Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: unbekanntes Programm

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 01.12.2016, 14:15   #1
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Wenn ich bei google chrome unter einstellungen gehe steht da


Chrome hat festgestellt, dass einige Ihrer Einstellungen von einem anderen Programm manipuliert wurden, und hat sie auf die ursprünglichen Standardwerte zurückgesetzt.


Ich hab den adwarcleaner und malware bytes anti malware laufen und das problem ist immer noch da.
Ich benutze Avast free antivirus
Miniaturansicht angehängter Grafiken
unbekanntes Programm-scan.jpg  

Geändert von maplo (01.12.2016 um 14:41 Uhr)

Alt 01.12.2016, 14:46   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



Zitat:
Ich hab den adwarcleaner und malware bytes anti malware laufen und das problem ist immer noch da.
Aha und die Logs dazu???
__________________

__________________

Alt 01.12.2016, 15:31   #3
maplo
 
unbekanntes Programm - Standard

die logs



Ein mal der Adwarecleaner und der Rest ist von Malwarebytes- anti malware.
__________________

Alt 01.12.2016, 15:54   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 01.12.2016, 18:18   #5
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 01/12/2016 um 15:03:02
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-12-01.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : maplo - MAPLO-PC
# Gestartet von : C:\Users\maplo\Downloads\adwcleaner_6.030 (23).exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****

Keine schädlichen Dienste gefunden.


***** [ Ordner ] *****

Keine schädlichen Ordner gefunden.


***** [ Dateien ] *****

Keine schädlichen Dateien gefunden.


***** [ DLL ] *****

Keine infizierten DLLs gefunden.


***** [ WMI ] *****

Keine schädlichen Schlüssel gefunden.


***** [ Verknüpfungen ] *****

Keine infizierten Verknüpfungen gefunden.


***** [ Aufgabenplanung ] *****

Keine schädlichen Aufgaben gefunden.


***** [ Registrierungsdatenbank ] *****

Keine schädlichen Elemente in der Registrierungsdatenbank gefunden.


***** [ Internetbrowser ] *****

Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06]
C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32]
C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06]
C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01]
C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27]
C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58]
C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44]
C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53]
C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02]
C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22]
C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02]
C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28]
C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44]
C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45]
C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15]
C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04]
C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59]
C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29]
C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33]
C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01]
C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54]
C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40]
C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25]
C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12]
C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25]
C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35]
C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58]
C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22]
C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24]
C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56]
C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19]
C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39]
C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29]
C:\AdwCleaner\AdwCleaner[S31].txt - [3645 Bytes] - [01/12/2016 15:03:02]
C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42]
C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57]
C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51]
C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44]
C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47]
C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29]
C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S31].txt - [4230 Bytes] ##########
         
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 01.12.2016
Suchlaufzeit: 15:08
Protokolldatei: Malware.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.12.01.10
Rootkit-Datenbank: v2016.11.20.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: maplo

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 355980
Abgelaufene Zeit: 12 Min., 42 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 0
(keine bösartigen Elemente erkannt)

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 19.05.2014
Suchlaufzeit: 18:43
Protokolldatei: Malwarebytes.txt
Administrator: Ja

Version: 2.00.1.1004
Malware-Datenbank: 
Rootkit-Datenbank: 
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: maplo

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 280018
Abgelaufene Zeit: 11 Min., 52 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: 
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 24
PUP.Optional.SpeedAnalysis2.A, HKLM\SOFTWARE\CLASSES\CLSID\{EB93AADE-9884-47F0-AA9D-0920E1D1203F}, In Quarantäne, [b78d85ce5a2182b4bebeca9556aceb15], 
PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8DAA9564-C7BF-43E1-ADB9-17B44DA980A6}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{B47A69DE-9B38-4EC0-996E-99F90C0F8CA5}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{B47A69DE-9B38-4EC0-996E-99F90C0F8CA5}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{5C2DD58F-613F-4580-8AC0-F10D760AF938}, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{27488090-768A-4D20-A938-F223F71C344C}, In Quarantäne, [40044d06a7d41f178e1778ead131d42c], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{27488090-768A-4D20-A938-F223F71C344C}, In Quarantäne, [40044d06a7d41f178e1778ead131d42c], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3033124F-06BF-4829-873A-310A125B4D4C}, In Quarantäne, [92b260f3ed8e1e185058a9b96a984fb1], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3033124F-06BF-4829-873A-310A125B4D4C}, In Quarantäne, [92b260f3ed8e1e185058a9b96a984fb1], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{BD3EA7C2-3AF8-4463-9A9C-6EB8E136CB02}, In Quarantäne, [a79dc98aed8e94a2d0d70a589a68768a], 
PUP.Optional.MindSpark.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{BD3EA7C2-3AF8-4463-9A9C-6EB8E136CB02}, In Quarantäne, [a79dc98aed8e94a2d0d70a589a68768a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, In Quarantäne, [61e366ed4239310559fa445b61a1a15f], 
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [ab995cf72754a88e42ea0cb4e71c1fe1], 
PUP.Optional.MediaPlayerEnhance.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\MediaPlayerEnhance, In Quarantäne, [64e067ec81fa60d6422638613ac8fc04], 
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-7.7, In Quarantäne, [cf752e25d6a51d19b4bab4dd9b679a66], 
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-8.1, In Quarantäne, [e55fada64932ae8871fd79187a88df21], 
PUP.Optional.SimpleNewTab.A, HKU\S-1-5-21-272398419-1830848293-3820193082-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SimpleNewTab, In Quarantäne, [5fe5530064172e08c91ad0b440c2956b], 
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110411361128}, In Quarantäne, [76ce322181fa999d9d644d0436ce37c9], 
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110411361128}, In Quarantäne, [76ce322181fa999d9d644d0436ce37c9], 
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110411901112}, In Quarantäne, [350faea53b4089adbf4282cf7d87ce32], 
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110411901112}, In Quarantäne, [350faea53b4089adbf4282cf7d87ce32], 

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 3
PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.awesomehp.com/web/?type=ds&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX&q={searchTerms}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/web/?type=ds&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX&q={searchTerms}),Ersetzt,[ce763b18bfbcf640d097c97bc53fd22e]
PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX),Ersetzt,[3e06e271b4c7c0768fd3d1739a6afd03]
PUP.Optional.Awesomehp.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX, Gut: (hxxp://www.google.com), Schlecht: (hxxp://www.awesomehp.com/?type=hp&ts=1392194286&from=tugs&uid=HitachiXHDS721680PLA380_PVFB04ZET0WY0ET0WY0EX),Ersetzt,[e163cf84601b9e98ef7a6ed6000452ae]

Ordner: 33
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults\preferences, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale\en-US, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults\preferences, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale\en-US, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\images, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults\preferences, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], 
PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\htmls, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], 
PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Roaming\OfferMosquito, In Quarantäne, [1e26cd864635fb3b2ca3235ef70b51af], 
PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], 

Dateien: 160
PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\simple_new_tab.dll, In Quarantäne, [46fe0152007b43f3999faf78639ff30d], 
PUP.Optional.Iminent.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\searchplugins\iminent.xml, In Quarantäne, [8abad97a1764023460570b883ac84cb4], 
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, In Quarantäne, [62e2ce85344794a22e14a1f7dd2546ba], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome.manifest, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\install.rdf, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\api.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\background.html, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\baseObject.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\browser.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\dialog.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\main.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\options.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\options.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\platformVersion.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\search_dialog.xul, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\console.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\consts.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\delegate.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\httpObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\installer.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\logFile.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\prefs.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\registry.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\reloadObserver.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\reports.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\searchSettings.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\updateManager.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\chrome\content\core\xhr.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\defaults\preferences\prefs.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\manifest.xml, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins.json, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\102_dealply_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\103_intext_5_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\104_jollywallet_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\13_CrossriderAppUtils.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\14_CrossriderUtils.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\16_FFAppAPIWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\177_crossriderDashboard.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\17_jQuery.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\182_openUrl.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\183_tabsWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\184_noproblemppc_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\1_base.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\207_dbWrapper.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\21_debug.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\229_revizer_recommended_content_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\22_resources.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\28_initializer.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\47_resources_background.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\4_jquery_1_7_1.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\64_appApiMessage.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\72_appApiValidation.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\78_CrossriderInfo.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\91_monetizationLoader.js.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\93_superfish_no_coupons_m.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\plugins\98_omniCommands.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode\background.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\extensionData\userCode\extension.js, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\15d84a30-fc9d-4fca-80a7-e5797da621a2@b2cb2d04-e262-4863-aee7-9d0e4333b550.com\locale\en-US\translations.dtd, In Quarantäne, [4103bd96c4b71323f41ab2c6c73b6997], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome.manifest, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\install.rdf, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\background.html, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\baseObject.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\browser.xul, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\dialog.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\main.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\options.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\options.xul, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\platformVersion.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\search_dialog.xul, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\asyncDB.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\background.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\browserAction.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\contextMenu.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\dbManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\dom_bg.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\fileManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefox.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefoxNotifications.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\firefoxOmnibox.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\message.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\pageAction.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\request.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\tabs.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\webRequest.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\api\windowsMessagingHandler.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\addressBarChangeObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\console.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\consts.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\delegate.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\extensionDataStore.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\httpObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\IDBWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\installer.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\logFile.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\prefs.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\registry.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\reloadObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\reports.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\requestObject.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\searchSettings.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\uninstallObserver.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\updateManager.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\utils.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\chrome\content\core\xhr.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\defaults\preferences\prefs.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\manifest.xml, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins.json, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\22_resources.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\13_CrossriderAppUtils.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\14_CrossriderUtils.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\16_FFAppAPIWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\177_crossriderDashboard.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\17_jQuery.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\182_openUrl.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\183_tabsWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\1_base.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\207_dbWrapper.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\21_debug.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\28_initializer.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\47_resources_background.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\4_jquery_1_7_1.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\64_appApiMessage.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\72_appApiValidation.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\78_CrossriderInfo.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\91_monetizationLoader.js.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\plugins\98_omniCommands.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode\background.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\extensionData\userCode\extension.js, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\locale\en-US\translations.dtd, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button1.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button2.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button3.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button4.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\button5.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\crossrider_statusbar.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon128.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon16.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon24.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\icon48.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\panelarrow-up.png, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\popup.html, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\skin.css, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.CrossRider.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\29abb661-0efc-4f64-8a89-b11430d434c4@9678608e-dc95-42b0-8db0-4ce126239776.com\skin\update.css, In Quarantäne, [43016be864171620e92597e143bf8878], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\chrome.manifest, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\install.rdf, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\savesense.xul, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\content\images\icon32.png, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SaveSense.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}\defaults\preferences\defaults.js, In Quarantäne, [c77d272c99e29c9a480ab6c2af53d22e], 
PUP.Optional.SimpleNewTab.A, C:\Users\maplo\AppData\Local\simple_new_tab\htmls\index.html, In Quarantäne, [8bb9450ee09b7bbb27a77d04f30f03fd], 
PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito\atl100.dll, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], 
PUP.Optional.OfferMosquito.A, C:\Users\maplo\AppData\Local\ext_offermosquito\msvcr100d.dll, In Quarantäne, [2e16fc578bf08caa6868344d12f0d729], 
PUP.Optional.Iminent.A, C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default\user.js, Gut: (), Schlecht: (user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q=");), Ersetzt,[91b33d16dc9fa492ff91b3c71de7f10f]

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 01.12.2016
Suchlaufzeit: 18:03
Protokolldatei: text.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.12.01.11
Rootkit-Datenbank: v2016.11.20.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: maplo

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 356345
Abgelaufene Zeit: 12 Min., 42 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 0
(keine bösartigen Elemente erkannt)

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         


Alt 02.12.2016, 09:18   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



+++ WICHTIGER HINWEIS +++


Während der Analyse und Bereinigung nimmst du KEINERLEI Änderungen auf eigene Faust vor, d.h. du installierst oder deinstallierst keine Software ohne Absprache.
Auch veränderst du keine Systemeinstellungen, solange wir deinen Fall bearbeiten. Änderungen, Installationen oder Deinstallationen machst du AUSSCHLIESSLICH nur auf Anweisung!
Es wird erforderlich sein, deinen Virenscanner zu deaktivieren und in bestimmten Fällen auch zu deinstallieren, damit vernünftig bereinigt werden kann. Dein System ist daher erst wenn wir hier fertig sind wieder für den alltäglichen Gebrauch wie surfen oder mailen von mir freigegeben.

Gelesen und verstanden?




Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
--> unbekanntes Programm

Alt 02.12.2016, 12:05   #7
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 30-11-2016
durchgeführt von maplo (Administrator) auf MAPLO-PC (02-12-2016 11:55:52)
Gestartet von C:\Users\maplo\Downloads
Geladene Profile: maplo (Verfügbare Profile: maplo & UpdatusUser)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Digital Care Solutions) C:\Program Files\BDServices\BitDefenderCOM.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Akamai Technologies, Inc.) C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(© 2015 Microsoft Corporation) C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Akamai Technologies, Inc.) C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
(FK2) C:\Windows\SysWOW64\svchospt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\maplo\Downloads\FRST64 (1).exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
HKLM-x32\...\Run: [svchospt] => C:\Windows\SysWOW64\svchospt.exe [913408 2014-05-03] (FK2)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9080768 2016-12-01] (AVAST Software)
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [Akamai NetSession Interface] => C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [BingSvc] => C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-25] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Run: [Chromium] => "c:\users\maplo\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-12-01] (AVAST Software)
GroupPolicy: Beschränkung <======= ACHTUNG
GroupPolicy\User: Beschränkung - Chrome <======= ACHTUNG

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{543668AB-CDFE-4437-BE86-F095CD616F42}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-7ac32119
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-7ac32119
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = 
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKLM-x32 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-7ac32119&q={searchTerms}
SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {B7A6409A-B6F1-4522-B15B-C42C95B3FDCD} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {BEC8914B-DE73-458B-B58E-15E89F6D7504} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
SearchScopes: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-10-20] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-12-01] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-20] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-20] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-12-01] (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-20] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-272398419-1830848293-3820193082-1001 -> Kein Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  Keine Datei
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\maplo\AppData\Roaming\Mozilla\Firefox\Profiles\3rwrhbvt.default [2016-11-30]
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\3rwrhbvt.default -> Search
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\3rwrhbvt.default -> Search
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-12-01]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-12-01]
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-20] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-20] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-11-05] (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-20] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-20] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-11-05] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-30] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-30] (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-272398419-1830848293-3820193082-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-12-30] (Tracker Software Products (Canada) Ltd.)

Chrome: 
=======
CHR DefaultProfile: Profile 1
CHR DefaultSearchURL: Profile 1 -> hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=orcl_default
CHR DefaultSearchKeyword: Profile 1 -> Yahoo
CHR DefaultSuggestURL: Profile 1 -> hxxps://de.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Default [2016-12-01]
CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1 [2016-12-02]
CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-29]
CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-20]
CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-20]
CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-20]
CHR Extension: (Google-Suche) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-08-20]
CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-29]
CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-20]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-20]
CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-20]
CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-01]
CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2 [2016-11-30]
CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-11-27]
CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2016-11-27]
CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-27]
CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eedgghdcpmmmilkmfpnklknlenbiolec [2016-11-27]
CHR Extension: (Avast SafePrice) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fabhkdeopjkcpkmofliimbjckmocfiom [2016-11-27]
CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-11-27]
CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-27]
CHR Extension: (Avast Online Security) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2016-11-27]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-11-27]
CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-27]
CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-11-27]
CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3 [2016-11-30]
CHR Extension: (Google Präsentationen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-11-27]
CHR Extension: (Google Docs) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2016-11-27]
CHR Extension: (Google Drive) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-27]
CHR Extension: (YouTube) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eedgghdcpmmmilkmfpnklknlenbiolec [2016-11-27]
CHR Extension: (Avast SafePrice) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fabhkdeopjkcpkmofliimbjckmocfiom [2016-11-27]
CHR Extension: (Google Tabellen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-11-27]
CHR Extension: (Google Docs Offline) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-27]
CHR Extension: (Avast Online Security) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-11-27]
CHR Extension: (Yahoo Partner) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2016-11-27]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-11-27]
CHR Extension: (Google Mail) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-27]
CHR Extension: (Chrome Media Router) - C:\Users\maplo\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-11-27]
CHR Profile: C:\Users\maplo\AppData\Local\Google\Chrome\User Data\System Profile [2016-11-30]
CHR HKLM-x32\...\Chrome\Extension: [eedgghdcpmmmilkmfpnklknlenbiolec] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [moagefhdcbeeaognnhggogdiepahfpho] - C:\Program Files (x86)\best-markit\150.crx <nicht gefunden>

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-12-01] (AVAST Software)
R2 BitDefenderCOM; C:\Program Files\BDServices\BitDefenderCom.exe [1028096 2016-11-21] (Digital Care Solutions) [Datei ist nicht signiert]
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4979992 2013-11-25] (INCA Internet Co., Ltd.)
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [575488 2008-09-08] (Nokia.) [Datei ist nicht signiert]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-12-01] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-12-01] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-12-01] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-12-01] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-12-01] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-12-01] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-12-01] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-12-01] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-12-01] (AVAST Software)
S3 e1kexpress; C:\Windows\System32\DRIVERS\e1k60x64.sys [220672 2009-06-10] (Intel Corporation)
U5 terminpt; C:\Windows\System32\Drivers\terminpt.sys [29696 2013-03-11] (Microsoft Corporation) [Datei ist nicht signiert]
S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-11-10] (BitDefender S.R.L.)
S3 cpuz132; \??\C:\Users\maplo\AppData\Local\Temp\cpuz132\cpuz132_x64.sys [X]
S1 dtmelqbg; \??\C:\Windows\system32\drivers\dtmelqbg.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S1 onotlzbb; \??\C:\Windows\system32\drivers\onotlzbb.sys [X]
S1 oshnyfcv; \??\C:\Windows\system32\drivers\oshnyfcv.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-02 11:54 - 2016-12-02 11:54 - 02411520 _____ (Farbar) C:\Users\maplo\Downloads\FRST64 (1).exe
2016-12-02 11:40 - 2016-12-02 11:40 - 00016363 _____ C:\Users\maplo\Downloads\Anlage_303706798600_2016-12-02_0800.pdf
2016-12-01 19:12 - 2016-12-01 19:12 - 00019468 _____ C:\Users\maplo\Downloads\Kontoauszug_303706798600_2016-12-01_0707.pdf
2016-12-01 18:25 - 2016-12-02 11:53 - 00003912 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1480613134
2016-12-01 18:25 - 2016-12-01 18:25 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-12-01 18:25 - 2016-12-01 18:25 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-12-01 18:24 - 2016-12-01 18:24 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-12-01 18:17 - 2016-12-01 18:17 - 00001207 _____ C:\Users\maplo\Documents\text.txt
2016-12-01 18:02 - 2016-12-01 18:03 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-12-01 18:02 - 2016-12-01 18:02 - 00000618 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-12-01 18:02 - 2016-12-01 18:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-12-01 18:02 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-12-01 18:02 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-12-01 18:02 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-12-01 17:56 - 2016-12-01 17:56 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer (2).exe
2016-12-01 17:51 - 2016-12-01 17:51 - 00057750 _____ C:\Users\maplo\Downloads\Malwarebytes.txt
2016-12-01 17:47 - 2016-12-01 17:47 - 00001210 _____ C:\Users\maplo\Downloads\Malware.txt
2016-12-01 17:38 - 2016-12-01 17:38 - 00004313 _____ C:\Users\maplo\Downloads\AdwCleaner[S31] (1).txt
2016-12-01 17:37 - 2016-12-01 17:37 - 00004313 _____ C:\Users\maplo\Downloads\AdwCleaner[S31].txt
2016-12-01 17:25 - 2016-12-01 17:25 - 00000000 ____D C:\Users\maplo\AppData\Roaming\AVAST Software
2016-12-01 17:23 - 2016-12-01 17:23 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-12-01 17:23 - 2016-12-01 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-12-01 17:20 - 2016-12-01 17:20 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-12-01 17:19 - 2016-12-01 17:21 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2016-12-01 17:19 - 2016-12-01 17:21 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2016-12-01 17:19 - 2016-12-01 17:21 - 00293352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2016-12-01 17:19 - 2016-12-01 17:17 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-12-01 17:19 - 2016-12-01 17:17 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-12-01 17:19 - 2016-12-01 17:17 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-12-01 17:19 - 2016-12-01 17:17 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-12-01 17:19 - 2016-12-01 17:17 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-12-01 17:17 - 2016-12-01 17:17 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-12-01 17:16 - 2016-12-01 17:16 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-12-01 17:13 - 2016-12-01 18:24 - 00000000 ___DC C:\Program Files\AVAST Software
2016-12-01 17:12 - 2016-12-01 17:13 - 06253640 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (3).exe
2016-12-01 15:23 - 2016-12-01 15:23 - 00057750 _____ C:\Users\maplo\Documents\Malwarebytes.txt
2016-12-01 15:22 - 2016-12-01 15:22 - 00001210 _____ C:\Users\maplo\Documents\Malware.txt
2016-12-01 15:04 - 2016-12-01 15:04 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer (1).exe
2016-12-01 15:03 - 2016-12-01 15:03 - 00004313 _____ C:\Users\maplo\Documents\AdwCleaner[S31].txt
2016-12-01 15:00 - 2016-12-01 15:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (24).exe
2016-12-01 15:00 - 2016-12-01 15:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (23).exe
2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ___DC C:\ProgramData\www.rene-zeidler.de
2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ____D C:\Users\maplo\AppData\Roaming\www.rene-zeidler.de
2016-12-01 14:36 - 2016-12-01 14:36 - 00000000 ____D C:\Users\maplo\AppData\Local\www.rene-zeidler.de
2016-12-01 14:30 - 2016-12-01 14:30 - 01496584 _____ C:\Users\maplo\Downloads\Snipping Tool Plus - CHIP-Installer.exe
2016-12-01 13:37 - 2016-12-01 13:38 - 06334848 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (2).exe
2016-12-01 13:33 - 2016-12-01 13:33 - 06334848 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online (1).exe
2016-12-01 12:11 - 2016-12-01 12:13 - 02956792 _____ (Google) C:\Users\maplo\Downloads\chrome_cleanup_tool.exe
2016-12-01 12:08 - 2016-12-01 12:09 - 22851472 _____ (Malwarebytes ) C:\Users\maplo\Downloads\mbam-setup-2.2.1.1043 (1).exe
2016-12-01 12:01 - 2016-12-01 12:01 - 01631928 _____ (Malwarebytes) C:\Users\maplo\Downloads\JRT.exe
2016-12-01 11:41 - 2016-12-01 11:41 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (22).exe
2016-12-01 11:40 - 2016-12-01 11:40 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 669169.crdownload
2016-12-01 10:33 - 2016-12-01 10:33 - 00000000 ____D C:\Users\maplo\AppData\Local\ElevatedDiagnostics
2016-12-01 10:19 - 2016-12-01 10:19 - 00298232 _____ C:\Windows\system32\FNTCACHE.DAT
2016-11-30 20:44 - 2016-11-30 20:44 - 00002054 _____ C:\Users\Public\Desktop\SLOW-PCfighter 2.lnk
2016-11-30 20:44 - 2016-11-30 20:44 - 00000000 ____D C:\Windows\System32\Tasks\Fighters
2016-11-30 20:44 - 2016-11-30 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters
2016-11-30 20:43 - 2016-11-30 20:44 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Fighters
2016-11-30 20:43 - 2016-11-30 20:43 - 00000000 ___DC C:\Program Files (x86)\Fighters
2016-11-30 20:42 - 2016-11-30 20:43 - 00000000 ___DC C:\ProgramData\Fighters
2016-11-30 20:41 - 2016-11-30 20:42 - 04509624 _____ (SPAMfighter ApS.) C:\Users\maplo\Downloads\slow-pcfighter_Web.exe
2016-11-30 20:17 - 2016-11-30 20:17 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (21).exe
2016-11-30 20:07 - 2016-11-30 20:07 - 00002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-30 20:07 - 2016-11-30 20:07 - 00002287 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-11-30 20:06 - 2016-12-02 11:37 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-30 20:06 - 2016-12-01 20:11 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-30 20:06 - 2016-11-30 20:06 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-11-30 20:06 - 2016-11-30 20:06 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-11-30 19:53 - 2016-11-30 19:53 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (20).exe
2016-11-30 19:03 - 2016-11-30 19:03 - 01496584 _____ C:\Users\maplo\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe
2016-11-30 18:59 - 2016-11-30 19:00 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (19).exe
2016-11-30 18:09 - 2016-11-30 18:09 - 00066064 _____ C:\Users\maplo\AppData\Local\GDIPFONTCACHEV1.DAT
2016-11-30 17:23 - 2016-11-30 17:23 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (18).exe
2016-11-30 17:22 - 2016-11-30 17:23 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (17).exe
2016-11-29 18:23 - 2016-11-29 18:23 - 05659307 _____ (Swearware) C:\Users\maplo\Downloads\ComboFix (2).exe
2016-11-29 18:11 - 2016-11-29 18:11 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (16).exe
2016-11-29 17:27 - 2016-11-29 17:28 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (15).exe
2016-11-29 10:21 - 2016-11-29 10:21 - 05659307 _____ (Swearware) C:\Users\maplo\Downloads\ComboFix (1).exe
2016-11-28 22:02 - 2016-11-28 22:02 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (14).exe
2016-11-28 22:01 - 2016-11-28 22:01 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 54710.crdownload
2016-11-28 21:23 - 2016-11-28 21:23 - 00002984 _____ C:\Windows\System32\Tasks\{19E94F83-02F8-4991-8493-62DF15BDB388}
2016-11-28 20:52 - 2016-11-28 20:53 - 00000000 __SDC C:\ComboFix
2016-11-28 20:52 - 2016-11-28 20:52 - 00000000 ___DC C:\Qoobox
2016-11-28 20:52 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2016-11-28 20:52 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2016-11-28 20:52 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2016-11-28 20:52 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2016-11-28 20:52 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2016-11-28 20:52 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2016-11-28 20:52 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2016-11-28 20:52 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2016-11-28 20:51 - 2016-11-28 20:51 - 00000000 ____D C:\Windows\erdnt
2016-11-28 20:50 - 2016-11-28 20:52 - 00000000 __SDC C:\32788R22FWJFW
2016-11-28 20:49 - 2016-11-28 20:49 - 05659307 ____R (Swearware) C:\Users\maplo\Downloads\ComboFix.exe
2016-11-28 20:48 - 2016-11-28 20:48 - 00002634 _____ C:\Users\maplo\Downloads\Winmgmt.reg
2016-11-28 20:46 - 2016-11-28 20:46 - 00000099 _____ C:\Users\maplo\Downloads\FixWscsvcWin7 (1).bat
2016-11-28 20:45 - 2016-11-28 20:46 - 00000099 _____ C:\Users\maplo\Downloads\FixWscsvcWin7.bat
2016-11-27 20:22 - 2016-11-27 20:22 - 00060965 _____ C:\Users\maplo\Downloads\pkeyuibx_v1.5.0.zip
2016-11-27 20:21 - 2016-11-27 20:22 - 01496584 _____ C:\Users\maplo\Downloads\Windows Product Key Viewer - CHIP-Installer.exe
2016-11-27 19:52 - 2016-11-27 19:52 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (3).exe
2016-11-27 19:31 - 2016-11-27 19:31 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (2).exe
2016-11-27 19:06 - 2016-11-27 19:06 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader (1).exe
2016-11-27 18:59 - 2016-11-27 19:00 - 00666624 _____ (HeiDoc.net) C:\Users\maplo\Downloads\Windows ISO Downloader.exe
2016-11-27 13:46 - 2016-11-27 13:47 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (13).exe
2016-11-27 11:58 - 2016-11-27 11:59 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (12).exe
2016-11-26 20:18 - 2016-11-26 20:18 - 00057743 _____ C:\Users\maplo\Desktop\scann.txt
2016-11-26 19:40 - 2016-11-26 19:40 - 00001925 _____ C:\Users\maplo\Desktop\scan.txt
2016-11-26 19:22 - 2016-11-26 19:23 - 22851472 _____ (Malwarebytes ) C:\Users\maplo\Downloads\mbam-setup-2.2.1.1043.exe
2016-11-26 18:46 - 2016-11-26 18:46 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (11).exe
2016-11-26 18:38 - 2016-11-26 18:39 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (10).exe
2016-11-26 18:37 - 2016-11-26 18:37 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 669081.crdownload
2016-11-26 18:37 - 2016-11-26 18:37 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (9).exe
2016-11-26 13:50 - 2016-11-26 14:15 - 00384176 _____ C:\Users\maplo\Desktop\sfcdetails.txt
2016-11-25 19:19 - 2016-11-25 19:19 - 00005594 _____ C:\Users\maplo\Downloads\Security_Center.reg
2016-11-25 18:52 - 2016-11-25 18:52 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (5).zip
2016-11-25 18:45 - 2016-11-25 18:46 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (4).zip
2016-11-25 18:40 - 2016-11-25 18:41 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (3).zip
2016-11-25 18:40 - 2016-11-25 18:41 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (2).zip
2016-11-25 13:24 - 2016-11-25 13:24 - 06253640 _____ (AVAST Software) C:\Users\maplo\Downloads\avast_free_antivirus_setup_online.exe
2016-11-25 12:34 - 2016-11-25 12:34 - 00000000 ____D C:\Windows\system32\EventProviders
2016-11-25 12:31 - 2016-11-25 12:34 - 947070088 _____ (Microsoft Corporation) C:\Users\maplo\Downloads\windows6.1-KB976932-X64.exe
2016-11-25 12:28 - 2016-11-25 12:28 - 01496584 _____ C:\Users\maplo\Downloads\HijackThis - CHIP-Installer.exe
2016-11-25 12:09 - 2016-11-25 12:09 - 01496584 _____ C:\Users\maplo\Downloads\Windows PowerShell - CHIP-Installer.exe
2016-11-25 12:07 - 2016-11-25 12:07 - 00000093 _____ C:\Users\maplo\Downloads\FixWinmgmtWin7.bat
2016-11-25 12:07 - 2016-11-25 12:07 - 00000093 _____ C:\Users\maplo\Downloads\FixWinmgmtWin7 (1).bat
2016-11-25 11:54 - 2016-11-25 11:54 - 00478720 _____ C:\Users\maplo\Downloads\SESetup.msi
2016-11-25 11:25 - 2016-11-25 11:26 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup (2).exe
2016-11-25 11:18 - 2016-11-25 11:18 - 00000000 ___DC C:\ProgramData\dllescort
2016-11-25 11:17 - 2016-11-27 11:24 - 00000000 ___DC C:\Program Files (x86)\DLLEscort
2016-11-25 11:16 - 2016-11-25 11:16 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup (1).exe
2016-11-25 11:15 - 2016-11-25 11:16 - 08778293 _____ ( ) C:\Users\maplo\Downloads\DLLEscort_Setup.exe
2016-11-25 10:54 - 2016-11-25 10:55 - 10198088 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (3).exe
2016-11-25 09:52 - 2016-11-25 11:21 - 00000456 _____ C:\Windows\Tasks\PC Health Advisor Aktualisierung.job
2016-11-25 09:52 - 2016-11-25 09:52 - 00003330 _____ C:\Windows\System32\Tasks\PC Health Advisor Aktualisierung
2016-11-25 09:52 - 2016-11-25 09:52 - 00000000 ___DC C:\Program Files\BDServices
2016-11-24 20:02 - 2016-11-24 20:02 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (2).exe
2016-11-24 19:35 - 2016-11-24 19:50 - 00000000 ___DC C:\EEK
2016-11-24 19:32 - 2016-11-24 19:34 - 254461872 _____ C:\Users\maplo\Downloads\EmsisoftEmergencyKit.exe
2016-11-24 19:18 - 2016-11-24 19:18 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de (1).exe
2016-11-24 19:01 - 2016-11-27 13:38 - 00000000 ____D C:\Windows\pss
2016-11-24 16:15 - 2016-11-24 16:16 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64) (1).zip
2016-11-24 15:39 - 2016-11-24 15:39 - 00001150 _____ C:\Users\maplo\Downloads\wscsvc(64).zip
2016-11-24 13:20 - 2016-11-24 13:21 - 00268639 _____ C:\Users\maplo\Downloads\Nicht bestätigt 204496.crdownload
2016-11-24 12:13 - 2016-11-24 12:13 - 00394752 _____ (TweakBit) C:\Users\maplo\Downloads\fehler_87-repairkit.exe
2016-11-24 11:22 - 2016-11-24 11:22 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (8).exe
2016-11-24 11:11 - 2016-11-24 11:11 - 00000000 ____D C:\Users\maplo\Documents\Neuer Ordner
2016-11-24 10:38 - 2016-11-24 10:38 - 00000000 ___DC C:\Neuer Ordner
2016-11-24 10:37 - 2016-11-24 10:37 - 00000000 ____D C:\Users\maplo\Desktop\Neuer Ordner (3)
2016-11-23 20:48 - 2016-11-23 20:48 - 00001245 _____ C:\Users\maplo\Downloads\FSS.txt
2016-11-23 20:47 - 2016-11-23 20:47 - 00899584 _____ (Farbar) C:\Users\maplo\Downloads\FSS.exe
2016-11-23 20:37 - 2016-11-23 20:37 - 00033665 _____ C:\Users\maplo\Downloads\Addition.txt
2016-11-23 20:36 - 2016-12-02 11:56 - 00022847 _____ C:\Users\maplo\Downloads\FRST.txt
2016-11-23 20:35 - 2016-12-02 11:55 - 00000000 ___DC C:\FRST
2016-11-23 20:35 - 2016-11-23 20:35 - 02412032 _____ (Farbar) C:\Users\maplo\Downloads\FRST64.exe
2016-11-23 20:21 - 2016-11-23 20:21 - 00394752 _____ (TweakBit) C:\Users\maplo\Downloads\fehler_1075-repairkit.exe
2016-11-23 20:15 - 2016-11-23 20:16 - 06017960 _____ (ParetoLogic Inc.) C:\Users\maplo\Downloads\ParetoLogic PC Health Advisor_de.exe
2016-11-23 19:40 - 2008-08-28 12:44 - 00025600 _____ (Nokia) C:\Windows\system32\Drivers\pccsmcfdx64.sys
2016-11-23 19:39 - 2016-11-23 19:39 - 00000000 ___DC C:\ProgramData\NortonInstaller
2016-11-23 19:37 - 2016-11-23 19:38 - 00000000 ___DC C:\Program Files (x86)\PC Connectivity Solution
2016-11-23 19:34 - 2016-11-23 19:34 - 00000000 ___DC C:\ProgramData\Installations
2016-11-23 19:33 - 2016-11-23 19:33 - 00000000 ____D C:\Users\maplo\AppData\Roaming\WOW
2016-11-23 19:32 - 2016-11-23 19:32 - 13099456 _____ () C:\Users\maplo\Downloads\PCCS_8.22.7.0.exe
2016-11-23 17:15 - 2016-11-23 17:16 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (7).exe
2016-11-23 12:38 - 2016-11-23 12:38 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (6).exe
2016-11-23 12:19 - 2016-11-23 12:20 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (3).exe
2016-11-23 11:54 - 2016-11-23 11:54 - 00000297 _____ C:\Users\maplo\Downloads\MDNPart2.txt
2016-11-23 04:41 - 2016-11-23 04:41 - 00001447 _____ C:\Users\maplo\Desktop\Internet Explorer (2).lnk
2016-11-22 15:45 - 2016-11-22 15:48 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (2).exe
2016-11-22 09:49 - 2016-11-22 09:49 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (5).exe
2016-11-22 09:49 - 2016-11-22 09:49 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (4).exe
2016-11-21 18:25 - 2016-11-22 15:51 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns_13.62.zip
2016-11-21 18:24 - 2016-11-21 18:24 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer (1).exe
2016-11-21 18:02 - 2016-11-21 18:02 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (3).exe
2016-11-21 17:53 - 2016-11-21 17:56 - 01304400 _____ C:\Users\maplo\Downloads\autoruns (3).zip
2016-11-21 17:42 - 2016-11-21 17:42 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (2).exe
2016-11-21 17:41 - 2016-11-21 17:41 - 03910208 _____ C:\Users\maplo\Downloads\Nicht bestätigt 313050.crdownload
2016-11-21 17:26 - 2016-11-21 17:27 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns (2).zip
2016-11-21 17:24 - 2016-11-21 17:24 - 00000000 ___DC C:\AutorunsPortable
2016-11-21 17:23 - 2016-11-21 17:24 - 00911832 _____ (PortableApps.com) C:\Users\maplo\Downloads\AutorunsPortable_13.51_English_online.paf.exe
2016-11-21 17:15 - 2016-11-21 17:15 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns (1).zip
2016-11-21 17:12 - 2016-11-21 17:12 - 01304400 _____ C:\Users\maplo\Downloads\Autoruns.zip
2016-11-21 17:07 - 2016-11-21 17:07 - 01496584 _____ C:\Users\maplo\Downloads\Autoruns - CHIP-Installer.exe
2016-11-21 17:02 - 2016-11-21 17:03 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030.exe
2016-11-21 17:02 - 2016-11-21 17:03 - 03910208 _____ C:\Users\maplo\Downloads\adwcleaner_6.030 (1).exe
2016-11-20 18:55 - 2016-11-20 18:55 - 00000000 _____ C:\Users\maplo\Desktop\Neues Textdokument.txt
2016-11-20 18:31 - 2016-11-20 18:31 - 00007334 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu) (4).odt
2016-11-20 11:51 - 2016-12-01 12:05 - 00005803 _____ C:\Users\maplo\Desktop\JRT.txt
2016-11-10 18:08 - 2016-12-01 15:03 - 00000000 ___DC C:\AdwCleaner
2016-11-10 02:00 - 2016-11-10 02:00 - 00485512 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\Trufos.sys
2016-11-04 10:21 - 2016-11-04 10:21 - 00000000 ____D C:\Users\maplo\AppData\Roaming\LolClient
2016-11-02 17:59 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2016-11-02 17:59 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2016-11-02 17:59 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-02 11:45 - 2009-07-14 05:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-12-02 11:45 - 2009-07-14 05:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-12-02 11:35 - 2014-01-30 15:03 - 00000000 ____D C:\ProgramData\NVIDIA
2016-12-02 11:35 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-01 20:19 - 2016-10-13 18:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-01 18:24 - 2016-02-22 14:15 - 00000000 ___DC C:\ProgramData\AVAST Software
2016-12-01 14:33 - 2014-07-24 15:43 - 00103936 ___SH C:\Users\maplo\Thumbs.db
2016-12-01 12:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-12-01 11:44 - 2014-09-19 11:04 - 00251920 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu).odt
2016-12-01 10:26 - 2011-04-12 08:43 - 00699092 _____ C:\Windows\system32\perfh007.dat
2016-12-01 10:26 - 2011-04-12 08:43 - 00149232 _____ C:\Windows\system32\perfc007.dat
2016-12-01 10:26 - 2009-07-14 06:13 - 01619284 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-30 20:27 - 2014-04-01 08:34 - 00007605 _____ C:\Users\maplo\AppData\Local\Resmon.ResmonCfg
2016-11-30 20:07 - 2013-09-25 13:54 - 00000000 ___DC C:\Program Files (x86)\Google
2016-11-30 20:06 - 2014-02-08 07:00 - 00000000 ____D C:\Users\maplo\AppData\Local\Deployment
2016-11-28 21:03 - 2015-05-28 07:48 - 00000306 __RSH C:\Users\maplo\ntuser.pol
2016-11-28 21:03 - 2013-09-25 13:17 - 00000000 ____D C:\Users\maplo
2016-11-28 18:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
2016-11-27 12:20 - 2016-09-04 17:21 - 00009218 _____ C:\Users\maplo\Desktop\OpenDocument Text (neu) (3).odt
2016-11-26 19:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Branding
2016-11-25 19:00 - 2011-01-26 11:11 - 00005256 _____ C:\Windows\wscsvc.reg
2016-11-24 20:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2016-11-24 12:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PLA
2016-11-24 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Msdtc
2016-11-23 20:17 - 2016-09-21 08:46 - 00001116 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2016-11-23 20:17 - 2014-02-10 07:46 - 00001058 _____ C:\Users\Public\Desktop\PDF-Viewer.lnk
2016-11-23 19:43 - 2016-04-29 18:57 - 00000000 ___DC C:\Program Files (x86)\Nokia
2016-11-23 19:40 - 2016-04-29 19:00 - 00000000 ___DC C:\Program Files\DIFX
2016-11-23 12:22 - 2014-05-10 07:59 - 00000000 ____D C:\Users\maplo\Desktop\Neuer Ordner
2016-11-22 09:45 - 2009-07-14 06:37 - 00000000 ____D C:\Windows\DigitalLocker
2016-11-21 18:14 - 2016-08-22 17:20 - 00000000 ___DC C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-21 18:14 - 2016-08-16 18:28 - 00000000 ___DC C:\Program Files (x86)\phase5
2016-11-21 16:41 - 2014-08-09 15:26 - 01124352 ___SH C:\Users\maplo\Downloads\Thumbs.db
2016-11-21 11:06 - 2009-07-14 05:45 - 00000000 ____D C:\Windows\ServiceProfiles
2016-11-14 19:35 - 2015-05-15 18:54 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
2016-11-08 17:19 - 2016-10-13 18:31 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-11-08 17:19 - 2016-10-13 18:31 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-11-08 17:19 - 2016-10-13 18:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-11-08 17:19 - 2013-09-25 13:54 - 00000000 ____D C:\Windows\system32\Macromed
2016-11-08 17:19 - 2013-09-25 13:48 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-11-07 18:28 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-11-02 17:59 - 2016-10-19 19:20 - 00000000 ____D C:\Users\maplo\AppData\Roaming\Riot Games
2016-11-02 09:29 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\LiveKernelReports

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2013-09-20 13:02 - 2013-09-20 13:02 - 153313362 ____C () C:\Program Files\openoffice1.cab
2013-09-20 13:00 - 2013-09-20 13:00 - 2269184 ____C () C:\Program Files\openoffice401.msi
2013-09-20 13:00 - 2013-09-20 13:00 - 0475136 ____C () C:\Program Files\setup.exe
2013-09-20 13:00 - 2013-09-20 13:00 - 0000279 ____C () C:\Program Files\setup.ini
2014-04-01 08:34 - 2016-11-30 20:27 - 0007605 _____ () C:\Users\maplo\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-10-30 18:03

==================== Ende von FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 30-11-2016
durchgeführt von maplo (02-12-2016 11:57:11)
Gestartet von C:\Users\maplo\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2013-09-25 12:17:28)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-272398419-1830848293-3820193082-500 - Administrator - Disabled)
Gast (S-1-5-21-272398419-1830848293-3820193082-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-272398419-1830848293-3820193082-1002 - Limited - Enabled)
maplo (S-1-5-21-272398419-1830848293-3820193082-1001 - Administrator - Enabled) => C:\Users\maplo
UpdatusUser (S-1-5-21-272398419-1830848293-3820193082-1003 - Limited - Enabled) => C:\Users\TEMP

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-272398419-1830848293-3820193082-1001\...\Akamai) (Version:  - Akamai Technologies, Inc)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.10 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden
Nokia Connectivity Cable Driver (HKLM-x32\...\{C3F19A5F-35A8-4FDB-A6ED-0F4CE398DA48}) (Version: 7.0.2.0 - Nokia)
NVIDIA 3D Vision Controller-Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation)
PC Connectivity Solution (HKLM-x32\...\{83258E90-1F76-4E13-9F60-A0F8ED41E76F}) (Version: 8.22.7.0 - Nokia)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.)
SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden
SLOW-PCfighter (HKLM\...\SLOW-PCfighter) (Version: 2.1.32 - SPAMfighter ApS.)
SLOW-PCfighter (Version: 2.1.32 - SPAMfighter ApS) Hidden
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows-Treiberpaket - Nokia pccsmcfd  (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia)
World of Battles-DE (HKLM-x32\...\World of Battles-DE) (Version:  - )

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0130AC60-C2DD-4AB5-8100-45643BB50767} - System32\Tasks\{BD5E1A65-1DD2-47F5-9780-1386FC85B937} => C:\AeriaGames\Shaiya-DE\aeria_launcher.exe
Task: {1CA10902-3D78-40FF-8EDB-60797BA09CB2} - System32\Tasks\Fighters\SLOW-PCfighter\RCPRO-5-maplo-logon => C:\Program Files (x86)\Fighters\SLOW-PCfighter\UI.exe [2016-10-21] (SPAMfighter ApS)
Task: {326E1F2E-CD46-44CC-AD3E-54644E16702E} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-09-22] (Oracle Corporation)
Task: {35B7BEA9-215F-4325-BD25-826BC00B56AF} - System32\Tasks\RunOW => C:\Program Files (x86)\Overwolf\\OverwolfLauncher.exe
Task: {4A19E649-4DAC-4C80-9DBE-62329DA9FF6D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-30] (Google Inc.)
Task: {5BDC19DC-E192-4B6E-89A8-353E7F4CC64C} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-03] (AVAST Software)
Task: {5CE1D5FC-1B0A-42B8-8B6E-F5B1853DFA58} - System32\Tasks\{18536E1C-69C6-4495-B250-99D73369FEAD} => pcalua.exe -a C:\Users\maplo\AppData\Local\Temp\jre-8u101-windows-au.exe -d "C:\Program Files\Java\jre1.8.0_91\bin" -c /installmethod=jau-m FAMILYUPGRADE=1 <==== ACHTUNG
Task: {63E6A0A5-2040-4DC8-A2FA-494E2A6F6BC4} - System32\Tasks\SafeZone scheduled Autoupdate 1480613134 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software)
Task: {663E32D2-A3F9-4FD9-9758-9A03474785BC} - System32\Tasks\PC Health Advisor Aktualisierung => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe
Task: {68FAE479-046A-4919-B936-4488585D2C37} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-30] (Google Inc.)
Task: {7C53022B-2EBB-4E22-92C4-AC1F1D6CB46D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-08] (Adobe Systems Incorporated)
Task: {8616DDDD-C38E-4B00-B19F-25DF08EF5584} - System32\Tasks\{57821D88-714A-40BD-84BD-25FF843FD5B5} => pcalua.exe -a "C:\Program Files (x86)\X-Setup Pro\bin\xqdcXSPStart.exe" -d "C:\Program Files (x86)\X-Setup Pro"
Task: {9A01A719-93EC-42B6-BF02-337F220286E8} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks [Argument = /run /TN "\Microsoft\Windows\Setup\gwx\refreshgwxconfig"]
Task: {A973D079-888A-499A-BAF2-EEB1AE3B82CC} - \AppManager_logon -> Keine Datei <==== ACHTUNG
Task: {B86AADC5-37A3-4591-9603-11F4348671BB} - System32\Tasks\{19E94F83-02F8-4991-8493-62DF15BDB388} => Chrome.exe 
Task: {B9008251-5EBE-4100-8CBB-1AAC8A405919} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-12-01] (AVAST Software)
Task: {CE5CA5D4-4733-420A-8E91-4273C62EF2A2} - System32\Tasks\{0B7C8532-5821-4649-ADED-854281A7BF27} => pcalua.exe -a "C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OPM79QZW\wmp11-windowsxp-x86-DE-DE.exe" -d C:\Users\maplo\Desktop
Task: {F3D4066A-125E-4C19-B520-D832056DDFE4} - System32\Tasks\{941FB3DA-4EE9-4EF5-AF82-D53F3B89A730} => C:\AeriaGames\Shaiya-DE\aeria_launcher.exe
Task: {FEE18234-36C2-41A1-AB47-B918C82F6AF4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\PC Health Advisor Aktualisierung.job => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

ShortcutWithArgument: C:\Users\maplo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Profil 2 - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1"

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2014-01-30 15:02 - 2013-03-15 05:16 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-11-30 20:07 - 2016-11-08 22:03 - 02367080 ____C () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll
2016-11-30 20:07 - 2016-11-08 22:03 - 00107112 ____C () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll
2016-12-01 17:15 - 2016-12-01 17:15 - 00169064 ____C () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-12-01 18:25 - 2016-12-01 18:25 - 03129808 ____C () C:\Program Files\AVAST Software\Avast\defs\16120100\algo.dll
2016-12-01 17:16 - 2016-12-01 17:16 - 00482928 ____C () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-09-23 18:43 - 2005-11-27 20:06 - 00360448 _____ () C:\Windows\SysWow64\CoolXPLabel.ocx
2016-09-23 18:43 - 2005-11-27 20:07 - 00491520 _____ () C:\Windows\SysWow64\CoolXPButton.ocx
2016-09-23 18:43 - 2005-11-27 20:07 - 00417792 _____ () C:\Windows\SysWow64\CoolXPCombo.ocx
2016-12-01 17:16 - 2016-12-01 17:16 - 48936448 ____C () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 03:34 - 2016-10-31 18:00 - 00000826 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-272398419-1830848293-3820193082-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\maplo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: McComponentHostService => 3

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [TCP Query User{92DBB8EC-BF4D-4503-B017-6FEF5794C6C3}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{93818E17-C3EC-403A-82BC-D4E360E33935}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{EEF2AA93-E0BD-40EE-9061-7E25F86ACE4F}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{DCA1BA60-F2E1-40EC-8AD4-5C0699F42024}C:\users\maplo\appdata\local\akamai\netsession_win.exe] => C:\users\maplo\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{01660FA1-BBB9-405E-896F-D101A6B8C3B6}C:\program files (x86)\tera\tera-launcher.exe] => C:\program files (x86)\tera\tera-launcher.exe
FirewallRules: [UDP Query User{60079D49-5C8C-4F65-B0FB-4F781C56151A}C:\program files (x86)\tera\tera-launcher.exe] => C:\program files (x86)\tera\tera-launcher.exe
FirewallRules: [{32F03291-6488-48ED-8B03-F2C086718986}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{51E45E7F-224A-44D3-943D-5588B18DCB34}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [TCP Query User{5C7B2041-5DD4-475F-8F18-E253EF48C7CA}C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe
FirewallRules: [UDP Query User{9651F89F-692D-41DD-B01B-A00978B935FF}C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\runes of magic\client.exe
FirewallRules: [TCP Query User{9E5FBB90-9C11-420E-B289-9B414F9A1547}C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe] => C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe
FirewallRules: [UDP Query User{D092E8B1-CBA2-419E-B92D-4A7F4EC4E631}C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe] => C:\users\maplo\appdata\roaming\allmyapps\allmyapps.exe
FirewallRules: [{B2C84DC8-0C32-44B4-B637-6F1DB7031CD7}] => C:\Users\maplo\AppData\Roaming\Allmyapps\Allmyapps.exe
FirewallRules: [TCP Query User{1C564928-6DA8-4AF0-B65A-06E1ACF4040B}C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe
FirewallRules: [UDP Query User{6514A7D7-AB31-406E-9FFE-F52B64A07DF8}C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe] => C:\program files (x86)\gameforgelive\games\deu_deu\aion\nclauncher.exe
FirewallRules: [TCP Query User{5BB74CF1-C40E-4CE3-B652-7F122DE29237}F:\tera\tera-launcher.exe] => F:\tera\tera-launcher.exe
FirewallRules: [UDP Query User{C7F6E5BD-EECC-45A1-B3EB-8786B4872E47}F:\tera\tera-launcher.exe] => F:\tera\tera-launcher.exe
FirewallRules: [TCP Query User{F905CB23-51AA-4E46-BD16-3A7E3B36B8B7}C:\windows\syswow64\rundll32.exe] => C:\windows\syswow64\rundll32.exe
FirewallRules: [UDP Query User{E7C2FF9A-AE22-424B-9A85-60351D73776C}C:\windows\syswow64\rundll32.exe] => C:\windows\syswow64\rundll32.exe
FirewallRules: [{6D9C7F08-71C9-4EDC-82BB-512168344168}] => F:\AuraKingdom\AuraKingdom-DE\game.bin
FirewallRules: [{BBE3AFD4-F97F-4B55-9EF0-8B12BAD3CD6E}] => F:\AuraKingdom\AuraKingdom-DE\game.bin
FirewallRules: [{374100BD-A111-4281-AE39-931D54869FB3}] => C:\Users\maplo\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{40AA3635-228E-44B8-A4CF-815FB08748F2}] => C:\Users\maplo\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{A6A99E2C-6AD5-425B-89F7-54FF6B84383D}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (12/02/2016 11:37:51 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC)
Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. 

 Details - Zugriff verweigert

Error: (12/02/2016 11:36:00 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (12/01/2016 07:57:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: rundll32.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc637
Name des fehlerhaften Moduls: bcuengine.dll, Version: 12.0.0.298, Zeitstempel: 0x5821b6de
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00168e44
ID des fehlerhaften Prozesses: 0x484
Startzeit der fehlerhaften Anwendung: 0x01d24c04b83ba868
Pfad der fehlerhaften Anwendung: C:\Windows\SysWOW64\rundll32.exe
Pfad des fehlerhaften Moduls: C:\Program Files\AVAST Software\Avast\defs\16120100\bcuengine.dll
Berichtskennung: f66fe1b8-b7f7-11e6-b2ac-00219b16a998

Error: (12/01/2016 06:24:59 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC)
Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. 

 Details - Zugriff verweigert

Error: (12/01/2016 06:22:53 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (12/01/2016 05:11:45 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC)
Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. 

 Details - Zugriff verweigert

Error: (12/01/2016 05:11:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (12/01/2016 02:53:09 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: maplo-PC)
Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. 

 Details - Zugriff verweigert

Error: (12/01/2016 02:52:32 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (12/01/2016 02:26:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: rundll32.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc637
Name des fehlerhaften Moduls: bcuengine.dll, Version: 12.0.0.298, Zeitstempel: 0x5821b6de
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00168e44
ID des fehlerhaften Prozesses: 0x1070
Startzeit der fehlerhaften Anwendung: 0x01d24bd67a4585b2
Pfad der fehlerhaften Anwendung: C:\Windows\SysWOW64\rundll32.exe
Pfad des fehlerhaften Moduls: C:\Program Files\AVAST Software\Avast\defs\16120100\bcuengine.dll
Berichtskennung: b980dc62-b7c9-11e6-80c4-00219b16a998


Systemfehler:
=============
Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden.

Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden.

Error: (12/02/2016 11:43:37 AM) (Source: atapi) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort2 gefunden.

Error: (12/02/2016 11:39:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.

Error: (12/02/2016 11:39:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.

Error: (12/02/2016 11:39:04 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.

Error: (12/02/2016 11:37:51 AM) (Source: Service Control Manager) (EventID: 7005) (User: )
Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: 
Zugriff verweigert

Error: (12/02/2016 11:37:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Media Center Extender-Dienst" ist vom Dienst "PnP-X-IP-Busenumerator" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.

Error: (12/01/2016 08:26:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.

Error: (12/01/2016 07:24:18 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.


CodeIntegrity:
===================================
  Date: 2014-07-26 19:56:36.731
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2014-07-26 19:56:36.687
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2014-07-26 19:56:36.167
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2014-07-26 19:56:36.126
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-12-28 12:00:40.390
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-12-28 12:00:40.312
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\maplo\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-12-28 12:00:39.578
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-12-28 12:00:39.500
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
Prozentuale Nutzung des RAM: 67%
Installierter physikalischer RAM: 3070.99 MB
Verfügbarer physikalischer RAM: 994.63 MB
Summe virtueller Speicher: 6440.18 MB
Verfügbarer virtueller Speicher: 3751.24 MB

==================== Laufwerke ================================

Drive c: (Windows) (Fixed) (Total:68.39 GB) (Free:7.14 GB) NTFS
Drive e: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive f: (500GB) (Fixed) (Total:465.66 GB) (Free:330.73 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F01D32BD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 74.5 GB) (Disk ID: DE2F0A61)
Partition 1: (Active) - (Size=6.1 GB) - (Type=27)
Partition 2: (Not Active) - (Size=68.4 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         

Alt 02.12.2016, 13:09   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



Bitte Avast deinstallieren. Das Teil können wir einfach nicht mehr guten Gewissens empfehlen. => Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog

Auch andere Freewareanbieter wie Avira, AVG oder Panda springen auf diesen oder ähnlichen Zügen rauf, basteln Junkware in die Setups, arbeiten mit ASK zusammen etc; so was ist bei Sicherheitssoftware einfach inakzeptabel.

Gib Bescheid wenn Avast weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 02.12.2016, 17:50   #9
maplo
 
unbekanntes Programm - Standard

avast deinstalliert



Ok ich habe avast komplett deinstalliert.

Alt 02.12.2016, 18:29   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



1. Schritt: Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers




2. Schritt: Kaspersky TDSS-Killer

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 02.12.2016, 19:43   #11
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org

Database version:
  main:    v2016.12.02.10
  rootkit: v2016.11.20.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17801
maplo :: MAPLO-PC [administrator]

02.12.2016 18:59:15
mbar-log-2016-12-02 (18-59-15).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 356915
Time elapsed: 17 minute(s), 25 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
Code:
ATTFilter
19:33:10.0665 0x0658  TDSS rootkit removing tool 3.1.0.12 Nov  7 2016 07:10:01
19:33:53.0446 0x0658  ============================================================
19:33:53.0446 0x0658  Current date / time: 2016/12/02 19:33:53.0446
19:33:53.0446 0x0658  SystemInfo:
19:33:53.0446 0x0658  
19:33:53.0446 0x0658  OS Version: 6.1.7601 ServicePack: 1.0
19:33:53.0446 0x0658  Product type: Workstation
19:33:53.0446 0x0658  ComputerName: MAPLO-PC
19:33:53.0446 0x0658  UserName: maplo
19:33:53.0446 0x0658  Windows directory: C:\Windows
19:33:53.0446 0x0658  System windows directory: C:\Windows
19:33:53.0446 0x0658  Running under WOW64
19:33:53.0446 0x0658  Processor architecture: Intel x64
19:33:53.0446 0x0658  Number of processors: 4
19:33:53.0446 0x0658  Page size: 0x1000
19:33:53.0446 0x0658  Boot type: Normal boot
19:33:53.0446 0x0658  CodeIntegrityOptions = 0x00000001
19:33:53.0446 0x0658  ============================================================
19:33:54.0712 0x0658  KLMD registered as C:\Windows\system32\drivers\89356864.sys
19:33:54.0712 0x0658  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.18839, osProperties = 0x1
19:33:54.0872 0x0658  System UUID: {415A6447-DBF0-2C12-E363-4AA23CDEB767}
19:33:55.0322 0x0658  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:33:55.0322 0x0658  Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:33:55.0332 0x0658  ============================================================
19:33:55.0332 0x0658  \Device\Harddisk0\DR0:
19:33:55.0332 0x0658  MBR partitions:
19:33:55.0332 0x0658  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:33:55.0332 0x0658  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
19:33:55.0332 0x0658  \Device\Harddisk1\DR1:
19:33:55.0332 0x0658  MBR partitions:
19:33:55.0332 0x0658  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xC45800, BlocksNum 0x88C9800
19:33:55.0332 0x0658  ============================================================
19:33:55.0362 0x0658  C: <-> \Device\Harddisk1\DR1\Partition1
19:33:55.0372 0x0658  E: <-> \Device\Harddisk0\DR0\Partition1
19:33:55.0702 0x0658  F: <-> \Device\Harddisk0\DR0\Partition2
19:33:55.0702 0x0658  ============================================================
19:33:55.0702 0x0658  Initialize success
19:33:55.0702 0x0658  ============================================================
19:38:22.0843 0x0c90  ============================================================
19:38:22.0843 0x0c90  Scan started
19:38:22.0843 0x0c90  Mode: Manual; SigCheck; TDLFS; 
19:38:22.0843 0x0c90  ============================================================
19:38:22.0843 0x0c90  KSN ping started
19:38:36.0222 0x0c90  KSN ping finished: true
19:38:37.0435 0x0c90  ================ Scan system memory ========================
19:38:37.0435 0x0c90  System memory - ok
19:38:37.0435 0x0c90  ================ Scan services =============================
19:38:37.0555 0x0c90  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:38:37.0901 0x0c90  1394ohci - ok
19:38:37.0943 0x0c90  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:38:37.0964 0x0c90  ACPI - ok
19:38:37.0983 0x0c90  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:38:38.0149 0x0c90  AcpiPmi - ok
19:38:38.0267 0x0c90  [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:38:38.0282 0x0c90  AdobeFlashPlayerUpdateSvc - ok
19:38:38.0321 0x0c90  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
19:38:38.0345 0x0c90  adp94xx - ok
19:38:38.0372 0x0c90  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
19:38:38.0392 0x0c90  adpahci - ok
19:38:38.0422 0x0c90  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
19:38:38.0432 0x0c90  adpu320 - ok
19:38:38.0462 0x0c90  [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:38:38.0522 0x0c90  AeLookupSvc - ok
19:38:38.0562 0x0c90  [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters     C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
19:38:38.0572 0x0c90  AERTFilters - ok
19:38:38.0612 0x0c90  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\Windows\system32\drivers\afd.sys
19:38:38.0662 0x0c90  AFD - ok
19:38:38.0682 0x0c90  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
19:38:38.0692 0x0c90  agp440 - ok
19:38:38.0712 0x0c90  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
19:38:38.0772 0x0c90  ALG - ok
19:38:38.0792 0x0c90  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:38:38.0802 0x0c90  aliide - ok
19:38:38.0812 0x0c90  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
19:38:38.0822 0x0c90  amdide - ok
19:38:38.0842 0x0c90  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
19:38:38.0862 0x0c90  AmdK8 - ok
19:38:38.0882 0x0c90  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
19:38:38.0892 0x0c90  AmdPPM - ok
19:38:38.0923 0x0c90  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:38:38.0933 0x0c90  amdsata - ok
19:38:38.0963 0x0c90  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
19:38:38.0973 0x0c90  amdsbs - ok
19:38:38.0993 0x0c90  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:38:39.0003 0x0c90  amdxata - ok
19:38:39.0033 0x0c90  [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID           C:\Windows\system32\drivers\appid.sys
19:38:39.0094 0x0c90  AppID - ok
19:38:39.0124 0x0c90  [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:38:39.0144 0x0c90  AppIDSvc - ok
19:38:39.0164 0x0c90  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
19:38:39.0234 0x0c90  Appinfo - ok
19:38:39.0284 0x0c90  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
19:38:39.0294 0x0c90  arc - ok
19:38:39.0324 0x0c90  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
19:38:39.0334 0x0c90  arcsas - ok
19:38:39.0434 0x0c90  [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:38:39.0484 0x0c90  aspnet_state - ok
19:38:39.0534 0x0c90  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:38:39.0644 0x0c90  AsyncMac - ok
19:38:39.0674 0x0c90  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
19:38:39.0684 0x0c90  atapi - ok
19:38:39.0754 0x0c90  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:38:39.0794 0x0c90  AudioEndpointBuilder - ok
19:38:39.0814 0x0c90  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:38:39.0844 0x0c90  AudioSrv - ok
19:38:39.0864 0x0c90  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:38:39.0924 0x0c90  AxInstSV - ok
19:38:39.0964 0x0c90  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
19:38:40.0014 0x0c90  b06bdrv - ok
19:38:40.0044 0x0c90  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:38:40.0064 0x0c90  b57nd60a - ok
19:38:40.0084 0x0c90  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:38:40.0134 0x0c90  BDESVC - ok
19:38:40.0164 0x0c90  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
19:38:40.0214 0x0c90  Beep - ok
19:38:40.0244 0x0c90  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
19:38:40.0324 0x0c90  BFE - ok
19:38:40.0414 0x0c90  [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM  C:\Program Files\BDServices\BitDefenderCom.exe
19:38:40.0464 0x0c90  BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 )
19:38:42.0774 0x0c90  Detect skipped due to KSN trusted
19:38:42.0774 0x0c90  BitDefenderCOM - ok
19:38:42.0824 0x0c90  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
19:38:42.0954 0x0c90  BITS - ok
19:38:42.0984 0x0c90  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
19:38:43.0004 0x0c90  blbdrive - ok
19:38:43.0024 0x0c90  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:38:43.0084 0x0c90  bowser - ok
19:38:43.0104 0x0c90  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
19:38:43.0124 0x0c90  BrFiltLo - ok
19:38:43.0144 0x0c90  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
19:38:43.0164 0x0c90  BrFiltUp - ok
19:38:43.0214 0x0c90  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
19:38:43.0264 0x0c90  BridgeMP - ok
19:38:43.0284 0x0c90  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
19:38:43.0324 0x0c90  Browser - ok
19:38:43.0364 0x0c90  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:38:43.0424 0x0c90  Brserid - ok
19:38:43.0444 0x0c90  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:38:43.0464 0x0c90  BrSerWdm - ok
19:38:43.0474 0x0c90  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:38:43.0504 0x0c90  BrUsbMdm - ok
19:38:43.0524 0x0c90  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:38:43.0534 0x0c90  BrUsbSer - ok
19:38:43.0554 0x0c90  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
19:38:43.0574 0x0c90  BTHMODEM - ok
19:38:43.0604 0x0c90  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
19:38:43.0644 0x0c90  bthserv - ok
19:38:43.0654 0x0c90  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:38:43.0704 0x0c90  cdfs - ok
19:38:43.0724 0x0c90  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
19:38:43.0744 0x0c90  cdrom - ok
19:38:43.0754 0x0c90  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
19:38:43.0804 0x0c90  CertPropSvc - ok
19:38:43.0814 0x0c90  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
19:38:43.0834 0x0c90  circlass - ok
19:38:43.0884 0x0c90  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
19:38:43.0904 0x0c90  CLFS - ok
19:38:43.0934 0x0c90  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:38:43.0944 0x0c90  clr_optimization_v2.0.50727_32 - ok
19:38:43.0994 0x0c90  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:38:44.0004 0x0c90  clr_optimization_v2.0.50727_64 - ok
19:38:44.0074 0x0c90  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:38:44.0084 0x0c90  clr_optimization_v4.0.30319_32 - ok
19:38:44.0104 0x0c90  [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:38:44.0194 0x0c90  clr_optimization_v4.0.30319_64 - ok
19:38:44.0204 0x0c90  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
19:38:44.0234 0x0c90  CmBatt - ok
19:38:44.0244 0x0c90  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:38:44.0254 0x0c90  cmdide - ok
19:38:44.0294 0x0c90  [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG             C:\Windows\system32\Drivers\cng.sys
19:38:44.0344 0x0c90  CNG - ok
19:38:44.0374 0x0c90  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
19:38:44.0384 0x0c90  Compbatt - ok
19:38:44.0404 0x0c90  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
19:38:44.0434 0x0c90  CompositeBus - ok
19:38:44.0444 0x0c90  COMSysApp - ok
19:38:44.0514 0x0c90  cpuz132 - ok
19:38:44.0534 0x0c90  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
19:38:44.0544 0x0c90  crcdisk - ok
19:38:44.0584 0x0c90  [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:38:44.0644 0x0c90  CryptSvc - ok
19:38:44.0684 0x0c90  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:38:44.0734 0x0c90  DcomLaunch - ok
19:38:44.0764 0x0c90  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
19:38:44.0814 0x0c90  defragsvc - ok
19:38:44.0834 0x0c90  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:38:44.0884 0x0c90  DfsC - ok
19:38:44.0904 0x0c90  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:38:44.0954 0x0c90  Dhcp - ok
19:38:45.0044 0x0c90  [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack       C:\Windows\system32\diagtrack.dll
19:38:45.0114 0x0c90  DiagTrack - ok
19:38:45.0134 0x0c90  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
19:38:45.0174 0x0c90  discache - ok
19:38:45.0184 0x0c90  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
19:38:45.0204 0x0c90  Disk - ok
19:38:45.0234 0x0c90  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:38:45.0274 0x0c90  Dnscache - ok
19:38:45.0294 0x0c90  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
19:38:45.0344 0x0c90  dot3svc - ok
19:38:45.0364 0x0c90  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
19:38:45.0414 0x0c90  DPS - ok
19:38:45.0424 0x0c90  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:38:45.0474 0x0c90  drmkaud - ok
19:38:45.0484 0x0c90  dtmelqbg - ok
19:38:45.0534 0x0c90  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:38:45.0574 0x0c90  DXGKrnl - ok
19:38:45.0594 0x0c90  [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress      C:\Windows\system32\DRIVERS\e1k60x64.sys
19:38:45.0614 0x0c90  e1kexpress - ok
19:38:45.0624 0x0c90  EagleX64 - ok
19:38:45.0654 0x0c90  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
19:38:45.0684 0x0c90  EapHost - ok
19:38:45.0824 0x0c90  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
19:38:45.0924 0x0c90  ebdrv - ok
19:38:45.0964 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS             C:\Windows\System32\lsass.exe
19:38:46.0004 0x0c90  EFS - ok
19:38:46.0064 0x0c90  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:38:46.0144 0x0c90  ehRecvr - ok
19:38:46.0174 0x0c90  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
19:38:46.0194 0x0c90  ehSched - ok
19:38:46.0224 0x0c90  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
19:38:46.0254 0x0c90  elxstor - ok
19:38:46.0284 0x0c90  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:38:46.0314 0x0c90  ErrDev - ok
19:38:46.0354 0x0c90  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
19:38:46.0404 0x0c90  EventSystem - ok
19:38:46.0414 0x0c90  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
19:38:46.0464 0x0c90  exfat - ok
19:38:46.0484 0x0c90  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:38:46.0534 0x0c90  fastfat - ok
19:38:46.0574 0x0c90  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
19:38:46.0644 0x0c90  Fax - ok
19:38:46.0664 0x0c90  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
19:38:46.0684 0x0c90  fdc - ok
19:38:46.0704 0x0c90  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
19:38:46.0744 0x0c90  fdPHost - ok
19:38:46.0764 0x0c90  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:38:46.0794 0x0c90  FDResPub - ok
19:38:46.0824 0x0c90  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:38:46.0834 0x0c90  FileInfo - ok
19:38:46.0854 0x0c90  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:38:46.0894 0x0c90  Filetrace - ok
19:38:46.0914 0x0c90  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
19:38:46.0934 0x0c90  flpydisk - ok
19:38:46.0964 0x0c90  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:38:46.0974 0x0c90  FltMgr - ok
19:38:47.0044 0x0c90  [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache       C:\Windows\system32\FntCache.dll
19:38:47.0104 0x0c90  FontCache - ok
19:38:47.0144 0x0c90  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:38:47.0154 0x0c90  FontCache3.0.0.0 - ok
19:38:47.0174 0x0c90  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:38:47.0194 0x0c90  FsDepends - ok
19:38:47.0204 0x0c90  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:38:47.0214 0x0c90  Fs_Rec - ok
19:38:47.0244 0x0c90  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:38:47.0264 0x0c90  fvevol - ok
19:38:47.0274 0x0c90  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
19:38:47.0294 0x0c90  gagp30kx - ok
19:38:47.0334 0x0c90  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
19:38:47.0394 0x0c90  gpsvc - ok
19:38:47.0504 0x0c90  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:38:47.0514 0x0c90  gupdate - ok
19:38:47.0524 0x0c90  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:38:47.0534 0x0c90  gupdatem - ok
19:38:47.0564 0x0c90  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:38:47.0634 0x0c90  hcw85cir - ok
19:38:47.0664 0x0c90  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:38:47.0704 0x0c90  HdAudAddService - ok
19:38:47.0724 0x0c90  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
19:38:47.0784 0x0c90  HDAudBus - ok
19:38:47.0824 0x0c90  [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64         C:\Windows\system32\drivers\HECIx64.sys
19:38:47.0864 0x0c90  HECIx64 - ok
19:38:47.0884 0x0c90  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
19:38:47.0894 0x0c90  HidBatt - ok
19:38:47.0924 0x0c90  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
19:38:47.0944 0x0c90  HidBth - ok
19:38:47.0974 0x0c90  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
19:38:47.0994 0x0c90  HidIr - ok
19:38:48.0014 0x0c90  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
19:38:48.0054 0x0c90  hidserv - ok
19:38:48.0074 0x0c90  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:38:48.0124 0x0c90  HidUsb - ok
19:38:48.0144 0x0c90  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:38:48.0184 0x0c90  hkmsvc - ok
19:38:48.0204 0x0c90  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:38:48.0264 0x0c90  HomeGroupListener - ok
19:38:48.0294 0x0c90  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:38:48.0314 0x0c90  HomeGroupProvider - ok
19:38:48.0324 0x0c90  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:38:48.0334 0x0c90  HpSAMD - ok
19:38:48.0384 0x0c90  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:38:48.0444 0x0c90  HTTP - ok
19:38:48.0464 0x0c90  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:38:48.0474 0x0c90  hwpolicy - ok
19:38:48.0504 0x0c90  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
19:38:48.0514 0x0c90  i8042prt - ok
19:38:48.0564 0x0c90  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:38:48.0584 0x0c90  iaStorV - ok
19:38:48.0656 0x0c90  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:38:48.0692 0x0c90  idsvc - ok
19:38:48.0698 0x0c90  IEEtwCollectorService - ok
19:38:48.0925 0x0c90  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:38:49.0178 0x0c90  igfx - ok
19:38:49.0218 0x0c90  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
19:38:49.0228 0x0c90  iirsp - ok
19:38:49.0278 0x0c90  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
19:38:49.0308 0x0c90  IKEEXT - ok
19:38:49.0468 0x0c90  [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
19:38:49.0588 0x0c90  IntcAzAudAddService - ok
19:38:49.0622 0x0c90  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
19:38:49.0633 0x0c90  intelide - ok
19:38:49.0659 0x0c90  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
19:38:49.0672 0x0c90  intelppm - ok
19:38:49.0697 0x0c90  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:38:49.0738 0x0c90  IPBusEnum - ok
19:38:49.0757 0x0c90  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:38:49.0801 0x0c90  IpFilterDriver - ok
19:38:49.0839 0x0c90  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:38:49.0895 0x0c90  iphlpsvc - ok
19:38:49.0905 0x0c90  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:38:49.0927 0x0c90  IPMIDRV - ok
19:38:49.0955 0x0c90  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:38:49.0998 0x0c90  IPNAT - ok
19:38:50.0020 0x0c90  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:38:50.0045 0x0c90  IRENUM - ok
19:38:50.0060 0x0c90  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:38:50.0071 0x0c90  isapnp - ok
19:38:50.0099 0x0c90  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:38:50.0116 0x0c90  iScsiPrt - ok
19:38:50.0128 0x0c90  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
19:38:50.0138 0x0c90  kbdclass - ok
19:38:50.0158 0x0c90  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
19:38:50.0178 0x0c90  kbdhid - ok
19:38:50.0198 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso          C:\Windows\system32\lsass.exe
19:38:50.0208 0x0c90  KeyIso - ok
19:38:50.0248 0x0c90  [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:38:50.0258 0x0c90  KSecDD - ok
19:38:50.0278 0x0c90  [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:38:50.0288 0x0c90  KSecPkg - ok
19:38:50.0318 0x0c90  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:38:50.0348 0x0c90  ksthunk - ok
19:38:50.0378 0x0c90  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:38:50.0428 0x0c90  KtmRm - ok
19:38:50.0458 0x0c90  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
19:38:50.0508 0x0c90  LanmanServer - ok
19:38:50.0528 0x0c90  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:38:50.0578 0x0c90  LanmanWorkstation - ok
19:38:50.0598 0x0c90  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:38:50.0628 0x0c90  lltdio - ok
19:38:50.0668 0x0c90  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:38:50.0708 0x0c90  lltdsvc - ok
19:38:50.0728 0x0c90  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:38:50.0778 0x0c90  lmhosts - ok
19:38:50.0798 0x0c90  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
19:38:50.0818 0x0c90  LSI_FC - ok
19:38:50.0828 0x0c90  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
19:38:50.0838 0x0c90  LSI_SAS - ok
19:38:50.0848 0x0c90  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
19:38:50.0858 0x0c90  LSI_SAS2 - ok
19:38:50.0898 0x0c90  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
19:38:50.0908 0x0c90  LSI_SCSI - ok
19:38:50.0938 0x0c90  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
19:38:50.0978 0x0c90  luafv - ok
19:38:50.0998 0x0c90  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:38:51.0008 0x0c90  Mcx2Svc - ok
19:38:51.0018 0x0c90  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
19:38:51.0038 0x0c90  megasas - ok
19:38:51.0058 0x0c90  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
19:38:51.0078 0x0c90  MegaSR - ok
19:38:51.0108 0x0c90  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
19:38:51.0148 0x0c90  MMCSS - ok
19:38:51.0158 0x0c90  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
19:38:51.0198 0x0c90  Modem - ok
19:38:51.0208 0x0c90  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:38:51.0228 0x0c90  monitor - ok
19:38:51.0248 0x0c90  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
19:38:51.0258 0x0c90  mouclass - ok
19:38:51.0268 0x0c90  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:38:51.0278 0x0c90  mouhid - ok
19:38:51.0318 0x0c90  [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:38:51.0338 0x0c90  mountmgr - ok
19:38:51.0368 0x0c90  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
19:38:51.0378 0x0c90  mpio - ok
19:38:51.0398 0x0c90  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:38:51.0428 0x0c90  mpsdrv - ok
19:38:51.0478 0x0c90  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:38:51.0538 0x0c90  MpsSvc - ok
19:38:51.0568 0x0c90  [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:38:51.0628 0x0c90  MRxDAV - ok
19:38:51.0648 0x0c90  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:38:51.0688 0x0c90  mrxsmb - ok
19:38:51.0728 0x0c90  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:38:51.0758 0x0c90  mrxsmb10 - ok
19:38:51.0768 0x0c90  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:38:51.0788 0x0c90  mrxsmb20 - ok
19:38:51.0798 0x0c90  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:38:51.0808 0x0c90  msahci - ok
19:38:51.0828 0x0c90  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:38:51.0848 0x0c90  msdsm - ok
19:38:51.0858 0x0c90  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
19:38:51.0888 0x0c90  MSDTC - ok
19:38:51.0918 0x0c90  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:38:51.0958 0x0c90  Msfs - ok
19:38:51.0968 0x0c90  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:38:52.0008 0x0c90  mshidkmdf - ok
19:38:52.0028 0x0c90  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:38:52.0038 0x0c90  msisadrv - ok
19:38:52.0058 0x0c90  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:38:52.0108 0x0c90  MSiSCSI - ok
19:38:52.0108 0x0c90  msiserver - ok
19:38:52.0118 0x0c90  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:38:52.0158 0x0c90  MSKSSRV - ok
19:38:52.0168 0x0c90  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:38:52.0208 0x0c90  MSPCLOCK - ok
19:38:52.0218 0x0c90  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:38:52.0248 0x0c90  MSPQM - ok
19:38:52.0278 0x0c90  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:38:52.0298 0x0c90  MsRPC - ok
19:38:52.0318 0x0c90  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
19:38:52.0328 0x0c90  mssmbios - ok
19:38:52.0338 0x0c90  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:38:52.0378 0x0c90  MSTEE - ok
19:38:52.0398 0x0c90  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
19:38:52.0418 0x0c90  MTConfig - ok
19:38:52.0448 0x0c90  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
19:38:52.0458 0x0c90  Mup - ok
19:38:52.0498 0x0c90  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
19:38:52.0538 0x0c90  napagent - ok
19:38:52.0578 0x0c90  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:38:52.0608 0x0c90  NativeWifiP - ok
19:38:52.0648 0x0c90  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:38:52.0678 0x0c90  NDIS - ok
19:38:52.0698 0x0c90  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:38:52.0738 0x0c90  NdisCap - ok
19:38:52.0768 0x0c90  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:38:52.0808 0x0c90  NdisTapi - ok
19:38:52.0818 0x0c90  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:38:52.0858 0x0c90  Ndisuio - ok
19:38:52.0868 0x0c90  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:38:52.0918 0x0c90  NdisWan - ok
19:38:52.0928 0x0c90  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:38:52.0978 0x0c90  NDProxy - ok
19:38:52.0998 0x0c90  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:38:53.0038 0x0c90  NetBIOS - ok
19:38:53.0068 0x0c90  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:38:53.0108 0x0c90  NetBT - ok
19:38:53.0128 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon        C:\Windows\system32\lsass.exe
19:38:53.0138 0x0c90  Netlogon - ok
19:38:53.0168 0x0c90  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
19:38:53.0218 0x0c90  Netman - ok
19:38:53.0278 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0288 0x0c90  NetMsmqActivator - ok
19:38:53.0308 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0328 0x0c90  NetPipeActivator - ok
19:38:53.0348 0x0c90  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
19:38:53.0398 0x0c90  netprofm - ok
19:38:53.0418 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0428 0x0c90  NetTcpActivator - ok
19:38:53.0438 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0448 0x0c90  NetTcpPortSharing - ok
19:38:53.0478 0x0c90  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
19:38:53.0488 0x0c90  nfrd960 - ok
19:38:53.0518 0x0c90  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:38:53.0588 0x0c90  NlaSvc - ok
19:38:53.0618 0x0c90  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:38:53.0648 0x0c90  Npfs - ok
19:38:53.0648 0x0c90  npggsvc - ok
19:38:53.0668 0x0c90  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
19:38:53.0718 0x0c90  nsi - ok
19:38:53.0728 0x0c90  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:38:53.0768 0x0c90  nsiproxy - ok
19:38:53.0848 0x0c90  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:38:53.0908 0x0c90  Ntfs - ok
19:38:53.0938 0x0c90  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
19:38:53.0980 0x0c90  Null - ok
19:38:54.0000 0x0c90  [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
19:38:54.0020 0x0c90  NVHDA - ok
19:38:54.0400 0x0c90  [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:38:54.0820 0x0c90  nvlddmkm - ok
19:38:54.0870 0x0c90  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:38:54.0880 0x0c90  nvraid - ok
19:38:54.0900 0x0c90  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:38:54.0910 0x0c90  nvstor - ok
19:38:54.0970 0x0c90  [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc           C:\Windows\system32\nvvsvc.exe
19:38:55.0000 0x0c90  nvsvc - ok
19:38:55.0090 0x0c90  [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:38:55.0120 0x0c90  nvUpdatusService - ok
19:38:55.0150 0x0c90  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:38:55.0160 0x0c90  nv_agp - ok
19:38:55.0190 0x0c90  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:38:55.0210 0x0c90  ohci1394 - ok
19:38:55.0230 0x0c90  onotlzbb - ok
19:38:55.0240 0x0c90  oshnyfcv - ok
19:38:55.0280 0x0c90  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:38:55.0340 0x0c90  p2pimsvc - ok
19:38:55.0370 0x0c90  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
19:38:55.0400 0x0c90  p2psvc - ok
19:38:55.0430 0x0c90  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
19:38:55.0460 0x0c90  Parport - ok
19:38:55.0470 0x0c90  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:38:55.0490 0x0c90  partmgr - ok
19:38:55.0530 0x0c90  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:38:55.0590 0x0c90  PcaSvc - ok
19:38:55.0660 0x0c90  [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd        C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:38:55.0700 0x0c90  pccsmcfd - ok
19:38:55.0710 0x0c90  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
19:38:55.0730 0x0c90  pci - ok
19:38:55.0750 0x0c90  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
19:38:55.0760 0x0c90  pciide - ok
19:38:55.0790 0x0c90  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
19:38:55.0810 0x0c90  pcmcia - ok
19:38:55.0840 0x0c90  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:38:55.0850 0x0c90  pcw - ok
19:38:55.0910 0x0c90  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:38:55.0950 0x0c90  PEAUTH - ok
19:38:56.0030 0x0c90  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:38:56.0040 0x0c90  PerfHost - ok
19:38:56.0120 0x0c90  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
19:38:56.0190 0x0c90  pla - ok
19:38:56.0240 0x0c90  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:38:56.0300 0x0c90  PlugPlay - ok
19:38:56.0310 0x0c90  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:38:56.0330 0x0c90  PNRPAutoReg - ok
19:38:56.0350 0x0c90  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:38:56.0380 0x0c90  PNRPsvc - ok
19:38:56.0430 0x0c90  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:38:56.0490 0x0c90  PolicyAgent - ok
19:38:56.0520 0x0c90  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
19:38:56.0570 0x0c90  Power - ok
19:38:56.0590 0x0c90  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:38:56.0620 0x0c90  PptpMiniport - ok
19:38:56.0640 0x0c90  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
19:38:56.0670 0x0c90  Processor - ok
19:38:56.0700 0x0c90  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
19:38:56.0760 0x0c90  ProfSvc - ok
19:38:56.0770 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe
19:38:56.0790 0x0c90  ProtectedStorage - ok
19:38:56.0800 0x0c90  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:38:56.0840 0x0c90  Psched - ok
19:38:56.0910 0x0c90  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
19:38:56.0960 0x0c90  ql2300 - ok
19:38:56.0980 0x0c90  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
19:38:57.0000 0x0c90  ql40xx - ok
19:38:57.0030 0x0c90  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
19:38:57.0050 0x0c90  QWAVE - ok
19:38:57.0070 0x0c90  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:38:57.0100 0x0c90  QWAVEdrv - ok
19:38:57.0120 0x0c90  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:38:57.0160 0x0c90  RasAcd - ok
19:38:57.0180 0x0c90  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:38:57.0210 0x0c90  RasAgileVpn - ok
19:38:57.0230 0x0c90  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
19:38:57.0270 0x0c90  RasAuto - ok
19:38:57.0290 0x0c90  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:38:57.0320 0x0c90  Rasl2tp - ok
19:38:57.0360 0x0c90  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
19:38:57.0410 0x0c90  RasMan - ok
19:38:57.0430 0x0c90  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:38:57.0480 0x0c90  RasPppoe - ok
19:38:57.0490 0x0c90  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:38:57.0540 0x0c90  RasSstp - ok
19:38:57.0560 0x0c90  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:38:57.0600 0x0c90  rdbss - ok
19:38:57.0630 0x0c90  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
19:38:57.0650 0x0c90  rdpbus - ok
19:38:57.0670 0x0c90  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:38:57.0700 0x0c90  RDPCDD - ok
19:38:57.0740 0x0c90  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:38:57.0770 0x0c90  RDPENCDD - ok
19:38:57.0790 0x0c90  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:38:57.0820 0x0c90  RDPREFMP - ok
19:38:57.0860 0x0c90  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:38:57.0900 0x0c90  RDPWD - ok
19:38:57.0930 0x0c90  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:38:57.0940 0x0c90  rdyboost - ok
19:38:57.0970 0x0c90  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:38:58.0010 0x0c90  RemoteAccess - ok
19:38:58.0040 0x0c90  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:38:58.0090 0x0c90  RemoteRegistry - ok
19:38:58.0100 0x0c90  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:38:58.0150 0x0c90  RpcEptMapper - ok
19:38:58.0170 0x0c90  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
19:38:58.0190 0x0c90  RpcLocator - ok
19:38:58.0220 0x0c90  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
19:38:58.0260 0x0c90  RpcSs - ok
19:38:58.0290 0x0c90  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:38:58.0320 0x0c90  rspndr - ok
19:38:58.0370 0x0c90  [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
19:38:58.0390 0x0c90  RTL8167 - ok
19:38:58.0400 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs           C:\Windows\system32\lsass.exe
19:38:58.0410 0x0c90  SamSs - ok
19:38:58.0430 0x0c90  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:38:58.0440 0x0c90  sbp2port - ok
19:38:58.0470 0x0c90  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:38:58.0510 0x0c90  SCardSvr - ok
19:38:58.0540 0x0c90  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:38:58.0580 0x0c90  scfilter - ok
19:38:58.0630 0x0c90  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
19:38:58.0690 0x0c90  Schedule - ok
19:38:58.0720 0x0c90  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:38:58.0760 0x0c90  SCPolicySvc - ok
19:38:58.0780 0x0c90  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:38:58.0830 0x0c90  SDRSVC - ok
19:38:58.0850 0x0c90  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:38:58.0890 0x0c90  secdrv - ok
19:38:58.0910 0x0c90  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
19:38:58.0950 0x0c90  seclogon - ok
19:38:58.0960 0x0c90  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
19:38:59.0010 0x0c90  SENS - ok
19:38:59.0030 0x0c90  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:38:59.0080 0x0c90  SensrSvc - ok
19:38:59.0110 0x0c90  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
19:38:59.0130 0x0c90  Serenum - ok
19:38:59.0150 0x0c90  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
19:38:59.0170 0x0c90  Serial - ok
19:38:59.0190 0x0c90  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
19:38:59.0210 0x0c90  sermouse - ok
19:38:59.0300 0x0c90  [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer    C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
19:38:59.0330 0x0c90  ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 )
19:39:01.0700 0x0c90  Detect skipped due to KSN trusted
19:39:01.0700 0x0c90  ServiceLayer - ok
19:39:01.0730 0x0c90  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
19:39:01.0780 0x0c90  SessionEnv - ok
19:39:01.0800 0x0c90  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:39:01.0820 0x0c90  sffdisk - ok
19:39:01.0840 0x0c90  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:39:01.0860 0x0c90  sffp_mmc - ok
19:39:01.0870 0x0c90  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:39:01.0890 0x0c90  sffp_sd - ok
19:39:01.0910 0x0c90  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
19:39:01.0930 0x0c90  sfloppy - ok
19:39:01.0970 0x0c90  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:39:02.0020 0x0c90  SharedAccess - ok
19:39:02.0060 0x0c90  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:39:02.0110 0x0c90  ShellHWDetection - ok
19:39:02.0120 0x0c90  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
19:39:02.0130 0x0c90  SiSRaid2 - ok
19:39:02.0150 0x0c90  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
19:39:02.0160 0x0c90  SiSRaid4 - ok
19:39:02.0180 0x0c90  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:39:02.0230 0x0c90  Smb - ok
19:39:02.0240 0x0c90  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:39:02.0260 0x0c90  SNMPTRAP - ok
19:39:02.0280 0x0c90  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:39:02.0290 0x0c90  spldr - ok
19:39:02.0330 0x0c90  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
19:39:02.0390 0x0c90  Spooler - ok
19:39:02.0510 0x0c90  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
19:39:02.0640 0x0c90  sppsvc - ok
19:39:02.0670 0x0c90  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:39:02.0710 0x0c90  sppuinotify - ok
19:39:02.0740 0x0c90  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:39:02.0790 0x0c90  srv - ok
19:39:02.0820 0x0c90  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:39:02.0850 0x0c90  srv2 - ok
19:39:02.0860 0x0c90  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:39:02.0880 0x0c90  srvnet - ok
19:39:02.0900 0x0c90  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:39:02.0940 0x0c90  SSDPSRV - ok
19:39:02.0970 0x0c90  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:39:03.0030 0x0c90  SstpSvc - ok
19:39:03.0080 0x0c90  [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:39:03.0100 0x0c90  Stereo Service - ok
19:39:03.0110 0x0c90  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
19:39:03.0120 0x0c90  stexstor - ok
19:39:03.0160 0x0c90  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
19:39:03.0200 0x0c90  stisvc - ok
19:39:03.0210 0x0c90  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
19:39:03.0220 0x0c90  swenum - ok
19:39:03.0260 0x0c90  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
19:39:03.0310 0x0c90  swprv - ok
19:39:03.0380 0x0c90  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
19:39:03.0460 0x0c90  SysMain - ok
19:39:03.0480 0x0c90  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:39:03.0500 0x0c90  TabletInputService - ok
19:39:03.0540 0x0c90  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:39:03.0590 0x0c90  TapiSrv - ok
19:39:03.0610 0x0c90  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
19:39:03.0650 0x0c90  TBS - ok
19:39:03.0740 0x0c90  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:39:03.0800 0x0c90  Tcpip - ok
19:39:03.0860 0x0c90  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:39:03.0910 0x0c90  TCPIP6 - ok
19:39:03.0940 0x0c90  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:39:03.0970 0x0c90  tcpipreg - ok
19:39:03.0980 0x0c90  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:39:04.0030 0x0c90  TDPIPE - ok
19:39:04.0040 0x0c90  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:39:04.0060 0x0c90  TDTCP - ok
19:39:04.0090 0x0c90  [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:39:04.0140 0x0c90  tdx - ok
19:39:04.0160 0x0c90  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
19:39:04.0170 0x0c90  TermDD - ok
19:39:04.0220 0x0c90  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
19:39:04.0290 0x0c90  TermService - ok
19:39:04.0320 0x0c90  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
19:39:04.0340 0x0c90  Themes - ok
19:39:04.0360 0x0c90  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
19:39:04.0400 0x0c90  THREADORDER - ok
19:39:04.0420 0x0c90  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
19:39:04.0460 0x0c90  TrkWks - ok
19:39:04.0520 0x0c90  [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos          C:\Windows\system32\DRIVERS\Trufos.sys
19:39:04.0540 0x0c90  Trufos - ok
19:39:04.0590 0x0c90  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:39:04.0640 0x0c90  TrustedInstaller - ok
19:39:04.0670 0x0c90  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:39:04.0690 0x0c90  tssecsrv - ok
19:39:04.0710 0x0c90  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:39:04.0760 0x0c90  TsUsbFlt - ok
19:39:04.0770 0x0c90  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
19:39:04.0800 0x0c90  TsUsbGD - ok
19:39:04.0820 0x0c90  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:39:04.0860 0x0c90  tunnel - ok
19:39:04.0870 0x0c90  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
19:39:04.0890 0x0c90  uagp35 - ok
19:39:04.0910 0x0c90  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:39:04.0950 0x0c90  udfs - ok
19:39:04.0980 0x0c90  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:39:05.0000 0x0c90  UI0Detect - ok
19:39:05.0010 0x0c90  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:39:05.0020 0x0c90  uliagpkx - ok
19:39:05.0040 0x0c90  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
19:39:05.0050 0x0c90  umbus - ok
19:39:05.0060 0x0c90  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
19:39:05.0090 0x0c90  UmPass - ok
19:39:05.0110 0x0c90  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
19:39:05.0155 0x0c90  upnphost - ok
19:39:05.0173 0x0c90  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\drivers\usbccgp.sys
19:39:05.0209 0x0c90  usbccgp - ok
19:39:05.0234 0x0c90  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:39:05.0267 0x0c90  usbcir - ok
19:39:05.0287 0x0c90  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
19:39:05.0308 0x0c90  usbehci - ok
19:39:05.0336 0x0c90  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
19:39:05.0376 0x0c90  usbhub - ok
19:39:05.0396 0x0c90  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:39:05.0413 0x0c90  usbohci - ok
19:39:05.0427 0x0c90  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
19:39:05.0442 0x0c90  usbprint - ok
19:39:05.0494 0x0c90  [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser          C:\Windows\system32\DRIVERS\usbser.sys
19:39:05.0517 0x0c90  usbser - ok
19:39:05.0535 0x0c90  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:39:05.0593 0x0c90  USBSTOR - ok
19:39:05.0617 0x0c90  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
19:39:05.0642 0x0c90  usbuhci - ok
19:39:05.0666 0x0c90  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
19:39:05.0714 0x0c90  UxSms - ok
19:39:05.0729 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc        C:\Windows\system32\lsass.exe
19:39:05.0750 0x0c90  VaultSvc - ok
19:39:05.0755 0x0c90  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:39:05.0767 0x0c90  vdrvroot - ok
19:39:05.0798 0x0c90  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
19:39:05.0854 0x0c90  vds - ok
19:39:05.0873 0x0c90  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:39:05.0888 0x0c90  vga - ok
19:39:05.0903 0x0c90  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:39:05.0936 0x0c90  VgaSave - ok
19:39:05.0965 0x0c90  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:39:05.0982 0x0c90  vhdmp - ok
19:39:06.0006 0x0c90  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:39:06.0018 0x0c90  viaide - ok
19:39:06.0030 0x0c90  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:39:06.0042 0x0c90  volmgr - ok
19:39:06.0069 0x0c90  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:39:06.0087 0x0c90  volmgrx - ok
19:39:06.0114 0x0c90  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:39:06.0134 0x0c90  volsnap - ok
19:39:06.0154 0x0c90  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
19:39:06.0170 0x0c90  vsmraid - ok
19:39:06.0240 0x0c90  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
19:39:06.0309 0x0c90  VSS - ok
19:39:06.0333 0x0c90  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
19:39:06.0347 0x0c90  vwifibus - ok
19:39:06.0373 0x0c90  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
19:39:06.0418 0x0c90  W32Time - ok
19:39:06.0441 0x0c90  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
19:39:06.0453 0x0c90  WacomPen - ok
19:39:06.0470 0x0c90  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:39:06.0503 0x0c90  WANARP - ok
19:39:06.0507 0x0c90  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:39:06.0539 0x0c90  Wanarpv6 - ok
19:39:06.0604 0x0c90  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
19:39:06.0650 0x0c90  WatAdminSvc - ok
19:39:06.0714 0x0c90  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
19:39:06.0794 0x0c90  wbengine - ok
19:39:06.0834 0x0c90  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:39:06.0854 0x0c90  WbioSrvc - ok
19:39:06.0874 0x0c90  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:39:06.0904 0x0c90  wcncsvc - ok
19:39:06.0924 0x0c90  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:39:06.0964 0x0c90  WcsPlugInService - ok
19:39:06.0994 0x0c90  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
19:39:07.0014 0x0c90  Wd - ok
19:39:07.0054 0x0c90  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:39:07.0084 0x0c90  Wdf01000 - ok
19:39:07.0114 0x0c90  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:39:07.0154 0x0c90  WdiServiceHost - ok
19:39:07.0154 0x0c90  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:39:07.0174 0x0c90  WdiSystemHost - ok
19:39:07.0194 0x0c90  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
19:39:07.0234 0x0c90  WebClient - ok
19:39:07.0255 0x0c90  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:39:07.0305 0x0c90  Wecsvc - ok
19:39:07.0325 0x0c90  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:39:07.0375 0x0c90  wercplsupport - ok
19:39:07.0395 0x0c90  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:39:07.0439 0x0c90  WerSvc - ok
19:39:07.0459 0x0c90  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:39:07.0489 0x0c90  WfpLwf - ok
19:39:07.0499 0x0c90  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:39:07.0509 0x0c90  WIMMount - ok
19:39:07.0529 0x0c90  WinDefend - ok
19:39:07.0539 0x0c90  WinHttpAutoProxySvc - ok
19:39:07.0609 0x0c90  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:39:07.0659 0x0c90  Winmgmt - ok
19:39:07.0749 0x0c90  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
19:39:07.0839 0x0c90  WinRM - ok
19:39:07.0879 0x0c90  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:39:07.0899 0x0c90  WinUsb - ok
19:39:07.0949 0x0c90  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:39:07.0999 0x0c90  Wlansvc - ok
19:39:08.0019 0x0c90  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
19:39:08.0039 0x0c90  WmiAcpi - ok
19:39:08.0089 0x0c90  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:39:08.0099 0x0c90  wmiApSrv - ok
19:39:08.0119 0x0c90  WMPNetworkSvc - ok
19:39:08.0139 0x0c90  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:39:08.0189 0x0c90  WPCSvc - ok
19:39:08.0209 0x0c90  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:39:08.0249 0x0c90  WPDBusEnum - ok
19:39:08.0269 0x0c90  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:39:08.0299 0x0c90  ws2ifsl - ok
19:39:08.0339 0x0c90  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
19:39:08.0369 0x0c90  wscsvc - ok
19:39:08.0379 0x0c90  WSearch - ok
19:39:08.0479 0x0c90  [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv        C:\Windows\system32\wuaueng.dll
19:39:08.0599 0x0c90  wuauserv - ok
19:39:08.0629 0x0c90  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:39:08.0669 0x0c90  WudfPf - ok
19:39:08.0689 0x0c90  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:39:08.0699 0x0c90  WUDFRd - ok
19:39:08.0719 0x0c90  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:39:08.0729 0x0c90  wudfsvc - ok
19:39:08.0759 0x0c90  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:39:08.0789 0x0c90  WwanSvc - ok
19:39:08.0819 0x0c90  xhunter1 - ok
19:39:08.0829 0x0c90  ================ Scan global ===============================
19:39:08.0879 0x0c90  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
19:39:08.0929 0x0c90  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:39:08.0939 0x0c90  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:39:08.0969 0x0c90  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
19:39:08.0999 0x0c90  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
19:39:09.0009 0x0c90  [ Global ] - ok
19:39:09.0009 0x0c90  ================ Scan MBR ==================================
19:39:09.0309 0x0c90  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:39:09.0659 0x0c90  \Device\Harddisk0\DR0 - ok
19:39:09.0669 0x0c90  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:39:09.0899 0x0c90  \Device\Harddisk1\DR1 - ok
19:39:09.0899 0x0c90  ================ Scan VBR ==================================
19:39:09.0909 0x0c90  [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1
19:39:09.0909 0x0c90  \Device\Harddisk0\DR0\Partition1 - ok
19:39:09.0939 0x0c90  [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2
19:39:09.0949 0x0c90  \Device\Harddisk0\DR0\Partition2 - ok
19:39:09.0949 0x0c90  [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1
19:39:09.0949 0x0c90  \Device\Harddisk1\DR1\Partition1 - ok
19:39:09.0949 0x0c90  ================ Scan generic autorun ======================
19:39:10.0449 0x0c90  [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:39:10.0749 0x0c90  RtHDVCpl - ok
19:39:10.0889 0x0c90  [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe
19:39:10.0919 0x0c90  svchospt - detected UnsignedFile.Multi.Generic ( 1 )
19:39:13.0219 0x0c90  Detect skipped due to KSN trusted
19:39:13.0219 0x0c90  svchospt - ok
19:39:13.0269 0x0c90  [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
19:39:13.0289 0x0c90  SunJavaUpdateSched - ok
19:39:13.0499 0x0c90  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:39:13.0609 0x0c90  Akamai NetSession Interface - ok
19:39:13.0699 0x0c90  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
19:39:13.0759 0x0c90  Sidebar - ok
19:39:13.0809 0x0c90  [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe
19:39:13.0829 0x0c90  BingSvc - ok
19:39:13.0829 0x0c90  Chromium - ok
19:39:13.0989 0x0c90  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:39:14.0099 0x0c90  Akamai NetSession Interface - ok
19:39:14.0099 0x0c90  Overwolf - ok
19:39:14.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:15.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:16.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:17.0359 0x0c90  Win FW state via NFP2: enabled ( trusted )
19:39:19.0748 0x0c90  ============================================================
19:39:19.0748 0x0c90  Scan finished
19:39:19.0748 0x0c90  ============================================================
19:39:19.0748 0x0db8  Detected object count: 0
19:39:19.0748 0x0db8  Actual detected object count: 0
         

Alt 02.12.2016, 20:00   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



Adware/Junkware/Toolbars entfernen

Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop!
Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren!


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 02.12.2016, 20:02   #13
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Code:
ATTFilter
19:33:10.0665 0x0658  TDSS rootkit removing tool 3.1.0.12 Nov  7 2016 07:10:01
19:33:53.0446 0x0658  ============================================================
19:33:53.0446 0x0658  Current date / time: 2016/12/02 19:33:53.0446
19:33:53.0446 0x0658  SystemInfo:
19:33:53.0446 0x0658  
19:33:53.0446 0x0658  OS Version: 6.1.7601 ServicePack: 1.0
19:33:53.0446 0x0658  Product type: Workstation
19:33:53.0446 0x0658  ComputerName: MAPLO-PC
19:33:53.0446 0x0658  UserName: maplo
19:33:53.0446 0x0658  Windows directory: C:\Windows
19:33:53.0446 0x0658  System windows directory: C:\Windows
19:33:53.0446 0x0658  Running under WOW64
19:33:53.0446 0x0658  Processor architecture: Intel x64
19:33:53.0446 0x0658  Number of processors: 4
19:33:53.0446 0x0658  Page size: 0x1000
19:33:53.0446 0x0658  Boot type: Normal boot
19:33:53.0446 0x0658  CodeIntegrityOptions = 0x00000001
19:33:53.0446 0x0658  ============================================================
19:33:54.0712 0x0658  KLMD registered as C:\Windows\system32\drivers\89356864.sys
19:33:54.0712 0x0658  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.18839, osProperties = 0x1
19:33:54.0872 0x0658  System UUID: {415A6447-DBF0-2C12-E363-4AA23CDEB767}
19:33:55.0322 0x0658  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:33:55.0322 0x0658  Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:33:55.0332 0x0658  ============================================================
19:33:55.0332 0x0658  \Device\Harddisk0\DR0:
19:33:55.0332 0x0658  MBR partitions:
19:33:55.0332 0x0658  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:33:55.0332 0x0658  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
19:33:55.0332 0x0658  \Device\Harddisk1\DR1:
19:33:55.0332 0x0658  MBR partitions:
19:33:55.0332 0x0658  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xC45800, BlocksNum 0x88C9800
19:33:55.0332 0x0658  ============================================================
19:33:55.0362 0x0658  C: <-> \Device\Harddisk1\DR1\Partition1
19:33:55.0372 0x0658  E: <-> \Device\Harddisk0\DR0\Partition1
19:33:55.0702 0x0658  F: <-> \Device\Harddisk0\DR0\Partition2
19:33:55.0702 0x0658  ============================================================
19:33:55.0702 0x0658  Initialize success
19:33:55.0702 0x0658  ============================================================
19:38:22.0843 0x0c90  ============================================================
19:38:22.0843 0x0c90  Scan started
19:38:22.0843 0x0c90  Mode: Manual; SigCheck; TDLFS; 
19:38:22.0843 0x0c90  ============================================================
19:38:22.0843 0x0c90  KSN ping started
19:38:36.0222 0x0c90  KSN ping finished: true
19:38:37.0435 0x0c90  ================ Scan system memory ========================
19:38:37.0435 0x0c90  System memory - ok
19:38:37.0435 0x0c90  ================ Scan services =============================
19:38:37.0555 0x0c90  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:38:37.0901 0x0c90  1394ohci - ok
19:38:37.0943 0x0c90  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:38:37.0964 0x0c90  ACPI - ok
19:38:37.0983 0x0c90  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:38:38.0149 0x0c90  AcpiPmi - ok
19:38:38.0267 0x0c90  [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:38:38.0282 0x0c90  AdobeFlashPlayerUpdateSvc - ok
19:38:38.0321 0x0c90  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
19:38:38.0345 0x0c90  adp94xx - ok
19:38:38.0372 0x0c90  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
19:38:38.0392 0x0c90  adpahci - ok
19:38:38.0422 0x0c90  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
19:38:38.0432 0x0c90  adpu320 - ok
19:38:38.0462 0x0c90  [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:38:38.0522 0x0c90  AeLookupSvc - ok
19:38:38.0562 0x0c90  [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters     C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
19:38:38.0572 0x0c90  AERTFilters - ok
19:38:38.0612 0x0c90  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\Windows\system32\drivers\afd.sys
19:38:38.0662 0x0c90  AFD - ok
19:38:38.0682 0x0c90  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
19:38:38.0692 0x0c90  agp440 - ok
19:38:38.0712 0x0c90  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
19:38:38.0772 0x0c90  ALG - ok
19:38:38.0792 0x0c90  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:38:38.0802 0x0c90  aliide - ok
19:38:38.0812 0x0c90  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
19:38:38.0822 0x0c90  amdide - ok
19:38:38.0842 0x0c90  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
19:38:38.0862 0x0c90  AmdK8 - ok
19:38:38.0882 0x0c90  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
19:38:38.0892 0x0c90  AmdPPM - ok
19:38:38.0923 0x0c90  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:38:38.0933 0x0c90  amdsata - ok
19:38:38.0963 0x0c90  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
19:38:38.0973 0x0c90  amdsbs - ok
19:38:38.0993 0x0c90  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:38:39.0003 0x0c90  amdxata - ok
19:38:39.0033 0x0c90  [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID           C:\Windows\system32\drivers\appid.sys
19:38:39.0094 0x0c90  AppID - ok
19:38:39.0124 0x0c90  [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:38:39.0144 0x0c90  AppIDSvc - ok
19:38:39.0164 0x0c90  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
19:38:39.0234 0x0c90  Appinfo - ok
19:38:39.0284 0x0c90  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
19:38:39.0294 0x0c90  arc - ok
19:38:39.0324 0x0c90  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
19:38:39.0334 0x0c90  arcsas - ok
19:38:39.0434 0x0c90  [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:38:39.0484 0x0c90  aspnet_state - ok
19:38:39.0534 0x0c90  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:38:39.0644 0x0c90  AsyncMac - ok
19:38:39.0674 0x0c90  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
19:38:39.0684 0x0c90  atapi - ok
19:38:39.0754 0x0c90  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:38:39.0794 0x0c90  AudioEndpointBuilder - ok
19:38:39.0814 0x0c90  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:38:39.0844 0x0c90  AudioSrv - ok
19:38:39.0864 0x0c90  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:38:39.0924 0x0c90  AxInstSV - ok
19:38:39.0964 0x0c90  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
19:38:40.0014 0x0c90  b06bdrv - ok
19:38:40.0044 0x0c90  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:38:40.0064 0x0c90  b57nd60a - ok
19:38:40.0084 0x0c90  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:38:40.0134 0x0c90  BDESVC - ok
19:38:40.0164 0x0c90  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
19:38:40.0214 0x0c90  Beep - ok
19:38:40.0244 0x0c90  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
19:38:40.0324 0x0c90  BFE - ok
19:38:40.0414 0x0c90  [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM  C:\Program Files\BDServices\BitDefenderCom.exe
19:38:40.0464 0x0c90  BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 )
19:38:42.0774 0x0c90  Detect skipped due to KSN trusted
19:38:42.0774 0x0c90  BitDefenderCOM - ok
19:38:42.0824 0x0c90  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
19:38:42.0954 0x0c90  BITS - ok
19:38:42.0984 0x0c90  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
19:38:43.0004 0x0c90  blbdrive - ok
19:38:43.0024 0x0c90  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:38:43.0084 0x0c90  bowser - ok
19:38:43.0104 0x0c90  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
19:38:43.0124 0x0c90  BrFiltLo - ok
19:38:43.0144 0x0c90  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
19:38:43.0164 0x0c90  BrFiltUp - ok
19:38:43.0214 0x0c90  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
19:38:43.0264 0x0c90  BridgeMP - ok
19:38:43.0284 0x0c90  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
19:38:43.0324 0x0c90  Browser - ok
19:38:43.0364 0x0c90  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:38:43.0424 0x0c90  Brserid - ok
19:38:43.0444 0x0c90  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:38:43.0464 0x0c90  BrSerWdm - ok
19:38:43.0474 0x0c90  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:38:43.0504 0x0c90  BrUsbMdm - ok
19:38:43.0524 0x0c90  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:38:43.0534 0x0c90  BrUsbSer - ok
19:38:43.0554 0x0c90  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
19:38:43.0574 0x0c90  BTHMODEM - ok
19:38:43.0604 0x0c90  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
19:38:43.0644 0x0c90  bthserv - ok
19:38:43.0654 0x0c90  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:38:43.0704 0x0c90  cdfs - ok
19:38:43.0724 0x0c90  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
19:38:43.0744 0x0c90  cdrom - ok
19:38:43.0754 0x0c90  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
19:38:43.0804 0x0c90  CertPropSvc - ok
19:38:43.0814 0x0c90  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
19:38:43.0834 0x0c90  circlass - ok
19:38:43.0884 0x0c90  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
19:38:43.0904 0x0c90  CLFS - ok
19:38:43.0934 0x0c90  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:38:43.0944 0x0c90  clr_optimization_v2.0.50727_32 - ok
19:38:43.0994 0x0c90  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:38:44.0004 0x0c90  clr_optimization_v2.0.50727_64 - ok
19:38:44.0074 0x0c90  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:38:44.0084 0x0c90  clr_optimization_v4.0.30319_32 - ok
19:38:44.0104 0x0c90  [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:38:44.0194 0x0c90  clr_optimization_v4.0.30319_64 - ok
19:38:44.0204 0x0c90  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
19:38:44.0234 0x0c90  CmBatt - ok
19:38:44.0244 0x0c90  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:38:44.0254 0x0c90  cmdide - ok
19:38:44.0294 0x0c90  [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG             C:\Windows\system32\Drivers\cng.sys
19:38:44.0344 0x0c90  CNG - ok
19:38:44.0374 0x0c90  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
19:38:44.0384 0x0c90  Compbatt - ok
19:38:44.0404 0x0c90  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
19:38:44.0434 0x0c90  CompositeBus - ok
19:38:44.0444 0x0c90  COMSysApp - ok
19:38:44.0514 0x0c90  cpuz132 - ok
19:38:44.0534 0x0c90  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
19:38:44.0544 0x0c90  crcdisk - ok
19:38:44.0584 0x0c90  [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:38:44.0644 0x0c90  CryptSvc - ok
19:38:44.0684 0x0c90  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:38:44.0734 0x0c90  DcomLaunch - ok
19:38:44.0764 0x0c90  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
19:38:44.0814 0x0c90  defragsvc - ok
19:38:44.0834 0x0c90  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:38:44.0884 0x0c90  DfsC - ok
19:38:44.0904 0x0c90  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:38:44.0954 0x0c90  Dhcp - ok
19:38:45.0044 0x0c90  [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack       C:\Windows\system32\diagtrack.dll
19:38:45.0114 0x0c90  DiagTrack - ok
19:38:45.0134 0x0c90  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
19:38:45.0174 0x0c90  discache - ok
19:38:45.0184 0x0c90  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
19:38:45.0204 0x0c90  Disk - ok
19:38:45.0234 0x0c90  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:38:45.0274 0x0c90  Dnscache - ok
19:38:45.0294 0x0c90  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
19:38:45.0344 0x0c90  dot3svc - ok
19:38:45.0364 0x0c90  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
19:38:45.0414 0x0c90  DPS - ok
19:38:45.0424 0x0c90  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:38:45.0474 0x0c90  drmkaud - ok
19:38:45.0484 0x0c90  dtmelqbg - ok
19:38:45.0534 0x0c90  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:38:45.0574 0x0c90  DXGKrnl - ok
19:38:45.0594 0x0c90  [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress      C:\Windows\system32\DRIVERS\e1k60x64.sys
19:38:45.0614 0x0c90  e1kexpress - ok
19:38:45.0624 0x0c90  EagleX64 - ok
19:38:45.0654 0x0c90  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
19:38:45.0684 0x0c90  EapHost - ok
19:38:45.0824 0x0c90  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
19:38:45.0924 0x0c90  ebdrv - ok
19:38:45.0964 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS             C:\Windows\System32\lsass.exe
19:38:46.0004 0x0c90  EFS - ok
19:38:46.0064 0x0c90  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:38:46.0144 0x0c90  ehRecvr - ok
19:38:46.0174 0x0c90  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
19:38:46.0194 0x0c90  ehSched - ok
19:38:46.0224 0x0c90  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
19:38:46.0254 0x0c90  elxstor - ok
19:38:46.0284 0x0c90  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:38:46.0314 0x0c90  ErrDev - ok
19:38:46.0354 0x0c90  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
19:38:46.0404 0x0c90  EventSystem - ok
19:38:46.0414 0x0c90  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
19:38:46.0464 0x0c90  exfat - ok
19:38:46.0484 0x0c90  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:38:46.0534 0x0c90  fastfat - ok
19:38:46.0574 0x0c90  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
19:38:46.0644 0x0c90  Fax - ok
19:38:46.0664 0x0c90  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
19:38:46.0684 0x0c90  fdc - ok
19:38:46.0704 0x0c90  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
19:38:46.0744 0x0c90  fdPHost - ok
19:38:46.0764 0x0c90  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:38:46.0794 0x0c90  FDResPub - ok
19:38:46.0824 0x0c90  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:38:46.0834 0x0c90  FileInfo - ok
19:38:46.0854 0x0c90  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:38:46.0894 0x0c90  Filetrace - ok
19:38:46.0914 0x0c90  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
19:38:46.0934 0x0c90  flpydisk - ok
19:38:46.0964 0x0c90  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:38:46.0974 0x0c90  FltMgr - ok
19:38:47.0044 0x0c90  [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache       C:\Windows\system32\FntCache.dll
19:38:47.0104 0x0c90  FontCache - ok
19:38:47.0144 0x0c90  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:38:47.0154 0x0c90  FontCache3.0.0.0 - ok
19:38:47.0174 0x0c90  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:38:47.0194 0x0c90  FsDepends - ok
19:38:47.0204 0x0c90  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:38:47.0214 0x0c90  Fs_Rec - ok
19:38:47.0244 0x0c90  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:38:47.0264 0x0c90  fvevol - ok
19:38:47.0274 0x0c90  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
19:38:47.0294 0x0c90  gagp30kx - ok
19:38:47.0334 0x0c90  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
19:38:47.0394 0x0c90  gpsvc - ok
19:38:47.0504 0x0c90  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:38:47.0514 0x0c90  gupdate - ok
19:38:47.0524 0x0c90  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:38:47.0534 0x0c90  gupdatem - ok
19:38:47.0564 0x0c90  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:38:47.0634 0x0c90  hcw85cir - ok
19:38:47.0664 0x0c90  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:38:47.0704 0x0c90  HdAudAddService - ok
19:38:47.0724 0x0c90  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
19:38:47.0784 0x0c90  HDAudBus - ok
19:38:47.0824 0x0c90  [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64         C:\Windows\system32\drivers\HECIx64.sys
19:38:47.0864 0x0c90  HECIx64 - ok
19:38:47.0884 0x0c90  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
19:38:47.0894 0x0c90  HidBatt - ok
19:38:47.0924 0x0c90  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
19:38:47.0944 0x0c90  HidBth - ok
19:38:47.0974 0x0c90  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
19:38:47.0994 0x0c90  HidIr - ok
19:38:48.0014 0x0c90  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
19:38:48.0054 0x0c90  hidserv - ok
19:38:48.0074 0x0c90  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:38:48.0124 0x0c90  HidUsb - ok
19:38:48.0144 0x0c90  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:38:48.0184 0x0c90  hkmsvc - ok
19:38:48.0204 0x0c90  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:38:48.0264 0x0c90  HomeGroupListener - ok
19:38:48.0294 0x0c90  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:38:48.0314 0x0c90  HomeGroupProvider - ok
19:38:48.0324 0x0c90  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:38:48.0334 0x0c90  HpSAMD - ok
19:38:48.0384 0x0c90  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:38:48.0444 0x0c90  HTTP - ok
19:38:48.0464 0x0c90  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:38:48.0474 0x0c90  hwpolicy - ok
19:38:48.0504 0x0c90  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
19:38:48.0514 0x0c90  i8042prt - ok
19:38:48.0564 0x0c90  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:38:48.0584 0x0c90  iaStorV - ok
19:38:48.0656 0x0c90  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:38:48.0692 0x0c90  idsvc - ok
19:38:48.0698 0x0c90  IEEtwCollectorService - ok
19:38:48.0925 0x0c90  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:38:49.0178 0x0c90  igfx - ok
19:38:49.0218 0x0c90  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
19:38:49.0228 0x0c90  iirsp - ok
19:38:49.0278 0x0c90  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
19:38:49.0308 0x0c90  IKEEXT - ok
19:38:49.0468 0x0c90  [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
19:38:49.0588 0x0c90  IntcAzAudAddService - ok
19:38:49.0622 0x0c90  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
19:38:49.0633 0x0c90  intelide - ok
19:38:49.0659 0x0c90  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
19:38:49.0672 0x0c90  intelppm - ok
19:38:49.0697 0x0c90  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:38:49.0738 0x0c90  IPBusEnum - ok
19:38:49.0757 0x0c90  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:38:49.0801 0x0c90  IpFilterDriver - ok
19:38:49.0839 0x0c90  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:38:49.0895 0x0c90  iphlpsvc - ok
19:38:49.0905 0x0c90  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:38:49.0927 0x0c90  IPMIDRV - ok
19:38:49.0955 0x0c90  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:38:49.0998 0x0c90  IPNAT - ok
19:38:50.0020 0x0c90  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:38:50.0045 0x0c90  IRENUM - ok
19:38:50.0060 0x0c90  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:38:50.0071 0x0c90  isapnp - ok
19:38:50.0099 0x0c90  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:38:50.0116 0x0c90  iScsiPrt - ok
19:38:50.0128 0x0c90  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
19:38:50.0138 0x0c90  kbdclass - ok
19:38:50.0158 0x0c90  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
19:38:50.0178 0x0c90  kbdhid - ok
19:38:50.0198 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso          C:\Windows\system32\lsass.exe
19:38:50.0208 0x0c90  KeyIso - ok
19:38:50.0248 0x0c90  [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:38:50.0258 0x0c90  KSecDD - ok
19:38:50.0278 0x0c90  [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:38:50.0288 0x0c90  KSecPkg - ok
19:38:50.0318 0x0c90  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:38:50.0348 0x0c90  ksthunk - ok
19:38:50.0378 0x0c90  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:38:50.0428 0x0c90  KtmRm - ok
19:38:50.0458 0x0c90  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
19:38:50.0508 0x0c90  LanmanServer - ok
19:38:50.0528 0x0c90  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:38:50.0578 0x0c90  LanmanWorkstation - ok
19:38:50.0598 0x0c90  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:38:50.0628 0x0c90  lltdio - ok
19:38:50.0668 0x0c90  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:38:50.0708 0x0c90  lltdsvc - ok
19:38:50.0728 0x0c90  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:38:50.0778 0x0c90  lmhosts - ok
19:38:50.0798 0x0c90  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
19:38:50.0818 0x0c90  LSI_FC - ok
19:38:50.0828 0x0c90  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
19:38:50.0838 0x0c90  LSI_SAS - ok
19:38:50.0848 0x0c90  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
19:38:50.0858 0x0c90  LSI_SAS2 - ok
19:38:50.0898 0x0c90  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
19:38:50.0908 0x0c90  LSI_SCSI - ok
19:38:50.0938 0x0c90  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
19:38:50.0978 0x0c90  luafv - ok
19:38:50.0998 0x0c90  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:38:51.0008 0x0c90  Mcx2Svc - ok
19:38:51.0018 0x0c90  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
19:38:51.0038 0x0c90  megasas - ok
19:38:51.0058 0x0c90  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
19:38:51.0078 0x0c90  MegaSR - ok
19:38:51.0108 0x0c90  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
19:38:51.0148 0x0c90  MMCSS - ok
19:38:51.0158 0x0c90  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
19:38:51.0198 0x0c90  Modem - ok
19:38:51.0208 0x0c90  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:38:51.0228 0x0c90  monitor - ok
19:38:51.0248 0x0c90  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
19:38:51.0258 0x0c90  mouclass - ok
19:38:51.0268 0x0c90  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:38:51.0278 0x0c90  mouhid - ok
19:38:51.0318 0x0c90  [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:38:51.0338 0x0c90  mountmgr - ok
19:38:51.0368 0x0c90  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
19:38:51.0378 0x0c90  mpio - ok
19:38:51.0398 0x0c90  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:38:51.0428 0x0c90  mpsdrv - ok
19:38:51.0478 0x0c90  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:38:51.0538 0x0c90  MpsSvc - ok
19:38:51.0568 0x0c90  [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:38:51.0628 0x0c90  MRxDAV - ok
19:38:51.0648 0x0c90  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:38:51.0688 0x0c90  mrxsmb - ok
19:38:51.0728 0x0c90  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:38:51.0758 0x0c90  mrxsmb10 - ok
19:38:51.0768 0x0c90  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:38:51.0788 0x0c90  mrxsmb20 - ok
19:38:51.0798 0x0c90  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:38:51.0808 0x0c90  msahci - ok
19:38:51.0828 0x0c90  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:38:51.0848 0x0c90  msdsm - ok
19:38:51.0858 0x0c90  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
19:38:51.0888 0x0c90  MSDTC - ok
19:38:51.0918 0x0c90  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:38:51.0958 0x0c90  Msfs - ok
19:38:51.0968 0x0c90  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:38:52.0008 0x0c90  mshidkmdf - ok
19:38:52.0028 0x0c90  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:38:52.0038 0x0c90  msisadrv - ok
19:38:52.0058 0x0c90  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:38:52.0108 0x0c90  MSiSCSI - ok
19:38:52.0108 0x0c90  msiserver - ok
19:38:52.0118 0x0c90  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:38:52.0158 0x0c90  MSKSSRV - ok
19:38:52.0168 0x0c90  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:38:52.0208 0x0c90  MSPCLOCK - ok
19:38:52.0218 0x0c90  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:38:52.0248 0x0c90  MSPQM - ok
19:38:52.0278 0x0c90  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:38:52.0298 0x0c90  MsRPC - ok
19:38:52.0318 0x0c90  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
19:38:52.0328 0x0c90  mssmbios - ok
19:38:52.0338 0x0c90  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:38:52.0378 0x0c90  MSTEE - ok
19:38:52.0398 0x0c90  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
19:38:52.0418 0x0c90  MTConfig - ok
19:38:52.0448 0x0c90  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
19:38:52.0458 0x0c90  Mup - ok
19:38:52.0498 0x0c90  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
19:38:52.0538 0x0c90  napagent - ok
19:38:52.0578 0x0c90  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:38:52.0608 0x0c90  NativeWifiP - ok
19:38:52.0648 0x0c90  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:38:52.0678 0x0c90  NDIS - ok
19:38:52.0698 0x0c90  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:38:52.0738 0x0c90  NdisCap - ok
19:38:52.0768 0x0c90  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:38:52.0808 0x0c90  NdisTapi - ok
19:38:52.0818 0x0c90  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:38:52.0858 0x0c90  Ndisuio - ok
19:38:52.0868 0x0c90  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:38:52.0918 0x0c90  NdisWan - ok
19:38:52.0928 0x0c90  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:38:52.0978 0x0c90  NDProxy - ok
19:38:52.0998 0x0c90  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:38:53.0038 0x0c90  NetBIOS - ok
19:38:53.0068 0x0c90  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:38:53.0108 0x0c90  NetBT - ok
19:38:53.0128 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon        C:\Windows\system32\lsass.exe
19:38:53.0138 0x0c90  Netlogon - ok
19:38:53.0168 0x0c90  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
19:38:53.0218 0x0c90  Netman - ok
19:38:53.0278 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0288 0x0c90  NetMsmqActivator - ok
19:38:53.0308 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0328 0x0c90  NetPipeActivator - ok
19:38:53.0348 0x0c90  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
19:38:53.0398 0x0c90  netprofm - ok
19:38:53.0418 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0428 0x0c90  NetTcpActivator - ok
19:38:53.0438 0x0c90  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:38:53.0448 0x0c90  NetTcpPortSharing - ok
19:38:53.0478 0x0c90  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
19:38:53.0488 0x0c90  nfrd960 - ok
19:38:53.0518 0x0c90  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:38:53.0588 0x0c90  NlaSvc - ok
19:38:53.0618 0x0c90  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:38:53.0648 0x0c90  Npfs - ok
19:38:53.0648 0x0c90  npggsvc - ok
19:38:53.0668 0x0c90  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
19:38:53.0718 0x0c90  nsi - ok
19:38:53.0728 0x0c90  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:38:53.0768 0x0c90  nsiproxy - ok
19:38:53.0848 0x0c90  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:38:53.0908 0x0c90  Ntfs - ok
19:38:53.0938 0x0c90  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
19:38:53.0980 0x0c90  Null - ok
19:38:54.0000 0x0c90  [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
19:38:54.0020 0x0c90  NVHDA - ok
19:38:54.0400 0x0c90  [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:38:54.0820 0x0c90  nvlddmkm - ok
19:38:54.0870 0x0c90  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:38:54.0880 0x0c90  nvraid - ok
19:38:54.0900 0x0c90  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:38:54.0910 0x0c90  nvstor - ok
19:38:54.0970 0x0c90  [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc           C:\Windows\system32\nvvsvc.exe
19:38:55.0000 0x0c90  nvsvc - ok
19:38:55.0090 0x0c90  [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:38:55.0120 0x0c90  nvUpdatusService - ok
19:38:55.0150 0x0c90  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:38:55.0160 0x0c90  nv_agp - ok
19:38:55.0190 0x0c90  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:38:55.0210 0x0c90  ohci1394 - ok
19:38:55.0230 0x0c90  onotlzbb - ok
19:38:55.0240 0x0c90  oshnyfcv - ok
19:38:55.0280 0x0c90  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:38:55.0340 0x0c90  p2pimsvc - ok
19:38:55.0370 0x0c90  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
19:38:55.0400 0x0c90  p2psvc - ok
19:38:55.0430 0x0c90  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
19:38:55.0460 0x0c90  Parport - ok
19:38:55.0470 0x0c90  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:38:55.0490 0x0c90  partmgr - ok
19:38:55.0530 0x0c90  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:38:55.0590 0x0c90  PcaSvc - ok
19:38:55.0660 0x0c90  [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd        C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:38:55.0700 0x0c90  pccsmcfd - ok
19:38:55.0710 0x0c90  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
19:38:55.0730 0x0c90  pci - ok
19:38:55.0750 0x0c90  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
19:38:55.0760 0x0c90  pciide - ok
19:38:55.0790 0x0c90  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
19:38:55.0810 0x0c90  pcmcia - ok
19:38:55.0840 0x0c90  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:38:55.0850 0x0c90  pcw - ok
19:38:55.0910 0x0c90  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:38:55.0950 0x0c90  PEAUTH - ok
19:38:56.0030 0x0c90  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:38:56.0040 0x0c90  PerfHost - ok
19:38:56.0120 0x0c90  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
19:38:56.0190 0x0c90  pla - ok
19:38:56.0240 0x0c90  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:38:56.0300 0x0c90  PlugPlay - ok
19:38:56.0310 0x0c90  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:38:56.0330 0x0c90  PNRPAutoReg - ok
19:38:56.0350 0x0c90  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:38:56.0380 0x0c90  PNRPsvc - ok
19:38:56.0430 0x0c90  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:38:56.0490 0x0c90  PolicyAgent - ok
19:38:56.0520 0x0c90  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
19:38:56.0570 0x0c90  Power - ok
19:38:56.0590 0x0c90  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:38:56.0620 0x0c90  PptpMiniport - ok
19:38:56.0640 0x0c90  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
19:38:56.0670 0x0c90  Processor - ok
19:38:56.0700 0x0c90  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
19:38:56.0760 0x0c90  ProfSvc - ok
19:38:56.0770 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe
19:38:56.0790 0x0c90  ProtectedStorage - ok
19:38:56.0800 0x0c90  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:38:56.0840 0x0c90  Psched - ok
19:38:56.0910 0x0c90  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
19:38:56.0960 0x0c90  ql2300 - ok
19:38:56.0980 0x0c90  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
19:38:57.0000 0x0c90  ql40xx - ok
19:38:57.0030 0x0c90  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
19:38:57.0050 0x0c90  QWAVE - ok
19:38:57.0070 0x0c90  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:38:57.0100 0x0c90  QWAVEdrv - ok
19:38:57.0120 0x0c90  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:38:57.0160 0x0c90  RasAcd - ok
19:38:57.0180 0x0c90  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:38:57.0210 0x0c90  RasAgileVpn - ok
19:38:57.0230 0x0c90  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
19:38:57.0270 0x0c90  RasAuto - ok
19:38:57.0290 0x0c90  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:38:57.0320 0x0c90  Rasl2tp - ok
19:38:57.0360 0x0c90  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
19:38:57.0410 0x0c90  RasMan - ok
19:38:57.0430 0x0c90  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:38:57.0480 0x0c90  RasPppoe - ok
19:38:57.0490 0x0c90  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:38:57.0540 0x0c90  RasSstp - ok
19:38:57.0560 0x0c90  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:38:57.0600 0x0c90  rdbss - ok
19:38:57.0630 0x0c90  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
19:38:57.0650 0x0c90  rdpbus - ok
19:38:57.0670 0x0c90  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:38:57.0700 0x0c90  RDPCDD - ok
19:38:57.0740 0x0c90  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:38:57.0770 0x0c90  RDPENCDD - ok
19:38:57.0790 0x0c90  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:38:57.0820 0x0c90  RDPREFMP - ok
19:38:57.0860 0x0c90  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:38:57.0900 0x0c90  RDPWD - ok
19:38:57.0930 0x0c90  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:38:57.0940 0x0c90  rdyboost - ok
19:38:57.0970 0x0c90  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:38:58.0010 0x0c90  RemoteAccess - ok
19:38:58.0040 0x0c90  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:38:58.0090 0x0c90  RemoteRegistry - ok
19:38:58.0100 0x0c90  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:38:58.0150 0x0c90  RpcEptMapper - ok
19:38:58.0170 0x0c90  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
19:38:58.0190 0x0c90  RpcLocator - ok
19:38:58.0220 0x0c90  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
19:38:58.0260 0x0c90  RpcSs - ok
19:38:58.0290 0x0c90  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:38:58.0320 0x0c90  rspndr - ok
19:38:58.0370 0x0c90  [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
19:38:58.0390 0x0c90  RTL8167 - ok
19:38:58.0400 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs           C:\Windows\system32\lsass.exe
19:38:58.0410 0x0c90  SamSs - ok
19:38:58.0430 0x0c90  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:38:58.0440 0x0c90  sbp2port - ok
19:38:58.0470 0x0c90  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:38:58.0510 0x0c90  SCardSvr - ok
19:38:58.0540 0x0c90  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:38:58.0580 0x0c90  scfilter - ok
19:38:58.0630 0x0c90  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
19:38:58.0690 0x0c90  Schedule - ok
19:38:58.0720 0x0c90  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:38:58.0760 0x0c90  SCPolicySvc - ok
19:38:58.0780 0x0c90  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:38:58.0830 0x0c90  SDRSVC - ok
19:38:58.0850 0x0c90  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:38:58.0890 0x0c90  secdrv - ok
19:38:58.0910 0x0c90  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
19:38:58.0950 0x0c90  seclogon - ok
19:38:58.0960 0x0c90  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
19:38:59.0010 0x0c90  SENS - ok
19:38:59.0030 0x0c90  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:38:59.0080 0x0c90  SensrSvc - ok
19:38:59.0110 0x0c90  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
19:38:59.0130 0x0c90  Serenum - ok
19:38:59.0150 0x0c90  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
19:38:59.0170 0x0c90  Serial - ok
19:38:59.0190 0x0c90  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
19:38:59.0210 0x0c90  sermouse - ok
19:38:59.0300 0x0c90  [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer    C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
19:38:59.0330 0x0c90  ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 )
19:39:01.0700 0x0c90  Detect skipped due to KSN trusted
19:39:01.0700 0x0c90  ServiceLayer - ok
19:39:01.0730 0x0c90  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
19:39:01.0780 0x0c90  SessionEnv - ok
19:39:01.0800 0x0c90  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:39:01.0820 0x0c90  sffdisk - ok
19:39:01.0840 0x0c90  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:39:01.0860 0x0c90  sffp_mmc - ok
19:39:01.0870 0x0c90  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:39:01.0890 0x0c90  sffp_sd - ok
19:39:01.0910 0x0c90  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
19:39:01.0930 0x0c90  sfloppy - ok
19:39:01.0970 0x0c90  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:39:02.0020 0x0c90  SharedAccess - ok
19:39:02.0060 0x0c90  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:39:02.0110 0x0c90  ShellHWDetection - ok
19:39:02.0120 0x0c90  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
19:39:02.0130 0x0c90  SiSRaid2 - ok
19:39:02.0150 0x0c90  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
19:39:02.0160 0x0c90  SiSRaid4 - ok
19:39:02.0180 0x0c90  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:39:02.0230 0x0c90  Smb - ok
19:39:02.0240 0x0c90  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:39:02.0260 0x0c90  SNMPTRAP - ok
19:39:02.0280 0x0c90  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:39:02.0290 0x0c90  spldr - ok
19:39:02.0330 0x0c90  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
19:39:02.0390 0x0c90  Spooler - ok
19:39:02.0510 0x0c90  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
19:39:02.0640 0x0c90  sppsvc - ok
19:39:02.0670 0x0c90  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:39:02.0710 0x0c90  sppuinotify - ok
19:39:02.0740 0x0c90  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:39:02.0790 0x0c90  srv - ok
19:39:02.0820 0x0c90  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:39:02.0850 0x0c90  srv2 - ok
19:39:02.0860 0x0c90  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:39:02.0880 0x0c90  srvnet - ok
19:39:02.0900 0x0c90  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:39:02.0940 0x0c90  SSDPSRV - ok
19:39:02.0970 0x0c90  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:39:03.0030 0x0c90  SstpSvc - ok
19:39:03.0080 0x0c90  [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:39:03.0100 0x0c90  Stereo Service - ok
19:39:03.0110 0x0c90  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
19:39:03.0120 0x0c90  stexstor - ok
19:39:03.0160 0x0c90  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
19:39:03.0200 0x0c90  stisvc - ok
19:39:03.0210 0x0c90  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
19:39:03.0220 0x0c90  swenum - ok
19:39:03.0260 0x0c90  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
19:39:03.0310 0x0c90  swprv - ok
19:39:03.0380 0x0c90  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
19:39:03.0460 0x0c90  SysMain - ok
19:39:03.0480 0x0c90  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:39:03.0500 0x0c90  TabletInputService - ok
19:39:03.0540 0x0c90  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:39:03.0590 0x0c90  TapiSrv - ok
19:39:03.0610 0x0c90  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
19:39:03.0650 0x0c90  TBS - ok
19:39:03.0740 0x0c90  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:39:03.0800 0x0c90  Tcpip - ok
19:39:03.0860 0x0c90  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:39:03.0910 0x0c90  TCPIP6 - ok
19:39:03.0940 0x0c90  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:39:03.0970 0x0c90  tcpipreg - ok
19:39:03.0980 0x0c90  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:39:04.0030 0x0c90  TDPIPE - ok
19:39:04.0040 0x0c90  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:39:04.0060 0x0c90  TDTCP - ok
19:39:04.0090 0x0c90  [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:39:04.0140 0x0c90  tdx - ok
19:39:04.0160 0x0c90  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
19:39:04.0170 0x0c90  TermDD - ok
19:39:04.0220 0x0c90  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
19:39:04.0290 0x0c90  TermService - ok
19:39:04.0320 0x0c90  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
19:39:04.0340 0x0c90  Themes - ok
19:39:04.0360 0x0c90  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
19:39:04.0400 0x0c90  THREADORDER - ok
19:39:04.0420 0x0c90  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
19:39:04.0460 0x0c90  TrkWks - ok
19:39:04.0520 0x0c90  [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos          C:\Windows\system32\DRIVERS\Trufos.sys
19:39:04.0540 0x0c90  Trufos - ok
19:39:04.0590 0x0c90  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:39:04.0640 0x0c90  TrustedInstaller - ok
19:39:04.0670 0x0c90  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:39:04.0690 0x0c90  tssecsrv - ok
19:39:04.0710 0x0c90  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:39:04.0760 0x0c90  TsUsbFlt - ok
19:39:04.0770 0x0c90  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
19:39:04.0800 0x0c90  TsUsbGD - ok
19:39:04.0820 0x0c90  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:39:04.0860 0x0c90  tunnel - ok
19:39:04.0870 0x0c90  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
19:39:04.0890 0x0c90  uagp35 - ok
19:39:04.0910 0x0c90  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:39:04.0950 0x0c90  udfs - ok
19:39:04.0980 0x0c90  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:39:05.0000 0x0c90  UI0Detect - ok
19:39:05.0010 0x0c90  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:39:05.0020 0x0c90  uliagpkx - ok
19:39:05.0040 0x0c90  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
19:39:05.0050 0x0c90  umbus - ok
19:39:05.0060 0x0c90  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
19:39:05.0090 0x0c90  UmPass - ok
19:39:05.0110 0x0c90  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
19:39:05.0155 0x0c90  upnphost - ok
19:39:05.0173 0x0c90  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\drivers\usbccgp.sys
19:39:05.0209 0x0c90  usbccgp - ok
19:39:05.0234 0x0c90  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:39:05.0267 0x0c90  usbcir - ok
19:39:05.0287 0x0c90  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
19:39:05.0308 0x0c90  usbehci - ok
19:39:05.0336 0x0c90  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
19:39:05.0376 0x0c90  usbhub - ok
19:39:05.0396 0x0c90  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:39:05.0413 0x0c90  usbohci - ok
19:39:05.0427 0x0c90  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
19:39:05.0442 0x0c90  usbprint - ok
19:39:05.0494 0x0c90  [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser          C:\Windows\system32\DRIVERS\usbser.sys
19:39:05.0517 0x0c90  usbser - ok
19:39:05.0535 0x0c90  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:39:05.0593 0x0c90  USBSTOR - ok
19:39:05.0617 0x0c90  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
19:39:05.0642 0x0c90  usbuhci - ok
19:39:05.0666 0x0c90  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
19:39:05.0714 0x0c90  UxSms - ok
19:39:05.0729 0x0c90  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc        C:\Windows\system32\lsass.exe
19:39:05.0750 0x0c90  VaultSvc - ok
19:39:05.0755 0x0c90  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:39:05.0767 0x0c90  vdrvroot - ok
19:39:05.0798 0x0c90  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
19:39:05.0854 0x0c90  vds - ok
19:39:05.0873 0x0c90  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:39:05.0888 0x0c90  vga - ok
19:39:05.0903 0x0c90  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:39:05.0936 0x0c90  VgaSave - ok
19:39:05.0965 0x0c90  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:39:05.0982 0x0c90  vhdmp - ok
19:39:06.0006 0x0c90  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:39:06.0018 0x0c90  viaide - ok
19:39:06.0030 0x0c90  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:39:06.0042 0x0c90  volmgr - ok
19:39:06.0069 0x0c90  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:39:06.0087 0x0c90  volmgrx - ok
19:39:06.0114 0x0c90  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:39:06.0134 0x0c90  volsnap - ok
19:39:06.0154 0x0c90  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
19:39:06.0170 0x0c90  vsmraid - ok
19:39:06.0240 0x0c90  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
19:39:06.0309 0x0c90  VSS - ok
19:39:06.0333 0x0c90  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
19:39:06.0347 0x0c90  vwifibus - ok
19:39:06.0373 0x0c90  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
19:39:06.0418 0x0c90  W32Time - ok
19:39:06.0441 0x0c90  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
19:39:06.0453 0x0c90  WacomPen - ok
19:39:06.0470 0x0c90  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:39:06.0503 0x0c90  WANARP - ok
19:39:06.0507 0x0c90  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:39:06.0539 0x0c90  Wanarpv6 - ok
19:39:06.0604 0x0c90  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
19:39:06.0650 0x0c90  WatAdminSvc - ok
19:39:06.0714 0x0c90  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
19:39:06.0794 0x0c90  wbengine - ok
19:39:06.0834 0x0c90  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:39:06.0854 0x0c90  WbioSrvc - ok
19:39:06.0874 0x0c90  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:39:06.0904 0x0c90  wcncsvc - ok
19:39:06.0924 0x0c90  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:39:06.0964 0x0c90  WcsPlugInService - ok
19:39:06.0994 0x0c90  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
19:39:07.0014 0x0c90  Wd - ok
19:39:07.0054 0x0c90  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:39:07.0084 0x0c90  Wdf01000 - ok
19:39:07.0114 0x0c90  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:39:07.0154 0x0c90  WdiServiceHost - ok
19:39:07.0154 0x0c90  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:39:07.0174 0x0c90  WdiSystemHost - ok
19:39:07.0194 0x0c90  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
19:39:07.0234 0x0c90  WebClient - ok
19:39:07.0255 0x0c90  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:39:07.0305 0x0c90  Wecsvc - ok
19:39:07.0325 0x0c90  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:39:07.0375 0x0c90  wercplsupport - ok
19:39:07.0395 0x0c90  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:39:07.0439 0x0c90  WerSvc - ok
19:39:07.0459 0x0c90  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:39:07.0489 0x0c90  WfpLwf - ok
19:39:07.0499 0x0c90  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:39:07.0509 0x0c90  WIMMount - ok
19:39:07.0529 0x0c90  WinDefend - ok
19:39:07.0539 0x0c90  WinHttpAutoProxySvc - ok
19:39:07.0609 0x0c90  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:39:07.0659 0x0c90  Winmgmt - ok
19:39:07.0749 0x0c90  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
19:39:07.0839 0x0c90  WinRM - ok
19:39:07.0879 0x0c90  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:39:07.0899 0x0c90  WinUsb - ok
19:39:07.0949 0x0c90  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:39:07.0999 0x0c90  Wlansvc - ok
19:39:08.0019 0x0c90  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
19:39:08.0039 0x0c90  WmiAcpi - ok
19:39:08.0089 0x0c90  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:39:08.0099 0x0c90  wmiApSrv - ok
19:39:08.0119 0x0c90  WMPNetworkSvc - ok
19:39:08.0139 0x0c90  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:39:08.0189 0x0c90  WPCSvc - ok
19:39:08.0209 0x0c90  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:39:08.0249 0x0c90  WPDBusEnum - ok
19:39:08.0269 0x0c90  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:39:08.0299 0x0c90  ws2ifsl - ok
19:39:08.0339 0x0c90  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
19:39:08.0369 0x0c90  wscsvc - ok
19:39:08.0379 0x0c90  WSearch - ok
19:39:08.0479 0x0c90  [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv        C:\Windows\system32\wuaueng.dll
19:39:08.0599 0x0c90  wuauserv - ok
19:39:08.0629 0x0c90  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:39:08.0669 0x0c90  WudfPf - ok
19:39:08.0689 0x0c90  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:39:08.0699 0x0c90  WUDFRd - ok
19:39:08.0719 0x0c90  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:39:08.0729 0x0c90  wudfsvc - ok
19:39:08.0759 0x0c90  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:39:08.0789 0x0c90  WwanSvc - ok
19:39:08.0819 0x0c90  xhunter1 - ok
19:39:08.0829 0x0c90  ================ Scan global ===============================
19:39:08.0879 0x0c90  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
19:39:08.0929 0x0c90  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:39:08.0939 0x0c90  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:39:08.0969 0x0c90  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
19:39:08.0999 0x0c90  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
19:39:09.0009 0x0c90  [ Global ] - ok
19:39:09.0009 0x0c90  ================ Scan MBR ==================================
19:39:09.0309 0x0c90  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:39:09.0659 0x0c90  \Device\Harddisk0\DR0 - ok
19:39:09.0669 0x0c90  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:39:09.0899 0x0c90  \Device\Harddisk1\DR1 - ok
19:39:09.0899 0x0c90  ================ Scan VBR ==================================
19:39:09.0909 0x0c90  [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1
19:39:09.0909 0x0c90  \Device\Harddisk0\DR0\Partition1 - ok
19:39:09.0939 0x0c90  [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2
19:39:09.0949 0x0c90  \Device\Harddisk0\DR0\Partition2 - ok
19:39:09.0949 0x0c90  [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1
19:39:09.0949 0x0c90  \Device\Harddisk1\DR1\Partition1 - ok
19:39:09.0949 0x0c90  ================ Scan generic autorun ======================
19:39:10.0449 0x0c90  [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:39:10.0749 0x0c90  RtHDVCpl - ok
19:39:10.0889 0x0c90  [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe
19:39:10.0919 0x0c90  svchospt - detected UnsignedFile.Multi.Generic ( 1 )
19:39:13.0219 0x0c90  Detect skipped due to KSN trusted
19:39:13.0219 0x0c90  svchospt - ok
19:39:13.0269 0x0c90  [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
19:39:13.0289 0x0c90  SunJavaUpdateSched - ok
         

Alt 02.12.2016, 20:56   #14
maplo
 
unbekanntes Programm - Standard

unbekanntes Programm



Code:
ATTFilter
19:39:13.0499 0x0c90  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:39:13.0609 0x0c90  Akamai NetSession Interface - ok
19:39:13.0699 0x0c90  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
19:39:13.0759 0x0c90  Sidebar - ok
19:39:13.0809 0x0c90  [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe
19:39:13.0829 0x0c90  BingSvc - ok
19:39:13.0829 0x0c90  Chromium - ok
19:39:13.0989 0x0c90  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:39:14.0099 0x0c90  Akamai NetSession Interface - ok
19:39:14.0099 0x0c90  Overwolf - ok
19:39:14.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:15.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:16.0109 0x0c90  Waiting for KSN requests completion. In queue: 54
19:39:17.0359 0x0c90  Win FW state via NFP2: enabled ( trusted )
19:39:19.0748 0x0c90  ============================================================
19:39:19.0748 0x0c90  Scan finished
19:39:19.0748 0x0c90  ============================================================
19:39:19.0748 0x0db8  Detected object count: 0
19:39:19.0748 0x0db8  Actual detected object count: 0
19:51:38.0994 0x0cd8  ============================================================
19:51:38.0994 0x0cd8  Scan started
19:51:38.0994 0x0cd8  Mode: Manual; SigCheck; TDLFS; 
19:51:38.0994 0x0cd8  ============================================================
19:51:38.0994 0x0cd8  KSN ping started
19:51:52.0304 0x0cd8  KSN ping finished: true
19:51:53.0014 0x0cd8  ================ Scan system memory ========================
19:51:53.0014 0x0cd8  System memory - ok
19:51:53.0024 0x0cd8  ================ Scan services =============================
19:51:53.0124 0x0cd8  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:51:53.0154 0x0cd8  1394ohci - ok
19:51:53.0174 0x0cd8  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:51:53.0194 0x0cd8  ACPI - ok
19:51:53.0204 0x0cd8  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:51:53.0224 0x0cd8  AcpiPmi - ok
19:51:53.0314 0x0cd8  [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:51:53.0334 0x0cd8  AdobeFlashPlayerUpdateSvc - ok
19:51:53.0384 0x0cd8  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
19:51:53.0404 0x0cd8  adp94xx - ok
19:51:53.0424 0x0cd8  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
19:51:53.0444 0x0cd8  adpahci - ok
19:51:53.0454 0x0cd8  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
19:51:53.0474 0x0cd8  adpu320 - ok
19:51:53.0494 0x0cd8  [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:51:53.0504 0x0cd8  AeLookupSvc - ok
19:51:53.0554 0x0cd8  [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters     C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
19:51:53.0564 0x0cd8  AERTFilters - ok
19:51:53.0604 0x0cd8  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\Windows\system32\drivers\afd.sys
19:51:53.0624 0x0cd8  AFD - ok
19:51:53.0644 0x0cd8  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
19:51:53.0654 0x0cd8  agp440 - ok
19:51:53.0674 0x0cd8  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
19:51:53.0694 0x0cd8  ALG - ok
19:51:53.0714 0x0cd8  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:51:53.0724 0x0cd8  aliide - ok
19:51:53.0734 0x0cd8  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
19:51:53.0744 0x0cd8  amdide - ok
19:51:53.0764 0x0cd8  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
19:51:53.0784 0x0cd8  AmdK8 - ok
19:51:53.0794 0x0cd8  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
19:51:53.0804 0x0cd8  AmdPPM - ok
19:51:53.0824 0x0cd8  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:51:53.0844 0x0cd8  amdsata - ok
19:51:53.0864 0x0cd8  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
19:51:53.0874 0x0cd8  amdsbs - ok
19:51:53.0894 0x0cd8  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:51:53.0904 0x0cd8  amdxata - ok
19:51:53.0934 0x0cd8  [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID           C:\Windows\system32\drivers\appid.sys
19:51:53.0954 0x0cd8  AppID - ok
19:51:53.0974 0x0cd8  [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:51:53.0994 0x0cd8  AppIDSvc - ok
19:51:54.0014 0x0cd8  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
19:51:54.0024 0x0cd8  Appinfo - ok
19:51:54.0054 0x0cd8  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
19:51:54.0064 0x0cd8  arc - ok
19:51:54.0094 0x0cd8  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
19:51:54.0104 0x0cd8  arcsas - ok
19:51:54.0194 0x0cd8  [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:51:54.0204 0x0cd8  aspnet_state - ok
19:51:54.0224 0x0cd8  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:51:54.0254 0x0cd8  AsyncMac - ok
19:51:54.0274 0x0cd8  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
19:51:54.0284 0x0cd8  atapi - ok
19:51:54.0334 0x0cd8  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:51:54.0364 0x0cd8  AudioEndpointBuilder - ok
19:51:54.0384 0x0cd8  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:51:54.0404 0x0cd8  AudioSrv - ok
19:51:54.0434 0x0cd8  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:51:54.0454 0x0cd8  AxInstSV - ok
19:51:54.0524 0x0cd8  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
19:51:54.0554 0x0cd8  b06bdrv - ok
19:51:54.0574 0x0cd8  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:51:54.0594 0x0cd8  b57nd60a - ok
19:51:54.0614 0x0cd8  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:51:54.0624 0x0cd8  BDESVC - ok
19:51:54.0644 0x0cd8  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
19:51:54.0674 0x0cd8  Beep - ok
19:51:54.0704 0x0cd8  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
19:51:54.0734 0x0cd8  BFE - ok
19:51:54.0804 0x0cd8  [ 98F6EECCF4D7D64E58A71F7DAFE298CF, FE5C8DE0A00961C916935E0F1E0808A227EA2EFFF0C71DD3A50FD4C70AAECCB1 ] BitDefenderCOM  C:\Program Files\BDServices\BitDefenderCom.exe
19:51:54.0824 0x0cd8  BitDefenderCOM - detected UnsignedFile.Multi.Generic ( 1 )
19:51:54.0824 0x0cd8  Detect skipped due to KSN trusted
19:51:54.0834 0x0cd8  BitDefenderCOM - ok
19:51:54.0874 0x0cd8  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
19:51:54.0934 0x0cd8  BITS - ok
19:51:54.0954 0x0cd8  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
19:51:54.0974 0x0cd8  blbdrive - ok
19:51:54.0984 0x0cd8  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:51:55.0004 0x0cd8  bowser - ok
19:51:55.0024 0x0cd8  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
19:51:55.0034 0x0cd8  BrFiltLo - ok
19:51:55.0054 0x0cd8  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
19:51:55.0064 0x0cd8  BrFiltUp - ok
19:51:55.0084 0x0cd8  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
19:51:55.0124 0x0cd8  BridgeMP - ok
19:51:55.0144 0x0cd8  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
19:51:55.0174 0x0cd8  Browser - ok
19:51:55.0195 0x0cd8  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:51:55.0214 0x0cd8  Brserid - ok
19:51:55.0229 0x0cd8  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:51:55.0243 0x0cd8  BrSerWdm - ok
19:51:55.0254 0x0cd8  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:51:55.0267 0x0cd8  BrUsbMdm - ok
19:51:55.0286 0x0cd8  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:51:55.0297 0x0cd8  BrUsbSer - ok
19:51:55.0316 0x0cd8  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
19:51:55.0331 0x0cd8  BTHMODEM - ok
19:51:55.0362 0x0cd8  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
19:51:55.0392 0x0cd8  bthserv - ok
19:51:55.0412 0x0cd8  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:51:55.0452 0x0cd8  cdfs - ok
19:51:55.0462 0x0cd8  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
19:51:55.0482 0x0cd8  cdrom - ok
19:51:55.0492 0x0cd8  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
19:51:55.0532 0x0cd8  CertPropSvc - ok
19:51:55.0552 0x0cd8  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
19:51:55.0562 0x0cd8  circlass - ok
19:51:55.0602 0x0cd8  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
19:51:55.0622 0x0cd8  CLFS - ok
19:51:55.0652 0x0cd8  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:51:55.0672 0x0cd8  clr_optimization_v2.0.50727_32 - ok
19:51:55.0721 0x0cd8  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:51:55.0734 0x0cd8  clr_optimization_v2.0.50727_64 - ok
19:51:55.0789 0x0cd8  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:51:55.0805 0x0cd8  clr_optimization_v4.0.30319_32 - ok
19:51:55.0821 0x0cd8  [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:51:55.0839 0x0cd8  clr_optimization_v4.0.30319_64 - ok
19:51:55.0859 0x0cd8  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
19:51:55.0871 0x0cd8  CmBatt - ok
19:51:55.0882 0x0cd8  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:51:55.0893 0x0cd8  cmdide - ok
19:51:55.0935 0x0cd8  [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG             C:\Windows\system32\Drivers\cng.sys
19:51:55.0964 0x0cd8  CNG - ok
19:51:55.0979 0x0cd8  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
19:51:55.0990 0x0cd8  Compbatt - ok
19:51:56.0016 0x0cd8  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
19:51:56.0031 0x0cd8  CompositeBus - ok
19:51:56.0035 0x0cd8  COMSysApp - ok
19:51:56.0092 0x0cd8  cpuz132 - ok
19:51:56.0109 0x0cd8  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
19:51:56.0119 0x0cd8  crcdisk - ok
19:51:56.0162 0x0cd8  [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:51:56.0178 0x0cd8  CryptSvc - ok
19:51:56.0215 0x0cd8  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:51:56.0257 0x0cd8  DcomLaunch - ok
19:51:56.0287 0x0cd8  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
19:51:56.0327 0x0cd8  defragsvc - ok
19:51:56.0347 0x0cd8  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:51:56.0389 0x0cd8  DfsC - ok
19:51:56.0410 0x0cd8  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:51:56.0429 0x0cd8  Dhcp - ok
19:51:56.0506 0x0cd8  [ EA8A3E8C674B03CB4AFA1D344DBD7BC1, 564D9370AE4D12973647997684B9637B2A5A7480F66B87018F789CE4E43C8191 ] DiagTrack       C:\Windows\system32\diagtrack.dll
19:51:56.0562 0x0cd8  DiagTrack - ok
19:51:56.0581 0x0cd8  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
19:51:56.0614 0x0cd8  discache - ok
19:51:56.0631 0x0cd8  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
19:51:56.0643 0x0cd8  Disk - ok
19:51:56.0666 0x0cd8  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:51:56.0683 0x0cd8  Dnscache - ok
19:51:56.0706 0x0cd8  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
19:51:56.0745 0x0cd8  dot3svc - ok
19:51:56.0774 0x0cd8  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
19:51:56.0810 0x0cd8  DPS - ok
19:51:56.0824 0x0cd8  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:51:56.0836 0x0cd8  drmkaud - ok
19:51:56.0840 0x0cd8  dtmelqbg - ok
19:51:56.0888 0x0cd8  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:51:56.0919 0x0cd8  DXGKrnl - ok
19:51:56.0942 0x0cd8  [ 955F6564F448119C12AB3C048CCF8946, 509939E011B1F47119286DF7566485880074C66E297AC2DA58B33C3E2E0EBCD9 ] e1kexpress      C:\Windows\system32\DRIVERS\e1k60x64.sys
19:51:56.0958 0x0cd8  e1kexpress - ok
19:51:56.0963 0x0cd8  EagleX64 - ok
19:51:56.0994 0x0cd8  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
19:51:57.0031 0x0cd8  EapHost - ok
19:51:57.0165 0x0cd8  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
19:51:57.0270 0x0cd8  ebdrv - ok
19:51:57.0312 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] EFS             C:\Windows\System32\lsass.exe
19:51:57.0325 0x0cd8  EFS - ok
19:51:57.0392 0x0cd8  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:51:57.0422 0x0cd8  ehRecvr - ok
19:51:57.0440 0x0cd8  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
19:51:57.0455 0x0cd8  ehSched - ok
19:51:57.0485 0x0cd8  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
19:51:57.0508 0x0cd8  elxstor - ok
19:51:57.0539 0x0cd8  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:51:57.0550 0x0cd8  ErrDev - ok
19:51:57.0594 0x0cd8  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
19:51:57.0639 0x0cd8  EventSystem - ok
19:51:57.0660 0x0cd8  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
19:51:57.0698 0x0cd8  exfat - ok
19:51:57.0716 0x0cd8  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:51:57.0753 0x0cd8  fastfat - ok
19:51:57.0798 0x0cd8  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
19:51:57.0828 0x0cd8  Fax - ok
19:51:57.0852 0x0cd8  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
19:51:57.0864 0x0cd8  fdc - ok
19:51:57.0880 0x0cd8  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
19:51:57.0915 0x0cd8  fdPHost - ok
19:51:57.0923 0x0cd8  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:51:57.0959 0x0cd8  FDResPub - ok
19:51:57.0982 0x0cd8  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:51:57.0994 0x0cd8  FileInfo - ok
19:51:58.0012 0x0cd8  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:51:58.0045 0x0cd8  Filetrace - ok
19:51:58.0055 0x0cd8  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
19:51:58.0068 0x0cd8  flpydisk - ok
19:51:58.0095 0x0cd8  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:51:58.0111 0x0cd8  FltMgr - ok
19:51:58.0187 0x0cd8  [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache       C:\Windows\system32\FntCache.dll
19:51:58.0242 0x0cd8  FontCache - ok
19:51:58.0272 0x0cd8  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:51:58.0282 0x0cd8  FontCache3.0.0.0 - ok
19:51:58.0304 0x0cd8  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:51:58.0324 0x0cd8  FsDepends - ok
19:51:58.0334 0x0cd8  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:51:58.0344 0x0cd8  Fs_Rec - ok
19:51:58.0374 0x0cd8  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:51:58.0394 0x0cd8  fvevol - ok
19:51:58.0404 0x0cd8  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
19:51:58.0426 0x0cd8  gagp30kx - ok
19:51:58.0490 0x0cd8  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
19:51:58.0544 0x0cd8  gpsvc - ok
19:51:58.0617 0x0cd8  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:51:58.0631 0x0cd8  gupdate - ok
19:51:58.0639 0x0cd8  [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:51:58.0650 0x0cd8  gupdatem - ok
19:51:58.0676 0x0cd8  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:51:58.0687 0x0cd8  hcw85cir - ok
19:51:58.0729 0x0cd8  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:51:58.0751 0x0cd8  HdAudAddService - ok
19:51:58.0772 0x0cd8  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
19:51:58.0789 0x0cd8  HDAudBus - ok
19:51:58.0814 0x0cd8  [ E91AFF2610114CCAEBB90D4D991BB6B2, D266732263AB51BEAB26D34B216E05298E3CE60B0103A9D238F1A7215EDCBC5D ] HECIx64         C:\Windows\system32\drivers\HECIx64.sys
19:51:58.0824 0x0cd8  HECIx64 - ok
19:51:58.0838 0x0cd8  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
19:51:58.0850 0x0cd8  HidBatt - ok
19:51:58.0864 0x0cd8  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
19:51:58.0881 0x0cd8  HidBth - ok
19:51:58.0907 0x0cd8  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
19:51:58.0922 0x0cd8  HidIr - ok
19:51:58.0945 0x0cd8  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
19:51:58.0979 0x0cd8  hidserv - ok
19:51:58.0999 0x0cd8  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:51:59.0024 0x0cd8  HidUsb - ok
19:51:59.0048 0x0cd8  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:51:59.0082 0x0cd8  hkmsvc - ok
19:51:59.0098 0x0cd8  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:51:59.0122 0x0cd8  HomeGroupListener - ok
19:51:59.0151 0x0cd8  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:51:59.0168 0x0cd8  HomeGroupProvider - ok
19:51:59.0186 0x0cd8  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:51:59.0199 0x0cd8  HpSAMD - ok
19:51:59.0245 0x0cd8  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:51:59.0285 0x0cd8  HTTP - ok
19:51:59.0301 0x0cd8  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:51:59.0312 0x0cd8  hwpolicy - ok
19:51:59.0339 0x0cd8  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
19:51:59.0353 0x0cd8  i8042prt - ok
19:51:59.0392 0x0cd8  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:51:59.0411 0x0cd8  iaStorV - ok
19:51:59.0479 0x0cd8  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:51:59.0513 0x0cd8  idsvc - ok
19:51:59.0519 0x0cd8  IEEtwCollectorService - ok
19:51:59.0748 0x0cd8  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:51:59.0904 0x0cd8  igfx - ok
19:51:59.0954 0x0cd8  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
19:51:59.0965 0x0cd8  iirsp - ok
19:52:00.0013 0x0cd8  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
19:52:00.0048 0x0cd8  IKEEXT - ok
19:52:00.0188 0x0cd8  [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
19:52:00.0331 0x0cd8  IntcAzAudAddService - ok
19:52:00.0353 0x0cd8  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
19:52:00.0364 0x0cd8  intelide - ok
19:52:00.0382 0x0cd8  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
19:52:00.0396 0x0cd8  intelppm - ok
19:52:00.0420 0x0cd8  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:52:00.0457 0x0cd8  IPBusEnum - ok
19:52:00.0480 0x0cd8  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:52:00.0512 0x0cd8  IpFilterDriver - ok
19:52:00.0545 0x0cd8  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:52:00.0569 0x0cd8  iphlpsvc - ok
19:52:00.0587 0x0cd8  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:52:00.0599 0x0cd8  IPMIDRV - ok
19:52:00.0620 0x0cd8  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:52:00.0655 0x0cd8  IPNAT - ok
19:52:00.0668 0x0cd8  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:52:00.0683 0x0cd8  IRENUM - ok
19:52:00.0686 0x0cd8  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:52:00.0696 0x0cd8  isapnp - ok
19:52:00.0726 0x0cd8  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:52:00.0746 0x0cd8  iScsiPrt - ok
19:52:00.0766 0x0cd8  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
19:52:00.0776 0x0cd8  kbdclass - ok
19:52:00.0796 0x0cd8  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
19:52:00.0806 0x0cd8  kbdhid - ok
19:52:00.0829 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] KeyIso          C:\Windows\system32\lsass.exe
19:52:00.0841 0x0cd8  KeyIso - ok
19:52:00.0871 0x0cd8  [ F7DFAE6040AC910B7C64EE208A34157D, AEF1100F12391692D9DB78519D843A90C97E199A80DDC4D43E3AF1919A9E8E56 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:52:00.0881 0x0cd8  KSecDD - ok
19:52:00.0901 0x0cd8  [ 8FE94F2EF9BF444E93E35D87E210D02F, 78E8F6FD7C1EA3556194947707BE6893538A9E25A550C22045866C5B30251D14 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:52:00.0911 0x0cd8  KSecPkg - ok
19:52:00.0921 0x0cd8  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:52:00.0961 0x0cd8  ksthunk - ok
19:52:00.0991 0x0cd8  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:52:01.0031 0x0cd8  KtmRm - ok
19:52:01.0061 0x0cd8  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
19:52:01.0101 0x0cd8  LanmanServer - ok
19:52:01.0131 0x0cd8  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:52:01.0161 0x0cd8  LanmanWorkstation - ok
19:52:01.0171 0x0cd8  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:52:01.0211 0x0cd8  lltdio - ok
19:52:01.0231 0x0cd8  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:52:01.0271 0x0cd8  lltdsvc - ok
19:52:01.0281 0x0cd8  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:52:01.0322 0x0cd8  lmhosts - ok
19:52:01.0342 0x0cd8  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
19:52:01.0352 0x0cd8  LSI_FC - ok
19:52:01.0362 0x0cd8  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
19:52:01.0382 0x0cd8  LSI_SAS - ok
19:52:01.0392 0x0cd8  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
19:52:01.0402 0x0cd8  LSI_SAS2 - ok
19:52:01.0432 0x0cd8  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
19:52:01.0442 0x0cd8  LSI_SCSI - ok
19:52:01.0462 0x0cd8  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
19:52:01.0501 0x0cd8  luafv - ok
19:52:01.0531 0x0cd8  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:52:01.0541 0x0cd8  Mcx2Svc - ok
19:52:01.0551 0x0cd8  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
19:52:01.0561 0x0cd8  megasas - ok
19:52:01.0591 0x0cd8  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
19:52:01.0611 0x0cd8  MegaSR - ok
19:52:01.0641 0x0cd8  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
19:52:01.0671 0x0cd8  MMCSS - ok
19:52:01.0681 0x0cd8  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
19:52:01.0721 0x0cd8  Modem - ok
19:52:01.0731 0x0cd8  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:52:01.0751 0x0cd8  monitor - ok
19:52:01.0781 0x0cd8  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
19:52:01.0791 0x0cd8  mouclass - ok
19:52:01.0801 0x0cd8  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:52:01.0811 0x0cd8  mouhid - ok
19:52:01.0841 0x0cd8  [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:52:01.0861 0x0cd8  mountmgr - ok
19:52:01.0891 0x0cd8  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
19:52:01.0901 0x0cd8  mpio - ok
19:52:01.0921 0x0cd8  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:52:01.0951 0x0cd8  mpsdrv - ok
19:52:02.0001 0x0cd8  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:52:02.0061 0x0cd8  MpsSvc - ok
19:52:02.0081 0x0cd8  [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:52:02.0101 0x0cd8  MRxDAV - ok
19:52:02.0131 0x0cd8  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:52:02.0151 0x0cd8  mrxsmb - ok
19:52:02.0191 0x0cd8  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:52:02.0201 0x0cd8  mrxsmb10 - ok
19:52:02.0221 0x0cd8  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:52:02.0231 0x0cd8  mrxsmb20 - ok
19:52:02.0251 0x0cd8  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:52:02.0261 0x0cd8  msahci - ok
19:52:02.0291 0x0cd8  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:52:02.0301 0x0cd8  msdsm - ok
19:52:02.0321 0x0cd8  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
19:52:02.0341 0x0cd8  MSDTC - ok
19:52:02.0371 0x0cd8  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:52:02.0410 0x0cd8  Msfs - ok
19:52:02.0421 0x0cd8  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:52:02.0456 0x0cd8  mshidkmdf - ok
19:52:02.0473 0x0cd8  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:52:02.0483 0x0cd8  msisadrv - ok
19:52:02.0513 0x0cd8  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:52:02.0552 0x0cd8  MSiSCSI - ok
19:52:02.0556 0x0cd8  msiserver - ok
19:52:02.0566 0x0cd8  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:52:02.0599 0x0cd8  MSKSSRV - ok
19:52:02.0609 0x0cd8  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:52:02.0641 0x0cd8  MSPCLOCK - ok
19:52:02.0646 0x0cd8  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:52:02.0679 0x0cd8  MSPQM - ok
19:52:02.0701 0x0cd8  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:52:02.0721 0x0cd8  MsRPC - ok
19:52:02.0739 0x0cd8  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
19:52:02.0750 0x0cd8  mssmbios - ok
19:52:02.0762 0x0cd8  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:52:02.0794 0x0cd8  MSTEE - ok
19:52:02.0815 0x0cd8  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
19:52:02.0827 0x0cd8  MTConfig - ok
19:52:02.0838 0x0cd8  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
19:52:02.0851 0x0cd8  Mup - ok
19:52:02.0880 0x0cd8  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
19:52:02.0930 0x0cd8  napagent - ok
19:52:02.0960 0x0cd8  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:52:02.0990 0x0cd8  NativeWifiP - ok
19:52:03.0030 0x0cd8  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:52:03.0060 0x0cd8  NDIS - ok
19:52:03.0080 0x0cd8  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:52:03.0110 0x0cd8  NdisCap - ok
19:52:03.0140 0x0cd8  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:52:03.0170 0x0cd8  NdisTapi - ok
19:52:03.0190 0x0cd8  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:52:03.0220 0x0cd8  Ndisuio - ok
19:52:03.0240 0x0cd8  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:52:03.0270 0x0cd8  NdisWan - ok
19:52:03.0280 0x0cd8  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:52:03.0310 0x0cd8  NDProxy - ok
19:52:03.0330 0x0cd8  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:52:03.0360 0x0cd8  NetBIOS - ok
19:52:03.0380 0x0cd8  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:52:03.0411 0x0cd8  NetBT - ok
19:52:03.0421 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] Netlogon        C:\Windows\system32\lsass.exe
19:52:03.0441 0x0cd8  Netlogon - ok
19:52:03.0461 0x0cd8  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
19:52:03.0511 0x0cd8  Netman - ok
19:52:03.0551 0x0cd8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:52:03.0561 0x0cd8  NetMsmqActivator - ok
19:52:03.0571 0x0cd8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:52:03.0581 0x0cd8  NetPipeActivator - ok
19:52:03.0611 0x0cd8  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
19:52:03.0661 0x0cd8  netprofm - ok
19:52:03.0671 0x0cd8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:52:03.0681 0x0cd8  NetTcpActivator - ok
19:52:03.0691 0x0cd8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:52:03.0701 0x0cd8  NetTcpPortSharing - ok
19:52:03.0721 0x0cd8  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
19:52:03.0741 0x0cd8  nfrd960 - ok
19:52:03.0771 0x0cd8  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:52:03.0801 0x0cd8  NlaSvc - ok
19:52:03.0831 0x0cd8  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:52:03.0861 0x0cd8  Npfs - ok
19:52:03.0871 0x0cd8  npggsvc - ok
19:52:03.0891 0x0cd8  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
19:52:03.0921 0x0cd8  nsi - ok
19:52:03.0931 0x0cd8  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:52:03.0961 0x0cd8  nsiproxy - ok
19:52:04.0041 0x0cd8  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:52:04.0091 0x0cd8  Ntfs - ok
19:52:04.0121 0x0cd8  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
19:52:04.0151 0x0cd8  Null - ok
19:52:04.0181 0x0cd8  [ B4F53BCA4C688FF47F04FA90098F896E, 6051CFC0CFE659A2C4CFC1029F19CF1B1B98A1A5E59C2B3A10D7B3407A7FA5C0 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
19:52:04.0191 0x0cd8  NVHDA - ok
19:52:04.0561 0x0cd8  [ 4EE399576F76D38C04745DB739BBC8C7, 7D7FB6013D5D3EE1908F37188AA440EE6EF80A432204EB59AE190ACD14CD1FE0 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:52:04.0961 0x0cd8  nvlddmkm - ok
19:52:05.0021 0x0cd8  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:52:05.0041 0x0cd8  nvraid - ok
19:52:05.0051 0x0cd8  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:52:05.0071 0x0cd8  nvstor - ok
19:52:05.0135 0x0cd8  [ 7335C3D78A7746D76D37F6722CC4A466, 18BDD51AB0EB4084E1DA2F27B8D4FCF488ED9161C034BB3CDFF5BE33F84C1D37 ] nvsvc           C:\Windows\system32\nvvsvc.exe
19:52:05.0166 0x0cd8  nvsvc - ok
19:52:05.0248 0x0cd8  [ B7C53DA1C73FF39F4A6248643EFD979A, 528C4984F09F66D4CBA5A9B7C78FBAA04E558309B0D66EB1C29AD2B30D9993F7 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
19:52:05.0286 0x0cd8  nvUpdatusService - ok
19:52:05.0318 0x0cd8  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:52:05.0332 0x0cd8  nv_agp - ok
19:52:05.0366 0x0cd8  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:52:05.0380 0x0cd8  ohci1394 - ok
19:52:05.0383 0x0cd8  onotlzbb - ok
19:52:05.0387 0x0cd8  oshnyfcv - ok
19:52:05.0417 0x0cd8  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:52:05.0444 0x0cd8  p2pimsvc - ok
19:52:05.0476 0x0cd8  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
19:52:05.0499 0x0cd8  p2psvc - ok
19:52:05.0527 0x0cd8  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
19:52:05.0536 0x0cd8  Parport - ok
19:52:05.0556 0x0cd8  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:52:05.0566 0x0cd8  partmgr - ok
19:52:05.0626 0x0cd8  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:52:05.0646 0x0cd8  PcaSvc - ok
19:52:05.0676 0x0cd8  [ BC0018C2D29F655188A0ED3FA94FDB24, BCF7F2CA5E30F569AEB69049BA3C196982C72EA7264CFBA59D7123041BA96E5A ] pccsmcfd        C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
19:52:05.0696 0x0cd8  pccsmcfd - ok
19:52:05.0726 0x0cd8  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
19:52:05.0736 0x0cd8  pci - ok
19:52:05.0756 0x0cd8  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
19:52:05.0766 0x0cd8  pciide - ok
19:52:05.0796 0x0cd8  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
19:52:05.0816 0x0cd8  pcmcia - ok
19:52:05.0836 0x0cd8  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:52:05.0846 0x0cd8  pcw - ok
19:52:05.0906 0x0cd8  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:52:05.0936 0x0cd8  PEAUTH - ok
19:52:06.0006 0x0cd8  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:52:06.0016 0x0cd8  PerfHost - ok
19:52:06.0096 0x0cd8  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
19:52:06.0156 0x0cd8  pla - ok
19:52:06.0206 0x0cd8  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:52:06.0226 0x0cd8  PlugPlay - ok
19:52:06.0246 0x0cd8  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:52:06.0256 0x0cd8  PNRPAutoReg - ok
19:52:06.0276 0x0cd8  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:52:06.0296 0x0cd8  PNRPsvc - ok
19:52:06.0337 0x0cd8  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:52:06.0377 0x0cd8  PolicyAgent - ok
19:52:06.0407 0x0cd8  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
19:52:06.0447 0x0cd8  Power - ok
19:52:06.0467 0x0cd8  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:52:06.0507 0x0cd8  PptpMiniport - ok
19:52:06.0527 0x0cd8  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
19:52:06.0547 0x0cd8  Processor - ok
19:52:06.0577 0x0cd8  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
19:52:06.0597 0x0cd8  ProfSvc - ok
19:52:06.0607 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] ProtectedStorage C:\Windows\system32\lsass.exe
19:52:06.0617 0x0cd8  ProtectedStorage - ok
19:52:06.0637 0x0cd8  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:52:06.0667 0x0cd8  Psched - ok
19:52:06.0737 0x0cd8  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
19:52:06.0787 0x0cd8  ql2300 - ok
19:52:06.0817 0x0cd8  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
19:52:06.0827 0x0cd8  ql40xx - ok
19:52:06.0857 0x0cd8  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
19:52:06.0887 0x0cd8  QWAVE - ok
19:52:06.0917 0x0cd8  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:52:06.0927 0x0cd8  QWAVEdrv - ok
19:52:06.0947 0x0cd8  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:52:06.0977 0x0cd8  RasAcd - ok
19:52:06.0997 0x0cd8  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:52:07.0027 0x0cd8  RasAgileVpn - ok
19:52:07.0047 0x0cd8  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
19:52:07.0077 0x0cd8  RasAuto - ok
19:52:07.0097 0x0cd8  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:52:07.0127 0x0cd8  Rasl2tp - ok
19:52:07.0157 0x0cd8  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
19:52:07.0197 0x0cd8  RasMan - ok
19:52:07.0217 0x0cd8  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:52:07.0257 0x0cd8  RasPppoe - ok
19:52:07.0267 0x0cd8  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:52:07.0297 0x0cd8  RasSstp - ok
19:52:07.0328 0x0cd8  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:52:07.0368 0x0cd8  rdbss - ok
19:52:07.0388 0x0cd8  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
19:52:07.0408 0x0cd8  rdpbus - ok
19:52:07.0418 0x0cd8  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:52:07.0458 0x0cd8  RDPCDD - ok
19:52:07.0468 0x0cd8  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:52:07.0498 0x0cd8  RDPENCDD - ok
19:52:07.0508 0x0cd8  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:52:07.0538 0x0cd8  RDPREFMP - ok
19:52:07.0578 0x0cd8  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:52:07.0608 0x0cd8  RDPWD - ok
19:52:07.0638 0x0cd8  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:52:07.0648 0x0cd8  rdyboost - ok
19:52:07.0668 0x0cd8  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:52:07.0708 0x0cd8  RemoteAccess - ok
19:52:07.0728 0x0cd8  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:52:07.0768 0x0cd8  RemoteRegistry - ok
19:52:07.0788 0x0cd8  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:52:07.0818 0x0cd8  RpcEptMapper - ok
19:52:07.0838 0x0cd8  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
19:52:07.0848 0x0cd8  RpcLocator - ok
19:52:07.0878 0x0cd8  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
19:52:07.0918 0x0cd8  RpcSs - ok
19:52:07.0948 0x0cd8  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:52:07.0978 0x0cd8  rspndr - ok
19:52:08.0038 0x0cd8  [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
19:52:08.0058 0x0cd8  RTL8167 - ok
19:52:08.0078 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] SamSs           C:\Windows\system32\lsass.exe
19:52:08.0088 0x0cd8  SamSs - ok
19:52:08.0098 0x0cd8  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:52:08.0118 0x0cd8  sbp2port - ok
19:52:08.0138 0x0cd8  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:52:08.0178 0x0cd8  SCardSvr - ok
19:52:08.0198 0x0cd8  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:52:08.0228 0x0cd8  scfilter - ok
19:52:08.0278 0x0cd8  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
19:52:08.0338 0x0cd8  Schedule - ok
19:52:08.0368 0x0cd8  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:52:08.0398 0x0cd8  SCPolicySvc - ok
19:52:08.0418 0x0cd8  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:52:08.0438 0x0cd8  SDRSVC - ok
19:52:08.0458 0x0cd8  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:52:08.0488 0x0cd8  secdrv - ok
19:52:08.0518 0x0cd8  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
19:52:08.0548 0x0cd8  seclogon - ok
19:52:08.0558 0x0cd8  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
19:52:08.0598 0x0cd8  SENS - ok
19:52:08.0608 0x0cd8  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:52:08.0618 0x0cd8  SensrSvc - ok
19:52:08.0638 0x0cd8  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
19:52:08.0648 0x0cd8  Serenum - ok
19:52:08.0658 0x0cd8  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
19:52:08.0678 0x0cd8  Serial - ok
19:52:08.0698 0x0cd8  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
19:52:08.0708 0x0cd8  sermouse - ok
19:52:08.0788 0x0cd8  [ 3334DE016FDCDE5C98E30A405A72DD8D, 15F7496DD091B120476411113399B68E5EA074E270AF72A15221DE0D29C3AE15 ] ServiceLayer    C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
19:52:08.0808 0x0cd8  ServiceLayer - detected UnsignedFile.Multi.Generic ( 1 )
19:52:08.0808 0x0cd8  Detect skipped due to KSN trusted
19:52:08.0808 0x0cd8  ServiceLayer - ok
19:52:08.0838 0x0cd8  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
19:52:08.0868 0x0cd8  SessionEnv - ok
19:52:08.0888 0x0cd8  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:52:08.0898 0x0cd8  sffdisk - ok
19:52:08.0908 0x0cd8  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:52:08.0918 0x0cd8  sffp_mmc - ok
19:52:08.0928 0x0cd8  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:52:08.0948 0x0cd8  sffp_sd - ok
19:52:08.0958 0x0cd8  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
19:52:08.0978 0x0cd8  sfloppy - ok
19:52:09.0008 0x0cd8  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:52:09.0048 0x0cd8  SharedAccess - ok
19:52:09.0078 0x0cd8  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:52:09.0118 0x0cd8  ShellHWDetection - ok
19:52:09.0138 0x0cd8  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
19:52:09.0148 0x0cd8  SiSRaid2 - ok
19:52:09.0158 0x0cd8  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
19:52:09.0178 0x0cd8  SiSRaid4 - ok
19:52:09.0188 0x0cd8  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:52:09.0228 0x0cd8  Smb - ok
19:52:09.0248 0x0cd8  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:52:09.0258 0x0cd8  SNMPTRAP - ok
19:52:09.0268 0x0cd8  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:52:09.0278 0x0cd8  spldr - ok
19:52:09.0308 0x0cd8  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
19:52:09.0338 0x0cd8  Spooler - ok
19:52:09.0468 0x0cd8  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
19:52:09.0598 0x0cd8  sppsvc - ok
19:52:09.0618 0x0cd8  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:52:09.0658 0x0cd8  sppuinotify - ok
19:52:09.0698 0x0cd8  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:52:09.0728 0x0cd8  srv - ok
19:52:09.0758 0x0cd8  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:52:09.0778 0x0cd8  srv2 - ok
19:52:09.0798 0x0cd8  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:52:09.0808 0x0cd8  srvnet - ok
19:52:09.0828 0x0cd8  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:52:09.0868 0x0cd8  SSDPSRV - ok
19:52:09.0888 0x0cd8  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:52:09.0928 0x0cd8  SstpSvc - ok
19:52:09.0968 0x0cd8  [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:52:09.0988 0x0cd8  Stereo Service - ok
19:52:09.0998 0x0cd8  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
19:52:10.0008 0x0cd8  stexstor - ok
19:52:10.0048 0x0cd8  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
19:52:10.0078 0x0cd8  stisvc - ok
19:52:10.0098 0x0cd8  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
19:52:10.0108 0x0cd8  swenum - ok
19:52:10.0138 0x0cd8  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
19:52:10.0188 0x0cd8  swprv - ok
19:52:10.0248 0x0cd8  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
19:52:10.0308 0x0cd8  SysMain - ok
19:52:10.0328 0x0cd8  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:52:10.0348 0x0cd8  TabletInputService - ok
19:52:10.0378 0x0cd8  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:52:10.0418 0x0cd8  TapiSrv - ok
19:52:10.0448 0x0cd8  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
19:52:10.0478 0x0cd8  TBS - ok
19:52:10.0558 0x0cd8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:52:10.0618 0x0cd8  Tcpip - ok
19:52:10.0668 0x0cd8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:52:10.0718 0x0cd8  TCPIP6 - ok
19:52:10.0748 0x0cd8  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:52:10.0758 0x0cd8  tcpipreg - ok
19:52:10.0778 0x0cd8  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:52:10.0788 0x0cd8  TDPIPE - ok
19:52:10.0808 0x0cd8  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:52:10.0818 0x0cd8  TDTCP - ok
19:52:10.0848 0x0cd8  [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:52:10.0878 0x0cd8  tdx - ok
19:52:10.0898 0x0cd8  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
19:52:10.0908 0x0cd8  TermDD - ok
19:52:10.0958 0x0cd8  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
19:52:10.0988 0x0cd8  TermService - ok
19:52:11.0018 0x0cd8  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
19:52:11.0028 0x0cd8  Themes - ok
19:52:11.0048 0x0cd8  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
19:52:11.0088 0x0cd8  THREADORDER - ok
19:52:11.0108 0x0cd8  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
19:52:11.0138 0x0cd8  TrkWks - ok
19:52:11.0188 0x0cd8  [ 40A8AB90F3CB342F037B493A8EADE4B9, 9AE1C70E1317F68E075FB106F95877F83E002CBD018F36ED140FFE4151F68A4E ] Trufos          C:\Windows\system32\DRIVERS\Trufos.sys
19:52:11.0208 0x0cd8  Trufos - ok
19:52:11.0258 0x0cd8  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:52:11.0298 0x0cd8  TrustedInstaller - ok
19:52:11.0318 0x0cd8  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:52:11.0338 0x0cd8  tssecsrv - ok
19:52:11.0348 0x0cd8  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:52:11.0368 0x0cd8  TsUsbFlt - ok
19:52:11.0388 0x0cd8  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
19:52:11.0398 0x0cd8  TsUsbGD - ok
19:52:11.0418 0x0cd8  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:52:11.0458 0x0cd8  tunnel - ok
19:52:11.0468 0x0cd8  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
19:52:11.0478 0x0cd8  uagp35 - ok
19:52:11.0508 0x0cd8  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:52:11.0548 0x0cd8  udfs - ok
19:52:11.0578 0x0cd8  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:52:11.0588 0x0cd8  UI0Detect - ok
19:52:11.0608 0x0cd8  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:52:11.0618 0x0cd8  uliagpkx - ok
19:52:11.0638 0x0cd8  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
19:52:11.0648 0x0cd8  umbus - ok
19:52:11.0668 0x0cd8  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
19:52:11.0688 0x0cd8  UmPass - ok
19:52:11.0708 0x0cd8  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
19:52:11.0748 0x0cd8  upnphost - ok
19:52:11.0768 0x0cd8  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\drivers\usbccgp.sys
19:52:11.0778 0x0cd8  usbccgp - ok
19:52:11.0808 0x0cd8  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:52:11.0828 0x0cd8  usbcir - ok
19:52:11.0848 0x0cd8  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
19:52:11.0858 0x0cd8  usbehci - ok
19:52:11.0888 0x0cd8  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
19:52:11.0908 0x0cd8  usbhub - ok
19:52:11.0928 0x0cd8  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:52:11.0938 0x0cd8  usbohci - ok
19:52:11.0948 0x0cd8  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
19:52:11.0958 0x0cd8  usbprint - ok
19:52:11.0978 0x0cd8  [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser          C:\Windows\system32\DRIVERS\usbser.sys
19:52:11.0998 0x0cd8  usbser - ok
19:52:12.0008 0x0cd8  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:52:12.0028 0x0cd8  USBSTOR - ok
19:52:12.0058 0x0cd8  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
19:52:12.0068 0x0cd8  usbuhci - ok
19:52:12.0098 0x0cd8  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
19:52:12.0128 0x0cd8  UxSms - ok
19:52:12.0138 0x0cd8  [ 9262D6E2C239EDD6D87B080F2BCCEC9F, 4947F2C3DD9D2D08CBB03FCA822C78B24F841464FF52FDBFF7D34AC7EB484104 ] VaultSvc        C:\Windows\system32\lsass.exe
19:52:12.0148 0x0cd8  VaultSvc - ok
19:52:12.0158 0x0cd8  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:52:12.0168 0x0cd8  vdrvroot - ok
19:52:12.0188 0x0cd8  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
19:52:12.0238 0x0cd8  vds - ok
19:52:12.0258 0x0cd8  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:52:12.0278 0x0cd8  vga - ok
19:52:12.0288 0x0cd8  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:52:12.0318 0x0cd8  VgaSave - ok
19:52:12.0348 0x0cd8  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:52:12.0368 0x0cd8  vhdmp - ok
19:52:12.0388 0x0cd8  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:52:12.0398 0x0cd8  viaide - ok
19:52:12.0408 0x0cd8  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:52:12.0418 0x0cd8  volmgr - ok
19:52:12.0438 0x0cd8  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:52:12.0458 0x0cd8  volmgrx - ok
19:52:12.0488 0x0cd8  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:52:12.0508 0x0cd8  volsnap - ok
19:52:12.0528 0x0cd8  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
19:52:12.0548 0x0cd8  vsmraid - ok
19:52:12.0618 0x0cd8  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
19:52:12.0688 0x0cd8  VSS - ok
19:52:12.0708 0x0cd8  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
19:52:12.0728 0x0cd8  vwifibus - ok
19:52:12.0748 0x0cd8  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
19:52:12.0798 0x0cd8  W32Time - ok
19:52:12.0818 0x0cd8  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
19:52:12.0828 0x0cd8  WacomPen - ok
19:52:12.0848 0x0cd8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:52:12.0878 0x0cd8  WANARP - ok
19:52:12.0888 0x0cd8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:52:12.0918 0x0cd8  Wanarpv6 - ok
19:52:12.0978 0x0cd8  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
19:52:13.0018 0x0cd8  WatAdminSvc - ok
19:52:13.0088 0x0cd8  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
19:52:13.0138 0x0cd8  wbengine - ok
19:52:13.0158 0x0cd8  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:52:13.0188 0x0cd8  WbioSrvc - ok
19:52:13.0208 0x0cd8  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:52:13.0238 0x0cd8  wcncsvc - ok
19:52:13.0248 0x0cd8  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:52:13.0258 0x0cd8  WcsPlugInService - ok
19:52:13.0278 0x0cd8  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
19:52:13.0288 0x0cd8  Wd - ok
19:52:13.0338 0x0cd8  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:52:13.0368 0x0cd8  Wdf01000 - ok
19:52:13.0388 0x0cd8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:52:13.0408 0x0cd8  WdiServiceHost - ok
19:52:13.0418 0x0cd8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:52:13.0428 0x0cd8  WdiSystemHost - ok
19:52:13.0448 0x0cd8  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
19:52:13.0478 0x0cd8  WebClient - ok
19:52:13.0508 0x0cd8  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:52:13.0548 0x0cd8  Wecsvc - ok
19:52:13.0568 0x0cd8  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:52:13.0598 0x0cd8  wercplsupport - ok
19:52:13.0618 0x0cd8  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:52:13.0648 0x0cd8  WerSvc - ok
19:52:13.0668 0x0cd8  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:52:13.0708 0x0cd8  WfpLwf - ok
19:52:13.0718 0x0cd8  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:52:13.0728 0x0cd8  WIMMount - ok
19:52:13.0758 0x0cd8  WinDefend - ok
19:52:13.0758 0x0cd8  WinHttpAutoProxySvc - ok
19:52:13.0808 0x0cd8  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:52:13.0848 0x0cd8  Winmgmt - ok
19:52:13.0938 0x0cd8  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
19:52:13.0998 0x0cd8  WinRM - ok
19:52:14.0028 0x0cd8  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:52:14.0048 0x0cd8  WinUsb - ok
19:52:14.0088 0x0cd8  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:52:14.0138 0x0cd8  Wlansvc - ok
19:52:14.0148 0x0cd8  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
19:52:14.0158 0x0cd8  WmiAcpi - ok
19:52:14.0188 0x0cd8  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:52:14.0208 0x0cd8  wmiApSrv - ok
19:52:14.0228 0x0cd8  WMPNetworkSvc - ok
19:52:14.0238 0x0cd8  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:52:14.0248 0x0cd8  WPCSvc - ok
19:52:14.0268 0x0cd8  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:52:14.0288 0x0cd8  WPDBusEnum - ok
19:52:14.0308 0x0cd8  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:52:14.0338 0x0cd8  ws2ifsl - ok
19:52:14.0368 0x0cd8  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
19:52:14.0388 0x0cd8  wscsvc - ok
19:52:14.0388 0x0cd8  WSearch - ok
19:52:14.0498 0x0cd8  [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv        C:\Windows\system32\wuaueng.dll
19:52:14.0588 0x0cd8  wuauserv - ok
19:52:14.0618 0x0cd8  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:52:14.0628 0x0cd8  WudfPf - ok
19:52:14.0658 0x0cd8  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:52:14.0678 0x0cd8  WUDFRd - ok
19:52:14.0698 0x0cd8  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:52:14.0708 0x0cd8  wudfsvc - ok
19:52:14.0748 0x0cd8  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:52:14.0778 0x0cd8  WwanSvc - ok
19:52:14.0778 0x0cd8  xhunter1 - ok
19:52:14.0778 0x0cd8  ================ Scan global ===============================
19:52:14.0798 0x0cd8  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
19:52:14.0838 0x0cd8  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:52:14.0858 0x0cd8  [ D17DD01601460F5899E5C154B3FD0BFA, B2FCFDE4B6F87634EA1F6D8AEA6D9B3C641D41D999C68B76F95491539B19D422 ] C:\Windows\system32\winsrv.dll
19:52:14.0878 0x0cd8  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
19:52:14.0918 0x0cd8  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
19:52:14.0928 0x0cd8  [ Global ] - ok
19:52:14.0928 0x0cd8  ================ Scan MBR ==================================
19:52:14.0928 0x0cd8  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:52:15.0448 0x0cd8  \Device\Harddisk0\DR0 - ok
19:52:15.0464 0x0cd8  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:52:15.0696 0x0cd8  \Device\Harddisk1\DR1 - ok
19:52:15.0697 0x0cd8  ================ Scan VBR ==================================
19:52:15.0879 0x0cd8  [ 49A63827E9D910C3298F8C120E1B395E ] \Device\Harddisk0\DR0\Partition1
19:52:15.0889 0x0cd8  \Device\Harddisk0\DR0\Partition1 - ok
19:52:15.0889 0x0cd8  [ 39473DB5FCFB6AE1CBC3151B53108E09 ] \Device\Harddisk0\DR0\Partition2
19:52:15.0889 0x0cd8  \Device\Harddisk0\DR0\Partition2 - ok
19:52:15.0889 0x0cd8  [ 5ADA5FF5A668C4DD99CDD3C82BB0B92C ] \Device\Harddisk1\DR1\Partition1
19:52:15.0889 0x0cd8  \Device\Harddisk1\DR1\Partition1 - ok
19:52:15.0889 0x0cd8  ================ Scan generic autorun ======================
19:52:16.0380 0x0cd8  [ 16438B000BF56F2CD7FDB5E6C3B38C7E, 32D6E69E6367D3ADB2189DA89103CB9910CE791EFB0879515DDD380A96D85BAE ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:52:16.0690 0x0cd8  RtHDVCpl - ok
19:52:16.0836 0x0cd8  [ CD8A83EEF6DBE6EA9583983E63EC6CBB, 76E7C00DC232D4396C376B913B0ED452039942B6C53B42B8FD122D8BBF06901E ] C:\Windows\SysWOW64\svchospt.exe
19:52:16.0861 0x0cd8  svchospt - detected UnsignedFile.Multi.Generic ( 1 )
19:52:16.0861 0x0cd8  Detect skipped due to KSN trusted
19:52:16.0861 0x0cd8  svchospt - ok
19:52:16.0909 0x0cd8  [ 5153C06FC9D4D094D1A785545928B134, 0037C935722663F9EF028F841DE222FC6418E9D60939AB60C965807E67A458DC ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
19:52:16.0930 0x0cd8  SunJavaUpdateSched - ok
19:52:17.0149 0x0cd8  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:52:17.0259 0x0cd8  Akamai NetSession Interface - ok
19:52:17.0343 0x0cd8  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
19:52:17.0390 0x0cd8  Sidebar - ok
19:52:17.0441 0x0cd8  [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\maplo\AppData\Local\Microsoft\BingSvc\BingSvc.exe
19:52:17.0455 0x0cd8  BingSvc - ok
19:52:17.0456 0x0cd8  Chromium - ok
19:52:17.0616 0x0cd8  [ F2AD1B265908797F8A5E21E0312F2F25, 2A6A612F7D52D297385C43E77AD0CD37B28F33ED2AF89098F5E66B812B838A52 ] C:\Users\maplo\AppData\Local\Akamai\netsession_win.exe
19:52:17.0726 0x0cd8  Akamai NetSession Interface - ok
19:52:17.0736 0x0cd8  Overwolf - ok
19:52:17.0747 0x0cd8  Win FW state via NFP2: enabled ( trusted )
19:52:20.0103 0x0cd8  ============================================================
19:52:20.0103 0x0cd8  Scan finished
19:52:20.0103 0x0cd8  ============================================================
19:52:20.0103 0x08f4  Detected object count: 0
19:52:20.0103 0x08f4  Actual detected object count: 0
         
War zu lang ich hab das in 2 dinger aufgespalten.Ich hoffe ich habe bisher alles richtig gemacht.

Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 02/12/2016 um 20:35:18
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-12-02.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : maplo - MAPLO-PC
# Gestartet von : C:\Users\maplo\Downloads\AdwCleaner_6.030 (1).exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****



***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06]
C:\AdwCleaner\AdwCleaner[C10].txt - [1026 Bytes] - [02/12/2016 20:35:18]
C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32]
C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06]
C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01]
C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27]
C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58]
C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44]
C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53]
C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02]
C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22]
C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02]
C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28]
C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44]
C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45]
C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15]
C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04]
C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59]
C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29]
C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33]
C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01]
C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54]
C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40]
C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25]
C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12]
C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25]
C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35]
C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58]
C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22]
C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24]
C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56]
C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19]
C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39]
C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29]
C:\AdwCleaner\AdwCleaner[S31].txt - [4310 Bytes] - [01/12/2016 15:03:02]
C:\AdwCleaner\AdwCleaner[S32].txt - [4384 Bytes] - [02/12/2016 12:37:01]
C:\AdwCleaner\AdwCleaner[S33].txt - [4457 Bytes] - [02/12/2016 20:30:39]
C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42]
C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57]
C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51]
C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44]
C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47]
C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29]
C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14]

########## EOF - C:\AdwCleaner\AdwCleaner[C10].txt - [4190 Bytes] ##########
         
Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 02/12/2016 um 20:35:18
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-12-02.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : maplo - MAPLO-PC
# Gestartet von : C:\Users\maplo\Downloads\AdwCleaner_6.030 (1).exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****



***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [2465 Bytes] - [18/11/2016 18:07:06]
C:\AdwCleaner\AdwCleaner[C10].txt - [1026 Bytes] - [02/12/2016 20:35:18]
C:\AdwCleaner\AdwCleaner[C2].txt - [1786 Bytes] - [21/11/2016 11:04:32]
C:\AdwCleaner\AdwCleaner[C3].txt - [2719 Bytes] - [21/11/2016 17:46:06]
C:\AdwCleaner\AdwCleaner[C4].txt - [2482 Bytes] - [22/11/2016 09:58:01]
C:\AdwCleaner\AdwCleaner[C5].txt - [3595 Bytes] - [24/11/2016 11:25:27]
C:\AdwCleaner\AdwCleaner[C6].txt - [6687 Bytes] - [26/11/2016 18:52:58]
C:\AdwCleaner\AdwCleaner[C7].txt - [2823 Bytes] - [26/11/2016 19:02:44]
C:\AdwCleaner\AdwCleaner[C8].txt - [3610 Bytes] - [28/11/2016 22:13:53]
C:\AdwCleaner\AdwCleaner[C9].txt - [3987 Bytes] - [01/12/2016 11:46:02]
C:\AdwCleaner\AdwCleaner[S0].txt - [1542 Bytes] - [10/11/2016 18:09:22]
C:\AdwCleaner\AdwCleaner[S10].txt - [2803 Bytes] - [21/11/2016 17:45:02]
C:\AdwCleaner\AdwCleaner[S11].txt - [2391 Bytes] - [21/11/2016 18:05:28]
C:\AdwCleaner\AdwCleaner[S12].txt - [2646 Bytes] - [22/11/2016 09:53:44]
C:\AdwCleaner\AdwCleaner[S13].txt - [2612 Bytes] - [23/11/2016 12:40:45]
C:\AdwCleaner\AdwCleaner[S14].txt - [2686 Bytes] - [23/11/2016 17:18:15]
C:\AdwCleaner\AdwCleaner[S15].txt - [3835 Bytes] - [24/11/2016 11:25:04]
C:\AdwCleaner\AdwCleaner[S16].txt - [6511 Bytes] - [26/11/2016 18:41:59]
C:\AdwCleaner\AdwCleaner[S17].txt - [6585 Bytes] - [26/11/2016 18:49:29]
C:\AdwCleaner\AdwCleaner[S18].txt - [3128 Bytes] - [26/11/2016 19:00:33]
C:\AdwCleaner\AdwCleaner[S19].txt - [3275 Bytes] - [26/11/2016 19:17:01]
C:\AdwCleaner\AdwCleaner[S1].txt - [1879 Bytes] - [18/11/2016 18:04:54]
C:\AdwCleaner\AdwCleaner[S20].txt - [3350 Bytes] - [27/11/2016 12:01:40]
C:\AdwCleaner\AdwCleaner[S21].txt - [3424 Bytes] - [27/11/2016 13:49:25]
C:\AdwCleaner\AdwCleaner[S22].txt - [3722 Bytes] - [28/11/2016 22:06:12]
C:\AdwCleaner\AdwCleaner[S23].txt - [3645 Bytes] - [29/11/2016 17:32:25]
C:\AdwCleaner\AdwCleaner[S24].txt - [3719 Bytes] - [29/11/2016 18:14:35]
C:\AdwCleaner\AdwCleaner[S25].txt - [3793 Bytes] - [30/11/2016 17:26:58]
C:\AdwCleaner\AdwCleaner[S26].txt - [3867 Bytes] - [30/11/2016 17:29:22]
C:\AdwCleaner\AdwCleaner[S27].txt - [3941 Bytes] - [30/11/2016 19:03:24]
C:\AdwCleaner\AdwCleaner[S28].txt - [4015 Bytes] - [30/11/2016 19:55:56]
C:\AdwCleaner\AdwCleaner[S29].txt - [4089 Bytes] - [30/11/2016 20:20:19]
C:\AdwCleaner\AdwCleaner[S2].txt - [2620 Bytes] - [18/11/2016 18:06:39]
C:\AdwCleaner\AdwCleaner[S30].txt - [4174 Bytes] - [01/12/2016 11:45:29]
C:\AdwCleaner\AdwCleaner[S31].txt - [4310 Bytes] - [01/12/2016 15:03:02]
C:\AdwCleaner\AdwCleaner[S32].txt - [4384 Bytes] - [02/12/2016 12:37:01]
C:\AdwCleaner\AdwCleaner[S33].txt - [4457 Bytes] - [02/12/2016 20:30:39]
C:\AdwCleaner\AdwCleaner[S3].txt - [1658 Bytes] - [18/11/2016 19:14:42]
C:\AdwCleaner\AdwCleaner[S4].txt - [1731 Bytes] - [18/11/2016 19:31:57]
C:\AdwCleaner\AdwCleaner[S5].txt - [1804 Bytes] - [19/11/2016 18:27:51]
C:\AdwCleaner\AdwCleaner[S6].txt - [1877 Bytes] - [19/11/2016 18:55:44]
C:\AdwCleaner\AdwCleaner[S7].txt - [1950 Bytes] - [20/11/2016 10:35:47]
C:\AdwCleaner\AdwCleaner[S8].txt - [2016 Bytes] - [21/11/2016 11:01:29]
C:\AdwCleaner\AdwCleaner[S9].txt - [2165 Bytes] - [21/11/2016 17:06:14]

########## EOF - C:\AdwCleaner\AdwCleaner[C10].txt - [4190 Bytes] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 7 Home Premium x64 
Ran by maplo (Administrator) on 02.12.2016 at 20:53:01,33
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 8 

Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1UJSKSDL (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7120RGYN (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IKB3PD42 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\maplo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ8WO2D9 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1UJSKSDL (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7120RGYN (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IKB3PD42 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ8WO2D9 (Temporary Internet Files Folder) 



Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 02.12.2016 at 20:55:17,47
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Alt 02.12.2016, 22:51   #15
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
unbekanntes Programm - Standard

unbekanntes Programm



Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken

__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu unbekanntes Programm
andere, anderen, antivirus, avast, avast free antivirus, chrome, einstellungen, festgestellt, free, gen, gestellt, google, google chrome, manipuliert, program, programm, unbekanntes, unbekanntes programm, unter




Ähnliche Themen: unbekanntes Programm


  1. Kostenlose Testversion AV-Programm X schlägt teure Vollversion AV-Programm Y
    Antiviren-, Firewall- und andere Schutzprogramme - 14.07.2016 (3)
  2. Unbekanntes Programm ?
    Plagegeister aller Art und deren Bekämpfung - 01.04.2016 (14)
  3. Unbekanntes Programm öffnet und schließt sich mehrfach in der Taskleiste
    Plagegeister aller Art und deren Bekämpfung - 01.04.2016 (14)
  4. Mein USB-Stick zeigt nur noch Verknüpfungen an und ein unbekanntes Programm möchte Änderungen an meinem Computer vornehmen
    Plagegeister aller Art und deren Bekämpfung - 21.04.2015 (24)
  5. Neues unbekanntes Startup Programm wird gemeldet!
    Plagegeister aller Art und deren Bekämpfung - 14.12.2014 (6)
  6. Unbekanntes Programm: Prozess iftutilx.exe gestoppt – von MSE geblockt CVE-2012-1723.gen + PWS:Win32/Fareit
    Plagegeister aller Art und deren Bekämpfung - 15.04.2013 (18)
  7. loadtbs - unbekanntes programm und firefox-erweiterung
    Plagegeister aller Art und deren Bekämpfung - 20.07.2012 (27)
  8. GVU Trojaner - unbekanntes Programm im Taskmanager ...
    Plagegeister aller Art und deren Bekämpfung - 17.07.2012 (13)
  9. loadtbs-2.1 unbekanntes programm in programmliste - was ist das für ein programm?
    Plagegeister aller Art und deren Bekämpfung - 04.04.2012 (1)
  10. Screen durch unbekanntes Programm blockiert; Taskmgr und Regedit blockiert.
    Plagegeister aller Art und deren Bekämpfung - 25.12.2011 (14)
  11. Screen durch unbekanntes Programm blockiert; Taskmgr und Regedit blockiert.
    Plagegeister aller Art und deren Bekämpfung - 23.12.2011 (2)
  12. Unbekanntes Programm PScZ5PLBzGTt.exe
    Plagegeister aller Art und deren Bekämpfung - 22.02.2011 (17)
  13. Unbekanntes Programm im Systemstart
    Plagegeister aller Art und deren Bekämpfung - 16.04.2009 (4)
  14. Unbekanntes Programm maysuio.exe
    Plagegeister aller Art und deren Bekämpfung - 20.07.2008 (2)
  15. Ich habe ein unbekanntes Programm was als Trojaner erkannt wird!!
    Plagegeister aller Art und deren Bekämpfung - 19.06.2008 (1)
  16. Unbekanntes Programm
    Plagegeister aller Art und deren Bekämpfung - 21.03.2008 (7)
  17. unbekanntes programm
    Plagegeister aller Art und deren Bekämpfung - 29.03.2004 (7)

Zum Thema unbekanntes Programm - Wenn ich bei google chrome unter einstellungen gehe steht da Chrome hat festgestellt, dass einige Ihrer Einstellungen von einem anderen Programm manipuliert wurden, und hat sie auf die ursprünglichen Standardwerte - unbekanntes Programm...
Archiv
Du betrachtest: unbekanntes Programm auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.