Hier noch das TDSKiller Log TDSKiller Log Code:
11:25:48.0406 0x2598 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
11:25:52.0570 0x2598 ============================================================
11:25:52.0570 0x2598 Current date / time: 2016/07/10 11:25:52.0570
11:25:52.0570 0x2598 SystemInfo:
11:25:52.0570 0x2598
11:25:52.0570 0x2598 OS Version: 10.0.10586 ServicePack: 0.0
11:25:52.0570 0x2598 Product type: Workstation
11:25:52.0570 0x2598 ComputerName: W7-*****
11:25:52.0570 0x2598 UserName: *****
11:25:52.0570 0x2598 Windows directory: C:\WINDOWS
11:25:52.0570 0x2598 System windows directory: C:\WINDOWS
11:25:52.0570 0x2598 Running under WOW64
11:25:52.0570 0x2598 Processor architecture: Intel x64
11:25:52.0570 0x2598 Number of processors: 8
11:25:52.0570 0x2598 Page size: 0x1000
11:25:52.0570 0x2598 Boot type: Normal boot
11:25:52.0570 0x2598 ============================================================
11:25:52.0768 0x2598 KLMD registered as C:\WINDOWS\system32\drivers\02412998.sys
11:25:52.0989 0x2598 System UUID: {6C4CB9CC-2564-8BD3-8389-FFDC7046D9C2}
11:25:53.0395 0x2598 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:25:53.0404 0x2598 Drive \Device\Harddisk1\DR1 - Size: 0x3A37F700000 ( 3725.99 Gb ), SectorSize: 0x1000, Cylinders: 0xED7F, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:25:53.0437 0x2598 Drive \Device\Harddisk2\DR2 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:25:53.0456 0x2598 Drive \Device\Harddisk7\DR10 - Size: 0x1CCD28000 ( 7.20 Gb ), SectorSize: 0x200, Cylinders: 0x3AB, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:25:53.0458 0x2598 ============================================================
11:25:53.0458 0x2598 \Device\Harddisk0\DR0:
11:25:53.0458 0x2598 MBR partitions:
11:25:53.0458 0x2598 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:25:53.0458 0x2598 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1858D000
11:25:53.0458 0x2598 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x186A0800, BlocksNum 0x5C063000
11:25:53.0458 0x2598 \Device\Harddisk1\DR1:
11:25:53.0469 0x2598 MBR partitions:
11:25:53.0469 0x2598 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x100, BlocksNum 0x3A37F600
11:25:53.0469 0x2598 \Device\Harddisk2\DR2:
11:25:53.0469 0x2598 MBR partitions:
11:25:53.0469 0x2598 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xE8E07482
11:25:53.0469 0x2598 \Device\Harddisk7\DR10:
11:25:53.0470 0x2598 MBR partitions:
11:25:53.0470 0x2598 \Device\Harddisk7\DR10\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0xE649C0
11:25:53.0470 0x2598 ============================================================
11:25:53.0481 0x2598 C: <-> \Device\Harddisk0\DR0\Partition2
11:25:53.0503 0x2598 D: <-> \Device\Harddisk0\DR0\Partition3
11:25:53.0762 0x2598 H: <-> \Device\Harddisk1\DR1\Partition1
11:25:53.0805 0x2598 K: <-> \Device\Harddisk2\DR2\Partition1
11:25:53.0805 0x2598 ============================================================
11:25:53.0805 0x2598 Initialize success
11:25:53.0805 0x2598 ============================================================
11:25:56.0561 0x124c ============================================================
11:25:56.0561 0x124c Scan started
11:25:56.0561 0x124c Mode: Manual;
11:25:56.0561 0x124c ============================================================
11:25:56.0561 0x124c KSN ping started
11:25:56.0707 0x124c KSN ping finished: true
11:26:03.0286 0x124c ================ Scan system memory ========================
11:26:03.0286 0x124c System memory - ok
11:26:03.0287 0x124c ================ Scan services =============================
11:26:03.0368 0x124c 1394ohci - ok
11:26:03.0370 0x124c 3ware - ok
11:26:03.0385 0x124c ACPI - ok
11:26:03.0386 0x124c acpiex - ok
11:26:03.0388 0x124c acpipagr - ok
11:26:03.0399 0x124c AcpiPmi - ok
11:26:03.0401 0x124c acpitime - ok
11:26:03.0466 0x124c [ 36114214BF8D7C464D1E92E4EB6B2DD3, 8E7CB266D4ABCDF332A3D4D341753811D51B72985E36F24A7E757DCA11A65A2A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:26:03.0476 0x124c AdobeARMservice - ok
11:26:03.0553 0x124c [ E324D38B6CCF843ED4F6D521908AEE5B, D34DAF5AB7A3C2751C0C3BD3C21E52909E6D182DD202BD3C0B4981535320E64A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:26:03.0565 0x124c AdobeFlashPlayerUpdateSvc - ok
11:26:03.0568 0x124c ADP80XX - ok
11:26:03.0584 0x124c AFD - ok
11:26:03.0586 0x124c agp440 - ok
11:26:03.0588 0x124c ahcache - ok
11:26:03.0603 0x124c AJRouter - ok
11:26:03.0608 0x124c ALG - ok
11:26:03.0609 0x124c AmdK8 - ok
11:26:03.0611 0x124c AmdPPM - ok
11:26:03.0615 0x124c amdsata - ok
11:26:03.0617 0x124c amdsbs - ok
11:26:03.0619 0x124c amdxata - ok
11:26:03.0633 0x124c AppHostSvc - ok
11:26:03.0643 0x124c AppID - ok
11:26:03.0645 0x124c AppIDSvc - ok
11:26:03.0647 0x124c Appinfo - ok
11:26:03.0692 0x124c [ 3B3774C868868257533EC7E715BB6D53, 4AF1DADCEDBD80BE6EDEC696DF59E65B51D31E33F4C84413CA03C7BD959FF4E5 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:26:03.0695 0x124c Apple Mobile Device Service - ok
11:26:03.0697 0x124c AppMgmt - ok
11:26:03.0699 0x124c AppReadiness - ok
11:26:03.0717 0x124c AppXSvc - ok
11:26:03.0719 0x124c arcsas - ok
11:26:03.0760 0x124c aspnet_state - ok
11:26:03.0762 0x124c AsyncMac - ok
11:26:03.0763 0x124c atapi - ok
11:26:03.0766 0x124c AudioEndpointBuilder - ok
11:26:03.0774 0x124c Audiosrv - ok
11:26:03.0785 0x124c [ 43744F1D3CDE20F3925F10927C9036C2, 47374A71D1A38572B8C247E924C0F3F063A6281743C9B7D818D63CA576B5D289 ] AVMCOWAN C:\WINDOWS\system32\DRIVERS\AVMCOWAN.sys
11:26:03.0788 0x124c AVMCOWAN - ok
11:26:03.0790 0x124c AxInstSV - ok
11:26:03.0792 0x124c b06bdrv - ok
11:26:03.0802 0x124c BasicDisplay - ok
11:26:03.0805 0x124c BasicRender - ok
11:26:03.0808 0x124c bcmfn - ok
11:26:03.0809 0x124c bcmfn2 - ok
11:26:03.0811 0x124c BDESVC - ok
11:26:03.0814 0x124c Beep - ok
11:26:03.0821 0x124c BFE - ok
11:26:03.0829 0x124c BITS - ok
11:26:03.0871 0x124c [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:26:03.0879 0x124c Bonjour Service - ok
11:26:03.0881 0x124c bowser - ok
11:26:03.0892 0x124c BrokerInfrastructure - ok
11:26:03.0894 0x124c Browser - ok
11:26:03.0909 0x124c [ 63A00CDBEB300522C49EC7CA77324060, 99CB6D37C7D898982A192AAA8DE5CE255E6FA482E19FE9032BAA7069E652F6F5 ] BrSerIb C:\WINDOWS\system32\DRIVERS\BrSerIb.sys
11:26:03.0912 0x124c BrSerIb - ok
11:26:03.0919 0x124c [ BBCFD6C6EF66449F55AF1BFDB08C9B12, D6D5D408FCFFF9ED69D095948E786C08EEECD5F55905A3D8FE2BB08944C5E1F2 ] BrUsbSIb C:\WINDOWS\system32\DRIVERS\BrUsbSIb.sys
11:26:03.0922 0x124c BrUsbSIb - ok
11:26:03.0946 0x124c [ 18C6186E04F25515C1F7DA31B08B5B2D, A46B16942C0CD8204AF760974980A6664C10A38B9FAEDE1FF6A66F6DDF3B4243 ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
11:26:04.0306 0x124c BrYNSvc - ok
11:26:04.0319 0x124c BthAvrcpTg - ok
11:26:04.0321 0x124c BthHFEnum - ok
11:26:04.0322 0x124c bthhfhid - ok
11:26:04.0324 0x124c BthHFSrv - ok
11:26:04.0326 0x124c BTHMODEM - ok
11:26:04.0339 0x124c bthserv - ok
11:26:04.0354 0x124c [ 32B94975BF6F101C27C43E90FF8ABBEB, B5475D9A705894CBFA583D6E9DAF969527A75800E98D0288182BAB2F10136642 ] busenum C:\WINDOWS\System32\drivers\busenum.sys
11:26:04.0357 0x124c busenum - ok
11:26:04.0360 0x124c buttonconverter - ok
11:26:04.0375 0x124c CapImg - ok
11:26:04.0377 0x124c cdfs - ok
11:26:04.0392 0x124c CDPSvc - ok
11:26:04.0394 0x124c cdrom - ok
11:26:04.0396 0x124c CertPropSvc - ok
11:26:04.0398 0x124c circlass - ok
11:26:04.0572 0x124c CLFS - ok
11:26:04.0658 0x124c [ 89772864139E48E6E1CEF832AB83E449, 6587F4CBA9143E5889060C2FF1461C9FA51373A84067209BF5B2F57E9359C9F1 ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
11:26:04.0700 0x124c ClickToRunSvc - ok
11:26:04.0709 0x124c ClipSVC - ok
11:26:04.0714 0x124c CmBatt - ok
11:26:04.0717 0x124c CNG - ok
11:26:04.0719 0x124c cnghwassist - ok
11:26:04.0746 0x124c CompositeBus - ok
11:26:04.0748 0x124c COMSysApp - ok
11:26:04.0750 0x124c condrv - ok
11:26:04.0761 0x124c CoreMessagingRegistrar - ok
11:26:04.0775 0x124c CryptSvc - ok
11:26:04.0777 0x124c CSC - ok
11:26:04.0791 0x124c CscService - ok
11:26:04.0793 0x124c dam - ok
11:26:04.0801 0x124c DcomLaunch - ok
11:26:04.0802 0x124c DcpSvc - ok
11:26:04.0813 0x124c defragsvc - ok
11:26:04.0815 0x124c DeviceAssociationService - ok
11:26:04.0819 0x124c DeviceInstall - ok
11:26:04.0825 0x124c DevQueryBroker - ok
11:26:04.0840 0x124c Dfsc - ok
11:26:04.0858 0x124c [ 85137571AEC8AC757D497B9DD30D544D, 6E15C9FB4010B26A8E5AFD4E85F7362B2616EB8503ACCE28EC31AC1E7D18566F ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
11:26:04.0871 0x124c dg_ssudbus - ok
11:26:04.0900 0x124c Dhcp - ok
11:26:04.0939 0x124c diagnosticshub.standardcollector.service - ok
11:26:04.0949 0x124c DiagTrack - ok
11:26:04.0951 0x124c disk - ok
11:26:04.0973 0x124c DmEnrollmentSvc - ok
11:26:04.0975 0x124c dmvsc - ok
11:26:04.0977 0x124c dmwappushservice - ok
11:26:04.0989 0x124c Dnscache - ok
11:26:04.0992 0x124c dot3svc - ok
11:26:04.0994 0x124c DPS - ok
11:26:05.0013 0x124c drmkaud - ok
11:26:05.0015 0x124c DsmSvc - ok
11:26:05.0024 0x124c DsSvc - ok
11:26:05.0026 0x124c DXGKrnl - ok
11:26:05.0028 0x124c e1iexpress - ok
11:26:05.0031 0x124c Eaphost - ok
11:26:05.0033 0x124c ebdrv - ok
11:26:05.0035 0x124c EFS - ok
11:26:05.0037 0x124c EhStorClass - ok
11:26:05.0045 0x124c EhStorTcgDrv - ok
11:26:05.0047 0x124c embeddedmode - ok
11:26:05.0050 0x124c EntAppSvc - ok
11:26:05.0051 0x124c ErrDev - ok
11:26:05.0066 0x124c EventSystem - ok
11:26:05.0068 0x124c exfat - ok
11:26:05.0070 0x124c fastfat - ok
11:26:05.0071 0x124c fdc - ok
11:26:05.0074 0x124c fdPHost - ok
11:26:05.0075 0x124c FDResPub - ok
11:26:05.0077 0x124c fhsvc - ok
11:26:05.0085 0x124c FileCrypt - ok
11:26:05.0086 0x124c FileInfo - ok
11:26:05.0089 0x124c Filetrace - ok
11:26:05.0090 0x124c flpydisk - ok
11:26:05.0092 0x124c FltMgr - ok
11:26:05.0094 0x124c FontCache - ok
11:26:05.0125 0x124c FontCache3.0.0.0 - ok
11:26:05.0152 0x124c [ 6F0D5420DF53205C2960E6C1C7FD6BA6, DBDEB25719010D02A1C8F82D69D19FBC5812E83F212B48D0A0750A4306700C1C ] FPAVServer C:\Program Files (x86)\FRISK Software\F-PROT Antivirus for Windows\FPAVServer.exe
11:26:05.0156 0x124c FPAVServer - ok
11:26:05.0177 0x124c [ BC5C7C3D4834554491A941781E28495C, E85A5A3E651470B320BA50B04471B63B9F715180D270EA7FAB9D95FD9B07C2BF ] FPAV_RTP C:\WINDOWS\system32\DRIVERS\FPAV_RTP.sys
11:26:05.0192 0x124c FPAV_RTP - ok
11:26:05.0195 0x124c FsDepends - ok
11:26:05.0197 0x124c Fs_Rec - ok
11:26:05.0219 0x124c [ 7135030CBF87D724B6037BB023923730, 1F6D9A7D7033226507DEDD53CB686C0F3CDC15FD7E77DBC5263256E8EB541E4E ] FUJ02E3 C:\WINDOWS\System32\drivers\FUJ02E3.sys
11:26:05.0221 0x124c FUJ02E3 - ok
11:26:05.0255 0x124c [ 3D0F2C8B86BCAB9A2BC5D5A725F45DCC, 45ABA7D6B08803D59D6F56698223E1B8A6365471EDAA041FA6434BE9FE140260 ] fus2base C:\WINDOWS\system32\DRIVERS\fus2base.sys
11:26:05.0268 0x124c fus2base - ok
11:26:05.0271 0x124c fvevol - ok
11:26:05.0273 0x124c gagp30kx - ok
11:26:05.0289 0x124c [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:26:05.0292 0x124c GEARAspiWDM - ok
11:26:05.0307 0x124c [ 3D49EA64007F9F32D6CF82B78625476C, FCE160133BC2F91A7BACC1084477955994834374C9F2F5E775D9F2B7AB5D7E8E ] GemCCID C:\WINDOWS\system32\DRIVERS\GemCCID.sys
11:26:05.0312 0x124c GemCCID - ok
11:26:05.0326 0x124c gencounter - ok
11:26:05.0328 0x124c genericusbfn - ok
11:26:05.0330 0x124c GPIOClx0101 - ok
11:26:05.0332 0x124c gpsvc - ok
11:26:05.0334 0x124c GpuEnergyDrv - ok
11:26:05.0354 0x124c [ 42D66C9FB8255B62B4EDAC9F1DC52BED, 26DC78722A6399B9F573624C997CDE959B6C97C6F349AFD874D9237E44B8F8C8 ] GslShmSrvc C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe
11:26:05.0362 0x124c GslShmSrvc - ok
11:26:05.0403 0x124c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:26:05.0413 0x124c gupdate - ok
11:26:05.0418 0x124c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:26:05.0420 0x124c gupdatem - ok
11:26:05.0446 0x124c [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
11:26:05.0488 0x124c gusvc - ok
11:26:05.0491 0x124c HDAudBus - ok
11:26:05.0493 0x124c HidBatt - ok
11:26:05.0495 0x124c HidBth - ok
11:26:05.0496 0x124c hidi2c - ok
11:26:05.0498 0x124c hidinterrupt - ok
11:26:05.0500 0x124c HidIr - ok
11:26:05.0502 0x124c hidserv - ok
11:26:05.0509 0x124c HidUsb - ok
11:26:05.0511 0x124c HomeGroupListener - ok
11:26:05.0521 0x124c HomeGroupProvider - ok
11:26:05.0523 0x124c HpSAMD - ok
11:26:05.0532 0x124c HTTP - ok
11:26:05.0534 0x124c hwpolicy - ok
11:26:05.0536 0x124c hyperkbd - ok
11:26:05.0537 0x124c i8042prt - ok
11:26:05.0539 0x124c iai2c - ok
11:26:05.0542 0x124c iaLPSS2i_I2C - ok
11:26:05.0544 0x124c iaLPSSi_GPIO - ok
11:26:05.0546 0x124c iaLPSSi_I2C - ok
11:26:05.0574 0x124c [ C224331A54571C8C9162F7714400BBBD, C2CA4881ACD46071E67435BE5E3DB133D0743B026FD20D6D6E26B2FE7A03FCAA ] iaStor C:\WINDOWS\system32\drivers\iaStor.sys
11:26:05.0588 0x124c iaStor - ok
11:26:05.0622 0x124c [ FA4C48E36F0B24E7E33D3E7E1844B9C9, F61F448B8E305DEFDDA5D4A6FC4E57C798C11ED4DA0ACB885847DC8A9A7B4E98 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
11:26:05.0630 0x124c iaStorA - ok
11:26:05.0633 0x124c iaStorAV - ok
11:26:05.0650 0x124c [ 483C642DF2DFADDFD1EBF4160D740DFC, 8CEEA5B0D498A6693D1DEFADDBADB6F42D0E0045905FB9EBC4A1301F9860601B ] iaStorS C:\WINDOWS\system32\drivers\iaStorS.sys
11:26:05.0662 0x124c iaStorS - ok
11:26:05.0665 0x124c iaStorV - ok
11:26:05.0667 0x124c ibbus - ok
11:26:05.0678 0x124c icssvc - ok
11:26:05.0681 0x124c IEEtwCollectorService - ok
11:26:05.0697 0x124c IKEEXT - ok
11:26:05.0770 0x124c [ E2E6FB83D55DF0BDA9D453EABA3F893B, 259EF8543385C90E4B0D8741C97FD426A86CC32A466A3028440988A1623564F3 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
11:26:05.0839 0x124c IntcAzAudAddService - ok
11:26:05.0877 0x124c [ C6128F2E3DC6156C6F8828F9F1B96010, 612C1191AFB8F69BA5634E8C52BDDE608F57D98FA4C76C5A337676A5F1E8191D ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
11:26:05.0888 0x124c Intel(R) Capability Licensing Service Interface - ok
11:26:05.0914 0x124c [ 729AB4F0608E95EFF8FDEF23596283E2, 62A2091FF440C65505AB3E38436A86D9B0978BCB9485960EFCE0C5CBC8E06201 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
11:26:05.0928 0x124c Intel(R) Capability Licensing Service TCP IP Interface - ok
11:26:05.0930 0x124c intelide - ok
11:26:05.0933 0x124c intelpep - ok
11:26:05.0935 0x124c intelppm - ok
11:26:05.0937 0x124c IoQos - ok
11:26:05.0939 0x124c IpFilterDriver - ok
11:26:05.0941 0x124c iphlpsvc - ok
11:26:05.0942 0x124c IPMIDRV - ok
11:26:05.0944 0x124c IPNAT - ok
11:26:05.0983 0x124c [ 2BFF13AC46A5850161317D0F924B5B42, B8A09F66435EC6582F8772515988503CC13DC200A370EBB8C3FE661F2EA688DA ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:26:05.0994 0x124c iPod Service - ok
11:26:05.0997 0x124c IRENUM - ok
11:26:06.0000 0x124c isapnp - ok
11:26:06.0002 0x124c iScsiPrt - ok
11:26:06.0087 0x124c [ 924019BC58FEDDE04A08C45EC1CF1847, F18C581FE5C25C5BE4514185AD44C561EB715B98AFBE81EF0D673E103EA8E8EE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
11:26:06.0098 0x124c jhi_service - ok
11:26:06.0101 0x124c kbdclass - ok
11:26:06.0103 0x124c kbdhid - ok
11:26:06.0105 0x124c kdnic - ok
11:26:06.0107 0x124c KeyIso - ok
11:26:06.0109 0x124c KSecDD - ok
11:26:06.0110 0x124c KSecPkg - ok
11:26:06.0112 0x124c ksthunk - ok
11:26:06.0119 0x124c KtmRm - ok
11:26:06.0127 0x124c LanmanServer - ok
11:26:06.0129 0x124c LanmanWorkstation - ok
11:26:06.0136 0x124c lfsvc - ok
11:26:06.0138 0x124c LicenseManager - ok
11:26:06.0140 0x124c lltdio - ok
11:26:06.0142 0x124c lltdsvc - ok
11:26:06.0150 0x124c lmhosts - ok
11:26:06.0186 0x124c [ E52DADD509D0D8BFB6A595CCACD76F54, 3F8A12E30B740505916B5588BB7D833E56A2651023F16B01D9F1D9CCF31984DE ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:26:06.0202 0x124c LMS - ok
11:26:06.0205 0x124c LSI_SAS - ok
11:26:06.0213 0x124c LSI_SAS2i - ok
11:26:06.0215 0x124c LSI_SAS3i - ok
11:26:06.0217 0x124c LSI_SSS - ok
11:26:06.0219 0x124c LSM - ok
11:26:06.0220 0x124c luafv - ok
11:26:06.0222 0x124c MapsBroker - ok
11:26:06.0276 0x124c [ D8DBCF7C20F3D39AA0037C64118A5FC4, B29CD8F9C3AFED9C55716A331496FC98F563BBB895BF7D36A5C54DCEA37A7366 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe
11:26:06.0283 0x124c McComponentHostService - ok
11:26:06.0286 0x124c megasas - ok
11:26:06.0309 0x124c [ 5E886BE4014CF9082054ACB2C02AEFFD, 4E013F69C66A2506BA38640ED1977A4C073AD62241C4B2E430B700F2ECDC47A5 ] megasas2 C:\WINDOWS\system32\drivers\megasas2.sys
11:26:06.0312 0x124c megasas2 - ok
11:26:06.0314 0x124c megasr - ok
11:26:06.0334 0x124c [ 9B6C5C5B6EDBC305409BAFA619339B93, 7F9189F6F1C03FBA52BEB172F2B537590FB7EF7995FFFFEB8D0FD8B02AFCCEDE ] megasr1 C:\WINDOWS\system32\drivers\megasr1.sys
11:26:06.0350 0x124c megasr1 - ok
11:26:06.0370 0x124c [ 2BB3EAE2EA641515D4B205CAB29E1624, D3F18EE393EB1B0F919484281269A3C55A092D023E62C59D74CB63A55612024B ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
11:26:06.0372 0x124c MEIx64 - ok
11:26:06.0374 0x124c MessagingService - ok
11:26:06.0393 0x124c mlx4_bus - ok
11:26:06.0395 0x124c MMCSS - ok
11:26:06.0396 0x124c Modem - ok
11:26:06.0398 0x124c monitor - ok
11:26:06.0401 0x124c mouclass - ok
11:26:06.0402 0x124c mouhid - ok
11:26:06.0404 0x124c mountmgr - ok
11:26:06.0423 0x124c [ D6F67A73E6557578B755F7B534E00F47, 769F3D6CB86B2DC4065BDE4CE39139879B7D96F455A3BE80C7ECEAD5494E8B79 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:26:06.0433 0x124c MozillaMaintenance - ok
11:26:06.0436 0x124c mpsdrv - ok
11:26:06.0445 0x124c MpsSvc - ok
11:26:06.0465 0x124c MQAC - ok
11:26:06.0480 0x124c MRxDAV - ok
11:26:06.0485 0x124c mrxsmb - ok
11:26:06.0487 0x124c mrxsmb10 - ok
11:26:06.0489 0x124c mrxsmb20 - ok
11:26:06.0491 0x124c MsBridge - ok
11:26:06.0506 0x124c MSDTC - ok
11:26:06.0509 0x124c Msfs - ok
11:26:06.0525 0x124c msgpiowin32 - ok
11:26:06.0526 0x124c mshidkmdf - ok
11:26:06.0528 0x124c mshidumdf - ok
11:26:06.0530 0x124c msisadrv - ok
11:26:06.0532 0x124c MSiSCSI - ok
11:26:06.0534 0x124c msiserver - ok
11:26:06.0536 0x124c MSKSSRV - ok
11:26:06.0538 0x124c MsLldp - ok
11:26:06.0551 0x124c MSMQ - ok
11:26:06.0553 0x124c MSPCLOCK - ok
11:26:06.0555 0x124c MSPQM - ok
11:26:06.0556 0x124c MsRPC - ok
11:26:06.0559 0x124c mssmbios - ok
11:26:06.0561 0x124c MSTEE - ok
11:26:06.0563 0x124c MTConfig - ok
11:26:06.0564 0x124c Mup - ok
11:26:06.0567 0x124c mvumis - ok
11:26:06.0581 0x124c NativeWifiP - ok
11:26:06.0583 0x124c NcaSvc - ok
11:26:06.0597 0x124c NcbService - ok
11:26:06.0599 0x124c NcdAutoSetup - ok
11:26:06.0602 0x124c ndfltr - ok
11:26:06.0605 0x124c NDIS - ok
11:26:06.0607 0x124c NdisCap - ok
11:26:06.0609 0x124c NdisImPlatform - ok
11:26:06.0611 0x124c NdisTapi - ok
11:26:06.0612 0x124c Ndisuio - ok
11:26:06.0615 0x124c NdisVirtualBus - ok
11:26:06.0617 0x124c NdisWan - ok
11:26:06.0620 0x124c ndiswanlegacy - ok
11:26:06.0621 0x124c ndproxy - ok
11:26:06.0633 0x124c Ndu - ok
11:26:06.0635 0x124c NetBIOS - ok
11:26:06.0638 0x124c NetBT - ok
11:26:06.0640 0x124c Netlogon - ok
11:26:06.0642 0x124c Netman - ok
11:26:06.0653 0x124c NetMsmqActivator - ok
11:26:06.0655 0x124c NetPipeActivator - ok
11:26:06.0657 0x124c netprofm - ok
11:26:06.0683 0x124c NetSetupSvc - ok
11:26:06.0684 0x124c NetTcpActivator - ok
11:26:06.0686 0x124c NetTcpPortSharing - ok
11:26:06.0702 0x124c NgcCtnrSvc - ok
11:26:06.0704 0x124c NgcSvc - ok
11:26:06.0706 0x124c NlaSvc - ok
11:26:06.0708 0x124c Npfs - ok
11:26:06.0710 0x124c npsvctrig - ok
11:26:06.0712 0x124c nsi - ok
11:26:06.0714 0x124c nsiproxy - ok
11:26:06.0716 0x124c NTFS - ok
11:26:06.0720 0x124c Null - ok
11:26:06.0731 0x124c [ 158AD24745BD85BA9BE3C51C38F48C32, B053A3B5A5CAE2CBC47E2C19E636AD70F376334EFFBB391A76562E67CBF3AC86 ] nusb3hub C:\WINDOWS\system32\drivers\nusb3hub.sys
11:26:06.0735 0x124c nusb3hub - ok
11:26:06.0747 0x124c [ D40A13B2C0891E218F9523B376955DB6, 9A2AAAF960868B860A65579EAD507B35C64CFD6C3581F8D731ADF975F778D10E ] nusb3xhc C:\WINDOWS\system32\drivers\nusb3xhc.sys
11:26:06.0752 0x124c nusb3xhc - ok
11:26:06.0771 0x124c [ C1CBFEA565CB9BF8AE63657EE10DCE73, E908449BFB679D950764A2BA6A2B9875327605E399626F854BA8F968BDC14107 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
11:26:06.0776 0x124c NVHDA - ok
11:26:06.0968 0x124c [ DF0BB2C179476D312B7BC0056CEC50A6, 64CC3201FA903E0EC9C99BE167C439C14A4C9AC2A88898B64789EEB381DB97B6 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
11:26:07.0159 0x124c nvlddmkm - ok
11:26:07.0169 0x124c nvraid - ok
11:26:07.0171 0x124c nvstor - ok
11:26:07.0209 0x124c [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
11:26:07.0229 0x124c nvsvc - ok
11:26:07.0292 0x124c [ AA130938A27BB80A8B6438EF83232275, 7C5A4863CD22413723C9F7658855E34088A2F89DF740531ED7986F67A30935E0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:26:07.0321 0x124c nvUpdatusService - ok
11:26:07.0324 0x124c nv_agp - ok
11:26:07.0329 0x124c OneSyncSvc - ok
11:26:07.0361 0x124c [ 11E0B35479C895888BA3D7F619DCFFF3, 6ED82C19898101EC00BD64A9F90595C3D20AD2D2902AA8765B740FB3B9312DDF ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:26:07.0365 0x124c ose64 - ok
11:26:07.0484 0x124c [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:26:07.0597 0x124c osppsvc - ok
11:26:07.0612 0x124c p2pimsvc - ok
11:26:07.0617 0x124c p2psvc - ok
11:26:07.0632 0x124c Parport - ok
11:26:07.0642 0x124c partmgr - ok
11:26:07.0644 0x124c PcaSvc - ok
11:26:07.0646 0x124c pci - ok
11:26:07.0648 0x124c pciide - ok
11:26:07.0650 0x124c pcmcia - ok
11:26:07.0652 0x124c pcw - ok
11:26:07.0660 0x124c pdc - ok
11:26:07.0695 0x124c [ 7CADB4ABAE72390951886CF259791F5F, 9A0F4113F4E09911A44843F31E8C7047EEA39611AB490A4CF16FAE9D95310076 ] PDFProFiltSrvPP C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
11:26:07.0809 0x124c PDFProFiltSrvPP - ok
11:26:07.0833 0x124c PEAUTH - ok
11:26:07.0836 0x124c PeerDistSvc - ok
11:26:07.0847 0x124c percsas2i - ok
11:26:07.0848 0x124c percsas3i - ok
11:26:07.0874 0x124c PerfHost - ok
11:26:07.0900 0x124c PhoneSvc - ok
11:26:07.0907 0x124c PimIndexMaintenanceSvc - ok
11:26:07.0910 0x124c pla - ok
11:26:07.0919 0x124c PlugPlay - ok
11:26:07.0921 0x124c PNRPAutoReg - ok
11:26:07.0922 0x124c PNRPsvc - ok
11:26:07.0925 0x124c PolicyAgent - ok
11:26:07.0927 0x124c Power - ok
11:26:07.0929 0x124c PptpMiniport - ok
11:26:08.0025 0x124c [ 15709A9AB1411565754CEE33AAB36387, 77CBC04346F8F247B4614CE65FBD225F0A24827EDD1FDB34900D05673B682D84 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
11:26:08.0203 0x124c PrintNotify - ok
11:26:08.0207 0x124c Processor - ok
11:26:08.0215 0x124c ProfSvc - ok
11:26:08.0216 0x124c Psched - ok
11:26:08.0219 0x124c QWAVE - ok
11:26:08.0220 0x124c QWAVEdrv - ok
11:26:08.0227 0x124c RasAcd - ok
11:26:08.0236 0x124c RasAgileVpn - ok
11:26:08.0244 0x124c RasAuto - ok
11:26:08.0251 0x124c Rasl2tp - ok
11:26:08.0259 0x124c RasMan - ok
11:26:08.0260 0x124c RasPppoe - ok
11:26:08.0262 0x124c RasSstp - ok
11:26:08.0264 0x124c rdbss - ok
11:26:08.0267 0x124c rdpbus - ok
11:26:08.0269 0x124c RDPDR - ok
11:26:08.0273 0x124c RdpVideoMiniport - ok
11:26:08.0274 0x124c rdyboost - ok
11:26:08.0276 0x124c ReFSv1 - ok
11:26:08.0292 0x124c RemoteAccess - ok
11:26:08.0294 0x124c RemoteRegistry - ok
11:26:08.0300 0x124c RetailDemo - ok
11:26:08.0302 0x124c RpcEptMapper - ok
11:26:08.0314 0x124c RpcLocator - ok
11:26:08.0315 0x124c RpcSs - ok
11:26:08.0317 0x124c rspndr - ok
11:26:08.0334 0x124c [ 36FCA0C67BCDC0DA047F5F36743B5CB9, 55B8F43B78B55900DA055206644D1DAD60AE453DB1A8D4527B86FAC346EEE587 ] RSUSBVSTOR C:\WINDOWS\System32\Drivers\RtsUVStor.sys
11:26:08.0342 0x124c RSUSBVSTOR - ok
11:26:08.0344 0x124c s3cap - ok
11:26:08.0346 0x124c SamSs - ok
11:26:08.0348 0x124c sbp2port - ok
11:26:08.0356 0x124c SCardSvr - ok
11:26:08.0358 0x124c ScDeviceEnum - ok
11:26:08.0360 0x124c scfilter - ok
11:26:08.0362 0x124c Schedule - ok
11:26:08.0372 0x124c SCPolicySvc - ok
11:26:08.0384 0x124c sdbus - ok
11:26:08.0388 0x124c SDRSVC - ok
11:26:08.0392 0x124c sdstor - ok
11:26:08.0394 0x124c seclogon - ok
11:26:08.0395 0x124c SENS - ok
11:26:08.0397 0x124c SensorDataService - ok
11:26:08.0411 0x124c SensorService - ok
11:26:08.0413 0x124c SensrSvc - ok
11:26:08.0415 0x124c SerCx - ok
11:26:08.0416 0x124c SerCx2 - ok
11:26:08.0419 0x124c Serenum - ok
11:26:08.0438 0x124c Serial - ok
11:26:08.0440 0x124c sermouse - ok
11:26:08.0444 0x124c SessionEnv - ok
11:26:08.0449 0x124c sfloppy - ok
11:26:08.0462 0x124c SharedAccess - ok
11:26:08.0481 0x124c ShellHWDetection - ok
11:26:08.0483 0x124c SiSRaid2 - ok
11:26:08.0485 0x124c SiSRaid4 - ok
11:26:08.0488 0x124c smphost - ok
11:26:08.0517 0x124c SmsRouter - ok
11:26:08.0522 0x124c SNMPTRAP - ok
11:26:08.0530 0x124c spaceport - ok
11:26:08.0531 0x124c SpbCx - ok
11:26:08.0543 0x124c Spooler - ok
11:26:08.0545 0x124c sppsvc - ok
11:26:08.0547 0x124c srv - ok
11:26:08.0549 0x124c srv2 - ok
11:26:08.0551 0x124c srvnet - ok
11:26:08.0554 0x124c SSDPSRV - ok
11:26:08.0558 0x124c SstpSvc - ok
11:26:08.0577 0x124c [ 9B74226E10CD57E965F87014841016F9, 95C76049DBBF3B31A9B01CFD0EDAAC47DE9A1F096B61D05C47FB85E1AFC07288 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
11:26:08.0582 0x124c ssudmdm - ok
11:26:08.0595 0x124c StateRepository - ok
11:26:08.0649 0x124c [ 0E952C9DDE28962922CCDEFA0BF8C425, 41AEA8777DDDE907E94B69A0D03D4EAD4983DB1B798CB01A77E4D8E57CA4A9AD ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
11:26:08.0664 0x124c Stereo Service - ok
11:26:08.0667 0x124c stexstor - ok
11:26:08.0672 0x124c [ 2834415C4EDD6CE35CB3CFEC50E08469, 28426616C709457DF38B5E2B4B9666C1255B81D2097589A95AAABD1BFACD302A ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
11:26:08.0675 0x124c StillCam - ok
11:26:08.0685 0x124c stisvc - ok
11:26:08.0687 0x124c storahci - ok
11:26:08.0690 0x124c storflt - ok
11:26:08.0692 0x124c stornvme - ok
11:26:08.0695 0x124c storqosflt - ok
11:26:08.0697 0x124c StorSvc - ok
11:26:08.0699 0x124c storufs - ok
11:26:08.0700 0x124c storvsc - ok
11:26:08.0702 0x124c svsvc - ok
11:26:08.0704 0x124c swenum - ok
11:26:08.0707 0x124c swprv - ok
11:26:08.0742 0x124c [ 1001FE2D332F7D82CBB62ABAF014948F, 3A9A5A9255DF876732D33126AF4579566C0CAF9BA2C5684E7D1D1F5F4F85A989 ] SynoDrService C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe
11:26:08.0748 0x124c SynoDrService - ok
11:26:08.0760 0x124c Synth3dVsc - ok
11:26:08.0762 0x124c SysMain - ok
11:26:08.0785 0x124c SystemEventsBroker - ok
11:26:08.0787 0x124c TabletInputService - ok
11:26:08.0789 0x124c TapiSrv - ok
11:26:08.0791 0x124c Tcpip - ok
11:26:08.0792 0x124c Tcpip6 - ok
11:26:08.0795 0x124c tcpipreg - ok
11:26:08.0810 0x124c tdx - ok
11:26:08.0812 0x124c terminpt - ok
11:26:08.0823 0x124c TermService - ok
11:26:08.0825 0x124c Themes - ok
11:26:08.0827 0x124c TieringEngineService - ok
11:26:08.0840 0x124c [ BDFC55C2389D23C7E36A627BD580EE98, E25CF1C01CF90B348333A0CBAF26F8F5751AE725E6059C35C492E00479105B70 ] tihub3 C:\WINDOWS\system32\drivers\tihub3.sys
11:26:08.0844 0x124c tihub3 - ok
11:26:08.0858 0x124c tiledatamodelsvc - ok
11:26:08.0863 0x124c TimeBroker - ok
11:26:08.0884 0x124c [ EBEDBC08C2E5EB4EC8E3DA4BF3D827B1, FC465EAF5C2E44F279B54B13C88ACCE565B1C9C6DDEB8D87FD0CD6CD3AA1AABC ] tixhci C:\WINDOWS\system32\drivers\tixhci.sys
11:26:08.0893 0x124c tixhci - ok
11:26:08.0895 0x124c TPM - ok
11:26:08.0897 0x124c TrkWks - ok
11:26:08.0913 0x124c TrustedInstaller - ok
11:26:08.0917 0x124c tsusbflt - ok
11:26:08.0918 0x124c TsUsbGD - ok
11:26:08.0921 0x124c tunnel - ok
11:26:08.0932 0x124c tzautoupdate - ok
11:26:08.0933 0x124c uagp35 - ok
11:26:08.0936 0x124c UASPStor - ok
11:26:08.0938 0x124c UcmCx0101 - ok
11:26:08.0940 0x124c UcmUcsi - ok
11:26:08.0942 0x124c Ucx01000 - ok
11:26:08.0943 0x124c UdeCx - ok
11:26:08.0945 0x124c udfs - ok
11:26:08.0947 0x124c UEFI - ok
11:26:08.0949 0x124c Ufx01000 - ok
11:26:08.0964 0x124c UfxChipidea - ok
11:26:08.0966 0x124c ufxsynopsys - ok
11:26:08.0969 0x124c UI0Detect - ok
11:26:08.0971 0x124c uliagpkx - ok
11:26:08.0973 0x124c umbus - ok
11:26:08.0975 0x124c UmPass - ok
11:26:08.0977 0x124c UmRdpService - ok
11:26:08.0978 0x124c UnistoreSvc - ok
11:26:08.0984 0x124c upnphost - ok
11:26:08.0986 0x124c UrsChipidea - ok
11:26:08.0988 0x124c UrsCx01000 - ok
11:26:08.0990 0x124c UrsSynopsys - ok
11:26:09.0004 0x124c [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
11:26:09.0008 0x124c USBAAPL64 - ok
11:26:09.0010 0x124c usbccgp - ok
11:26:09.0011 0x124c usbcir - ok
11:26:09.0057 0x124c [ 635686E528F2C9CB916EC1BB04EE6AD1, 080A0F209773232860F510F17005EF92650BA831F69BB0006AEF11A2BB0A4906 ] UsbClientService C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
11:26:09.0168 0x124c UsbClientService - ok
11:26:09.0170 0x124c usbehci - ok
11:26:09.0171 0x124c usbhub - ok
11:26:09.0174 0x124c USBHUB3 - ok
11:26:09.0176 0x124c usbohci - ok
11:26:09.0177 0x124c usbprint - ok
11:26:09.0205 0x124c [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
11:26:09.0208 0x124c usbscan - ok
11:26:09.0210 0x124c usbser - ok
11:26:09.0212 0x124c USBSTOR - ok
11:26:09.0214 0x124c usbuhci - ok
11:26:09.0215 0x124c USBXHCI - ok
11:26:09.0225 0x124c UserDataSvc - ok
11:26:09.0239 0x124c UserManager - ok
11:26:09.0241 0x124c UsoSvc - ok
11:26:09.0243 0x124c VaultSvc - ok
11:26:09.0245 0x124c vdrvroot - ok
11:26:09.0247 0x124c vds - ok
11:26:09.0248 0x124c VerifierExt - ok
11:26:09.0250 0x124c vhdmp - ok
11:26:09.0252 0x124c vhf - ok
11:26:09.0254 0x124c vmbus - ok
11:26:09.0256 0x124c VMBusHID - ok
11:26:09.0265 0x124c vmicguestinterface - ok
11:26:09.0266 0x124c vmicheartbeat - ok
11:26:09.0268 0x124c vmickvpexchange - ok
11:26:09.0269 0x124c vmicrdv - ok
11:26:09.0271 0x124c vmicshutdown - ok
11:26:09.0272 0x124c vmictimesync - ok
11:26:09.0274 0x124c vmicvmsession - ok
11:26:09.0275 0x124c vmicvss - ok
11:26:09.0277 0x124c volmgr - ok
11:26:09.0279 0x124c volmgrx - ok
11:26:09.0281 0x124c volsnap - ok
11:26:09.0282 0x124c vpci - ok
11:26:09.0284 0x124c vsmraid - ok
11:26:09.0286 0x124c VSS - ok
11:26:09.0288 0x124c VSTXRAID - ok
11:26:09.0291 0x124c vwifibus - ok
11:26:09.0293 0x124c vwififlt - ok
11:26:09.0302 0x124c W32Time - ok
11:26:09.0317 0x124c w3logsvc - ok
11:26:09.0325 0x124c W3SVC - ok
11:26:09.0326 0x124c WacomPen - ok
11:26:09.0328 0x124c WalletService - ok
11:26:09.0331 0x124c wanarp - ok
11:26:09.0332 0x124c wanarpv6 - ok
11:26:09.0334 0x124c WAS - ok
11:26:09.0336 0x124c wbengine - ok
11:26:09.0345 0x124c WbioSrvc - ok
11:26:09.0359 0x124c Wcmsvc - ok
11:26:09.0360 0x124c wcncsvc - ok
11:26:09.0362 0x124c WcsPlugInService - ok
11:26:09.0364 0x124c WdBoot - ok
11:26:09.0384 0x124c [ A556768CC1FA4F36022BEE2F0EDE2566, 3A4BC9DE614F43CD94FA354A565C66B2E1E36C0608D84C6288010B97B9D811AA ] WDC_SAM C:\WINDOWS\System32\drivers\wdcsam64.sys
11:26:09.0386 0x124c WDC_SAM - ok
11:26:09.0388 0x124c Wdf01000 - ok
11:26:09.0390 0x124c WdFilter - ok
11:26:09.0392 0x124c WdiServiceHost - ok
11:26:09.0394 0x124c WdiSystemHost - ok
11:26:09.0397 0x124c wdiwifi - ok
11:26:09.0399 0x124c WdNisDrv - ok
11:26:09.0417 0x124c WdNisSvc - ok
11:26:09.0419 0x124c WebClient - ok
11:26:09.0421 0x124c Wecsvc - ok
11:26:09.0423 0x124c WEPHOSTSVC - ok
11:26:09.0424 0x124c wercplsupport - ok
11:26:09.0426 0x124c WerSvc - ok
11:26:09.0437 0x124c WFPLWFS - ok
11:26:09.0439 0x124c WiaRpc - ok
11:26:09.0446 0x124c WIMMount - ok
11:26:09.0447 0x124c WinDefend - ok
11:26:09.0451 0x124c WindowsTrustedRT - ok
11:26:09.0453 0x124c WindowsTrustedRTProxy - ok
11:26:09.0455 0x124c WinHttpAutoProxySvc - ok
11:26:09.0459 0x124c WinMad - ok
11:26:09.0472 0x124c Winmgmt - ok
11:26:09.0483 0x124c WinRM - ok
11:26:09.0486 0x124c WINUSB - ok
11:26:09.0488 0x124c WinVerbs - ok
11:26:09.0510 0x124c WlanSvc - ok
11:26:09.0512 0x124c wlidsvc - ok
11:26:09.0513 0x124c WmiAcpi - ok
11:26:09.0516 0x124c wmiApSrv - ok
11:26:09.0532 0x124c WMPNetworkSvc - ok
11:26:09.0543 0x124c [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
11:26:09.0547 0x124c Wof - ok
11:26:09.0557 0x124c workfolderssvc - ok
11:26:09.0559 0x124c wpcfltr - ok
11:26:09.0568 0x124c WPDBusEnum - ok
11:26:09.0570 0x124c WpdUpFltr - ok
11:26:09.0572 0x124c WpnService - ok
11:26:09.0575 0x124c ws2ifsl - ok
11:26:09.0578 0x124c wscsvc - ok
11:26:09.0580 0x124c WSDPrintDevice - ok
11:26:09.0581 0x124c WSearch - ok
11:26:09.0587 0x124c WSService - ok
11:26:09.0589 0x124c wuauserv - ok
11:26:09.0591 0x124c WudfPf - ok
11:26:09.0592 0x124c WUDFRd - ok
11:26:09.0594 0x124c wudfsvc - ok
11:26:09.0596 0x124c WUDFWpdFs - ok
11:26:09.0598 0x124c WUDFWpdMtp - ok
11:26:09.0600 0x124c WwanSvc - ok
11:26:09.0615 0x124c XblAuthManager - ok
11:26:09.0617 0x124c XblGameSave - ok
11:26:09.0627 0x124c xboxgip - ok
11:26:09.0639 0x124c XboxNetApiSvc - ok
11:26:09.0642 0x124c xinputhid - ok
11:26:09.0643 0x124c ================ Scan global ===============================
11:26:09.0670 0x124c [ Global ] - ok
11:26:09.0670 0x124c ================ Scan MBR ==================================
11:26:09.0680 0x124c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:26:09.0822 0x124c \Device\Harddisk0\DR0 - ok
11:26:09.0908 0x124c [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
11:26:09.0932 0x124c \Device\Harddisk1\DR1 - ok
11:26:09.0934 0x124c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
11:26:09.0938 0x124c \Device\Harddisk2\DR2 - ok
11:26:09.0941 0x124c [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk7\DR10
11:26:09.0945 0x124c \Device\Harddisk7\DR10 - ok
11:26:09.0945 0x124c ================ Scan VBR ==================================
11:26:09.0946 0x124c [ 856AA890A79D3F8C26B644D95EC715D2 ] \Device\Harddisk0\DR0\Partition1
11:26:09.0990 0x124c \Device\Harddisk0\DR0\Partition1 - ok
11:26:09.0991 0x124c [ 1E7B33C050D167C0378D32D63C9DCA4B ] \Device\Harddisk0\DR0\Partition2
11:26:10.0037 0x124c \Device\Harddisk0\DR0\Partition2 - ok
11:26:10.0039 0x124c [ 23D8B44A92A8A521754813992123DA0C ] \Device\Harddisk0\DR0\Partition3
11:26:10.0059 0x124c \Device\Harddisk0\DR0\Partition3 - ok
11:26:10.0100 0x124c [ 775092D264CAF1D0F47CB4867E1746DD ] \Device\Harddisk1\DR1\Partition1
11:26:10.0168 0x124c \Device\Harddisk1\DR1\Partition1 - ok
11:26:10.0170 0x124c [ 26673A45BE82207F00EABF2E781AC012 ] \Device\Harddisk2\DR2\Partition1
11:26:10.0243 0x124c \Device\Harddisk2\DR2\Partition1 - ok
11:26:10.0245 0x124c [ B114483442A54DB082D8BBA936B0F9D6 ] \Device\Harddisk7\DR10\Partition1
11:26:10.0246 0x124c \Device\Harddisk7\DR10\Partition1 - ok
11:26:10.0246 0x124c ================ Scan generic autorun ======================
11:26:10.0501 0x124c [ 3497F4D96F7E74F86C02EABB8C9A7222, 024E2098FA34D20BE29B65CCD39CBFB1485AC53245C7FF4E45FFBD76F841D078 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
11:26:10.0671 0x124c RTHDVCPL - ok
11:26:10.0681 0x124c Logitech Download Assistant - ok
11:26:10.0740 0x124c [ 360344AD99C27327A7478BE29EAE9E55, C3C4BC70A3A9406097753A38431062EFA963EEE5517717B26302C40D05834204 ] C:\Program Files\Canon\Canon MF Network Scan Utility\CNMFSUT6.EXE
11:26:10.0747 0x124c MFNetworkScanUtility - ok
11:26:10.0779 0x124c [ 32F1A63C86D009D95994B543511D6E5C, 72336A7DC97E407381262A98311601515AE39D8003EEF6E136114836B382485F ] C:\Windows\system32\spool\drivers\x64\3\WrtMon.exe
11:26:10.0784 0x124c WrtMon.exe - ok
11:26:10.0834 0x124c [ 65B67A6BFE9E9063004394A60C142DA6, ABF2603F96BDC7418A316A807D8F51373FDD84471CF3A56D952DDC940D93B3D1 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
11:26:10.0881 0x124c NvBackend - ok
11:26:10.0913 0x124c [ 747CEF68DA0B3BABD64B74C0E06C050E, C640AF94F66025E8B9937A37A361547580DB3F0B5F62F21E8B30A087BE018015 ] C:\Program Files\iTunes\iTunesHelper.exe
11:26:10.0916 0x124c iTunesHelper - ok
11:26:10.0976 0x124c [ 0D74216DADB44F3E3E517D3F3788215A, AD11A7D2F668EDE04C9C3E895D44D326C95EF476B48E4F7C1DFBA606B7A74588 ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
11:26:10.0986 0x124c IMSS - ok
11:26:11.0026 0x124c [ 094E4E76FB9AB960A73F841BC6733F42, 01C1BFF17BEC6588E192EC4D7ACB74FC9B95ECA7CB8BB9585B04FC8EA73C3B43 ] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
11:26:11.0038 0x124c USB3MON - ok
11:26:11.0084 0x124c [ C26C2750274E1C59041919AA3BEE4B04, A3DAD93869674E6751B6E4C18B8F7F06A2FC9D0B80593379467C58F313613CE7 ] C:\Program Files (x86)\FRISK Software\F-PROT Antivirus for Windows\FProtTray.exe
11:26:11.0134 0x124c F-PROT Antivirus Tray application - ok
11:26:11.0164 0x124c [ 32AC3889C598A7314954CF515E716BDE, DE843C6B523C60776401F799C01948DDC383442B2CEAC2002A867DC860949AFE ] C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe
11:26:11.0169 0x124c IndexSearch - ok
11:26:11.0191 0x124c [ 7D46CE32283158EB7F1D0C8E02D8DDD1, DF68039E55E90EFAB90E5FC8DE79E66CEDECB99EB353C4F349375732AAEF1BE1 ] C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
11:26:11.0196 0x124c PaperPort PTD - ok
11:26:11.0223 0x124c [ 9F0ACAA725CF5A391AF7E2067AE45746, CA7F3C2C9D4DCB135ECBFFEB3448D272552B5DB720E0A526B4AC07B1F5E8BC9E ] C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe
11:26:11.0353 0x124c PDFHook - ok
11:26:11.0418 0x124c [ 154420A93E4F676AA33A055A116255D9, DF76577C22EBB439DF2B72D1B6B7A465F067CCEC886FC7A7FB337865DA1DB914 ] C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe
11:26:11.0422 0x124c PDF5 Registry Controller - ok
11:26:11.0442 0x124c [ 6A91CCB49B1F4CB277D9A802FAC9AEBB, 7D74ADC158B4B026ED7302852E8F6CC6F3819B4F31275987E99D94DD12812185 ] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe
11:26:11.0451 0x124c ControlCenter4 - ok
11:26:11.0515 0x124c [ 4664EE03CA8776CBA0C5D768281E1F4B, 25FC97416FCDF9C58F225928593004037451DEE71C9A510A1C13AD7763FDCF1D ] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
11:26:11.0689 0x124c BrStsMon00 - ok
11:26:11.0793 0x124c [ 2B282A4050FE3B4B70EF9E3070BBFF78, 019B667781F5CE411AEB569EAA4095FA2B9942E43A6A1DFC6EEBB2DA214131FE ] C:\Program Files (x86)\FreePDF_XP\fpassist.exe
11:26:11.0806 0x124c FreePDF Assistant - ok
11:26:11.0865 0x124c [ CD154FD2C99794EB56C88A52D2CEEF61, 64209F7CACCCAB886A956E7B7408DAC9EEBDAC51237CDA7164B1B39720891A0B ] C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe
11:26:11.0894 0x124c RegTool - ok
11:26:11.0925 0x124c [ 059B8158C08C82C78DC6A8153A2467A4, 8E88DBC785CF679D238DC5CCBF0C79B03B30F742CF0FC6427AD0AD2AD5943169 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
11:26:11.0945 0x124c SunJavaUpdateSched - ok
11:26:11.0982 0x124c OneDriveSetup - ok
11:26:11.0983 0x124c OneDriveSetup - ok
11:26:11.0984 0x124c OneDriveSetup - ok
11:26:12.0002 0x124c WAB Migrate - ok
11:26:12.0194 0x124c [ D0EB7306BA8F95FBAC3945F1B0D8F3E6, 29691C048FD1D2619C40CD515FFCEC1CCD37100A5009A8EFDCB7A0AB4D671CAC ] C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe
11:26:12.0475 0x124c Data Replicator 3 - ok
11:26:12.0520 0x124c [ 6BF7676296D5359AFC135A5397000053, D31B9BCB856D6EFDEA27E4D4D341FF939BCBF0E8C97786B447C2074B3C68298E ] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
11:26:12.0696 0x124c ISUSPM - ok
11:26:12.0982 0x124c [ 4696326A0FE08083D814BAB85C7E4D2D, B24C9E20E131DE2B322D3A96FF8D316293D9B2A50D50D3C14828CB545ADFA68F ] C:\Program Files (x86)\PersonalFax\pf.exe
11:26:13.0279 0x124c PERSONALFAX - ok
11:26:13.0525 0x124c [ 0AA871BE5E59B44BC952B69D1DBA8A99, CB9EE82D27F2DCD28E9EB7DA05C63B584D8D30723FB906825CC7914A2E147699 ] C:\Users\*****\AppData\Roaming\BitTorrent Sync\BTSync.exe
11:26:13.0769 0x124c BitTorrent Sync - ok
11:26:13.0851 0x124c [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\*****\AppData\Local\Microsoft\OneDrive\OneDrive.exe
11:26:13.0868 0x124c OneDrive - ok
11:26:13.0868 0x124c Waiting for KSN requests completion. In queue: 51
11:26:14.0115 0x25a0 Object required for P2P: [ 4696326A0FE08083D814BAB85C7E4D2D ] C:\Program Files (x86)\PersonalFax\pf.exe
11:26:14.0336 0x25a0 Object send P2P result: true
11:26:14.0996 0x124c AV detected via SS2: F-PROT Antivirus for Windows, C:\Program Files (x86)\FRISK Software\F-PROT Antivirus for Windows\FPAVServer.exe ( 6.0.9.0 ), 0x71000 ( enabled : updated )
11:26:15.0021 0x124c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x62100 ( disabled : updated )
11:26:15.0027 0x124c Win FW state via NFP2: enabled ( trusted )
11:26:15.0126 0x124c ============================================================
11:26:15.0126 0x124c Scan finished
11:26:15.0126 0x124c ============================================================
11:26:15.0130 0x1d70 Detected object count: 0
11:26:15.0130 0x1d70 Actual detected object count: 0
11:26:43.0952 0x11f8 Deinitialize success Das TDS Killer Log habe ich in einer Antwort angehängt, da das Posting sonst zu gross war. |