Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 28.10.2017, 20:21   #1
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Bitte euch schon wieder um Hilfe.
Mein PC (Win 7 , 64 bit ) läuft seit heute nur noch ganz langsam. Einige Programme lassen sich gar nicht öffnen, z.B Star Money: Fehlermeldung: " Das Sicherheitsmodul konnte Starmoney nicht starten , Fehler 575. " Habe Bitdefender gekauft, installieren geht aber nicht, da Benutzerkonto nicht zu eröffnen geht. Habe vorher Malwarebyte und Eset gelöscht, wie verlangt, bzw deinstalliert. Wollte als Sofortmaßnahme Free Version von Kaspersky Antivir ( 30 Tage Test) installieren, geht auch nicht. Nicht weis ich nicht mehr weiter.
Internet geht nur noch ganz langsam .
Ich hoffe, ihr könnt mir helfen, bin leider nicht der große PC - Spezi.
Vorab vielen Dank

Alt 28.10.2017, 21:36   #2
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam









Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.



Um die Bereinigung möchlichst effektiv und schnell gestalten zu können, bitte ich um Beachtung der folgenden Hinweise:
  1. Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.

  2. Lies dir meine Anleitungen immer sorgfältig durch, arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste immer alle Logdateien (auch wenn nichts gefunden wurde). Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.

  3. Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo. Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!

  4. Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
    Außerdem bitte ich dich, nicht eigenmächtig irgendwelche Sicherheitsprogramme auszuführen und damit deinen Rechner zu überprüfen/bereinigen, da ich so leicht den Überblick verlieren kann.
    Außerdem hättest du dir das Eröffnen eines Themas in diesem Fall auch gleich sparen können, wenn du dann doch wieder alleine rumhantierst.


  5. Bitte beachten: Download bei filepony.de: So ladet Ihr unsere Tools richtig!

  6. Alle zu verwendenen Programme sind auf dem Desktop ( C:\users\dein Benutzername\Desktop\ ) abzuspeichern und von dort als Administrator zu starten!

  7. Einige Programme, die wir hier verwenden, können unter Umständen von deinem Antiviren- oder Anti-Malwareprogramm fälschlicherweise als Bedrohung eingestuft werden. Die Sicherheitsprogramme können aufgrund eines bestimmten Programmverhaltens nicht zwischen "gut" oder "böse" unterscheiden und schlagen Alarm. Dabei handelt es sich um Fehlalarme, welche du getrost ignorieren kannst. Gegebenenfalls musst du deine Sicherheitssoftware vor der Ausführung eines Programms deaktivieren, damit unsere Bereinigungsvorgänge nicht beeinträchtigt werden.

  8. Sollten die Logdateien einmal die zulässige Länge (~ 120.000 Zeichen) überschreiten, so teile die Logdateien auf mehrere Posts auf.
    Zur Not kannst du die Logdateien dann auch zippen (in ein .zip Archiv packen) und als Anhang hochladen.


  9. Bitte arbeite so lange mit mir zusammen, bis ich dir sage, dass wir fertig sind und dein Rechner "sauber" ist. Das vorzeitige Verschwinden von Symptomen heißt nicht automatisch, dass dein Rechner bereits vollständig sauber ist.

  10. In der Regel antworte ich dir innerhalb von 24 Stunden, oft sogar wesentlich schneller.
    Jedoch habe auch ich einen normalen Beruf und Familie. Ich bin daher nicht jeden Tag stundenlag hier im Forum unterwegs. Es kann unter Umständen bis zu 2 Tage dauern, bis du eine Antwort von mir erhältst. Sollte diese Zeit überschritten sein, so kannst du mir gerne eine PM als Erinnerung schicken.





Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!







Schritt 1
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)







Schritt 2
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.







Bitte poste mit deiner nächsten Antwort
  • die Logdatei von TDSS-Killer,
  • die beiden neuen Logdateien von FRST.
__________________

__________________

Alt 29.10.2017, 12:24   #3
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias !
Erst einmal Danke für deine Hilfe.
Habe FRST64-Bit runtergeladen und es läuft auf " Untersuchen ". Aber es läuft sehr sehr langsam, es laufen gerade die Dienste durch. Weis nicht wie lange es laufen wird. Sowie ich txt habe, werde ich posten.
mfg. Heinz
__________________

Alt 29.10.2017, 14:22   #4
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias
hier kommen zunächst im Anhang die FRST.txt und die Addition.txt.
TDSS Killer läuft ! Poste, wenn fertig.
Gruß Heinz
Angehängte Dateien
Dateityp: txt FRST.txt (97,0 KB, 40x aufgerufen)
Dateityp: txt Addition.txt (32,0 KB, 43x aufgerufen)

Alt 29.10.2017, 15:27   #5
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Servus,



ich sehe Malwarereste von 2012 auf diesem PC!
Ich bezweifle, dass die Verlangsamung von Malware kommt.

Stattdessen tippe ich auf ein Treiber-/Geräteproblem:
Zitat:
Error: (10/29/2017 01:16:16 PM) (Source: atapi) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.
Zitat:
Description: Vom Kryptografiedienst konnte die Katalogdatenbank nicht initialisiert werden. Fehler: 1117 (0x45d) : Die Anforderung konnte wegen eines E/A-Gerätefehlers nicht ausgeführt werden.
Kann auch sein, dass da etwas (z. B. Festplatte, Mainboard) den Geist aufgibt... bin aber kein Experte in Sachen Hardware.

Spricht etwas gegen eine Neuinstallation? Das würde ich hier zuerst empfehlen.

__________________
Gruß
M-K-D-B


==========================================================
offline vom 22.12.2018 bis 01.01.2019
==========================================================

Das Trojaner-Board unterstützen

Alt 29.10.2017, 19:14   #6
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias Das wäre ärgerlich,wenn Mainbord oder Festplatte einen Schaden haben. Eine Neuinstallation ist machbar, aber nicht gerade wünschenswert. Macht es jetzt überhaupt noch für dich einen Sinn nach Fehlern zu suchen ? Ich sende dir noch jedenfalls den Report vom TDSS Killer, der aber " No treats found " hatte ( zwei Post,s) Hast du für mich noch einen Rat?
Erster Teil:
Code:
ATTFilter
13:59:22.0139 0x040c  TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
14:01:38.0563 0x040c  ============================================================
14:01:38.0563 0x040c  Current date / time: 2017/10/29 14:01:38.0563
14:01:38.0563 0x040c  SystemInfo:
14:01:38.0563 0x040c  
14:01:38.0563 0x040c  OS Version: 6.1.7601 ServicePack: 1.0
14:01:38.0563 0x040c  Product type: Workstation
14:01:38.0564 0x040c  ComputerName: HEINZELMANN-PC
14:01:38.0564 0x040c  UserName: Heinzelmann
14:01:38.0564 0x040c  Windows directory: C:\Windows
14:01:38.0564 0x040c  System windows directory: C:\Windows
14:01:38.0564 0x040c  Running under WOW64
14:01:38.0564 0x040c  Processor architecture: Intel x64
14:01:38.0564 0x040c  Number of processors: 4
14:01:38.0564 0x040c  Page size: 0x1000
14:01:38.0564 0x040c  Boot type: Normal boot
14:01:38.0564 0x040c  CodeIntegrityOptions = 0x00000001
14:01:38.0564 0x040c  ============================================================
14:01:39.0600 0x040c  KLMD registered as C:\Windows\system32\drivers\83069946.sys
14:01:39.0600 0x040c  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23915, osProperties = 0x1
14:01:39.0807 0x040c  System UUID: {BEDD57A7-4CBC-C527-5BD7-6D482E7A39DA}
14:01:40.0061 0x040c  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:01:40.0081 0x040c  ============================================================
14:01:40.0081 0x040c  \Device\Harddisk0\DR0:
14:01:40.0081 0x040c  MBR partitions:
14:01:40.0081 0x040c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:01:40.0081 0x040c  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32FC8, BlocksNum 0x4CA0065D
14:01:40.0100 0x040c  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x4CA34000, BlocksNum 0x27CCDB00
14:01:40.0100 0x040c  ============================================================
14:01:40.0150 0x040c  C: <-> \Device\Harddisk0\DR0\Partition2
14:01:40.0177 0x040c  J: <-> \Device\Harddisk0\DR0\Partition3
14:01:40.0177 0x040c  ============================================================
14:01:40.0177 0x040c  Initialize success
14:01:40.0177 0x040c  ============================================================
14:05:16.0109 0x0e80  ============================================================
14:05:16.0109 0x0e80  Scan started
14:05:16.0109 0x0e80  Mode: Manual; SigCheck; TDLFS; 
14:05:16.0109 0x0e80  ============================================================
14:05:16.0109 0x0e80  KSN ping started
14:05:16.0151 0x0e80  KSN ping finished: true
14:05:16.0832 0x0e80  ================ Scan system memory ========================
14:05:16.0833 0x0e80  System memory - ok
14:05:16.0833 0x0e80  ================ Scan services =============================
14:05:16.0966 0x0e80  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
14:05:28.0406 0x0e80  1394ohci - detected UnsignedFile.Multi.Generic ( 1 )
14:05:28.0457 0x0e80  Detect skipped due to KSN trusted
14:05:28.0457 0x0e80  1394ohci - ok
14:05:47.0399 0x0e80  [ E0A8525A951ADDB4655BC2068566407D, 7C08B9DB7C281422FD64219DF81B7064CE16EA53CF00EB1FC33CB0741CE6605F ] 61883           C:\Windows\system32\DRIVERS\61883.sys
14:05:52.0448 0x0e80  61883 - detected UnsignedFile.Multi.Generic ( 1 )
14:05:52.0497 0x0e80  Detect skipped due to KSN trusted
14:05:52.0497 0x0e80  61883 - ok
14:06:11.0561 0x0e80  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
14:06:11.0573 0x0e80  ACPI - ok
14:06:14.0647 0x0e80  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
14:06:24.0652 0x0e80  AcpiPmi - detected UnsignedFile.Multi.Generic ( 1 )
14:06:24.0709 0x0e80  Detect skipped due to KSN trusted
14:06:24.0709 0x0e80  AcpiPmi - ok
14:06:41.0816 0x0e80  [ 9B112FDA1D5FB7B75627461001AC692A, 2EDF7C8FD59CD5FCD19FA528F60CBD6DDB9A8076AE0280B11D8EA8EAF7D39958 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:06:41.0822 0x0e80  AdobeARMservice - ok
14:06:41.0883 0x0e80  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
14:06:41.0896 0x0e80  adp94xx - ok
14:06:41.0942 0x0e80  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
14:06:41.0953 0x0e80  adpahci - ok
14:06:41.0963 0x0e80  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
14:06:41.0972 0x0e80  adpu320 - ok
14:06:41.0987 0x0e80  [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
14:06:53.0524 0x0e80  AeLookupSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:06:53.0573 0x0e80  Detect skipped due to KSN trusted
14:06:53.0573 0x0e80  AeLookupSvc - ok
14:07:09.0192 0x0e80  [ 0DC2A9882540DEA4A55B08785E09D8FC, 69B15724B0034F9915AACE109A6C596D6AF2DA350FC18C9A0CD98C81CB7EDEE3 ] AFD             C:\Windows\system32\drivers\afd.sys
14:07:14.0239 0x0e80  AFD - detected UnsignedFile.Multi.Generic ( 1 )
14:07:14.0287 0x0e80  Detect skipped due to KSN trusted
14:07:14.0287 0x0e80  AFD - ok
14:07:30.0340 0x0e80  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
14:07:30.0346 0x0e80  agp440 - ok
14:07:36.0389 0x0e80  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
14:07:41.0412 0x0e80  ALG - detected UnsignedFile.Multi.Generic ( 1 )
14:07:41.0461 0x0e80  Detect skipped due to KSN trusted
14:07:41.0461 0x0e80  ALG - ok
14:07:54.0556 0x0e80  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
14:07:54.0562 0x0e80  aliide - ok
14:08:00.0551 0x0e80  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
14:08:00.0557 0x0e80  amdide - ok
14:08:03.0606 0x0e80  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
14:08:08.0660 0x0e80  AmdK8 - detected UnsignedFile.Multi.Generic ( 1 )
14:08:08.0708 0x0e80  Detect skipped due to KSN trusted
14:08:08.0708 0x0e80  AmdK8 - ok
14:08:13.0233 0x0e80  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
14:08:24.0966 0x0e80  AmdPPM - detected UnsignedFile.Multi.Generic ( 1 )
14:08:25.0014 0x0e80  Detect skipped due to KSN trusted
14:08:25.0014 0x0e80  AmdPPM - ok
14:08:31.0023 0x0e80  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
14:08:31.0030 0x0e80  amdsata - ok
14:08:31.0073 0x0e80  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
14:08:31.0082 0x0e80  amdsbs - ok
14:08:31.0098 0x0e80  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
14:08:31.0103 0x0e80  amdxata - ok
14:08:31.0129 0x0e80  [ C16B5B379A2A79702CC5FF923EAAE3FD, FD6A1E3C46282CF77AFA9FB4B4ACE2DB6295DFB0C69EA07BE7160538041CDB2F ] AppID           C:\Windows\system32\drivers\appid.sys
14:08:41.0133 0x0e80  AppID - detected UnsignedFile.Multi.Generic ( 1 )
14:08:41.0182 0x0e80  Detect skipped due to KSN trusted
14:08:41.0182 0x0e80  AppID - ok
14:08:52.0484 0x0e80  [ 5152D6B29C61EF59537DBDA92BFE2978, 6D426A0FEE016A8899ADE864DD84BE019C5B5DB7E1DB295ED720239877FCB3EF ] AppIDSvc        C:\Windows\System32\appidsvc.dll
14:08:58.0503 0x0e80  AppIDSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:08:58.0551 0x0e80  Detect skipped due to KSN trusted
14:08:58.0551 0x0e80  AppIDSvc - ok
14:08:58.0607 0x0e80  [ DE23E052E557580674785CDF45B613F3, A955ADC6CC7D816BA7CE1065F911E7A3295A1908C22BE0A3C506C38CFEE8DE0D ] Appinfo         C:\Windows\System32\appinfo.dll
14:09:09.0952 0x0e80  Appinfo - detected UnsignedFile.Multi.Generic ( 1 )
14:09:10.0001 0x0e80  Detect skipped due to KSN trusted
14:09:10.0002 0x0e80  Appinfo - ok
14:09:16.0810 0x0e80  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
14:09:16.0817 0x0e80  arc - ok
14:09:25.0920 0x0e80  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
14:09:25.0928 0x0e80  arcsas - ok
14:09:26.0041 0x0e80  [ 0AA7A996792FB0287B33A57A8093AE44, 41894F055F3CDA05794FC46E1F2C59979D1DAF7602F44E4ADF6347E199B8137C ] asmthub3        C:\Windows\system32\DRIVERS\asmthub3.sys
14:09:36.0051 0x0e80  asmthub3 - detected UnsignedFile.Multi.Generic ( 1 )
14:09:36.0110 0x0e80  Detect skipped due to KSN trusted
14:09:36.0110 0x0e80  asmthub3 - ok
14:09:53.0271 0x0e80  [ 125DC3ABF5BFCCFE82AD17D078E0B9EC, FEFF8C37CD688F39C8E341F8BF7A712AA8C0F431B064E07C3EA66A96250D855B ] asmtxhci        C:\Windows\system32\DRIVERS\asmtxhci.sys
14:09:58.0319 0x0e80  asmtxhci - detected UnsignedFile.Multi.Generic ( 1 )
14:09:58.0370 0x0e80  Detect skipped due to KSN trusted
14:09:58.0370 0x0e80  asmtxhci - ok
14:10:20.0732 0x0e80  [ 8637F3119057178364D200F2462E625C, 40CAE47AA6C6B23FEB95961FD06BB3EB075CA63BB91B54CB26215A368371B343 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:10:20.0740 0x0e80  aspnet_state - ok
14:10:20.0791 0x0e80  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
14:10:30.0795 0x0e80  AsyncMac - detected UnsignedFile.Multi.Generic ( 1 )
14:10:30.0844 0x0e80  Detect skipped due to KSN trusted
14:10:30.0844 0x0e80  AsyncMac - ok
14:10:36.0137 0x0e80  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
14:10:42.0051 0x0e80  atapi - ok
14:10:48.0219 0x0e80  [ 36322190763845975E0D001E90687BF2, EA3DB2D112015CA5C744C5A84CDEFF6D02CE7D0E7E6E141AE3E527C2FAB5600E ] athur           C:\Windows\system32\DRIVERS\athurx.sys
14:10:58.0255 0x0e80  athur - detected UnsignedFile.Multi.Generic ( 1 )
14:10:58.0304 0x0e80  Detect skipped due to KSN trusted
14:10:58.0305 0x0e80  athur - ok
14:11:15.0524 0x0e80  [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:11:25.0541 0x0e80  AudioEndpointBuilder - detected UnsignedFile.Multi.Generic ( 1 )
14:11:25.0590 0x0e80  Detect skipped due to KSN trusted
14:11:25.0590 0x0e80  AudioEndpointBuilder - ok
14:11:42.0962 0x0e80  [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
14:11:47.0982 0x0e80  AudioSrv - detected UnsignedFile.Multi.Generic ( 1 )
14:11:47.0982 0x0e80  Detect skipped due to KSN trusted
14:11:47.0982 0x0e80  AudioSrv - ok
14:12:10.0367 0x0e80  [ 16FABE84916623D0607E4A975544032C, 9D960CAE27B1769ED5B024C0A3375912432521C73C1F59E21111596A7981BDC3 ] Avc             C:\Windows\system32\DRIVERS\avc.sys
14:12:16.0863 0x0e80  Avc - detected UnsignedFile.Multi.Generic ( 1 )
14:12:16.0919 0x0e80  Detect skipped due to KSN trusted
14:12:16.0919 0x0e80  Avc - ok
14:12:31.0620 0x0e80  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
14:12:37.0551 0x0e80  AxInstSV - detected UnsignedFile.Multi.Generic ( 1 )
14:12:37.0600 0x0e80  Detect skipped due to KSN trusted
14:12:37.0600 0x0e80  AxInstSV - ok
14:12:37.0654 0x0e80  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
14:12:47.0666 0x0e80  b06bdrv - detected UnsignedFile.Multi.Generic ( 1 )
14:12:47.0714 0x0e80  Detect skipped due to KSN trusted
14:12:47.0714 0x0e80  b06bdrv - ok
14:12:56.0062 0x0e80  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
14:13:04.0982 0x0e80  b57nd60a - detected UnsignedFile.Multi.Generic ( 1 )
14:13:05.0030 0x0e80  Detect skipped due to KSN trusted
14:13:05.0030 0x0e80  b57nd60a - ok
14:13:05.0082 0x0e80  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
14:13:15.0086 0x0e80  BDESVC - detected UnsignedFile.Multi.Generic ( 1 )
14:13:15.0137 0x0e80  Detect skipped due to KSN trusted
14:13:15.0137 0x0e80  BDESVC - ok
14:13:32.0499 0x0e80  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
14:13:37.0621 0x0e80  Beep - detected UnsignedFile.Multi.Generic ( 1 )
14:13:37.0680 0x0e80  Detect skipped due to KSN trusted
14:13:37.0680 0x0e80  Beep - ok
14:13:59.0739 0x0e80  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
14:14:04.0797 0x0e80  BFE - detected UnsignedFile.Multi.Generic ( 1 )
14:14:04.0844 0x0e80  Detect skipped due to KSN trusted
14:14:04.0845 0x0e80  BFE - ok
14:14:27.0002 0x0e80  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
14:14:39.0427 0x0e80  BITS - detected UnsignedFile.Multi.Generic ( 1 )
14:14:39.0487 0x0e80  Detect skipped due to KSN trusted
14:14:39.0487 0x0e80  BITS - ok
14:14:45.0466 0x0e80  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
14:14:54.0438 0x0e80  blbdrive - detected UnsignedFile.Multi.Generic ( 1 )
14:14:54.0493 0x0e80  Detect skipped due to KSN trusted
14:14:54.0493 0x0e80  blbdrive - ok
14:14:54.0533 0x0e80  [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
14:15:04.0538 0x0e80  bowser - detected UnsignedFile.Multi.Generic ( 1 )
14:15:04.0708 0x0e80  Detect skipped due to KSN trusted
14:15:04.0708 0x0e80  bowser - ok
14:15:09.0717 0x0e80  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:15:21.0757 0x0e80  BrFiltLo - detected UnsignedFile.Multi.Generic ( 1 )
14:15:21.0805 0x0e80  Detect skipped due to KSN trusted
14:15:21.0805 0x0e80  BrFiltLo - ok
14:15:21.0837 0x0e80  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:15:31.0841 0x0e80  BrFiltUp - detected UnsignedFile.Multi.Generic ( 1 )
14:15:31.0891 0x0e80  Detect skipped due to KSN trusted
14:15:31.0891 0x0e80  BrFiltUp - ok
14:15:45.0835 0x0e80  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
14:15:53.0924 0x0e80  Browser - detected UnsignedFile.Multi.Generic ( 1 )
14:15:53.0983 0x0e80  Detect skipped due to KSN trusted
14:15:53.0983 0x0e80  Browser - ok
14:16:13.0179 0x0e80  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
14:16:21.0160 0x0e80  Brserid - detected UnsignedFile.Multi.Generic ( 1 )
14:16:21.0209 0x0e80  Detect skipped due to KSN trusted
14:16:21.0209 0x0e80  Brserid - ok
14:16:28.0563 0x0e80  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
14:16:41.0468 0x0e80  BrSerWdm - detected UnsignedFile.Multi.Generic ( 1 )
14:16:41.0547 0x0e80  Detect skipped due to KSN trusted
14:16:41.0547 0x0e80  BrSerWdm - ok
14:16:43.0498 0x0e80  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
14:16:48.0593 0x0e80  BrUsbMdm - detected UnsignedFile.Multi.Generic ( 1 )
14:16:48.0642 0x0e80  Detect skipped due to KSN trusted
14:16:48.0642 0x0e80  BrUsbMdm - ok
14:17:02.0104 0x0e80  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
14:17:11.0061 0x0e80  BrUsbSer - detected UnsignedFile.Multi.Generic ( 1 )
14:17:11.0120 0x0e80  Detect skipped due to KSN trusted
14:17:11.0120 0x0e80  BrUsbSer - ok
14:17:11.0163 0x0e80  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
14:17:23.0501 0x0e80  BTHMODEM - detected UnsignedFile.Multi.Generic ( 1 )
14:17:23.0560 0x0e80  Detect skipped due to KSN trusted
14:17:23.0560 0x0e80  BTHMODEM - ok
14:17:35.0525 0x0e80  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
14:17:43.0530 0x0e80  bthserv - detected UnsignedFile.Multi.Generic ( 1 )
14:17:43.0580 0x0e80  Detect skipped due to KSN trusted
14:17:43.0580 0x0e80  bthserv - ok
14:17:47.0996 0x0e80  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
14:17:58.0910 0x0e80  cdfs - detected UnsignedFile.Multi.Generic ( 1 )
14:17:58.0958 0x0e80  Detect skipped due to KSN trusted
14:17:58.0958 0x0e80  cdfs - ok
14:18:05.0724 0x0e80  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
14:18:10.0747 0x0e80  cdrom - detected UnsignedFile.Multi.Generic ( 1 )
14:18:10.0795 0x0e80  Detect skipped due to KSN trusted
14:18:10.0795 0x0e80  cdrom - ok
14:18:18.0177 0x0e80  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
14:18:31.0914 0x0e80  CertPropSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:18:31.0973 0x0e80  Detect skipped due to KSN trusted
14:18:31.0973 0x0e80  CertPropSvc - ok
14:18:32.0784 0x0e80  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
14:18:39.0275 0x0e80  circlass - detected UnsignedFile.Multi.Generic ( 1 )
14:18:39.0324 0x0e80  Detect skipped due to KSN trusted
14:18:39.0324 0x0e80  circlass - ok
14:19:00.0124 0x0e80  [ 3963FEC1892368DD500E6ED1F5C286CE, A04689CB07AF1C1B4B1032B0ACAD88DA3EB03D89A575C59FE602A65E8C246138 ] CLFS            C:\Windows\system32\CLFS.sys
14:19:00.0148 0x0e80  CLFS - ok
14:19:00.0253 0x0e80  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:19:00.0259 0x0e80  clr_optimization_v2.0.50727_32 - ok
14:19:00.0270 0x0e80  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:19:00.0276 0x0e80  clr_optimization_v2.0.50727_64 - ok
14:19:00.0343 0x0e80  [ 2BA609641FA64BAB02ACD3C0095672F5, FD1FE403864F0564CA4A2F1D7415649B8FFE16F8ED33C4B44ACB21767118AD5F ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:19:00.0352 0x0e80  clr_optimization_v4.0.30319_32 - ok
14:19:00.0366 0x0e80  [ 7C7502CD2A2CFAB399D0D8DA95DB03E7, 4AE53B468CF597FCFD912A6EEE27E87EE4D9BC73F2A794FB5DF5DA46C1DD1289 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:19:00.0374 0x0e80  clr_optimization_v4.0.30319_64 - ok
14:19:00.0403 0x0e80  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
14:19:10.0406 0x0e80  CmBatt - detected UnsignedFile.Multi.Generic ( 1 )
14:19:10.0457 0x0e80  Detect skipped due to KSN trusted
14:19:10.0457 0x0e80  CmBatt - ok
14:19:24.0739 0x0e80  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
14:19:24.0745 0x0e80  cmdide - ok
14:19:27.0724 0x0e80  [ A98CED39AD91B445E2E442A9BD67E8B4, B4189DEEF1C0EE22AE983119047B1A40FFDD8F3E163DFFABD7C2706231B0B1B0 ] CNG             C:\Windows\system32\Drivers\cng.sys
14:19:27.0741 0x0e80  CNG - ok
14:19:27.0775 0x0e80  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
14:19:27.0781 0x0e80  Compbatt - ok
14:19:27.0806 0x0e80  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
14:19:37.0812 0x0e80  CompositeBus - detected UnsignedFile.Multi.Generic ( 1 )
14:19:37.0868 0x0e80  Detect skipped due to KSN trusted
14:19:37.0868 0x0e80  CompositeBus - ok
14:19:40.0133 0x0e80  COMSysApp - ok
14:19:46.0008 0x0e80  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
14:19:46.0014 0x0e80  crcdisk - ok
14:19:51.0954 0x0e80  [ 48FEDBE324F1EA9417BA1D62AE863011, 2C3D84F0842237A3BF2838DDB4126807977EB36588FA669B1E6671077584EF18 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
14:19:59.0978 0x0e80  CryptSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:20:00.0027 0x0e80  Detect skipped due to KSN trusted
14:20:00.0027 0x0e80  CryptSvc - ok
14:20:07.0182 0x0e80  DCamUSBSTK03N - ok
14:20:22.0066 0x0e80  [ 3F1A199859B4F3F8357B2A0AF5666A54, B0ACE9384088B7D0E54CF82BF48D4FEAA518BDEF98A294BA8F5A37DFF0E45328 ] DcomLaunch      C:\Windows\system32\rpcss.dll
14:20:28.0427 0x0e80  DcomLaunch - detected UnsignedFile.Multi.Generic ( 1 )
14:20:28.0475 0x0e80  Detect skipped due to KSN trusted
14:20:28.0476 0x0e80  DcomLaunch - ok
14:20:49.0185 0x0e80  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
14:20:58.0574 0x0e80  defragsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:20:58.0629 0x0e80  Detect skipped due to KSN trusted
14:20:58.0629 0x0e80  defragsvc - ok
14:21:16.0424 0x0e80  [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
14:21:21.0524 0x0e80  DfsC - detected UnsignedFile.Multi.Generic ( 1 )
14:21:21.0573 0x0e80  Detect skipped due to KSN trusted
14:21:21.0573 0x0e80  DfsC - ok
14:21:43.0750 0x0e80  [ D51B32BA3897F630D99713B74B40D6A2, 5EB136A8248E6FA1316CFA273D9DC8F9C8E8CCB9AC00AE23C1337FBF5F6FDBEC ] DfSdkS          C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2017\DfsdkS64.exe
14:21:53.0764 0x0e80  DfSdkS - detected UnsignedFile.Multi.Generic ( 1 )
14:21:53.0813 0x0e80  Detect skipped due to KSN trusted
14:21:53.0814 0x0e80  DfSdkS - ok
14:22:01.0967 0x0e80  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
14:22:10.0963 0x0e80  Dhcp - detected UnsignedFile.Multi.Generic ( 1 )
14:22:11.0023 0x0e80  Detect skipped due to KSN trusted
14:22:11.0023 0x0e80  Dhcp - ok
14:22:11.0146 0x0e80  [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack       C:\Windows\system32\diagtrack.dll
14:22:21.0172 0x0e80  DiagTrack - detected UnsignedFile.Multi.Generic ( 1 )
14:22:21.0221 0x0e80  Detect skipped due to KSN trusted
14:22:21.0221 0x0e80  DiagTrack - ok
14:22:26.0517 0x0e80  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
14:22:36.0520 0x0e80  discache - detected UnsignedFile.Multi.Generic ( 1 )
14:22:36.0569 0x0e80  Detect skipped due to KSN trusted
14:22:36.0569 0x0e80  discache - ok
14:22:38.0383 0x0e80  [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk            C:\Windows\system32\drivers\disk.sys
14:22:38.0391 0x0e80  Disk - ok
14:22:38.0443 0x0e80  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
14:22:48.0451 0x0e80  Dnscache - detected UnsignedFile.Multi.Generic ( 1 )
14:22:48.0499 0x0e80  Detect skipped due to KSN trusted
14:22:48.0499 0x0e80  Dnscache - ok
14:22:56.0642 0x0e80  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
14:23:12.0006 0x0e80  dot3svc - detected UnsignedFile.Multi.Generic ( 1 )
14:23:12.0062 0x0e80  Detect skipped due to KSN trusted
14:23:12.0062 0x0e80  dot3svc - ok
14:23:32.0799 0x0e80  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
14:23:37.0880 0x0e80  DPS - detected UnsignedFile.Multi.Generic ( 1 )
14:23:37.0929 0x0e80  Detect skipped due to KSN trusted
14:23:37.0929 0x0e80  DPS - ok
14:23:42.0198 0x0e80  [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
14:23:52.0202 0x0e80  drmkaud - detected UnsignedFile.Multi.Generic ( 1 )
14:23:52.0251 0x0e80  Detect skipped due to KSN trusted
14:23:52.0251 0x0e80  drmkaud - ok
14:23:59.0961 0x0e80  [ 5CEF80AE869336376F550ECAE91E424A, 49152AC35556A5629AE7A4A762FDB2112FAD1C9CDB91E6196172809F74A3149A ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
14:23:59.0983 0x0e80  DXGKrnl - ok
14:24:00.0036 0x0e80  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
14:24:11.0515 0x0e80  EapHost - detected UnsignedFile.Multi.Generic ( 1 )
14:24:11.0564 0x0e80  Detect skipped due to KSN trusted
14:24:11.0564 0x0e80  EapHost - ok
14:24:27.0633 0x0e80  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
14:24:37.0693 0x0e80  ebdrv - detected UnsignedFile.Multi.Generic ( 1 )
14:24:37.0750 0x0e80  Detect skipped due to KSN trusted
14:24:37.0751 0x0e80  ebdrv - ok
14:24:46.0057 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] EFS             C:\Windows\System32\lsass.exe
14:24:54.0997 0x0e80  EFS - detected UnsignedFile.Multi.Generic ( 1 )
14:24:55.0047 0x0e80  Detect skipped due to KSN trusted
14:24:55.0047 0x0e80  EFS - ok
14:24:55.0143 0x0e80  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
14:25:05.0160 0x0e80  ehRecvr - detected UnsignedFile.Multi.Generic ( 1 )
14:25:05.0210 0x0e80  Detect skipped due to KSN trusted
14:25:05.0211 0x0e80  ehRecvr - ok
14:25:13.0484 0x0e80  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
14:25:22.0532 0x0e80  ehSched - detected UnsignedFile.Multi.Generic ( 1 )
14:25:22.0581 0x0e80  Detect skipped due to KSN trusted
14:25:22.0581 0x0e80  ehSched - ok
14:25:22.0688 0x0e80  [ 568F7FB00D308AC75D61DF6C61A09B83, D1DDEC268845097C54496220CDF297C0D2B85C312219B5A3AE9BFA35D82AF2CF ] ElfoService     C:\Program Files (x86)\ElsterFormular Update Service\bin\ElfoService.exe
14:25:22.0722 0x0e80  ElfoService - ok
14:25:22.0761 0x0e80  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
14:25:22.0775 0x0e80  elxstor - ok
14:25:22.0791 0x0e80  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
14:25:32.0794 0x0e80  ErrDev - detected UnsignedFile.Multi.Generic ( 1 )
14:25:32.0843 0x0e80  Detect skipped due to KSN trusted
14:25:32.0843 0x0e80  ErrDev - ok
14:25:50.0067 0x0e80  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
14:25:56.0567 0x0e80  EventSystem - detected UnsignedFile.Multi.Generic ( 1 )
14:25:56.0623 0x0e80  Detect skipped due to KSN trusted
14:25:56.0623 0x0e80  EventSystem - ok
14:26:02.0507 0x0e80  [ 7E45F8B117419ABA3BB26579F6E70324, 03FE86519860153E1BE571F10ACC9BA58FFB5A661C5C3EBDF3B77973BCD96C84 ] exfat           C:\Windows\system32\drivers\exfat.sys
14:26:12.0514 0x0e80  exfat - detected UnsignedFile.Multi.Generic ( 1 )
14:26:12.0562 0x0e80  Detect skipped due to KSN trusted
14:26:12.0562 0x0e80  exfat - ok
14:26:17.0401 0x0e80  [ 6EDFA237D25433C03F42FBFDB16BDD24, A30F89A40F7AFC475D3C2D3591FB9AFC06AE3FEBC915FDCB24ED77946FBA4E2C ] fastfat         C:\Windows\system32\drivers\fastfat.sys
14:26:22.0472 0x0e80  fastfat - detected UnsignedFile.Multi.Generic ( 1 )
14:26:22.0521 0x0e80  Detect skipped due to KSN trusted
14:26:22.0521 0x0e80  fastfat - ok
14:26:44.0776 0x0e80  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
14:26:51.0193 0x0e80  Fax - detected UnsignedFile.Multi.Generic ( 1 )
14:26:51.0241 0x0e80  Detect skipped due to KSN trusted
14:26:51.0241 0x0e80  Fax - ok
14:26:57.0296 0x0e80  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
14:27:08.0962 0x0e80  fdc - detected UnsignedFile.Multi.Generic ( 1 )
14:27:09.0018 0x0e80  Detect skipped due to KSN trusted
14:27:09.0018 0x0e80  fdc - ok
14:27:12.0060 0x0e80  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
14:27:18.0716 0x0e80  fdPHost - detected UnsignedFile.Multi.Generic ( 1 )
14:27:18.0764 0x0e80  Detect skipped due to KSN trusted
14:27:18.0764 0x0e80  fdPHost - ok
14:27:30.0389 0x0e80  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
14:27:39.0230 0x0e80  FDResPub - detected UnsignedFile.Multi.Generic ( 1 )
14:27:39.0278 0x0e80  Detect skipped due to KSN trusted
14:27:39.0278 0x0e80  FDResPub - ok
14:27:39.0303 0x0e80  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
14:27:39.0310 0x0e80  FileInfo - ok
14:27:39.0320 0x0e80  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
14:27:49.0323 0x0e80  Filetrace - detected UnsignedFile.Multi.Generic ( 1 )
14:27:49.0373 0x0e80  Detect skipped due to KSN trusted
14:27:49.0373 0x0e80  Filetrace - ok
14:27:54.0590 0x0e80  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
14:28:04.0595 0x0e80  flpydisk - detected UnsignedFile.Multi.Generic ( 1 )
14:28:04.0642 0x0e80  Detect skipped due to KSN trusted
14:28:04.0642 0x0e80  flpydisk - ok
14:28:06.0622 0x0e80  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
14:28:06.0632 0x0e80  FltMgr - ok
14:28:06.0683 0x0e80  [ 785F474FB5E67E448E1931C98E8D0ABC, 911697D580CBF508A6F4A52D4F95A6976CF9A0EC3549076A8D0B5C8BD947C989 ] FontCache       C:\Windows\system32\FntCache.dll
14:28:16.0708 0x0e80  FontCache - detected UnsignedFile.Multi.Generic ( 1 )
14:28:16.0765 0x0e80  Detect skipped due to KSN trusted
14:28:16.0765 0x0e80  FontCache - ok
14:28:34.0016 0x0e80  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:28:34.0022 0x0e80  FontCache3.0.0.0 - ok
14:28:34.0144 0x0e80  [ 6456E172CBF023E7D8985ADF0560736E, 15502D644270FEE8B9B883C2C7C69615E83F9EC35F5A727130945A2B11E67FF6 ] Freemake Improver C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
14:28:34.0152 0x0e80  Freemake Improver - ok
14:28:34.0199 0x0e80  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
14:28:34.0206 0x0e80  FsDepends - ok
14:28:34.0239 0x0e80  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
14:28:34.0245 0x0e80  Fs_Rec - ok
14:28:34.0286 0x0e80  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
14:28:34.0297 0x0e80  fvevol - ok
14:28:34.0312 0x0e80  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
14:28:34.0318 0x0e80  gagp30kx - ok
14:28:34.0351 0x0e80  [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc           C:\Windows\System32\gpsvc.dll
14:28:49.0613 0x0e80  gpsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:28:49.0661 0x0e80  Detect skipped due to KSN trusted
14:28:49.0662 0x0e80  gpsvc - ok
14:29:01.0704 0x0e80  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:29:01.0729 0x0e80  gupdate - ok
14:29:01.0785 0x0e80  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:29:01.0792 0x0e80  gupdatem - ok
14:29:01.0819 0x0e80  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
14:29:14.0335 0x0e80  hcw85cir - detected UnsignedFile.Multi.Generic ( 1 )
14:29:14.0383 0x0e80  Detect skipped due to KSN trusted
14:29:14.0383 0x0e80  hcw85cir - ok
14:29:29.0601 0x0e80  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:29:36.0024 0x0e80  HdAudAddService - detected UnsignedFile.Multi.Generic ( 1 )
14:29:36.0082 0x0e80  Detect skipped due to KSN trusted
14:29:36.0082 0x0e80  HdAudAddService - ok
14:29:39.0001 0x0e80  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
14:29:50.0825 0x0e80  HDAudBus - detected UnsignedFile.Multi.Generic ( 1 )
14:29:50.0873 0x0e80  Detect skipped due to KSN trusted
14:29:50.0873 0x0e80  HDAudBus - ok
14:29:56.0840 0x0e80  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
14:30:03.0409 0x0e80  HidBatt - detected UnsignedFile.Multi.Generic ( 1 )
14:30:03.0655 0x0e80  Detect skipped due to KSN trusted
14:30:03.0655 0x0e80  HidBatt - ok
14:30:06.0395 0x0e80  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
14:30:18.0224 0x0e80  HidBth - detected UnsignedFile.Multi.Generic ( 1 )
14:30:18.0271 0x0e80  Detect skipped due to KSN trusted
14:30:18.0271 0x0e80  HidBth - ok
14:30:24.0160 0x0e80  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
14:30:29.0207 0x0e80  HidIr - detected UnsignedFile.Multi.Generic ( 1 )
14:30:29.0256 0x0e80  Detect skipped due to KSN trusted
14:30:29.0256 0x0e80  HidIr - ok
14:30:36.0688 0x0e80  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\system32\hidserv.dll
14:30:47.0554 0x0e80  hidserv - detected UnsignedFile.Multi.Generic ( 1 )
14:30:47.0610 0x0e80  Detect skipped due to KSN trusted
14:30:47.0610 0x0e80  hidserv - ok
14:30:51.0485 0x0e80  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
14:31:01.0489 0x0e80  HidUsb - detected UnsignedFile.Multi.Generic ( 1 )
14:31:01.0538 0x0e80  Detect skipped due to KSN trusted
14:31:01.0538 0x0e80  HidUsb - ok
14:31:12.0649 0x0e80  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
14:31:18.0652 0x0e80  hkmsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:31:18.0700 0x0e80  Detect skipped due to KSN trusted
14:31:18.0700 0x0e80  hkmsvc - ok
14:31:18.0757 0x0e80  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:31:30.0136 0x0e80  HomeGroupListener - detected UnsignedFile.Multi.Generic ( 1 )
14:31:30.0185 0x0e80  Detect skipped due to KSN trusted
14:31:30.0185 0x0e80  HomeGroupListener - ok
14:31:39.0991 0x0e80  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:31:45.0929 0x0e80  HomeGroupProvider - detected UnsignedFile.Multi.Generic ( 1 )
14:31:45.0977 0x0e80  Detect skipped due to KSN trusted
14:31:45.0977 0x0e80  HomeGroupProvider - ok
14:31:46.0005 0x0e80  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
14:31:46.0011 0x0e80  HpSAMD - ok
14:31:46.0048 0x0e80  [ CF5C9BD985120781200D35FD445D0BD5, 91B37F595A196542458CBBCDAD80779721D228A7030A34E55995DDBB06649248 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
14:31:57.0677 0x0e80  HTTP - detected UnsignedFile.Multi.Generic ( 1 )
14:31:57.0725 0x0e80  Detect skipped due to KSN trusted
14:31:57.0725 0x0e80  HTTP - ok
14:32:10.0450 0x0e80  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
14:32:10.0456 0x0e80  hwpolicy - ok
14:32:13.0632 0x0e80  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
14:32:23.0637 0x0e80  i8042prt - detected UnsignedFile.Multi.Generic ( 1 )
14:32:23.0686 0x0e80  Detect skipped due to KSN trusted
14:32:23.0686 0x0e80  i8042prt - ok
14:32:40.0936 0x0e80  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
14:32:40.0948 0x0e80  iaStorV - ok
14:32:41.0045 0x0e80  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:32:41.0065 0x0e80  idsvc - ok
14:32:41.0100 0x0e80  IEEtwCollectorService - ok
14:32:41.0124 0x0e80  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
14:32:41.0130 0x0e80  iirsp - ok
14:32:41.0212 0x0e80  [ CE1EE31FFF730CA975A5535D8A71AF61, A1808EB92EC2444F9309C93F5724A7A374F4B983862829BF9B076C8D3B2427DE ] IJPLMSVC        C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
14:32:41.0218 0x0e80  IJPLMSVC - ok
14:32:41.0266 0x0e80  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
14:32:53.0628 0x0e80  IKEEXT - detected UnsignedFile.Multi.Generic ( 1 )
14:32:53.0724 0x0e80  Detect skipped due to KSN trusted
14:32:53.0724 0x0e80  IKEEXT - ok
14:33:08.0877 0x0e80  [ EB5FA493A4B6EA290200AE39EBA2FBC6, 1C2797058A52D87D0F4412F40D372BABB7E4E4146F6DA5F4FFB7C6BA026A1FAC ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:33:08.0930 0x0e80  IntcAzAudAddService - ok
14:33:08.0971 0x0e80  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
14:33:08.0977 0x0e80  intelide - ok
14:33:09.0006 0x0e80  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
14:33:19.0012 0x0e80  intelppm - detected UnsignedFile.Multi.Generic ( 1 )
14:33:19.0060 0x0e80  Detect skipped due to KSN trusted
14:33:19.0060 0x0e80  intelppm - ok
14:33:36.0146 0x0e80  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
14:33:41.0194 0x0e80  IPBusEnum - detected UnsignedFile.Multi.Generic ( 1 )
14:33:41.0243 0x0e80  Detect skipped due to KSN trusted
14:33:41.0243 0x0e80  IPBusEnum - ok
14:33:48.0701 0x0e80  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:34:01.0654 0x0e80  IpFilterDriver - detected UnsignedFile.Multi.Generic ( 1 )
14:34:01.0710 0x0e80  Detect skipped due to KSN trusted
14:34:01.0710 0x0e80  IpFilterDriver - ok
14:34:03.0538 0x0e80  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
14:34:13.0552 0x0e80  iphlpsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:34:13.0601 0x0e80  Detect skipped due to KSN trusted
14:34:13.0601 0x0e80  iphlpsvc - ok
14:34:24.0847 0x0e80  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
14:34:31.0017 0x0e80  IPMIDRV - detected UnsignedFile.Multi.Generic ( 1 )
14:34:31.0065 0x0e80  Detect skipped due to KSN trusted
14:34:31.0065 0x0e80  IPMIDRV - ok
14:34:31.0103 0x0e80  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
14:34:41.0109 0x0e80  IPNAT - detected UnsignedFile.Multi.Generic ( 1 )
14:34:41.0158 0x0e80  Detect skipped due to KSN trusted
14:34:41.0158 0x0e80  IPNAT - ok
14:34:49.0422 0x0e80  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
14:34:58.0405 0x0e80  IRENUM - detected UnsignedFile.Multi.Generic ( 1 )
14:34:58.0452 0x0e80  Detect skipped due to KSN trusted
14:34:58.0452 0x0e80  IRENUM - ok
14:34:58.0492 0x0e80  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
14:34:58.0498 0x0e80  isapnp - ok
14:34:58.0520 0x0e80  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
14:34:58.0530 0x0e80  iScsiPrt - ok
14:34:58.0540 0x0e80  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
14:34:58.0547 0x0e80  kbdclass - ok
14:34:58.0561 0x0e80  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
14:35:08.0565 0x0e80  kbdhid - detected UnsignedFile.Multi.Generic ( 1 )
14:35:08.0718 0x0e80  Detect skipped due to KSN trusted
14:35:08.0718 0x0e80  kbdhid - ok
14:35:10.0994 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] KeyIso          C:\Windows\system32\lsass.exe
14:35:25.0005 0x0e80  KeyIso - detected UnsignedFile.Multi.Generic ( 1 )
14:35:25.0005 0x0e80  Detect skipped due to KSN trusted
14:35:25.0005 0x0e80  KeyIso - ok
14:35:26.0109 0x0e80  [ DFE85B031220F8E0271716BBB3C4C8FF, 531AB0851AE2F2B25D751605529C483B4734E5D26F94F56DEC0191730DD6A9A4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
14:35:26.0116 0x0e80  KSecDD - ok
14:35:26.0138 0x0e80  [ 70D7302DD70B979637179BFD8295C924, 7A3498C8A90AC5D7A070E9BCAF1BC0D16F478A7160A9333C58247034C5B3B59F ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
14:35:26.0145 0x0e80  KSecPkg - ok
14:35:26.0167 0x0e80  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
14:35:36.0172 0x0e80  ksthunk - detected UnsignedFile.Multi.Generic ( 1 )
14:35:36.0221 0x0e80  Detect skipped due to KSN trusted
14:35:36.0221 0x0e80  ksthunk - ok
14:35:53.0635 0x0e80  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
14:35:58.0665 0x0e80  KtmRm - detected UnsignedFile.Multi.Generic ( 1 )
14:35:58.0715 0x0e80  Detect skipped due to KSN trusted
14:35:58.0715 0x0e80  KtmRm - ok
14:36:20.0924 0x0e80  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\system32\srvsvc.dll
14:36:27.0388 0x0e80  LanmanServer - detected UnsignedFile.Multi.Generic ( 1 )
14:36:27.0444 0x0e80  Detect skipped due to KSN trusted
14:36:27.0444 0x0e80  LanmanServer - ok
14:36:33.0342 0x0e80  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:36:46.0240 0x0e80  LanmanWorkstation - detected UnsignedFile.Multi.Generic ( 1 )
14:36:46.0288 0x0e80  Detect skipped due to KSN trusted
14:36:46.0288 0x0e80  LanmanWorkstation - ok
14:36:48.0221 0x0e80  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
14:36:54.0763 0x0e80  lltdio - detected UnsignedFile.Multi.Generic ( 1 )
14:36:54.0813 0x0e80  Detect skipped due to KSN trusted
14:36:54.0813 0x0e80  lltdio - ok
14:37:03.0592 0x0e80  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
14:37:13.0601 0x0e80  lltdsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:37:13.0649 0x0e80  Detect skipped due to KSN trusted
14:37:13.0649 0x0e80  lltdsvc - ok
14:37:15.0638 0x0e80  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
14:37:20.0718 0x0e80  lmhosts - detected UnsignedFile.Multi.Generic ( 1 )
14:37:20.0767 0x0e80  Detect skipped due to KSN trusted
14:37:20.0767 0x0e80  lmhosts - ok
14:37:34.0048 0x0e80  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
14:37:34.0056 0x0e80  LSI_FC - ok
14:37:42.0990 0x0e80  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
14:37:42.0997 0x0e80  LSI_SAS - ok
14:37:43.0067 0x0e80  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:37:43.0073 0x0e80  LSI_SAS2 - ok
14:37:43.0124 0x0e80  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:37:43.0132 0x0e80  LSI_SCSI - ok
14:37:43.0158 0x0e80  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
14:37:53.0164 0x0e80  luafv - detected UnsignedFile.Multi.Generic ( 1 )
14:37:53.0212 0x0e80  Detect skipped due to KSN trusted
14:37:53.0212 0x0e80  luafv - ok
14:37:55.0488 0x0e80  lvpopf64 - ok
14:38:07.0313 0x0e80  LVPr2M64 - ok
14:38:10.0363 0x0e80  [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
14:38:10.0375 0x0e80  LVRS64 - ok
14:38:10.0500 0x0e80  [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
14:38:10.0587 0x0e80  LVUVC64 - ok
14:38:10.0649 0x0e80  MBAMWebProtection - ok
14:38:10.0666 0x0e80  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
14:38:22.0816 0x0e80  Mcx2Svc - detected UnsignedFile.Multi.Generic ( 1 )
14:38:22.0865 0x0e80  Detect skipped due to KSN trusted
14:38:22.0865 0x0e80  Mcx2Svc - ok
14:38:29.0009 0x0e80  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
14:38:29.0015 0x0e80  megasas - ok
14:38:37.0918 0x0e80  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
14:38:37.0928 0x0e80  MegaSR - ok
14:38:37.0968 0x0e80  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
14:38:47.0974 0x0e80  MMCSS - detected UnsignedFile.Multi.Generic ( 1 )
14:38:48.0022 0x0e80  Detect skipped due to KSN trusted
14:38:48.0022 0x0e80  MMCSS - ok
14:38:50.0355 0x0e80  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
14:39:01.0245 0x0e80  Modem - detected UnsignedFile.Multi.Generic ( 1 )
14:39:01.0293 0x0e80  Detect skipped due to KSN trusted
14:39:01.0293 0x0e80  Modem - ok
14:39:05.0244 0x0e80  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
14:39:10.0266 0x0e80  monitor - detected UnsignedFile.Multi.Generic ( 1 )
14:39:10.0315 0x0e80  Detect skipped due to KSN trusted
14:39:10.0315 0x0e80  monitor - ok
14:39:26.0495 0x0e80  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
14:39:26.0501 0x0e80  mouclass - ok
14:39:32.0681 0x0e80  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
14:39:37.0799 0x0e80  mouhid - detected UnsignedFile.Multi.Generic ( 1 )
14:39:37.0848 0x0e80  Detect skipped due to KSN trusted
14:39:37.0848 0x0e80  mouhid - ok
14:39:45.0134 0x0e80  [ 072D8646E23ECF8A3F5F0157017B4DB6, EBFB1459ECC5AF94C94FB49CEBC724542612680F0777E24B5AA6E062C0EE5D94 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
14:39:45.0141 0x0e80  mountmgr - ok
14:39:48.0118 0x0e80  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
14:39:48.0126 0x0e80  mpio - ok
14:39:56.0961 0x0e80  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
14:40:06.0577 0x0e80  mpsdrv - detected UnsignedFile.Multi.Generic ( 1 )
14:40:06.0627 0x0e80  Detect skipped due to KSN trusted
14:40:06.0627 0x0e80  mpsdrv - ok
14:40:27.0285 0x0e80  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
14:40:32.0341 0x0e80  MpsSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:40:32.0390 0x0e80  Detect skipped due to KSN trusted
14:40:32.0390 0x0e80  MpsSvc - ok
14:40:54.0842 0x0e80  [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
14:41:00.0121 0x0e80  MRxDAV - detected UnsignedFile.Multi.Generic ( 1 )
14:41:00.0179 0x0e80  Detect skipped due to KSN trusted
14:41:00.0179 0x0e80  MRxDAV - ok
14:41:10.0792 0x0e80  [ 767C6DF04C5758B9F0790D400541B44F, BFC38D7BCF19F7246BCAD3E04273A403F6B973432EE0EF6E25B16BA3826A21B7 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
14:41:22.0641 0x0e80  mrxsmb - detected UnsignedFile.Multi.Generic ( 1 )
14:41:22.0688 0x0e80  Detect skipped due to KSN trusted
14:41:22.0688 0x0e80  mrxsmb - ok
14:41:22.0780 0x0e80  [ BD55F604FFABC911F8E5500186AE70E5, 3719EDB070E6FFE9781337A05CA0309C3CD5CD38A292DF091E05C9BA3D5A479F ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:41:32.0789 0x0e80  mrxsmb10 - detected UnsignedFile.Multi.Generic ( 1 )
14:41:32.0837 0x0e80  Detect skipped due to KSN trusted
14:41:32.0837 0x0e80  mrxsmb10 - ok
14:41:44.0022 0x0e80  [ 92EECFB046D4706A4B8D699A4069B6EC, 3B3E232DABA913A500CE55AD8600D8DD8F28E32B0276B9B6C8FD6239688833A4 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:41:50.0094 0x0e80  mrxsmb20 - detected UnsignedFile.Multi.Generic ( 1 )
14:41:50.0142 0x0e80  Detect skipped due to KSN trusted
14:41:50.0142 0x0e80  mrxsmb20 - ok
14:41:50.0173 0x0e80  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
14:41:50.0179 0x0e80  msahci - ok
14:41:50.0197 0x0e80  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
14:41:50.0204 0x0e80  msdsm - ok
14:41:50.0225 0x0e80  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
14:42:05.0520 0x0e80  MSDTC - detected UnsignedFile.Multi.Generic ( 1 )
14:42:05.0577 0x0e80  Detect skipped due to KSN trusted
14:42:05.0577 0x0e80  MSDTC - ok
14:42:17.0309 0x0e80  [ 72949A24D37A20A54B3D4D3DADBB55E9, 580B59EF2DFA4F6EE27BA37904F0705CBCD74F9B07D2D795093C045F94AE6DB5 ] MSDV            C:\Windows\system32\DRIVERS\msdv.sys
14:42:22.0400 0x0e80  MSDV - detected UnsignedFile.Multi.Generic ( 1 )
14:42:22.0450 0x0e80  Detect skipped due to KSN trusted
14:42:22.0450 0x0e80  MSDV - ok
14:42:29.0709 0x0e80  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
14:42:40.0570 0x0e80  Msfs - detected UnsignedFile.Multi.Generic ( 1 )
14:42:40.0619 0x0e80  Detect skipped due to KSN trusted
14:42:40.0619 0x0e80  Msfs - ok
14:42:44.0775 0x0e80  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
14:42:49.0849 0x0e80  mshidkmdf - detected UnsignedFile.Multi.Generic ( 1 )
14:42:49.0897 0x0e80  Detect skipped due to KSN trusted
14:42:49.0897 0x0e80  mshidkmdf - ok
14:43:08.0926 0x0e80  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
14:43:08.0932 0x0e80  msisadrv - ok
14:43:11.0949 0x0e80  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
14:43:21.0954 0x0e80  MSiSCSI - detected UnsignedFile.Multi.Generic ( 1 )
14:43:22.0004 0x0e80  Detect skipped due to KSN trusted
14:43:22.0004 0x0e80  MSiSCSI - ok
14:43:22.0006 0x0e80  msiserver - ok
14:43:36.0495 0x0e80  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
14:43:44.0557 0x0e80  MSKSSRV - detected UnsignedFile.Multi.Generic ( 1 )
14:43:44.0606 0x0e80  Detect skipped due to KSN trusted
14:43:44.0606 0x0e80  MSKSSRV - ok
14:43:54.0993 0x0e80  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
14:44:04.0997 0x0e80  MSPCLOCK - detected UnsignedFile.Multi.Generic ( 1 )
14:44:05.0046 0x0e80  Detect skipped due to KSN trusted
14:44:05.0046 0x0e80  MSPCLOCK - ok
14:44:06.0926 0x0e80  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
14:44:11.0981 0x0e80  MSPQM - detected UnsignedFile.Multi.Generic ( 1 )
14:44:12.0039 0x0e80  Detect skipped due to KSN trusted
14:44:12.0039 0x0e80  MSPQM - ok
14:44:25.0279 0x0e80  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
14:44:25.0290 0x0e80  MsRPC - ok
14:44:34.0270 0x0e80  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
14:44:34.0275 0x0e80  mssmbios - ok
14:44:34.0316 0x0e80  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
14:44:44.0320 0x0e80  MSTEE - detected UnsignedFile.Multi.Generic ( 1 )
14:44:44.0369 0x0e80  Detect skipped due to KSN trusted
14:44:44.0369 0x0e80  MSTEE - ok
14:44:46.0826 0x0e80  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
14:44:59.0732 0x0e80  MTConfig - detected UnsignedFile.Multi.Generic ( 1 )
14:44:59.0783 0x0e80  Detect skipped due to KSN trusted
14:44:59.0783 0x0e80  MTConfig - ok
14:45:01.0631 0x0e80  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
14:45:01.0638 0x0e80  Mup - ok
14:45:01.0668 0x0e80  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
14:45:11.0681 0x0e80  napagent - detected UnsignedFile.Multi.Generic ( 1 )
14:45:11.0733 0x0e80  Detect skipped due to KSN trusted
14:45:11.0733 0x0e80  napagent - ok
14:45:20.0583 0x0e80  [ 9FB2A095B1166CB3C9A06651863B3452, 808105C59C2D28C390FDE0CA48690A5CD052DE3D7F7327864EB45F80187D5BE9 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
14:45:29.0319 0x0e80  NativeWifiP - detected UnsignedFile.Multi.Generic ( 1 )
14:45:29.0374 0x0e80  Detect skipped due to KSN trusted
14:45:29.0374 0x0e80  NativeWifiP - ok
14:45:29.0453 0x0e80  [ 9D1CCE440552500DED3A62F9D779CDB4, C6B3B1C891A8BA3F91CC1EC21919C4F80F4C9CAF88971AB6CA11F09820601EBD ] NAUpdate        C:\Program Files (x86)\Nero\Update\NASvc.exe
14:45:29.0466 0x0e80  NAUpdate - ok
14:45:29.0507 0x0e80  [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS            C:\Windows\system32\drivers\ndis.sys
14:45:29.0529 0x0e80  NDIS - ok
14:45:29.0550 0x0e80  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
14:45:41.0953 0x0e80  NdisCap - detected UnsignedFile.Multi.Generic ( 1 )
14:45:42.0000 0x0e80  Detect skipped due to KSN trusted
14:45:42.0000 0x0e80  NdisCap - ok
14:45:56.0945 0x0e80  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
14:46:01.0990 0x0e80  NdisTapi - detected UnsignedFile.Multi.Generic ( 1 )
14:46:02.0039 0x0e80  Detect skipped due to KSN trusted
14:46:02.0039 0x0e80  NdisTapi - ok
14:46:21.0460 0x0e80  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
14:46:29.0412 0x0e80  Ndisuio - detected UnsignedFile.Multi.Generic ( 1 )
14:46:29.0607 0x0e80  Detect skipped due to KSN trusted
14:46:29.0607 0x0e80  Ndisuio - ok
14:46:51.0627 0x0e80  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
14:46:58.0088 0x0e80  NdisWan - detected UnsignedFile.Multi.Generic ( 1 )
14:46:58.0146 0x0e80  Detect skipped due to KSN trusted
14:46:58.0146 0x0e80  NdisWan - ok
14:47:03.0957 0x0e80  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
14:47:13.0962 0x0e80  NDProxy - detected UnsignedFile.Multi.Generic ( 1 )
14:47:14.0152 0x0e80  Detect skipped due to KSN trusted
14:47:14.0152 0x0e80  NDProxy - ok
14:47:18.0827 0x0e80  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
14:47:23.0952 0x0e80  NetBIOS - detected UnsignedFile.Multi.Generic ( 1 )
14:47:23.0999 0x0e80  Detect skipped due to KSN trusted
14:47:23.0999 0x0e80  NetBIOS - ok
14:47:31.0569 0x0e80  [ 734837208CAFD6E0959A7A0333C95C9D, 0B7CD6E3CE43ABE021DBE6516492E326265EC0273F2F4297187CE70602CB8CE1 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
14:47:41.0578 0x0e80  NetBT - detected UnsignedFile.Multi.Generic ( 1 )
14:47:41.0625 0x0e80  Detect skipped due to KSN trusted
14:47:41.0625 0x0e80  NetBT - ok
14:47:46.0499 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] Netlogon        C:\Windows\system32\lsass.exe
14:47:52.0960 0x0e80  Netlogon - detected UnsignedFile.Multi.Generic ( 1 )
14:47:52.0960 0x0e80  Detect skipped due to KSN trusted
14:47:52.0960 0x0e80  Netlogon - ok
14:48:13.0793 0x0e80  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
14:48:18.0837 0x0e80  Netman - detected UnsignedFile.Multi.Generic ( 1 )
14:48:18.0892 0x0e80  Detect skipped due to KSN trusted
14:48:18.0892 0x0e80  Netman - ok
14:48:41.0357 0x0e80  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:48:41.0367 0x0e80  NetMsmqActivator - ok
14:48:41.0448 0x0e80  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:48:41.0456 0x0e80  NetPipeActivator - ok
14:48:41.0482 0x0e80  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
14:48:52.0965 0x0e80  netprofm - detected UnsignedFile.Multi.Generic ( 1 )
14:48:53.0011 0x0e80  Detect skipped due to KSN trusted
14:48:53.0011 0x0e80  netprofm - ok
14:48:56.0893 0x0e80  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:48:56.0902 0x0e80  NetTcpActivator - ok
14:49:02.0759 0x0e80  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8, 0DDC4855C00A581A35AB2A11D2AAACC844C460F13F524DD9B92B8F00C31173A7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:49:02.0767 0x0e80  NetTcpPortSharing - ok
14:49:08.0678 0x0e80  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
14:49:08.0684 0x0e80  nfrd960 - ok
14:49:08.0708 0x0e80  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
14:49:18.0718 0x0e80  NlaSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:49:18.0764 0x0e80  Detect skipped due to KSN trusted
14:49:18.0765 0x0e80  NlaSvc - ok
14:49:35.0946 0x0e80  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
14:49:41.0018 0x0e80  Npfs - detected UnsignedFile.Multi.Generic ( 1 )
14:49:41.0074 0x0e80  Detect skipped due to KSN trusted
14:49:41.0074 0x0e80  Npfs - ok
14:49:45.0402 0x0e80  [ 668B9EFF5CCA4542F435D2CD9CE3C778, 7409EF35D1DC0DE2BAB752694981FFA1F1855C7F11310366B80BD1EC3513262E ] nsi             C:\Windows\system32\nsisvc.dll
14:49:55.0406 0x0e80  nsi - detected UnsignedFile.Multi.Generic ( 1 )
14:49:55.0453 0x0e80  Detect skipped due to KSN trusted
14:49:55.0453 0x0e80  nsi - ok
14:50:00.0406 0x0e80  [ BE313E566EEA2A4B7F9AAC9782A567D4, 377C624737B1A4FBC1DFF988F029B8ED9A368827C33A4FEEBA1B7937A87C2B47 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
14:50:09.0936 0x0e80  nsiproxy - detected UnsignedFile.Multi.Generic ( 1 )
14:50:09.0982 0x0e80  Detect skipped due to KSN trusted
14:50:09.0983 0x0e80  nsiproxy - ok
14:50:30.0708 0x0e80  [ 96FEB18D7FFA4DC10F0C3CC4EF41500E, B7F937B8579CD81CC3298E0AADDF559DB451DE04DBAC88A082C722B7E84E0494 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
14:50:30.0742 0x0e80  Ntfs - ok
14:50:30.0778 0x0e80  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
14:50:40.0783 0x0e80  Null - detected UnsignedFile.Multi.Generic ( 1 )
14:50:40.0831 0x0e80  Detect skipped due to KSN trusted
14:50:40.0831 0x0e80  Null - ok
14:50:58.0370 0x0e80  [ 1F07B814C0BB5AABA703ABFF1F31F2E8, 07F578686CAE0FAB5462B472A03DD1BC5DFE0D5DA6307895534CECC330C3D220 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
14:50:58.0378 0x0e80  NVHDA - ok
14:50:58.0661 0x0e80  [ FCBA1C22727939E7CFF9EB08FE9692AB, 081FBF38EA17746C5CF2260AD32B62385D4A075476E30CBB9A2AA080F8AA0CA4 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:50:58.0847 0x0e80  nvlddmkm - ok
14:50:58.0881 0x0e80  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
14:50:58.0888 0x0e80  nvraid - ok
14:50:58.0919 0x0e80  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
14:50:58.0927 0x0e80  nvstor - ok
14:50:58.0973 0x0e80  [ 10C232F6CFFD51D2332898AE7AE0FF23, 92E5452D8467852C22D702ACAFB5DBFD312A8F72A4353B8D0A9C18AEFCE4B2B2 ] nvsvc           C:\Windows\system32\nvvsvc.exe
14:50:58.0992 0x0e80  nvsvc - ok
14:50:59.0058 0x0e80  [ 551CE34DAD2DFF0A480781E68B286E4D, 01F1D83350715BF23C246E3CBBBB4556FAC72DEF66F5173586A1FC0D3058FEF0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
14:50:59.0083 0x0e80  nvUpdatusService - ok
14:50:59.0099 0x0e80  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
14:50:59.0107 0x0e80  nv_agp - ok
14:50:59.0169 0x0e80  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
14:51:09.0174 0x0e80  ohci1394 - detected UnsignedFile.Multi.Generic ( 1 )
14:51:09.0222 0x0e80  Detect skipped due to KSN trusted
14:51:09.0222 0x0e80  ohci1394 - ok
14:51:23.0146 0x0e80  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
14:51:31.0112 0x0e80  p2pimsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:51:32.0717 0x0e80  Detect skipped due to KSN trusted
14:51:32.0717 0x0e80  p2pimsvc - ok
14:51:47.0496 0x0e80  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
14:51:53.0666 0x0e80  p2psvc - detected UnsignedFile.Multi.Generic ( 1 )
14:51:53.0712 0x0e80  Detect skipped due to KSN trusted
14:51:53.0712 0x0e80  p2psvc - ok
14:51:53.0742 0x0e80  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
14:52:03.0747 0x0e80  Parport - detected UnsignedFile.Multi.Generic ( 1 )
14:52:03.0801 0x0e80  Detect skipped due to KSN trusted
14:52:03.0801 0x0e80  Parport - ok
14:52:09.0247 0x0e80  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
14:52:12.0348 0x0e80  partmgr - ok
14:52:21.0433 0x0e80  [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc          C:\Windows\System32\pcasvc.dll
14:52:26.0459 0x0e80  PcaSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:52:26.0506 0x0e80  Detect skipped due to KSN trusted
14:52:26.0506 0x0e80  PcaSvc - ok
14:52:45.0671 0x0e80  pccsmcfd - ok
14:52:51.0614 0x0e80  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
14:52:51.0636 0x0e80  pci - ok
14:52:51.0693 0x0e80  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
14:52:51.0699 0x0e80  pciide - ok
14:52:51.0786 0x0e80  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
14:52:51.0795 0x0e80  pcmcia - ok
14:52:51.0803 0x0e80  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
14:52:51.0809 0x0e80  pcw - ok
14:52:51.0839 0x0e80  [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
14:53:04.0166 0x0e80  PEAUTH - detected UnsignedFile.Multi.Generic ( 1 )
14:53:04.0220 0x0e80  Detect skipped due to KSN trusted
14:53:04.0221 0x0e80  PEAUTH - ok
14:53:19.0129 0x0e80  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
14:53:29.0133 0x0e80  PerfHost - detected UnsignedFile.Multi.Generic ( 1 )
14:53:29.0183 0x0e80  Detect skipped due to KSN trusted
14:53:29.0183 0x0e80  PerfHost - ok
14:53:46.0574 0x0e80  [ B47DEE29B5E6E1939567A926C7A3E6A4, E86CB77DE7B6A8025F9A546F6C45D135F471E664963CF70B381BEE2DFD0FDEF4 ] PID_0928        C:\Windows\system32\DRIVERS\LV561V64.SYS
14:53:46.0589 0x0e80  PID_0928 - ok
14:53:46.0773 0x0e80  [ BC5F8C5C7ACCD0B884FCB8B67616F537, 5C99E9D7E7095CED52B1F5F4A569E54F124602C573DD2B25731E0D57FDA22A27 ] pla             C:\Windows\system32\pla.dll
14:53:58.0353 0x0e80  pla - detected UnsignedFile.Multi.Generic ( 1 )
14:53:58.0402 0x0e80  Detect skipped due to KSN trusted
14:53:58.0403 0x0e80  pla - ok
14:54:14.0317 0x0e80  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
14:54:29.0735 0x0e80  PlugPlay - detected UnsignedFile.Multi.Generic ( 1 )
14:54:29.0792 0x0e80  Detect skipped due to KSN trusted
14:54:32.0693 0x0e80  PlugPlay - ok
14:54:35.0739 0x0e80  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
14:54:41.0626 0x0e80  PNRPAutoReg - detected UnsignedFile.Multi.Generic ( 1 )
14:54:41.0672 0x0e80  Detect skipped due to KSN trusted
14:54:41.0672 0x0e80  PNRPAutoReg - ok
14:54:41.0701 0x0e80  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
14:54:51.0710 0x0e80  PNRPsvc - detected UnsignedFile.Multi.Generic ( 1 )
14:54:51.0711 0x0e80  Detect skipped due to KSN trusted
14:54:51.0711 0x0e80  PNRPsvc - ok
14:55:06.0285 0x0e80  [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
14:55:14.0301 0x0e80  PolicyAgent - detected UnsignedFile.Multi.Generic ( 1 )
14:55:14.0349 0x0e80  Detect skipped due to KSN trusted
14:55:14.0350 0x0e80  PolicyAgent - ok
14:55:24.0836 0x0e80  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
14:55:34.0842 0x0e80  Power - detected UnsignedFile.Multi.Generic ( 1 )
14:55:34.0898 0x0e80  Detect skipped due to KSN trusted
14:55:34.0898 0x0e80  Power - ok
14:55:36.0700 0x0e80  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
14:55:43.0161 0x0e80  PptpMiniport - detected UnsignedFile.Multi.Generic ( 1 )
14:55:43.0210 0x0e80  Detect skipped due to KSN trusted
14:55:43.0210 0x0e80  PptpMiniport - ok
14:55:58.0287 0x0e80  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
14:56:04.0205 0x0e80  Processor - detected UnsignedFile.Multi.Generic ( 1 )
14:56:04.0251 0x0e80  Detect skipped due to KSN trusted
14:56:04.0251 0x0e80  Processor - ok
14:56:04.0286 0x0e80  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
14:56:16.0813 0x0e80  ProfSvc - detected UnsignedFile.Multi.Generic ( 1 )
14:56:16.0859 0x0e80  Detect skipped due to KSN trusted
14:56:16.0859 0x0e80  ProfSvc - ok
         

Alt 29.10.2017, 19:16   #7
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



zweiter Teil:
Code:
ATTFilter
14:56:19.0743 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:56:31.0420 0x0e80  ProtectedStorage - detected UnsignedFile.Multi.Generic ( 1 )
14:56:31.0420 0x0e80  Detect skipped due to KSN trusted
14:56:31.0420 0x0e80  ProtectedStorage - ok
14:56:31.0517 0x0e80  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
14:56:41.0523 0x0e80  Psched - detected UnsignedFile.Multi.Generic ( 1 )
14:56:41.0579 0x0e80  Detect skipped due to KSN trusted
14:56:41.0579 0x0e80  Psched - ok
14:56:56.0149 0x0e80  [ C32ECB99AD25E9A04F01C8665DF29EF8, 0489B3DEC6A33E50D8A48A8DAD3F5B923A81F7300E4A71358D90D2879BAC9AA2 ] pwdrvio         C:\Windows\system32\pwdrvio.sys
14:56:56.0157 0x0e80  pwdrvio - ok
14:56:59.0235 0x0e80  [ D619356B955EEFA642F5FF72755E8B3C, 1FD54978A77ACD6FBF1236E177ED074894743A9141E4169FE9AFE28680FC93C5 ] pwdspio         C:\Windows\system32\pwdspio.sys
14:56:59.0240 0x0e80  pwdspio - ok
14:56:59.0289 0x0e80  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
14:56:59.0319 0x0e80  ql2300 - ok
14:56:59.0344 0x0e80  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
14:56:59.0351 0x0e80  ql40xx - ok
14:56:59.0376 0x0e80  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
14:57:10.0812 0x0e80  QWAVE - detected UnsignedFile.Multi.Generic ( 1 )
14:57:10.0859 0x0e80  Detect skipped due to KSN trusted
14:57:10.0859 0x0e80  QWAVE - ok
14:57:11.0827 0x0e80  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
14:57:26.0778 0x0e80  QWAVEdrv - detected UnsignedFile.Multi.Generic ( 1 )
14:57:26.0826 0x0e80  Detect skipped due to KSN trusted
14:57:26.0826 0x0e80  QWAVEdrv - ok
14:57:27.0070 0x0e80  [ 9B35220786B06B61D19C54406904E6ED, 166FDD8CC15D3D1B13E2CECC814ED876EA66D65E9308043ED0024660C4F90E8D ] Radio.fx        C:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe
14:57:27.0139 0x0e80  Radio.fx - ok
14:57:27.0190 0x0e80  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
14:57:39.0590 0x0e80  RasAcd - detected UnsignedFile.Multi.Generic ( 1 )
14:57:39.0637 0x0e80  Detect skipped due to KSN trusted
14:57:42.0616 0x0e80  RasAcd - ok
14:57:51.0635 0x0e80  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
14:58:00.0967 0x0e80  RasAgileVpn - detected UnsignedFile.Multi.Generic ( 1 )
14:58:01.0022 0x0e80  Detect skipped due to KSN trusted
14:58:01.0023 0x0e80  RasAgileVpn - ok
14:58:09.0962 0x0e80  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
14:58:19.0969 0x0e80  RasAuto - detected UnsignedFile.Multi.Generic ( 1 )
14:58:20.0015 0x0e80  Detect skipped due to KSN trusted
14:58:20.0015 0x0e80  RasAuto - ok
14:58:22.0239 0x0e80  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
14:58:27.0262 0x0e80  Rasl2tp - detected UnsignedFile.Multi.Generic ( 1 )
14:58:27.0310 0x0e80  Detect skipped due to KSN trusted
14:58:27.0310 0x0e80  Rasl2tp - ok
14:58:50.0608 0x0e80  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
14:58:55.0677 0x0e80  RasMan - detected UnsignedFile.Multi.Generic ( 1 )
14:58:55.0724 0x0e80  Detect skipped due to KSN trusted
14:58:55.0724 0x0e80  RasMan - ok
14:59:12.0297 0x0e80  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
14:59:18.0224 0x0e80  RasPppoe - detected UnsignedFile.Multi.Generic ( 1 )
14:59:18.0278 0x0e80  Detect skipped due to KSN trusted
14:59:18.0278 0x0e80  RasPppoe - ok
14:59:18.0304 0x0e80  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
14:59:30.0743 0x0e80  RasSstp - detected UnsignedFile.Multi.Generic ( 1 )
14:59:30.0789 0x0e80  Detect skipped due to KSN trusted
14:59:30.0789 0x0e80  RasSstp - ok
14:59:39.0931 0x0e80  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
14:59:45.0883 0x0e80  rdbss - detected UnsignedFile.Multi.Generic ( 1 )
14:59:45.0930 0x0e80  Detect skipped due to KSN trusted
14:59:45.0930 0x0e80  rdbss - ok
14:59:45.0996 0x0e80  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
14:59:55.0999 0x0e80  rdpbus - detected UnsignedFile.Multi.Generic ( 1 )
14:59:56.0046 0x0e80  Detect skipped due to KSN trusted
14:59:56.0046 0x0e80  rdpbus - ok
15:00:01.0314 0x0e80  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
15:00:11.0317 0x0e80  RDPCDD - detected UnsignedFile.Multi.Generic ( 1 )
15:00:11.0366 0x0e80  Detect skipped due to KSN trusted
15:00:11.0366 0x0e80  RDPCDD - ok
15:00:13.0520 0x0e80  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
15:00:19.0982 0x0e80  RDPENCDD - detected UnsignedFile.Multi.Generic ( 1 )
15:00:20.0037 0x0e80  Detect skipped due to KSN trusted
15:00:20.0037 0x0e80  RDPENCDD - ok
15:00:22.0970 0x0e80  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
15:00:34.0873 0x0e80  RDPREFMP - detected UnsignedFile.Multi.Generic ( 1 )
15:00:34.0921 0x0e80  Detect skipped due to KSN trusted
15:00:34.0921 0x0e80  RDPREFMP - ok
15:00:40.0839 0x0e80  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
15:00:45.0861 0x0e80  RDPWD - detected UnsignedFile.Multi.Generic ( 1 )
15:00:45.0909 0x0e80  Detect skipped due to KSN trusted
15:00:45.0909 0x0e80  RDPWD - ok
15:00:56.0171 0x0e80  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
15:00:56.0180 0x0e80  rdyboost - ok
15:01:02.0114 0x0e80  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
15:01:08.0388 0x0e80  RemoteAccess - detected UnsignedFile.Multi.Generic ( 1 )
15:01:08.0435 0x0e80  Detect skipped due to KSN trusted
15:01:08.0435 0x0e80  RemoteAccess - ok
15:01:08.0482 0x0e80  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
15:01:19.0808 0x0e80  RemoteRegistry - detected UnsignedFile.Multi.Generic ( 1 )
15:01:19.0855 0x0e80  Detect skipped due to KSN trusted
15:01:19.0855 0x0e80  RemoteRegistry - ok
15:01:23.0647 0x0e80  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
15:01:34.0479 0x0e80  RpcEptMapper - detected UnsignedFile.Multi.Generic ( 1 )
15:01:34.0534 0x0e80  Detect skipped due to KSN trusted
15:01:34.0535 0x0e80  RpcEptMapper - ok
15:01:35.0379 0x0e80  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
15:01:41.0719 0x0e80  RpcLocator - detected UnsignedFile.Multi.Generic ( 1 )
15:01:41.0767 0x0e80  Detect skipped due to KSN trusted
15:01:41.0767 0x0e80  RpcLocator - ok
15:01:59.0804 0x0e80  [ 3F1A199859B4F3F8357B2A0AF5666A54, B0ACE9384088B7D0E54CF82BF48D4FEAA518BDEF98A294BA8F5A37DFF0E45328 ] RpcSs           C:\Windows\system32\rpcss.dll
15:02:07.0787 0x0e80  RpcSs - detected UnsignedFile.Multi.Generic ( 1 )
15:02:07.0787 0x0e80  Detect skipped due to KSN trusted
15:02:07.0787 0x0e80  RpcSs - ok
15:02:15.0251 0x0e80  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
15:02:26.0058 0x0e80  rspndr - detected UnsignedFile.Multi.Generic ( 1 )
15:02:26.0126 0x0e80  Detect skipped due to KSN trusted
15:02:26.0126 0x0e80  rspndr - ok
15:02:29.0905 0x0e80  [ E50CFB92986DCAB49DE93788FD695813, EAE103008B967B0F064EDDA551AA553EE7C22D39D14FA0BBFEF41C4D1B6C99E5 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
15:02:29.0919 0x0e80  RTL8167 - ok
15:02:29.0929 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] SamSs           C:\Windows\system32\lsass.exe
15:02:41.0384 0x0e80  SamSs - detected UnsignedFile.Multi.Generic ( 1 )
15:02:41.0384 0x0e80  Detect skipped due to KSN trusted
15:02:41.0384 0x0e80  SamSs - ok
15:02:48.0286 0x0e80  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
15:02:48.0293 0x0e80  sbp2port - ok
15:02:57.0211 0x0e80  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
15:03:02.0295 0x0e80  SCardSvr - detected UnsignedFile.Multi.Generic ( 1 )
15:03:02.0344 0x0e80  Detect skipped due to KSN trusted
15:03:02.0344 0x0e80  SCardSvr - ok
15:03:09.0826 0x0e80  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
15:03:19.0831 0x0e80  scfilter - detected UnsignedFile.Multi.Generic ( 1 )
15:03:19.0878 0x0e80  Detect skipped due to KSN trusted
15:03:19.0878 0x0e80  scfilter - ok
15:03:24.0840 0x0e80  [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule        C:\Windows\system32\schedsvc.dll
15:03:36.0277 0x0e80  Schedule - detected UnsignedFile.Multi.Generic ( 1 )
15:03:36.0325 0x0e80  Detect skipped due to KSN trusted
15:03:36.0325 0x0e80  Schedule - ok
15:03:43.0155 0x0e80  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
15:03:52.0327 0x0e80  SCPolicySvc - detected UnsignedFile.Multi.Generic ( 1 )
15:03:52.0327 0x0e80  Detect skipped due to KSN trusted
15:03:52.0327 0x0e80  SCPolicySvc - ok
15:03:52.0351 0x0e80  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
15:04:03.0762 0x0e80  SDRSVC - detected UnsignedFile.Multi.Generic ( 1 )
15:04:03.0818 0x0e80  Detect skipped due to KSN trusted
15:04:03.0818 0x0e80  SDRSVC - ok
15:04:13.0821 0x0e80  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
15:04:24.0914 0x0e80  secdrv - detected UnsignedFile.Multi.Generic ( 1 )
15:04:24.0961 0x0e80  Detect skipped due to KSN trusted
15:04:24.0961 0x0e80  secdrv - ok
15:04:38.0254 0x0e80  [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon        C:\Windows\system32\seclogon.dll
15:04:47.0265 0x0e80  seclogon - detected UnsignedFile.Multi.Generic ( 1 )
15:04:47.0310 0x0e80  Detect skipped due to KSN trusted
15:04:47.0310 0x0e80  seclogon - ok
15:04:47.0372 0x0e80  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
15:04:58.0824 0x0e80  SENS - detected UnsignedFile.Multi.Generic ( 1 )
15:04:58.0872 0x0e80  Detect skipped due to KSN trusted
15:04:58.0872 0x0e80  SENS - ok
15:05:02.0658 0x0e80  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
15:05:14.0686 0x0e80  SensrSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:05:14.0740 0x0e80  Detect skipped due to KSN trusted
15:05:14.0740 0x0e80  SensrSvc - ok
15:05:14.0773 0x0e80  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
15:05:30.0099 0x0e80  Serenum - detected UnsignedFile.Multi.Generic ( 1 )
15:05:30.0141 0x0e80  Detect skipped due to KSN trusted
15:05:30.0141 0x0e80  Serenum - ok
15:05:39.0179 0x0e80  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
15:05:48.0895 0x0e80  Serial - detected UnsignedFile.Multi.Generic ( 1 )
15:05:48.0937 0x0e80  Detect skipped due to KSN trusted
15:05:48.0937 0x0e80  Serial - ok
15:06:07.0333 0x0e80  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
15:06:15.0421 0x0e80  sermouse - detected UnsignedFile.Multi.Generic ( 1 )
15:06:15.0474 0x0e80  Detect skipped due to KSN trusted
15:06:15.0474 0x0e80  sermouse - ok
15:06:25.0797 0x0e80  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
15:06:37.0660 0x0e80  SessionEnv - detected UnsignedFile.Multi.Generic ( 1 )
15:06:37.0704 0x0e80  Detect skipped due to KSN trusted
15:06:37.0704 0x0e80  SessionEnv - ok
15:06:40.0825 0x0e80  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
15:06:50.0829 0x0e80  sffdisk - detected UnsignedFile.Multi.Generic ( 1 )
15:06:50.0872 0x0e80  Detect skipped due to KSN trusted
15:06:50.0872 0x0e80  sffdisk - ok
15:06:53.0147 0x0e80  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
15:07:03.0152 0x0e80  sffp_mmc - detected UnsignedFile.Multi.Generic ( 1 )
15:07:03.0196 0x0e80  Detect skipped due to KSN trusted
15:07:03.0196 0x0e80  sffp_mmc - ok
15:07:08.0121 0x0e80  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
15:07:14.0623 0x0e80  sffp_sd - detected UnsignedFile.Multi.Generic ( 1 )
15:07:14.0666 0x0e80  Detect skipped due to KSN trusted
15:07:14.0666 0x0e80  sffp_sd - ok
15:07:23.0470 0x0e80  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
15:07:35.0228 0x0e80  sfloppy - detected UnsignedFile.Multi.Generic ( 1 )
15:07:35.0280 0x0e80  Detect skipped due to KSN trusted
15:07:35.0280 0x0e80  sfloppy - ok
15:07:35.0356 0x0e80  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
15:07:45.0366 0x0e80  SharedAccess - detected UnsignedFile.Multi.Generic ( 1 )
15:07:45.0409 0x0e80  Detect skipped due to KSN trusted
15:07:45.0409 0x0e80  SharedAccess - ok
15:07:56.0750 0x0e80  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:08:02.0735 0x0e80  ShellHWDetection - detected UnsignedFile.Multi.Generic ( 1 )
15:08:02.0778 0x0e80  Detect skipped due to KSN trusted
15:08:02.0778 0x0e80  ShellHWDetection - ok
15:08:02.0817 0x0e80  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
15:08:02.0823 0x0e80  SiSRaid2 - ok
15:08:02.0845 0x0e80  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
15:08:02.0852 0x0e80  SiSRaid4 - ok
15:08:03.0011 0x0e80  [ 4CA43B85F22C7739311788B651A779CB, 5F761B3ADBDB093A4198CE5FE3BB444AB3C063483815F45DFB186082DDEB8CBC ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
15:08:03.0065 0x0e80  Skype C2C Service - ok
15:08:03.0149 0x0e80  [ 22CC2A61BC77C5972B58756049AA254E, 4DF554A1C2FF8C2D9AD8633231961DE95171A17295DAA7779E607AFD7BD8FE03 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
15:08:03.0165 0x0e80  SkypeUpdate - ok
15:08:03.0185 0x0e80  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
15:08:13.0190 0x0e80  Smb - detected UnsignedFile.Multi.Generic ( 1 )
15:08:13.0233 0x0e80  Detect skipped due to KSN trusted
15:08:13.0234 0x0e80  Smb - ok
15:08:30.0753 0x0e80  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
15:08:35.0834 0x0e80  SNMPTRAP - detected UnsignedFile.Multi.Generic ( 1 )
15:08:35.0878 0x0e80  Detect skipped due to KSN trusted
15:08:35.0878 0x0e80  SNMPTRAP - ok
15:08:46.0240 0x0e80  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
15:08:46.0246 0x0e80  spldr - ok
15:08:58.0257 0x0e80  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
15:09:03.0281 0x0e80  Spooler - detected UnsignedFile.Multi.Generic ( 1 )
15:09:03.0323 0x0e80  Detect skipped due to KSN trusted
15:09:03.0323 0x0e80  Spooler - ok
15:09:25.0731 0x0e80  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
15:09:38.0091 0x0e80  sppsvc - detected UnsignedFile.Multi.Generic ( 1 )
15:09:38.0134 0x0e80  Detect skipped due to KSN trusted
15:09:38.0134 0x0e80  sppsvc - ok
15:09:50.0212 0x0e80  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
15:09:58.0368 0x0e80  sppuinotify - detected UnsignedFile.Multi.Generic ( 1 )
15:09:58.0447 0x0e80  Detect skipped due to KSN trusted
15:09:58.0447 0x0e80  sppuinotify - ok
15:10:17.0569 0x0e80  [ 72E6A150A8C8530B201832D1C801CDE6, EFBDD5D1FB924979E63D829A6970CB5552A746BEBB7C4D41066684CA16A374E0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
15:10:25.0542 0x0e80  srv - detected UnsignedFile.Multi.Generic ( 1 )
15:10:25.0586 0x0e80  Detect skipped due to KSN trusted
15:10:25.0586 0x0e80  srv - ok
15:10:36.0764 0x0e80  [ C4F67ABCC5033D334613F28F9E782809, A19E32E2EF790E88E7013C298AF0A34A9957A7CE55DF19FBD7BDF688D3767BA5 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
15:10:46.0776 0x0e80  srv2 - detected UnsignedFile.Multi.Generic ( 1 )
15:10:46.0818 0x0e80  Detect skipped due to KSN trusted
15:10:46.0818 0x0e80  srv2 - ok
15:10:48.0976 0x0e80  [ C53CB62B0E57488AAE41FDA0FF8A0AB9, 93614C72C578E348B66690585F8AC2B53C0C19D2C96AAD3E776D3389CA5E43B6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
15:10:53.0996 0x0e80  srvnet - detected UnsignedFile.Multi.Generic ( 1 )
15:10:54.0039 0x0e80  Detect skipped due to KSN trusted
15:10:54.0039 0x0e80  srvnet - ok
15:11:07.0496 0x0e80  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
15:11:16.0837 0x0e80  SSDPSRV - detected UnsignedFile.Multi.Generic ( 1 )
15:11:16.0887 0x0e80  Detect skipped due to KSN trusted
15:11:16.0887 0x0e80  SSDPSRV - ok
15:11:16.0916 0x0e80  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
15:11:26.0923 0x0e80  SstpSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:11:26.0966 0x0e80  Detect skipped due to KSN trusted
15:11:26.0966 0x0e80  SstpSvc - ok
15:11:44.0488 0x0e80  [ A72B7C730B1EF1E7764044737E802FAD, D102122D2B938A48F8A6761F1F75D37476D628C1E5D644DFB30262CE50E2D250 ] StarMoney 10 OnlineUpdate C:\Program Files (x86)\StarMoney 10 S-Edition\ouservice\StarMoneyOnlineUpdate.exe
15:11:44.0506 0x0e80  StarMoney 10 OnlineUpdate - ok
15:11:44.0626 0x0e80  [ 5A19667A580B1CE886EAF968B9743F45, 0A9EBE4057A0A6EF4732623794C2416A6BD8B87356DA46652BD92762505F57C7 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
15:11:44.0638 0x0e80  Stereo Service - ok
15:11:44.0663 0x0e80  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
15:11:44.0669 0x0e80  stexstor - ok
15:11:44.0701 0x0e80  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
15:11:56.0833 0x0e80  stisvc - detected UnsignedFile.Multi.Generic ( 1 )
15:11:56.0875 0x0e80  Detect skipped due to KSN trusted
15:11:56.0875 0x0e80  stisvc - ok
15:12:02.0873 0x0e80  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
15:12:02.0879 0x0e80  swenum - ok
15:12:11.0901 0x0e80  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
15:12:16.0924 0x0e80  swprv - detected UnsignedFile.Multi.Generic ( 1 )
15:12:16.0981 0x0e80  Detect skipped due to KSN trusted
15:12:16.0981 0x0e80  swprv - ok
15:12:39.0330 0x0e80  [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain         C:\Windows\system32\sysmain.dll
15:12:49.0364 0x0e80  SysMain - detected UnsignedFile.Multi.Generic ( 1 )
15:12:49.0417 0x0e80  Detect skipped due to KSN trusted
15:12:49.0417 0x0e80  SysMain - ok
15:12:55.0105 0x0e80  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:13:05.0110 0x0e80  TabletInputService - detected UnsignedFile.Multi.Generic ( 1 )
15:13:05.0154 0x0e80  Detect skipped due to KSN trusted
15:13:05.0154 0x0e80  TabletInputService - ok
15:13:07.0262 0x0e80  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
15:13:18.0627 0x0e80  TapiSrv - detected UnsignedFile.Multi.Generic ( 1 )
15:13:18.0671 0x0e80  Detect skipped due to KSN trusted
15:13:18.0671 0x0e80  TapiSrv - ok
15:13:34.0614 0x0e80  [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
15:13:34.0651 0x0e80  Tcpip - ok
15:13:34.0723 0x0e80  [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
15:13:34.0759 0x0e80  TCPIP6 - ok
15:13:34.0783 0x0e80  [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
15:13:44.0789 0x0e80  tcpipreg - detected UnsignedFile.Multi.Generic ( 1 )
15:13:44.0832 0x0e80  Detect skipped due to KSN trusted
15:13:44.0832 0x0e80  tcpipreg - ok
15:14:02.0215 0x0e80  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
15:14:07.0279 0x0e80  TDPIPE - detected UnsignedFile.Multi.Generic ( 1 )
15:14:07.0334 0x0e80  Detect skipped due to KSN trusted
15:14:07.0334 0x0e80  TDPIPE - ok
15:14:08.0853 0x0e80  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
15:14:18.0859 0x0e80  TDTCP - detected UnsignedFile.Multi.Generic ( 1 )
15:14:18.0902 0x0e80  Detect skipped due to KSN trusted
15:14:18.0902 0x0e80  TDTCP - ok
15:14:23.0864 0x0e80  [ 4DD986720F7CB7A8A5D1226793097B9A, 9020375B45E9C966BF44CF425C127D7E0EC82EB99C7047F225C25402FF97743D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
15:14:29.0881 0x0e80  tdx - detected UnsignedFile.Multi.Generic ( 1 )
15:14:29.0925 0x0e80  Detect skipped due to KSN trusted
15:14:29.0925 0x0e80  tdx - ok
15:14:29.0961 0x0e80  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
15:14:29.0968 0x0e80  TermDD - ok
15:14:29.0992 0x0e80  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
15:14:41.0499 0x0e80  TermService - detected UnsignedFile.Multi.Generic ( 1 )
15:14:41.0544 0x0e80  Detect skipped due to KSN trusted
15:14:41.0544 0x0e80  TermService - ok
15:14:48.0250 0x0e80  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
15:14:57.0282 0x0e80  Themes - detected UnsignedFile.Multi.Generic ( 1 )
15:14:57.0324 0x0e80  Detect skipped due to KSN trusted
15:14:57.0324 0x0e80  Themes - ok
15:14:57.0362 0x0e80  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
15:15:07.0366 0x0e80  THREADORDER - detected UnsignedFile.Multi.Generic ( 1 )
15:15:07.0367 0x0e80  Detect skipped due to KSN trusted
15:15:07.0367 0x0e80  THREADORDER - ok
15:15:18.0718 0x0e80  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
15:15:30.0977 0x0e80  TrkWks - detected UnsignedFile.Multi.Generic ( 1 )
15:15:31.0029 0x0e80  Detect skipped due to KSN trusted
15:15:31.0029 0x0e80  TrkWks - ok
15:15:51.0912 0x0e80  [ 767F4524AEA2EDE58DC21F653EEAA02F, FBDC68DC00087D4CBE64856794F8EBCA1B24C91D0FA9F1E2EF543DF57363FF32 ] TrueKey         C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
15:15:51.0944 0x0e80  TrueKey - ok
15:15:51.0989 0x0e80  [ 263C411EC7DDD052B23A0F191F0E1E9A, C9B12ACB89442ABAC3AAE7E9EA5D5CF92B394B554B61ABB8181474075097B457 ] TrueKeyScheduler C:\Program Files\TrueKey\McTkSchedulerService.exe
15:15:51.0995 0x0e80  TrueKeyScheduler - ok
15:15:52.0037 0x0e80  [ 7E64AE41715FF49D37149C32A2FB068C, B8794F356194452237F69EC7B6F7A5C5615B14D7F14CE5F43FB2DA64E5AA34D6 ] TrueKeyServiceHelper C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.Exe
15:15:52.0045 0x0e80  TrueKeyServiceHelper - ok
15:15:52.0079 0x0e80  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:16:04.0459 0x0e80  TrustedInstaller - detected UnsignedFile.Multi.Generic ( 1 )
15:16:04.0503 0x0e80  Detect skipped due to KSN trusted
15:16:04.0503 0x0e80  TrustedInstaller - ok
15:16:13.0451 0x0e80  [ 2CF58216424757ED29605B4F18EC443C, 9D523FC075F7F41A17F60617670A976A8F2F2943444515DC3834720BDC37DFA0 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
15:16:19.0494 0x0e80  tssecsrv - detected UnsignedFile.Multi.Generic ( 1 )
15:16:19.0537 0x0e80  Detect skipped due to KSN trusted
15:16:19.0537 0x0e80  tssecsrv - ok
15:16:19.0592 0x0e80  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
15:16:29.0596 0x0e80  TsUsbFlt - detected UnsignedFile.Multi.Generic ( 1 )
15:16:29.0639 0x0e80  Detect skipped due to KSN trusted
15:16:29.0639 0x0e80  TsUsbFlt - ok
15:16:31.0856 0x0e80  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
15:16:41.0861 0x0e80  tunnel - detected UnsignedFile.Multi.Generic ( 1 )
15:16:41.0913 0x0e80  Detect skipped due to KSN trusted
15:16:41.0913 0x0e80  tunnel - ok
15:16:46.0519 0x0e80  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
15:16:46.0526 0x0e80  uagp35 - ok
15:16:46.0590 0x0e80  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
15:16:56.0599 0x0e80  udfs - detected UnsignedFile.Multi.Generic ( 1 )
15:16:56.0643 0x0e80  Detect skipped due to KSN trusted
15:16:56.0643 0x0e80  udfs - ok
15:17:13.0936 0x0e80  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
15:17:19.0024 0x0e80  UI0Detect - detected UnsignedFile.Multi.Generic ( 1 )
15:17:19.0068 0x0e80  Detect skipped due to KSN trusted
15:17:19.0068 0x0e80  UI0Detect - ok
15:17:26.0311 0x0e80  [ CA204117E5DD16DBF45D1513E169039E, 39F2CEE77B8E35D89ECE5028CDB555B04418E2593E2EB0E2AA809EEF688193D2 ] UimBus          C:\Windows\system32\DRIVERS\UimBus.sys
15:17:26.0317 0x0e80  UimBus - ok
15:17:29.0390 0x0e80  [ 8593690D302AE73AAC8BBA9B19757352, 36F29C32A7E0D8D54533441C840E86C7C407815DD3568C6D44C043939E998FAF ] Uim_DEVIM       C:\Windows\system32\DRIVERS\uim_devim.sys
15:17:29.0395 0x0e80  Uim_DEVIM - ok
15:17:41.0903 0x0e80  [ 889788C1B850D1ED4027B675B9B8E5E2, D8CA795CAFFF803252E1B41D69F9B55C787E2633198BC322E07449408A58B083 ] Uim_IM          C:\Windows\system32\DRIVERS\uim_im.sys
15:17:41.0919 0x0e80  Uim_IM - ok
15:17:41.0940 0x0e80  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
15:17:41.0946 0x0e80  uliagpkx - ok
15:17:41.0971 0x0e80  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
15:17:53.0411 0x0e80  umbus - detected UnsignedFile.Multi.Generic ( 1 )
15:17:53.0455 0x0e80  Detect skipped due to KSN trusted
15:17:53.0455 0x0e80  umbus - ok
15:18:00.0358 0x0e80  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
15:18:09.0714 0x0e80  UmPass - detected UnsignedFile.Multi.Generic ( 1 )
15:18:09.0759 0x0e80  Detect skipped due to KSN trusted
15:18:09.0759 0x0e80  UmPass - ok
15:18:09.0819 0x0e80  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
15:18:09.0831 0x0e80  UMVPFSrv - ok
15:18:09.0863 0x0e80  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
15:18:19.0873 0x0e80  upnphost - detected UnsignedFile.Multi.Generic ( 1 )
15:18:19.0916 0x0e80  Detect skipped due to KSN trusted
15:18:19.0916 0x0e80  upnphost - ok
15:18:25.0291 0x0e80  [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
15:18:35.0296 0x0e80  usbaudio - detected UnsignedFile.Multi.Generic ( 1 )
15:18:35.0339 0x0e80  Detect skipped due to KSN trusted
15:18:35.0340 0x0e80  usbaudio - ok
15:18:37.0084 0x0e80  [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
15:18:42.0163 0x0e80  usbccgp - detected UnsignedFile.Multi.Generic ( 1 )
15:18:42.0206 0x0e80  Detect skipped due to KSN trusted
15:18:42.0206 0x0e80  usbccgp - ok
15:18:46.0724 0x0e80  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
15:18:57.0657 0x0e80  usbcir - detected UnsignedFile.Multi.Generic ( 1 )
15:18:57.0710 0x0e80  Detect skipped due to KSN trusted
15:18:57.0710 0x0e80  usbcir - ok
15:19:04.0799 0x0e80  [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
15:19:11.0371 0x0e80  usbehci - detected UnsignedFile.Multi.Generic ( 1 )
15:19:11.0414 0x0e80  Detect skipped due to KSN trusted
15:19:11.0414 0x0e80  usbehci - ok
15:19:32.0197 0x0e80  [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
15:19:37.0265 0x0e80  usbhub - detected UnsignedFile.Multi.Generic ( 1 )
15:19:37.0309 0x0e80  Detect skipped due to KSN trusted
15:19:37.0309 0x0e80  usbhub - ok
15:19:47.0537 0x0e80  [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci         C:\Windows\system32\drivers\usbohci.sys
15:19:57.0542 0x0e80  usbohci - detected UnsignedFile.Multi.Generic ( 1 )
15:19:57.0585 0x0e80  Detect skipped due to KSN trusted
15:19:57.0585 0x0e80  usbohci - ok
15:19:59.0479 0x0e80  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
15:20:10.0952 0x0e80  usbprint - detected UnsignedFile.Multi.Generic ( 1 )
15:20:11.0002 0x0e80  Detect skipped due to KSN trusted
15:20:11.0002 0x0e80  usbprint - ok
15:20:20.0803 0x0e80  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\Windows\system32\drivers\usbscan.sys
15:20:26.0945 0x0e80  usbscan - detected UnsignedFile.Multi.Generic ( 1 )
15:20:26.0988 0x0e80  Detect skipped due to KSN trusted
15:20:26.0988 0x0e80  usbscan - ok
15:20:27.0028 0x0e80  [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser          C:\Windows\system32\drivers\usbser.sys
15:20:37.0031 0x0e80  usbser - detected UnsignedFile.Multi.Generic ( 1 )
15:20:37.0075 0x0e80  Detect skipped due to KSN trusted
15:20:37.0075 0x0e80  usbser - ok
15:20:46.0675 0x0e80  [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:20:55.0784 0x0e80  USBSTOR - detected UnsignedFile.Multi.Generic ( 1 )
15:20:55.0827 0x0e80  Detect skipped due to KSN trusted
15:20:55.0827 0x0e80  USBSTOR - ok
15:20:55.0869 0x0e80  [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
15:21:05.0873 0x0e80  usbuhci - detected UnsignedFile.Multi.Generic ( 1 )
15:21:05.0917 0x0e80  Detect skipped due to KSN trusted
15:21:05.0917 0x0e80  usbuhci - ok
15:21:23.0340 0x0e80  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
15:21:28.0436 0x0e80  usbvideo - detected UnsignedFile.Multi.Generic ( 1 )
15:21:28.0487 0x0e80  Detect skipped due to KSN trusted
15:21:28.0487 0x0e80  usbvideo - ok
15:21:32.0823 0x0e80  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
15:21:44.0754 0x0e80  UxSms - detected UnsignedFile.Multi.Generic ( 1 )
15:21:44.0800 0x0e80  Detect skipped due to KSN trusted
15:21:44.0800 0x0e80  UxSms - ok
15:21:51.0101 0x0e80  [ 62056ADD38513A86C4866E912371B56B, 9465E65EB4303BF87483B9621D402E848A50E6D22B05846A621A2761B9516A57 ] VaultSvc        C:\Windows\system32\lsass.exe
15:21:56.0242 0x0e80  VaultSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:21:56.0242 0x0e80  Detect skipped due to KSN trusted
15:21:56.0242 0x0e80  VaultSvc - ok
15:22:03.0764 0x0e80  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
15:22:06.0706 0x0e80  vdrvroot - ok
15:22:18.0951 0x0e80  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
15:22:37.0136 0x0e80  vds - detected UnsignedFile.Multi.Generic ( 1 )
15:22:37.0186 0x0e80  Detect skipped due to KSN trusted
15:22:37.0186 0x0e80  vds - ok
15:22:46.0896 0x0e80  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
15:22:51.0946 0x0e80  vga - detected UnsignedFile.Multi.Generic ( 1 )
15:22:51.0989 0x0e80  Detect skipped due to KSN trusted
15:22:51.0989 0x0e80  vga - ok
15:23:02.0357 0x0e80  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
15:23:12.0361 0x0e80  VgaSave - detected UnsignedFile.Multi.Generic ( 1 )
15:23:12.0405 0x0e80  Detect skipped due to KSN trusted
15:23:12.0405 0x0e80  VgaSave - ok
15:23:14.0315 0x0e80  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
15:23:14.0324 0x0e80  vhdmp - ok
15:23:14.0341 0x0e80  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
15:23:14.0347 0x0e80  viaide - ok
15:23:14.0363 0x0e80  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
15:23:14.0369 0x0e80  volmgr - ok
15:23:14.0397 0x0e80  [ 85C5468BC395819AE2A0C747334BA14C, 75EB4751F90F3347229442A5622539383CE0B1834EE7B995260D0D433BA2E25F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
15:23:14.0408 0x0e80  volmgrx - ok
15:23:14.0421 0x0e80  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
15:23:14.0431 0x0e80  volsnap - ok
15:23:14.0468 0x0e80  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
15:23:14.0475 0x0e80  vsmraid - ok
15:23:14.0518 0x0e80  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
15:23:26.0042 0x0e80  VSS - detected UnsignedFile.Multi.Generic ( 1 )
15:23:26.0086 0x0e80  Detect skipped due to KSN trusted
15:23:26.0086 0x0e80  VSS - ok
15:23:29.0823 0x0e80  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
15:23:40.0691 0x0e80  vwifibus - detected UnsignedFile.Multi.Generic ( 1 )
15:23:40.0782 0x0e80  Detect skipped due to KSN trusted
15:23:40.0782 0x0e80  vwifibus - ok
15:23:41.0730 0x0e80  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] VWiFiFlt        C:\Windows\system32\DRIVERS\vwififlt.sys
15:23:46.0802 0x0e80  VWiFiFlt - detected UnsignedFile.Multi.Generic ( 1 )
15:23:46.0846 0x0e80  Detect skipped due to KSN trusted
15:23:46.0846 0x0e80  VWiFiFlt - ok
15:23:51.0284 0x0e80  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
15:24:01.0288 0x0e80  vwifimp - detected UnsignedFile.Multi.Generic ( 1 )
15:24:01.0331 0x0e80  Detect skipped due to KSN trusted
15:24:01.0331 0x0e80  vwifimp - ok
15:24:09.0213 0x0e80  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
15:24:14.0298 0x0e80  W32Time - detected UnsignedFile.Multi.Generic ( 1 )
15:24:14.0341 0x0e80  Detect skipped due to KSN trusted
15:24:14.0342 0x0e80  W32Time - ok
15:24:21.0668 0x0e80  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
15:24:34.0574 0x0e80  WacomPen - detected UnsignedFile.Multi.Generic ( 1 )
15:24:34.0617 0x0e80  Detect skipped due to KSN trusted
15:24:34.0617 0x0e80  WacomPen - ok
15:24:36.0582 0x0e80  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
15:24:46.0587 0x0e80  WANARP - detected UnsignedFile.Multi.Generic ( 1 )
15:24:46.0639 0x0e80  Detect skipped due to KSN trusted
15:24:46.0639 0x0e80  WANARP - ok
15:24:52.0106 0x0e80  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
15:25:02.0110 0x0e80  Wanarpv6 - detected UnsignedFile.Multi.Generic ( 1 )
15:25:02.0111 0x0e80  Detect skipped due to KSN trusted
15:25:02.0111 0x0e80  Wanarpv6 - ok
15:25:03.0997 0x0e80  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
15:25:15.0466 0x0e80  wbengine - detected UnsignedFile.Multi.Generic ( 1 )
15:25:15.0509 0x0e80  Detect skipped due to KSN trusted
15:25:15.0509 0x0e80  wbengine - ok
15:25:31.0792 0x0e80  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
15:25:36.0845 0x0e80  WbioSrvc - detected UnsignedFile.Multi.Generic ( 1 )
15:25:36.0891 0x0e80  Detect skipped due to KSN trusted
15:25:36.0891 0x0e80  WbioSrvc - ok
15:25:47.0344 0x0e80  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
15:25:59.0658 0x0e80  wcncsvc - detected UnsignedFile.Multi.Generic ( 1 )
15:25:59.0707 0x0e80  Detect skipped due to KSN trusted
15:25:59.0707 0x0e80  wcncsvc - ok
15:25:59.0768 0x0e80  [ BC00873272B3771CCDA38336AF2B4D4B, 3E412DEC5F172B4C5FD5C227CD790EE56B90A00A8B538704E8F973D230BE2289 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:26:11.0365 0x0e80  WcsPlugInService - detected UnsignedFile.Multi.Generic ( 1 )
15:26:11.0408 0x0e80  Detect skipped due to KSN trusted
15:26:11.0408 0x0e80  WcsPlugInService - ok
15:26:18.0372 0x0e80  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
15:26:18.0378 0x0e80  Wd - ok
15:26:27.0203 0x0e80  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
15:26:27.0222 0x0e80  Wdf01000 - ok
15:26:27.0364 0x0e80  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
15:26:37.0371 0x0e80  WdiServiceHost - detected UnsignedFile.Multi.Generic ( 1 )
15:26:37.0414 0x0e80  Detect skipped due to KSN trusted
15:26:37.0414 0x0e80  WdiServiceHost - ok
15:26:42.0738 0x0e80  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
15:26:54.0773 0x0e80  WdiSystemHost - detected UnsignedFile.Multi.Generic ( 1 )
15:26:54.0774 0x0e80  Detect skipped due to KSN trusted
15:26:54.0774 0x0e80  WdiSystemHost - ok
15:26:54.0798 0x0e80  [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient       C:\Windows\System32\webclnt.dll
15:27:06.0304 0x0e80  WebClient - detected UnsignedFile.Multi.Generic ( 1 )
15:27:06.0355 0x0e80  Detect skipped due to KSN trusted
15:27:06.0355 0x0e80  WebClient - ok
15:27:22.0118 0x0e80  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
15:27:28.0603 0x0e80  Wecsvc - detected UnsignedFile.Multi.Generic ( 1 )
15:27:28.0645 0x0e80  Detect skipped due to KSN trusted
15:27:28.0645 0x0e80  Wecsvc - ok
15:27:34.0785 0x0e80  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
15:27:45.0617 0x0e80  wercplsupport - detected UnsignedFile.Multi.Generic ( 1 )
15:27:45.0660 0x0e80  Detect skipped due to KSN trusted
15:27:45.0660 0x0e80  wercplsupport - ok
15:27:49.0562 0x0e80  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
15:27:54.0607 0x0e80  WerSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:27:54.0650 0x0e80  Detect skipped due to KSN trusted
15:27:54.0650 0x0e80  WerSvc - ok
15:27:59.0018 0x0e80  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
15:28:13.0963 0x0e80  WfpLwf - detected UnsignedFile.Multi.Generic ( 1 )
15:28:14.0005 0x0e80  Detect skipped due to KSN trusted
15:28:14.0005 0x0e80  WfpLwf - ok
15:28:17.0188 0x0e80  [ F90B32B6034A377CAA6BFD73C0BA5C71, CDEF926F62A707C2CB0EF389CAA3932CB84BFDF16E33CACA386CF1B666304F63 ] WG111T          C:\Windows\system32\DRIVERS\WG111Tvx.sys
15:28:27.0208 0x0e80  WG111T - detected UnsignedFile.Multi.Generic ( 1 )
15:28:27.0251 0x0e80  Detect skipped due to KSN trusted
15:28:27.0252 0x0e80  WG111T - ok
15:28:32.0566 0x0e80  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
15:28:35.0485 0x0e80  WIMMount - ok
15:28:44.0500 0x0e80  WinDefend - ok
15:28:44.0533 0x0e80  WinHttpAutoProxySvc - ok
15:28:44.0601 0x0e80  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
15:28:54.0610 0x0e80  Winmgmt - detected UnsignedFile.Multi.Generic ( 1 )
15:28:54.0652 0x0e80  Detect skipped due to KSN trusted
15:28:54.0652 0x0e80  Winmgmt - ok
15:29:12.0216 0x0e80  [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM           C:\Windows\system32\WsmSvc.dll
15:29:23.0779 0x0e80  WinRM - detected UnsignedFile.Multi.Generic ( 1 )
15:29:23.0835 0x0e80  Detect skipped due to KSN trusted
15:29:23.0835 0x0e80  WinRM - ok
15:29:39.0741 0x0e80  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
15:29:46.0086 0x0e80  WinUsb - detected UnsignedFile.Multi.Generic ( 1 )
15:29:46.0129 0x0e80  Detect skipped due to KSN trusted
15:29:46.0129 0x0e80  WinUsb - ok
15:30:07.0224 0x0e80  [ 4B7912EB80820EAC543EE54806EFCAF0, 4D9186F9FE80F03C85C4DC73342EE5870DF1021BD29974BE33557CEA0D524667 ] Wlansvc         C:\Windows\System32\wlansvc.dll
15:30:13.0921 0x0e80  Wlansvc - detected UnsignedFile.Multi.Generic ( 1 )
15:30:13.0977 0x0e80  Detect skipped due to KSN trusted
15:30:13.0977 0x0e80  Wlansvc - ok
15:30:34.0732 0x0e80  [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:30:34.0776 0x0e80  wlidsvc - ok
15:30:34.0803 0x0e80  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
15:30:47.0236 0x0e80  WmiAcpi - detected UnsignedFile.Multi.Generic ( 1 )
15:30:47.0305 0x0e80  Detect skipped due to KSN trusted
15:30:47.0305 0x0e80  WmiAcpi - ok
15:30:59.0314 0x0e80  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
15:31:07.0384 0x0e80  wmiApSrv - detected UnsignedFile.Multi.Generic ( 1 )
15:31:07.0428 0x0e80  Detect skipped due to KSN trusted
15:31:07.0428 0x0e80  wmiApSrv - ok
15:31:17.0777 0x0e80  WMPNetworkSvc - ok
15:31:29.0701 0x0e80  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
15:31:34.0783 0x0e80  WPCSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:31:34.0826 0x0e80  Detect skipped due to KSN trusted
15:31:34.0826 0x0e80  WPCSvc - ok
15:31:42.0267 0x0e80  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
15:31:53.0152 0x0e80  WPDBusEnum - detected UnsignedFile.Multi.Generic ( 1 )
15:31:53.0204 0x0e80  Detect skipped due to KSN trusted
15:31:53.0204 0x0e80  WPDBusEnum - ok
15:31:54.0062 0x0e80  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
15:32:03.0720 0x0e80  ws2ifsl - detected UnsignedFile.Multi.Generic ( 1 )
15:32:03.0767 0x0e80  Detect skipped due to KSN trusted
15:32:03.0767 0x0e80  ws2ifsl - ok
15:32:18.0790 0x0e80  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
15:32:24.0670 0x0e80  wscsvc - detected UnsignedFile.Multi.Generic ( 1 )
15:32:24.0712 0x0e80  Detect skipped due to KSN trusted
15:32:24.0712 0x0e80  wscsvc - ok
15:32:24.0714 0x0e80  WSearch - ok
15:32:24.0795 0x0e80  [ 88009DB9E1166B6B6713A858C176FECD, CBF4C63D3C5D14AF3C3F0D9C48E5AC9E7A4323BFB0363E9948FD801963BE1467 ] wuauserv        C:\Windows\system32\wuaueng.dll
15:32:34.0846 0x0e80  wuauserv - detected UnsignedFile.Multi.Generic ( 1 )
15:32:34.0889 0x0e80  Detect skipped due to KSN trusted
15:32:34.0889 0x0e80  wuauserv - ok
15:32:40.0258 0x0e80  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
15:32:50.0263 0x0e80  WudfPf - detected UnsignedFile.Multi.Generic ( 1 )
15:32:50.0306 0x0e80  Detect skipped due to KSN trusted
15:32:50.0306 0x0e80  WudfPf - ok
15:32:52.0114 0x0e80  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
15:33:02.0122 0x0e80  WUDFRd - detected UnsignedFile.Multi.Generic ( 1 )
15:33:02.0172 0x0e80  Detect skipped due to KSN trusted
15:33:02.0172 0x0e80  WUDFRd - ok
15:33:07.0561 0x0e80  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
15:33:19.0689 0x0e80  wudfsvc - detected UnsignedFile.Multi.Generic ( 1 )
15:33:19.0731 0x0e80  Detect skipped due to KSN trusted
15:33:19.0732 0x0e80  wudfsvc - ok
15:33:19.0781 0x0e80  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
15:33:29.0788 0x0e80  WwanSvc - detected UnsignedFile.Multi.Generic ( 1 )
15:33:29.0831 0x0e80  Detect skipped due to KSN trusted
15:33:29.0831 0x0e80  WwanSvc - ok
15:33:41.0012 0x0e80  [ 6533F30045B0A234783BD8B4069F0433, 458A753961A4D0AC63BC44613A10101DCA5CFD7AB0F5CFA174F1DEF2A72B825D ] XUIF            C:\Windows\system32\Drivers\x10ufx2.sys
15:33:41.0018 0x0e80  XUIF - ok
15:33:46.0954 0x0e80  ================ Scan global ===============================
15:33:47.0016 0x0e80  [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll
15:33:47.0054 0x0e80  [ 66A8A9412337B08E1735204B8ADEE58C, 766429FBB014A9CA6AEFD39579C3F33625335A3DFD88AB324E4534978695B887 ] C:\Windows\system32\winsrv.dll
15:33:47.0062 0x0e80  [ 66A8A9412337B08E1735204B8ADEE58C, 766429FBB014A9CA6AEFD39579C3F33625335A3DFD88AB324E4534978695B887 ] C:\Windows\system32\winsrv.dll
15:33:47.0081 0x0e80  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
15:33:47.0105 0x0e80  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
15:33:47.0110 0x0e80  [ Global ] - ok
15:33:47.0110 0x0e80  ================ Scan MBR ==================================
15:33:47.0120 0x0e80  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:33:47.0372 0x0e80  \Device\Harddisk0\DR0 - ok
15:33:47.0372 0x0e80  ================ Scan VBR ==================================
15:33:47.0393 0x0e80  [ 82BD7EAF574BBEEB24FFE69B0B4E98A6 ] \Device\Harddisk0\DR0\Partition1
15:33:47.0394 0x0e80  \Device\Harddisk0\DR0\Partition1 - ok
15:33:47.0400 0x0e80  [ F0FE098C865C392E163768E3C3B7BEC9 ] \Device\Harddisk0\DR0\Partition2
15:33:47.0401 0x0e80  \Device\Harddisk0\DR0\Partition2 - ok
15:33:47.0403 0x0e80  [ EE365EDF61F4F477222E99F8C90008BE ] \Device\Harddisk0\DR0\Partition3
15:33:47.0404 0x0e80  \Device\Harddisk0\DR0\Partition3 - ok
15:33:47.0404 0x0e80  ================ Scan generic autorun ======================
15:33:47.0669 0x0e80  [ BCFF8CD24809941E28C73185FC58CA39, 353CA65A5EAFAF5DEC777C422A1B842DAF84ED66626AF314670E49402B6DE994 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
15:33:47.0865 0x0e80  RTHDVCPL - ok
15:33:47.0934 0x0e80  [ B9CCBA39317F2CE2AE9EC5E94271AD23, C497D5EC8F3DED41AF1FC93CE48D237C54F4C4286E7B633C3ADC2F7D524E8ED8 ] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe
15:33:47.0949 0x0e80  CanonSolutionMenu - ok
15:33:48.0039 0x0e80  [ 5858DE874168C5F0AEA7A353DD520D48, DB77AF431227AEBD92C6E40AC723435E83DCF4620B7366D4FA6D9ACB500AA6EA ] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
15:33:48.0087 0x0e80  CanonMyPrinter - ok
15:33:48.0174 0x0e80  [ 00AB2B491C7037BB219BEB26FAD34C72, 95EDBBE07EB85EEE1376252AA975BAA61235C80FC03036357BD4786E5D6B9703 ] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
15:33:48.0205 0x0e80  CanonSolutionMenuEx - ok
15:33:48.0279 0x0e80  [ F2FF574F6F2211D9AAAE5E82A3AD553F, 392CDC901BE6CC617E9F5C720EB0C3244F3082D63AC6CAE8BEDB029BC7069D69 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
15:33:48.0303 0x0e80  Adobe ARM - ok
15:33:48.0326 0x0e80  [ 62CC348ECEAF9F7D3ECCF2D2C72E0DEA, 6416BDA011102EC9413A5E7D0E87B5A6BCC25B328FE34E03FF223C82B1CA20DB ] C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
15:33:48.0332 0x0e80  ProductUpdater - ok
15:33:48.0570 0x0e80  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
15:33:58.0594 0x0e80  Sidebar - detected UnsignedFile.Multi.Generic ( 1 )
15:33:58.0637 0x0e80  Detect skipped due to KSN trusted
15:33:58.0637 0x0e80  Sidebar - ok
15:34:12.0950 0x0e80  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
15:34:22.0501 0x0e80  mctadmin - detected UnsignedFile.Multi.Generic ( 1 )
15:34:22.0552 0x0e80  Detect skipped due to KSN trusted
15:34:22.0552 0x0e80  mctadmin - ok
15:34:43.0377 0x0e80  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
15:34:49.0766 0x0e80  Sidebar - detected UnsignedFile.Multi.Generic ( 1 )
15:34:49.0766 0x0e80  Detect skipped due to KSN trusted
15:34:49.0766 0x0e80  Sidebar - ok
15:34:52.0798 0x0e80  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
15:35:04.0911 0x0e80  mctadmin - detected UnsignedFile.Multi.Generic ( 1 )
15:35:04.0911 0x0e80  Detect skipped due to KSN trusted
15:35:04.0911 0x0e80  mctadmin - ok
15:35:11.0032 0x0e80  [ D82F21A55B009AA22050797204C09168, 372AFE66814F2D4A1076ED3BAE8A3F73B5C55B09AF3E8A1E1DEE873358ADD096 ] C:\Program Files (x86)\T-Online\WLAN-Access Finder\ToWLaAcF.exe
15:35:22.0457 0x0e80  T-Online_Software_6\WLAN-Access Finder - detected UnsignedFile.Multi.Generic ( 1 )
15:35:22.0500 0x0e80  Detect skipped due to KSN trusted
15:35:22.0500 0x0e80  T-Online_Software_6\WLAN-Access Finder - ok
15:35:38.0639 0x0e80  [ 14EF06B1EA531D681B5738F37388B99C, AB74735A3569B7995572FD7B0D026919CADA27C43A6AD0503659CE7CA3FF6B84 ] C:\Program Files\CCleaner\CCleaner64.exe
15:35:38.0762 0x0e80  CCleaner Monitoring - ok
15:35:38.0841 0x0e80  [ FE438ED1EE2ADDCC5615864EC120FA70, 231ED2E1D88266E55F0D0070DD6F47581EDCCCA9FF2D8FF69263E7A47CEEA067 ] C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPDLR.exe
15:35:38.0863 0x0e80  SmartSwitchPDLR.exe - ok
15:35:38.0896 0x0e80  [ 06CD07270AE873EB4E6717164428D133, EAF5B211121FD3266AF7F7946A3C6E6C546CCE4C098CA0DA92061135FA7F87C2 ] C:\Program Files (x86)\phonostar-Player\phonostarTimer.exe
15:35:48.0900 0x0e80  phonostar-PlayerTimer - detected UnsignedFile.Multi.Generic ( 1 )
15:35:48.0943 0x0e80  Detect skipped due to KSN trusted
15:35:48.0943 0x0e80  phonostar-PlayerTimer - ok
15:36:02.0936 0x0e80  Skype - ok
15:36:06.0074 0x0e80  [ 2261FC3573534BD28EFF1B4C69339D70, 0AB4A132FBA1EC88FDC9145DB34D8A9ED40D4BB579FDE2C21F2846730993295E ] C:\Program Files (x86)\Tobit Radio.fx\Client\rfx-tray.exe
15:36:06.0108 0x0e80  rfxsrvtray - ok
15:36:06.0220 0x0e80  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
15:36:16.0243 0x0e80  Sidebar - detected UnsignedFile.Multi.Generic ( 1 )
15:36:16.0243 0x0e80  Detect skipped due to KSN trusted
15:36:16.0243 0x0e80  Sidebar - ok
15:36:18.0543 0x0e80  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
15:36:30.0245 0x0e80  mctadmin - detected UnsignedFile.Multi.Generic ( 1 )
15:36:30.0245 0x0e80  Detect skipped due to KSN trusted
15:36:30.0245 0x0e80  mctadmin - ok
15:36:30.0255 0x0e80  Win FW state via NFP2: enabled ( trusted )
15:36:30.0317 0x0e80  ============================================================
15:36:30.0317 0x0e80  Scan finished
15:36:30.0317 0x0e80  ============================================================
15:36:30.0322 0x1340  Detected object count: 0
15:36:30.0322 0x1340  Actual detected object count: 0
         

Alt 29.10.2017, 20:14   #8
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Servus,



wir sind hier im Malwarebereich... darauf bin ich spezialisiert. Wenn du es möchtest, versuchen wir, den Rechner zu bereinigen. Inwieweit das klappt (bei den von dir beschriebenen Problemen), wird sich dann zeigen.

Alternative: private Daten sichern und Windows neu installieren


Wenn es danach immer noch nicht besser wird, liegt wohl ein Hardwaredefekt vor.



Deine Entscheidung, gib mir Rückmeldung.
__________________
Gruß
M-K-D-B


==========================================================
offline vom 22.12.2018 bis 01.01.2019
==========================================================

Das Trojaner-Board unterstützen

Alt 30.10.2017, 12:48   #9
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias
Vielen Dank für dein Angebot, habe aber irgendwie inzwischen selbst mein Problem gelöst. Habe den Bitdefender installieren können und obwohl er keine Probleme gefunden hat, läuft wieder alles. Bin sehr erleichtert. Weis auch nicht was die Ursache war.
Trotzdem nochmals Danke, danke für eure Hilfe. Es ist schon ein Segen, das es euch gibt.
Gruß, Heinz

Alt 30.10.2017, 21:13   #10
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Servus,


und die Malware (Schadsoftware), die ich in den Logdateien sehe, willst du weiter auf deinem Rechner behalten?

Wie gesagt, da sind Sachen von 2012 drauf... schon schwach von Bitdefender, wenn das Programm nichts entdeckt hat...
__________________
Gruß
M-K-D-B


==========================================================
offline vom 22.12.2018 bis 01.01.2019
==========================================================

Das Trojaner-Board unterstützen

Alt 01.11.2017, 11:47   #11
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias
Nee, diese alte Schadmalware hätte ich natürlich schon gerne weg. Ich hatte dich so verstanden, das du sie nicht eliminieren kannst. Geht denn das jetzt noch ? Hab ja inzwischen den Bitdefender drauf. Der wird ja überall als Testsieger bei Antivieren Schutzprogrammen bezeichnet. Weis auch nicht, warum er diese alten Sachen nicht findet, aber vielleicht findet und beseitigt er diese alte Malware doch noch, denn er arbeitet ja im Hintergrund und ich bekomme ja erst demnächst automatische Berichte. Schreib mir bitte, was du vorschlägst.
Gruß, Heinz

Alt 01.11.2017, 16:01   #12
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Servus,



Zitat:
Der wird ja überall als Testsieger bei Antivieren Schutzprogrammen bezeichnet.
"Überall..." Naja...
Solche Tests sind meiner Meinung nach wenig aussagekräftig, weil sie mir der Realität wenig zu tun haben.
Die Entfernung sollte wenig Probleme bereiten (außer vielleicht, Bitdefender stört bei der Bereinigung, was wir hier auch schon öfter hatten).



Bitte nochmal FRST ausführen, damit ich weiß, wie es jetzt mit Bitdefender aussieht (achja, und sollte Bitdefender FRST gleich mal blockieren, dann weißt du gleich, dass Bitdefender nichts taugt... ggf. dann Bitdefender deaktivieren oder FRST erlauben ):
  • Starte die FRST.exe erneut. Vergewissere dich, dass vor Addition.txt ein Haken gesetzt ist und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.
__________________
Gruß
M-K-D-B


==========================================================
offline vom 22.12.2018 bis 01.01.2019
==========================================================

Das Trojaner-Board unterstützen

Alt 01.11.2017, 17:25   #13
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias
O.K, dann versuchen wir die Malware Reste auch noch zu beseitigen. " Frst " lief jedenfalls sehr schnell durch, weis aber nicht, ob der Bitdefender irgend welche wichtigen Daten unterbunden hat, aber das wirst du ja sicher sofort selbst erkennen.
Gruß Heinz
anbei in den Anhängen die neuen txt.
Angehängte Dateien
Dateityp: txt FRST.txt (68,2 KB, 30x aufgerufen)
Dateityp: txt Addition.txt (37,3 KB, 27x aufgerufen)

Alt 01.11.2017, 20:30   #14
M-K-D-B
/// TB-Ausbilder
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Servus,





Schritt 1
Downloade Dir bitte AdwCleaner auf deinen Desktop (Bebilderte Anleitung).
  • Schließe alle offenen Programme und Browser.
  • Starte die adwcleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Werkzeuge > Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • Tracing Schlüssel
    • Prefetch Dateien
    • Proxy
    • Winsock
    • Firewall
    • IE Richtlinien
    • Chrome Richtlinien
  • Bestätige die Auswahl mit Ok.
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist. Am Ende des Suchlaufs öffnet sich automatisch eine Logdatei. Schließe diese.
  • Klicke nun auf Löschen (auch dann wenn AdwCleaner sagt, dass nichts gefunden wurde) und bestätige auftretende Hinweise mit Ok.
  • Klicke am Ende der Bereinigung auf Jetzt neu starten. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).





Schritt 2
Downloade Dir bitte Malwarebytes Anti-Malware 3 (Bebilderte Anleitung)
  • Installiere das Programm in den vorgegebenen Pfad.
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scan, wähle den Bedrohungs-Scan aus und klicke auf Scan starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Ausgewählte Elemente in die Quarantäne verschieben.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM nach dem Neustart, klicke auf Berichte.
  • Wähle den neuesten Scan-Bericht aus, klicke auf Bericht anzeigen und dann auf Export.
  • Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.





Schritt 3
  • Starte die FRST.exe erneut. Vergewissere dich, dass vor Addition.txt ein Haken gesetzt ist und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.





Bitte poste mit deiner nächsten Antwort
  • die Logdatei von AdwCleaner,
  • die Logdatei von MBAM,
  • die zwei neuen Logdateien von FRST.
__________________
Gruß
M-K-D-B


==========================================================
offline vom 22.12.2018 bis 01.01.2019
==========================================================

Das Trojaner-Board unterstützen

Alt 02.11.2017, 12:45   #15
RaraAvis
 
SOS - habe Trojaner ?  mein PC läuft nur noch ganz langsam - Standard

SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam



Hallo Matthias
Adware Cleaner läuft zwar und findet auch etwas, hängt sich aber beim löschen auf !!
Komme dadurch nicht weiter. Sende dir trotzdem die txt vom Suchlauf.

Gruß Heinz

Code:
ATTFilter
# AdwCleaner 7.0.4.0 - Logfile created on Thu Nov 02 11:04:53 2017
# Updated on 2017/27/10 by Malwarebytes 
# Database: 11-02-2017.1
# Running on Windows 7 Home Premium (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.Legacy, C:\Program Files (x86)\Common Files\freemake shared
PUP.Optional.DriverTurbo, C:\Program Files (x86)\DriverTurbo
PUP.Optional.DriverTurbo, C:\Users\Heinzelmann\AppData\Roaming\DriverTurbo


***** [ Files ] *****

PUP.Optional.Legacy, C:\Users\Heinzelmann\Downloads\DriverTurboSetup.exe


***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries.

*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [1153 B] - [2017/9/17 16:7:23]
C:/AdwCleaner/AdwCleaner[C1].txt - [1339 B] - [2017/9/19 14:12:39]
C:/AdwCleaner/AdwCleaner[C2].txt - [1475 B] - [2017/9/23 16:26:45]
C:/AdwCleaner/AdwCleaner[S0].txt - [983 B] - [2017/9/17 16:7:2]
C:/AdwCleaner/AdwCleaner[S10].txt - [1877 B] - [2017/10/11 15:17:4]
C:/AdwCleaner/AdwCleaner[S11].txt - [1946 B] - [2017/10/11 15:20:14]
C:/AdwCleaner/AdwCleaner[S12].txt - [2016 B] - [2017/10/28 8:56:27]
C:/AdwCleaner/AdwCleaner[S13].txt - [2085 B] - [2017/10/28 9:24:19]
C:/AdwCleaner/AdwCleaner[S14].txt - [2341 B] - [2017/11/2 10:7:32]
C:/AdwCleaner/AdwCleaner[S1].txt - [1084 B] - [2017/9/18 11:13:10]
C:/AdwCleaner/AdwCleaner[S2].txt - [1152 B] - [2017/9/19 14:12:24]
C:/AdwCleaner/AdwCleaner[S3].txt - [1288 B] - [2017/9/23 16:26:24]
C:/AdwCleaner/AdwCleaner[S4].txt - [1424 B] - [2017/9/29 8:56:3]
C:/AdwCleaner/AdwCleaner[S5].txt - [1490 B] - [2017/10/3 15:49:36]
C:/AdwCleaner/AdwCleaner[S6].txt - [1558 B] - [2017/10/5 9:2:49]
C:/AdwCleaner/AdwCleaner[S7].txt - [1624 B] - [2017/10/5 13:34:42]
C:/AdwCleaner/AdwCleaner[S8].txt - [1692 B] - [2017/10/10 8:45:17]
C:/AdwCleaner/AdwCleaner[S9].txt - [1807 B] - [2017/10/11 12:58:24]


########## EOF - C:\AdwCleaner\AdwCleaner[S15].txt ##########
         

Antwort

Themen zu SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam
antivir, benutzerkonto, bitdefender, defender, eset, fehlermeldung, free, gekauft, gelöscht, heute, hoffe, installieren, kaspersky, konnte, langsam, nicht mehr, programme, starte, starten, test, trojaner, verlangt, version, win, öffnen



Ähnliche Themen: SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam


  1. Notebook läuft nur noch langsam
    Netzwerk und Hardware - 24.03.2017 (17)
  2. Computer läuft seit Monaten langsam und fährt nur noch sehr langsam hoch
    Plagegeister aller Art und deren Bekämpfung - 19.10.2016 (3)
  3. mein Computer läuft langsam
    Plagegeister aller Art und deren Bekämpfung - 15.03.2015 (5)
  4. Mein PC läuft immer bei einer CPU Auslastung von 100% bzw meistens - er läuft viel zu langsam
    Plagegeister aller Art und deren Bekämpfung - 25.01.2015 (1)
  5. Windows 7 Firefox läuft nur noch sehr langsam
    Log-Analyse und Auswertung - 28.08.2014 (7)
  6. Eine bestimmte Internetseite öffnet sich ganz extrem langsam und das auch noch mit fehlern!
    Plagegeister aller Art und deren Bekämpfung - 01.06.2014 (15)
  7. Asus Netbook läuft nur noch sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 17.03.2014 (11)
  8. Polizei Österreich Virus - Paysafe ... PC läuft noch ganz normal? was tun?
    Plagegeister aller Art und deren Bekämpfung - 11.01.2014 (11)
  9. Mein PC läuft nur noch sehr langsam, nicht mal AVIRA funktiomiert noch. Woran kann das liegen?
    Plagegeister aller Art und deren Bekämpfung - 29.10.2013 (5)
  10. Internet Browser alle total langsam! Restlicher PC läuft ganz normal!
    Plagegeister aller Art und deren Bekämpfung - 08.09.2012 (1)
  11. Windows Vista ganz langsam, Lüfter läuft (und läuft) PC fährt nicht runter...
    Alles rund um Windows - 27.02.2011 (6)
  12. mein system läuft unerwartet instabil und ich habe sehr oft Blueys
    Alles rund um Windows - 02.05.2010 (6)
  13. hilfe mein inet läuft ganz langsam
    Log-Analyse und Auswertung - 26.04.2009 (1)
  14. bitte mal prüfen mein rechner wird nach ner stunde immer ganz langsam
    Log-Analyse und Auswertung - 12.02.2008 (0)
  15. pc läuft net ganz rund vieleicht trojaner??
    Log-Analyse und Auswertung - 17.12.2007 (2)
  16. Internet geht nur noch ganz langsam, bzw. gar nicht, Virus/Trojaner?
    Log-Analyse und Auswertung - 31.08.2007 (11)
  17. Nach Trojaner arbeitet mein Rechner nur noch sehr langsam
    Log-Analyse und Auswertung - 03.06.2007 (10)

Zum Thema SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam - Bitte euch schon wieder um Hilfe. Mein PC (Win 7 , 64 bit ) läuft seit heute nur noch ganz langsam. Einige Programme lassen sich gar nicht öffnen, z.B Star - SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam...
Archiv
Du betrachtest: SOS - habe Trojaner ? mein PC läuft nur noch ganz langsam auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.