Hallo,
ich hatte nicht den Eindruck, dass der Miarbeiter von Norton Ahnung hatte von dem was er tut. Er hat es auf jeden Fall ziemlich oft probiert Norten neu zu installieren, ohne großen Erfolg. So ich hab das Uinstall Tool im abgesicherten Modus ausgeführt. Ist auch soweit fehlerfrei durchgelaufen.
Hier der Fixlog: Code:
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:24-02-2016
durchgeführt von Admin (2016-02-27 11:51:12) Run:1
Gestartet von C:\Users\Admin\Desktop
Geladene Profile: Admin (Verfügbare Profile: Admin & DefaultAppPool)
Start-Modus: Normal
==============================================
fixlist Inhalt:
*****************
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec*.lnk
*****************
=========== "C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec*.lnk" ==========
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (10).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (2).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (3).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (4).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (5).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (6).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (7).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (8).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec (9).lnk => erfolgreich verschoben
C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec.lnk => erfolgreich verschoben
========= Ende -> "C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symantec*.lnk" ========
==== Ende von Fixlog 11:51:12 ==== Rootkits wurden Gott sei dank keine gefunden hier der Report: Code:
11:53:57.0145 0x1b3c TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
11:54:01.0410 0x1b3c ============================================================
11:54:01.0410 0x1b3c Current date / time: 2016/02/27 11:54:01.0410
11:54:01.0410 0x1b3c SystemInfo:
11:54:01.0410 0x1b3c
11:54:01.0411 0x1b3c OS Version: 10.0.10586 ServicePack: 0.0
11:54:01.0411 0x1b3c Product type: Workstation
11:54:01.0411 0x1b3c ComputerName: ADMIN-PC
11:54:01.0411 0x1b3c UserName: Admin
11:54:01.0411 0x1b3c Windows directory: C:\WINDOWS
11:54:01.0411 0x1b3c System windows directory: C:\WINDOWS
11:54:01.0411 0x1b3c Running under WOW64
11:54:01.0411 0x1b3c Processor architecture: Intel x64
11:54:01.0411 0x1b3c Number of processors: 4
11:54:01.0411 0x1b3c Page size: 0x1000
11:54:01.0411 0x1b3c Boot type: Normal boot
11:54:01.0411 0x1b3c ============================================================
11:54:01.0877 0x1b3c KLMD registered as C:\WINDOWS\system32\drivers\83047933.sys
11:54:02.0633 0x1b3c System UUID: {FA7F67B2-09A3-7EBB-44B6-5ABA34BB06AF}
11:54:03.0205 0x1b3c Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:54:03.0543 0x1b3c ============================================================
11:54:03.0543 0x1b3c \Device\Harddisk0\DR0:
11:54:03.0565 0x1b3c MBR partitions:
11:54:03.0565 0x1b3c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:54:03.0565 0x1b3c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xE8CF4000
11:54:03.0565 0x1b3c ============================================================
11:54:03.0637 0x1b3c C: <-> \Device\Harddisk0\DR0\Partition2
11:54:03.0637 0x1b3c ============================================================
11:54:03.0637 0x1b3c Initialize success
11:54:03.0637 0x1b3c ============================================================
11:55:27.0270 0x09d8 ============================================================
11:55:27.0270 0x09d8 Scan started
11:55:27.0270 0x09d8 Mode: Manual; SigCheck; TDLFS;
11:55:27.0270 0x09d8 ============================================================
11:55:27.0270 0x09d8 KSN ping started
11:55:29.0613 0x09d8 KSN ping finished: true
11:55:31.0348 0x09d8 ================ Scan system memory ========================
11:55:31.0348 0x09d8 System memory - ok
11:55:31.0348 0x09d8 ================ Scan services =============================
11:55:31.0473 0x09d8 1394ohci - ok
11:55:31.0488 0x09d8 3ware - ok
11:55:31.0488 0x09d8 ACPI - ok
11:55:31.0504 0x09d8 acpiex - ok
11:55:31.0504 0x09d8 acpipagr - ok
11:55:31.0520 0x09d8 AcpiPmi - ok
11:55:31.0520 0x09d8 acpitime - ok
11:55:31.0535 0x09d8 ADP80XX - ok
11:55:31.0551 0x09d8 AFD - ok
11:55:31.0551 0x09d8 agp440 - ok
11:55:31.0551 0x09d8 ahcache - ok
11:55:31.0551 0x09d8 AJRouter - ok
11:55:31.0567 0x09d8 ALG - ok
11:55:31.0567 0x09d8 AmdK8 - ok
11:55:31.0567 0x09d8 AmdPPM - ok
11:55:31.0582 0x09d8 amdsata - ok
11:55:31.0582 0x09d8 amdsbs - ok
11:55:31.0582 0x09d8 amdxata - ok
11:55:31.0629 0x09d8 AppHostSvc - ok
11:55:31.0645 0x09d8 AppID - ok
11:55:31.0645 0x09d8 AppIDSvc - ok
11:55:31.0660 0x09d8 Appinfo - ok
11:55:31.0660 0x09d8 AppMgmt - ok
11:55:31.0676 0x09d8 AppReadiness - ok
11:55:31.0676 0x09d8 AppXSvc - ok
11:55:31.0692 0x09d8 arcsas - ok
11:55:31.0738 0x09d8 aspnet_state - ok
11:55:31.0738 0x09d8 AsyncMac - ok
11:55:31.0754 0x09d8 atapi - ok
11:55:31.0770 0x09d8 AudioEndpointBuilder - ok
11:55:31.0770 0x09d8 Audiosrv - ok
11:55:31.0770 0x09d8 AxInstSV - ok
11:55:31.0785 0x09d8 b06bdrv - ok
11:55:31.0801 0x09d8 BasicDisplay - ok
11:55:31.0817 0x09d8 BasicRender - ok
11:55:31.0817 0x09d8 bcmfn - ok
11:55:31.0817 0x09d8 bcmfn2 - ok
11:55:31.0817 0x09d8 BDESVC - ok
11:55:31.0832 0x09d8 Beep - ok
11:55:31.0832 0x09d8 BFE - ok
11:55:31.0879 0x09d8 BITS - ok
11:55:31.0910 0x09d8 bowser - ok
11:55:31.0910 0x09d8 BrokerInfrastructure - ok
11:55:31.0910 0x09d8 Browser - ok
11:55:32.0051 0x09d8 [ 910B5BF2353D5D982D2F6B8F6454A00A, E27A0E9EDF50A935E83F4D5BD86C9B9B297F1B8193AFB7C28313B28B5A4B27A5 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
11:55:32.0129 0x09d8 BstHdAndroidSvc - ok
11:55:32.0145 0x09d8 [ 6A4D927BDEE8D9944FAA0012AF7AD232, F0B8642FB02628899CCE526A59A18E0A89456AA2385E82CD97B25CFC64C0E92E ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
11:55:32.0192 0x09d8 BstHdDrv - ok
11:55:32.0223 0x09d8 [ 95B960980034877821E7FB5BFE25136E, 64EA26E9E94767C9EBEEF26FEEAA3176BB7787785F5F20CB8BBB4C75F45AAAA1 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
11:55:32.0395 0x09d8 BstHdLogRotatorSvc - ok
11:55:32.0457 0x09d8 [ 5EBFF8D302047F4709F3A4F1231236E9, 84010BB25C4C029C03C98853E8AC75F103D1F34922B0643ECD758CE21E7DE4A6 ] BstHdUpdaterSvc C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
11:55:32.0504 0x09d8 BstHdUpdaterSvc - ok
11:55:32.0535 0x09d8 BthAvrcpTg - ok
11:55:32.0551 0x09d8 BthHFEnum - ok
11:55:32.0551 0x09d8 bthhfhid - ok
11:55:32.0567 0x09d8 BthHFSrv - ok
11:55:32.0567 0x09d8 BTHMODEM - ok
11:55:32.0567 0x09d8 bthserv - ok
11:55:32.0582 0x09d8 buttonconverter - ok
11:55:32.0598 0x09d8 CapImg - ok
11:55:32.0598 0x09d8 cdfs - ok
11:55:32.0598 0x09d8 CDPSvc - ok
11:55:32.0613 0x09d8 cdrom - ok
11:55:32.0613 0x09d8 CertPropSvc - ok
11:55:32.0613 0x09d8 circlass - ok
11:55:32.0613 0x09d8 CLFS - ok
11:55:32.0629 0x09d8 ClipSVC - ok
11:55:32.0629 0x09d8 CmBatt - ok
11:55:32.0645 0x09d8 CNG - ok
11:55:32.0645 0x09d8 cnghwassist - ok
11:55:32.0692 0x09d8 CompositeBus - ok
11:55:32.0692 0x09d8 COMSysApp - ok
11:55:32.0692 0x09d8 condrv - ok
11:55:32.0692 0x09d8 CoreMessagingRegistrar - ok
11:55:32.0754 0x09d8 [ 137BC921135ECDA3E9917B56E3550D32, 6585F4FFEAB32583B867A14F7B7C09C563B1EA715AD9C3B850A7965C54A819A0 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
11:55:32.0988 0x09d8 cphs - ok
11:55:33.0004 0x09d8 CryptSvc - ok
11:55:33.0020 0x09d8 CSC - ok
11:55:33.0020 0x09d8 CscService - ok
11:55:33.0160 0x09d8 [ B4D1D62A09F09CB2DFD55628350CDAFB, 7DD3CE77D88B5AFAC4B6187F4CA6D50B7BD3398207163B2A1E4C76467801FF28 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
11:55:33.0192 0x09d8 cvhsvc - ok
11:55:33.0192 0x09d8 dam - ok
11:55:33.0192 0x09d8 DcomLaunch - ok
11:55:33.0192 0x09d8 DcpSvc - ok
11:55:33.0207 0x09d8 defragsvc - ok
11:55:33.0207 0x09d8 DeviceAssociationService - ok
11:55:33.0223 0x09d8 DeviceInstall - ok
11:55:33.0223 0x09d8 DevQueryBroker - ok
11:55:33.0238 0x09d8 Dfsc - ok
11:55:33.0238 0x09d8 Dhcp - ok
11:55:33.0301 0x09d8 diagnosticshub.standardcollector.service - ok
11:55:33.0301 0x09d8 DiagTrack - ok
11:55:33.0317 0x09d8 disk - ok
11:55:33.0332 0x09d8 DmEnrollmentSvc - ok
11:55:33.0332 0x09d8 dmvsc - ok
11:55:33.0332 0x09d8 dmwappushservice - ok
11:55:33.0332 0x09d8 Dnscache - ok
11:55:33.0348 0x09d8 dot3svc - ok
11:55:33.0348 0x09d8 DPS - ok
11:55:33.0395 0x09d8 drmkaud - ok
11:55:33.0395 0x09d8 DsmSvc - ok
11:55:33.0410 0x09d8 DsSvc - ok
11:55:33.0442 0x09d8 DXGKrnl - ok
11:55:33.0442 0x09d8 Eaphost - ok
11:55:33.0442 0x09d8 ebdrv - ok
11:55:33.0457 0x09d8 EFS - ok
11:55:33.0457 0x09d8 EhStorClass - ok
11:55:33.0473 0x09d8 EhStorTcgDrv - ok
11:55:33.0488 0x09d8 embeddedmode - ok
11:55:33.0488 0x09d8 EntAppSvc - ok
11:55:33.0488 0x09d8 ErrDev - ok
11:55:33.0520 0x09d8 EventSystem - ok
11:55:33.0520 0x09d8 exfat - ok
11:55:33.0520 0x09d8 fastfat - ok
11:55:33.0520 0x09d8 Fax - ok
11:55:33.0520 0x09d8 fdc - ok
11:55:33.0535 0x09d8 fdPHost - ok
11:55:33.0535 0x09d8 FDResPub - ok
11:55:33.0535 0x09d8 fhsvc - ok
11:55:33.0567 0x09d8 FileCrypt - ok
11:55:33.0567 0x09d8 FileInfo - ok
11:55:33.0567 0x09d8 Filetrace - ok
11:55:33.0567 0x09d8 flpydisk - ok
11:55:33.0582 0x09d8 FltMgr - ok
11:55:33.0598 0x09d8 FontCache - ok
11:55:33.0692 0x09d8 FontCache3.0.0.0 - ok
11:55:33.0707 0x09d8 FsDepends - ok
11:55:33.0707 0x09d8 Fs_Rec - ok
11:55:33.0723 0x09d8 fvevol - ok
11:55:33.0723 0x09d8 gagp30kx - ok
11:55:33.0848 0x09d8 [ 6D18B1088696CF96CBEBD31B8A519BD4, 4B47EECD18C12749FBEFA9C20B466F1A501F238166BBAE5B1793C918305A3348 ] GalaxyClientService C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe
11:55:33.0942 0x09d8 GalaxyClientService - ok
11:55:34.0207 0x09d8 [ C6B53600271EA23A03D5C23316407013, A2B672134EC6415D689F5F1BDF0500B876CB3BA2BA022E4C7FF4C15215AF7BC2 ] GalaxyCommunication C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
11:55:34.0629 0x09d8 GalaxyCommunication - ok
11:55:34.0660 0x09d8 gencounter - ok
11:55:34.0676 0x09d8 genericusbfn - ok
11:55:34.0848 0x09d8 [ 061CC5C12C39899D7398CFEBFD19F69F, 62319596863A74665FA801C305C952A0F20AAA0F1CDC2195F2F69D662790C80B ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
11:55:34.0895 0x09d8 GfExperienceService - ok
11:55:34.0895 0x09d8 GPIOClx0101 - ok
11:55:34.0926 0x09d8 gpsvc - ok
11:55:34.0926 0x09d8 GpuEnergyDrv - ok
11:55:34.0926 0x09d8 HDAudBus - ok
11:55:34.0926 0x09d8 HidBatt - ok
11:55:34.0926 0x09d8 HidBth - ok
11:55:34.0926 0x09d8 hidi2c - ok
11:55:34.0942 0x09d8 hidinterrupt - ok
11:55:34.0942 0x09d8 HidIr - ok
11:55:34.0942 0x09d8 hidserv - ok
11:55:34.0942 0x09d8 HidUsb - ok
11:55:34.0957 0x09d8 HomeGroupListener - ok
11:55:34.0957 0x09d8 HomeGroupProvider - ok
11:55:34.0957 0x09d8 HpSAMD - ok
11:55:34.0988 0x09d8 HTTP - ok
11:55:34.0988 0x09d8 hwpolicy - ok
11:55:34.0988 0x09d8 hyperkbd - ok
11:55:35.0004 0x09d8 i8042prt - ok
11:55:35.0004 0x09d8 iai2c - ok
11:55:35.0004 0x09d8 iaLPSS2i_I2C - ok
11:55:35.0004 0x09d8 iaLPSSi_GPIO - ok
11:55:35.0004 0x09d8 iaLPSSi_I2C - ok
11:55:35.0082 0x09d8 [ FA4C48E36F0B24E7E33D3E7E1844B9C9, F61F448B8E305DEFDDA5D4A6FC4E57C798C11ED4DA0ACB885847DC8A9A7B4E98 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
11:55:35.0098 0x09d8 iaStorA - ok
11:55:35.0098 0x09d8 iaStorAV - ok
11:55:35.0160 0x09d8 [ D5854F77CEEAFC5A8405F8ECCBEC09DF, 06D94EAF55787F807FB40E95011E90B0A719AC1A1529C2C110C1EABC5BE02C5B ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
11:55:35.0223 0x09d8 IAStorDataMgrSvc - ok
11:55:35.0223 0x09d8 iaStorV - ok
11:55:35.0223 0x09d8 ibbus - ok
11:55:35.0238 0x09d8 icssvc - ok
11:55:35.0301 0x09d8 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
11:55:35.0379 0x09d8 IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
11:55:37.0723 0x09d8 Detect skipped due to KSN trusted
11:55:37.0723 0x09d8 IDriverT - ok
11:55:37.0723 0x09d8 IEEtwCollectorService - ok
11:55:37.0942 0x09d8 [ 34E103A5EFF7EADA5ADE6D61294FAA7F, 29AFF3C2C03D75B55D124EBA35534C1D7E2115748C23EAC79CF0FA6CBC994C1F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
11:55:38.0270 0x09d8 igfx - ok
11:55:38.0301 0x09d8 [ 078DE1A9D9DB0BB617D4DCF1EF925928, 6E197785DE6F83FAB5E049F24CCC3838BB9B9EB20240BD48A2768103172B6242 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
11:55:38.0348 0x09d8 igfxCUIService2.0.0.0 - ok
11:55:38.0364 0x09d8 IKEEXT - ok
11:55:38.0504 0x09d8 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
11:55:38.0598 0x09d8 IntcAzAudAddService - ok
11:55:38.0613 0x09d8 [ 47577F77C8DD9CF4265B944CAFE1F172, A3F48F01ECFDF8E609D26754E517C06AD6382DA231F42BF64B6746D50F02FC6A ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
11:55:38.0645 0x09d8 IntcDAud - ok
11:55:38.0676 0x09d8 [ DDA8E5AD97231AB50B81FED04C28F64C, 5C9E8F7CC45A9AE7FF12A02641562E271D84894DFA7C50218AC2AAA298251B60 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
11:55:39.0176 0x09d8 Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
11:55:40.0489 0x17c8 Object required for P2P: [ C6B53600271EA23A03D5C23316407013 ] GalaxyCommunication
11:55:41.0520 0x09d8 Detect skipped due to KSN trusted
11:55:41.0520 0x09d8 Intel(R) Capability Licensing Service Interface - ok
11:55:41.0582 0x09d8 [ 86FE509640D77FB0998FC8B1FF5523C6, 13E895DEB9B84379251699D7E52C5E3FD888994425DE01B6C4634F9E959D5584 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
11:55:42.0207 0x09d8 Intel(R) Capability Licensing Service TCP IP Interface - ok
11:55:42.0207 0x09d8 intelide - ok
11:55:42.0223 0x09d8 intelpep - ok
11:55:42.0223 0x09d8 intelppm - ok
11:55:42.0223 0x09d8 IoQos - ok
11:55:42.0239 0x09d8 IpFilterDriver - ok
11:55:42.0239 0x09d8 iphlpsvc - ok
11:55:42.0270 0x09d8 IPMIDRV - ok
11:55:42.0270 0x09d8 IPNAT - ok
11:55:42.0270 0x09d8 IRENUM - ok
11:55:42.0270 0x09d8 isapnp - ok
11:55:42.0270 0x09d8 iScsiPrt - ok
11:55:42.0332 0x09d8 [ BF5D3A2624177C413680DEF19A465AF8, B9909D3E6CB6F9971293116387865AD15CB9D47513C7FAA9C36BE4D2847A41EB ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
11:55:42.0410 0x09d8 jhi_service - ok
11:55:42.0426 0x09d8 kbdclass - ok
11:55:42.0426 0x09d8 kbdhid - ok
11:55:42.0426 0x09d8 kdnic - ok
11:55:42.0426 0x09d8 KeyIso - ok
11:55:42.0426 0x09d8 KSecDD - ok
11:55:42.0457 0x09d8 KSecPkg - ok
11:55:42.0457 0x09d8 ksthunk - ok
11:55:42.0473 0x09d8 KtmRm - ok
11:55:42.0473 0x09d8 LanmanServer - ok
11:55:42.0489 0x09d8 LanmanWorkstation - ok
11:55:42.0489 0x09d8 lfsvc - ok
11:55:42.0489 0x09d8 LicenseManager - ok
11:55:42.0535 0x09d8 [ 8E4CA9AFD55EF6B509C80A8715ABF8C6, 45698605D17285D346D2052607AEF492EBD89E9625367C31584C7C84757EEFE0 ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys
11:55:42.0754 0x09d8 lirsgt - ok
11:55:42.0754 0x09d8 lltdio - ok
11:55:42.0754 0x09d8 lltdsvc - ok
11:55:42.0770 0x09d8 lmhosts - ok
11:55:42.0817 0x09d8 [ 02A9CBACE666877BBBA4FD66B22F6D4A, 0E783BA7A8F00CEC8F03CFEE03999CA5DB9E4DB7CCE62D9171CFCF36AFBE4BB1 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:55:42.0832 0x09d8 LMS - ok
11:55:42.0832 0x09d8 LSI_SAS - ok
11:55:42.0864 0x09d8 LSI_SAS2i - ok
11:55:42.0864 0x09d8 LSI_SAS3i - ok
11:55:42.0864 0x09d8 LSI_SSS - ok
11:55:42.0864 0x09d8 LSM - ok
11:55:42.0879 0x09d8 luafv - ok
11:55:42.0895 0x09d8 MapsBroker - ok
11:55:42.0957 0x17c8 Object send P2P result: true
11:55:42.0957 0x09d8 [ A8D28D5B3E2A528D1EF0E338E44F2820, 40D1EFDD253BC0A0D984A5AD8A2721C3E83B15F14D538204714E6D5B00D92CEB ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
11:55:42.0973 0x09d8 MBAMProtector - ok
11:55:43.0067 0x09d8 [ 301E3FDFCF33640BB8763BA444BC5093, 362B069BB9A313A06B376CE27E6F7F8D569F6CA39A8ABC96D9DF231EE462C604 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
11:55:43.0098 0x09d8 MBAMScheduler - ok
11:55:43.0129 0x09d8 [ 83C982A395D00BAFF6515FB38424EA76, 0E1B66F84A483D47550347D4A9426B95A066DB5104C4284F606A16768A11DB0C ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
11:55:43.0145 0x09d8 MBAMService - ok
11:55:43.0176 0x09d8 [ 85CFE7AB85B43B6B7AC7961AA3983A9F, 4E88B75818FD00C0ABBDF8E02EBFB550A67B46E5E13D3B3DF52611793F7DA0DD ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
11:55:43.0176 0x09d8 MBAMWebAccessControl - ok
11:55:43.0176 0x09d8 megasas - ok
11:55:43.0176 0x09d8 megasr - ok
11:55:43.0223 0x09d8 [ 2BB3EAE2EA641515D4B205CAB29E1624, D3F18EE393EB1B0F919484281269A3C55A092D023E62C59D74CB63A55612024B ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
11:55:43.0239 0x09d8 MEIx64 - ok
11:55:43.0270 0x09d8 MessagingService - ok
11:55:43.0332 0x09d8 mlx4_bus - ok
11:55:43.0332 0x09d8 MMCSS - ok
11:55:43.0332 0x09d8 Modem - ok
11:55:43.0348 0x09d8 monitor - ok
11:55:43.0348 0x09d8 mouclass - ok
11:55:43.0348 0x09d8 mouhid - ok
11:55:43.0348 0x09d8 mountmgr - ok
11:55:43.0395 0x09d8 [ 5961C5D8EDD2E2A3B99F1782AE1AC21F, C383A4724A335737C4C7C3211AFCFB82D373267EC634BC47EE078A1C66E1F62A ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:55:43.0489 0x09d8 MozillaMaintenance - ok
11:55:43.0489 0x09d8 mpsdrv - ok
11:55:43.0504 0x09d8 MpsSvc - ok
11:55:43.0520 0x09d8 MQAC - ok
11:55:43.0520 0x09d8 MRxDAV - ok
11:55:43.0520 0x09d8 mrxsmb - ok
11:55:43.0551 0x09d8 mrxsmb10 - ok
11:55:43.0567 0x09d8 mrxsmb20 - ok
11:55:43.0567 0x09d8 MsBridge - ok
11:55:43.0598 0x09d8 MSDTC - ok
11:55:43.0614 0x09d8 Msfs - ok
11:55:43.0629 0x09d8 msgpiowin32 - ok
11:55:43.0629 0x09d8 mshidkmdf - ok
11:55:43.0629 0x09d8 mshidumdf - ok
11:55:43.0645 0x09d8 msisadrv - ok
11:55:43.0660 0x09d8 MSiSCSI - ok
11:55:43.0660 0x09d8 msiserver - ok
11:55:43.0660 0x09d8 MSKSSRV - ok
11:55:43.0660 0x09d8 MsLldp - ok
11:55:43.0676 0x09d8 MSMQ - ok
11:55:43.0676 0x09d8 MSPCLOCK - ok
11:55:43.0676 0x09d8 MSPQM - ok
11:55:43.0676 0x09d8 MsRPC - ok
11:55:43.0676 0x09d8 mssmbios - ok
11:55:43.0676 0x09d8 MSTEE - ok
11:55:43.0692 0x09d8 MTConfig - ok
11:55:43.0692 0x09d8 Mup - ok
11:55:43.0692 0x09d8 mvumis - ok
11:55:43.0692 0x09d8 NativeWifiP - ok
11:55:43.0692 0x09d8 NcaSvc - ok
11:55:43.0707 0x09d8 NcbService - ok
11:55:43.0707 0x09d8 NcdAutoSetup - ok
11:55:43.0707 0x09d8 ndfltr - ok
11:55:43.0707 0x09d8 NDIS - ok
11:55:43.0707 0x09d8 NdisCap - ok
11:55:43.0707 0x09d8 NdisImPlatform - ok
11:55:43.0707 0x09d8 NdisTapi - ok
11:55:43.0707 0x09d8 Ndisuio - ok
11:55:43.0723 0x09d8 NdisVirtualBus - ok
11:55:43.0723 0x09d8 NdisWan - ok
11:55:43.0723 0x09d8 ndiswanlegacy - ok
11:55:43.0723 0x09d8 ndproxy - ok
11:55:43.0723 0x09d8 Ndu - ok
11:55:43.0723 0x09d8 NetBIOS - ok
11:55:43.0723 0x09d8 NetBT - ok
11:55:43.0723 0x09d8 Netlogon - ok
11:55:43.0739 0x09d8 Netman - ok
11:55:43.0754 0x09d8 NetMsmqActivator - ok
11:55:43.0754 0x09d8 NetPipeActivator - ok
11:55:43.0770 0x09d8 netprofm - ok
11:55:43.0817 0x09d8 NetSetupSvc - ok
11:55:43.0817 0x09d8 NetTcpActivator - ok
11:55:43.0817 0x09d8 NetTcpPortSharing - ok
11:55:43.0817 0x09d8 NgcCtnrSvc - ok
11:55:43.0817 0x09d8 NgcSvc - ok
11:55:43.0817 0x09d8 NlaSvc - ok
11:55:43.0817 0x09d8 Npfs - ok
11:55:43.0817 0x09d8 npsvctrig - ok
11:55:43.0832 0x09d8 nsi - ok
11:55:43.0832 0x09d8 nsiproxy - ok
11:55:43.0848 0x09d8 NTFS - ok
11:55:43.0848 0x09d8 Null - ok
11:55:43.0895 0x09d8 [ 786DB821BFD57C0551DBBE4F75384A7D, F956D636F834F2BA5F019E187FDB9CC33940363C75A60E53CD81310A4DB6A6AB ] nusb3hub C:\WINDOWS\system32\drivers\nusb3hub.sys
11:55:44.0020 0x09d8 nusb3hub - ok
11:55:44.0051 0x09d8 [ DAA8005CAF745042BB427A1ED7433354, 3019002F174783B76D5D8AA47F7A465B7FEC7C14235B70E5C9277FE534839226 ] nusb3xhc C:\WINDOWS\system32\drivers\nusb3xhc.sys
11:55:44.0098 0x09d8 nusb3xhc - ok
11:55:44.0129 0x09d8 [ D812362E8AF615B521AD4DF19A93BD5A, B1F04122DFE9FCC3FC56BE327D86912D624C89F2EFB9684BE66FC22115D0E19F ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
11:55:44.0145 0x09d8 NVHDA - ok
11:55:44.0379 0x09d8 [ 2D766A9EE4FBE2CE60F595EA4ACBE540, 5AF3B1BD24A170D3C70EBAE79CE42FCBB14FF35CB0850DA9B08A9DC646712A5E ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
11:55:44.0817 0x09d8 nvlddmkm - ok
11:55:44.0973 0x09d8 [ 1E3277F1C9F62F90488D02869A9522B7, 464870ACE9BDF7A6A9C46701209BEED5C33454CFF44CDABEAF871E06F23FEF17 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
11:55:45.0348 0x09d8 NvNetworkService - ok
11:55:45.0457 0x09d8 nvraid - ok
11:55:45.0473 0x09d8 nvstor - ok
11:55:45.0520 0x09d8 [ 59A8DE923619F3DC0C6C63DC33FB231E, 29D20EA3EB9599DE829A0630F2063D5DFD2263E9222CD4E3559725792D1454A5 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
11:55:45.0551 0x09d8 NvStreamKms - ok
11:55:45.0692 0x09d8 [ 9B4B3747C6756F49B986398A46EC1FE0, D0A25F07CBFB39B86DCB148A2EC8F01FDDD9B6D994418C54F49AA2B782CE9811 ] NvStreamNetworkSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
11:55:45.0895 0x09d8 NvStreamNetworkSvc - ok
11:55:46.0020 0x09d8 [ 266512CCC3B2E195CDE3A7A2C98A353A, DCB6C88A32FE3EE11D4FF242DE6E52B3C576C2EA4E4A5A245B4451CDEDCE94B0 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
11:55:46.0160 0x09d8 NvStreamSvc - ok
11:55:46.0270 0x09d8 [ 4F2B65FA16319BBA3A309EC2964920A1, 733D1B203AEC92B523B182438AF61D93388F781682297A48CC7C0FA741C2D21D ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
11:55:46.0395 0x09d8 nvsvc - ok
11:55:46.0426 0x09d8 [ 64E8275CEAD43D3CA8E3A311B2F4B64A, 99E683890B9AF3243100B387317760B5F91745EF9F7FF2ABA2DC7B6551A6EAB6 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
11:55:46.0457 0x09d8 nvvad_WaveExtensible - ok
11:55:46.0457 0x09d8 nv_agp - ok
11:55:46.0473 0x09d8 OneSyncSvc - ok
11:55:46.0551 0x09d8 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:55:46.0567 0x09d8 ose - ok
11:55:46.0707 0x09d8 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:55:46.0817 0x09d8 osppsvc - ok
11:55:46.0817 0x09d8 p2pimsvc - ok
11:55:46.0817 0x09d8 p2psvc - ok
11:55:46.0817 0x09d8 Parport - ok
11:55:46.0817 0x09d8 partmgr - ok
11:55:46.0832 0x09d8 PcaSvc - ok
11:55:46.0848 0x09d8 pci - ok
11:55:46.0848 0x09d8 pciide - ok
11:55:46.0848 0x09d8 pcmcia - ok
11:55:46.0848 0x09d8 pcw - ok
11:55:46.0864 0x09d8 pdc - ok
11:55:46.0864 0x09d8 PEAUTH - ok
11:55:46.0864 0x09d8 PeerDistSvc - ok
11:55:46.0864 0x09d8 percsas2i - ok
11:55:46.0879 0x09d8 percsas3i - ok
11:55:46.0942 0x09d8 PerfHost - ok
11:55:46.0973 0x09d8 PhoneSvc - ok
11:55:46.0989 0x09d8 PimIndexMaintenanceSvc - ok
11:55:47.0020 0x09d8 pla - ok
11:55:47.0036 0x09d8 PlugPlay - ok
11:55:47.0036 0x09d8 PNRPAutoReg - ok
11:55:47.0036 0x09d8 PNRPsvc - ok
11:55:47.0051 0x09d8 PolicyAgent - ok
11:55:47.0051 0x09d8 Power - ok
11:55:47.0051 0x09d8 PptpMiniport - ok
11:55:47.0239 0x09d8 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
11:55:47.0473 0x09d8 PrintNotify - ok
11:55:47.0473 0x09d8 Processor - ok
11:55:47.0489 0x09d8 ProfSvc - ok
11:55:47.0504 0x09d8 Psched - ok
11:55:47.0520 0x09d8 QWAVE - ok
11:55:47.0520 0x09d8 QWAVEdrv - ok
11:55:47.0536 0x09d8 RasAcd - ok
11:55:47.0536 0x09d8 RasAgileVpn - ok
11:55:47.0551 0x09d8 RasAuto - ok
11:55:47.0551 0x09d8 Rasl2tp - ok
11:55:47.0551 0x09d8 RasMan - ok
11:55:47.0567 0x09d8 RasPppoe - ok
11:55:47.0567 0x09d8 RasSstp - ok
11:55:47.0567 0x09d8 rdbss - ok
11:55:47.0567 0x09d8 rdpbus - ok
11:55:47.0582 0x09d8 RDPDR - ok
11:55:47.0582 0x09d8 RdpVideoMiniport - ok
11:55:47.0582 0x09d8 rdyboost - ok
11:55:47.0582 0x09d8 ReFSv1 - ok
11:55:47.0614 0x09d8 RemoteAccess - ok
11:55:47.0614 0x09d8 RemoteRegistry - ok
11:55:47.0614 0x09d8 RetailDemo - ok
11:55:47.0614 0x09d8 RpcEptMapper - ok
11:55:47.0629 0x09d8 RpcLocator - ok
11:55:47.0629 0x09d8 RpcSs - ok
11:55:47.0629 0x09d8 rspndr - ok
11:55:47.0629 0x09d8 rt640x64 - ok
11:55:47.0770 0x09d8 [ 844CB9DBE08797A2A875DF9E2AF108D7, 53463064C2F34DB9C5E1484FA370AC00C4A3486713EC80E2323B07150A27DD1F ] RtlWlanu C:\WINDOWS\System32\drivers\rtwlanu.sys
11:55:47.0926 0x09d8 RtlWlanu - ok
11:55:47.0942 0x09d8 s3cap - ok
11:55:47.0957 0x09d8 SamSs - ok
11:55:47.0957 0x09d8 sbp2port - ok
11:55:47.0957 0x09d8 SCardSvr - ok
11:55:47.0957 0x09d8 ScDeviceEnum - ok
11:55:47.0973 0x09d8 scfilter - ok
11:55:47.0973 0x09d8 Schedule - ok
11:55:47.0973 0x09d8 SCPolicySvc - ok
11:55:47.0973 0x09d8 sdbus - ok
11:55:47.0973 0x09d8 SDRSVC - ok
11:55:47.0989 0x09d8 sdstor - ok
11:55:47.0989 0x09d8 seclogon - ok
11:55:47.0989 0x09d8 SENS - ok
11:55:47.0989 0x09d8 SensorDataService - ok
11:55:47.0989 0x09d8 SensorService - ok
11:55:48.0004 0x09d8 SensrSvc - ok
11:55:48.0004 0x09d8 SerCx - ok
11:55:48.0004 0x09d8 SerCx2 - ok
11:55:48.0004 0x09d8 Serenum - ok
11:55:48.0004 0x09d8 Serial - ok
11:55:48.0004 0x09d8 sermouse - ok
11:55:48.0004 0x09d8 SessionEnv - ok
11:55:48.0020 0x09d8 sfloppy - ok
11:55:48.0051 0x09d8 [ 9242988D74674C2819D454F001457BAD, D353A30D224940B0C7750161782CE98D4C47ABC5C4E04B100F8ABB6A3402B5AD ] Sftfs C:\WINDOWS\system32\DRIVERS\Sftfswin7.sys
11:55:48.0067 0x09d8 Sftfs - ok
11:55:48.0176 0x09d8 [ 4E1BB8A9CCDB4BAF41F7F9A930EB121D, D994B20DACEB187BEB6530309E2185040B58105E4FD5AC1DA435712F9DE027D0 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
11:55:48.0192 0x09d8 sftlist - ok
11:55:48.0254 0x09d8 [ 44391FA910901E2B8A2F831340FD707A, 9ACAD655DCCCAF562CEDE9180B187C229FFCAF97BA87D78225253C7868698CB8 ] Sftplay C:\WINDOWS\system32\DRIVERS\Sftplaywin7.sys
11:55:48.0301 0x09d8 Sftplay - ok
11:55:48.0301 0x09d8 [ 8654DBDC8ED8ED7257618D11B6C590BE, 1A410CCB7CDE99C607662E21054E959D3349647C5BD810CE744DA59EEB9C3FA2 ] Sftredir C:\WINDOWS\system32\DRIVERS\Sftredirwin7.sys
11:55:48.0317 0x09d8 Sftredir - ok
11:55:48.0332 0x09d8 [ 648F0152A7BAE175905C22E8BD839760, 6E3FC032212FD1F39FEE96D230F47BB25355587E8A73E34776CAEA8C0C1FB58E ] Sftvol C:\WINDOWS\system32\DRIVERS\Sftvolwin7.sys
11:55:48.0332 0x09d8 Sftvol - ok
11:55:48.0348 0x09d8 [ CECFDE5D3701B2D914862F5E6C3DFE18, E7627F90630C306324A39DC3C652B37D255F90636AC19D3302EE5B85BD504BD5 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
11:55:48.0348 0x09d8 sftvsa - ok
11:55:48.0364 0x09d8 SharedAccess - ok
11:55:48.0395 0x09d8 ShellHWDetection - ok
11:55:48.0395 0x09d8 SiSRaid2 - ok
11:55:48.0411 0x09d8 SiSRaid4 - ok
11:55:48.0411 0x09d8 smphost - ok
11:55:48.0442 0x09d8 SmsRouter - ok
11:55:48.0442 0x09d8 SNMPTRAP - ok
11:55:48.0473 0x09d8 spaceport - ok
11:55:48.0473 0x09d8 SpbCx - ok
11:55:48.0473 0x09d8 Spooler - ok
11:55:48.0473 0x09d8 sppsvc - ok
11:55:48.0473 0x09d8 srv - ok
11:55:48.0489 0x09d8 srv2 - ok
11:55:48.0489 0x09d8 srvnet - ok
11:55:48.0489 0x09d8 SSDPSRV - ok
11:55:48.0489 0x09d8 SstpSvc - ok
11:55:48.0489 0x09d8 StateRepository - ok
11:55:48.0598 0x09d8 [ 591249EA969797C2A24629AF7C71A6F8, 61F28FB495657916514DE2A7FFD4AD833A1B2BBA5591616BE0C9CCD7DAFA40B7 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
11:55:49.0098 0x09d8 Steam Client Service - ok
11:55:49.0192 0x09d8 [ 5311DAD9879DA242A9EA385EE7DD4F0D, AD7180A9176A9243A430ABA45079C7B256E4E05AFBE6215C662B8337B8760E39 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
11:55:50.0129 0x09d8 Stereo Service - ok
11:55:50.0129 0x09d8 stexstor - ok
11:55:50.0145 0x09d8 stisvc - ok
11:55:50.0145 0x09d8 storahci - ok
11:55:50.0161 0x09d8 storflt - ok
11:55:50.0161 0x09d8 stornvme - ok
11:55:50.0161 0x09d8 storqosflt - ok
11:55:50.0192 0x09d8 StorSvc - ok
11:55:50.0192 0x09d8 storufs - ok
11:55:50.0192 0x09d8 storvsc - ok
11:55:50.0223 0x09d8 svsvc - ok
11:55:50.0223 0x09d8 swenum - ok
11:55:50.0223 0x09d8 swprv - ok
11:55:50.0239 0x09d8 Synth3dVsc - ok
11:55:50.0254 0x09d8 SysMain - ok
11:55:50.0270 0x09d8 SystemEventsBroker - ok
11:55:50.0270 0x09d8 TabletInputService - ok
11:55:50.0286 0x09d8 TapiSrv - ok
11:55:50.0286 0x09d8 Tcpip - ok
11:55:50.0286 0x09d8 Tcpip6 - ok
11:55:50.0286 0x09d8 tcpipreg - ok
11:55:50.0301 0x09d8 tdx - ok
11:55:50.0301 0x09d8 terminpt - ok
11:55:50.0301 0x09d8 TermService - ok
11:55:50.0317 0x09d8 Themes - ok
11:55:50.0317 0x09d8 TieringEngineService - ok
11:55:50.0317 0x09d8 tiledatamodelsvc - ok
11:55:50.0332 0x09d8 TimeBroker - ok
11:55:50.0332 0x09d8 TPM - ok
11:55:50.0332 0x09d8 TrkWks - ok
11:55:50.0379 0x09d8 TrustedInstaller - ok
11:55:50.0395 0x09d8 tsusbflt - ok
11:55:50.0411 0x09d8 TsUsbGD - ok
11:55:50.0411 0x09d8 tunnel - ok
11:55:50.0426 0x09d8 tzautoupdate - ok
11:55:50.0426 0x09d8 uagp35 - ok
11:55:50.0426 0x09d8 UASPStor - ok
11:55:50.0426 0x09d8 UcmCx0101 - ok
11:55:50.0442 0x09d8 UcmUcsi - ok
11:55:50.0442 0x09d8 Ucx01000 - ok
11:55:50.0442 0x09d8 UdeCx - ok
11:55:50.0442 0x09d8 udfs - ok
11:55:50.0442 0x09d8 UEFI - ok
11:55:50.0457 0x09d8 Ufx01000 - ok
11:55:50.0457 0x09d8 UfxChipidea - ok
11:55:50.0457 0x09d8 ufxsynopsys - ok
11:55:50.0473 0x09d8 UI0Detect - ok
11:55:50.0473 0x09d8 uliagpkx - ok
11:55:50.0473 0x09d8 umbus - ok
11:55:50.0473 0x09d8 UmPass - ok
11:55:50.0473 0x09d8 UmRdpService - ok
11:55:50.0489 0x09d8 UnistoreSvc - ok
11:55:50.0489 0x09d8 upnphost - ok
11:55:50.0489 0x09d8 UrsChipidea - ok
11:55:50.0489 0x09d8 UrsCx01000 - ok
11:55:50.0504 0x09d8 UrsSynopsys - ok
11:55:50.0504 0x09d8 usbaudio - ok
11:55:50.0504 0x09d8 usbccgp - ok
11:55:50.0504 0x09d8 usbcir - ok
11:55:50.0504 0x09d8 usbehci - ok
11:55:50.0504 0x09d8 usbhub - ok
11:55:50.0504 0x09d8 USBHUB3 - ok
11:55:50.0520 0x09d8 usbohci - ok
11:55:50.0520 0x09d8 usbprint - ok
11:55:50.0520 0x09d8 usbser - ok
11:55:50.0520 0x09d8 USBSTOR - ok
11:55:50.0536 0x09d8 usbuhci - ok
11:55:50.0551 0x09d8 USBXHCI - ok
11:55:50.0551 0x09d8 UserDataSvc - ok
11:55:50.0567 0x09d8 UserManager - ok
11:55:50.0567 0x09d8 UsoSvc - ok
11:55:50.0567 0x09d8 VaultSvc - ok
11:55:50.0567 0x09d8 vdrvroot - ok
11:55:50.0567 0x09d8 vds - ok
11:55:50.0567 0x09d8 VerifierExt - ok
11:55:50.0567 0x09d8 vhdmp - ok
11:55:50.0567 0x09d8 vhf - ok
11:55:50.0582 0x09d8 vmbus - ok
11:55:50.0582 0x09d8 VMBusHID - ok
11:55:50.0598 0x09d8 vmicguestinterface - ok
11:55:50.0598 0x09d8 vmicheartbeat - ok
11:55:50.0598 0x09d8 vmickvpexchange - ok
11:55:50.0614 0x09d8 vmicrdv - ok
11:55:50.0614 0x09d8 vmicshutdown - ok
11:55:50.0614 0x09d8 vmictimesync - ok
11:55:50.0614 0x09d8 vmicvmsession - ok
11:55:50.0614 0x09d8 vmicvss - ok
11:55:50.0614 0x09d8 volmgr - ok
11:55:50.0614 0x09d8 volmgrx - ok
11:55:50.0614 0x09d8 volsnap - ok
11:55:50.0629 0x09d8 vpci - ok
11:55:50.0629 0x09d8 vsmraid - ok
11:55:50.0629 0x09d8 VSS - ok
11:55:50.0629 0x09d8 VSTXRAID - ok
11:55:50.0629 0x09d8 vwifibus - ok
11:55:50.0629 0x09d8 vwififlt - ok
11:55:50.0629 0x09d8 vwifimp - ok
11:55:50.0645 0x09d8 W32Time - ok
11:55:50.0676 0x09d8 w3logsvc - ok
11:55:50.0692 0x09d8 W3SVC - ok
11:55:50.0692 0x09d8 WacomPen - ok
11:55:50.0707 0x09d8 WalletService - ok
11:55:50.0707 0x09d8 wanarp - ok
11:55:50.0707 0x09d8 wanarpv6 - ok
11:55:50.0707 0x09d8 WAS - ok
11:55:50.0723 0x09d8 wbengine - ok
11:55:50.0723 0x09d8 WbioSrvc - ok
11:55:50.0739 0x09d8 Wcmsvc - ok
11:55:50.0739 0x09d8 wcncsvc - ok
11:55:50.0739 0x09d8 WcsPlugInService - ok
11:55:50.0739 0x09d8 WdBoot - ok
11:55:50.0739 0x09d8 Wdf01000 - ok
11:55:50.0739 0x09d8 WdFilter - ok
11:55:50.0739 0x09d8 WdiServiceHost - ok
11:55:50.0754 0x09d8 WdiSystemHost - ok
11:55:50.0754 0x09d8 wdiwifi - ok
11:55:50.0754 0x09d8 WdNisDrv - ok
11:55:50.0786 0x09d8 WdNisSvc - ok
11:55:50.0786 0x09d8 WebClient - ok
11:55:50.0801 0x09d8 Wecsvc - ok
11:55:50.0801 0x09d8 WEPHOSTSVC - ok
11:55:50.0801 0x09d8 wercplsupport - ok
11:55:50.0801 0x09d8 WerSvc - ok
11:55:50.0801 0x09d8 WFPLWFS - ok
11:55:50.0801 0x09d8 WiaRpc - ok
11:55:50.0817 0x09d8 WIMMount - ok
11:55:50.0817 0x09d8 WinDefend - ok
11:55:50.0832 0x09d8 WindowsTrustedRT - ok
11:55:50.0832 0x09d8 WindowsTrustedRTProxy - ok
11:55:50.0832 0x09d8 WinHttpAutoProxySvc - ok
11:55:50.0848 0x09d8 WinMad - ok
11:55:50.0864 0x09d8 Winmgmt - ok
11:55:50.0895 0x09d8 WinRM - ok
11:55:50.0911 0x09d8 WINUSB - ok
11:55:50.0911 0x09d8 WinVerbs - ok
11:55:50.0911 0x09d8 WlanSvc - ok
11:55:50.0926 0x09d8 wlidsvc - ok
11:55:50.0926 0x09d8 WmiAcpi - ok
11:55:50.0926 0x09d8 wmiApSrv - ok
11:55:50.0957 0x09d8 WMPNetworkSvc - ok
11:55:50.0973 0x09d8 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
11:55:51.0004 0x09d8 Wof - ok
11:55:51.0004 0x09d8 workfolderssvc - ok
11:55:51.0004 0x09d8 wpcfltr - ok
11:55:51.0004 0x09d8 WPDBusEnum - ok
11:55:51.0020 0x09d8 WpdUpFltr - ok
11:55:51.0020 0x09d8 WpnService - ok
11:55:51.0020 0x09d8 ws2ifsl - ok
11:55:51.0020 0x09d8 wscsvc - ok
11:55:51.0020 0x09d8 WSearch - ok
11:55:51.0020 0x09d8 WSService - ok
11:55:51.0051 0x09d8 wuauserv - ok
11:55:51.0051 0x09d8 WudfPf - ok
11:55:51.0051 0x09d8 wudfsvc - ok
11:55:51.0051 0x09d8 WUDFWpdFs - ok
11:55:51.0051 0x09d8 WUDFWpdMtp - ok
11:55:51.0067 0x09d8 WwanSvc - ok
11:55:51.0082 0x09d8 XblAuthManager - ok
11:55:51.0082 0x09d8 XblGameSave - ok
11:55:51.0082 0x09d8 xboxgip - ok
11:55:51.0114 0x09d8 XboxNetApiSvc - ok
11:55:51.0114 0x09d8 xinputhid - ok
11:55:51.0114 0x09d8 xusb22 - ok
11:55:51.0114 0x09d8 ================ Scan global ===============================
11:55:51.0176 0x09d8 [ Global ] - ok
11:55:51.0176 0x09d8 ================ Scan MBR ==================================
11:55:51.0192 0x09d8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:55:51.0504 0x09d8 \Device\Harddisk0\DR0 - ok
11:55:51.0504 0x09d8 ================ Scan VBR ==================================
11:55:51.0504 0x09d8 [ 81ED99DE0B1E4D870D6D05101AD292C3 ] \Device\Harddisk0\DR0\Partition1
11:55:51.0567 0x09d8 \Device\Harddisk0\DR0\Partition1 - ok
11:55:51.0567 0x09d8 [ BD06E1052A646C6802AA8FAA591C618F ] \Device\Harddisk0\DR0\Partition2
11:55:51.0629 0x09d8 \Device\Harddisk0\DR0\Partition2 - ok
11:55:51.0629 0x09d8 ================ Scan generic autorun ======================
11:55:52.0020 0x09d8 [ 65E8545F1297CD83534C354A7BED1848, 19B3F3C17A335837454DC1851C6436D0BB2D8B1595AEB4DC71265FB20868B48F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
11:55:52.0332 0x09d8 RTHDVCPL - ok
11:55:52.0364 0x09d8 [ 3A19FD28BF891CB67FD89A94BEC88C3F, 6D9F5FA55A4B8A386691E91305C8CA9323B91680FA2DC4585DDDECA69BB80FA0 ] C:\Windows\system32\igfxtray.exe
11:55:52.0379 0x09d8 IgfxTray - ok
11:55:52.0426 0x09d8 [ D94BCD3B86F5220BEFC277B395EEE845, 61D3DE5621CE855F8EA5BF2308D0DFFB3B517BF7187AEE1FEF6785C5880E7D49 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
11:55:52.0520 0x09d8 IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
11:55:54.0832 0x09d8 Detect skipped due to KSN trusted
11:55:54.0832 0x09d8 IAStorIcon - ok
11:55:54.0942 0x09d8 [ E445C0DB7E5E89C657FC89C0C4CCEDE5, ABD7A9B36CFD6740CE06456B152D9EB1856C11CD7FB2A34E06D63BAD0639B2A0 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
11:55:55.0051 0x09d8 NvBackend - ok
11:55:55.0083 0x09d8 ShadowPlay - ok
11:55:55.0145 0x09d8 [ 70BDEE03032BF7CE279838866B25E697, 007C3AC1B4380BC56EC6E14EFC022C03F165D08447AD763854351C530E19D976 ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
11:55:55.0161 0x09d8 IMSS - ok
11:55:55.0176 0x09d8 [ D2AEADFD998706B4216315B2BD3FA79E, D45634355B7733F9B6754A6FB80B7EC20C0D584A08E2F710DF612B393D96A8F9 ] C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
11:55:55.0223 0x09d8 ISUSScheduler - detected UnsignedFile.Multi.Generic ( 1 )
11:55:57.0567 0x09d8 Detect skipped due to KSN trusted
11:55:57.0567 0x09d8 ISUSScheduler - ok
11:55:57.0598 0x09d8 [ EBC0E8C0A4DDA2C32A7D5863462A321A, 2F410138DB66D0219254339F1F098E401CEDAA032596F1F67BC54F394256FC68 ] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
11:55:57.0708 0x09d8 amd_dc_opt - detected UnsignedFile.Multi.Generic ( 1 )
11:56:00.0051 0x09d8 Detect skipped due to KSN trusted
11:56:00.0051 0x09d8 amd_dc_opt - ok
11:56:00.0176 0x09d8 [ D470EB94988531FE20A2A78766BB6858, 59F46FBC2267584422D7C4EC5BCC4071BB8DCF544C3AB44BEEBAE091EDCB9947 ] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
11:56:00.0223 0x09d8 BlueStacks Agent - ok
11:56:00.0286 0x09d8 OneDriveSetup - ok
11:56:00.0286 0x09d8 OneDriveSetup - ok
11:56:00.0301 0x09d8 [ A379B75A6FFE4DFD3184F35F0141CE91, C777B01B4361456D4D829E96723C85CCDC2E3647C4CF25894AC83100552E36AB ] C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
11:56:00.0442 0x09d8 ISUSPM Startup - detected UnsignedFile.Multi.Generic ( 1 )
11:56:00.0520 0x156c Object required for P2P: [ 4F2B65FA16319BBA3A309EC2964920A1 ] nvsvc
11:56:02.0786 0x09d8 Detect skipped due to KSN trusted
11:56:02.0786 0x09d8 ISUSPM Startup - ok
11:56:02.0848 0x09d8 [ 406E7DF08CE79BE3016CC6D15E2ED956, 9DA8D10AE642B9411A3EB253F97918A6F470F1772F0057964267497CE0BDA53A ] C:\Program Files (x86)\ExKode\Dxtory2.0\UpdateChecker.exe
11:56:02.0895 0x09d8 Dxtory Update Checker 2.0 - detected UnsignedFile.Multi.Generic ( 1 )
11:56:02.0942 0x156c Object send P2P result: true
11:56:05.0239 0x09d8 Detect skipped due to KSN trusted
11:56:05.0239 0x09d8 Dxtory Update Checker 2.0 - ok
11:56:05.0411 0x09d8 [ 91DD4AD85BB341CC8CF5187EA06FD171, 68330A5EBDA7E4A51926EC2085D71C11BD2857A6EB1D4749DEE7A6D1D5679B98 ] C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe
11:56:05.0426 0x09d8 OneDrive - ok
11:56:05.0426 0x09d8 OneDriveSetup - ok
11:56:05.0458 0x09d8 WAB Migrate - ok
11:56:05.0458 0x09d8 Waiting for KSN requests completion. In queue: 2
11:56:06.0473 0x09d8 Waiting for KSN requests completion. In queue: 2
11:56:07.0489 0x09d8 Waiting for KSN requests completion. In queue: 1
11:56:08.0520 0x09d8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x61100 ( enabled : updated )
11:56:08.0536 0x09d8 Win FW state via NFP2: enabled ( trusted )
11:56:10.0926 0x09d8 ============================================================
11:56:10.0926 0x09d8 Scan finished
11:56:10.0926 0x09d8 ============================================================
11:56:10.0942 0x030c Detected object count: 0
11:56:10.0942 0x030c Actual detected object count: 0 |