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-26 21:47 - 2016-09-07 06:48 - 07792640 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-10-26 21:47 - 2016-09-07 06:46 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-10-26 21:47 - 2016-09-07 06:45 - 05398016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2016-10-26 21:47 - 2016-09-07 06:45 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-10-26 21:47 - 2016-09-07 06:42 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-10-26 21:47 - 2016-09-07 06:41 - 03435008 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2016-10-26 21:47 - 2016-09-07 06:41 - 02947072 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2016-10-26 21:47 - 2016-09-07 06:40 - 01029632 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-10-26 21:47 - 2016-09-07 06:40 - 01006080 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2016-10-26 21:47 - 2016-09-07 06:38 - 01232384 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2016-10-26 21:47 - 2016-09-07 06:37 - 01349120 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-10-26 21:47 - 2016-09-07 06:37 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2016-10-26 21:47 - 2016-09-07 06:37 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-10-26 21:47 - 2016-09-07 06:37 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-10-26 21:47 - 2016-08-27 06:43 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2016-10-26 21:47 - 2016-08-27 06:37 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FSClient.dll
2016-10-26 21:47 - 2016-08-20 07:22 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-10-26 21:47 - 2016-08-20 07:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2016-10-26 21:47 - 2016-08-20 07:20 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2016-10-26 21:47 - 2016-08-20 07:20 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2016-10-26 21:47 - 2016-08-20 07:19 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2016-10-26 21:47 - 2016-08-20 07:19 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2016-10-26 21:47 - 2016-08-20 07:18 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2016-10-26 21:47 - 2016-08-20 07:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2016-10-26 21:47 - 2016-08-20 07:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2016-10-26 21:47 - 2016-08-20 07:15 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2016-10-26 21:47 - 2016-08-20 07:14 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL
2016-10-26 21:47 - 2016-08-20 07:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2016-10-26 21:47 - 2016-08-20 07:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL
2016-10-26 21:47 - 2016-08-20 07:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\c_GSM7.DLL
2016-10-26 21:47 - 2016-08-20 07:07 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2016-10-26 21:47 - 2016-08-20 06:56 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2016-10-26 21:47 - 2016-08-20 06:54 - 00806912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2016-10-26 21:47 - 2016-08-06 06:26 - 01176664 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-10-26 21:47 - 2016-08-06 06:26 - 00409944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-10-26 21:47 - 2016-08-06 06:13 - 01847048 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2016-10-26 21:47 - 2016-08-06 06:13 - 01453992 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2016-10-26 21:47 - 2016-08-06 06:13 - 00044472 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-10-26 21:47 - 2016-08-06 06:08 - 00313560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2016-10-26 21:47 - 2016-08-06 05:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2016-10-26 21:47 - 2016-08-06 05:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2016-10-26 21:47 - 2016-08-06 05:48 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2016-10-26 21:47 - 2016-08-06 05:48 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-10-26 21:47 - 2016-08-06 05:48 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-10-26 21:47 - 2016-08-06 05:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-10-26 21:47 - 2016-08-06 05:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-10-26 21:47 - 2016-08-06 05:47 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2016-10-26 21:47 - 2016-08-06 05:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-10-26 21:47 - 2016-08-06 05:47 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2016-10-26 21:47 - 2016-08-06 05:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-10-26 21:47 - 2016-08-06 05:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-10-26 21:47 - 2016-08-06 05:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-10-26 21:47 - 2016-08-06 05:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-10-26 21:47 - 2016-08-06 05:46 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2016-10-26 21:47 - 2016-08-06 05:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2016-10-26 21:47 - 2016-08-06 05:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2016-10-26 21:47 - 2016-08-06 05:45 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2016-10-26 21:47 - 2016-08-06 05:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2016-10-26 21:47 - 2016-08-06 05:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2016-10-26 21:47 - 2016-08-06 05:44 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2016-10-26 21:47 - 2016-08-06 05:44 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2016-10-26 21:47 - 2016-08-06 05:43 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\ClipboardServer.dll
2016-10-26 21:47 - 2016-08-06 05:43 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-10-26 21:47 - 2016-08-06 05:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2016-10-26 21:47 - 2016-08-06 05:41 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2016-10-26 21:47 - 2016-08-06 05:41 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-10-26 21:47 - 2016-08-06 05:39 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\wifiprofilessettinghandler.dll
2016-10-26 21:47 - 2016-08-06 05:38 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2016-10-26 21:47 - 2016-08-06 05:36 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2016-10-26 21:47 - 2016-08-06 05:33 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-10-26 21:47 - 2016-08-06 05:29 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-10-26 21:47 - 2016-08-06 05:28 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-10-26 21:47 - 2016-08-06 05:21 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2016-10-26 21:47 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-10-26 21:47 - 2016-08-05 10:23 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-10-26 21:47 - 2016-08-05 10:18 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2016-10-26 21:47 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2016-10-26 21:47 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-10-26 21:47 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-10-26 21:47 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2016-10-26 21:47 - 2016-08-02 10:11 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-10-26 21:47 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2016-10-26 21:47 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-10-26 21:47 - 2016-07-22 03:18 - 01461200 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-10-26 21:47 - 2016-07-22 03:11 - 01435896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-10-26 21:43 - 2016-10-26 21:43 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\KeePass
2016-10-26 21:39 - 2016-10-26 21:48 - 00000000 ____D C:\Users\Kolle\AppData\Local\Adobe
2016-10-26 21:34 - 2016-10-26 21:34 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\WinRAR
2016-10-26 21:30 - 2016-10-26 21:43 - 00001172 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass.lnk
2016-10-26 21:30 - 2016-10-26 21:43 - 00000000 ____D C:\Program Files (x86)\KeePass Password Safe
2016-10-26 21:30 - 2016-10-26 21:30 - 00000888 _____ C:\Users\Public\Desktop\VeraCrypt.lnk
2016-10-26 21:30 - 2016-03-28 13:27 - 00531368 _____ (Simon Tatham) C:\Users\Kolle\Desktop\putty_0.67.exe
2016-10-26 21:30 - 2016-03-14 19:31 - 01088958 _____ (pendrivelinux.com) C:\Users\Kolle\Desktop\Universal-USB-Installer-1.9.6.3.exe
2016-10-26 21:29 - 2016-10-26 21:29 - 00198248 _____ (IDRIX) C:\Windows\system32\Drivers\veracrypt.sys
2016-10-26 21:29 - 2016-10-26 21:29 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-26 21:29 - 2016-10-26 21:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-26 21:29 - 2016-10-26 21:29 - 00000000 ____D C:\Program Files\WinRAR
2016-10-26 21:29 - 2016-10-26 21:29 - 00000000 ____D C:\Program Files\VeraCrypt
2016-10-26 21:09 - 2016-10-26 21:09 - 00000000 ____D C:\ProgramData\IntelDLM
2016-10-26 21:06 - 2016-10-26 22:16 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2016-10-26 21:06 - 2016-10-26 21:06 - 00000045 _____ C:\Windows\SysWOW64\initdebug.nfo
2016-10-26 21:04 - 2016-10-26 21:24 - 00000000 ____D C:\ProgramData\Package Cache
2016-10-26 21:04 - 2016-10-26 21:04 - 00002110 _____ C:\Windows\System32\Tasks\USER_ESRV_SVC_WILLAMETTE
2016-10-26 21:04 - 2016-10-26 21:04 - 00000000 ____D C:\Windows\System32\Tasks\Intel
2016-10-26 21:04 - 2016-10-26 21:04 - 00000000 ____D C:\Users\Kolle\AppData\Local\Intel
2016-10-26 21:04 - 2016-10-26 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
2016-10-26 21:04 - 2016-10-26 21:04 - 00000000 ____D C:\ProgramData\Intel
2016-10-26 21:04 - 2016-10-26 21:04 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility
2016-10-26 21:04 - 2015-06-04 13:33 - 00021984 _____ C:\Windows\system32\Drivers\semav6msr64.sys
2016-10-26 21:03 - 2016-10-26 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript
2016-10-26 21:03 - 2016-10-26 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreePDF
2016-10-26 21:03 - 2016-10-26 21:03 - 00000000 ____D C:\ProgramData\FreePDF
2016-10-26 21:03 - 2016-10-26 21:03 - 00000000 ____D C:\Program Files (x86)\FreePDF_XP
2016-10-26 21:03 - 2012-06-21 07:25 - 00113152 _____ C:\Windows\system32\redmon64.dll
2016-10-26 21:03 - 2012-06-21 07:25 - 00044032 _____ C:\Windows\system32\unredmon64.exe
2016-10-26 21:03 - 2012-06-21 07:25 - 00028435 _____ C:\Windows\system32\redmon.chm
2016-10-26 21:02 - 2016-10-26 21:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-10-26 21:02 - 2016-10-26 21:02 - 00000000 ____D C:\Program Files\7-Zip
2016-10-26 21:02 - 2016-10-26 21:02 - 00000000 ____D C:\Program Files (x86)\gs
2016-10-26 20:46 - 2016-10-26 21:13 - 00000000 ____D C:\Users\Kolle\AppData\Local\Mozilla
2016-10-26 20:46 - 2016-10-26 20:46 - 00001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-10-26 20:46 - 2016-10-26 20:46 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\Mozilla
2016-10-26 20:46 - 2016-10-26 20:46 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-10-26 20:46 - 2016-10-26 20:46 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-10-26 19:52 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\.VirtualBox
2016-10-26 19:51 - 2016-10-26 19:51 - 00001149 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2016-10-26 19:51 - 2016-10-26 19:51 - 00000000 ____D C:\Users\Kolle\AppData\Local\MicrosoftEdge
2016-10-26 19:51 - 2016-10-26 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2016-10-26 19:51 - 2016-10-26 19:51 - 00000000 ____D C:\Program Files\Oracle
2016-10-26 19:51 - 2016-10-18 19:57 - 00928416 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2016-10-26 19:51 - 2016-10-18 19:57 - 00149768 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2016-10-26 16:34 - 2016-10-26 22:14 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-10-26 16:34 - 2016-10-26 22:14 - 00000000 __SHD C:\Users\Kolle\IntelGraphicsProfiles
2016-10-26 16:34 - 2016-10-26 21:27 - 00000000 ____D C:\Program Files\Intel
2016-10-26 16:34 - 2016-10-26 16:34 - 00252560 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys
2016-10-26 16:34 - 2016-10-26 16:34 - 00000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-10-26 16:34 - 2016-10-26 16:34 - 00000000 ____D C:\Program Files (x86)\Intel
2016-10-26 16:34 - 2016-10-26 16:34 - 00000000 ____D C:\Intel
2016-10-26 16:34 - 2015-12-19 01:08 - 00099848 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2016-10-26 16:32 - 2016-10-26 16:32 - 00223528 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
2016-10-26 16:32 - 2016-10-26 16:32 - 00167904 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_mark.sys
2016-10-26 16:32 - 2016-10-26 16:32 - 00112336 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys
2016-10-26 16:31 - 2016-10-26 22:15 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-10-26 16:31 - 2016-10-26 16:33 - 01012056 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2016-10-26 16:31 - 2016-10-26 16:32 - 00435032 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2016-10-26 16:31 - 2016-10-26 16:32 - 00000000 ____D C:\Program Files\Common Files\AV
2016-10-26 16:31 - 2016-10-26 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
2016-10-26 16:31 - 2016-10-26 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2016-10-26 16:31 - 2016-10-26 16:31 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2016-10-26 16:31 - 2016-06-26 15:14 - 00191312 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2016-10-26 16:31 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2016-10-26 16:28 - 2016-10-26 16:28 - 00000000 ____D C:\Users\Kolle\AppData\Local\Comms
2016-10-26 14:52 - 2016-10-26 13:53 - 00000000 ____D C:\Windows\Panther
2016-10-26 14:04 - 2016-10-26 21:29 - 00002383 _____ C:\Users\Kolle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-10-26 14:04 - 2016-10-26 21:29 - 00000000 ___RD C:\Users\Kolle\OneDrive
2016-10-26 14:04 - 2016-10-26 14:04 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-10-26 14:03 - 2016-10-26 22:14 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-26 14:03 - 2016-10-26 21:48 - 00000000 ____D C:\Users\Kolle\AppData\Roaming\Adobe
2016-10-26 14:03 - 2016-10-26 17:34 - 00000000 ____D C:\Users\Kolle\AppData\Local\Packages
2016-10-26 14:03 - 2016-10-26 16:27 - 00000000 ____D C:\Users\Kolle\AppData\Local\ConnectedDevicesPlatform
2016-10-26 14:03 - 2016-10-26 14:03 - 00000000 ____D C:\Users\Kolle\AppData\Local\VirtualStore
2016-10-26 14:03 - 2016-10-26 14:03 - 00000000 ____D C:\Users\Kolle\AppData\Local\TileDataLayer
2016-10-26 14:03 - 2016-10-26 14:03 - 00000000 ____D C:\Users\Kolle\AppData\Local\Publishers
2016-10-26 14:02 - 2016-10-26 22:14 - 00000000 ____D C:\Users\Kolle
2016-10-26 14:02 - 2016-10-26 14:02 - 00000020 ___SH C:\Users\Kolle\ntuser.ini
2016-10-26 14:02 - 2016-10-26 14:02 - 00000020 ___SH C:\Users\defaultuser0.DESKTOP-9RCQFIO\ntuser.ini
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Vorlagen
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Startmenü
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Netzwerkumgebung
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Lokale Einstellungen
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Eigene Dateien
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Druckumgebung
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Documents\Eigene Videos
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Documents\Eigene Musik
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Documents\Eigene Bilder
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\AppData\Local\Verlauf
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\AppData\Local\Anwendungsdaten
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\Kolle\Anwendungsdaten
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Vorlagen
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Startmenü
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Netzwerkumgebung
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Lokale Einstellungen
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Eigene Dateien
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Druckumgebung
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Documents\Eigene Videos
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Documents\Eigene Musik
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Documents\Eigene Bilder
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\Verlauf
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\Anwendungsdaten
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 _SHDL C:\Users\defaultuser0.DESKTOP-9RCQFIO\Anwendungsdaten
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 ____D C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\VirtualStore
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 ____D C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\TileDataLayer
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 ____D C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\Packages
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 ____D C:\Users\defaultuser0.DESKTOP-9RCQFIO\AppData\Local\ConnectedDevicesPlatform
2016-10-26 14:02 - 2016-10-26 14:02 - 00000000 ____D C:\Users\defaultuser0.DESKTOP-9RCQFIO
2016-10-26 14:01 - 2016-10-26 14:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2016-10-26 14:01 - 2016-10-26 14:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2016-10-26 14:01 - 2016-10-26 14:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2016-10-26 14:01 - 2016-10-26 14:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2016-10-26 13:58 - 2016-10-26 22:20 - 01437308 _____ C:\Windows\system32\PerfStringBackup.INI
2016-10-26 13:56 - 2016-10-26 13:56 - 00000000 ____D C:\Windows\CSC
2016-10-26 13:56 - 2016-07-16 13:41 - 02716672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-10-26 13:55 - 2016-10-26 13:55 - 00000000 ____D C:\ProgramData\USOShared
2016-10-26 13:54 - 2016-10-26 13:54 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Vorlagen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Startmenü
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Netzwerkumgebung
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Lokale Einstellungen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Eigene Dateien
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Druckumgebung
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Videos
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Musik
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Bilder
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Verlauf
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\defaultuser0\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Programme
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-10-26 13:54 - 2016-10-26 13:54 - 00000000 ____D C:\Users\defaultuser0
2016-10-26 13:53 - 2016-10-26 22:13 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-10-26 13:53 - 2016-10-26 13:53 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-10-26 13:52 - 2016-10-26 22:13 - 00280880 _____ C:\Windows\system32\FNTCACHE.DAT
2016-10-26 13:52 - 2016-10-26 21:27 - 00000000 ____D C:\Windows\system32\SleepStudy
2016-10-26 13:52 - 2016-10-26 13:52 - 00000000 ____D C:\Windows\ServiceProfiles
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\webdesign
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\Trading
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\tradesignal
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\Steuer
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\Simply Super Software
2016-10-26 13:11 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\SEGA
2016-10-26 13:11 - 2016-05-01 18:06 - 00000000 ____D C:\Users\Kolle\Documents\Soundaufnahmen
2016-10-26 13:10 - 2016-10-26 20:52 - 00000000 ____D C:\Users\Kolle\Documents\FlashIntegro
2016-10-26 13:10 - 2016-10-26 20:52 - 00000000 ____D C:\Users\Kolle\Documents\Bewerbung_Nicole
2016-10-26 13:10 - 2016-10-26 20:52 - 00000000 ____D C:\Users\Kolle\Documents\Austausch
2016-10-26 13:10 - 2016-10-26 20:51 - 00000000 ____D C:\Users\Kolle\Documents\Schule
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Scanns
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Sanny
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Projekt-Antrag
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Oktoberfest
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Meine Shapes
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Meine Datenquellen
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Mastercard
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\MAGIX
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Kündigungen
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\KFZ
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Karteikarten
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Julius
2016-10-26 13:10 - 2016-10-26 20:50 - 00000000 ____D C:\Users\Kolle\Documents\Hausbau
2016-10-26 13:10 - 2016-10-19 21:58 - 00035260 _____ C:\Users\Kolle\Documents\Database.kdb
2016-10-26 13:10 - 2016-10-09 11:10 - 00011517 _____ C:\Users\Kolle\Documents\Stillen.xlsx
2016-10-26 13:10 - 2016-08-21 14:08 - 00128609 _____ C:\Users\Kolle\Documents\auto_drivy.xlsx
2016-10-26 13:10 - 2016-02-17 22:44 - 164327660 _____ C:\Users\Kolle\Documents\Hausbau.zip
2016-10-26 13:10 - 2016-01-28 19:52 - 00000305 _____ C:\Users\Kolle\Documents\Neues Textdokument (2).txt
2016-10-26 13:10 - 2016-01-25 18:00 - 00022494 _____ C:\Users\Kolle\Documents\Tele-Columbus-Fernsehen-Kuendigung (2).pdf
2016-10-26 13:10 - 2016-01-07 22:21 - 00000036 _____ C:\Users\Kolle\Documents\key.txt
2016-10-26 13:10 - 2015-12-28 18:41 - 00000000 ____D C:\Users\Kolle\Documents\gemeinsam
2016-10-26 13:10 - 2015-10-20 15:06 - 08001185 _____ C:\Users\Kolle\Documents\Prüfung_Kollrich.pdf
2016-10-26 13:10 - 2015-10-13 20:30 - 01105521 _____ C:\Users\Kolle\Documents\Auszahlung.pdf
2016-10-26 13:10 - 2015-09-22 14:55 - 00022571 _____ C:\Users\Kolle\Documents\Vodafone-Mobilfunk-Kuendigung.pdf
2016-10-26 13:10 - 2015-08-31 17:12 - 00071390 _____ C:\Users\Kolle\Documents\Statue of Liberty Tickets - Reservations  Statue of Liberty Tours & Tickets – StatueOfLibertyTickets.com.pdf
2016-10-26 13:10 - 2015-08-31 16:23 - 00112296 _____ C:\Users\Kolle\Documents\ReiseSIM.de - einfach günstig im Ausland mit dem Handy telefonieren.pdf
2016-10-26 13:10 - 2015-07-29 12:48 - 00886379 _____ C:\Users\Kolle\Documents\Angebot_994871.pdf
2016-10-26 13:10 - 2015-07-05 22:01 - 00640023 _____ C:\Users\Kolle\Documents\feuerwerkssym.pdf
2016-10-26 13:10 - 2015-06-07 10:49 - 00002864 _____ C:\Users\Kolle\Documents\Akt_liste.txt
2016-10-26 13:10 - 2015-05-31 14:15 - 00111688 _____ C:\Users\Kolle\Documents\hannoversche_antragsbestaetigung_t4_20151509901331020029.pdf
2016-10-26 13:10 - 2015-05-31 13:52 - 00720289 _____ C:\Users\Kolle\Documents\Antragsdokumente_20151509901330869019.pdf
2016-10-26 13:10 - 2015-05-26 16:46 - 01120771 _____ C:\Users\Kolle\Documents\Baufreigabe.pdf
2016-10-26 13:10 - 2015-05-18 16:41 - 00007909 _____ C:\Users\Kolle\Documents\Rechnung15062000.pdf
2016-10-26 13:10 - 2015-05-09 16:19 - 00011018 _____ C:\Users\Kolle\Documents\Direkt_Depot_8005061908_Ertragsabrechnung_DE0008404005_20150507.pdf
2016-10-26 13:10 - 2015-05-09 15:47 - 00023058 _____ C:\Users\Kolle\Documents\Simfinity-Kuendigung.pdf
2016-10-26 13:10 - 2015-05-09 14:40 - 00000000 ____D C:\Users\Kolle\Documents\Eigene Maps
2016-10-26 13:10 - 2015-04-29 16:16 - 00017890 _____ C:\Users\Kolle\Documents\Direkt_Depot_8005061908_Einladung_zur_Hauptversammlung_DE0005408116_20150429.pdf
2016-10-26 13:10 - 2015-04-26 18:32 - 00009520 _____ C:\Users\Kolle\Documents\Urlaub.kmz
2016-10-26 13:10 - 2015-04-21 18:18 - 00000000 ____D C:\Users\Kolle\Documents\MAGIX Downloads
2016-10-26 13:10 - 2015-03-29 19:11 - 00009125 _____ C:\Users\Kolle\Documents\Direkt_Depot_8005061908_Abrechnung_Kapitalveraenderung_DE000TD0JCP8_20150325.pdf
2016-10-26 13:10 - 2015-01-11 20:35 - 00011138 _____ C:\Users\Kolle\Documents\Auswertung_Prüfungen.xlsx
2016-10-26 13:10 - 2014-11-26 21:23 - 00207501 _____ C:\Users\Kolle\Documents\Selbstauskunft 05-2014_Kollrich.pdf
2016-10-26 13:10 - 2014-11-05 10:06 - 00024025 _____ C:\Users\Kolle\Documents\Ihre Buchung.pdf
2016-10-26 13:10 - 2014-10-29 18:57 - 00022604 _____ C:\Users\Kolle\Documents\BGB - Einzelnorm.pdf
2016-10-26 13:10 - 2014-10-14 17:55 - 00054737 _____ C:\Users\Kolle\Documents\Vertrag Vodafone.pdf
2016-10-26 13:10 - 2014-09-22 18:36 - 00011924 _____ C:\Users\Kolle\Documents\Kursverlauf_Aktien.xlsx
2016-10-26 13:10 - 2014-09-17 18:01 - 01009018 _____ C:\Users\Kolle\Documents\Angebot_43834.pdf
2016-10-26 13:10 - 2014-07-27 13:03 - 101338794 _____ C:\Users\Kolle\Documents\IHK-Textband 2.pdf
2016-10-26 13:10 - 2014-07-27 01:04 - 86671009 _____ C:\Users\Kolle\Documents\IHK-Textband 1.pdf
2016-10-26 13:10 - 2011-01-01 00:00 - 02016936 _____ C:\Users\Kolle\Documents\SCN_0001.pdf
2016-10-26 13:10 - 2011-01-01 00:00 - 00934052 _____ C:\Users\Kolle\Documents\Kündigung_Mobilcom.pdf
2016-10-26 13:09 - 2016-07-03 17:37 - 00680354 _____ C:\Users\Kolle\Documents\1 Projektauftrag.pdf
2016-10-26 13:09 - 2015-09-25 18:04 - 00038140 _____ C:\Users\Kolle\Documents\1&1 - Mitnahme Ihrer 1&1 Mobilfunkrufnummer zum neuen Anbieter.pdf
2016-10-26 13:09 - 2015-09-01 18:22 - 00035581 _____ C:\Users\Kolle\Documents\1und1_Bestellung.pdf
2016-10-26 13:09 - 2015-07-23 19:02 - 408972938 _____ (Sereby Corporation) C:\Users\Kolle\Documents\aio-runtimes_v2.2.3.exe
2016-10-26 13:09 - 2015-03-22 12:37 - 00050993 _____ C:\Users\Kolle\Documents\0000803110_TCA_04_20150118101136_00000000.pdf
2016-10-18 19:57 - 2016-10-18 19:57 - 00203856 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetLwf.sys
2016-10-18 19:57 - 2016-10-18 19:57 - 00131096 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp6.sys

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-10-26 22:20 - 2016-07-17 00:51 - 00490436 _____ C:\Windows\system32\perfh007.dat
2016-10-26 22:20 - 2016-07-17 00:51 - 00089930 _____ C:\Windows\system32\perfc007.dat
2016-10-26 22:16 - 2016-07-16 13:45 - 00000000 ____D C:\Windows\INF
2016-10-26 22:14 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\AppReadiness
2016-10-26 22:13 - 2016-07-16 08:04 - 00262144 _____ C:\Windows\system32\config\BBI
2016-10-26 22:12 - 2016-07-17 00:56 - 00000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___SD C:\Windows\SysWOW64\F12
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___SD C:\Windows\system32\F12
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___SD C:\Windows\system32\dsc
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\SysWOW64\setup
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\setup
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\oobe
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\migwiz
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\lv-LV
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\lt-LT
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\et-EE
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\es-MX
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\en-GB
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\appraiser
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\ShellExperiences
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\Provisioning
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\bcastdvr
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-26 22:12 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-10-26 22:12 - 2016-07-16 08:04 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-10-26 22:12 - 2016-07-16 08:04 - 00000000 ____D C:\Windows\system32\Sysprep
2016-10-26 22:12 - 2016-07-16 08:04 - 00000000 ____D C:\Windows\system32\Dism
2016-10-26 21:55 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-10-26 21:53 - 2016-07-16 13:36 - 00000000 ____D C:\Windows\CbsTemp
2016-10-26 17:31 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-26 16:33 - 2016-06-20 23:41 - 00050008 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klim6.sys
2016-10-26 16:33 - 2016-06-02 22:39 - 00127896 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klwtp.sys
2016-10-26 16:31 - 2016-07-16 13:47 - 00000000 ___HD C:\Windows\ELAMBKUP
2016-10-26 16:31 - 2016-07-16 08:04 - 00032768 _____ C:\Windows\system32\config\ELAM
2016-10-26 14:52 - 2016-07-16 13:47 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-10-26 14:02 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2016-10-26 13:56 - 2016-07-16 13:47 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-10-26 13:55 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-10-26 13:55 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-26 13:54 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows NT
2016-10-26 13:53 - 2016-07-16 13:47 - 00000000 ___RD C:\Windows\PrintDialog
2016-10-26 13:53 - 2016-07-16 13:47 - 00000000 ___RD C:\Windows\MiracastView
2016-10-03 22:09 - 2016-07-16 13:49 - 00828408 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-10-03 22:09 - 2016-07-16 13:49 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-10-26 22:32 - 2016-10-26 22:32 - 0000096 _____ () C:\Users\Kolle\AppData\Roaming\version2.xml

Einige Dateien in TEMP:
====================
C:\Users\Kolle\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Kolle\AppData\Local\Temp\sfareca00001.dll
C:\Users\Kolle\AppData\Local\Temp\sfextra.dll


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-10-26 13:52

==================== Ende von FRST.txt ============================
         


Alt 27.10.2016, 10:07   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Zitat:
. . . (Version: 2.1.28.3 - Intel) Hidden
. . . (x32 Version: 2.6.1.4 - Intel) Hidden
Wasndas für Software? Hast du die so unkenntlich gemacht?


Zitat:
Windows 10 Pro Version 1607 (X64)
Microsoft Office Professional Plus 2010
Beachte bitte unsere Regeln/Voraussetzungen wenn es um das Analysieren und Bereinigen von gewerblich genutzten Rechnern geht => http://www.trojaner-board.de/108422-...-anfragen.html

Ansonsten bitte kurz erklären wenn es doch kein gewerblich genutztes System ist - der art dicke/teure Versionen (Professional Plus) sind ziemlich unnötig für ein rein privates Vergnügen
__________________
--> Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.

Alt 27.10.2016, 11:14   #7
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



In den Logs habe ich nichts unkenntlich gemacht, ich hatte mich auch gewundert warum da 3 Punkte stehen. Laut dem Text sieht es aus wie ein Software von Intel, ich habe ja einen Intel Prozessor. Es könnte sich um die Intel Driver Update Utility und den Grafiktreiber handeln.

Die Software habe ich bei eBay erworben und war gar nicht so teuer. Es handelt sich nicht um einen gewerblichen Rechner.

Alt 27.10.2016, 12:21   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Diese ProPlus Lizenzen kosten idR locker 500 €. Ok, Office 2010 ist jetzt auch schon ein Zacken älter.


1. Schritt: Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers




2. Schritt: Kaspersky TDSS-Killer

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 27.10.2016, 13:08   #9
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



***mbar-log-2016-10-27 (12-55-39)***

Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org

Database version:
  main:    v2016.10.27.05
  rootkit: v2016.09.26.02

Windows 10 x64 NTFS
Internet Explorer 11.321.14393.0
Kolle :: DESKTOP-9RCQFIO [administrator]

27.10.2016 12:55:39
mbar-log-2016-10-27 (12-55-39).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 365297
Time elapsed: 5 minute(s), 47 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
Er hat schon bei ersten Durchlauf keine Maleware gefunden. Ein Neustart war nicht notwendig laut Programm.

***Kaspersky Report Teil 1***

Code:
ATTFilter
13:02:22.0567 0x2174  TDSS rootkit removing tool 3.1.0.11 Aug  5 2016 12:13:31
13:02:26.0414 0x2174  ============================================================
13:02:26.0414 0x2174  Current date / time: 2016/10/27 13:02:26.0414
13:02:26.0414 0x2174  SystemInfo:
13:02:26.0415 0x2174  
13:02:26.0415 0x2174  OS Version: 10.0.14393 ServicePack: 0.0
13:02:26.0415 0x2174  Product type: Workstation
13:02:26.0415 0x2174  ComputerName: DESKTOP-9RCQFIO
13:02:26.0415 0x2174  UserName: Kolle
13:02:26.0415 0x2174  Windows directory: C:\Windows
13:02:26.0415 0x2174  System windows directory: C:\Windows
13:02:26.0415 0x2174  Running under WOW64
13:02:26.0415 0x2174  Processor architecture: Intel x64
13:02:26.0415 0x2174  Number of processors: 4
13:02:26.0415 0x2174  Page size: 0x1000
13:02:26.0415 0x2174  Boot type: Normal boot
13:02:26.0415 0x2174  CodeIntegrityOptions = 0x00000001
13:02:26.0415 0x2174  ============================================================
13:02:26.0497 0x2174  KLMD registered as C:\Windows\system32\drivers\38435808.sys
13:02:26.0497 0x2174  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.321, osProperties = 0x19
13:02:26.0626 0x2174  System UUID: {6DBD6FDE-0C62-518D-6033-3D1A1EBD954B}
13:02:26.0928 0x2174  Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:02:26.0929 0x2174  Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:02:26.0931 0x2174  ============================================================
13:02:26.0931 0x2174  \Device\Harddisk0\DR0:
13:02:26.0932 0x2174  MBR partitions:
13:02:26.0932 0x2174  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x57545000
13:02:26.0932 0x2174  \Device\Harddisk1\DR1:
13:02:26.0932 0x2174  MBR partitions:
13:02:26.0932 0x2174  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
13:02:26.0932 0x2174  \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0xED81000
13:02:26.0932 0x2174  ============================================================
13:02:26.0933 0x2174  C: <-> \Device\Harddisk1\DR1\Partition2
13:02:27.0668 0x2174  D: <-> \Device\Harddisk0\DR0\Partition1
13:02:27.0668 0x2174  ============================================================
13:02:27.0668 0x2174  Initialize success
13:02:27.0668 0x2174  ============================================================
13:03:05.0579 0x2284  ============================================================
13:03:05.0579 0x2284  Scan started
13:03:05.0579 0x2284  Mode: Manual; SigCheck; TDLFS; 
13:03:05.0579 0x2284  ============================================================
13:03:05.0579 0x2284  KSN ping started
13:03:05.0681 0x2284  KSN ping finished: true
13:03:06.0055 0x2284  ================ Scan system memory ========================
13:03:06.0055 0x2284  System memory - ok
13:03:06.0055 0x2284  ================ Scan services =============================
13:03:06.0088 0x2284  [ A7901875F89D011C38CF52C98ACF5B29, 782141AB1DD7ACDE6EA08B5BAFDE8BADD05B81D38C18E097D6D9C46102056EB1 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
13:03:06.0145 0x2284  1394ohci - ok
13:03:06.0154 0x2284  [ EE1CCC54F75C24727A218F98FC5349DA, 0B0D26640BFA0F551B7087027E572D0BF2C5EAF50A4187C5A7D839180B7FF589 ] 3ware           C:\Windows\system32\drivers\3ware.sys
13:03:06.0164 0x2284  3ware - ok
13:03:06.0176 0x2284  [ 73C73E1AA0D4D727A04AAAB120B7F56A, 5D311F11022994410DF5C67914D38B1F0D813EFD181EA234750286A272D67A1A ] ACPI            C:\Windows\system32\drivers\ACPI.sys
13:03:06.0195 0x2284  ACPI - ok
13:03:06.0198 0x2284  [ 0935496EF9624B46B935CB35ECE1F205, A22A2A29195505A65E8626D60B00C86C23E0CABC1EB8345EA5ED523516CC21C0 ] AcpiDev         C:\Windows\System32\drivers\AcpiDev.sys
13:03:06.0208 0x2284  AcpiDev - ok
13:03:06.0212 0x2284  [ D6794C31F4077B71433988787BAA926E, F16365C2F195AAE94D4740E6C3DF4C0CECEC6393CAD65425DCCD28CDBA6EC51A ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
13:03:06.0222 0x2284  acpiex - ok
13:03:06.0224 0x2284  [ FE5F656D6B35089DA39112E74EC6A85A, 5D81EE63998232A5B36DE47FE15B9D04D5BD02234CA133A2462AECA8C60A22ED ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
13:03:06.0233 0x2284  acpipagr - ok
13:03:06.0236 0x2284  [ 2F242941E4DFF69B883D77A16F039557, 45C388365317C720654A659A9326B2BC0E9D84929C704654985597D5D620101C ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
13:03:06.0245 0x2284  AcpiPmi - ok
13:03:06.0248 0x2284  [ C247E35A21682DA8D0DC3AF9F025FCC5, 455415EE3166B3043AD8A4DD50B688DB74242267FB555642441251EFA823E971 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
13:03:06.0256 0x2284  acpitime - ok
13:03:06.0263 0x2284  [ DC00FD73505DAEDD99CAF4533B0C05BD, 2863D1F0587B79254FBE093C191C73892768CF2AC59BEF97745EE66CEE3473AF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:03:06.0270 0x2284  AdobeARMservice - ok
13:03:06.0289 0x2284  [ 49B9DB97AFC85DCCBDACDAB2E90085B7, 2A6C2A09F74EA15044F442CCFB54A0F24F105ADB915E5C78F02F59652DC29152 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
13:03:06.0314 0x2284  ADP80XX - ok
13:03:06.0326 0x2284  [ 983266DA83FFF73DBDDD3730A4712228, 433A2731DAC687C52FB7E23093B8E11D92CCCF4C35B493D73AC30C6A4A6D2A6C ] AFD             C:\Windows\system32\drivers\afd.sys
13:03:06.0342 0x2284  AFD - ok
13:03:06.0348 0x2284  [ E44DB3F7225EC3E119560738B3619972, 32946FBC2BD74072F22E48D769A034183F6C3728FCCC3CF0DD561602511E39B2 ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
13:03:06.0363 0x2284  ahcache - ok
13:03:06.0366 0x2284  [ D0905D4A945D01D4B28DB9E1BD5985F7, CF389CBCD3B99D1BAE34A42F723F1005C32213A394F691978076D3DF1727715C ] AJRouter        C:\Windows\System32\AJRouter.dll
13:03:06.0376 0x2284  AJRouter - ok
13:03:06.0380 0x2284  [ 8FD51B3B35707A66080D7C8CB05E792D, FE52F3DC280D208FDDC75F6E3294B8D601E0D86F9BD3DB1ACC8FC296AC74C23B ] ALG             C:\Windows\System32\alg.exe
13:03:06.0392 0x2284  ALG - ok
13:03:06.0396 0x2284  [ DF21E05E41E5AC3F13F304D91457649A, 7F48F2AD1DBE89A261113C76D7C23AD7D87D5599BCC31F8A558A8A10B81BF521 ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
13:03:06.0407 0x2284  AmdK8 - ok
13:03:06.0412 0x2284  [ 45D0AA4BB90B821DF92E8F19ABED0C5E, EA87A6E98DB3C5A88A844C04C6934E870B7004E783AA5211722115382A211B90 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
13:03:06.0423 0x2284  AmdPPM - ok
13:03:06.0426 0x2284  [ 74FFBC43B4B899C9A8CA06A892F2CE73, 8D599363C7F3D373F1859BAA4D06DD0F40BE78B56BE52B74DE6EA6EF99452004 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
13:03:06.0434 0x2284  amdsata - ok
13:03:06.0440 0x2284  [ AAB0F1D8D7E54761ABAB13AF161F1680, CF847990EFFA2828F5B1DB1A68F08A6C2C918E9612EDFFCF95C36BCABBBEA272 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
13:03:06.0452 0x2284  amdsbs - ok
13:03:06.0454 0x2284  [ F91BAAC4237C40352A807000F3B716F9, F7EFA08E5067C3D419C9D21EDB880BA08883A80DDF35F8B42EC3AB293FE5E03E ] amdxata         C:\Windows\system32\drivers\amdxata.sys
13:03:06.0461 0x2284  amdxata - ok
13:03:06.0466 0x2284  [ BC121C099C6C659126AD2102AFDFF8CF, 42B5EE293BDD7ADCE48173A01B30D8452564B9DA225EAF25E9292FE77C0FCF3E ] AppID           C:\Windows\system32\drivers\appid.sys
13:03:06.0475 0x2284  AppID - ok
13:03:06.0479 0x2284  [ 74A24CF946279111D7F203B36569EC02, FD67D36804744B4FE3E20BA891852575E6C2DA6515643B2F4B4210118B0FCCDA ] AppIDSvc        C:\Windows\System32\appidsvc.dll
13:03:06.0494 0x2284  AppIDSvc - ok
13:03:06.0498 0x2284  [ 73FAA5517CCD1332F00192A303CF2026, 75636222BFF381A3EECA010752DF7DC1603A395B91FF7FBF92127B5CA8EFFEE5 ] Appinfo         C:\Windows\System32\appinfo.dll
13:03:06.0509 0x2284  Appinfo - ok
13:03:06.0511 0x2284  [ 68190E2BADF23BD782344970E5B5DE9E, 95D30EC12C7FDF5822CED8BC2F17669A6687A2FB262B4F0D15C8DCFF4E9AB33D ] applockerfltr   C:\Windows\system32\drivers\applockerfltr.sys
13:03:06.0527 0x2284  applockerfltr - ok
13:03:06.0534 0x2284  [ 76A12AC673B0F8A607ACDD0583C247D4, CBC6C0EB82C7A8E3998344280BBB5A697AFA7206CA2BADFDA7ED6E7DD20E3DAC ] AppMgmt         C:\Windows\System32\appmgmts.dll
13:03:06.0548 0x2284  AppMgmt - ok
13:03:06.0558 0x2284  [ 21DC11DA29484AE026E536F2EA7E79E5, 6E17B679494CB293DE13DFA18F79A9DFAFEEBAAE41943F95B5E1AE0720A5CA26 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
13:03:06.0579 0x2284  AppReadiness - ok
13:03:06.0594 0x2284  [ 6010A920FDE5BFE4EA056F9736FBDC06, F55F68D5AD1F272BC285E716E02090C62FC87476DD6CE7ABA6BE7EF8EF6178DE ] AppVClient      C:\Windows\system32\AppVClient.exe
13:03:06.0614 0x2284  AppVClient - ok
13:03:06.0619 0x2284  [ B66ED2CB37F7E4696A51612AFBA08834, 70BA67AF7F1290E3145B873B53516F138E50D8AAC80CD00CBA66467ABC6643CB ] AppvStrm        C:\Windows\system32\drivers\AppvStrm.sys
13:03:06.0628 0x2284  AppvStrm - ok
13:03:06.0632 0x2284  [ 8DC924848E20F890BEFC6B31136D46BE, B7603425B4970F505B5A3EB0F6652A9CDD188059BDC945D6DF2BADC2DF8F4B5D ] AppvVemgr       C:\Windows\system32\drivers\AppvVemgr.sys
13:03:06.0641 0x2284  AppvVemgr - ok
13:03:06.0649 0x2284  [ 9ADC5A8BEE10E174F95349E9232D8E76, F322991323DCDC51199BB3AB0DA20F6C3CC7EE6E804400B473C610FDB895F0AE ] AppvVfs         C:\Windows\system32\drivers\AppvVfs.sys
13:03:06.0658 0x2284  AppvVfs - ok
13:03:06.0689 0x2284  [ BC45C66ABEF4756F68F51B14C975F7CD, AD7034B49D6FF2C310CB615A674164F4D1B9E1A7E64095FAF4F88D574954705C ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
13:03:06.0746 0x2284  AppXSvc - ok
13:03:06.0752 0x2284  [ E6AB1F0B4C3D4E0D2A88332D76FECD03, 0D3003EB979DA4546DCDD055011E24F13E34F683F02C9801CAC564D1809F11D2 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
13:03:06.0760 0x2284  arcsas - ok
13:03:06.0763 0x2284  [ 61C5A480C43E7E8E49C42869F49D0D3E, E610F0E4315ABA1D90AD4A1D7A68ABA2ACBB7FCA89E9D1798470365D52592D55 ] AsyncMac        C:\Windows\System32\drivers\asyncmac.sys
13:03:06.0774 0x2284  AsyncMac - ok
13:03:06.0777 0x2284  [ A10F989A812B57B9695F6C305907C9C6, E2B292610079AA1A10696138DE8130905A8A834B75A8DED7EBF8B6732B77A0F4 ] atapi           C:\Windows\system32\drivers\atapi.sys
13:03:06.0784 0x2284  atapi - ok
13:03:06.0792 0x2284  [ 5D637DF654D6386487876ADF5AF301B3, 7B53356237369D892F5BBEA9C967B20DCA40FA2B6B3C5AF7A4304FFD00DF1BFC ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
13:03:06.0809 0x2284  AudioEndpointBuilder - ok
13:03:06.0824 0x2284  [ A0F7114A69A67316B9707F1809061F86, 3B501B6C9E48CD6DD38F2C9880BE9885E17D3477FFAD1207631CD9E31CD05B13 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
13:03:06.0854 0x2284  Audiosrv - ok
13:03:06.0866 0x2284  [ 03B45C52179E8DAE51A0F685C30D06D6, E06F066B4BFE5344BBF5749B9B8B8CFBA0C02920FD2B9C73BDDA7E34F1785DA7 ] AVP17.0.0       C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe
13:03:06.0877 0x2284  AVP17.0.0 - ok
13:03:06.0881 0x2284  [ 6D90FDA2DC364B8EA1420F2F81585CC3, 10E6F23A213CFE49BE04BB7D366ADD4028D61D7114FEC67C30B5467DF6B36D4F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
13:03:06.0893 0x2284  AxInstSV - ok
13:03:06.0904 0x2284  [ 61BAC67048CA5C1D08C48FCC8012B613, 71B2A466FC38DA1029B471FBD2541D8FE359751A7B212AE0F420DB3645916450 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
13:03:06.0919 0x2284  b06bdrv - ok
13:03:06.0923 0x2284  [ 68F72B05EBC6D1779C0D60A147C7CA0B, AA1C857BEE34865C6B901157FC22570D4CF45D950708BAD7AA333F120F2B474C ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
13:03:06.0934 0x2284  BasicDisplay - ok
13:03:06.0937 0x2284  [ 23156E7EDAF613D839E2839746B168D3, CAEF8F9C7D3A338BD747AC9D5BFBE730D77B911E87BCF532EBB75E1F80916AFA ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
13:03:06.0946 0x2284  BasicRender - ok
13:03:06.0951 0x2284  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\Windows\System32\drivers\bcmfn.sys
13:03:06.0959 0x2284  bcmfn - ok
13:03:06.0961 0x2284  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
13:03:06.0970 0x2284  bcmfn2 - ok
13:03:06.0979 0x2284  [ 2B4D3AEAAD02954F8C191BC2D67949AD, 8237C9AD556CFAF7442FF60F78608104BC17CE3134C89D986D49C38CC60B1518 ] BDESVC          C:\Windows\System32\bdesvc.dll
13:03:06.0995 0x2284  BDESVC - ok
13:03:06.0998 0x2284  [ 0A508274355745EEF01C6BE3198D02C4, E2DB08AEE2368FA95FDB357BB31EA4EBF31679C3E72E109DB3D7CD1B5F7B828E ] Beep            C:\Windows\system32\drivers\Beep.sys
13:03:07.0007 0x2284  Beep - ok
13:03:07.0020 0x2284  [ 5125CBB61AC81168366BEB290399CB8E, B2A3095D45E2114DE2BD0E5A3AE20B3CE95EE517A35B9E1EAD05E231F38DBDCF ] BFE             C:\Windows\System32\bfe.dll
13:03:07.0046 0x2284  BFE - ok
13:03:07.0063 0x2284  [ BFDCC935236AAEBA39CD3DE9BC2F73DA, C7511FAB014F20FBECA56A9BA5880DFD8F020B8A33A7A30B12DBE961640F3FC9 ] BITS            C:\Windows\System32\qmgr.dll
13:03:07.0097 0x2284  BITS - ok
13:03:07.0102 0x2284  [ EEBFAEB4702E1049ECD44B10485E6C0C, 8F4D31E36717101B6172D7346E86EBC77B9CDAA5CC14AA1379661C16A7FF05E2 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
13:03:07.0112 0x2284  bowser - ok
13:03:07.0124 0x2284  [ BD33624B1F5C35F519E87B53DBC30B34, 3EFE680D7E9FCD89492DCF4E53980D01FC92DC1F63935DF16429B66DCA2AA865 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
13:03:07.0149 0x2284  BrokerInfrastructure - ok
13:03:07.0154 0x2284  [ B3F32C630DD3F2F6A6091B89CFF13641, 7A9C53EF9AB9FF1DC392FD711B194A101DB36CA5BC799E817BEB446741089B76 ] Browser         C:\Windows\System32\browser.dll
13:03:07.0165 0x2284  Browser - ok
13:03:07.0169 0x2284  [ 722036C26D2C4E50EC2A2EC5FD678846, 999468038AE01F0FF6881F4B2A2CB67BC636641188E95F10729E08ADBC3CB3DE ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
13:03:07.0179 0x2284  BthAvrcpTg - ok
13:03:07.0182 0x2284  [ C2E31BE025D46D189E38DD1EDF07837A, 656528DCAAAF485EC57EE5C3021E96736634DE3B9C39CBCD2728E055ABD4C0A5 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
13:03:07.0191 0x2284  BthHFEnum - ok
13:03:07.0194 0x2284  [ F7CD605FC0B0B22F3F6F247595E3A655, 1CD9140DE5415DDBEACD8667E63E5C95FD64D693B56302A0474E693E578BEAB0 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
13:03:07.0204 0x2284  bthhfhid - ok
13:03:07.0211 0x2284  [ B157D72BDA6A6DD6E9DC6BF338CD0CF8, B2AC26AE214151E5AD93DED78256BC0295DBF0133C854E7DEE4CD776D9C9A349 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
13:03:07.0226 0x2284  BthHFSrv - ok
13:03:07.0230 0x2284  [ 535DC41A33630AE4C262406F9E981C03, 599332589AA28D04189E19B87A4AE6FEEB60B40A7BC6E3B11240DA363A981C29 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
13:03:07.0239 0x2284  BTHMODEM - ok
13:03:07.0245 0x2284  [ 96932F631F5CB9F5D1C8F99A71568EF3, 5E4C8955A2EE9DC76B4EBC383653EB753D76D6B017E1A5DD553AC16094D7F12A ] bthserv         C:\Windows\system32\bthserv.dll
13:03:07.0257 0x2284  bthserv - ok
13:03:07.0261 0x2284  [ 23F9EF739F685E07482116425E7879AA, 0EBDF96A49A319C0BCF6F51FB6C8C392C017E1738B950C19C91FF43E14D73143 ] buttonconverter C:\Windows\System32\drivers\buttonconverter.sys
13:03:07.0269 0x2284  buttonconverter - ok
13:03:07.0273 0x2284  [ 4C61113687EB66035A70A55EE9B7DB4A, 3339821A3853B90F3B468470493A813053D82014E2677E726C16E19AABE2A440 ] CapImg          C:\Windows\System32\drivers\capimg.sys
13:03:07.0284 0x2284  CapImg - ok
13:03:07.0287 0x2284  [ F8FB51B9EF6372610E9B31A1D86B62FC, 7461584A8B39AC549AD7BAFFA509D4CD81EEE542808BC8EFC285863A0AE6432D ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
13:03:07.0298 0x2284  cdfs - ok
13:03:07.0307 0x2284  [ 2439A82EC0BB421FA2B21E0A1C6C997F, 1B1DF0B628BE796E046DBC5597DB09681DA1785A148F2FBEC96F3AE45AA0ECB2 ] CDPSvc          C:\Windows\System32\CDPSvc.dll
13:03:07.0324 0x2284  CDPSvc - ok
13:03:07.0333 0x2284  [ 4279D54DD2273B06EEAD7006D6938813, 7DB1BC3424A72978375B9DE26103104213F3645DE0AD748EF431A2C858FAC1E1 ] CDPUserSvc      C:\Windows\System32\CDPUserSvc.dll
13:03:07.0348 0x2284  CDPUserSvc - ok
13:03:07.0356 0x2284  [ 613D0137C269187FA298A157E3D14A18, 84BC268525F14BB27202CE242BF94D9E83BC91B50A0335908574F31B29A2F04D ] cdrom           C:\Windows\System32\drivers\cdrom.sys
13:03:07.0367 0x2284  cdrom - ok
13:03:07.0373 0x2284  [ 9450FA11E9DE6715FCB71A519A8FF90B, B7E341C6E4CE967FCDD0D17A497C07E8A1C6B0AACE8A6E8E5D6C21EF73F13E16 ] CertPropSvc     C:\Windows\System32\certprop.dll
13:03:07.0387 0x2284  CertPropSvc - ok
13:03:07.0395 0x2284  [ 0AED948DA8D5F08B3D6F12E4E2089736, 95E538E81DDBC83492C5F3820C82C78F050B4D74ACF12D7970EC84F93581AE29 ] cht4iscsi       C:\Windows\system32\drivers\cht4sx64.sys
13:03:07.0407 0x2284  cht4iscsi - ok
13:03:07.0438 0x2284  [ 0002A0FDE087C1657AB31CE73077539C, 4DD6210B67E9633AB3240371590869DC833A4C986C74FC12A5D4FFFFD361848A ] cht4vbd         C:\Windows\System32\drivers\cht4vx64.sys
13:03:07.0478 0x2284  cht4vbd - ok
13:03:07.0483 0x2284  [ 6B4F90A287D75CCD78694F6790C911B2, 73D7C31E9F475FA3FD568FCA9A953F968729AA114F63C06F38BF5198DAD67BD8 ] circlass        C:\Windows\System32\drivers\circlass.sys
13:03:07.0492 0x2284  circlass - ok
13:03:07.0500 0x2284  [ 09D0B94D3A06EFD1EB70189EC4B26DF7, 47E73C536C63F4C21E4ADBB122A152D3A291CF4EDD4CB4D07D09D14E1A9961F1 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
13:03:07.0512 0x2284  CLFS - ok
13:03:07.0524 0x2284  [ E133CFCBFABB3CB517BE9F42FEA5887C, DA699CDD5F3CC427354540C907BD24CCA7BAC3112C53918EB611CB4EEC7611DA ] ClipSVC         C:\Windows\System32\ClipSVC.dll
13:03:07.0543 0x2284  ClipSVC - ok
13:03:07.0548 0x2284  [ EEC3A4A98AE1A337E3CD1483AD6F2E15, 764DA329984A95E092F5C15116DA34FA7FC27216C0862365D4BF10ADC97EC5C5 ] clreg           C:\Windows\System32\drivers\registry.sys
13:03:07.0559 0x2284  clreg - ok
13:03:07.0563 0x2284  [ 429623E266EF067A44E8CF148E9DFB9B, A48AA85ACC52C7AD73DB2D6148B3F9FB5EAC33C8F8C5BB6D7D0A9D84B7C08E11 ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
13:03:07.0572 0x2284  CmBatt - ok
13:03:07.0579 0x2284  [ B29A764A1E76473CD9D64C9438705C19, CD0497EB84DE60E1E491CA495AF981A8DFC4949BB373C1978CAF1BCF4321D30E ] cm_km           C:\Windows\system32\DRIVERS\cm_km.sys
13:03:07.0587 0x2284  cm_km - ok
13:03:07.0598 0x2284  [ 8F5C24F4F47120157AB6D889B96A2AC2, 0C5EA247C2CE16980945CD4768B74E9129CCEA58C6D31FDB1715D12196B0740D ] CNG             C:\Windows\system32\Drivers\cng.sys
13:03:07.0615 0x2284  CNG - ok
13:03:07.0619 0x2284  [ 3DB10C59405931E2C72EFB82C1AF97D1, 100B5450A70988DB1C1F8A5FDBB3553AF1A0D47B42A5AC71460DB92E26010CE6 ] cnghwassist     C:\Windows\system32\DRIVERS\cnghwassist.sys
13:03:07.0625 0x2284  cnghwassist - ok
13:03:07.0633 0x2284  [ 34C935AF2A414572B412B3556586D783, 912981B88B0796576ECCD5EBE0C4728EC02D5D6A96B039447DCBA59B2583F25E ] CompositeBus    C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_a140581a8f8b58b7\CompositeBus.sys
13:03:07.0642 0x2284  CompositeBus - ok
13:03:07.0644 0x2284  COMSysApp - ok
13:03:07.0648 0x2284  [ 44EEEB2382F566999287E13F2067693C, 53A4A0C85EAD38030FF2078C67465E3710ECD03A08FF34E1E67B2E3E1CC70043 ] condrv          C:\Windows\system32\drivers\condrv.sys
13:03:07.0655 0x2284  condrv - ok
13:03:07.0667 0x2284  [ 03DCC01047713690E312B013C60881AE, B98174222DDFDA2A31BAC4795D99FA07D1D03107ABDB27BF5069FAFBBF00D278 ] CoreMessagingRegistrar C:\Windows\system32\coremessaging.dll
13:03:07.0687 0x2284  CoreMessagingRegistrar - ok
13:03:07.0710 0x2284  [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
13:03:07.0720 0x2284  cphs - ok
13:03:07.0725 0x2284  [ 5F06CAC4B09250CDDDD0180A08162924, A2EB0A57225E65FC264CFC9FAD858D8B54A015CDAE3DC904B1C4E9AAB40B1F06 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
13:03:07.0738 0x2284  CryptSvc - ok
13:03:07.0748 0x2284  [ 03214883D52FAD46573233852344C72C, 63DCCDD895EB804D205ABB8EA381B34FB0879D09E4D0EB0B28F9B2BB1024BAB7 ] CSC             C:\Windows\system32\drivers\csc.sys
13:03:07.0769 0x2284  CSC - ok
13:03:07.0783 0x2284  [ BE35D1BAC3F18C9EB1C1CFBA31ED95E3, 4255475D173868A0E5583E844A1884E819E229838C4DEACAC47F1A4DEF388C9D ] CscService      C:\Windows\System32\cscsvc.dll
13:03:07.0807 0x2284  CscService - ok
13:03:07.0811 0x2284  [ 68B1E0DA1BB1680494227E88CE821E2F, DE9AFCE4CC28F3484180D6A63FBBDA5B89F208E056BD17870C074094159ED6AF ] dam             C:\Windows\system32\drivers\dam.sys
13:03:07.0819 0x2284  dam - ok
13:03:07.0834 0x2284  [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C946708E955A2909 ] DcomLaunch      C:\Windows\system32\rpcss.dll
13:03:07.0863 0x2284  DcomLaunch - ok
13:03:07.0869 0x2284  [ AE9F09F87755C18904656CB4F59F351D, B352A43B3B68B497D87B49C302AF3F37F36D56D49878AE3785C3D43597E5DC57 ] DcpSvc          C:\Windows\system32\dcpsvc.dll
13:03:07.0884 0x2284  DcpSvc - ok
13:03:07.0893 0x2284  [ ABBD3EE724117242E28D31F19FBCFF03, 68EA91A969DD80A5DE28B0A8EAEB308837183713559C2C2FAEF991858C971393 ] defragsvc       C:\Windows\System32\defragsvc.dll
13:03:07.0915 0x2284  defragsvc - ok
13:03:07.0924 0x2284  [ DD74F18227ACC837D9856E24282D446D, 6A760E44CD897952538CDFA8895FE11263D51AAA79CFF24C01F3862E919DA478 ] DeviceAssociationService C:\Windows\system32\das.dll
13:03:07.0943 0x2284  DeviceAssociationService - ok
13:03:07.0947 0x2284  [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3FBB74A27266C9C ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
13:03:07.0962 0x2284  DeviceInstall - ok
13:03:07.0965 0x2284  [ CDF1B1B5C5951111791C236B2696C7F8, BF6C4BA545C8827B40DB69890DB4D2B2F9C583C5E3CFBDFD370B05891141458D ] DevQueryBroker  C:\Windows\system32\DevQueryBroker.dll
13:03:07.0975 0x2284  DevQueryBroker - ok
13:03:07.0980 0x2284  [ 0D1D392ED2597F295956D058D33BD7C3, 2F7FE5A06D880F9E2A46C9803DD249DC40C2898C04E946D14E7EECCCC9F2B24F ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
13:03:07.0992 0x2284  Dfsc - ok
13:03:08.0000 0x2284  [ F0D4400BA0F08610D9A551B15BF10B76, 83EB8FB272FC2DD2CC0659C2FB90AD0DAE88A88AB3951E03BCD933A25B601E10 ] Dhcp            C:\Windows\system32\dhcpcore.dll
13:03:08.0017 0x2284  Dhcp - ok
13:03:08.0022 0x2284  [ CA7FEDDFCF61EF15A09C54DA2C07C49F, 346EF7709BA9E6BD48592B86FA46F9D956C847EF91F4980EEAD98269D0F0EF67 ] diagnosticshub.standardcollector.service C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
13:03:08.0033 0x2284  diagnosticshub.standardcollector.service - ok
13:03:08.0062 0x2284  [ AE204AEE1408DA5F82B0BC26CBB43C5C, 8194F6F9BDC5904E3D1D3CDCE209375D231161D4F0508F56FF1934DD01BFE024 ] DiagTrack       C:\Windows\system32\diagtrack.dll
13:03:08.0113 0x2284  DiagTrack - ok
13:03:08.0118 0x2284  [ 35B9D46560339A5A7F0CAC6ED702C817, F70480B01533B7029F90E2DE297E9E829660300DDE7A7D009B0AC2684E7691A7 ] disk            C:\Windows\system32\drivers\disk.sys
13:03:08.0126 0x2284  disk - ok
13:03:08.0135 0x2284  [ 44A5CAF4E736BCD4360015BB3B841179, 8CD74620C3E163FF998CA8C09A999FED5C9EFDC88D07493192A57032D18CA973 ] DmEnrollmentSvc C:\Windows\system32\Windows.Internal.Management.dll
13:03:08.0152 0x2284  DmEnrollmentSvc - ok
13:03:08.0156 0x2284  [ 815F45161A4571C2C44491564F3D5968, 32E7AE8414A178CE429C0CDFCF718E3C11C705FB3155EA5CA0EAD48AAE507B01 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
13:03:08.0165 0x2284  dmvsc - ok
13:03:08.0169 0x2284  [ 6E5EE6E420FECD64DE463C5F01CBFE71, F173C56895E80AA03D70CD78B3AB659C2EEAACFF43BE3B6EF3939D6F4AD4F62D ] dmwappushservice C:\Windows\system32\dmwappushsvc.dll
13:03:08.0182 0x2284  dmwappushservice - ok
13:03:08.0188 0x2284  [ 7F8A3ABF7750326E18CE953CCE262670, 5DBD159E8A455A42764FC73CF7DCAC849B5896848C5589B00BD36697804C0A3B ] Dnscache        C:\Windows\System32\dnsrslvr.dll
13:03:08.0202 0x2284  Dnscache - ok
13:03:08.0209 0x2284  [ 8F46B4C3F9BA19C26A26D0A11137B20B, BA0A66DBA98D77FD85A7CD2D4593F2B2A1A3B4D32BBECBCFFBEB5A54DCB0D8ED ] dot3svc         C:\Windows\System32\dot3svc.dll
13:03:08.0224 0x2284  dot3svc - ok
13:03:08.0229 0x2284  [ CA09EAEE92C6FDDC6B05057F11A0372D, 14DB5C186B69644AA93C445BF31CC9670204F95A47B77B6EACB19B4A316378AD ] DPS             C:\Windows\system32\dps.dll
13:03:08.0242 0x2284  DPS - ok
13:03:08.0245 0x2284  [ AE6BD4C879A8C849E53947C92DF3B3A0, 8C29774CB2D30D901C54AAC0C8ACE709351EE40E5C8FB9951B2A18B4A03F28B7 ] drmkaud         C:\Windows\system32\DRIVERS\drmkaud.sys
13:03:08.0252 0x2284  drmkaud - ok
13:03:08.0257 0x2284  [ 7433474BE77F065D2FA628671FE31A3E, 063ADDC68F48036749E6EC7B2F66284DB29F90F62E9468D16B4EF5A0FDC45E35 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
13:03:08.0273 0x2284  DsmSvc - ok
13:03:08.0278 0x2284  [ 5FCA45C24501DA7390065D3706A9FC3F, 093FD840F1502ECC6F05B9723CA523B3F15CF39A5D2B9106E1267739B3F2C52C ] DsSvc           C:\Windows\System32\DsSvc.dll
13:03:08.0292 0x2284  DsSvc - ok
13:03:08.0322 0x2284  [ D2EC2AD9C2F514AEECD5EC2B46107228, 478B9119285730D41929E4C3773A67C4DC3C5FE598728509ADFB933C1E259C7A ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
13:03:08.0364 0x2284  DXGKrnl - ok
13:03:08.0370 0x2284  [ 9FCE4EF7D5E274F862D9A2526B5F4779, 81D42D5475C2801C8E0C233A0BA827569D8A70590017C91C665C8B232D9BFAA9 ] EapHost         C:\Windows\System32\eapsvc.dll
13:03:08.0385 0x2284  EapHost - ok
13:03:08.0432 0x2284  [ 7EC6FC0266D74BD47ABB130A328B70EC, 3856790AF967AB03B1A89F97328DC4D5A6854ACDA6169681A9AFB03D7CF791F9 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
13:03:08.0492 0x2284  ebdrv - ok
13:03:08.0499 0x2284  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] EFS             C:\Windows\System32\lsass.exe
13:03:08.0507 0x2284  EFS - ok
13:03:08.0511 0x2284  [ 8D74B8B5D6F7C5BC4C525BAF2B083FF1, DA5656F745B3911F96871887FDFDC40F4D9C820622A0AA27EFE4BA93662833CA ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
13:03:08.0518 0x2284  EhStorClass - ok
13:03:08.0522 0x2284  [ 2A9817B5A9260D8F60D52E36BEF10443, AC1A0203221AFAF584C71317FA07AA1B6E61BE619E918B3B1E4AD57CCED1CF03 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
13:03:08.0530 0x2284  EhStorTcgDrv - ok
13:03:08.0534 0x2284  [ BDD265EEB37DF5953A547FE412E2472F, 17EB4FD54D62207937F8CA7454837DBF1EEC867AEDAF201FC2E839A3ED357F4F ] ElbyCDIO        C:\Windows\system32\Drivers\ElbyCDIO.sys
13:03:08.0538 0x2284  ElbyCDIO - ok
13:03:08.0543 0x2284  [ 80A7999DE02CE678B865832E1CE78CD6, 2576EBB6E4D630A906DE724F125099E52A962B5B68B9F9BCA849A7B29D8C8689 ] embeddedmode    C:\Windows\System32\embeddedmodesvc.dll
13:03:08.0556 0x2284  embeddedmode - ok
13:03:08.0563 0x2284  [ B4264DEF962801CDB83C008DE30758D1, 57886688102BE727450BA45932044A5A389B5822A0C1C08C2AFFBA380F70C3F3 ] EntAppSvc       C:\Windows\system32\EnterpriseAppMgmtSvc.dll
13:03:08.0581 0x2284  EntAppSvc - ok
13:03:08.0585 0x2284  [ 77B60DEC7DCB4233E4A69D3F52E5DB24, 3A5C905E37A93899051497C90E5BA8E1D003B56C6906CADFD2F1CDF52052D248 ] ErrDev          C:\Windows\System32\drivers\errdev.sys
13:03:08.0595 0x2284  ErrDev - ok
13:03:08.0607 0x2284  [ F89083AB8B9F51C0031C1CBD0A9A7E35, 9EE973A25134960E62D1A6A1E34AD9B3F7690E71C1AD31A23FA2081A73438754 ] EventSystem     C:\Windows\system32\es.dll
13:03:08.0627 0x2284  EventSystem - ok
13:03:08.0634 0x2284  [ FCD2C63754C2E739A8EEAD9BC63F9DDC, C57A72ABA4C0BD71F914B9C8FF965DCFF585A205498F19A4584A4BAF7674839D ] exfat           C:\Windows\system32\drivers\exfat.sys
13:03:08.0650 0x2284  exfat - ok
13:03:08.0657 0x2284  [ C077AA74EDDAF69985EB27597BCB342A, 8CE48D37E39A6DFA3C8E959CA92A49029100446DC40044EE009D55FB9CDE378A ] fastfat         C:\Windows\system32\drivers\fastfat.sys
13:03:08.0669 0x2284  fastfat - ok
13:03:08.0680 0x2284  [ 77CE56471AF984800F318F3734D768C7, 72D540072374A56C2C497F0532A50705D3F0637F2C0C96B1D715F2EDFCA3AA2D ] Fax             C:\Windows\system32\fxssvc.exe
13:03:08.0703 0x2284  Fax - ok
13:03:08.0707 0x2284  [ 99598ECA5E41996E005D5B9D9FF1EFA2, 91345CD50EF02431B69093505C1C5F5DC6A1AA6BF192EE9392ED4D5626B60462 ] fdc             C:\Windows\System32\drivers\fdc.sys
13:03:08.0715 0x2284  fdc - ok
13:03:08.0718 0x2284  [ EF0DD43A4CBAB367BCA1AFBDC9971E4F, 73E161C45D63FDDE71EE2438137913724DC513860539D1E7F6BD861F5D1B33F3 ] fdPHost         C:\Windows\system32\fdPHost.dll
13:03:08.0728 0x2284  fdPHost - ok
13:03:08.0731 0x2284  [ 34DAC585994CD3B4E910DE11C584EF3D, A6C6A4CB5413EA61F1A54E2D3AD71A311CEA2C26218544D2D2D4A5CFEC52DE8C ] FDResPub        C:\Windows\system32\fdrespub.dll
13:03:08.0742 0x2284  FDResPub - ok
13:03:08.0746 0x2284  [ B68DA1FE3CA2311AFD38DD6905CA7F71, 4B395DFB1B47D2507CA4D9DC996A70D0A3BDB1A245CD6DA6C42B2A299AFCCF37 ] fhsvc           C:\Windows\system32\fhsvc.dll
13:03:08.0758 0x2284  fhsvc - ok
13:03:08.0762 0x2284  [ F44F666B0EACC3181544FFCF8CA0FFC7, 83F771CF9DAE1C504B30731EEC55355EA1253174252DA2192ADF1D228B3735C3 ] FileCrypt       C:\Windows\system32\drivers\filecrypt.sys
13:03:08.0772 0x2284  FileCrypt - ok
13:03:08.0775 0x2284  [ 78A210DDFDF2C9EC884631D2DAA573F0, 5D39C6EF4AC690A9749EEDBE2478FFF15A22877A2861EDA103C7BF1607B0C1BD ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
13:03:08.0783 0x2284  FileInfo - ok
13:03:08.0786 0x2284  [ 1A97DB5E701A186989F3795223C3BE39, F7982220D4DF7E104955E63CACE352394E2577DEF49506EA126127F820EB62DF ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
13:03:08.0797 0x2284  Filetrace - ok
13:03:08.0799 0x2284  [ 46626665F0E5906E45619B4EFD6186B8, 37FDD3B8AD49FD29E54DA5567EA77F28A53498AE56348F7A2628E5E5549D638B ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
13:03:08.0808 0x2284  flpydisk - ok
13:03:08.0816 0x2284  [ FDA72ACA14D516D18C33AFCD0FD9260F, 6509612DEC82EA74614B5C9A7B432305A1A468C97B88BED9E141DF2929B621B1 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
13:03:08.0828 0x2284  FltMgr - ok
13:03:08.0855 0x2284  [ 9ACA7C29C3D81A2D0810517F070B447F, 4FF50CFCC0392C9FCF8C0D750EB5AC6906DC79D8267790B891266C36279ECD81 ] FontCache       C:\Windows\system32\FntCache.dll
13:03:08.0902 0x2284  FontCache - ok
13:03:08.0917 0x2284  [ 2D6CC779108F3D10EFEB68694F56AA94, 5C0097245526D6834E16E22D5DD64FE8AC7F7FB3EA4C184C465536F891AA6BF5 ] FrameServer     C:\Windows\system32\FrameServer.dll
13:03:08.0943 0x2284  FrameServer - ok
13:03:08.0947 0x2284  [ D152CCBFC8251670BF0AAFE00D6BC782, 9DE82D8FC4E1DAF8FF23EE08C0B7CB5051A9224E64544D262CFA4996A41B04E1 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
13:03:08.0955 0x2284  FsDepends - ok
13:03:08.0957 0x2284  [ 6D6BB5C7363CD35FA715E826F3D029EE, C214F791EB39E8B25CE57ED9D6C1D56EE1AF6021BCB380980BD42A6338A6C9F7 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
13:03:08.0964 0x2284  Fs_Rec - ok
13:03:08.0976 0x2284  [ 8EEC4925C03E375C4EC496E45C44139A, 06C5C7BCC28D3E435675F0759A09CAB726E971DF4BFC1DC3DCF503EABCDCCCC6 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
13:03:08.0992 0x2284  fvevol - ok
13:03:08.0996 0x2284  [ EF78034773CE506323655A868C949144, DF195BEEE6704FBCC6D2D9E1BF6723E52ED502A1459F495B7D18481E6A79B5BC ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
13:03:09.0005 0x2284  gencounter - ok
13:03:09.0007 0x2284  [ B55FEBC6A00DAA1FE074F020B6907516, 67071FBAC2ABA47AB71358A5F08E92E034A55343878F00137E90B3B1F7362976 ] genericusbfn    C:\Windows\System32\drivers\genericusbfn.sys
13:03:09.0016 0x2284  genericusbfn - ok
13:03:09.0022 0x2284  [ DDD8A8CDDC7F13EF57D1DAAE71865936, 9D472A8689F72F24D40D5B94849690F53C67849FDF6162A94EF4FB330A3DA566 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
13:03:09.0031 0x2284  GPIOClx0101 - ok
13:03:09.0051 0x2284  [ 713A176494CEC107E663CAD6C2B27F77, 76871D8CFBA8FCD8CFF96208AE84C658EBEC60270D978898B90EE9451AA1BCE1 ] gpsvc           C:\Windows\System32\gpsvc.dll
13:03:09.0086 0x2284  gpsvc - ok
13:03:09.0090 0x2284  [ 7ACD8F69B5D6EC97E6D2C006E19BED88, FC69214C9308EA64B88EF4C3C95800586DDBB44C8540846B79A161BAD8203B6E ] GpuEnergyDrv    C:\Windows\system32\drivers\gpuenergydrv.sys
13:03:09.0098 0x2284  GpuEnergyDrv - ok
13:03:09.0107 0x2284  [ 217230B984AB2954E2FA5E36578D7B08, BB7B79EA7501A28EB2A0303FDF66FB9D59D567994C25A1523CD6D2081C403AF6 ] HdAudAddService C:\Windows\system32\DRIVERS\HdAudio.sys
13:03:09.0123 0x2284  HdAudAddService - ok
13:03:09.0127 0x2284  [ 10E3515FE5DBA6656FA62C29342EC4A1, 2051F10F74ED712B1766EB61E87FADE25AB3D0970BABFD320600D1B0D6377F26 ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
13:03:09.0137 0x2284  HDAudBus - ok
13:03:09.0140 0x2284  [ B90D284B97CD4CA9DE7430AAAD887A56, 2F14F985C39B7801ED64590979CF2114924E9547F5B11D2B37A74DBFFDD9E7C5 ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
13:03:09.0148 0x2284  HidBatt - ok
13:03:09.0152 0x2284  [ B2FE11643CC6ACDEE6C247DD36018FDB, 5796613C7DBF8B2A9E860E006FF1A245B6BE7D10E3F6685AD142B48E5C237B8C ] HidBth          C:\Windows\System32\drivers\hidbth.sys
13:03:09.0162 0x2284  HidBth - ok
13:03:09.0165 0x2284  [ D24355488A2D4D2323518EC1AC7A6D9E, ED2176A2093726087EDDA25B86E9CDD4BA35F4E748E3A6DE0B15C4C97646B5C7 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
13:03:09.0174 0x2284  hidi2c - ok
13:03:09.0177 0x2284  [ 0AF9ABBA4F3F55C6C803890D64BC3C29, D3DE6FA308F8E7CD4F16387F46AE4B2F7EC9BBA07BF87652B660A0D645710571 ] hidinterrupt    C:\Windows\System32\drivers\hidinterrupt.sys
13:03:09.0185 0x2284  hidinterrupt - ok
13:03:09.0188 0x2284  [ CDBCF8E9AB06D88A1E1191D32F320C5D, F76963AB7CF2BAB3A220013879AECD3976BFD851CFB66B5A69A9EA2541048861 ] HidIr           C:\Windows\System32\drivers\hidir.sys
13:03:09.0197 0x2284  HidIr - ok
13:03:09.0200 0x2284  [ C900FE0DD6A1E2220084B8F1C427790C, 802194EBEDA1A50EDA300078B0888AAC1F17A42E67147B7B3B9C50AD8D4E5C89 ] hidserv         C:\Windows\system32\hidserv.dll
13:03:09.0211 0x2284  hidserv - ok
13:03:09.0214 0x2284  [ D8536CB438CC4CCDAE047B768EED22B2, 4F666BFA3554F9ACA6B9D436BFA64474D5F30FB3E78F4E66068CCDF283D9867F ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
13:03:09.0223 0x2284  HidUsb - ok
13:03:09.0230 0x2284  [ 44D54C8356588525D7AD0FDCFDDA0811, 46963ADBF14FA8A9B0E6564106ADEA49BBD4EBD9E43DF389CCD31F9B9BD080D9 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:03:09.0245 0x2284  HomeGroupListener - ok
13:03:09.0254 0x2284  [ 86161A89F16851728802590EC7C92608, 3A3B05BB4E115410D27063B30C0EF3F18295F542050F329F1E466C81A9E23A46 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:03:09.0272 0x2284  HomeGroupProvider - ok
13:03:09.0276 0x2284  [ F5CA18197B4646E04DB9EB2D6642CC4D, 5BA3342DDF1BCB67E4156169FE9A33E7BC2641C729E9F1A80C0E80953C6AB114 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
13:03:09.0284 0x2284  HpSAMD - ok
13:03:09.0300 0x2284  [ BAFD8946905DF03E6ECDDB154A4BAA9C, FAD178FAFA5760132F3A9FC862C2726B337CA0CE1D66EA819CB5AFEB2D664618 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
13:03:09.0323 0x2284  HTTP - ok
13:03:09.0328 0x2284  [ 0C84C250F80EAEC2C9768464CC1A9626, 212E1003B78F9B98FEB084FD1FDB59B26A9DE4C9120F24D4361FBBF0F3C035E7 ] HvHost          C:\Windows\System32\hvhostsvc.dll
13:03:09.0338 0x2284  HvHost - ok
13:03:09.0342 0x2284  [ 74FC79C52395B10FFD0B55CF22CF88FC, 94D977DA2092EE8C2A598AC48758A84BB22CB6378BD114C2D3B4172A07A9CACC ] hvservice       C:\Windows\system32\drivers\hvservice.sys
13:03:09.0349 0x2284  hvservice - ok
13:03:09.0353 0x2284  [ 771EDDA9830A3079F996F34D681FB6E5, F452AD656872A1C8B2D6DCE232CE01EBD456C46F4934A7601E78470F2A2CBF38 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
13:03:09.0360 0x2284  hwpolicy - ok
13:03:09.0363 0x2284  [ 3B9F315E7FA72CC25228EB097DD9C694, B26F1E494428EF197A0C97645C05BB3CA093827A005D35C987F1D6778BC4E52C ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
13:03:09.0372 0x2284  hyperkbd - ok
13:03:09.0376 0x2284  [ B54B30992620C97230013A74461C8517, CAF09BDCDD6DE2A39CB8AE2C65E6F8FE12D8E93D84BBEF6C6A98F872BF54A4E3 ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
13:03:09.0387 0x2284  i8042prt - ok
13:03:09.0390 0x2284  [ C6B8743B213F06AA60943D8366FE968F, 758954F70B810063914B243115B2C753B2BCE40190F95C30ACBA0BF04EBD5B33 ] iagpio          C:\Windows\System32\drivers\iagpio.sys
13:03:09.0399 0x2284  iagpio - ok
13:03:09.0402 0x2284  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\Windows\System32\drivers\iai2c.sys
13:03:09.0413 0x2284  iai2c - ok
13:03:09.0417 0x2284  [ 5A0E850F8CD17791A3E6A3CF81D0CA28, 10A965A49D53360DD250E0758B6BB142872298A21C732EB026ACB93492C5C6CF ] iaLPSS2i_GPIO2  C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys
13:03:09.0426 0x2284  iaLPSS2i_GPIO2 - ok
13:03:09.0432 0x2284  [ 7508F1096803385D6376BFD0BD473AC4, 1F32EC23CDC94DCB9710E6663B5C3BD83568545DDC2C741CFC13550A4E4DD2BE ] iaLPSS2i_I2C    C:\Windows\System32\drivers\iaLPSS2i_I2C.sys
13:03:09.0439 0x2284  iaLPSS2i_I2C - ok
13:03:09.0442 0x2284  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
13:03:09.0447 0x2284  iaLPSSi_GPIO - ok
13:03:09.0451 0x2284  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
13:03:09.0461 0x2284  iaLPSSi_I2C - ok
13:03:09.0472 0x2284  [ 97E553D03219D3D51705C7235D9EAEBD, 5D4578C8804AF32D1DC0868E34D6538138DC15F9568CA7E21051B1C82C0D8D55 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
13:03:09.0490 0x2284  iaStorAV - ok
13:03:09.0498 0x2284  [ 8350FE3BCDE3428BC040877BB7E9EAEB, 77F9456351CA640C6B7862907C0580627E761EC807B551976A95657EB4D6CC20 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
13:03:09.0511 0x2284  iaStorV - ok
13:03:09.0521 0x2284  [ 3BA03F7C7700DDF4C383DDE9252F5817, 3E90F69D0010E7764349D9AE865D577E431FEBC67DA554B400BC808DD286E203 ] ibbus           C:\Windows\System32\drivers\ibbus.sys
13:03:09.0536 0x2284  ibbus - ok
13:03:09.0542 0x2284  [ 937AC47F7356554DA05D9722C356EB55, 9EABC9F19B4E1193B669D2674967F5C6F03FAD348EDF0615E3F78554FF9A83CC ] icssvc          C:\Windows\System32\tetheringservice.dll
13:03:09.0556 0x2284  icssvc - ok
13:03:09.0659 0x2284  [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
13:03:09.0771 0x2284  igfx - ok
13:03:09.0784 0x2284  [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\Windows\system32\igfxCUIService.exe
13:03:09.0795 0x2284  igfxCUIService2.0.0.0 - ok
13:03:09.0810 0x2284  [ F2934208C0E50C0B971A7981AB90BED2, B936BFBBD71E731CC2CDB8B47D262F2EF09726FF921C2DA0841910CA2401423D ] IKEEXT          C:\Windows\System32\ikeext.dll
13:03:09.0838 0x2284  IKEEXT - ok
13:03:09.0843 0x2284  [ 2A01C96DF5802D3434634E55C91232D8, A3ABEF36E2FD2CF5C371ADBF92566A09669A1D990ABE4677370F57F2EEAF8121 ] IndirectKmd     C:\Windows\System32\drivers\IndirectKmd.sys
13:03:09.0852 0x2284  IndirectKmd - ok
13:03:09.0863 0x2284  [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
13:03:09.0874 0x2284  IntcDAud - ok
13:03:09.0877 0x2284  [ 9F7E87F6595D065A8A200A291043045E, 6944F72F73EADC6C9B7691F2C1C6DF1898F22C88EFA78EC0BA8CB5FFD9CE057B ] intelide        C:\Windows\system32\drivers\intelide.sys
13:03:09.0884 0x2284  intelide - ok
13:03:09.0887 0x2284  [ A6BD2E20AE1BC5CB2776C87C28E4F4CA, BD8BE67CED9A4982D785CE9ECBEFE868C3A2E37DF7F9592B9F9049B807A1554B ] intelpep        C:\Windows\system32\drivers\intelpep.sys
13:03:09.0895 0x2284  intelpep - ok
13:03:09.0899 0x2284  [ 2A48DA39542636DB0FA3BA915385D1B3, 6CA0916F5F4B1E81AE6A6233276320599BFA7C129267177703E3BB6468FB4683 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
13:03:09.0910 0x2284  intelppm - ok
13:03:09.0913 0x2284  [ 4A922CAB4AB5F29F1BECC9D95B4B7F05, 7C1006799E26A0B4DF49373A4D0509748C602588CFB3C1CBB409E335F5DF9593 ] iorate          C:\Windows\system32\drivers\iorate.sys
13:03:09.0920 0x2284  iorate - ok
13:03:09.0923 0x2284  [ FE85D0A86CA7A5A99CF8CD04DE7F80AE, 544C01FC01EE728EB5667158207E5F4418FE77A88BA318192A834722DB766F4E ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:03:09.0934 0x2284  IpFilterDriver - ok
13:03:09.0949 0x2284  [ 89548E57FD0A7BC703541C69C0286B13, 261698B302DF5B80C57FC4257E0A0AABC8DEFFED16D8CD142AD8E7CB51AF2007 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
13:03:09.0978 0x2284  iphlpsvc - ok
13:03:09.0982 0x2284  [ 450DBDD716C7911F83E05F78EE18BFA2, 43C0DA172F632131898F315A53DEDD1AE99FB0620AB32B3A5B99FEC498C9AAE5 ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
13:03:09.0990 0x2284  IPMIDRV - ok
13:03:09.0996 0x2284  [ F1DAECC3B3D6399875D4F10529D6A77C, 6533D2F858816BE6570C998510919FCA2904EC6EF806F61C1FD325E88133111B ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
13:03:10.0008 0x2284  IPNAT - ok
13:03:10.0012 0x2284  [ 7475A2903BB704B446AA6309E34D3362, C94643A1626A9716015EBA7041A1224098501EB7DAA704CBFCAD3DC6F3CFC6AF ] irda            C:\Windows\system32\drivers\irda.sys
13:03:10.0024 0x2284  irda - ok
13:03:10.0026 0x2284  [ 9725E7F0C64CE9916A5CDABE8D6E13C3, 04AF9E48FEF208A2850DF28352E8FDCBF4018982C72C0F67EE12C048C4070116 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
13:03:10.0034 0x2284  IRENUM - ok
13:03:10.0037 0x2284  [ 8C604213A2E73088BFFE6CD2E6F1AE53, B4C4FEE4D398A29F72EC27D5668071D7E68CD943FFFC38624DD5DF5BEBDF46D3 ] irmon           C:\Windows\System32\irmon.dll
13:03:10.0046 0x2284  irmon - ok
13:03:10.0049 0x2284  [ 58040898883A96160D41739C80328BBF, 7F85C91C905811416E266A263DDEFCDCB0B45376AAE51B551AB636C16577DB9F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
13:03:10.0056 0x2284  isapnp - ok
13:03:10.0063 0x2284  [ C9FD02D62E09337B67B0C61EC8CA38CC, DC77E935ECC8474BE9018F0937CB11C137073582B20A0EE107CE247FD9E1F9C1 ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
13:03:10.0074 0x2284  iScsiPrt - ok
13:03:10.0077 0x2284  [ 210808437570BDDEE71A43535E3A2D30, EF5DE6EE4FF58F44CDE4D4E7F298ABBC9086EC05CC3AE4903060DA878115AC1E ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
13:03:10.0084 0x2284  kbdclass - ok
13:03:10.0088 0x2284  [ 0B779E9FC426CA2268D28181FA6C222F, 83292023A688C3044D096F22242EB954B7F7511BE8341D45FF0AFBD9CB9BCB4E ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
13:03:10.0097 0x2284  kbdhid - ok
13:03:10.0099 0x2284  [ 813BA3EB2CE038F2A5382DDD75CAD60B, 99FA444027CAC247B54317730D54AB0C4C000AE076B97E47470FDA9834594312 ] kdnic           C:\Windows\System32\drivers\kdnic.sys
13:03:10.0108 0x2284  kdnic - ok
13:03:10.0111 0x2284  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] KeyIso          C:\Windows\system32\lsass.exe
13:03:10.0119 0x2284  KeyIso - ok
13:03:10.0129 0x2284  [ 97E3E8F35632EECD0ABD2DE6519A9666, ABE96FDEB1076E380D7FB4975C020B43ED4E821097EFC6AFE8C75D764167D6E8 ] kl1             C:\Windows\system32\DRIVERS\kl1.sys
13:03:10.0142 0x2284  kl1 - ok
13:03:10.0146 0x2284  [ B01AD8DA034EE42D4C2282F77FDB03AE, 3FF55F3CEE4A0E5D559F04F5A639297EA0F36580720E94CF9DD56DEBF2E98F39 ] klbackupdisk    C:\Windows\system32\DRIVERS\klbackupdisk.sys
13:03:10.0151 0x2284  klbackupdisk - ok
13:03:10.0155 0x2284  [ 10549B5BFD9A3DCF4FFA6287236FA959, 6BDFA335A8E3A69425CB23230660D3168CB82911ACB3AAAF85C19263511EAF51 ] klbackupflt     C:\Windows\system32\DRIVERS\klbackupflt.sys
13:03:10.0161 0x2284  klbackupflt - ok
13:03:10.0165 0x2284  [ 7DAA9047F50BF5A3F8C147719FC520AF, 0740387075AF46DB1E9AEE3B12C65A06EDFE58EADB8B562C36CB1FEFF9905C26 ] kldisk          C:\Windows\system32\DRIVERS\kldisk.sys
13:03:10.0171 0x2284  kldisk - ok
13:03:10.0175 0x2284  [ 5766A27C85EE813029831D125D2EFB45, BB5BAFD5A58E80C7F0B8D24121352E0386B3422FFC16B56F1D1B1C6A482AC9F0 ] klelam          C:\Windows\system32\DRIVERS\klelam.sys
13:03:10.0183 0x2284  klelam - ok
13:03:10.0189 0x2284  [ 63FD545876EF4248BE3C8788D8270758, 5FF6529F8D7F94848E68142D8B2CAA446342AF95644C9223E689E303E8AB7336 ] klflt           C:\Windows\system32\DRIVERS\klflt.sys
13:03:10.0196 0x2284  klflt - ok
13:03:10.0205 0x2284  [ 3524D3B8F5BEF8C01EAF7EEFFA5EAB3F, 0908A6E3E62017F7099900850D58A1B775D808F7DC0951B09781689DF3994DA2 ] klhk            C:\Windows\System32\drivers\klhk.sys
13:03:10.0215 0x2284  klhk - ok
13:03:10.0224 0x2284  [ 7796EAD58D8C1A42AAB6B6CA9A3F106C, 7DA8A05A0210F63C7D120DCF0101AD895D53368C0DED23E275F2BA79239FCE28 ] klids           C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys
13:03:10.0232 0x2284  klids - ok
13:03:10.0247 0x2284  [ BBF9B967A410120E67FB6E7F53E7A7CA, E6C8703A14271C08BDCEDB9F09B5E0392C9D337C9816E12D860A4DF3D5D3F7EE ] KLIF            C:\Windows\system32\DRIVERS\klif.sys
13:03:10.0266 0x2284  KLIF - ok
13:03:10.0270 0x2284  [ DDCD4AF37C41EAAA47E99D9D2605AC8D, FA9A0E068DD45645E62C19995279078726D6DF79AD54EDBD53F7D1E1D059372B ] KLIM6           C:\Windows\system32\DRIVERS\klim6.sys
13:03:10.0275 0x2284  KLIM6 - ok
13:03:10.0280 0x2284  [ 5480CC93737F48282552C84FA7EBA59B, B7D92424399B647132F6B9409FE75EAA310C984F796FC0B65BBE2EA180110968 ] klkbdflt        C:\Windows\system32\DRIVERS\klkbdflt.sys
13:03:10.0285 0x2284  klkbdflt - ok
13:03:10.0289 0x2284  [ FD47C92A63B6EADEA830BFA96C06EAEE, C15C39B6FA53CBD01A2F95243845C4B706B4229F8FFB75C7128819B9CEE5B2CB ] klmouflt        C:\Windows\system32\DRIVERS\klmouflt.sys
13:03:10.0294 0x2284  klmouflt - ok
13:03:10.0297 0x2284  [ 6B0C605591C892CBB683F63EA47822DC, E74C0A0501A1B4B56B417402108521F34DA6A23FCD1C05E4E524E41EBA0906FF ] klpd            C:\Windows\system32\DRIVERS\klpd.sys
13:03:10.0303 0x2284  klpd - ok
13:03:10.0306 0x2284  [ 828B042A95F055648DA190DF6C7AB1B6, 0457B0EF03BCB4CC1297EB25A25C162937F456BF406EC7B1A5E9A0AA13A9BCD7 ] kltap           C:\Windows\System32\drivers\kltap.sys
13:03:10.0312 0x2284  kltap - ok
13:03:10.0318 0x2284  [ A10F8B0584926404E5CCF915704D27AA, 1020162B59EB928E1ADEC174505AA6187B38DA1828DFC8A41D9C8B532EDD58F3 ] klupd_klif_arkmon C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
13:03:10.0326 0x2284  klupd_klif_arkmon - ok
13:03:10.0332 0x2284  [ 3140F62A49A37687EFB50475F960B44A, 506601819244E10AB891E4AFC91E7AC7276715B00A5D6932A57B01267FB97117 ] klupd_klif_klark C:\Windows\system32\Drivers\klupd_klif_klark.sys
13:03:10.0341 0x2284  klupd_klif_klark - ok
13:03:10.0346 0x2284  [ 0E1A21C54398C8D8E791718AACF0E1EF, B08E47099BE3D6C654DB4C7E5D86B09D8650B24BEB53955591939AED30C6202A ] klupd_klif_klbg C:\Windows\system32\Drivers\klupd_klif_klbg.sys
13:03:10.0352 0x2284  klupd_klif_klbg - ok
13:03:10.0358 0x2284  [ EBC4BEEC7E807C49F9BC7546E5A67FEF, 2433EABE495A0B4CC7AC2D9BC728D1148ABADF074551CD1CCDA4A3DFD794F52A ] klupd_klif_mark C:\Windows\system32\Drivers\klupd_klif_mark.sys
13:03:10.0365 0x2284  klupd_klif_mark - ok
13:03:10.0374 0x2284  [ D7F0B46844565E2ED68AC99AF0F4263F, AB419CBC29F96703237127AC4178A5365D4CCA010BAB1BD66D100D635E6E89B8 ] klvssbrigde64   C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe
13:03:10.0380 0x2284  klvssbrigde64 - ok
13:03:10.0384 0x2284  [ 4C5305295B51BA72FC9C8CDAB32F95C3, 0E5850AC4CA14D971E7B04FED23CB2F6CEEE2796E905AADA0104677982ECD58A ] klwfp           C:\Windows\system32\DRIVERS\klwfp.sys
13:03:10.0390 0x2284  klwfp - ok
13:03:10.0395 0x2284  [ 9A234E6404390862643FDD2EBFDE41FA, 011C9F7D6F04AFCE887BCC7A83CEC14806B6937D290F9F14830187FCEAF25D4A ] Klwtp           C:\Windows\system32\DRIVERS\klwtp.sys
13:03:10.0401 0x2284  Klwtp - ok
13:03:10.0407 0x2284  [ 67EFD862ACEFCB9687523832C62FA584, B3C9A36C535B706EB19E5C5437705E8C5EC71F45115A2C97E1348462EC2A3922 ] kneps           C:\Windows\system32\DRIVERS\kneps.sys
13:03:10.0414 0x2284  kneps - ok
13:03:10.0422 0x2284  [ EFF5EA6088DB81C6EF6EDCDA5EE79909, 4D364B0BF012C335FA3B25BDF042D4AF672D961B9B48CB7C5BE34FCFD1D64979 ] KSDE1.0.0       C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
13:03:10.0429 0x2284  KSDE1.0.0 - ok
13:03:10.0435 0x2284  [ 705C0F8BCCEF6E7CB704CCB454192D7E, FC608C708E2C3BF7A66E57B95E19E71E5F5C87EF359D8BC1A817500B45DF9338 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
13:03:10.0443 0x2284  KSecDD - ok
13:03:10.0447 0x2284  [ 55AD13E2BAFC5AB53A10F8C271F5D242, 058BEF14DCB95574BCAB985F04737BA89483937E8D8A74F7B4CEAFB7400C2397 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
13:03:10.0457 0x2284  KSecPkg - ok
13:03:10.0460 0x2284  [ 4ED115CD1A1099705F56B5E0FFF97CC6, 9CC49DF2CD6AAAE405BA661D13EFC1E05111D1DE3D1E50C39C425AF1F075610B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
13:03:10.0473 0x2284  ksthunk - ok
13:03:10.0481 0x2284  [ 8125BDF7ADC261F75EF0CAD92456E350, 184797AA1D58C4FF743BA60D48590B88B781EE7779205E45E0679DEC79F3E185 ] KtmRm           C:\Windows\system32\msdtckrm.dll
13:03:10.0499 0x2284  KtmRm - ok
13:03:10.0506 0x2284  [ 8CCAB08815B50AD78B823DB3F96C8604, 265E6D582EB7207B5CC577D61CB7BC3646F613047F168CD69BB776C37780EBF5 ] LanmanServer    C:\Windows\system32\srvsvc.dll
13:03:10.0523 0x2284  LanmanServer - ok
13:03:10.0529 0x2284  [ B581907FD94F1FF148BF695331F67612, 05D1FFA456557A291566D788B8DE2485552E361EC3C0F63EA1A710BE940A5398 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:03:10.0546 0x2284  LanmanWorkstation - ok
13:03:10.0551 0x2284  [ F8EBAA1FE6D3BF84752931DE1BFA0E2A, 2F3C512712BA709BBBBD779D9E792DBE324876C402CDCEF0345B8B7ABE1D232A ] lfsvc           C:\Windows\System32\lfsvc.dll
13:03:10.0561 0x2284  lfsvc - ok
13:03:10.0563 0x2284  [ 5A23E4BE0CCF49663C4CF7EB74C20278, 9DF91014B13B7CED1C3D409F90858FD03EFC5C4347C98901B4DF0AFF2B77845D ] LicenseManager  C:\Windows\system32\LicenseManagerSvc.dll
13:03:10.0572 0x2284  LicenseManager - ok
13:03:10.0576 0x2284  [ 5933A6673F00D8255C52957E40C2D601, 0AA1281F8B3F97E360592D1B35EE7D3D614F1AB46007F9884CFFB1C5E647575E ] lltdio          C:\Windows\system32\drivers\lltdio.sys
13:03:10.0586 0x2284  lltdio - ok
13:03:10.0592 0x2284  [ 88A3C935725FA6EA1A228DCC26CF9C6F, 9B1F70644EEFA1EE7CE151A8A970430087339B7A6345F2E0252370929D4AFAC6 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
13:03:10.0607 0x2284  lltdsvc - ok
13:03:10.0610 0x2284  [ 3F858E28AEE6545FA1B64134DFD5C2CE, FFD7B4FB0A7B61BC6B76A172134673842F2CF00E96FA3ED4A8273DC525B6BB92 ] lmhosts         C:\Windows\System32\lmhsvc.dll
13:03:10.0621 0x2284  lmhosts - ok
13:03:10.0626 0x2284  [ 8E1B0946948CCC0BC1FA3CB70374A795, 0B894C129A35E223FF9594725AC90916CBD597FAD2211A18FC2AE03EA8679597 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
13:03:10.0634 0x2284  LSI_SAS - ok
13:03:10.0638 0x2284  [ 4F68163FC04C973500DC4DA0946917B0, DF060C29109EB3978CEDFE781999B0C4C1E8C0FDB133428058D8400C53315EEC ] LSI_SAS2i       C:\Windows\system32\drivers\lsi_sas2i.sys
13:03:10.0646 0x2284  LSI_SAS2i - ok
13:03:10.0649 0x2284  [ E5AC5F2815938651CDCC27F425474673, 3AF0598982153C36A766506FA088F7B84333CC96FEBB050402547AFC613AF9F7 ] LSI_SAS3i       C:\Windows\system32\drivers\lsi_sas3i.sys
13:03:10.0658 0x2284  LSI_SAS3i - ok
13:03:10.0662 0x2284  [ CCF6EC9FB9B8F18E05B4253E81013E48, EBE8D77FEE8B99BD8C29702404774D554673C96DF3FDF3DCEA9C99E22C2709FC ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
13:03:10.0669 0x2284  LSI_SSS - ok
13:03:10.0681 0x2284  [ 06276381A0797FD417E7068C1210FA06, 204144E9792216F952CED869ECB6B26FB466BF730B8A73FA4799B1EBC1A630AB ] LSM             C:\Windows\System32\lsm.dll
13:03:10.0706 0x2284  LSM - ok
13:03:10.0711 0x2284  [ C9579D32219E5B936AC3A48D470117EC, E61A77191B6BA25D29B1221FEBBE826BBC11F825C0E35A72B4CEFFF8B7FE59A8 ] luafv           C:\Windows\system32\drivers\luafv.sys
13:03:10.0724 0x2284  luafv - ok
13:03:10.0728 0x2284  [ ED5B42D75F3DEE93040B3930DA9F3009, E919DA20E46FE1C81CB76090B799DD858DD4771DB0EBDE4545DB4681A0AFFE8E ] MapsBroker      C:\Windows\System32\moshost.dll
13:03:10.0739 0x2284  MapsBroker - ok
13:03:10.0742 0x2284  [ C3CDCCF07486BD2616A7B82946E07AC0, 1EF95DAB2DA856BC7D7573B2EB2D9006DF337F827F0B56A161D0C97F45DB755E ] megasas         C:\Windows\system32\drivers\megasas.sys
13:03:10.0749 0x2284  megasas - ok
13:03:10.0753 0x2284  [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181A18A4BA060CA81 ] megasas2i       C:\Windows\system32\drivers\MegaSas2i.sys
13:03:10.0760 0x2284  megasas2i - ok
13:03:10.0770 0x2284  [ FADB2FE017E69EECE0E1BA78661C2E8C, BE99B49031D8B4B670B6F6B6E829E54406779CF6F1D8AFE8AB79A73E6764AB2F ] megasr          C:\Windows\system32\drivers\megasr.sys
13:03:10.0786 0x2284  megasr - ok
13:03:10.0792 0x2284  [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64          C:\Windows\System32\drivers\TeeDriverW8x64.sys
13:03:10.0801 0x2284  MEIx64 - ok
13:03:10.0805 0x2284  [ 55A417C3E41F2A98666CF929EC19108E, A38C262B2863C87E4151525BF26D6AC16E7982D370E2C6998EB15C88C4BC8254 ] MessagingService C:\Windows\System32\MessagingService.dll
13:03:10.0815 0x2284  MessagingService - ok
13:03:10.0832 0x2284  [ FD60818B66B2E8A5415EA840E99A9D8F, 5D2F22909354534B821D958FBEF6A40EB4F642F53C7B509D00949096EF716F36 ] mlx4_bus        C:\Windows\System32\drivers\mlx4_bus.sys
13:03:10.0852 0x2284  mlx4_bus - ok
13:03:10.0856 0x2284  [ 68F6977F1CFBAAC770D940A8C0326FA1, 90EE1E7DAC680EAA5AD50E9B0B9FD8FCE8DD6A02D5EF941B5AA5084CBD40BB80 ] MMCSS           C:\Windows\system32\drivers\mmcss.sys
13:03:10.0865 0x2284  MMCSS - ok
13:03:10.0867 0x2284  [ D842ADDB5911945D51F61A0B1C8F36E3, 5EB93A1FD2D2D9FAB6121356E1AB18F2ADE9550D3033274AF7CA8F7FD51E59ED ] Modem           C:\Windows\system32\drivers\modem.sys
13:03:10.0877 0x2284  Modem - ok
13:03:10.0880 0x2284  [ 9CCCB7FC3EDADEBA461D78615A6011A6, C120B58F25E8CCFD971EB78645C0682F367AD56DC15F2D8C1980CE75B04719DF ] monitor         C:\Windows\System32\drivers\monitor.sys
13:03:10.0889 0x2284  monitor - ok
13:03:10.0892 0x2284  [ 27A07B2FB2E3057DA8DAEA4F25D843C7, 09D2B39E6B9AAEC879E5871DD6BCFF2AEF0B894F3B44649665A685F8B3CA6F27 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
13:03:10.0899 0x2284  mouclass - ok
13:03:10.0902 0x2284  [ 7BD6E7F7C9001AB21B8362CFFEE80B25, C470C3363EEF3A60409A5934988BFB9B72AE7C2BB63CC2C2D006D7EB1C797F6A ] mouhid          C:\Windows\System32\drivers\mouhid.sys
13:03:10.0912 0x2284  mouhid - ok
13:03:10.0915 0x2284  [ F5BDAEE4B7D369D4C74668DCFBA3FF10, 100F39288E56AFE0D39D1CC235BDC9F3727C873CD3114E092DA7A08810BD3EB2 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
13:03:10.0924 0x2284  mountmgr - ok
13:03:10.0929 0x2284  [ 6C73AFD806B5710C3082C343DD6A9D3D, 2B80C85A4E9014A5D48F958E9DD75694923EADDDB95C1B9B890206D6C9443E3F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:03:10.0937 0x2284  MozillaMaintenance - ok
13:03:10.0941 0x2284  [ 30844BD376F9D01E62C820BEF446F1F8, 910D672EDB544A20AEB4450B4D89830F46EDD28CE0021156176315C5D068A1B4 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
13:03:10.0952 0x2284  mpsdrv - ok
13:03:10.0966 0x2284  [ 779CFDB17EA07A6D26FEBBAC95B65772, 74D9542E8DCCD07396A45A45D2F500AA6F9DCC1DB785A6153EB3067E42F576A4 ] MpsSvc          C:\Windows\system32\mpssvc.dll
13:03:10.0994 0x2284  MpsSvc - ok
13:03:11.0000 0x2284  [ 25D32BE04FE0A23FDF57FD5382757672, 64E39E3E21D9173FB1116B989D80C244C49DA827698A05AF5CC5CD1C6AE155DE ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
13:03:11.0011 0x2284  MRxDAV - ok
13:03:11.0020 0x2284  [ E671EDAB0726E05ECEF4058B4CD73C4D, 9F4C50E635CE2204E3291C8D3D7F658A969E80722B8B6F0304228D9B434C20EA ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
13:03:11.0033 0x2284  mrxsmb - ok
13:03:11.0040 0x2284  [ 200E4A385F5F370D8866BAE25B0D9D32, 114AD45000A0C74EAE26C3075BBFEF80B9386C69D58CE4436CAFCF13613EAEFA ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:03:11.0054 0x2284  mrxsmb10 - ok
13:03:11.0060 0x2284  [ F7C22604CD8AFB9AF1C1E3CE39A5A09F, 3F7B39336F8A72525C667D45C9300CA6D017BDE17A6E23EF794BA59D2F3C78F3 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:03:11.0070 0x2284  mrxsmb20 - ok
13:03:11.0074 0x2284  [ 74C9D21523DAE0C18F413C196DF0058A, 3DB4B8CA368D9DD82FAE2C2BC828A21142C8D29780A7C8667188C447519FF702 ] MsBridge        C:\Windows\system32\drivers\bridge.sys
13:03:11.0084 0x2284  MsBridge - ok
13:03:11.0089 0x2284  [ 308F08347923DEEDE7BC03EC7D485841, 72DB45CA11FE635DF9F8273C38CBEFB8DF5362ADA0CBF6D2B1E570365DC700C0 ] MSDTC           C:\Windows\System32\msdtc.exe
13:03:11.0102 0x2284  MSDTC - ok
13:03:11.0106 0x2284  [ F01B849D9D4A8CEAF32D4FDBD0B83C92, D2473AC4C6E6C03DEF13EA73EC78FB878BDC95C047651BF79A16C9DEA82AD046 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
13:03:11.0117 0x2284  Msfs - ok
13:03:11.0120 0x2284  [ 22ECD8F5D1DFADF2011BBB1700CB871D, 8F9EFF51137394EFA5471B8A29C541710063B65806B075B4925A84D5B6BC3BBB ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
13:03:11.0128 0x2284  msgpiowin32 - ok
13:03:11.0130 0x2284  [ FD870F6968A145E4D2BA8A8842686B03, 34B8F601F3B5E42B4D0A41E2AF7DB4EB4E5B627DA8DA9A2A2D46B153AF23AEB1 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
13:03:11.0139 0x2284  mshidkmdf - ok
13:03:11.0142 0x2284  [ 30364757963A028CE5DF0FBAAC270173, C72588A6A52FF8E418A15D2C407A4DB7EA768585423720145F8253D5CA519DC2 ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
13:03:11.0150 0x2284  mshidumdf - ok
13:03:11.0153 0x2284  [ 6BB0FEDDAE7135FA37FFAFF4D9E0E876, B41A3C0FFDFC493D6325ED493445AFCED04EC9DFF2B38125616FC5419AD1ACC4 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
13:03:11.0160 0x2284  msisadrv - ok
13:03:11.0164 0x2284  [ 07E3E54734B14F43A4A95A849C0A0DE2, 314AA02EA84D267B32DBAEBEA6C1AC1A266DED1E8D35A17B41D1D2AC75E8049E ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
13:03:11.0177 0x2284  MSiSCSI - ok
13:03:11.0179 0x2284  msiserver - ok
13:03:11.0182 0x2284  [ 13D614E6B51ECF36746C48CE829FA7F6, CAD63C0A4F7110093F84C58252C5803F14E3FC46584B79DA17EC86D49FEAEA64 ] MSKSSRV         C:\Windows\system32\DRIVERS\MSKSSRV.sys
13:03:11.0194 0x2284  MSKSSRV - ok
13:03:11.0197 0x2284  [ 642CDE46351D5D2D90311E77072AB46D, B2D3033E607BA2F6E6B9CFB1CBF154CD0CE910EA473C56343EC81B9B94044CCA ] MsLldp          C:\Windows\system32\drivers\mslldp.sys
13:03:11.0208 0x2284  MsLldp - ok
13:03:11.0210 0x2284  [ F2302A5CE63CA7673200FAFCEEEDB6AF, B8C44FC2DC0332183DE325CDBF511101F3307225295EDD428CE575A8DE15C223 ] MSPCLOCK        C:\Windows\system32\DRIVERS\MSPCLOCK.sys
13:03:11.0222 0x2284  MSPCLOCK - ok
13:03:11.0225 0x2284  [ 6114512EA26E835BA522C63635429DB5, 0F91CE41B4555316A79AEF3047C152D538CC9C7C329987C9FD0E3D961AFC87C8 ] MSPQM           C:\Windows\system32\DRIVERS\MSPQM.sys
13:03:11.0236 0x2284  MSPQM - ok
13:03:11.0244 0x2284  [ AA538E16E644D00E3BA5349BBA9598EC, 64A68B06883FE7ED34E04AB119BA819753F1222923EDD4E802C35D402B89D075 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
13:03:11.0256 0x2284  MsRPC - ok
13:03:11.0262 0x2284  [ 7ACFE7435317E791FF9EED2F49B402F2, EAF2CE12403A9D975112A22EDBC313EE63B926C070B35E62D515403DD34BD88D ] MsSecFlt        C:\Windows\system32\drivers\mssecflt.sys
13:03:11.0271 0x2284  MsSecFlt - ok
13:03:11.0274 0x2284  [ 0543BEFD41EC4D25C7F7CF36409CEC7D, 631622CFEC49952C0470531B23FFFFF483DC0EFFEF7A97B1179A600392C05DDD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
13:03:11.0281 0x2284  mssmbios - ok
13:03:11.0284 0x2284  [ C1569E4DB8EFE3617847BF041A3C842F, 99ADE5E7F50E04CAEC737F7F90741CCA8EE628996BA5EB6C6BC62184884429B6 ] MSTEE           C:\Windows\system32\DRIVERS\MSTEE.sys
13:03:11.0296 0x2284  MSTEE - ok
13:03:11.0299 0x2284  [ 130B16970154BA9876B09E5C4BAC63BE, BE3AF8FC5A26AB9C9DBA9C015C2E1FD3C4CD9CB423A2BBDABA91428BF8620553 ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
13:03:11.0308 0x2284  MTConfig - ok
13:03:11.0312 0x2284  [ 15D987C8F6CCD4AC94E070C5986762CB, 452FB0C48B86C7F8F53794CC2DDBF2B900B03A0383B2DE8F6A830F8CB0AFBAD8 ] Mup             C:\Windows\system32\Drivers\mup.sys
13:03:11.0320 0x2284  Mup - ok
13:03:11.0323 0x2284  [ 3D2C5B4995CA0751D32DEA0DE9FDFE44, A26958785FD9E05E2CA97078C9BB277CD44222BF5F7D9E8DC2F3F6AAAFFC6483 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
13:03:11.0330 0x2284  mvumis - ok
13:03:11.0341 0x2284  [ DB31EBB04C871F422C36A0962DA7D38B, B1BC2344744F537FB2C7D07B415F860195B7795E185253F05C0817A3764FEC10 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
13:03:11.0362 0x2284  NativeWifiP - ok
13:03:11.0368 0x2284  [ C3D9870E680D9D843B18F4626C3858FE, 43596CAC9FB488F810FBA954C52BC4D13F7D32028C40ACFE33DFD7EE36A65C17 ] NcaSvc          C:\Windows\System32\ncasvc.dll
13:03:11.0381 0x2284  NcaSvc - ok
13:03:11.0388 0x2284  [ 04CE2C0F0759EACD886BA4B658B60D5D, E34D0976FC5936C8629800D826DB127072D1DFC3D350EFACA3AA1B8119551762 ] NcbService      C:\Windows\System32\ncbservice.dll
13:03:11.0404 0x2284  NcbService - ok
13:03:11.0408 0x2284  [ E6094065008FE423377294050E7CEA2D, 86E200227256407530E2C28243DEFBC3CB6E9497644404D9AD79DA242286DF7B ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
13:03:11.0423 0x2284  NcdAutoSetup - ok
13:03:11.0427 0x2284  [ 629CB21AC49C8867E0F29DF1C16DB7B4, 20663E68C69D0A1A2FE99A0C2A9DEFABF49786A1DC8F7F4E1699458AF57D7E79 ] ndfltr          C:\Windows\System32\drivers\ndfltr.sys
13:03:11.0435 0x2284  ndfltr - ok
13:03:11.0453 0x2284  [ D5564FC81350458ED570528C4E3B1CCF, DD3C5012492EF9BCE3BE635BBB3AA40B3C5F5FDBD795A76B327D9C994102AC2B ] NDIS            C:\Windows\system32\drivers\ndis.sys
13:03:11.0478 0x2284  NDIS - ok
13:03:11.0483 0x2284  [ 6DD605338FAAF6BA17662AA874E0D162, 636607829F5D7C3B7A4683C0A2DD594360D72F2AA3F8710153BE32575AE34A15 ] NdisCap         C:\Windows\system32\drivers\ndiscap.sys
13:03:11.0493 0x2284  NdisCap - ok
13:03:11.0498 0x2284  [ E34196F285F8B8879E1FF36C31F7179E, 77A4F24F995D4C0689C43F9956E08DCEC62517E4F8B1B9EAA1852B5293DB5B9A ] NdisImPlatform  C:\Windows\system32\drivers\NdisImPlatform.sys
13:03:11.0512 0x2284  NdisImPlatform - ok
13:03:11.0515 0x2284  [ 1FAD2398673F30CEC616B89C46B7DCBA, 70302049E6AE2BC6B3A7A9DE54D3F940AD6A9771CC2EBCCEC65994E67A25ECB5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
13:03:11.0527 0x2284  NdisTapi - ok
13:03:11.0530 0x2284  [ AEB8ECBE66CC46854066CB1F5623E179, 2F650A85A9DAE38887610C0B876621035616CEDB65D4BBBD7F1405616D218AAF ] Ndisuio         C:\Windows\system32\drivers\ndisuio.sys
13:03:11.0540 0x2284  Ndisuio - ok
13:03:11.0543 0x2284  [ 7340104C2BF2F126714F7CDE85E63610, 45B64EC6F3A4C43F7D74806789067658C6EF0D44D36B841F4D26E1EBC95AF66C ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
13:03:11.0551 0x2284  NdisVirtualBus - ok
13:03:11.0557 0x2284  [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E1F608F90FED300 ] NdisWan         C:\Windows\System32\drivers\ndiswan.sys
13:03:11.0572 0x2284  NdisWan - ok
13:03:11.0577 0x2284  [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E1F608F90FED300 ] ndiswanlegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
13:03:11.0592 0x2284  ndiswanlegacy - ok
13:03:11.0595 0x2284  [ 78A12E3DF035B5D054986949B19BE43C, AD9B34F89B9F27D473BD5FCE6694A40FCCB808B61ABEDD6F70F1AF6C7E73ABF8 ] ndproxy         C:\Windows\system32\DRIVERS\NDProxy.sys
13:03:11.0607 0x2284  ndproxy - ok
13:03:11.0612 0x2284  [ 04C8859355C1DC9C0FA198D1894D71C2, E7C67E73009341B5D402470C686781B3C7BBE2531CE26665E08E711B990B1A77 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
13:03:11.0626 0x2284  Ndu - ok
13:03:11.0629 0x2284  [ 6C76780A01FC2B885BD6E957B5C36B02, DB7834F03A765F65C773E772D8051AFADB22CA4B5074180AA397857A0C47A068 ] NetAdapterCx    C:\Windows\system32\drivers\NetAdapterCx.sys
13:03:11.0639 0x2284  NetAdapterCx - ok
13:03:11.0642 0x2284  [ 5D1513BD6430307C9DB86C6E351372ED, D2AB709CF7CFA5B857B084AFC821914A975B7DDDCE154229981F19448973BD6D ] NetBIOS         C:\Windows\system32\drivers\netbios.sys
13:03:11.0649 0x2284  NetBIOS - ok
13:03:11.0656 0x2284  [ 6FEBB0A847FFD5F057B9AC8889F1B9A7, 558BCC64C59079E6569F61CCE1219A124B3313FC4E6CB5CBCC94124D202FF19D ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
13:03:11.0670 0x2284  NetBT - ok
13:03:11.0673 0x2284  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] Netlogon        C:\Windows\system32\lsass.exe
13:03:11.0682 0x2284  Netlogon - ok
13:03:11.0688 0x2284  [ D3BF2DA9216A4CF22A97820A50A67EFF, D00CBE0A7ECFB449D9B48967A01EE56141404EBE229893D5A1710781AD5F2551 ] Netman          C:\Windows\System32\netman.dll
13:03:11.0703 0x2284  Netman - ok
13:03:11.0713 0x2284  [ F2645D51DD8AABC8BC72358409410437, 8CB97628923D6CEA6EFAD7E666BE92C154060BD108C28D46287A520A14B18ADA ] netprofm        C:\Windows\System32\netprofmsvc.dll
13:03:11.0734 0x2284  netprofm - ok
13:03:11.0741 0x2284  [ 724EA060EF56BAB4DED8F731FA56279B, E07FFE11D7B5C94D6B56940C6423ACB85910F6E8789E788EC91EEEE1C02B247F ] NetSetupSvc     C:\Windows\System32\NetSetupSvc.dll
13:03:11.0756 0x2284  NetSetupSvc - ok
13:03:11.0764 0x2284  [ EFA857E2B0CC7C9DFEF48A2187B910F7, 424475568CD70237F056838388A5F7BDCD1B09349085498644C75940B12E8EAF ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:03:11.0774 0x2284  NetTcpPortSharing - ok
13:03:11.0783 0x2284  [ B996DE26A2E16053C9485F5905B05320, 30EB2CEB466A4F05A44F7CBFCDFD8CC3C27B5FCF1269C1B9410C48AB362D2A75 ] NgcCtnrSvc      C:\Windows\System32\NgcCtnrSvc.dll
13:03:11.0800 0x2284  NgcCtnrSvc - ok
13:03:11.0815 0x2284  [ 54C31C2B815E2E26BB8158022F837C9C, CED660D1A58F635C6452F82FCB2EF8ACEEB7785E31617B2ADFD9EE69A2BDF2B8 ] NgcSvc          C:\Windows\system32\ngcsvc.dll
13:03:11.0847 0x2284  NgcSvc - ok
13:03:11.0855 0x2284  [ 9B9F520C72EE33EAEC857124BB800243, DFA9386B272F4D86F3E4BE861A2FC4617261E1AA40576DDA610FC24AB4961A63 ] NlaSvc          C:\Windows\System32\nlasvc.dll
13:03:11.0873 0x2284  NlaSvc - ok
13:03:11.0877 0x2284  [ 001CBD7A2CD45C4EB39C01C3C677EF73, F4AAF4D60DB1232921C7811A62287B55C7C098B7A1FF9A40D88AF58A5ABECBA2 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
13:03:11.0886 0x2284  Npfs - ok
13:03:11.0889 0x2284  [ 90F5DC9802AAA00CD0B6E2AD9E7FFADC, 71C0777829299DECA6ACD42F38802DBE3C29A42CFBD8A396F39DFA44D1F55B6C ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
13:03:11.0899 0x2284  npsvctrig - ok
13:03:11.0902 0x2284  [ 1993C85962692EF7024501E7FE92D466, F5BCAA8308495EBF8BB061C2015E07C202A779668D171364D7E312975BC18B10 ] nsi             C:\Windows\system32\nsisvc.dll
13:03:11.0913 0x2284  nsi - ok
13:03:11.0916 0x2284  [ 0C6218321A09A7B51BA7FFAFBA4CCB21, 330B3FA793A78410B28DFC8250BBF24442E3BB80434A7938BB96F02337614E0D ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
13:03:11.0925 0x2284  nsiproxy - ok
13:03:11.0958 0x2284  [ 5DD8CB01C0394F8D052763D2E3C6E684, BF58C1586A2402576B91D7F862861974F7BDB38704E88F4974FF3F1D1B481386 ] NTFS            C:\Windows\system32\drivers\NTFS.sys
13:03:12.0000 0x2284  NTFS - ok
13:03:12.0005 0x2284  [ 6E6DD6F9DD2A034CF85E94047DBDB992, 63D0A0756F551B7668D1CBAB24B29FD462C706E8A81690BC248D6C92061FE215 ] Null            C:\Windows\system32\drivers\Null.sys
13:03:12.0014 0x2284  Null - ok
13:03:12.0019 0x2284  [ D261DF41F0840F734856A2B4F5E072C7, 2E703556D0C919375D0B7770513456844B13362190643D5524663EC8546E0FF5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
13:03:12.0028 0x2284  nvraid - ok
13:03:12.0032 0x2284  [ 23B702B555EB0436B9DAA0BC63DA65CE, D454F80D9657CFEC852F022C12D7B2C1A2D7D247ECC591EDB07B9369DFD8C99E ] nvstor          C:\Windows\system32\drivers\nvstor.sys
13:03:12.0042 0x2284  nvstor - ok
13:03:12.0050 0x2284  [ 17997DC2441F7E29CDFC6458E0392764, 636CCE2DA1EF8195B33F8D6D5C8CC151D58EBF08DC9AD8ACCCE7ABD41A69639F ] OneSyncSvc      C:\Windows\System32\APHostService.dll
13:03:12.0066 0x2284  OneSyncSvc - ok
13:03:12.0074 0x2284  [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:03:12.0081 0x2284  ose64 - ok
13:03:12.0149 0x2284  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:03:12.0222 0x2284  osppsvc - ok
13:03:12.0233 0x2284  [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987A1697BED86A510 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
13:03:12.0250 0x2284  p2pimsvc - ok
13:03:12.0259 0x2284  [ 2BBCED66D7AFC968BDBB0E4D8524DF0A, 762D916390F9DE69B3EA1D31244224F910645F8E5CEF4C505B76B215BFDFCD9A ] p2psvc          C:\Windows\system32\p2psvc.dll
13:03:12.0276 0x2284  p2psvc - ok
13:03:12.0281 0x2284  [ 6B81BF7853D161DB8AC62CD8B9C2DE6B, B2DC06D135FD2501217DDA7349556EB873309E02188D4C3901807BA24FAB30C7 ] Parport         C:\Windows\System32\drivers\parport.sys
13:03:12.0292 0x2284  Parport - ok
13:03:12.0296 0x2284  [ 9DB326B54C03EF2892E7551D8B354036, 64CD77E8A4425E80CFB61DEE33C1A677A4044C6FC0614D74B20BDDD7C5D5334D ] partmgr         C:\Windows\system32\drivers\partmgr.sys
13:03:12.0304 0x2284  partmgr - ok
13:03:12.0313 0x2284  [ CE515B2C6E2EA50053A8862398646B38, C85D370E5250AFCF44796CE274B5A100C6829DC28BF1D4C6991EF61DE46FD10A ] PcaSvc          C:\Windows\System32\pcasvc.dll
13:03:12.0329 0x2284  PcaSvc - ok
13:03:12.0336 0x2284  [ D723D2C98598B0DF5832427740B2825D, C2B26A1F4FA2B43D842954403F134908D77892FF4BF7F320D692E685846D5C97 ] pci             C:\Windows\system32\drivers\pci.sys
13:03:12.0348 0x2284  pci - ok
13:03:12.0351 0x2284  [ 214DCC87E3898F738075D1341252A552, E721FBBC3510DDB848A8CAEA3B6031EE988F42252DBC3BF7BDB6ABD9A0D9FABD ] pciide          C:\Windows\system32\drivers\pciide.sys
13:03:12.0359 0x2284  pciide - ok
13:03:12.0363 0x2284  [ AED76A3333B3A31536E430020E0226FC, EC255B79B0908E3C142D92E35B79D90A3F2594BA012CA2B1B04A6A8745153430 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
13:03:12.0372 0x2284  pcmcia - ok
13:03:12.0375 0x2284  [ E63FB38B6E75B39467492FBAD2CD512A, DB406C92BA2460C833A49B98EB5BD58348E868F643A0123B0C9B5315FFC6A124 ] pcw             C:\Windows\system32\drivers\pcw.sys
13:03:12.0382 0x2284  pcw - ok
13:03:12.0386 0x2284  [ 9EA203A07EFA6D74F07F32EF0DAB5CA6, D851F1CC748B4CD0E263931668FFF2FE20D5778267F4FF2237D565CFC171B5AF ] pdc             C:\Windows\system32\drivers\pdc.sys
13:03:12.0395 0x2284  pdc - ok
13:03:12.0407 0x2284  [ 1509A77F840AA9E72CF8247D0CF2FBDE, 2D47AD4D8F5C2D871E603FB6D72D25EFD0E63FA3A542DAADAB9D82ED074C0E0B ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
13:03:12.0433 0x2284  PEAUTH - ok
13:03:12.0461 0x2284  [ 2B55ACB1727A8E5E7514D2D75AC4EBEB, 5E7449F3EE0B15E400E405DE561ED2D3932259107A9D9320AE42CA1A5C5AB992 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
13:03:12.0512 0x2284  PeerDistSvc - ok
13:03:12.0517 0x2284  [ 540116170E2135FCD5DDE77702166B67, CBEC51C2D47532F1781B3255040F303263420B204C2F8BB2B5D1EC342F57B285 ] percsas2i       C:\Windows\system32\drivers\percsas2i.sys
13:03:12.0524 0x2284  percsas2i - ok
13:03:12.0527 0x2284  [ 8356F87553BF49C703CF382033815898, 245EB941566D848F134629690BF271B1CBEAB6440771D3D8D7AED3756835354E ] percsas3i       C:\Windows\system32\drivers\percsas3i.sys
13:03:12.0535 0x2284  percsas3i - ok
13:03:12.0553 0x2284  [ CB5343FF52A702A9ACFAAE6BE972FE09, EAA5362D91D05D382DF4EBBAA3FD575456F23CAD531CC6F1270F8254892DBF02 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
13:03:12.0564 0x2284  PerfHost - ok
13:03:12.0579 0x2284  [ D0D57322ABC7473E54472D8374169CC5, BD14A13D6908C8669E56EF9401FD8A3D7C618E8B6556B36E634864E733BCA4B2 ] PhoneSvc        C:\Windows\System32\PhoneService.dll
13:03:12.0606 0x2284  PhoneSvc - ok
13:03:12.0612 0x2284  [ B4AB2C0177715FFAED88A1223212043A, 1920792ADC78DD51EF98B6A9634D686EAED0848FB7EF74A0DCD3AEBA5AF41EC6 ] PimIndexMaintenanceSvc C:\Windows\System32\PimIndexMaintenance.dll
13:03:12.0626 0x2284  PimIndexMaintenanceSvc - ok
13:03:12.0649 0x2284  [ F931F21E4287FE3ECCF09B54A232BBA2, CEB7AB3236E5F30214027092B7B695ED35F7A1E007DF4046797D1E4DFEF49EC8 ] pla             C:\Windows\system32\pla.dll
13:03:12.0691 0x2284  pla - ok
13:03:12.0696 0x2284  [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3FBB74A27266C9C ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:03:12.0711 0x2284  PlugPlay - ok
13:03:12.0714 0x2284  [ 56D7A89423325121C4A9BD5C326414F3, 649048C23D1973C3504E26B35362AC99DFE9BF31FFE73F45B43306A212AEA34C ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:03:12.0724 0x2284  PNRPAutoReg - ok
13:03:12.0731 0x2284  [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987A1697BED86A510 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:03:12.0747 0x2284  PNRPsvc - ok
13:03:12.0756 0x2284  [ F70CAC34B455D05EAA04B2F8FB58E1CB, 295BFFB3DA03C5CE5462C11D3240024B68AC06E8DEA9062A739BE2CCEE19EB5D ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:03:12.0773 0x2284  PolicyAgent - ok
13:03:12.0778 0x2284  [ 60C8376B48BA96F07AEA536527433D44, EB988C119C3E71169B91ED2A744C71933DD35447DC4A8249E80EC24E9E7077D4 ] Power           C:\Windows\system32\umpo.dll
13:03:12.0792 0x2284  Power - ok
13:03:12.0795 0x2284  [ 5645B9D9788CCA2C88B9534996ED2D6D, 4988942DF163DB5B9B1A08CE6B628D2C47C2E2EAA30AEAE4EFE21C8CF4C8DC5D ] PptpMiniport    C:\Windows\System32\drivers\raspptp.sys
13:03:12.0809 0x2284  PptpMiniport - ok
13:03:12.0869 0x2284  [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
13:03:12.0949 0x2284  PrintNotify - ok
13:03:12.0956 0x2284  [ 372913E12677A8CBBBABDD8311894F9D, A5233D95A0D22D2A9DB214E7CB79A99D389B67189FF6A87D0AD4610A333A637F ] Processor       C:\Windows\System32\drivers\processr.sys
13:03:12.0966 0x2284  Processor - ok
13:03:12.0974 0x2284  [ 1F115AF75EFBAC28479B4F94A3F8D4A3, BE8D8C50D985F6AF9DDC0F13BDBE2D55D600E1F5E344982536538B14EC484AA6 ] ProfSvc         C:\Windows\system32\profsvc.dll
13:03:12.0992 0x2284  ProfSvc - ok
13:03:12.0997 0x2284  [ FC98407B85A31161851FDE245517574F, 2CCD706CF243934FCDA32B24CE0C385EA2E67F206E0306FA584496F583A20CD1 ] Psched          C:\Windows\system32\drivers\pacer.sys
13:03:13.0006 0x2284  Psched - ok
13:03:13.0013 0x2284  [ 7A68710BAC9B6809314B86C0CB1CBC4A, C02D97993D1F6FE6EFBA5B1366B3A4FE8CE1136A95F3A2DA07BA59554C163501 ] QWAVE           C:\Windows\system32\qwave.dll
13:03:13.0029 0x2284  QWAVE - ok
13:03:13.0033 0x2284  [ 819602BBBFDB0BD46DEA3715BF0DD452, D4007FF1E5296316B53436CA3598D6B1CF4F60AB77D5B02F3E595081EDD5D879 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:03:13.0042 0x2284  QWAVEdrv - ok
13:03:13.0045 0x2284  [ CDF47037A0939F56D11F699629C276AD, A63F2A3FE80FB8084E3870E907505694B79EE1D9E56E292C01D481FEFD2534B0 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:03:13.0053 0x2284  RasAcd - ok
13:03:13.0058 0x2284  [ 28C2EA278070EE12701D0EDF8CB0EC36, F10288C1C6835840026DB30285345EF892DE989F43C948E7F4760B8895FF675F ] RasAgileVpn     C:\Windows\System32\drivers\AgileVpn.sys
13:03:13.0087 0x2284  RasAgileVpn - ok
13:03:13.0096 0x2284  [ 7B82197BF35CC3BE59AEF8B706AB8A16, AB0216164A548A48CD21F5F035E57E867584A96890B9887EC08F8DABDD89F990 ] RasAuto         C:\Windows\System32\rasauto.dll
13:03:13.0108 0x2284  RasAuto - ok
13:03:13.0112 0x2284  [ 17E565710172ED71B8531D8822E1C5D1, 0CA39ABD9E544DDAD9D9D7D1FC50444274C31E18F9BF73069051D9F62833698F ] Rasl2tp         C:\Windows\System32\drivers\rasl2tp.sys
13:03:13.0126 0x2284  Rasl2tp - ok
13:03:13.0137 0x2284  [ 3C0A10FFC3CB95D249CA64D62BC912EF, 8A75398EF3FF4BBE822031B3D1C63BFC75ABE11AB35BC0451DFF3B1D56477D97 ] RasMan          C:\Windows\System32\rasmans.dll
13:03:13.0162 0x2284  RasMan - ok
13:03:13.0166 0x2284  [ 9387DF155233D45D4E010F4F2FB52A57, CABC25DA4E512809AED0085767BDD94BF3C1DA792BFF8A009B5465D9110E7060 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:03:13.0176 0x2284  RasPppoe - ok
13:03:13.0180 0x2284  [ F0F4EEDEEBEE7A4244FAFB96A16B5712, F64717E601BD5EB674003009507B8CDD6F69F00E8670D6895EC64786166A0E8D ] RasSstp         C:\Windows\System32\drivers\rassstp.sys
13:03:13.0193 0x2284  RasSstp - ok
13:03:13.0202 0x2284  [ EDAF0E161BE98CCC4FC9671481600745, 50DB73C341086E346F6EF57E40A7C3A8F6279E5EBB53A67F9B71B7877EB75734 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:03:13.0221 0x2284  rdbss - ok
13:03:13.0232 0x2284  [ 79A415E6FA915EFC00297DAB16EC2635, 47BB49F6D756214193D38A4AB182B541AAC180381C3111FF7F9B0AD4C44D8733 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
13:03:13.0241 0x2284  rdpbus - ok
13:03:13.0246 0x2284  [ 7135785C21CA79D270D11037C43D3F19, 654A3C65CF891ED8C82A740D10CF607FC7D709185E664DE03288CEB5B25F03A6 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
13:03:13.0258 0x2284  RDPDR - ok
13:03:13.0263 0x2284  [ 97A61A3CB2B5CB4FC32B3224EF333448, E4F2E8BCEE3639BE57BBC8A8E67FDE42C3A5158F1204684B0ECD216F4AA044A3 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:03:13.0270 0x2284  RdpVideoMiniport - ok
13:03:13.0278 0x2284  [ 69BB204AE07EE84ECFAB1BF13C4BD04B, 1CA832CBF4AE4821EEA2A19F9519C2D1D00406B8CCE2A86FE3B33A5F293DB218 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:03:13.0288 0x2284  rdyboost - ok
13:03:13.0304 0x2284  [ 940D6F5A2B0A61EE4170DF84F6C95C20, F8EE846DC8015EDFE7CB5BEEDC977EAA9C586BAC2216DE69D8ECCBDBC7408649 ] ReFSv1          C:\Windows\system32\drivers\ReFSv1.sys
13:03:13.0325 0x2284  ReFSv1 - ok
13:03:13.0338 0x2284  [ 13F6B64235C60167052364BF7D99E4CA, BC12EE00775F7456FB922FBD684BF3F0CFABA5BEBB6E162C23B41DED5C20A978 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:03:13.0357 0x2284  RemoteAccess - ok
13:03:13.0362 0x2284  [ 3183B161B1F05333F6C325577FEF3596, D6A89B2A021377B6F371E5B9EFC36FF018822B28F0ED41F8CD2F00C5C8605707 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:03:13.0377 0x2284  RemoteRegistry - ok
13:03:13.0389 0x2284  [ FA62C4E1D753B489832DD0A7033665EE, BB0B59ABC79CEFA949632179239D711944C29E93EBCE60E629DE75AF2C3268B2 ] RetailDemo      C:\Windows\system32\RDXService.dll
13:03:13.0412 0x2284  RetailDemo - ok
13:03:13.0417 0x2284  [ 5DAA644F17780FC4E3F4820A46D38FEC, 32C27FFA0A4608B164F4E709CD0D998AB73CA9713BE3E47F9DBC7B3D1B6C7453 ] RmSvc           C:\Windows\System32\RMapi.dll
13:03:13.0429 0x2284  RmSvc - ok
13:03:13.0433 0x2284  [ 672724C8B21B7DC56646045DE4D5B860, 79986E80A92C949C543959F1E35647A9788DAB2892AC20B6DEA5C0BBC0CEDE9E ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:03:13.0443 0x2284  RpcEptMapper - ok
13:03:13.0446 0x2284  [ 109C1D609951E886D3643B15C1EDD1C2, 347D8E7C50EC7F96217C7421D9BC8A42C9DF50B94169CB58DCF857A63C33C2EA ] RpcLocator      C:\Windows\system32\locator.exe
13:03:13.0454 0x2284  RpcLocator - ok
13:03:13.0468 0x2284  [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C946708E955A2909 ] RpcSs           C:\Windows\system32\rpcss.dll
13:03:13.0497 0x2284  RpcSs - ok
13:03:13.0501 0x2284  [ 5FF28F097C9699097B473F8FC7C1AA7D, 695560F1DBD85073F3D6CB1FF16F16504CA044EA62E940E463A16BBA8B86E2FA ] rspndr          C:\Windows\system32\drivers\rspndr.sys
13:03:13.0510 0x2284  rspndr - ok
13:03:13.0520 0x2284  [ F9265C902BB9146C6BFF97BDF35C04DE, DC70B404A701CE5F60421F664F745CA84722ED86FAFC87F2A8A71BFD25CD6151 ] rt640x64        C:\Windows\System32\drivers\rt640x64.sys
13:03:13.0540 0x2284  rt640x64 - ok
13:03:13.0544 0x2284  [ B5DAEE69BACA64D2BB004568E22D8756, C0072CF6B438ED756435A182D55AC55F3AD356ACBD483DE06A94893D3CA8CCC5 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
13:03:13.0552 0x2284  s3cap - ok
13:03:13.0555 0x2284  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] SamSs           C:\Windows\system32\lsass.exe
13:03:13.0563 0x2284  SamSs - ok
13:03:13.0567 0x2284  [ 5E73FB63E2DBC75FE0C17DEB0010CE0E, 9DAC47486262397D03BC01F7438CAB62CF33BD7B5283F5B9548C770A3D6D0ADC ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
13:03:13.0575 0x2284  sbp2port - ok
13:03:13.0581 0x2284  [ 3CD0130FFDEAEACF0905B482F3934EA3, 1EC355B63135FD2563093EBB206741C0C4CCE0551A662F6DC86C875146A88B06 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:03:13.0596 0x2284  SCardSvr - ok
13:03:13.0602 0x2284  [ 9EE060D6560FFBFBDB2ED5D6ED192294, 14387B69CD26D12BE31A23251B6AA8EDFC4D6CDE4FA558F0950DE91D2DD03946 ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
13:03:13.0616 0x2284  ScDeviceEnum - ok
13:03:13.0619 0x2284  [ 3D9A82B03C92D1FEC42CB171D6F57778, DC027F02F5EB5F1D10DB6F405FB0C15D4D5C922445F5F3C916624113278AF072 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:03:13.0628 0x2284  scfilter - ok
13:03:13.0643 0x2284  [ D4DB6B318A0A0C74A90260725A228C0B, 57BA2EF9D880488C785C806ABF9EE753A48E589129442D72F815CD6EFFA07B22 ] Schedule        C:\Windows\system32\schedsvc.dll
13:03:13.0675 0x2284  Schedule - ok
13:03:13.0680 0x2284  [ 9055ADDFBA4C8B914C914CE693B55C0A, DB213AC36E14D856B81D2AFE46815402537A2ABEEA15032A9FF436F953129441 ] scmbus          C:\Windows\system32\drivers\scmbus.sys
13:03:13.0688 0x2284  scmbus - ok
13:03:13.0692 0x2284  [ B6F2363584E62960846F7C3F00124A4F, 252189FF9D623CF69BF415FF7C7FE74B0BBF756B632420578BFAFF6595616CF7 ] scmdisk0101     C:\Windows\System32\drivers\scmdisk0101.sys
13:03:13.0702 0x2284  scmdisk0101 - ok
13:03:13.0708 0x2284  [ 9450FA11E9DE6715FCB71A519A8FF90B, B7E341C6E4CE967FCDD0D17A497C07E8A1C6B0AACE8A6E8E5D6C21EF73F13E16 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:03:13.0720 0x2284  SCPolicySvc - ok
13:03:13.0727 0x2284  [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF293EE5903D7AD0A ] sdbus           C:\Windows\System32\drivers\sdbus.sys
13:03:13.0738 0x2284  sdbus - ok
13:03:13.0743 0x2284  [ F3714DBAA42C15F78FFCDFE4273214EB, 2D018970B92C5F0744FAE10A2FC298F3DCEA5C2EDEB760F4F0651337B9878ABF ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:03:13.0756 0x2284  SDRSVC - ok
13:03:13.0760 0x2284  [ 120DFCB71D6C502613A9E2D50E16850C, 2C294010AD1C9C380CD5221A37720544178B7358C8C8553AF44055E4CEE5DAF5 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
13:03:13.0767 0x2284  sdstor - ok
13:03:13.0770 0x2284  [ EFD644DD091E1D94555FC3BBC95EA66D, FBDDA6680BEC378CCF12A32D9186020E884DA15A1E789D1531B1E687FC7B54B1 ] seclogon        C:\Windows\system32\seclogon.dll
13:03:13.0781 0x2284  seclogon - ok
13:03:13.0784 0x2284  [ 07F83829E7429E60298440CD1E601A6A, 9F1229CD8DD9092C27A01F5D56E3C0D59C2BB9F0139ABF042E56F343637FDA33 ] semav6msr64     C:\Windows\system32\drivers\semav6msr64.sys
13:03:13.0790 0x2284  semav6msr64 - ok
13:03:13.0794 0x2284  [ F48535714BED7DD784853889B4594B26, 9B4AB7E7293E79A8F6CC46C84F23E62AD3BD6E958FCE078CDBB125A69FAC7E50 ] SENS            C:\Windows\System32\sens.dll
13:03:13.0804 0x2284  SENS - ok
13:03:13.0807 0x2284  Sense - ok
13:03:13.0827 0x2284  [ 2B4E090D06C60853C5C00CF255F9E02A, 4D4DBA7B04519622612BD4A4F28318CA2F5646C84CAFF8C5ACC9BF4C6031894E ] SensorDataService C:\Windows\System32\SensorDataService.exe
13:03:13.0864 0x2284  SensorDataService - ok
13:03:13.0873 0x2284  [ C09A42163878A082C3F0D0A3DFE95714, 8033DC38D0EDED3758DA6BF8C1955BE5FFE48863C079C589660B37D0E461300F ] SensorService   C:\Windows\system32\SensorService.dll
13:03:13.0892 0x2284  SensorService - ok
13:03:13.0898 0x2284  [ E6F00415DADCEEC860E7AB42BFD19A65, 274CAF22F93D43B6DB6953730E3DF8DA94776B24EEE74B80AB4CD780BC1366A9 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:03:13.0911 0x2284  SensrSvc - ok
13:03:13.0915 0x2284  [ 401D706DDC0A7AF18C3DD228ADF74551, 27C0B38D7C2E3F6FF06201124E63483931F6071954B2B99EC0143C464238C0B7 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
13:03:13.0922 0x2284  SerCx - ok
13:03:13.0926 0x2284  [ 7084D11083F0CDCA8B5C76F9846ABF5D, F639920882B0E784D8CFAF0D4C0F0C411937B6831E5DD99B0ABFBFE06BA4742F ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
13:03:13.0935 0x2284  SerCx2 - ok
13:03:13.0937 0x2284  [ 3FF478A8ED32A83C36581425F6282B6C, 787646A17098EA7CF36064D0A950C1D470D4A280C8C5AC40023D566E53860EAE ] Serenum         C:\Windows\System32\drivers\serenum.sys
         

Alt 27.10.2016, 13:09   #10
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



***Kaspersky Report Teil 2***

Code:
ATTFilter
13:03:13.0946 0x2284  Serenum - ok
13:03:13.0949 0x2284  [ 92509187AA171A80521528B36F753E1D, FE0DA272B8A155ECC161E99586C4AE7EE17B1C84BC330DA1566C83B8E03FA825 ] Serial          C:\Windows\System32\drivers\serial.sys
13:03:13.0959 0x2284  Serial - ok
13:03:13.0962 0x2284  [ 433D38FF6D08B993847EA2A10EB8CB52, 29BA75DB6D1AC761BBDFB5AC8874FC7D763E1CD10D290E369063B34CE951270F ] sermouse        C:\Windows\System32\drivers\sermouse.sys
13:03:13.0970 0x2284  sermouse - ok
13:03:13.0978 0x2284  [ 82CF273F0E8F243789683DEB40757569, 5433D93A41C4BF04494E6158931C6AC3154888F7CD3A417253EC02FF7EA6D00E ] SessionEnv      C:\Windows\system32\sessenv.dll
13:03:13.0996 0x2284  SessionEnv - ok
13:03:13.0999 0x2284  [ 697D3EE0740AEAB62B66ABCA1C83D13B, FCF54A0071ED04AD3FC8551C67FE5FD49089DC0510F753052CAC5972A65C9E3D ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
13:03:14.0007 0x2284  sfloppy - ok
13:03:14.0017 0x2284  [ 3D0069B8F0C2FB1B0F13DBDB57593DAD, 4CEC91BC45A51C4E445D2DD8A13AC97719D5AAC1DBA8EA9166D2A354E7857378 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:03:14.0041 0x2284  SharedAccess - ok
13:03:14.0052 0x2284  [ 482E6BE8A07832E824080D352075ACA1, 4123A76C8E805AF4FE229C53E9C174095C0937913BA81A63FE9B45C44AA5B15F ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:03:14.0078 0x2284  ShellHWDetection - ok
13:03:14.0083 0x2284  [ CF3BDF9EAD8D3EF671E9339B44B185BA, C17EC6D5B00F49D9C8B5B6C262A85F34ED71C58450659F006B3632AA84F68E23 ] shpamsvc        C:\Windows\system32\Windows.SharedPC.AccountManager.dll
13:03:14.0096 0x2284  shpamsvc - ok
13:03:14.0099 0x2284  [ A34CE1830E45DA98932295FDE4B7908A, FC553ECF4D64B4B10B7FDE5352707785517A18D487A80665BAFC7261E3F35CDC ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
13:03:14.0106 0x2284  SiSRaid2 - ok
13:03:14.0110 0x2284  [ A7B5C670770E908DA5FEF5BF1136E933, 8D3BB6FF65E631C34BE8EA766481B2FDB2E1E916A4FD67F86705A8975A136E6C ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
13:03:14.0118 0x2284  SiSRaid4 - ok
13:03:14.0120 0x2284  [ D233EAE2A9D48485321816486ED635EF, 03AB49BE9CF15EB7EDC50C400E673B4DF0E5BFDA9A7811E157F2AF2F3CF38D49 ] smphost         C:\Windows\System32\smphost.dll
13:03:14.0131 0x2284  smphost - ok
13:03:14.0141 0x2284  [ 0B217141AC1283655402CDB356577735, 6EFA4CA46CFC8B7156CE7E5CA89B7F7073E16D66C2FC13F4DB95FEB78CCF698F ] SmsRouter       C:\Windows\system32\SmsRouterSvc.dll
13:03:14.0163 0x2284  SmsRouter - ok
13:03:14.0168 0x2284  [ 6F4CE07D420FB657B5936F71101ABD41, CEC52984C56E578E0FFE12BE1B8148335F788B7D1751F2D0E79B944A41113C20 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:03:14.0179 0x2284  SNMPTRAP - ok
13:03:14.0189 0x2284  [ 43AC4C5CC233BCE9D7C46DA0E7EC0676, DC41B118A43A5B8401FA4848DD113976077A32147944FD948AA61AFDF6639E5B ] spaceport       C:\Windows\system32\drivers\spaceport.sys
13:03:14.0204 0x2284  spaceport - ok
13:03:14.0208 0x2284  [ E03264C4C25B568F92ED1656AD541E64, D42942BFFBC7213D204FAF84F4FE015FC23A6ACB29B5E752834EDBC17A3AC20D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
13:03:14.0216 0x2284  SpbCx - ok
13:03:14.0219 0x2284  [ 0FFE35F0B0CD5A324BBE22F02569AE3B, F4EE803EEFDB4EAEEDB3024C3516F1F9A202C77F4870D6B74356BBDE32B3B560 ] speedfan        C:\Windows\SysWoW64\speedfan.sys
13:03:14.0225 0x2284  speedfan - ok
13:03:14.0238 0x2284  [ 63F12E1361F06E5395EDABB587CE093A, BE66550AD4273D2F7118F06084C947628C99BD58F53ACF4FAA50849801B1B11C ] Spooler         C:\Windows\System32\spoolsv.exe
13:03:14.0266 0x2284  Spooler - ok
13:03:14.0341 0x2284  [ 3DFC1881AEE1C606333E9E82B4343C79, FBC6A6DEE8333D908A944E56877B2E8B007D745EFECB03EA714589C8DB67B26B ] sppsvc          C:\Windows\system32\sppsvc.exe
13:03:14.0439 0x2284  sppsvc - ok
13:03:14.0452 0x2284  [ E83830BB74AE8CBECEA0ECD94DE436F9, 4A34569A34260324EBD629039E1BF45A3527FC75B22D9A3DB6360A6EB365483A ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:03:14.0468 0x2284  srv - ok
13:03:14.0480 0x2284  [ 1312896CAE6AF0D4557DB7B37283C116, 9E3701DBBF0F45368A217549A7DFDA2543C4AB3AC9CCF65A73E1FE27CC4A278E ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:03:14.0504 0x2284  srv2 - ok
13:03:14.0511 0x2284  [ F13EE0DB1FB1D6946AC3228D7EFCFC8F, 109A809F0338FAB0F4045FA5EE33C6F0A994A9F586B2FBD8920A6AABA0E0EF66 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:03:14.0523 0x2284  srvnet - ok
13:03:14.0531 0x2284  [ 44758105AB3EA34E815D4B6CA1153311, 7F223A20D2538C123BAC6F75BE0E126876A116F09502FD980C05B8916E26E1B7 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:03:14.0546 0x2284  SSDPSRV - ok
13:03:14.0552 0x2284  [ B97C7EC07218A8002323718202BF5E77, 39D3254383E3F49FD3E2DFF8212F4B5744D8D5E0A6BB320516C5EE525AD211EB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:03:14.0566 0x2284  SstpSvc - ok
13:03:14.0621 0x2284  [ FD881B87C853EB2F0B8B7B5CC71D6FE3, 780038C203C9277C366794302D90BC0AE75568863F1FB7044197BA20D798E4BA ] StateRepository C:\Windows\system32\windows.staterepository.dll
13:03:14.0717 0x2284  StateRepository - ok
13:03:14.0723 0x2284  [ 29D26E1347AE1BBD4201014E19880B2C, 9E2153AD96CE4F189EEE43BB02515532C619FB1CA02D8F6DEF517AC3347AAA14 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
13:03:14.0730 0x2284  stexstor - ok
13:03:14.0741 0x2284  [ 91CB95B35481155BFE29C217CD237F27, CA66957DF1441D991453BEF02D768D44E5D9A484BC23C8874E8A7AC20904CB06 ] stisvc          C:\Windows\System32\wiaservc.dll
13:03:14.0764 0x2284  stisvc - ok
13:03:14.0769 0x2284  [ 53EB8CE34B55A1EE63424C8DB7388BFC, 5AB59117BA8A2844EB8693CCC19B217AE039B28C87519F96E1C845FE9BF456C2 ] storahci        C:\Windows\system32\drivers\storahci.sys
13:03:14.0778 0x2284  storahci - ok
13:03:14.0780 0x2284  [ C5E0ACE4771F5575D9D5B457ABF3AD03, 365880BC5AC313F25C313EFB7758301F98D9B2BF4C5FC9499F98C2B7F8407D96 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
13:03:14.0787 0x2284  storflt - ok
13:03:14.0791 0x2284  [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme        C:\Windows\system32\drivers\stornvme.sys
13:03:14.0799 0x2284  stornvme - ok
13:03:14.0802 0x2284  [ BEBF85EB4D90E6996047DA027D0ED26E, DF109CF0F07CDD1B9B702C2A076D4DD5366DAAD971CC9359AF0358E79981706F ] storqosflt      C:\Windows\system32\drivers\storqosflt.sys
13:03:14.0813 0x2284  storqosflt - ok
13:03:14.0821 0x2284  [ 6C982BC7E4DB161530A0D831718D7113, B0FAEACC91023031E53A161ECEFCF62764C96B8705E9089B4A7B4F7A2F3B6BAA ] StorSvc         C:\Windows\system32\storsvc.dll
13:03:14.0839 0x2284  StorSvc - ok
13:03:14.0842 0x2284  [ 8E73037A6F8938475692FFCC26EBF385, F78C5CD1A3CD17AA831EEC82426B14006B4DDBC9085A4814E04E8C37FD6B05F7 ] storufs         C:\Windows\system32\drivers\storufs.sys
13:03:14.0849 0x2284  storufs - ok
13:03:14.0852 0x2284  [ 9D9DED47DA10E845EFF2DD57C94C809B, 520D0CE7A867051B80C8141E351FE5A5BCE3C99776093F234DB77D3407B1F104 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
13:03:14.0859 0x2284  storvsc - ok
13:03:14.0862 0x2284  [ 224C92E442B1B8C20C274332F1ACF00D, CDE5DCFB7A21089464A6E2ABB29BBE08B184C3433C218756AA5902A8F67C0B2C ] svsvc           C:\Windows\system32\svsvc.dll
13:03:14.0872 0x2284  svsvc - ok
13:03:14.0875 0x2284  [ 505E0C40B5D0ADDCBB414640F59BD2E0, DF4B5E65FE6FF2224F298A2A2FAC9B648C082DFF8463148633647580A9FAD34D ] swenum          C:\Windows\System32\drivers\swenum.sys
13:03:14.0883 0x2284  swenum - ok
13:03:14.0892 0x2284  [ 2EE27411B5904C63D723BEA391819F58, C88C11D460E90398E16011B8A2CED5EE5626084F24790EA6115532F8F70060C6 ] swprv           C:\Windows\System32\swprv.dll
13:03:14.0913 0x2284  swprv - ok
13:03:14.0916 0x2284  [ 32F46FB0F290D16DAA452B289C985795, 73F88AAAA6026DB4C27F1D054145216DCC3F1960946FB2A7A90518DD1D5737CB ] Synth3dVsc      C:\Windows\System32\drivers\Synth3dVsc.sys
13:03:14.0926 0x2284  Synth3dVsc - ok
13:03:14.0940 0x2284  [ FED48B19D6F55D7A3AB498D85729D1BA, FA5E0E02BC2E2DE108C55991E3B063CC947072228B53539F42F922661510DE7C ] SysMain         C:\Windows\system32\sysmain.dll
13:03:14.0973 0x2284  SysMain - ok
13:03:14.0981 0x2284  [ D9FEA79BF6AF136F8E656AE045C2FEC8, E6F08A93348E035185F0F1C6B6277E636F4F25D1136E3ACCA63488DAEEC7114B ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
13:03:14.0999 0x2284  SystemEventsBroker - ok
13:03:15.0003 0x2284  [ 2BE3A44B764D6C43CBF4650E862CB807, 78920DA47F3A0C26503FB62EF159455A860E57A9A39C72AEE23A9324168EC1D2 ] SystemUsageReportSvc_WILLAMETTE C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
13:03:15.0010 0x2284  SystemUsageReportSvc_WILLAMETTE - ok
13:03:15.0015 0x2284  [ 86E7FD5C8DBEC1EB51C4368561402B75, 86EE61414CD5854E39E33F67BF5DA4377B569B3ED4D18882C470BC6784891DA1 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:03:15.0027 0x2284  TabletInputService - ok
13:03:15.0033 0x2284  [ 3929C8FC134AC672C4F3F85160956257, CD3195CA58BA6F55EA0DDA2BE6AB58280AD1CA488D7AAA1539DD05FB99374F36 ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:03:15.0049 0x2284  TapiSrv - ok
13:03:15.0085 0x2284  [ FE33B645A2E0F5AB0B42318355B85178, B24EAB2CF42A826176C54739DC387E3E71BE062F82BF0D84624C10119ED979D5 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:03:15.0132 0x2284  Tcpip - ok
13:03:15.0169 0x2284  [ FE33B645A2E0F5AB0B42318355B85178, B24EAB2CF42A826176C54739DC387E3E71BE062F82BF0D84624C10119ED979D5 ] Tcpip6          C:\Windows\system32\drivers\tcpip.sys
13:03:15.0216 0x2284  Tcpip6 - ok
13:03:15.0224 0x2284  [ 8DBB1BE20C36E6D19BCC89EEA00B953C, 8B97A7E53E1D77363AFF6A5AAEAD89EBAE28DCB8D82753C804FD7CD5646500AF ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:03:15.0234 0x2284  tcpipreg - ok
13:03:15.0239 0x2284  [ 9D2DD64A0B51C56285512DC9454340F6, ABB90CE6A55269F71AFB08E04969CF9A4EFD93F7A7189AF920EEE3E005214DDD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:03:15.0247 0x2284  tdx - ok
13:03:15.0250 0x2284  [ 06130AFFECEB94525FC2352936576B70, 10EBE2C8FDC087D29E2FFB328F0F7905A5374AB8CC9FAE8699E7676DBC8CBF91 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
13:03:15.0257 0x2284  terminpt - ok
13:03:15.0274 0x2284  [ FB68E5F02316C42BE7282DA492351C6F, AC31D841FEA58B776127E138DB20F8D48E26FD8C00CE2FA9695EA14EBF159A0A ] TermService     C:\Windows\System32\termsrv.dll
13:03:15.0305 0x2284  TermService - ok
13:03:15.0309 0x2284  [ 2AF438EC0D361A7BBB70E604A686602C, 4BE6A0461EB2CB94288614434A1CEC81C2ED46241721FD5BBD8ABE0680F7C804 ] Themes          C:\Windows\system32\themeservice.dll
13:03:15.0324 0x2284  Themes - ok
13:03:15.0330 0x2284  [ 1482B8ED5CACA87992A882B853B83CEE, 613247F0E362A109090E8563D977DECC50C64D45D6962905FA84A2D59329045C ] TieringEngineService C:\Windows\system32\TieringEngineService.exe
13:03:15.0347 0x2284  TieringEngineService - ok
13:03:15.0359 0x2284  [ 3B3C607C3C62DFBEF61938DA2CAB94DF, E5EEA7F45A7BBFDF6F0003CD77E39958C451DD1B4B401876B5619A3C20F5C370 ] tiledatamodelsvc C:\Windows\system32\tileobjserver.dll
13:03:15.0380 0x2284  tiledatamodelsvc - ok
13:03:15.0386 0x2284  [ C1F8CBE2D4843E0CCC3EFEA2EC60D4AB, 9D07527D982066922318C77AECE99280DE55034C375ACE145E827A6BEB5C3B70 ] TimeBrokerSvc   C:\Windows\System32\TimeBrokerServer.dll
13:03:15.0399 0x2284  TimeBrokerSvc - ok
13:03:15.0404 0x2284  [ 3D04046C468AD2868A093925B5E2AA0A, 44696259BEF49AC200DEE146DE0E4375B0CD09F9356CCFA22BD7AD8B53E48658 ] TPM             C:\Windows\System32\drivers\tpm.sys
13:03:15.0414 0x2284  TPM - ok
13:03:15.0419 0x2284  [ 3B91F35089240F6187AD681A5EC28BDE, 3D035CB73BC8E7831DCD0FB7D9DAD91CE51D3D0F9D9C8B866A0009BD508B6702 ] TrkWks          C:\Windows\System32\trkwks.dll
13:03:15.0431 0x2284  TrkWks - ok
13:03:15.0436 0x2284  [ AF343840E793BE63A9C646760BE8F2CD, 483FE55873A01DB7ACEC99B6823DAACC9EA7C67D36C6F12698113B31A7D5B8BE ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:03:15.0447 0x2284  TrustedInstaller - ok
13:03:15.0450 0x2284  [ A6F4025664C9D4BC2A9EDAB4092706D7, 89808A1679C0E716F86F06EE7701DCC289200894F0FA1F120DA2AC3A45FDB312 ] tsusbflt        C:\Windows\system32\drivers\TsUsbFlt.sys
13:03:15.0461 0x2284  tsusbflt - ok
13:03:15.0464 0x2284  [ 37A96AD493E110C0BF1EE0AC0F9E7DBD, F2A6894A4AEE18DF2B92222CDB0801A13AEEB7212071F0431430788339B30E23 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
13:03:15.0472 0x2284  TsUsbGD - ok
13:03:15.0476 0x2284  [ 5A91FDBA4D3FCB56DAEB8C091B3EB8E1, 8AB91F4423125267FA8509A1C3A9AD1CBD642FA6A96D8789F9AB8CB75ABAD58C ] tsusbhub        C:\Windows\system32\drivers\tsusbhub.sys
13:03:15.0486 0x2284  tsusbhub - ok
13:03:15.0491 0x2284  [ 79E264287F17D56D768440B0270466DE, ABF9DC95C5E939B30BFD9BF9EDFDB3BD78A9DFCB055B945965303B6A60E6D7A7 ] tunnel          C:\Windows\System32\drivers\tunnel.sys
13:03:15.0502 0x2284  tunnel - ok
13:03:15.0506 0x2284  [ F723552F65D44FE693DB1A383825B3A8, EF8C343C4EB5EEA4EC830378EF576CCD6CD4EEDEDD486C0F29697044E8C71F45 ] tzautoupdate    C:\Windows\system32\tzautoupdate.dll
13:03:15.0519 0x2284  tzautoupdate - ok
13:03:15.0523 0x2284  [ AA65954F512BA097DD190790876DD991, C1BB2B8F54F064D01190327B5E7949EBBDA21D6FC6F94D9FCD20F685C2F855FA ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
13:03:15.0531 0x2284  UASPStor - ok
13:03:15.0535 0x2284  [ AB6268022C3A5B529075A39C33904DA6, 2717F1704640201F2681711543EA39A74C3E89C7DB232EC5DD89FD8AA6F07846 ] UcmCx0101       C:\Windows\system32\Drivers\UcmCx.sys
13:03:15.0545 0x2284  UcmCx0101 - ok
13:03:15.0549 0x2284  [ 7ED2EDA43D21C7A5F589A7960E265C52, 7DB8A595236FBB8A264D7AB155201357212855050ABB5B1036EF32F1223FDCC2 ] UcmTcpciCx0101  C:\Windows\system32\Drivers\UcmTcpciCx.sys
13:03:15.0559 0x2284  UcmTcpciCx0101 - ok
13:03:15.0562 0x2284  [ 169351463039B45F5CDED9768879F712, 990C8C4AEF9ED7FF6BCEAE67F7BDAA037777B142B8D96A74F8715C941A5C63C6 ] UcmUcsi         C:\Windows\System32\drivers\UcmUcsi.sys
13:03:15.0570 0x2284  UcmUcsi - ok
13:03:15.0577 0x2284  [ 08A9E3AD29B215484FBB68CDC175DF3A, 3EFFF99C3BC4A1454E3D2B5177AE587ED3041AB4CE2A95BA7E28A2124E38E1E5 ] Ucx01000        C:\Windows\system32\drivers\ucx01000.sys
13:03:15.0586 0x2284  Ucx01000 - ok
13:03:15.0590 0x2284  [ DA70AEE267491AA56BC63AA0C0C96CA2, 0A0AADB27607F9292BB3CE000CFDDB19BD4CA09EAAD926C4925CB43B17817AD9 ] UdeCx           C:\Windows\system32\drivers\udecx.sys
13:03:15.0599 0x2284  UdeCx - ok
13:03:15.0605 0x2284  [ FBC5ECF6D5A868D0B116C2DBB02B8168, 945AA76C60ABAD6075B5C8F9172C018F75BCF393A1CB8B329F5E68E664627775 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:03:15.0623 0x2284  udfs - ok
13:03:15.0626 0x2284  [ B918E40FAA9CD118CCA4AD388B748C98, 4B539B7B656F02C5E5BAEE52A677757B05CC11C5500D619850A564C28FAB8115 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
13:03:15.0633 0x2284  UEFI - ok
13:03:15.0636 0x2284  [ 166B17AE1DD24D8BA8CA474C7C31148F, D34E786277093278F58EFAC957279DC4ED43A190538C875B80F5B1E0A0C30381 ] UevAgentDriver  C:\Windows\system32\drivers\UevAgentDriver.sys
13:03:15.0643 0x2284  UevAgentDriver - ok
13:03:15.0662 0x2284  [ FCA4D901FB9934DAB82ED31C4EE89A11, 8EDF8DD71C13DE77AC83D1086670E9E90C69DE379F1CF768C8B9C789254C04AA ] UevAgentService C:\Windows\system32\AgentService.exe
13:03:15.0696 0x2284  UevAgentService - ok
13:03:15.0704 0x2284  [ 0FD75222C1AD2687AB365BEBEA400DD4, AD10DBCA59EB7D34FD8F963CE267F36774A9BC613F8D637903B12AC88C328E8A ] Ufx01000        C:\Windows\system32\drivers\ufx01000.sys
13:03:15.0714 0x2284  Ufx01000 - ok
13:03:15.0720 0x2284  [ C1A78C53E01C641AE41BFA65797819F5, 0B9FE1BD724B3315199A1B1DA2F03255E4FE744DA3CE6CD0F77699A8E42E9359 ] UfxChipidea     C:\Windows\System32\drivers\UfxChipidea.sys
13:03:15.0729 0x2284  UfxChipidea - ok
13:03:15.0733 0x2284  [ 767307212110EBEFB93EC9A5BE9E85B9, 368797400FE54802CE74F34B773CE2AF09EB8DEA6C035B55419A52F0B5A6FAD0 ] ufxsynopsys     C:\Windows\System32\drivers\ufxsynopsys.sys
13:03:15.0743 0x2284  ufxsynopsys - ok
13:03:15.0748 0x2284  [ 8578F83EC5175920F2D8586FFF9DCE47, 049A16AC87F93E761150C8286633FFCA62EE85F5645DDE77D36BD0EB6481FF83 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:03:15.0759 0x2284  UI0Detect - ok
13:03:15.0762 0x2284  [ DC460AAA18CA2342FBBFB2DF9B044472, 14D45E059C596AE97506D26705F248CA1C2269160B31A60341060E8A93146CBD ] umbus           C:\Windows\System32\drivers\umbus.sys
13:03:15.0771 0x2284  umbus - ok
13:03:15.0773 0x2284  [ C3CF0377917ECE6D65D7623E1E61568F, 4909695E04CBC86BFCFFBC15F332C367521054B7B4D3C141C7CA6B2E40E090B9 ] UmPass          C:\Windows\System32\drivers\umpass.sys
13:03:15.0782 0x2284  UmPass - ok
13:03:15.0789 0x2284  [ 640CF093C1CF16D5FD317616CA348F31, BEC34D1AACA83BF5A84CE01F6A668E3CA5A33C56A446DC42EFFF7C43D22E1AE6 ] UmRdpService    C:\Windows\System32\umrdp.dll
13:03:15.0826 0x2284  UmRdpService - ok
13:03:15.0846 0x2284  [ B8272BB8D4982C496FDC704809C38E02, F93855D932FB1DBBCC86E82C0FE0DC9ECF93BBD629D2CA9D0BE7E075E114B7FF ] UnistoreSvc     C:\Windows\System32\unistore.dll
13:03:15.0882 0x2284  UnistoreSvc - ok
13:03:15.0893 0x2284  [ 6CDA3536F6BAB7896A57EAB7DC07F379, 8FBE6457ECD1ABB518D9800EBA8A017774FFAA8EABD2EDC0825181A12FE9AEF6 ] upnphost        C:\Windows\System32\upnphost.dll
13:03:15.0915 0x2284  upnphost - ok
13:03:15.0918 0x2284  [ 6B46FC140C9AF68E6E7697D66D59CB4D, F018B4784D65F1A8140A6EA69C35D6A7ECE01738694052FD54AFD2B81A8F2FF8 ] UrsChipidea     C:\Windows\System32\drivers\urschipidea.sys
13:03:15.0926 0x2284  UrsChipidea - ok
13:03:15.0929 0x2284  [ B4402E7F0923F660270442CE76877ABE, 1C2DD26EAB71F75EA576E8DAABAF71FD7DC3DF807CF025617C774CEF33C0B718 ] UrsCx01000      C:\Windows\system32\drivers\urscx01000.sys
13:03:15.0953 0x2284  UrsCx01000 - ok
13:03:15.0955 0x2284  [ 9DD431F1B94789CFB527E5D19261F124, 8F5A249A97C5B14B282E3147DD21951D2AD34B651E762814C12F4C26D74EC70C ] UrsSynopsys     C:\Windows\System32\drivers\urssynopsys.sys
13:03:15.0963 0x2284  UrsSynopsys - ok
13:03:15.0968 0x2284  [ C87E32B90F085970D9637FBAD45EF6FE, C180EACD2EE479277DA5DBF39E43B428BD7945141B2451CB3946B0C1E495E76F ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
13:03:15.0978 0x2284  usbccgp - ok
13:03:15.0982 0x2284  [ 0B663856474AC41924D9E9112203858F, 9E09F2A6279B48CAC09F8C7AA1F1BE02864D540C2ED1460CBA9FABCF0A546A1E ] usbcir          C:\Windows\System32\drivers\usbcir.sys
13:03:15.0992 0x2284  usbcir - ok
13:03:15.0995 0x2284  [ F83D2250256203AC5DA5E8601C1AFDD7, AC0D90E2DB3051798B9D287CF3D0E92FED4000822E65A82775A29CF896B76F04 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
13:03:16.0003 0x2284  usbehci - ok
13:03:16.0013 0x2284  [ 7FFD26742321919590ED77FCA556D65F, F7FAB63C36F8519F5A7B9091C507F3CB580C390322FAF9155CCE7F66C965B968 ] usbhub          C:\Windows\System32\drivers\usbhub.sys
13:03:16.0027 0x2284  usbhub - ok
13:03:16.0036 0x2284  [ 7A749B2863B5561BE34B39E8E249AD8F, E5B67DFAF5407007FD0CC408D6B4BA19DF59584819FC715E9F9E0FBF3EA00AAB ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
13:03:16.0052 0x2284  USBHUB3 - ok
13:03:16.0055 0x2284  [ D2109F1F4FEBF1DAC415CDC5DE876479, C8A871EBD0E5EF004BA622A73DAC36C03608CD317FDCD0A6A98608DF4CC10D55 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
13:03:16.0063 0x2284  usbohci - ok
13:03:16.0066 0x2284  [ 29C9572F2D061CFC3C0BD48A3163E343, 2527DCC9E6D421F5DC40051C787A5270EB077746785465C9AA2A2AEEF47307D5 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
13:03:16.0075 0x2284  usbprint - ok
13:03:16.0079 0x2284  [ 429477D6DEF3321FF7D3EF23CAAADA00, BB7D2AFE99736AAFFA8B0B2DABF7D6A6D5CB9563B1DE6A7E86CE7DC9D27F31C0 ] usbser          C:\Windows\System32\drivers\usbser.sys
13:03:16.0088 0x2284  usbser - ok
13:03:16.0093 0x2284  [ 0CC16F7B91C57AE9A4E44425A295FDAA, 7CEE11955E5742DA390601F565412C14A7481B8747C495CCD246696C56B426DC ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
13:03:16.0101 0x2284  USBSTOR - ok
13:03:16.0104 0x2284  [ C917D09064CDBD18F75ADC9B2C48F847, A7F6223346CCD7E84186CD0C0715014F8E3A4398298925A43290224678620D23 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
13:03:16.0112 0x2284  usbuhci - ok
13:03:16.0120 0x2284  [ 95BCCEFBC40D06484CF16144FE79B8A5, 8ABA73C5FFEDD319FB96B807AD08716698E557522478DF1A2C5D662675636AE0 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
13:03:16.0133 0x2284  USBXHCI - ok
13:03:16.0156 0x2284  [ 4CC81AB9D380A6264FF4C0C1512CF965, 76C33053D1C9155B0F3F8392FF982AD4EABEE2BBBEE89EA41DBFE8E436973EB0 ] UserDataSvc     C:\Windows\System32\userdataservice.dll
13:03:16.0198 0x2284  UserDataSvc - ok
13:03:16.0217 0x2284  [ AA24C61D88E36BA1144072227922173D, 2EBBC827E740F72EA2E75745E585378189BC0DEE91CACD7FA31BDBC5EFCF8733 ] UserManager     C:\Windows\System32\usermgr.dll
13:03:16.0247 0x2284  UserManager - ok
13:03:16.0259 0x2284  [ F4D8F67474DDA4FEF3935393AAA0173F, 5EB1700895E33972816DE4C2B920769CCE5580B83CAB8B2D7A8A6264F3A42B80 ] USER_ESRV_SVC_WILLAMETTE C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
13:03:16.0269 0x2284  USER_ESRV_SVC_WILLAMETTE - ok
13:03:16.0279 0x2284  [ 0F3C4209200F3DAD2015DA3044FA8DC3, 84DC9CB21ECD79C3BFDBBDF66173F4E2D7E6CB118E0EEA4516A6661636D4CE8F ] UsoSvc          C:\Windows\system32\usocore.dll
13:03:16.0300 0x2284  UsoSvc - ok
13:03:16.0304 0x2284  [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA4380379D677983 ] VaultSvc        C:\Windows\system32\lsass.exe
13:03:16.0312 0x2284  VaultSvc - ok
13:03:16.0327 0x2284  [ 65DDC51C472DAAE2ECE2C6962FD84255, 0959460BA8323CBC78DBFAC42CC3E9F34E7C670C3234E0F23E4A98F06BDE44FA ] VBoxDrv         C:\Windows\system32\DRIVERS\VBoxDrv.sys
13:03:16.0348 0x2284  VBoxDrv - ok
13:03:16.0360 0x2284  [ 86A32C930CDB2B116EDEB81C400E2731, 7C181F018DAEED0DE8821F9E166886D7D556B98CC546D5538F56EF35107EA862 ] VBoxNetAdp      C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys
13:03:16.0370 0x2284  VBoxNetAdp - ok
13:03:16.0378 0x2284  [ 1D647FFFC6BC8DD5AEEA9734DA5BFA0E, 4C38428CBD46D9EC0A46C43D93DFBCB0D70EC5AA861C8735528BDB71B321FDE8 ] VBoxNetLwf      C:\Windows\system32\DRIVERS\VBoxNetLwf.sys
13:03:16.0386 0x2284  VBoxNetLwf - ok
13:03:16.0392 0x2284  [ 0C975121A2D3EE846876356F8A73AFC5, 8151AE511C5CBA6031A7FD4C3E942944B79029980C1144D364D060A09756982D ] VBoxUSBMon      C:\Windows\system32\DRIVERS\VBoxUSBMon.sys
13:03:16.0401 0x2284  VBoxUSBMon - ok
13:03:16.0404 0x2284  [ F257A2737280F0076EAE3AB489C06474, A02E37292D86E675D55C13097E9F107C73DDFD8AAC69310F7D9910A811A541D8 ] VClone          C:\Windows\System32\drivers\VClone.sys
13:03:16.0413 0x2284  VClone - ok
13:03:16.0416 0x2284  [ 0CBDE344FB48E42D78E29469F202ADBC, A1C3FBA5409DD3BBEAF1D3CE2583D6C8A621C0E4F534155EC540AFD67BC9E8CA ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
13:03:16.0429 0x2284  vdrvroot - ok
13:03:16.0443 0x2284  [ 0783EDE1FA94649ED7F3CEF6A734041A, 1A13A613EF6B67459031C7994FFC6F32F73E02E0F123A171618E4F011C635684 ] vds             C:\Windows\System32\vds.exe
13:03:16.0468 0x2284  vds - ok
13:03:16.0474 0x2284  [ 85241F789CE859665B0F97BE03FF5F25, F9506BE1AA0C9BE40069110224D7A879E9025F2ACA8B60F6CCC5AA2BB0FA9303 ] veracrypt       C:\Windows\system32\drivers\veracrypt.sys
13:03:16.0482 0x2284  veracrypt - ok
13:03:16.0488 0x2284  [ 723195568C8755CAD57F7933C5F2C5C2, 5C403799F67223605F825BC16D217C1EF5E1A0DDF00AC6380FE8976339B67D9B ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
13:03:16.0498 0x2284  VerifierExt - ok
13:03:16.0510 0x2284  [ C12B4859FC255AA6B3021CF8BB14A11F, E95922351825D23ABCADD173E9256FC9AFFF28555DD1971CFF5666A2055958C5 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
13:03:16.0528 0x2284  vhdmp - ok
13:03:16.0531 0x2284  [ 7929228F0E8B0C2FA0495A17A4FC27F6, 1F1667B10A96B1D85ED165F62A5C0EF28C37F828B8280EA08BFCC1BAC03F2C90 ] vhf             C:\Windows\System32\drivers\vhf.sys
13:03:16.0541 0x2284  vhf - ok
13:03:16.0545 0x2284  [ AEE432ED868831B1F068E373598F6D93, BAE91F47B0CB94B826CA010B490AD924D7B715911DF3FCE62F9165F3B571105C ] vmbus           C:\Windows\system32\drivers\vmbus.sys
13:03:16.0553 0x2284  vmbus - ok
13:03:16.0556 0x2284  [ 9444B23FC694B5F90F21B0FC7F10D8DD, 86F92856F5C985DD8E5993B51E85E1F47EF8C9B2FB37468998C94266963BB4BD ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
13:03:16.0565 0x2284  VMBusHID - ok
13:03:16.0568 0x2284  [ 4D0287F566B36536DD812A54C015FC4A, 01D6508CA59CF04A47902B1F7C202FD14A81240E0B447588D919DD1072B040CF ] vmgid           C:\Windows\System32\drivers\vmgid.sys
13:03:16.0576 0x2284  vmgid - ok
13:03:16.0584 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicguestinterface C:\Windows\System32\icsvc.dll
13:03:16.0599 0x2284  vmicguestinterface - ok
13:03:16.0606 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicheartbeat   C:\Windows\System32\icsvc.dll
13:03:16.0620 0x2284  vmicheartbeat - ok
13:03:16.0626 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmickvpexchange C:\Windows\System32\icsvc.dll
13:03:16.0640 0x2284  vmickvpexchange - ok
13:03:16.0648 0x2284  [ 0F621B52259D88A719AA20C6D04E3D72, 80B0528CCDE6E1B6F092787E1C0769C649698B196602859A5855134F0ECCBAE5 ] vmicrdv         C:\Windows\System32\icsvcext.dll
13:03:16.0665 0x2284  vmicrdv - ok
13:03:16.0672 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicshutdown    C:\Windows\System32\icsvc.dll
13:03:16.0686 0x2284  vmicshutdown - ok
13:03:16.0693 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmictimesync    C:\Windows\System32\icsvc.dll
13:03:16.0707 0x2284  vmictimesync - ok
13:03:16.0714 0x2284  [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D177FD3FAED516119 ] vmicvmsession   C:\Windows\System32\icsvc.dll
13:03:16.0728 0x2284  vmicvmsession - ok
13:03:16.0735 0x2284  [ 0F621B52259D88A719AA20C6D04E3D72, 80B0528CCDE6E1B6F092787E1C0769C649698B196602859A5855134F0ECCBAE5 ] vmicvss         C:\Windows\System32\icsvcext.dll
13:03:16.0751 0x2284  vmicvss - ok
13:03:16.0755 0x2284  [ 29075915F9BDC3437F8BED71C067D399, 2C7718080C11DFDD4C9A2085537F78F5633369B4A27D9C64168F0249594A4AA2 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
13:03:16.0763 0x2284  volmgr - ok
13:03:16.0772 0x2284  [ 6BDB6CE6D2D9E3D3F28F1C97E12B62E2, 5E77D7AF858D7B90FF395F39B86D6F96413D1DDEA28BC9FB40C5524A4DF6DAD0 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:03:16.0784 0x2284  volmgrx - ok
13:03:16.0791 0x2284  [ BF2546583BB75F01DDA60A7921DFB230, 579BD0BC55F4F03CD8D1FCDAC3975A1649C688820F2F7FC1AD354132D9E3BEE9 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:03:16.0804 0x2284  volsnap - ok
13:03:16.0807 0x2284  [ AC2E20A74D09D24485BE8396CE04F07B, 23FCE8BEE01B89E5CDCA536D75DBA6DCE3E92E13178A66836CEB7829310A89D1 ] volume          C:\Windows\system32\drivers\volume.sys
13:03:16.0814 0x2284  volume - ok
13:03:16.0818 0x2284  [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4CC1037B9CB3A27 ] vpci            C:\Windows\System32\drivers\vpci.sys
13:03:16.0827 0x2284  vpci - ok
13:03:16.0832 0x2284  [ FD9BCB8920973CEAD4D49DC7A6D8A618, 34AB4A485FB40DF737600006D8323BE927FB0BDA2BC170F4C123BE775EAE7CC8 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
13:03:16.0842 0x2284  vsmraid - ok
13:03:16.0866 0x2284  [ 01FFD5AF533F2CFDF26DDDC9313731C1, BFF0F2E57CD2358AC8F519F6F5692A46D97EC4E9B763D47101CEF31712FD4738 ] VSS             C:\Windows\system32\vssvc.exe
13:03:16.0909 0x2284  VSS - ok
13:03:16.0918 0x2284  [ 0C111F220798CCE80484026E06822379, B98A5E44D3ABA67E6DE99E18BF3C2C606923E6269E262665C721F672ACBBED2A ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
13:03:16.0929 0x2284  VSTXRAID - ok
13:03:16.0933 0x2284  [ 607639716E9DB1CEF4E18B5B229293B4, 1D997177093F907EFE8A04AD10443BB9C355C0D7657DBD449E7EE7FCABC3ECBC ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
13:03:16.0942 0x2284  vwifibus - ok
13:03:16.0946 0x2284  [ B1ED64E628763148BF84FBE23F2AD711, 6182A39675E6049BC3DD353694720795A8E3D0331509AA8ABA4883D5C569AD5E ] vwififlt        C:\Windows\system32\drivers\vwififlt.sys
13:03:16.0956 0x2284  vwififlt - ok
13:03:16.0966 0x2284  [ 76C1CC611352499326001F25A3ED15F8, 228BFA8A01BB1B3868576D509A2EA6F3D37FEDC8F12D4DC4E0A84CE926C6D1B1 ] W32Time         C:\Windows\system32\w32time.dll
13:03:16.0987 0x2284  W32Time - ok
13:03:16.0991 0x2284  [ 55D00B785A7587F4263D125817871283, B92400B229099C1E243F2B149881A1423A2E9C8CA2D77D868B9B923BFDEC7FF2 ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
13:03:16.0999 0x2284  WacomPen - ok
13:03:17.0007 0x2284  [ 1483BE4D0135C378CB61D3CD73AB3E03, B7309C9E4F370860C507BF52D17234CDF4A7FAE95D2D822714E07EF5DEC0249B ] WalletService   C:\Windows\system32\WalletService.dll
13:03:17.0027 0x2284  WalletService - ok
13:03:17.0031 0x2284  [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92A6E0A9FDC586DB ] wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
13:03:17.0045 0x2284  wanarp - ok
13:03:17.0048 0x2284  [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92A6E0A9FDC586DB ] wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:03:17.0061 0x2284  wanarpv6 - ok
13:03:17.0083 0x2284  [ 30B8286F8FE1AE90A583100D45E02247, 3C86A4A5E21F9A1267EA231B20914E0A162BA4C25FE8917AD3AB6D504DA5BE0C ] wbengine        C:\Windows\system32\wbengine.exe
13:03:17.0126 0x2284  wbengine - ok
13:03:17.0141 0x2284  [ 7C4FAE7A8D55C897E5AE681B245A005F, 7E1E6299579BF02E89C5B828A1C19A43FF4E1F43D46D058F8DC0A8E6421C86A7 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:03:17.0169 0x2284  WbioSrvc - ok
13:03:17.0174 0x2284  [ E330144B97D493AA886000DCAAA8DAF5, ED86F46F5A76FD8F06CA98BD61B174ADB9AD4B065394356872708DF8B614E4F9 ] wcifs           C:\Windows\system32\drivers\wcifs.sys
13:03:17.0182 0x2284  wcifs - ok
13:03:17.0195 0x2284  [ 32960EA9CF836D7DD77767DCB68CE230, 679446A4FAB0331C181D2716CAEA225267C6164BB9867E360C5B3D6AB1083195 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
13:03:17.0223 0x2284  Wcmsvc - ok
13:03:17.0232 0x2284  [ D50645235A507B0546B1B5CF7D0B8849, 19F5FE10C953B8EE8EEDA9A9F7F2E97AA193BB085E7FC364066686089ADD1C9F ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:03:17.0253 0x2284  wcncsvc - ok
13:03:17.0257 0x2284  [ AEA1093B751339267D8C8C1EF3D669CF, 8F3325E7FB16BD856A0593C36F2E3E018909038C52CD5F92E116E0C1366F31CB ] wcnfs           C:\Windows\system32\drivers\wcnfs.sys
13:03:17.0267 0x2284  wcnfs - ok
13:03:17.0271 0x2284  [ D520B1B849B6D4D707AB31722B952C2D, 149BABB7BD63C1F212ADD9306C84FFB2A5CE6DC435BD3213EAB787E9B222C61F ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
13:03:17.0282 0x2284  WdBoot - ok
13:03:17.0297 0x2284  [ 5030C76047D756263093A47B82970868, E772F15973F6DE36851DD230F1F4190746CD81CA1E7284DC074711C4BF45CAF0 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:03:17.0317 0x2284  Wdf01000 - ok
13:03:17.0324 0x2284  [ 29FF9199EDEB4F5470BB134D1A2563D2, 94713F98A6EA6042203D5DD0DE6758F5F0F331F7D4BB05E91EF20CEEEBD6780F ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
13:03:17.0336 0x2284  WdFilter - ok
13:03:17.0340 0x2284  [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA2365503A473FC6D9507 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:03:17.0354 0x2284  WdiServiceHost - ok
13:03:17.0357 0x2284  [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA2365503A473FC6D9507 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:03:17.0372 0x2284  WdiSystemHost - ok
13:03:17.0384 0x2284  [ 8CB606A3057355FD5A9DBDD1A0AC94EF, 6DD0B4A2270633086EBB569A00B87430EE6EF173525E341404B15845B57BE86D ] wdiwifi         C:\Windows\system32\DRIVERS\wdiwifi.sys
13:03:17.0408 0x2284  wdiwifi - ok
13:03:17.0414 0x2284  [ 17CF416CFF408190F5A4CBD79AB12E55, E376C8865C7EA633AE20D2CF940E4C7584AC783BAAF7941780FB6C4C84802F33 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
13:03:17.0424 0x2284  WdNisDrv - ok
13:03:17.0426 0x2284  WdNisSvc - ok
13:03:17.0433 0x2284  [ 3570C4E14F85CE0B537D126727ACA91C, A474C9E6B6E4E5945C63367C1D3D24D4782C4A4FEB00FAE15DFED099D8283078 ] WebClient       C:\Windows\System32\webclnt.dll
13:03:17.0448 0x2284  WebClient - ok
13:03:17.0454 0x2284  [ 1785F9C96A0BDEC1F6E0C79EF412F342, D6D4EDA69457BEDDA69C2F60FC4C2FAC97D46CD8E9C1804CCD68F169383583E3 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:03:17.0469 0x2284  Wecsvc - ok
13:03:17.0472 0x2284  [ B9175D63527B05131F2FA504CF0265F2, 1E43A17788F1B6A29E2889C81E0BE100D64BD3A9DEE7C154D9581F01D2D7D05F ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
13:03:17.0483 0x2284  WEPHOSTSVC - ok
13:03:17.0487 0x2284  [ 5C58EC0C9D4DE04DCDE56F6DCEA62080, 8ED386EDF4C39C339CE0BB2AC7E199C38705E5A6B3F56A4987B9A8ABD19BB59F ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:03:17.0504 0x2284  wercplsupport - ok
13:03:17.0508 0x2284  [ F899B355CC95AF26AB36E84E8A0DD685, C400F2F80FFF6473FEF066943C4A2AFF0FFE988A4F755757A2E5005C2A10DAD8 ] WerSvc          C:\Windows\System32\WerSvc.dll
13:03:17.0522 0x2284  WerSvc - ok
13:03:17.0526 0x2284  [ E1785942AC51FEE6826CDF02075C5AA9, 56FE7017684086F4F9C3A2C0D3AC00369BA0938BA3987EEBEE9A75B8E3CA0AE1 ] WFPLWFS         C:\Windows\system32\drivers\wfplwfs.sys
13:03:17.0536 0x2284  WFPLWFS - ok
13:03:17.0541 0x2284  [ B154618505A6A9026EFA6AB8C4123BF1, 713648D71AA027B4472E7E75B942630DBE7383687984B02A5E99C9E4192C95EB ] WiaRpc          C:\Windows\System32\wiarpc.dll
13:03:17.0555 0x2284  WiaRpc - ok
13:03:17.0559 0x2284  [ 0CF79A0EACFFBB75A50A469A27696D02, E112BF7B5A8D0B0AD2EA0E7B9FD4E8CFEC9371C8E94A60248292D688AFE715C4 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:03:17.0567 0x2284  WIMMount - ok
13:03:17.0568 0x2284  WinDefend - ok
13:03:17.0574 0x2284  [ 0DE131733317EB4BE67028366B0CAAC6, AC7DADBF03A3752B4D33CA19F03DBCEDD6F56893C2DA25C98B0AB07063D990E3 ] WindowsTrustedRT C:\Windows\system32\drivers\WindowsTrustedRT.sys
13:03:17.0583 0x2284  WindowsTrustedRT - ok
13:03:17.0585 0x2284  [ 92EB5D38BDF10C790450F3E46BF93A0E, 0FC027398DBD43EDC1F7D703C0B6DB20294DF34E67C9288442039B1A5663CE1B ] WindowsTrustedRTProxy C:\Windows\system32\drivers\WindowsTrustedRTProxy.sys
13:03:17.0592 0x2284  WindowsTrustedRTProxy - ok
13:03:17.0606 0x2284  [ C9E7D91A044B77CBCB4121C06610A86C, 9FF039D67A5CE4732920EA4F1F5CFD9DE0AAADC34829A007EA697030D42D3623 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
13:03:17.0635 0x2284  WinHttpAutoProxySvc - ok
13:03:17.0639 0x2284  [ F95DE20312ACCA7761446DE152BD1F7C, F6C5ACA500C2182437F4A7402BD81C3A2B77C0BBD78BA31FB574DC1997FCBFE6 ] WinMad          C:\Windows\System32\drivers\winmad.sys
13:03:17.0647 0x2284  WinMad - ok
13:03:17.0659 0x2284  [ CD49CA8E3280ACEEC5ECF431A59F5EFD, 75F48EFC6DEE9E06B490703EE47602AFDEA51505285B02D2CF884601E71857CC ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:03:17.0676 0x2284  Winmgmt - ok
13:03:17.0728 0x2284  [ 858D157886D47E085493325D347459B8, 1F6B87B667FED9CA8E184D967E60DE9D9644649EAA82D917B592551BABC3182C ] WinRM           C:\Windows\system32\WsmSvc.dll
13:03:17.0813 0x2284  WinRM - ok
13:03:17.0823 0x2284  [ 4EFB346BFDAEEB29316AA52BBB9852B1, 4BC5554F44BD9549D0A929D77BD410FA3EB502A7D0170303D369268672505494 ] WINUSB          C:\Windows\System32\drivers\WinUSB.SYS
13:03:17.0834 0x2284  WINUSB - ok
13:03:17.0838 0x2284  [ 8B9AFF5F08E66A6F1F1063DEC9457FB6, 98F2AF6988D125521FD34CAA48B9652922F0C8ECFAE9B0C1DF4B3CE6B9CF500F ] WinVerbs        C:\Windows\System32\drivers\winverbs.sys
13:03:17.0847 0x2284  WinVerbs - ok
13:03:17.0859 0x2284  [ 4D694EDF85F1BFC463B15846D4E00A9B, 4ED44C0E22D2843121E4C8A58F97B526BB7D85C0D7A0BB4B1158A970258C791E ] wisvc           C:\Windows\system32\flightsettings.dll
13:03:17.0884 0x2284  wisvc - ok
13:03:17.0920 0x2284  [ 7671078AEF4C0203B053A9642C401FF7, BBFADA89CD31F20ADDBFAFAD2E492C72D82BF2F8B823BB6773F04D229B62534C ] WlanSvc         C:\Windows\System32\wlansvc.dll
13:03:17.0982 0x2284  WlanSvc - ok
13:03:18.0015 0x2284  [ 7A98AF088E0B1A5EB98863B14F493716, 8B2F8D02AC0637C72859AF29C05C01D7D1C81C6A15CBE2D579F27F3254E66076 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
13:03:18.0071 0x2284  wlidsvc - ok
13:03:18.0075 0x2284  [ 6F4F4F5A007D1710BD76FB311DA97C07, FC0FEA4364F6BA4E31DBC82735D09D429CA3BE9AFCFF5D5E1263D8B27FC2CE3E ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
13:03:18.0083 0x2284  WmiAcpi - ok
13:03:18.0090 0x2284  [ 3CDDFF6CAD962C5EF1C52FD667C358B6, F6F09145E9461EB17172988D26749FCF36920A1A683459334D04A6D072B31A92 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:03:18.0102 0x2284  wmiApSrv - ok
13:03:18.0105 0x2284  WMPNetworkSvc - ok
13:03:18.0111 0x2284  [ 43C8D087B31C592163B33A4BDA540E40, 3A6C4E5E56931B29321DCC723585F2F0E804EF4DCDEAB2A8687F30FC3AE70E43 ] Wof             C:\Windows\system32\drivers\Wof.sys
13:03:18.0121 0x2284  Wof - ok
13:03:18.0149 0x2284  [ 909CB4BBF7B08E78C363000E09E79A6F, 217205D1B5EE03274AFF9405AED6D2A5665CBA4C3876E84B53DA44920CDF9CB1 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
13:03:18.0199 0x2284  workfolderssvc - ok
13:03:18.0204 0x2284  [ F02930EB91596042F2221397D60AFCE5, 10E2AB0993B67CBAA9E11C68280608965064EC9F7E0C570F5B453FACADB8AB5D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:03:18.0216 0x2284  WPDBusEnum - ok
13:03:18.0220 0x2284  [ 75A9284F01FE7CB1A7D5EAE5C1EB4F33, 390EF23AEA06D8711555F7979FF8BE0620B53C1A551638C4EC6FB7C6678965B3 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
13:03:18.0227 0x2284  WpdUpFltr - ok
13:03:18.0233 0x2284  [ 60E2EB3E7B7F15C25E02462159F90707, D8344B529EEC0D4922CAC3E6897CC9F191ACF1376017BE38ED6BF6019F1ED181 ] WpnService      C:\Windows\system32\WpnService.dll
13:03:18.0249 0x2284  WpnService - ok
13:03:18.0253 0x2284  [ C7C91FB86A3C6CD7619725A88ED1884C, 132C43C518F37BF303D768BD5FB0AB835F693C43FE693937D804A34E940D770F ] WpnUserService  C:\Windows\System32\WpnUserService.dll
13:03:18.0264 0x2284  WpnUserService - ok
13:03:18.0268 0x2284  [ 36D7B73ADC3E10607ED6EC874AFB5D1E, 1737B3E4D2CA76BB27903BF460E4960E6A0BC32D35069AC7C5E4B07F625F3282 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:03:18.0278 0x2284  ws2ifsl - ok
13:03:18.0283 0x2284  [ 519806FBCF00A0B17B8E03297DB0F551, 1911EA7168B06DBF3D36833120E4731437BF1ACC294C289B132C50280A40F548 ] wscsvc          C:\Windows\System32\wscsvc.dll
13:03:18.0298 0x2284  wscsvc - ok
13:03:18.0300 0x2284  WSearch - ok
13:03:18.0336 0x2284  [ 92E3A595ECA98F09B72A1E68ACB4651A, 161CAC79B0D908F0C0B219B07FEEF2280C31860A8661426EB2095ABCEB56CF13 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:03:18.0395 0x2284  wuauserv - ok
13:03:18.0402 0x2284  [ AED7FE551E8672B824A56324076183EB, FFE543AAEFDEFFE6B20C244DB141A9425BDA88ED36F4870F0B70FEC433BDF0C1 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:03:18.0411 0x2284  WudfPf - ok
13:03:18.0417 0x2284  [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADED20EB6ECEBB55D ] WUDFRd          C:\Windows\system32\drivers\WudfRd.sys
13:03:18.0430 0x2284  WUDFRd - ok
13:03:18.0434 0x2284  [ 47F6450F28BAA32B2AB0D6BE00996249, C8A47D6ADF89AD613AB685C6224B9099DCEFDCD8ABCF703542AFDC356404116E ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:03:18.0448 0x2284  wudfsvc - ok
13:03:18.0453 0x2284  [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADED20EB6ECEBB55D ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
13:03:18.0466 0x2284  WUDFWpdFs - ok
13:03:18.0484 0x2284  [ D4F2FFCF5D199152DD01026D3AA38138, 4F90FE9BFC6CC2ABB2A163A36A000458A96AB64071861582F17B74C95CAEFB32 ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:03:18.0523 0x2284  WwanSvc - ok
13:03:18.0540 0x2284  [ F39D6915451D9226AC9A5E7AE70E2ABA, E05D678DC0423A4D0EB8B3BB5A942721BB4F3B0BED22748252DBD6053FE956F1 ] XblAuthManager  C:\Windows\System32\XblAuthManager.dll
13:03:18.0573 0x2284  XblAuthManager - ok
13:03:18.0591 0x2284  [ 765FF96467A26C4C03281ECA426EC2D9, 2526B03C518D72F429C29BA4D4F11707AF277BF71520A1A92238A932950AE161 ] XblGameSave     C:\Windows\System32\XblGameSave.dll
13:03:18.0629 0x2284  XblGameSave - ok
13:03:18.0636 0x2284  [ 59335CEA021FB89E07AD5DB5D17F09D0, 33FEFD5798BFA306FBEDCC8F2D0D984B6546A61B5026E921A8AC0466ADF2B698 ] xboxgip         C:\Windows\System32\drivers\xboxgip.sys
13:03:18.0650 0x2284  xboxgip - ok
13:03:18.0667 0x2284  [ 335E6F2BE58523B295945C840C185B00, 94ED7E2CB212A3D55B8A2CB90CD1D02A6AF92DC0DDD487CB5B7CAC9883343460 ] XboxNetApiSvc   C:\Windows\system32\XboxNetApiSvc.dll
13:03:18.0704 0x2284  XboxNetApiSvc - ok
13:03:18.0708 0x2284  [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A92B48B1E5AFE8A ] xinputhid       C:\Windows\System32\drivers\xinputhid.sys
13:03:18.0718 0x2284  xinputhid - ok
13:03:18.0719 0x2284  ================ Scan global ===============================
13:03:18.0722 0x2284  [ 0C710DB449712EE13ACE733695DB7780, BBC7875B38D318CE4E88979D083AC72E8993254A466A8A6882DDE9E0C3B687A3 ] C:\Windows\system32\basesrv.dll
13:03:18.0727 0x2284  [ 90D408D3F440591978DB7E81C1129EA5, 095248FC0792525FC0F4B370490946A76A089DEF17BD9112FFAD6C3569F9FD7B ] C:\Windows\system32\winsrv.dll
13:03:18.0734 0x2284  [ 1EE06E957B0B2CA52D26DA7861E160EF, 4B743A1C7010138F5F6684BBCF7CAD6FD05F49920BDD3FDB776347AA6B44AB94 ] C:\Windows\system32\sxssrv.dll
13:03:18.0743 0x2284  [ 133390D061D94917125DC666DA67ECD0, 69D6FFF3E0A0C4D77A62B4D71E1E3A8D10D93C46782A1B05F0EC4B8919C384B9 ] C:\Windows\system32\services.exe
13:03:18.0750 0x2284  [ Global ] - ok
13:03:18.0751 0x2284  ================ Scan MBR ==================================
13:03:18.0752 0x2284  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:03:19.0538 0x2284  \Device\Harddisk0\DR0 - ok
13:03:19.0544 0x2284  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
13:03:19.0685 0x2284  \Device\Harddisk1\DR1 - ok
13:03:19.0686 0x2284  ================ Scan VBR ==================================
13:03:19.0717 0x2284  [ 0AEA4EF3B5F69837FC2E32512F24A04B ] \Device\Harddisk0\DR0\Partition1
13:03:19.0720 0x2284  \Device\Harddisk0\DR0\Partition1 - ok
13:03:19.0726 0x2284  [ A1148E7369E9F854D3781C0C1A0D07A7 ] \Device\Harddisk1\DR1\Partition1
13:03:19.0729 0x2284  \Device\Harddisk1\DR1\Partition1 - ok
13:03:19.0735 0x2284  [ 8FE5FD866B63479A2C3D56B605219CF1 ] \Device\Harddisk1\DR1\Partition2
13:03:19.0737 0x2284  \Device\Harddisk1\DR1\Partition2 - ok
13:03:19.0738 0x2284  ================ Scan generic autorun ======================
13:03:19.0764 0x2284  [ 2B282A4050FE3B4B70EF9E3070BBFF78, 019B667781F5CE411AEB569EAA4095FA2B9942E43A6A1DFC6EEBB2DA214131FE ] C:\Program Files (x86)\FreePDF_XP\fpassist.exe
13:03:19.0795 0x2284  FreePDF Assistant - detected UnsignedFile.Multi.Generic ( 1 )
13:03:19.0873 0x2284  Detect skipped due to KSN trusted
13:03:19.0873 0x2284  FreePDF Assistant - ok
13:03:19.0885 0x2284  [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
13:03:19.0906 0x2284  VirtualCloneDrive - ok
13:03:20.0062 0x2284  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:03:20.0188 0x2284  OneDriveSetup - ok
13:03:20.0309 0x2284  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:03:20.0435 0x2284  OneDriveSetup - ok
13:03:20.0558 0x2284  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:03:20.0684 0x2284  OneDriveSetup - ok
13:03:20.0807 0x2284  [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCDC851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:03:20.0933 0x2284  OneDriveSetup - ok
13:03:20.0949 0x2284  [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Kolle\AppData\Local\Microsoft\OneDrive\OneDrive.exe
13:03:20.0963 0x2284  OneDrive - ok
13:03:20.0967 0x2284  Waiting for KSN requests completion. In queue: 232
13:03:21.0993 0x2284  AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\wmiav.exe ( 17.0.0.611 ), 0x41000 ( enabled : updated )
13:03:21.0994 0x2284  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
13:03:21.0997 0x2284  FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\wmiav.exe ( 17.0.0.611 ), 0x41010 ( enabled )
13:03:22.0144 0x2284  ============================================================
13:03:22.0144 0x2284  Scan finished
13:03:22.0144 0x2284  ============================================================
13:03:22.0167 0x1938  Detected object count: 0
13:03:22.0167 0x1938  Actual detected object count: 0
         

Alt 27.10.2016, 14:22   #11
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Da ist keine Malware. Da spinnt wohl diene Maus rum oder du brauchst ein vernünftiges Mauspad!

Wir schauen noch nach Adware:

Adware/Junkware/Toolbars entfernen

Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop!
Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren!


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 27.10.2016, 15:31   #12
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



***AdwCleaner Log***

Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 27/10/2016 um 15:27:35
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-10-27.1 [Server]
# Betriebssystem : Windows 10 Pro  (X64)
# Benutzername : Kolle - DESKTOP-9RCQFIO
# Gestartet von : C:\Users\Kolle\Desktop\AdwCleaner_6.030.exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****

Keine schädlichen Dienste gefunden.


***** [ Ordner ] *****

Keine schädlichen Ordner gefunden.


***** [ Dateien ] *****

Keine schädlichen Dateien gefunden.


***** [ DLL ] *****

Keine infizierten DLLs gefunden.


***** [ WMI ] *****

Keine schädlichen Schlüssel gefunden.


***** [ Verknüpfungen ] *****

Keine infizierten Verknüpfungen gefunden.


***** [ Aufgabenplanung ] *****

Keine schädlichen Aufgaben gefunden.


***** [ Registrierungsdatenbank ] *****

Keine schädlichen Elemente in der Registrierungsdatenbank gefunden.


***** [ Internetbrowser ] *****

Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [1193 Bytes] - [27/10/2016 15:27:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1266 Bytes] ##########
         
***JRT LOG***

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Pro x64 
Ran by Kolle (Administrator) on 27.10.2016 at 15:28:15,27
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1 

Successfully deleted: C:\Windows\prefetch\DRIVERUPDATEUI.EXE-76F67FE2.pf (File) 



Registry: 3 

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{093F479D-712E-46CD-9E06-62E734A05F68} (Registry Value) 




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.10.2016 at 15:28:47,61
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Alt 27.10.2016, 16:25   #13
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Da war nichtmal richtig Adware...
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 27.10.2016, 17:33   #14
kolle_kollee
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Dann kann ich davon ausgehen, dass es wahrscheinlich an der Hardware liegt? Mir macht nur der Runde Kreis um den Mauszeiger Sorgen, wo kann der herkommen? Kann es sei das sich die Schadsoftware auch auf meiner D-Link NAS Box eingenistet hat?

Alt 28.10.2016, 10:50   #15
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Standard

Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.



Das bitte im passenden Subforum behandeln. Neues Thema öffnen => Netzwerk und Hardware - Trojaner-Board


Dann wären wir durch!

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen.

Abschließend müssen wir noch ein paar Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern.


Cleanup:

Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.

Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen.


Absicherung:
Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen - sofern benötigt, wenn nicht benötigt natürlich sinnigerweise deinstallieren oder Alternativen verwenden (und diese aktuell halten).
  • Browser (Internet Explorer, Edge, Firefox, Chrome, ...)
  • Java (bitte wirklich nur installieren/installiert lassen wenn unbedingt nötig!)
  • Flash-Player (nach Möglichkeit deinstallieren und HTML5 verwenden siehe zB https://www.youtube.com/html5 )
  • PDF-Reader (nach Möglichkeit nicht den Adobe Reader verwenden)

Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren.
Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen.

Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig.

Verwende ein einziges der folgenden Antivirusprogramme mit Echtzeitscanner und stets aktueller Signaturendatenbank:

   
 

Microsoft Security Essentials (MSE) ist ab Windows 8 fest eingebaut, wenn du also Windows 8, 8.1 oder 10 und dich für MSE entschieden hast, brauchst du nicht extra MSE zu installieren. Bei Windows 7 muss es aber manuell installiert oder über die Windows Updates als optionales Update bezogen werden. Selbstverständlich ist ein legales/aktiviertes Windows Voraussetzung dafür.

Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und/oder mit dem ESET Online Scanner scannen.

Optional:

NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. NoScript kann gerade bei technisch nicht allzu versierten Nutzern beim Surfen zum Nervfaktor werden; ob das Tool geeignet ist, muss jeder selbst mal ausprobieren und dann für sich entscheiden. Alternativen zu NoScript (wenn um das das Verhindern von Usertracking und Werbung auf Webseiten) geht wären da Ghostery oder uBlock. Ghostery ist eine sehr bekannte Erweiterung, die aber auch in Kritik geraten ist, vgl. dazu bitte diesen Thread => Ghostery schleift Werbung durch

Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen.


Lade Software von einem sauberen Portal wie .
Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen.
Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner .


Abschließend noch ein paar grundsätzliche Bemerkungen:
Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems.
Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Thema geschlossen

Themen zu Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.
abgesicherten, antworten, datei, einfach, frage, guten, kaspersky, löschen, mail, maus, modus, neu, nicht mehr, nichts, phänomen, plötzlich, rechner, starten, treiber, trojaner, verdächtige, verschwunden, video, windows, wirklich



Ähnliche Themen: Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein.


  1. [Windows 7 64Bit] Maus bleibt hängen und bewegt sich dann nur noch stockend
    Plagegeister aller Art und deren Bekämpfung - 27.06.2015 (8)
  2. CPU zu 100% ausgelastet ohne erkennbaren Grund
    Log-Analyse und Auswertung - 08.05.2015 (8)
  3. Win 8 64bit Laptop öffnet 3-4 Fenster im FireFox und der Mauszeiger bewegt sich von allein.
    Log-Analyse und Auswertung - 20.11.2014 (10)
  4. PC ruckelt ohne erkennbaren Grund RAM und CPU Auslastung hoch
    Alles rund um Windows - 28.09.2014 (3)
  5. Explorer stürzt ohne erkennbaren Grund ab - Problem gelöst ! Danke an Matthias (M-K-D-B)
    Lob, Kritik und Wünsche - 17.04.2014 (0)
  6. Explorer stürzt ohne erkennbaren Grund ab
    Log-Analyse und Auswertung - 16.04.2014 (18)
  7. Netbook deutlich langsamer ohne erkennbaren Grund - Evtl. Lüfter kaputt?
    Log-Analyse und Auswertung - 06.01.2014 (9)
  8. Windows Vista: Laptop Compaq Presario CQ70 stürzt ohne erkennbaren Grund immer wieder ab...
    Log-Analyse und Auswertung - 24.12.2013 (3)
  9. Bluescreen ohne erkennbaren Grund - Vireninfektion ausschließen
    Log-Analyse und Auswertung - 24.07.2013 (7)
  10. PC langsam bei hoher CPU Auslastung ohne erkennbaren Grund
    Plagegeister aller Art und deren Bekämpfung - 14.12.2012 (18)
  11. Maus Bewegt sich von allein,Game einfach gelöscht vom Rechner, Remote war Aktiv
    Plagegeister aller Art und deren Bekämpfung - 04.12.2012 (5)
  12. PC bleibt Hängen ohne erkennbaren Grund
    Alles rund um Windows - 24.01.2011 (17)
  13. Plötzlich hohe Cpu auslastung, ohne erkennbaren Grund
    Plagegeister aller Art und deren Bekämpfung - 19.11.2010 (36)
  14. Alle paar Minuten Bluesceen/Blauer Bildschirm ohne erkennbaren Grund
    Alles rund um Windows - 02.09.2010 (0)
  15. Rechner friert plötzlich ein ohne erkennbaren grund
    Log-Analyse und Auswertung - 10.08.2009 (4)
  16. Sound spielt ohne erkennbaren Grund
    Log-Analyse und Auswertung - 22.11.2008 (2)
  17. Mein Rechner hängt sich ohne erkennbaren Grund auf!
    Log-Analyse und Auswertung - 21.08.2008 (1)

Zum Thema Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. - Hallo und guten Tag, ich habe seit ein paar Tagen ein wirklich sehr eigenartiges Problem. Da ich absolut nicht mehr weiter weis, wende ich mich an euch. Als ich vor - Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein....
Archiv
Du betrachtest: Windows 10: Maus bewegt sich ohne erkennbaren Grund von allein. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.