Ich habe nun alles auf dem Desktop...Sorry:balla: Code:
19:54:58.0120 0x14d0 TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57
19:55:02.0665 0x14d0 ============================================================
19:55:02.0665 0x14d0 Current date / time: 2015/09/28 19:55:02.0665
19:55:02.0665 0x14d0 SystemInfo:
19:55:02.0665 0x14d0
19:55:02.0665 0x14d0 OS Version: 10.0.10240 ServicePack: 0.0
19:55:02.0665 0x14d0 Product type: Workstation
19:55:02.0665 0x14d0 ComputerName: R2D2
19:55:02.0665 0x14d0 UserName: chris
19:55:02.0665 0x14d0 Windows directory: C:\WINDOWS
19:55:02.0665 0x14d0 System windows directory: C:\WINDOWS
19:55:02.0665 0x14d0 Running under WOW64
19:55:02.0665 0x14d0 Processor architecture: Intel x64
19:55:02.0665 0x14d0 Number of processors: 4
19:55:02.0665 0x14d0 Page size: 0x1000
19:55:02.0665 0x14d0 Boot type: Normal boot
19:55:02.0665 0x14d0 ============================================================
19:55:02.0697 0x14d0 KLMD registered as C:\WINDOWS\system32\drivers\62667936.sys
19:55:02.0759 0x14d0 System UUID: {B53E8C2B-BEEB-B9C3-131A-270596D4EADA}
19:55:03.0009 0x14d0 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:55:05.0858 0x14d0 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:55:05.0921 0x14d0 Drive \Device\Harddisk2\DR2 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:55:05.0968 0x14d0 ============================================================
19:55:05.0968 0x14d0 \Device\Harddisk0\DR0:
19:55:05.0968 0x14d0 MBR partitions:
19:55:05.0968 0x14d0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x40000, BlocksNum 0xAF800
19:55:05.0968 0x14d0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xEF800, BlocksNum 0xDDC3800
19:55:05.0968 0x14d0 \Device\Harddisk1\DR1:
19:55:05.0968 0x14d0 MBR partitions:
19:55:05.0968 0x14d0 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x186A0000
19:55:05.0968 0x14d0 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x186A0800, BlocksNum 0x5C065000
19:55:05.0968 0x14d0 \Device\Harddisk2\DR2:
19:55:05.0968 0x14d0 GPT partitions:
19:55:05.0983 0x14d0 \Device\Harddisk2\DR2\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {8666C416-D2EF-4A42-973A-6809795F779C}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
19:55:05.0983 0x14d0 \Device\Harddisk2\DR2\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {03CC0ECB-3CB6-468B-B188-0CDEA35EC9A3}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x40000
19:55:05.0983 0x14d0 \Device\Harddisk2\DR2\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {27632470-4EC7-4BE5-BB02-0EAC83AEF5E6}, Name: Basic data partition, StartLBA 0x72800, BlocksNum 0x74694000
19:55:05.0983 0x14d0 MBR partitions:
19:55:05.0983 0x14d0 ============================================================
19:55:05.0983 0x14d0 C: <-> \Device\Harddisk0\DR0\Partition2
19:55:06.0015 0x14d0 D: <-> \Device\Harddisk1\DR1\Partition1
19:55:06.0030 0x14d0 E: <-> \Device\Harddisk2\DR2\Partition3
19:55:06.0046 0x14d0 F: <-> \Device\Harddisk1\DR1\Partition2
19:55:06.0046 0x14d0 ============================================================
19:55:06.0046 0x14d0 Initialize success
19:55:06.0046 0x14d0 ============================================================
19:56:22.0235 0x155c ============================================================
19:56:22.0235 0x155c Scan started
19:56:22.0235 0x155c Mode: Manual; SigCheck; TDLFS;
19:56:22.0235 0x155c ============================================================
19:56:22.0235 0x155c KSN ping started
19:56:24.0674 0x155c KSN ping finished: true
19:56:25.0425 0x155c ================ Scan system memory ========================
19:56:25.0425 0x155c System memory - ok
19:56:25.0425 0x155c ================ Scan services =============================
19:56:25.0440 0x155c 1394ohci - ok
19:56:25.0440 0x155c 3ware - ok
19:56:25.0456 0x155c ACPI - ok
19:56:25.0456 0x155c acpiex - ok
19:56:25.0456 0x155c acpipagr - ok
19:56:25.0456 0x155c AcpiPmi - ok
19:56:25.0464 0x155c acpitime - ok
19:56:25.0469 0x155c [ 013697369EAFFA675D0671607F036020, 65611C775AC4681E46A6565E5A7A4FF3363C66EBDC98C4C58AFB365D40BE23B6 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
19:56:25.0493 0x155c AdobeARMservice - ok
19:56:25.0499 0x155c ADP80XX - ok
19:56:25.0502 0x155c AFD - ok
19:56:25.0504 0x155c agp440 - ok
19:56:25.0506 0x155c ahcache - ok
19:56:25.0508 0x155c AJRouter - ok
19:56:25.0510 0x155c ALG - ok
19:56:25.0512 0x155c AmdK8 - ok
19:56:25.0514 0x155c AmdPPM - ok
19:56:25.0516 0x155c amdsata - ok
19:56:25.0517 0x155c amdsbs - ok
19:56:25.0519 0x155c amdxata - ok
19:56:25.0521 0x155c AppID - ok
19:56:25.0523 0x155c AppIDSvc - ok
19:56:25.0525 0x155c Appinfo - ok
19:56:25.0527 0x155c AppMgmt - ok
19:56:25.0529 0x155c AppReadiness - ok
19:56:25.0532 0x155c AppXSvc - ok
19:56:25.0534 0x155c arcsas - ok
19:56:25.0536 0x155c [ 30E7D7B63BE378C6DCD31434E1C5EBEB, 6F38FBD6B45506E57D4EC6C84C83F0829F280167E14B65643F583B41AA23C18B ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
19:56:25.0552 0x155c aswHwid - ok
19:56:25.0556 0x155c [ 6C3B7781075271AD9DFBD77BC7FBB9F7, AC53FD0EE1D7695219225440D3922EEF0B953F45F0ED3034CF5F1630A6B40607 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
19:56:25.0568 0x155c aswMonFlt - ok
19:56:25.0572 0x155c [ 3C04B80B49697EB7DFE5FA43620F8728, 4BC11901898348318BA807938BEA888BC54FE80ADA17C209C728F14EA4E91F21 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
19:56:25.0584 0x155c aswRdr - ok
19:56:25.0588 0x155c [ AA8CB23B3B4A4B16F49CB54CA04FE0D9, A94D214B43EDAEC52656EA36C2A830E76C40B90E8F4BABEF4F16BA679A429586 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
19:56:25.0599 0x155c aswRvrt - ok
19:56:25.0617 0x155c [ E40965585B901AA60AF26279E09959E0, F3EACB4F1E78903D648DE75CC01642BFACA76C0605A6831EC24201292891B5DE ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
19:56:25.0636 0x155c aswSnx - ok
19:56:25.0651 0x155c [ B54E400C1B044D6D7D9EF95BA865741E, C929B53F53EFD15D3EE64FED23686A01F77E8F7BC74623D02D10D4CFEC3D6BF2 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
19:56:25.0667 0x155c aswSP - ok
19:56:25.0667 0x155c [ 0652346DF90731A87E4C7C9A9C45A8E0, 38B8A760B532254A8CB2FD6B922269A1B96BB5E5F243D130B4BBD09ED50DEDB8 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
19:56:25.0682 0x155c aswStm - ok
19:56:25.0688 0x155c [ 54230972D23E6E4D034D7CB577DC784C, 7F51E81CBAFB143982AF2C68675CF0D46DD17A9A17A8805EBF628FAE84DFF8A9 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
19:56:25.0703 0x155c aswVmm - ok
19:56:25.0703 0x155c AsyncMac - ok
19:56:25.0703 0x155c atapi - ok
19:56:25.0715 0x155c AudioEndpointBuilder - ok
19:56:25.0717 0x155c Audiosrv - ok
19:56:25.0724 0x155c [ 11120878E5276B367E1A10FF8C9B595B, 7C02EEF3733307C31BAC4DA9975EC017AC40D0893D88228C30FFAA536DAA73FB ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:56:25.0731 0x155c avast! Antivirus - ok
19:56:25.0733 0x155c AvastVBoxSvc - ok
19:56:25.0736 0x155c AxInstSV - ok
19:56:25.0738 0x155c b06bdrv - ok
19:56:25.0740 0x155c BasicDisplay - ok
19:56:25.0743 0x155c BasicRender - ok
19:56:25.0745 0x155c bcmfn2 - ok
19:56:25.0747 0x155c BDESVC - ok
19:56:25.0750 0x155c Beep - ok
19:56:25.0752 0x155c BFE - ok
19:56:25.0754 0x155c BITS - ok
19:56:25.0755 0x155c bowser - ok
19:56:25.0757 0x155c BrokerInfrastructure - ok
19:56:25.0759 0x155c Browser - ok
19:56:25.0761 0x155c BthAvrcpTg - ok
19:56:25.0766 0x155c BthHFEnum - ok
19:56:25.0767 0x155c bthhfhid - ok
19:56:25.0770 0x155c BthHFSrv - ok
19:56:25.0771 0x155c BTHMODEM - ok
19:56:25.0775 0x155c bthserv - ok
19:56:25.0777 0x155c buttonconverter - ok
19:56:25.0780 0x155c CapImg - ok
19:56:25.0783 0x155c cdfs - ok
19:56:25.0785 0x155c CDPSvc - ok
19:56:25.0786 0x155c cdrom - ok
19:56:25.0789 0x155c CertPropSvc - ok
19:56:25.0791 0x155c circlass - ok
19:56:25.0793 0x155c CLFS - ok
19:56:25.0795 0x155c ClipSVC - ok
19:56:25.0800 0x155c CmBatt - ok
19:56:25.0802 0x155c CNG - ok
19:56:25.0804 0x155c cnghwassist - ok
19:56:25.0814 0x155c CompositeBus - ok
19:56:25.0816 0x155c COMSysApp - ok
19:56:25.0818 0x155c condrv - ok
19:56:25.0820 0x155c CoreMessagingRegistrar - ok
19:56:25.0823 0x155c CryptSvc - ok
19:56:25.0825 0x155c CSC - ok
19:56:25.0827 0x155c CscService - ok
19:56:25.0830 0x155c dam - ok
19:56:25.0833 0x155c DcomLaunch - ok
19:56:25.0835 0x155c DcpSvc - ok
19:56:25.0837 0x155c defragsvc - ok
19:56:25.0839 0x155c DeviceAssociationService - ok
19:56:25.0841 0x155c DeviceInstall - ok
19:56:25.0843 0x155c DevQueryBroker - ok
19:56:25.0846 0x155c Dfsc - ok
19:56:25.0850 0x155c [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
19:56:25.0863 0x155c dg_ssudbus - ok
19:56:25.0865 0x155c Dhcp - ok
19:56:25.0867 0x155c diagnosticshub.standardcollector.service - ok
19:56:25.0870 0x155c DiagTrack - ok
19:56:25.0872 0x155c disk - ok
19:56:25.0874 0x155c DmEnrollmentSvc - ok
19:56:25.0876 0x155c dmvsc - ok
19:56:25.0878 0x155c dmwappushservice - ok
19:56:25.0881 0x155c Dnscache - ok
19:56:25.0884 0x155c dot3svc - ok
19:56:25.0886 0x155c DPS - ok
19:56:25.0888 0x155c drmkaud - ok
19:56:25.0890 0x155c DsmSvc - ok
19:56:25.0892 0x155c DsSvc - ok
19:56:25.0894 0x155c DXGKrnl - ok
19:56:25.0897 0x155c e1iexpress - ok
19:56:25.0899 0x155c Eaphost - ok
19:56:25.0901 0x155c ebdrv - ok
19:56:25.0903 0x155c EFS - ok
19:56:25.0905 0x155c EhStorClass - ok
19:56:25.0907 0x155c EhStorTcgDrv - ok
19:56:25.0909 0x155c embeddedmode - ok
19:56:25.0911 0x155c EntAppSvc - ok
19:56:25.0913 0x155c ErrDev - ok
19:56:25.0918 0x155c EventSystem - ok
19:56:25.0919 0x155c exfat - ok
19:56:25.0921 0x155c fastfat - ok
19:56:25.0923 0x155c Fax - ok
19:56:25.0925 0x155c fcvsc - ok
19:56:25.0927 0x155c fdc - ok
19:56:25.0930 0x155c fdPHost - ok
19:56:25.0932 0x155c FDResPub - ok
19:56:25.0934 0x155c fhsvc - ok
19:56:25.0936 0x155c FileCrypt - ok
19:56:25.0938 0x155c FileInfo - ok
19:56:25.0940 0x155c Filetrace - ok
19:56:25.0942 0x155c flpydisk - ok
19:56:25.0944 0x155c FltMgr - ok
19:56:25.0947 0x155c FontCache - ok
19:56:25.0950 0x155c FontCache3.0.0.0 - ok
19:56:25.0952 0x155c FsDepends - ok
19:56:25.0954 0x155c Fs_Rec - ok
19:56:25.0956 0x155c fvevol - ok
19:56:25.0958 0x155c gagp30kx - ok
19:56:25.0960 0x155c gencounter - ok
19:56:25.0962 0x155c genericusbfn - ok
19:56:25.0964 0x155c GPIOClx0101 - ok
19:56:25.0966 0x155c gpsvc - ok
19:56:25.0968 0x155c GpuEnergyDrv - ok
19:56:25.0972 0x155c [ 0C03FB91E17987EED93F60007B08DAA0, BF4549F45FA1B291339E5053738B95BA50F021225F294F7B1ED9DACBD09BA426 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:56:25.0979 0x155c gupdate - ok
19:56:25.0983 0x155c [ 0C03FB91E17987EED93F60007B08DAA0, BF4549F45FA1B291339E5053738B95BA50F021225F294F7B1ED9DACBD09BA426 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:56:25.0989 0x155c gupdatem - ok
19:56:25.0991 0x155c HDAudBus - ok
19:56:25.0993 0x155c HidBatt - ok
19:56:25.0995 0x155c HidBth - ok
19:56:25.0997 0x155c hidi2c - ok
19:56:25.0999 0x155c hidinterrupt - ok
19:56:26.0002 0x155c HidIr - ok
19:56:26.0004 0x155c hidserv - ok
19:56:26.0006 0x155c HidUsb - ok
19:56:26.0008 0x155c HomeGroupListener - ok
19:56:26.0010 0x155c HomeGroupProvider - ok
19:56:26.0011 0x155c HpSAMD - ok
19:56:26.0014 0x155c HTTP - ok
19:56:26.0015 0x155c hwpolicy - ok
19:56:26.0017 0x155c hyperkbd - ok
19:56:26.0019 0x155c HyperVideo - ok
19:56:26.0022 0x155c i8042prt - ok
19:56:26.0024 0x155c iaLPSSi_GPIO - ok
19:56:26.0026 0x155c iaLPSSi_I2C - ok
19:56:26.0027 0x155c iaStorAV - ok
19:56:26.0030 0x155c iaStorV - ok
19:56:26.0033 0x155c ibbus - ok
19:56:26.0035 0x155c icssvc - ok
19:56:26.0037 0x155c IEEtwCollectorService - ok
19:56:26.0039 0x155c IKEEXT - ok
19:56:26.0094 0x155c [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
19:56:26.0172 0x155c IntcAzAudAddService - ok
19:56:26.0188 0x155c [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
19:56:26.0219 0x155c Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
19:56:28.0768 0x155c Detect skipped due to KSN trusted
19:56:28.0768 0x155c Intel(R) Capability Licensing Service Interface - ok
19:56:28.0815 0x155c [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
19:56:28.0846 0x155c Intel(R) Capability Licensing Service TCP IP Interface - ok
19:56:28.0862 0x155c [ 57739E742ABC085C2A4340D4404B4A8B, B4B85C35AC96D11F5940AFCB15A2B2A41D70E3C392E1D4D9353899FA140FF281 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
19:56:28.0862 0x155c Intel(R) ME Service - ok
19:56:28.0862 0x155c [ CBF7341E55A8348C7AB01A9870C7D948, A5084DF3C6321788C88A9E6B5F43FE5BCFDBB579BDE3A4D5F55558C6D13035A5 ] Intel(R) PROSet Monitoring Service C:\Windows\system32\IProsetMonitor.exe
19:56:28.0878 0x155c Intel(R) PROSet Monitoring Service - ok
19:56:28.0878 0x155c intelide - ok
19:56:28.0878 0x155c intelpep - ok
19:56:28.0893 0x155c intelppm - ok
19:56:28.0893 0x155c IoQos - ok
19:56:28.0898 0x155c IpFilterDriver - ok
19:56:28.0900 0x155c iphlpsvc - ok
19:56:28.0901 0x155c IPMIDRV - ok
19:56:28.0903 0x155c IPNAT - ok
19:56:28.0905 0x155c IRENUM - ok
19:56:28.0907 0x155c isapnp - ok
19:56:28.0909 0x155c iScsiPrt - ok
19:56:28.0913 0x155c [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
19:56:28.0920 0x155c jhi_service - ok
19:56:28.0922 0x155c kbdclass - ok
19:56:28.0924 0x155c kbdhid - ok
19:56:28.0926 0x155c kdnic - ok
19:56:28.0928 0x155c KeyIso - ok
19:56:28.0930 0x155c KSecDD - ok
19:56:28.0932 0x155c KSecPkg - ok
19:56:28.0934 0x155c ksthunk - ok
19:56:28.0936 0x155c KtmRm - ok
19:56:28.0938 0x155c LanmanServer - ok
19:56:28.0940 0x155c LanmanWorkstation - ok
19:56:28.0943 0x155c lfsvc - ok
19:56:28.0945 0x155c LicenseManager - ok
19:56:28.0947 0x155c lltdio - ok
19:56:28.0949 0x155c lltdsvc - ok
19:56:28.0951 0x155c lmhosts - ok
19:56:28.0960 0x155c [ 90C864827E1722F5BB6EEA8896A4E8EF, 6F9D96B7A65BD79ED5A384025393F36A5DEAC4EE01CA173874906B54F57150EF ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
19:56:28.0971 0x155c LMS - ok
19:56:28.0974 0x155c LSI_SAS - ok
19:56:28.0976 0x155c LSI_SAS2i - ok
19:56:28.0978 0x155c LSI_SAS3i - ok
19:56:28.0980 0x155c LSI_SSS - ok
19:56:28.0982 0x155c LSM - ok
19:56:28.0983 0x155c luafv - ok
19:56:28.0986 0x155c MapsBroker - ok
19:56:28.0988 0x155c [ A8D28D5B3E2A528D1EF0E338E44F2820, 40D1EFDD253BC0A0D984A5AD8A2721C3E83B15F14D538204714E6D5B00D92CEB ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
19:56:28.0999 0x155c MBAMProtector - ok
19:56:29.0018 0x155c [ 83C982A395D00BAFF6515FB38424EA76, 0E1B66F84A483D47550347D4A9426B95A066DB5104C4284F606A16768A11DB0C ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
19:56:29.0039 0x155c MBAMService - ok
19:56:29.0044 0x155c [ 85CFE7AB85B43B6B7AC7961AA3983A9F, 4E88B75818FD00C0ABBDF8E02EBFB550A67B46E5E13D3B3DF52611793F7DA0DD ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
19:56:29.0055 0x155c MBAMWebAccessControl - ok
19:56:29.0057 0x155c megasas - ok
19:56:29.0059 0x155c megasr - ok
19:56:29.0063 0x155c [ 926C135CFB0C75B32FB714B5C0C58FAA, AF627CD125794B69D450D298D5608D357F2C91FB89EBFAA0DA2A0F07C6A304A8 ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
19:56:29.0070 0x155c MEIx64 - ok
19:56:29.0072 0x155c mlx4_bus - ok
19:56:29.0074 0x155c MMCSS - ok
19:56:29.0076 0x155c Modem - ok
19:56:29.0077 0x155c monitor - ok
19:56:29.0080 0x155c mouclass - ok
19:56:29.0082 0x155c mouhid - ok
19:56:29.0084 0x155c mountmgr - ok
19:56:29.0088 0x155c [ CC11EEB7AF4617D65DF0E9A21FC1ABD0, A683A5FB26E1B9FB4EEB40A9C7186F8433E3FB0A45848DF6102EF07B4DC75AC8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
19:56:29.0096 0x155c MozillaMaintenance - ok
19:56:29.0098 0x155c mpsdrv - ok
19:56:29.0100 0x155c MpsSvc - ok
19:56:29.0103 0x155c MRxDAV - ok
19:56:29.0104 0x155c mrxsmb - ok
19:56:29.0106 0x155c mrxsmb10 - ok
19:56:29.0108 0x155c mrxsmb20 - ok
19:56:29.0110 0x155c MsBridge - ok
19:56:29.0112 0x155c MSDTC - ok
19:56:29.0115 0x155c Msfs - ok
19:56:29.0117 0x155c msgpiowin32 - ok
19:56:29.0119 0x155c mshidkmdf - ok
19:56:29.0120 0x155c mshidumdf - ok
19:56:29.0120 0x155c msisadrv - ok
19:56:29.0120 0x155c MSiSCSI - ok
19:56:29.0120 0x155c msiserver - ok
19:56:29.0120 0x155c MSKSSRV - ok
19:56:29.0131 0x155c MsLldp - ok
19:56:29.0132 0x155c MSPCLOCK - ok
19:56:29.0134 0x155c MSPQM - ok
19:56:29.0136 0x155c MsRPC - ok
19:56:29.0139 0x155c mssmbios - ok
19:56:29.0141 0x155c MSTEE - ok
19:56:29.0143 0x155c MTConfig - ok
19:56:29.0145 0x155c Mup - ok
19:56:29.0147 0x155c mvumis - ok
19:56:29.0150 0x155c NativeWifiP - ok
19:56:29.0152 0x155c NcaSvc - ok
19:56:29.0154 0x155c NcbService - ok
19:56:29.0156 0x155c NcdAutoSetup - ok
19:56:29.0157 0x155c ndfltr - ok
19:56:29.0159 0x155c NDIS - ok
19:56:29.0161 0x155c NdisCap - ok
19:56:29.0163 0x155c NdisImPlatform - ok
19:56:29.0165 0x155c NdisTapi - ok
19:56:29.0167 0x155c Ndisuio - ok
19:56:29.0169 0x155c NdisVirtualBus - ok
19:56:29.0171 0x155c NdisWan - ok
19:56:29.0173 0x155c ndiswanlegacy - ok
19:56:29.0175 0x155c ndproxy - ok
19:56:29.0177 0x155c Ndu - ok
19:56:29.0179 0x155c NetBIOS - ok
19:56:29.0181 0x155c NetBT - ok
19:56:29.0183 0x155c Netlogon - ok
19:56:29.0185 0x155c Netman - ok
19:56:29.0187 0x155c netprofm - ok
19:56:29.0189 0x155c NetSetupSvc - ok
19:56:29.0193 0x155c NetTcpPortSharing - ok
19:56:29.0195 0x155c netvsc - ok
19:56:29.0199 0x155c NgcCtnrSvc - ok
19:56:29.0201 0x155c NgcSvc - ok
19:56:29.0203 0x155c NlaSvc - ok
19:56:29.0205 0x155c Npfs - ok
19:56:29.0207 0x155c npsvctrig - ok
19:56:29.0209 0x155c nsi - ok
19:56:29.0210 0x155c nsiproxy - ok
19:56:29.0215 0x155c NTFS - ok
19:56:29.0216 0x155c Null - ok
19:56:29.0221 0x155c [ 3EC9421780196DDA1A4C368BC7471778, FC5DEB52CAA76F968D3FF5F2418FA0A9DAC9E07BA5B259DEA5380759305F290E ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
19:56:29.0231 0x155c NVHDA - ok
19:56:29.0398 0x155c [ 9BE2E483F588B3A57C67352847037046, 1D0A4D86853C8A9188C4545842037F99DCC423CBA9DB68F51D10ACE302DE5AE2 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
19:56:29.0567 0x155c nvlddmkm - ok
19:56:29.0579 0x155c nvraid - ok
19:56:29.0580 0x155c nvstor - ok
19:56:29.0586 0x155c [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\Windows\system32\nvvsvc.exe
19:56:29.0617 0x155c nvsvc - ok
19:56:29.0617 0x155c nv_agp - ok
19:56:29.0617 0x155c OneSyncSvc - ok
19:56:29.0617 0x155c p2pimsvc - ok
19:56:29.0630 0x155c p2psvc - ok
19:56:29.0632 0x155c Parport - ok
19:56:29.0634 0x155c partmgr - ok
19:56:29.0636 0x155c PcaSvc - ok
19:56:29.0638 0x155c pci - ok
19:56:29.0640 0x155c pciide - ok
19:56:29.0642 0x155c pcmcia - ok
19:56:29.0644 0x155c pcw - ok
19:56:29.0647 0x155c pdc - ok
19:56:29.0649 0x155c PEAUTH - ok
19:56:29.0651 0x155c PeerDistSvc - ok
19:56:29.0653 0x155c percsas2i - ok
19:56:29.0654 0x155c percsas3i - ok
19:56:29.0672 0x155c PerfHost - ok
19:56:29.0677 0x155c PimIndexMaintenanceSvc - ok
19:56:29.0679 0x155c pla - ok
19:56:29.0681 0x155c PlugPlay - ok
19:56:29.0683 0x155c PNRPAutoReg - ok
19:56:29.0685 0x155c PNRPsvc - ok
19:56:29.0688 0x155c PolicyAgent - ok
19:56:29.0690 0x155c Power - ok
19:56:29.0692 0x155c PptpMiniport - ok
19:56:29.0739 0x155c [ C0B3AD50136FE57C2548BD75CAC49DA2, B5661CE7631C5D1B1C50F36EE66AF6DF2E9E69DA1D9BA7C852E74D206F72D8DB ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
19:56:29.0811 0x155c PrintNotify - ok
19:56:29.0811 0x155c Processor - ok
19:56:29.0811 0x155c ProfSvc - ok
19:56:29.0811 0x155c Psched - ok
19:56:29.0811 0x155c QWAVE - ok
19:56:29.0827 0x155c QWAVEdrv - ok
19:56:29.0827 0x155c RasAcd - ok
19:56:29.0827 0x155c RasAgileVpn - ok
19:56:29.0827 0x155c RasAuto - ok
19:56:29.0827 0x155c Rasl2tp - ok
19:56:29.0827 0x155c RasMan - ok
19:56:29.0827 0x155c RasPppoe - ok
19:56:29.0827 0x155c RasSstp - ok
19:56:29.0842 0x155c rdbss - ok
19:56:29.0842 0x155c rdpbus - ok
19:56:29.0842 0x155c RDPDR - ok
19:56:29.0842 0x155c RdpVideoMiniport - ok
19:56:29.0842 0x155c rdyboost - ok
19:56:29.0842 0x155c ReFSv1 - ok
19:56:29.0858 0x155c RemoteAccess - ok
19:56:29.0858 0x155c RemoteRegistry - ok
19:56:29.0858 0x155c RetailDemo - ok
19:56:29.0858 0x155c RpcEptMapper - ok
19:56:29.0858 0x155c RpcLocator - ok
19:56:29.0858 0x155c RpcSs - ok
19:56:29.0858 0x155c rspndr - ok
19:56:29.0874 0x155c [ DDF3EFB4AD226C61D0ADA6E779E3D968, 5B14B35321F10D974B9F47D60C9DAA527A2C907029C242A6F4214E6012A046DA ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
19:56:29.0874 0x155c RtkAudioService - ok
19:56:29.0874 0x155c s3cap - ok
19:56:29.0889 0x155c SamSs - ok
19:56:29.0889 0x155c sbp2port - ok
19:56:29.0889 0x155c SCardSvr - ok
19:56:29.0889 0x155c ScDeviceEnum - ok
19:56:29.0898 0x155c scfilter - ok
19:56:29.0900 0x155c Schedule - ok
19:56:29.0902 0x155c SCPolicySvc - ok
19:56:29.0904 0x155c sdbus - ok
19:56:29.0906 0x155c SDRSVC - ok
19:56:29.0908 0x155c sdstor - ok
19:56:29.0910 0x155c seclogon - ok
19:56:29.0912 0x155c SENS - ok
19:56:29.0914 0x155c SensorDataService - ok
19:56:29.0917 0x155c SensorService - ok
19:56:29.0919 0x155c SensrSvc - ok
19:56:29.0921 0x155c SerCx - ok
19:56:29.0923 0x155c SerCx2 - ok
19:56:29.0925 0x155c Serenum - ok
19:56:29.0927 0x155c Serial - ok
19:56:29.0929 0x155c sermouse - ok
19:56:29.0934 0x155c SessionEnv - ok
19:56:29.0936 0x155c sfloppy - ok
19:56:29.0939 0x155c SharedAccess - ok
19:56:29.0941 0x155c ShellHWDetection - ok
19:56:29.0943 0x155c SiSRaid2 - ok
19:56:29.0945 0x155c SiSRaid4 - ok
19:56:29.0948 0x155c smphost - ok
19:56:29.0950 0x155c SmsRouter - ok
19:56:29.0953 0x155c SNMPTRAP - ok
19:56:29.0955 0x155c spaceport - ok
19:56:29.0957 0x155c SpbCx - ok
19:56:29.0959 0x155c Spooler - ok
19:56:29.0962 0x155c sppsvc - ok
19:56:29.0964 0x155c srv - ok
19:56:29.0966 0x155c srv2 - ok
19:56:29.0967 0x155c srvnet - ok
19:56:29.0970 0x155c SSDPSRV - ok
19:56:29.0972 0x155c SstpSvc - ok
19:56:29.0977 0x155c [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
19:56:29.0986 0x155c ssudmdm - ok
19:56:29.0988 0x155c StateRepository - ok
19:56:30.0003 0x155c [ 914CE17FE3E542ACFE5ACD6646E2DFDB, B2F443C07686E75A06DD49645C544D792F438EEC8ACE715818775E60FFEFA720 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
19:56:30.0020 0x155c Steam Client Service - ok
19:56:30.0030 0x155c [ 4392321C9F3FB8D6061CCB37E85E588D, 2992E6134E5F18ED25620DC4DE01F1561CBBEAF485EEF59E4446EC12BEED29D0 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:56:30.0040 0x155c Stereo Service - ok
19:56:30.0043 0x155c stexstor - ok
19:56:30.0047 0x155c stisvc - ok
19:56:30.0049 0x155c storahci - ok
19:56:30.0051 0x155c storflt - ok
19:56:30.0053 0x155c stornvme - ok
19:56:30.0055 0x155c storqosflt - ok
19:56:30.0057 0x155c StorSvc - ok
19:56:30.0059 0x155c storufs - ok
19:56:30.0061 0x155c storvsc - ok
19:56:30.0063 0x155c svsvc - ok
19:56:30.0073 0x155c swenum - ok
19:56:30.0075 0x155c swprv - ok
19:56:30.0077 0x155c Synth3dVsc - ok
19:56:30.0079 0x155c SysMain - ok
19:56:30.0081 0x155c SystemEventsBroker - ok
19:56:30.0083 0x155c TabletInputService - ok
19:56:30.0085 0x155c TapiSrv - ok
19:56:30.0087 0x155c Tcpip - ok
19:56:30.0089 0x155c Tcpip6 - ok
19:56:30.0092 0x155c tcpipreg - ok
19:56:30.0095 0x155c tdx - ok
19:56:30.0177 0x155c [ 8305FB462C325A67628E0556DF244B8B, 4ABD5D14E64BE07DD9332E39C3B902A40BD1E763A075F68F0048A7FAEB3019D5 ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
19:56:30.0255 0x155c TeamViewer - ok
19:56:30.0270 0x155c terminpt - ok
19:56:30.0270 0x155c TermService - ok
19:56:30.0270 0x155c Themes - ok
19:56:30.0280 0x155c tiledatamodelsvc - ok
19:56:30.0282 0x155c TimeBroker - ok
19:56:30.0284 0x155c TPM - ok
19:56:30.0286 0x155c TrkWks - ok
19:56:30.0288 0x155c TrustedInstaller - ok
19:56:30.0291 0x155c TsUsbFlt - ok
19:56:30.0293 0x155c TsUsbGD - ok
19:56:30.0296 0x155c tunnel - ok
19:56:30.0298 0x155c uagp35 - ok
19:56:30.0300 0x155c UASPStor - ok
19:56:30.0302 0x155c UcmCx0101 - ok
19:56:30.0304 0x155c UcmUcsi - ok
19:56:30.0306 0x155c Ucx01000 - ok
19:56:30.0308 0x155c UdeCx - ok
19:56:30.0310 0x155c udfs - ok
19:56:30.0312 0x155c UEFI - ok
19:56:30.0314 0x155c Ufx01000 - ok
19:56:30.0316 0x155c UfxChipidea - ok
19:56:30.0318 0x155c ufxsynopsys - ok
19:56:30.0322 0x155c UI0Detect - ok
19:56:30.0324 0x155c uliagpkx - ok
19:56:30.0326 0x155c umbus - ok
19:56:30.0328 0x155c UmPass - ok
19:56:30.0331 0x155c UmRdpService - ok
19:56:30.0333 0x155c UnistoreSvc - ok
19:56:30.0337 0x155c upnphost - ok
19:56:30.0339 0x155c UrsChipidea - ok
19:56:30.0341 0x155c UrsCx01000 - ok
19:56:30.0343 0x155c UrsSynopsys - ok
19:56:30.0345 0x155c usbccgp - ok
19:56:30.0348 0x155c usbcir - ok
19:56:30.0350 0x155c usbehci - ok
19:56:30.0352 0x155c usbhub - ok
19:56:30.0354 0x155c USBHUB3 - ok
19:56:30.0356 0x155c usbohci - ok
19:56:30.0358 0x155c usbprint - ok
19:56:30.0361 0x155c usbser - ok
19:56:30.0363 0x155c USBSTOR - ok
19:56:30.0365 0x155c usbuhci - ok
19:56:30.0367 0x155c USBXHCI - ok
19:56:30.0369 0x155c UserDataSvc - ok
19:56:30.0373 0x155c UserManager - ok
19:56:30.0375 0x155c UsoSvc - ok
19:56:30.0377 0x155c VaultSvc - ok
19:56:30.0381 0x155c VBoxAswDrv - ok
19:56:30.0383 0x155c vdrvroot - ok
19:56:30.0385 0x155c vds - ok
19:56:30.0387 0x155c VerifierExt - ok
19:56:30.0389 0x155c vhdmp - ok
19:56:30.0391 0x155c vhf - ok
19:56:30.0394 0x155c vmbus - ok
19:56:30.0396 0x155c VMBusHID - ok
19:56:30.0398 0x155c vmicguestinterface - ok
19:56:30.0400 0x155c vmicheartbeat - ok
19:56:30.0402 0x155c vmickvpexchange - ok
19:56:30.0404 0x155c vmicrdv - ok
19:56:30.0406 0x155c vmicshutdown - ok
19:56:30.0408 0x155c vmictimesync - ok
19:56:30.0411 0x155c vmicvmsession - ok
19:56:30.0413 0x155c vmicvss - ok
19:56:30.0415 0x155c volmgr - ok
19:56:30.0417 0x155c volmgrx - ok
19:56:30.0419 0x155c volsnap - ok
19:56:30.0421 0x155c vpci - ok
19:56:30.0423 0x155c vsmraid - ok
19:56:30.0425 0x155c VSS - ok
19:56:30.0427 0x155c VSTXRAID - ok
19:56:30.0430 0x155c vwifibus - ok
19:56:30.0432 0x155c vwififlt - ok
19:56:30.0434 0x155c W32Time - ok
19:56:30.0436 0x155c WacomPen - ok
19:56:30.0439 0x155c WalletService - ok
19:56:30.0441 0x155c wanarp - ok
19:56:30.0443 0x155c wanarpv6 - ok
19:56:30.0445 0x155c wbengine - ok
19:56:30.0447 0x155c WbioSrvc - ok
19:56:30.0450 0x155c Wcmsvc - ok
19:56:30.0452 0x155c wcncsvc - ok
19:56:30.0454 0x155c WcsPlugInService - ok
19:56:30.0456 0x155c WdBoot - ok
19:56:30.0458 0x155c Wdf01000 - ok
19:56:30.0460 0x155c WdFilter - ok
19:56:30.0463 0x155c WdiServiceHost - ok
19:56:30.0465 0x155c WdiSystemHost - ok
19:56:30.0467 0x155c wdiwifi - ok
19:56:30.0470 0x155c WdNisDrv - ok
19:56:30.0472 0x155c WdNisSvc - ok
19:56:30.0474 0x155c WebClient - ok
19:56:30.0476 0x155c Wecsvc - ok
19:56:30.0479 0x155c WEPHOSTSVC - ok
19:56:30.0481 0x155c wercplsupport - ok
19:56:30.0483 0x155c WerSvc - ok
19:56:30.0486 0x155c wfpcapture - ok
19:56:30.0488 0x155c WFPLWFS - ok
19:56:30.0490 0x155c WiaRpc - ok
19:56:30.0493 0x155c WIMMount - ok
19:56:30.0494 0x155c WinDefend - ok
19:56:30.0500 0x155c WindowsTrustedRT - ok
19:56:30.0502 0x155c WindowsTrustedRTProxy - ok
19:56:30.0504 0x155c WinHttpAutoProxySvc - ok
19:56:30.0506 0x155c WinMad - ok
19:56:30.0511 0x155c Winmgmt - ok
19:56:30.0514 0x155c WinRM - ok
19:56:30.0518 0x155c WINUSB - ok
19:56:30.0520 0x155c WinVerbs - ok
19:56:30.0522 0x155c WlanSvc - ok
19:56:30.0525 0x155c wlidsvc - ok
19:56:30.0526 0x155c WmiAcpi - ok
19:56:30.0530 0x155c wmiApSrv - ok
19:56:30.0532 0x155c WMPNetworkSvc - ok
19:56:30.0535 0x155c Wof - ok
19:56:30.0538 0x155c workfolderssvc - ok
19:56:30.0540 0x155c wpcfltr - ok
19:56:30.0542 0x155c WPDBusEnum - ok
19:56:30.0545 0x155c WpdUpFltr - ok
19:56:30.0548 0x155c WpnService - ok
19:56:30.0550 0x155c ws2ifsl - ok
19:56:30.0552 0x155c wscsvc - ok
19:56:30.0555 0x155c WSearch - ok
19:56:30.0558 0x155c WSService - ok
19:56:30.0560 0x155c wuauserv - ok
19:56:30.0563 0x155c WudfPf - ok
19:56:30.0565 0x155c WUDFRd - ok
19:56:30.0568 0x155c wudfsvc - ok
19:56:30.0569 0x155c WUDFWpdFs - ok
19:56:30.0572 0x155c WUDFWpdMtp - ok
19:56:30.0574 0x155c WwanSvc - ok
19:56:30.0577 0x155c XblAuthManager - ok
19:56:30.0579 0x155c XblGameSave - ok
19:56:30.0581 0x155c xboxgip - ok
19:56:30.0584 0x155c XboxNetApiSvc - ok
19:56:30.0586 0x155c xinputhid - ok
19:56:30.0587 0x155c ================ Scan global ===============================
19:56:30.0596 0x155c [ Global ] - ok
19:56:30.0596 0x155c ================ Scan MBR ==================================
19:56:30.0597 0x155c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:56:30.0673 0x155c \Device\Harddisk0\DR0 - ok
19:56:30.0674 0x155c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:56:30.0754 0x155c \Device\Harddisk1\DR1 - ok
19:56:30.0754 0x155c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
19:56:30.0816 0x155c \Device\Harddisk2\DR2 - ok
19:56:30.0816 0x155c ================ Scan VBR ==================================
19:56:30.0832 0x155c [ A474B8F88A25F8A50D69D285DEC28FB6 ] \Device\Harddisk0\DR0\Partition1
19:56:30.0832 0x155c \Device\Harddisk0\DR0\Partition1 - ok
19:56:30.0832 0x155c [ 55DAE4C75034052ECA155E034EDC0813 ] \Device\Harddisk0\DR0\Partition2
19:56:30.0832 0x155c \Device\Harddisk0\DR0\Partition2 - ok
19:56:30.0832 0x155c [ C1B12D474FB56019A9DC6F54CCFB99FB ] \Device\Harddisk1\DR1\Partition1
19:56:30.0882 0x155c \Device\Harddisk1\DR1\Partition1 - ok
19:56:30.0882 0x155c [ 208AA926EC4D16F4F42269DBE4A4B6DE ] \Device\Harddisk1\DR1\Partition2
19:56:30.0913 0x155c \Device\Harddisk1\DR1\Partition2 - ok
19:56:30.0913 0x155c [ 662F76C5765FF109AB1FF49CD3FF8837 ] \Device\Harddisk2\DR2\Partition1
19:56:30.0929 0x155c \Device\Harddisk2\DR2\Partition1 - ok
19:56:30.0960 0x155c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk2\DR2\Partition2
19:56:30.0960 0x155c \Device\Harddisk2\DR2\Partition2 - ok
19:56:30.0960 0x155c [ 31CDA3306D63F3E5606A90E28963A109 ] \Device\Harddisk2\DR2\Partition3
19:56:31.0009 0x155c \Device\Harddisk2\DR2\Partition3 - ok
19:56:31.0009 0x155c ================ Scan generic autorun ======================
19:56:31.0267 0x155c [ 65E8545F1297CD83534C354A7BED1848, 19B3F3C17A335837454DC1851C6436D0BB2D8B1595AEB4DC71265FB20868B48F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:56:31.0470 0x155c RtHDVCpl - ok
19:56:31.0495 0x155c [ AA36B62EC778855807AAA5801C3BB204, B63CA0F34014E6278912608E06B78556341F3919F2BC62644A5B3B76642D668D ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
19:56:31.0527 0x155c NvBackend - ok
19:56:31.0527 0x155c [ 1907517A11D41C24BD3A8F9137E334B7, 18AC567D9F1284B5CF60D5E98759D691E1BB1DE2637E55CEBEE88C1B68C10CD9 ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
19:56:31.0542 0x155c IMSS - ok
19:56:31.0636 0x155c [ 123CE08362EE48BBA7F9F1D7EB50F24F, B78A49B186475805D7022E22AE163C535F3594F62CEA2759547EC514FA6CBFCC ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
19:56:31.0733 0x155c AvastUI.exe - ok
19:56:31.0748 0x155c [ F916BA0DA28A4B4F7B1ADE76EB42F088, FB3C91D44709D039E959B275F6ECE26AF9307D272FE3E25CC41EAC259AA3B596 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
19:56:31.0755 0x155c SunJavaUpdateSched - ok
19:56:31.0771 0x155c OneDriveSetup - ok
19:56:31.0771 0x155c OneDriveSetup - ok
19:56:31.0786 0x155c [ B8C7C0888808EBFA8CE772B5E5CAB623, 359995885A7079D50329D769AFBFD1C0C3F6A77B05C7B54B193E0B52F6B74CCB ] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
19:56:31.0802 0x155c GoogleChromeAutoLaunch_7DCB6618398493FAB54700F5A3F17DEB - ok
19:56:31.0927 0x155c [ AA12056CF4286DAA1D0FD6D592E4F980, 7C1A324371B4D18293A00F157EB732B4F932DF6B41F4CCDDCA2F6A26B9F4B999 ] F:\Steam\steam.exe
19:56:31.0989 0x155c Steam - ok
19:56:32.0005 0x155c [ C2D2FFD27F46815951C9562F0A2EC864, 892A5DC5C3D797E3FD36230710BA9AF43ADA5CDFD19A03268D20D5A9DA3CCB3A ] C:\Users\chris\AppData\Local\Microsoft\OneDrive\OneDrive.exe
19:56:32.0021 0x155c OneDrive - ok
19:56:32.0146 0x155c [ 15914F30482983E349FF9544B2DCAF11, 457833C665AB340D6DEE6B489947EE2D5202D4C93097C194A9DF196AFE4E4898 ] C:\Program Files\CCleaner\CCleaner64.exe
19:56:32.0286 0x155c CCleaner Monitoring - ok
19:56:32.0286 0x155c Waiting for KSN requests completion. In queue: 42
19:56:33.0310 0x155c Waiting for KSN requests completion. In queue: 42
19:56:34.0326 0x155c Waiting for KSN requests completion. In queue: 42
19:56:34.0857 0x1764 Object required for P2P: [ 11120878E5276B367E1A10FF8C9B595B ] avast! Antivirus
19:56:35.0326 0x155c Waiting for KSN requests completion. In queue: 33
19:56:36.0326 0x155c Waiting for KSN requests completion. In queue: 33
19:56:37.0341 0x155c Waiting for KSN requests completion. In queue: 33
19:56:37.0513 0x1764 Object send P2P result: true
19:56:37.0529 0x1764 Object required for P2P: [ 8305FB462C325A67628E0556DF244B8B ] TeamViewer
19:56:38.0348 0x155c Waiting for KSN requests completion. In queue: 10
19:56:39.0363 0x155c Waiting for KSN requests completion. In queue: 10
19:56:39.0988 0x1764 Object send P2P result: true
19:56:40.0004 0x1764 Object required for P2P: [ 15914F30482983E349FF9544B2DCAF11 ] C:\Program Files\CCleaner\CCleaner64.exe
19:56:40.0366 0x155c Waiting for KSN requests completion. In queue: 1
19:56:41.0382 0x155c Waiting for KSN requests completion. In queue: 1
19:56:42.0389 0x155c Waiting for KSN requests completion. In queue: 1
19:56:42.0467 0x1764 Object send P2P result: true
19:56:43.0424 0x155c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.16384 ), 0x60100 ( disabled : updated )
19:56:43.0424 0x155c AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.4.2233.1299 ), 0x41000 ( enabled : updated )
19:56:43.0424 0x155c Win FW state via NFP2: enabled ( trusted )
19:56:45.0876 0x155c ============================================================
19:56:45.0876 0x155c Scan finished
19:56:45.0876 0x155c ============================================================
19:56:45.0891 0x11f4 Detected object count: 0
19:56:45.0891 0x11f4 Actual detected object count: 0 |