sweetohm | 30.09.2016 22:55 | Tdskiller_log Code:
23:34:43.0297 0x19e0 TDSS rootkit removing tool 3.1.0.11 Aug 5 2016 12:13:31
23:34:43.0297 0x19e0 UEFI system
23:34:46.0298 0x19e0 ============================================================
23:34:46.0298 0x19e0 Current date / time: 2016/09/30 23:34:46.0298
23:34:46.0298 0x19e0 SystemInfo:
23:34:46.0298 0x19e0
23:34:46.0298 0x19e0 OS Version: 10.0.10586 ServicePack: 0.0
23:34:46.0298 0x19e0 Product type: Workstation
23:34:46.0298 0x19e0 ComputerName: FRANKNEU
23:34:46.0298 0x19e0 UserName: Doering_2
23:34:46.0298 0x19e0 Windows directory: C:\WINDOWS
23:34:46.0298 0x19e0 System windows directory: C:\WINDOWS
23:34:46.0298 0x19e0 Running under WOW64
23:34:46.0298 0x19e0 Processor architecture: Intel x64
23:34:46.0298 0x19e0 Number of processors: 8
23:34:46.0298 0x19e0 Page size: 0x1000
23:34:46.0298 0x19e0 Boot type: Normal boot
23:34:46.0298 0x19e0 CodeIntegrityOptions = 0x00000001
23:34:46.0298 0x19e0 ============================================================
23:34:46.0345 0x19e0 KLMD registered as C:\WINDOWS\system32\drivers\60319982.sys
23:34:46.0345 0x19e0 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 10586.589, osProperties = 0x19
23:34:46.0376 0x19e0 System UUID: {5E9811D2-F24E-66C2-C75D-A1F0F5F910F7}
23:34:46.0563 0x19e0 Drive \Device\Harddisk0\DR0 - Size: 0x3BA816000 ( 14.91 Gb ), SectorSize: 0x200, Cylinders: 0x79A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
23:34:46.0595 0x19e0 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
23:34:46.0610 0x19e0 ============================================================
23:34:46.0610 0x19e0 \Device\Harddisk0\DR0:
23:34:46.0610 0x19e0 GPT partitions:
23:34:46.0610 0x19e0 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {4613EE39-4727-4347-8134-173F590F716F}, Name: HFS, StartLBA 0x800, BlocksNum 0x1DD3800
23:34:46.0610 0x19e0 MBR partitions:
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1:
23:34:46.0610 0x19e0 GPT partitions:
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {872B76EE-016C-4DB1-89B3-4303BFA1AD7B}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {75D520AF-498C-43A7-8C41-ED7BFEC32B97}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {342091CF-C278-49B5-9071-7906AB22940F}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {3266E582-7A4C-4764-9679-A5B7F54F3387}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {EF5CB604-7161-401E-9ED6-194202E2BCD7}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x6E6D0CA7
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E4E91EEF-464A-481D-BFCD-9EBFC2FB5D22}, Name: , StartLBA 0x6EB7B800, BlocksNum 0x18B000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {FDF2324F-F85F-459C-BBA3-2977B07F71D0}, Name: Basic data partition, StartLBA 0x6ED06800, BlocksNum 0x3200000
23:34:46.0610 0x19e0 \Device\Harddisk1\DR1\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E609CB11-1CA1-49A5-8468-C848983B434D}, Name: Basic data partition, StartLBA 0x71F06800, BlocksNum 0x2800000
23:34:46.0610 0x19e0 MBR partitions:
23:34:46.0610 0x19e0 ============================================================
23:34:46.0657 0x19e0 C: <-> \Device\Harddisk1\DR1\Partition5
23:34:46.0720 0x19e0 D: <-> \Device\Harddisk1\DR1\Partition7
23:34:46.0720 0x19e0 F: <-> \Device\Harddisk0\DR0\Partition1
23:34:46.0720 0x19e0 ============================================================
23:34:46.0720 0x19e0 Initialize success
23:34:46.0720 0x19e0 ============================================================
23:34:50.0642 0x0320 ============================================================
23:34:50.0642 0x0320 Scan started
23:34:50.0642 0x0320 Mode: Manual;
23:34:50.0642 0x0320 ============================================================
23:34:50.0642 0x0320 KSN ping started
23:34:50.0642 0x0320 KSN ping finished: false
23:34:52.0033 0x0320 ================ Scan system memory ========================
23:34:52.0033 0x0320 System memory - ok
23:34:52.0033 0x0320 ================ Scan services =============================
23:34:52.0173 0x0320 1394ohci - ok
23:34:52.0173 0x0320 3ware - ok
23:34:52.0189 0x0320 ACPI - ok
23:34:52.0189 0x0320 acpiex - ok
23:34:52.0204 0x0320 acpipagr - ok
23:34:52.0220 0x0320 AcpiPmi - ok
23:34:52.0220 0x0320 acpitime - ok
23:34:52.0251 0x0320 [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
23:34:52.0267 0x0320 ACPIVPC - ok
23:34:52.0361 0x0320 [ DC00FD73505DAEDD99CAF4533B0C05BD, 2863D1F0587B79254FBE093C191C73892768CF2AC59BEF97745EE66CEE3473AF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
23:34:52.0361 0x0320 AdobeARMservice - ok
23:34:52.0392 0x0320 ADP80XX - ok
23:34:52.0408 0x0320 AFD - ok
23:34:52.0408 0x0320 agp440 - ok
23:34:52.0439 0x0320 ahcache - ok
23:34:52.0454 0x0320 AJRouter - ok
23:34:52.0470 0x0320 ALG - ok
23:34:52.0486 0x0320 AmdK8 - ok
23:34:52.0486 0x0320 AmdPPM - ok
23:34:52.0486 0x0320 amdsata - ok
23:34:52.0486 0x0320 amdsbs - ok
23:34:52.0501 0x0320 amdxata - ok
23:34:52.0611 0x0320 [ 70EE2EA42E9F20B794C4804454F1A37A, 49B615BF138E2C5AFF04EFDF7928D49117DF41DCD48922683E4D3D3FD0DF9A04 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
23:34:52.0626 0x0320 AntiVirMailService - ok
23:34:52.0689 0x0320 [ 9E6642340CC7C685E07981F0B43B661A, A6CC970817B616CB4BBF37089DC687567EABC2DC326CBACBF1E370AC98E5D65A ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
23:34:52.0704 0x0320 AntiVirSchedulerService - ok
23:34:52.0736 0x0320 [ 9E6642340CC7C685E07981F0B43B661A, A6CC970817B616CB4BBF37089DC687567EABC2DC326CBACBF1E370AC98E5D65A ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe
23:34:52.0767 0x0320 AntiVirService - ok
23:34:52.0829 0x0320 [ 96812A05A4C39CC55CF0CD286C3D6B8F, 18F38ACB3E87EFFD9B3A1126B0C4FF6CE3A6F327E01A6FC8AB2DCFFE9BF58953 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
23:34:52.0845 0x0320 AntiVirWebService - ok
23:34:52.0861 0x0320 AppID - ok
23:34:52.0876 0x0320 AppIDSvc - ok
23:34:52.0876 0x0320 Appinfo - ok
23:34:52.0908 0x0320 AppReadiness - ok
23:34:52.0923 0x0320 AppXSvc - ok
23:34:52.0923 0x0320 arcsas - ok
23:34:52.0939 0x0320 AsyncMac - ok
23:34:52.0939 0x0320 atapi - ok
23:34:52.0986 0x0320 AudioEndpointBuilder - ok
23:34:53.0001 0x0320 Audiosrv - ok
23:34:53.0017 0x0320 [ AA0F13E719C3C527287AD87E9205F4D9, 818AB6B2B9AF0ABA28954A142527CE71C25CC24DDC64581EF7117CA88C6CF302 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
23:34:53.0017 0x0320 avgntflt - ok
23:34:53.0048 0x0320 [ 9039B209BA877AF088288DB83C18D3D8, 11EC0E195A735A7599C74DD25A00F86BD44AEBAE6C20D9A995DCEB252887679E ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
23:34:53.0048 0x0320 avipbb - ok
23:34:53.0111 0x0320 [ A177265C1777ABE56B22D921F91DDC38, D4E9C5BFC65063EDA015723058805B03C51F5B7456B404A4548CEC8DF6A3F7B7 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
23:34:53.0126 0x0320 Avira.ServiceHost - ok
23:34:53.0173 0x0320 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
23:34:53.0173 0x0320 avkmgr - ok
23:34:53.0205 0x0320 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
23:34:53.0205 0x0320 avnetflt - ok
23:34:53.0236 0x0320 AxInstSV - ok
23:34:53.0251 0x0320 b06bdrv - ok
23:34:53.0283 0x0320 BasicDisplay - ok
23:34:53.0283 0x0320 BasicRender - ok
23:34:53.0298 0x0320 bcmfn - ok
23:34:53.0298 0x0320 bcmfn2 - ok
23:34:53.0330 0x0320 BDESVC - ok
23:34:53.0330 0x0320 Beep - ok
23:34:53.0345 0x0320 BFE - ok
23:34:53.0361 0x0320 BITS - ok
23:34:53.0361 0x0320 bowser - ok
23:34:53.0376 0x0320 BrokerInfrastructure - ok
23:34:53.0392 0x0320 Browser - ok
23:34:53.0392 0x0320 BthAvrcpTg - ok
23:34:53.0408 0x0320 BthEnum - ok
23:34:53.0408 0x0320 BthHFEnum - ok
23:34:53.0423 0x0320 bthhfhid - ok
23:34:53.0423 0x0320 BthHFSrv - ok
23:34:53.0439 0x0320 BthLEEnum - ok
23:34:53.0439 0x0320 BTHMODEM - ok
23:34:53.0470 0x0320 BthPan - ok
23:34:53.0486 0x0320 BTHPORT - ok
23:34:53.0486 0x0320 bthserv - ok
23:34:53.0502 0x0320 BTHUSB - ok
23:34:53.0517 0x0320 buttonconverter - ok
23:34:53.0517 0x0320 CapImg - ok
23:34:53.0517 0x0320 cdfs - ok
23:34:53.0533 0x0320 CDPSvc - ok
23:34:53.0533 0x0320 cdrom - ok
23:34:53.0548 0x0320 CertPropSvc - ok
23:34:53.0564 0x0320 circlass - ok
23:34:53.0564 0x0320 CLFS - ok
23:34:53.0580 0x0320 ClipSVC - ok
23:34:53.0673 0x0320 [ E26C19EB9CF338CB1FB7C2912ADFA81C, 819D1F2C6F4AAA7320FECE26D51F33ABF8815D04E58ABEA3E12CD5E9D85CBD4C ] CLKMSVC10_3A60B698 C:\Program Files (x86)\Lenovo\PowerDVD10\NavFilter\kmsvc.exe
23:34:53.0673 0x0320 CLKMSVC10_3A60B698 - ok
23:34:53.0705 0x0320 CmBatt - ok
23:34:53.0720 0x0320 CNG - ok
23:34:53.0736 0x0320 cnghwassist - ok
23:34:53.0798 0x0320 CompositeBus - ok
23:34:53.0798 0x0320 COMSysApp - ok
23:34:53.0798 0x0320 condrv - ok
23:34:53.0814 0x0320 CoreMessagingRegistrar - ok
23:34:53.0830 0x0320 CryptSvc - ok
23:34:53.0830 0x0320 dam - ok
23:34:53.0845 0x0320 DcomLaunch - ok
23:34:53.0861 0x0320 DcpSvc - ok
23:34:53.0892 0x0320 defragsvc - ok
23:34:53.0892 0x0320 DeviceAssociationService - ok
23:34:53.0908 0x0320 DeviceInstall - ok
23:34:53.0908 0x0320 DevQueryBroker - ok
23:34:53.0923 0x0320 Dfsc - ok
23:34:53.0939 0x0320 Dhcp - ok
23:34:54.0002 0x0320 diagnosticshub.standardcollector.service - ok
23:34:54.0033 0x0320 DiagTrack - ok
23:34:54.0048 0x0320 disk - ok
23:34:54.0048 0x0320 DmEnrollmentSvc - ok
23:34:54.0064 0x0320 dmvsc - ok
23:34:54.0064 0x0320 dmwappushservice - ok
23:34:54.0080 0x0320 Dnscache - ok
23:34:54.0080 0x0320 dot3svc - ok
23:34:54.0111 0x0320 [ C0AA415718DDD13A136E353844628A65, 7E2F2A139E897EAE56038B920BDA9381094BC0AE9E626F6634E6B444B8B0C91F ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
23:34:54.0111 0x0320 dot4 - ok
23:34:54.0142 0x0320 [ CC88A1D8A39752859101ECCE1F1BC888, F21C1D478180BC5E932BB2C2E4618E3ED463CA87ACEDEB139682D218435F82F1 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
23:34:54.0142 0x0320 Dot4Print - ok
23:34:54.0158 0x0320 [ 292ADB7C57B5457F18F2FC06934B0B40, 12FFDF5F48A79B1B4ADBB88BA2CB6C59DD6719554E8EA6BEEFE99B3E3C66F1AC ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
23:34:54.0158 0x0320 dot4usb - ok
23:34:54.0173 0x0320 DPS - ok
23:34:54.0189 0x0320 drmkaud - ok
23:34:54.0189 0x0320 DsmSvc - ok
23:34:54.0205 0x0320 DsSvc - ok
23:34:54.0220 0x0320 DXGKrnl - ok
23:34:54.0236 0x0320 Eaphost - ok
23:34:54.0236 0x0320 ebdrv - ok
23:34:54.0236 0x0320 EFS - ok
23:34:54.0236 0x0320 EhStorClass - ok
23:34:54.0267 0x0320 EhStorTcgDrv - ok
23:34:54.0298 0x0320 [ BDD265EEB37DF5953A547FE412E2472F, 17EB4FD54D62207937F8CA7454837DBF1EEC867AEDAF201FC2E839A3ED357F4F ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
23:34:54.0298 0x0320 ElbyCDIO - ok
23:34:54.0298 0x0320 embeddedmode - ok
23:34:54.0314 0x0320 EntAppSvc - ok
23:34:54.0314 0x0320 ErrDev - ok
23:34:54.0314 0x0320 EventSystem - ok
23:34:54.0361 0x0320 [ 334C907536E815E56CD13108A6D5FB9D, 0CEA0A330607B44A4CF0F0D5C92E91C7E2157404410F651CC4F8BA14A74523AE ] ewusbmbb C:\WINDOWS\System32\drivers\ewusbwwan.sys
23:34:54.0377 0x0320 ewusbmbb - ok
23:34:54.0408 0x0320 [ 86F7951BBCEE4A86E79A97306BD14318, 84B52A0392DA53ED71A2C4D483DD93DDF552BF8AC764C7BD47BE0EB58C7C8219 ] ew_hwusbdev C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys
23:34:54.0423 0x0320 ew_hwusbdev - ok
23:34:54.0455 0x0320 [ D2EAA04AF43154B62FA85B08BAD0A7CA, B18F09CAD04AD61A1B8DCD3BBC70A82FB50008C147389D3245E39856BA940A87 ] excfs C:\WINDOWS\system32\DRIVERS\excfs.sys
23:34:54.0455 0x0320 excfs - ok
23:34:54.0470 0x0320 [ E6082A6C109238A725D83184724C4A36, 66F0D4798C357FFCC5A35E45BE8E5F0A97E7BCF98CFAA1BB2269F6D6B910A0A3 ] excsd C:\WINDOWS\system32\DRIVERS\excsd.sys
23:34:54.0470 0x0320 excsd - ok
23:34:54.0486 0x0320 exfat - ok
23:34:54.0548 0x0320 [ 68030FF4B7669E15916910885E2E6160, 324EC07A0135354A5D41ED841919D61C218ECA718DE8A8357B0D2AD0B621777B ] ExpressCache C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
23:34:54.0564 0x0320 ExpressCache - ok
23:34:54.0580 0x0320 fastfat - ok
23:34:54.0611 0x0320 Fax - ok
23:34:54.0611 0x0320 fdc - ok
23:34:54.0627 0x0320 fdPHost - ok
23:34:54.0642 0x0320 FDResPub - ok
23:34:54.0658 0x0320 fhsvc - ok
23:34:54.0689 0x0320 FileCrypt - ok
23:34:54.0689 0x0320 FileInfo - ok
23:34:54.0705 0x0320 Filetrace - ok
23:34:54.0705 0x0320 flpydisk - ok
23:34:54.0705 0x0320 FltMgr - ok
23:34:54.0705 0x0320 FontCache - ok
23:34:54.0814 0x0320 FontCache3.0.0.0 - ok
23:34:54.0814 0x0320 FsDepends - ok
23:34:54.0814 0x0320 Fs_Rec - ok
23:34:54.0830 0x0320 fvevol - ok
23:34:54.0830 0x0320 gagp30kx - ok
23:34:54.0923 0x0320 [ C1D839D6279966F4DF4066472AC116DB, 1A46AC04B75230AF0E64626682AD080802528DB96AA2F4FD8ADF5B0D3AD44417 ] Garmin Device Interaction Service C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
23:34:54.0955 0x0320 Garmin Device Interaction Service - ok
23:34:54.0986 0x0320 gencounter - ok
23:34:54.0986 0x0320 genericusbfn - ok
23:34:55.0002 0x0320 GPIOClx0101 - ok
23:34:55.0017 0x0320 gpsvc - ok
23:34:55.0033 0x0320 GpuEnergyDrv - ok
23:34:55.0095 0x0320 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:34:55.0095 0x0320 gupdate - ok
23:34:55.0111 0x0320 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:34:55.0111 0x0320 gupdatem - ok
23:34:55.0127 0x0320 HDAudBus - ok
23:34:55.0127 0x0320 HidBatt - ok
23:34:55.0127 0x0320 HidBth - ok
23:34:55.0142 0x0320 hidi2c - ok
23:34:55.0142 0x0320 hidinterrupt - ok
23:34:55.0142 0x0320 HidIr - ok
23:34:55.0174 0x0320 hidserv - ok
23:34:55.0205 0x0320 HidUsb - ok
23:34:55.0221 0x0320 HomeGroupListener - ok
23:34:55.0236 0x0320 HomeGroupProvider - ok
23:34:55.0252 0x0320 HpSAMD - ok
23:34:55.0330 0x0320 HTTP - ok
23:34:55.0377 0x0320 [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys
23:34:55.0392 0x0320 huawei_enumerator - ok
23:34:55.0439 0x0320 [ 04D1DE1E8ACE40CA396502C90524E945, C579D0C9D08617E91EAC4EE0D74BBE2911E1D76BF10D7120CCEEB0C23A9EF8E6 ] hwdatacard C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
23:34:55.0439 0x0320 hwdatacard - ok
23:34:55.0502 0x0320 HWDeviceService64.exe - ok
23:34:55.0517 0x0320 hwpolicy - ok
23:34:55.0533 0x0320 hyperkbd - ok
23:34:55.0549 0x0320 HyperVideo - ok
23:34:55.0549 0x0320 i8042prt - ok
23:34:55.0549 0x0320 iai2c - ok
23:34:55.0564 0x0320 iaLPSS2i_I2C - ok
23:34:55.0564 0x0320 iaLPSSi_GPIO - ok
23:34:55.0564 0x0320 iaLPSSi_I2C - ok
23:34:55.0611 0x0320 [ 6C91E425ACE29594BD574DE38AC9B76D, 697784E4C7AF08B1F35662D8AD871E6890CECE22B6E64985B7C1A66C10DA390D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
23:34:55.0611 0x0320 iaStorA - ok
23:34:55.0611 0x0320 iaStorAV - ok
23:34:55.0674 0x0320 [ 0AB254994A460550258446950BB58311, BD10811912680DD3B814B7D1303785C996D892C79108110A2257E9BD0C28245C ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
23:34:55.0689 0x0320 IAStorDataMgrSvc - ok
23:34:55.0689 0x0320 iaStorV - ok
23:34:55.0689 0x0320 ibbus - ok
23:34:55.0736 0x0320 [ 62F0CB0A54EAF37E15EC385300957BB8, 55FCF7068D84D5AEEAF3149A5349BF13F1D18E34956217916ED7C1950885E63C ] ibtfltcoex C:\WINDOWS\system32\DRIVERS\ibtfltcoex.sys
23:34:55.0736 0x0320 ibtfltcoex - ok
23:34:55.0768 0x0320 icssvc - ok
23:34:55.0783 0x0320 IEEtwCollectorService - ok
23:34:55.0799 0x0320 IKEEXT - ok
23:34:55.0939 0x0320 [ 5C0BBE779BA3D6F84EB5AE3CB8793E11, EA729B622F30E847E2700787E6747A33769B405DD08D36175AACF42BE7A8600F ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
23:34:55.0986 0x0320 IntcAzAudAddService - ok
23:34:56.0080 0x0320 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
23:34:56.0096 0x0320 Intel(R) Capability Licensing Service Interface - ok
23:34:56.0096 0x0320 intelide - ok
23:34:56.0096 0x0320 intelpep - ok
23:34:56.0096 0x0320 intelppm - ok
23:34:56.0096 0x0320 IoQos - ok
23:34:56.0111 0x0320 IpFilterDriver - ok
23:34:56.0127 0x0320 iphlpsvc - ok
23:34:56.0143 0x0320 IPMIDRV - ok
23:34:56.0143 0x0320 IPNAT - ok
23:34:56.0158 0x0320 IRENUM - ok
23:34:56.0158 0x0320 isapnp - ok
23:34:56.0158 0x0320 iScsiPrt - ok
23:34:56.0221 0x0320 [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:34:56.0236 0x0320 jhi_service - ok
23:34:56.0268 0x0320 [ 38515AF94AC56161F24AEE3F3681EC69, 20115363EA040641C04C75B6890A7CCDE9A65F57EB437BE28DF7AD5200EC4608 ] JMCR C:\WINDOWS\System32\drivers\jmcr.sys
23:34:56.0268 0x0320 JMCR - ok
23:34:56.0268 0x0320 kbdclass - ok
23:34:56.0268 0x0320 kbdhid - ok
23:34:56.0283 0x0320 kdnic - ok
23:34:56.0283 0x0320 KeyIso - ok
23:34:56.0314 0x0320 KSecDD - ok
23:34:56.0314 0x0320 KSecPkg - ok
23:34:56.0314 0x0320 ksthunk - ok
23:34:56.0330 0x0320 KtmRm - ok
23:34:56.0330 0x0320 L1C - ok
23:34:56.0361 0x0320 LanmanServer - ok
23:34:56.0377 0x0320 LanmanWorkstation - ok
23:34:56.0377 0x0320 lfsvc - ok
23:34:56.0408 0x0320 [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr C:\WINDOWS\system32\DRIVERS\LhdX64.sys
23:34:56.0408 0x0320 LHDmgr - ok
23:34:56.0408 0x0320 LicenseManager - ok
23:34:56.0408 0x0320 lltdio - ok
23:34:56.0424 0x0320 lltdsvc - ok
23:34:56.0455 0x0320 lmhosts - ok
23:34:56.0471 0x0320 [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:34:56.0471 0x0320 LMS - ok
23:34:56.0471 0x0320 LSI_SAS - ok
23:34:56.0486 0x0320 LSI_SAS2i - ok
23:34:56.0486 0x0320 LSI_SAS3i - ok
23:34:56.0502 0x0320 LSI_SSS - ok
23:34:56.0502 0x0320 LSM - ok
23:34:56.0502 0x0320 luafv - ok
23:34:56.0518 0x0320 MapsBroker - ok
23:34:56.0533 0x0320 megasas - ok
23:34:56.0533 0x0320 megasr - ok
23:34:56.0565 0x0320 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
23:34:56.0565 0x0320 MEIx64 - ok
23:34:56.0565 0x0320 MessagingService - ok
23:34:56.0643 0x0320 mlx4_bus - ok
23:34:56.0643 0x0320 MMCSS - ok
23:34:56.0643 0x0320 Modem - ok
23:34:56.0658 0x0320 monitor - ok
23:34:56.0658 0x0320 mouclass - ok
23:34:56.0674 0x0320 mouhid - ok
23:34:56.0690 0x0320 mountmgr - ok
23:34:56.0721 0x0320 [ 69E23C730974BAC8C11DF2B7C4C9D37B, 8DC4448EC9C9647381952D7822B39C89E0997B4B964A785AE274144FADEE3C02 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:34:56.0721 0x0320 MozillaMaintenance - ok
23:34:56.0721 0x0320 mpsdrv - ok
23:34:56.0736 0x0320 MpsSvc - ok
23:34:56.0768 0x0320 MRxDAV - ok
23:34:56.0783 0x0320 mrxsmb - ok
23:34:56.0783 0x0320 mrxsmb10 - ok
23:34:56.0783 0x0320 mrxsmb20 - ok
23:34:56.0799 0x0320 MsBridge - ok
23:34:56.0815 0x0320 MSDTC - ok
23:34:56.0815 0x0320 Msfs - ok
23:34:56.0830 0x0320 msgpiowin32 - ok
23:34:56.0830 0x0320 mshidkmdf - ok
23:34:56.0830 0x0320 mshidumdf - ok
23:34:56.0846 0x0320 msisadrv - ok
23:34:56.0846 0x0320 MSiSCSI - ok
23:34:56.0846 0x0320 msiserver - ok
23:34:56.0846 0x0320 MSKSSRV - ok
23:34:56.0846 0x0320 MsLldp - ok
23:34:56.0861 0x0320 MSPCLOCK - ok
23:34:56.0861 0x0320 MSPQM - ok
23:34:56.0877 0x0320 MsRPC - ok
23:34:56.0877 0x0320 mssmbios - ok
23:34:56.0877 0x0320 MSTEE - ok
23:34:56.0893 0x0320 MTConfig - ok
23:34:56.0893 0x0320 Mup - ok
23:34:56.0893 0x0320 mvumis - ok
23:34:56.0908 0x0320 NativeWifiP - ok
23:34:56.0924 0x0320 NcaSvc - ok
23:34:56.0940 0x0320 NcbService - ok
23:34:56.0940 0x0320 NcdAutoSetup - ok
23:34:56.0940 0x0320 ndfltr - ok
23:34:56.0940 0x0320 NDIS - ok
23:34:56.0940 0x0320 NdisCap - ok
23:34:56.0955 0x0320 NdisImPlatform - ok
23:34:56.0955 0x0320 NdisTapi - ok
23:34:56.0971 0x0320 Ndisuio - ok
23:34:56.0971 0x0320 NdisVirtualBus - ok
23:34:56.0971 0x0320 NdisWan - ok
23:34:56.0971 0x0320 ndiswanlegacy - ok
23:34:56.0986 0x0320 ndproxy - ok
23:34:57.0002 0x0320 Ndu - ok
23:34:57.0002 0x0320 NetBIOS - ok
23:34:57.0018 0x0320 NetBT - ok
23:34:57.0018 0x0320 Netlogon - ok
23:34:57.0018 0x0320 Netman - ok
23:34:57.0018 0x0320 netprofm - ok
23:34:57.0049 0x0320 NetSetupSvc - ok
23:34:57.0080 0x0320 NetTcpPortSharing - ok
23:34:57.0096 0x0320 netvsc - ok
23:34:57.0096 0x0320 NETwNe64 - ok
23:34:57.0111 0x0320 NgcCtnrSvc - ok
23:34:57.0127 0x0320 NgcSvc - ok
23:34:57.0143 0x0320 NlaSvc - ok
23:34:57.0143 0x0320 Npfs - ok
23:34:57.0174 0x0320 npsvctrig - ok
23:34:57.0174 0x0320 nsi - ok
23:34:57.0190 0x0320 nsiproxy - ok
23:34:57.0190 0x0320 NTFS - ok
23:34:57.0205 0x0320 Null - ok
23:34:57.0236 0x0320 [ 624C1453F9109D98F7E2612DAD76BBB1, 4578623BF7EA1AF42038070AA3A1A9AC4A9582132ABBFAD9C3A99F46308DE8C3 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
23:34:57.0236 0x0320 NVHDA - ok
23:34:57.0502 0x0320 [ DF0BB2C179476D312B7BC0056CEC50A6, 64CC3201FA903E0EC9C99BE167C439C14A4C9AC2A88898B64789EEB381DB97B6 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
23:34:57.0643 0x0320 nvlddmkm - ok
23:34:57.0658 0x0320 nvraid - ok
23:34:57.0674 0x0320 nvstor - ok
23:34:57.0721 0x0320 [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
23:34:57.0736 0x0320 nvsvc - ok
23:34:57.0830 0x0320 [ C63E582366EAD77978BFFD959A66DBB8, BBAC11300AFED29291A08EEC8A740DA67C8C003AF89D06F9E0671CCF0E7908A0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
23:34:57.0861 0x0320 nvUpdatusService - ok
23:34:57.0861 0x0320 nv_agp - ok
23:34:57.0893 0x0320 OneSyncSvc - ok
23:34:57.0940 0x0320 p2pimsvc - ok
23:34:57.0971 0x0320 p2psvc - ok
23:34:58.0002 0x0320 Parport - ok
23:34:58.0033 0x0320 partmgr - ok
23:34:58.0033 0x0320 PcaSvc - ok
23:34:58.0049 0x0320 pci - ok
23:34:58.0080 0x0320 pciide - ok
23:34:58.0080 0x0320 pcmcia - ok
23:34:58.0096 0x0320 pcw - ok
23:34:58.0096 0x0320 pdc - ok
23:34:58.0111 0x0320 PEAUTH - ok
23:34:58.0127 0x0320 percsas2i - ok
23:34:58.0127 0x0320 percsas3i - ok
23:34:58.0190 0x0320 PerfHost - ok
23:34:58.0237 0x0320 PhoneSvc - ok
23:34:58.0252 0x0320 PimIndexMaintenanceSvc - ok
23:34:58.0283 0x0320 pla - ok
23:34:58.0299 0x0320 PlugPlay - ok
23:34:58.0330 0x0320 [ 64CA1485214340CACC315FFDFDED73EF, 3FFF06E313622D3633B4235C1E1B8857DBA8DFA19A6A1E5C3D6D88AE6C6DDCC5 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
23:34:58.0346 0x0320 Pml Driver HPZ12 - ok
23:34:58.0362 0x0320 PNRPAutoReg - ok
23:34:58.0362 0x0320 PNRPsvc - ok
23:34:58.0393 0x0320 [ E4799B87675C59AA1F620DE5C6F113BB, 094EE16D4CEC68DB316002994482344A6BFCFDE399131F7FA11BB46C2DCBF218 ] Point64 C:\WINDOWS\System32\drivers\point64.sys
23:34:58.0393 0x0320 Point64 - ok
23:34:58.0424 0x0320 PolicyAgent - ok
23:34:58.0424 0x0320 Power - ok
23:34:58.0455 0x0320 PptpMiniport - ok
23:34:58.0596 0x0320 [ 8E284670A19FAB11857D054A738D140E, E654D540C7897367E784F9E910FAC147A15C0E457A5E4D394170B05D0E09E7B4 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
23:34:58.0643 0x0320 PrintNotify - ok
23:34:58.0659 0x0320 Processor - ok
23:34:58.0674 0x0320 ProfSvc - ok
23:34:58.0690 0x0320 Psched - ok
23:34:58.0690 0x0320 QWAVE - ok
23:34:58.0690 0x0320 QWAVEdrv - ok
23:34:58.0690 0x0320 RasAcd - ok
23:34:58.0721 0x0320 RasAgileVpn - ok
23:34:58.0737 0x0320 RasAuto - ok
23:34:58.0752 0x0320 Rasl2tp - ok
23:34:58.0752 0x0320 RasMan - ok
23:34:58.0752 0x0320 RasPppoe - ok
23:34:58.0752 0x0320 RasSstp - ok
23:34:58.0768 0x0320 rdbss - ok
23:34:58.0768 0x0320 rdpbus - ok
23:34:58.0784 0x0320 RDPDR - ok
23:34:58.0799 0x0320 RdpVideoMiniport - ok
23:34:58.0799 0x0320 rdyboost - ok
23:34:58.0799 0x0320 ReFSv1 - ok
23:34:58.0815 0x0320 RemoteAccess - ok
23:34:58.0830 0x0320 RemoteRegistry - ok
23:34:58.0846 0x0320 RetailDemo - ok
23:34:58.0846 0x0320 RFCOMM - ok
23:34:58.0846 0x0320 RpcEptMapper - ok
23:34:58.0862 0x0320 RpcLocator - ok
23:34:58.0893 0x0320 RpcSs - ok
23:34:58.0893 0x0320 rspndr - ok
23:34:59.0112 0x0320 [ 4AE2ACE71749E8536E89A92A9994B22F, AF47CE525FA9CFDC4105AB685145BCDDE8935A49F5E40893181F0B5F02AB0B00 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
23:34:59.0205 0x0320 rtsuvc - ok
23:34:59.0221 0x0320 s3cap - ok
23:34:59.0237 0x0320 SamSs - ok
23:34:59.0252 0x0320 sbp2port - ok
23:34:59.0268 0x0320 SCardSvr - ok
23:34:59.0268 0x0320 ScDeviceEnum - ok
23:34:59.0268 0x0320 scfilter - ok
23:34:59.0284 0x0320 Schedule - ok
23:34:59.0299 0x0320 SCPolicySvc - ok
23:34:59.0299 0x0320 sdbus - ok
23:34:59.0330 0x0320 SDRSVC - ok
23:34:59.0330 0x0320 sdstor - ok
23:34:59.0362 0x0320 seclogon - ok
23:34:59.0362 0x0320 SENS - ok
23:34:59.0393 0x0320 SensorDataService - ok
23:34:59.0393 0x0320 SensorService - ok
23:34:59.0393 0x0320 SensrSvc - ok
23:34:59.0409 0x0320 SerCx - ok
23:34:59.0409 0x0320 SerCx2 - ok
23:34:59.0424 0x0320 Serenum - ok
23:34:59.0440 0x0320 Serial - ok
23:34:59.0440 0x0320 sermouse - ok
23:34:59.0455 0x0320 SessionEnv - ok
23:34:59.0455 0x0320 sfloppy - ok
23:34:59.0471 0x0320 SharedAccess - ok
23:34:59.0518 0x0320 ShellHWDetection - ok
23:34:59.0518 0x0320 SiSRaid2 - ok
23:34:59.0534 0x0320 SiSRaid4 - ok
23:34:59.0565 0x0320 [ 267FC982BC6BDAAA5726B92C9E7F86FC, DD98713A983821B298C40684841BAB951C5A32B7B454E5E029C9356057CCC8C1 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
23:34:59.0565 0x0320 SmbDrvI - ok
23:34:59.0596 0x0320 smphost - ok
23:34:59.0628 0x0320 SmsRouter - ok
23:34:59.0643 0x0320 SNMPTRAP - ok
23:34:59.0659 0x0320 spaceport - ok
23:34:59.0674 0x0320 SpbCx - ok
23:34:59.0674 0x0320 Spooler - ok
23:34:59.0690 0x0320 sppsvc - ok
23:34:59.0690 0x0320 srv - ok
23:34:59.0706 0x0320 srv2 - ok
23:34:59.0706 0x0320 srvnet - ok
23:34:59.0721 0x0320 SSDPSRV - ok
23:34:59.0753 0x0320 SstpSvc - ok
23:34:59.0768 0x0320 StateRepository - ok
23:34:59.0831 0x0320 [ 7FCE08C739136C9C64107A8814EF854C, 820E494A401D69E3DA7A8624B2093DCF98198E6D8CCCE345BDF76952EE4ADB07 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
23:34:59.0831 0x0320 Stereo Service - ok
23:34:59.0831 0x0320 stexstor - ok
23:34:59.0862 0x0320 stisvc - ok
23:34:59.0878 0x0320 storahci - ok
23:34:59.0893 0x0320 storflt - ok
23:34:59.0893 0x0320 stornvme - ok
23:34:59.0893 0x0320 storqosflt - ok
23:34:59.0924 0x0320 StorSvc - ok
23:34:59.0924 0x0320 storufs - ok
23:34:59.0924 0x0320 storvsc - ok
23:34:59.0940 0x0320 svsvc - ok
23:34:59.0940 0x0320 swenum - ok
23:34:59.0956 0x0320 swprv - ok
23:34:59.0987 0x0320 Synth3dVsc - ok
23:35:00.0027 0x0320 [ 831627135A28A42B75F032E6336296F6, 66FE5BB68C1C583752DC7CB473832AF6B3AB56DCCA56160A350F34B11D70020B ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
23:35:00.0036 0x0320 SynTP - ok
23:35:00.0156 0x0320 [ A324227CFB7A1668A2D062A3DC7CF12D, E075CE35AB6093E8C534055F61A9B512BB3AC9C1A2D00A2441C38B3DB7F3E585 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
23:35:00.0171 0x0320 SynTPEnhService - ok
23:35:00.0171 0x0320 SysMain - ok
23:35:00.0203 0x0320 SystemEventsBroker - ok
23:35:00.0218 0x0320 TabletInputService - ok
23:35:00.0218 0x0320 TapiSrv - ok
23:35:00.0234 0x0320 Tcpip - ok
23:35:00.0250 0x0320 Tcpip6 - ok
23:35:00.0250 0x0320 tcpipreg - ok
23:35:00.0281 0x0320 tdx - ok
23:35:00.0484 0x0320 [ 2AA61246A5B813C1B12BCCFAA6F23DD8, 74EE3DB839A0F4BC781294803281DB2248D013B8808FF05F2EE9597C14C6FEED ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
23:35:00.0546 0x0320 TeamViewer - ok
23:35:00.0578 0x0320 terminpt - ok
23:35:00.0578 0x0320 TermService - ok
23:35:00.0609 0x0320 Themes - ok
23:35:00.0625 0x0320 TieringEngineService - ok
23:35:00.0640 0x0320 tiledatamodelsvc - ok
23:35:00.0656 0x0320 TimeBroker - ok
23:35:00.0687 0x0320 TPM - ok
23:35:00.0687 0x0320 TrkWks - ok
23:35:00.0734 0x0320 TrustedInstaller - ok
23:35:00.0750 0x0320 tsusbflt - ok
23:35:00.0750 0x0320 TsUsbGD - ok
23:35:00.0765 0x0320 tunnel - ok
23:35:00.0781 0x0320 tzautoupdate - ok
23:35:00.0812 0x0320 uagp35 - ok
23:35:00.0812 0x0320 UASPStor - ok
23:35:00.0828 0x0320 UcmCx0101 - ok
23:35:00.0828 0x0320 UcmUcsi - ok
23:35:00.0828 0x0320 Ucx01000 - ok
23:35:00.0828 0x0320 UdeCx - ok
23:35:00.0828 0x0320 udfs - ok
23:35:00.0843 0x0320 UEFI - ok
23:35:00.0859 0x0320 Ufx01000 - ok
23:35:00.0875 0x0320 UfxChipidea - ok
23:35:00.0890 0x0320 ufxsynopsys - ok
23:35:00.0906 0x0320 UI0Detect - ok
23:35:00.0906 0x0320 uliagpkx - ok
23:35:00.0906 0x0320 umbus - ok
23:35:00.0906 0x0320 UmPass - ok
23:35:00.0922 0x0320 UmRdpService - ok
23:35:00.0922 0x0320 UnistoreSvc - ok
23:35:01.0047 0x0320 [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:35:01.0062 0x0320 UNS - ok
23:35:01.0078 0x0320 upnphost - ok
23:35:01.0109 0x0320 UrsChipidea - ok
23:35:01.0109 0x0320 UrsCx01000 - ok
23:35:01.0109 0x0320 UrsSynopsys - ok
23:35:01.0125 0x0320 usbccgp - ok
23:35:01.0125 0x0320 usbcir - ok
23:35:01.0140 0x0320 usbehci - ok
23:35:01.0140 0x0320 usbhub - ok
23:35:01.0156 0x0320 USBHUB3 - ok
23:35:01.0156 0x0320 usbohci - ok
23:35:01.0156 0x0320 usbprint - ok
23:35:01.0172 0x0320 usbser - ok
23:35:01.0172 0x0320 USBSTOR - ok
23:35:01.0172 0x0320 usbuhci - ok
23:35:01.0187 0x0320 USBXHCI - ok
23:35:01.0203 0x0320 UserDataSvc - ok
23:35:01.0265 0x0320 UserManager - ok
23:35:01.0265 0x0320 UsoSvc - ok
23:35:01.0281 0x0320 VaultSvc - ok
23:35:01.0297 0x0320 [ F257A2737280F0076EAE3AB489C06474, A02E37292D86E675D55C13097E9F107C73DDFD8AAC69310F7D9910A811A541D8 ] VClone C:\WINDOWS\System32\drivers\VClone.sys
23:35:01.0312 0x0320 VClone - ok
23:35:01.0312 0x0320 vdrvroot - ok
23:35:01.0328 0x0320 vds - ok
23:35:01.0328 0x0320 VerifierExt - ok
23:35:01.0343 0x0320 vhdmp - ok
23:35:01.0343 0x0320 vhf - ok
23:35:01.0343 0x0320 vmbus - ok
23:35:01.0343 0x0320 VMBusHID - ok
23:35:01.0343 0x0320 vmicguestinterface - ok
23:35:01.0359 0x0320 vmicheartbeat - ok
23:35:01.0359 0x0320 vmickvpexchange - ok
23:35:01.0359 0x0320 vmicrdv - ok
23:35:01.0359 0x0320 vmicshutdown - ok
23:35:01.0375 0x0320 vmictimesync - ok
23:35:01.0375 0x0320 vmicvmsession - ok
23:35:01.0375 0x0320 vmicvss - ok
23:35:01.0375 0x0320 volmgr - ok
23:35:01.0390 0x0320 volmgrx - ok
23:35:01.0390 0x0320 volsnap - ok
23:35:01.0390 0x0320 vpci - ok
23:35:01.0390 0x0320 vsmraid - ok
23:35:01.0406 0x0320 VSS - ok
23:35:01.0406 0x0320 VSTXRAID - ok
23:35:01.0422 0x0320 vwifibus - ok
23:35:01.0422 0x0320 vwififlt - ok
23:35:01.0437 0x0320 vwifimp - ok
23:35:01.0437 0x0320 W32Time - ok
23:35:01.0437 0x0320 WacomPen - ok
23:35:01.0453 0x0320 WalletService - ok
23:35:01.0453 0x0320 wanarp - ok
23:35:01.0453 0x0320 wanarpv6 - ok
23:35:01.0453 0x0320 wbengine - ok
23:35:01.0468 0x0320 WbioSrvc - ok
23:35:01.0484 0x0320 Wcmsvc - ok
23:35:01.0500 0x0320 wcncsvc - ok
23:35:01.0500 0x0320 WcsPlugInService - ok
23:35:01.0500 0x0320 WdBoot - ok
23:35:01.0515 0x0320 Wdf01000 - ok
23:35:01.0515 0x0320 WdFilter - ok
23:35:01.0515 0x0320 WdiServiceHost - ok
23:35:01.0515 0x0320 WdiSystemHost - ok
23:35:01.0547 0x0320 wdiwifi - ok
23:35:01.0547 0x0320 WdNisDrv - ok
23:35:01.0578 0x0320 WdNisSvc - ok
23:35:01.0578 0x0320 WebClient - ok
23:35:01.0578 0x0320 Wecsvc - ok
23:35:01.0578 0x0320 WEPHOSTSVC - ok
23:35:01.0594 0x0320 wercplsupport - ok
23:35:01.0609 0x0320 WerSvc - ok
23:35:01.0625 0x0320 WFPLWFS - ok
23:35:01.0640 0x0320 WiaRpc - ok
23:35:01.0656 0x0320 WIMMount - ok
23:35:01.0656 0x0320 WinDefend - ok
23:35:01.0656 0x0320 WindowsTrustedRT - ok
23:35:01.0687 0x0320 WindowsTrustedRTProxy - ok
23:35:01.0703 0x0320 WinHttpAutoProxySvc - ok
23:35:01.0703 0x0320 WinMad - ok
23:35:01.0750 0x0320 Winmgmt - ok
23:35:01.0781 0x0320 WinRM - ok
23:35:01.0797 0x0320 WINUSB - ok
23:35:01.0797 0x0320 WinVerbs - ok
23:35:01.0797 0x0320 WlanSvc - ok
23:35:01.0812 0x0320 wlidsvc - ok
23:35:01.0812 0x0320 WmiAcpi - ok
23:35:01.0828 0x0320 wmiApSrv - ok
23:35:01.0844 0x0320 WMPNetworkSvc - ok
23:35:01.0875 0x0320 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
23:35:01.0875 0x0320 Wof - ok
23:35:01.0890 0x0320 workfolderssvc - ok
23:35:01.0906 0x0320 wpcfltr - ok
23:35:01.0922 0x0320 WPDBusEnum - ok
23:35:01.0937 0x0320 WpdUpFltr - ok
23:35:01.0953 0x0320 WpnService - ok
23:35:01.0953 0x0320 ws2ifsl - ok
23:35:01.0969 0x0320 wscsvc - ok
23:35:01.0984 0x0320 WSearch - ok
23:35:02.0000 0x0320 WSService - ok
23:35:02.0031 0x0320 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
23:35:02.0031 0x0320 wsvd - ok
23:35:02.0047 0x0320 wuauserv - ok
23:35:02.0078 0x0320 WudfPf - ok
23:35:02.0078 0x0320 WUDFRd - ok
23:35:02.0094 0x0320 wudfsvc - ok
23:35:02.0109 0x0320 WUDFWpdFs - ok
23:35:02.0109 0x0320 WUDFWpdMtp - ok
23:35:02.0125 0x0320 WwanSvc - ok
23:35:02.0140 0x0320 XblAuthManager - ok
23:35:02.0156 0x0320 XblGameSave - ok
23:35:02.0172 0x0320 xboxgip - ok
23:35:02.0203 0x0320 XboxNetApiSvc - ok
23:35:02.0203 0x0320 xinputhid - ok
23:35:02.0203 0x0320 ================ Scan global ===============================
23:35:02.0234 0x0320 [ Global ] - ok
23:35:02.0234 0x0320 ================ Scan MBR ==================================
23:35:02.0234 0x0320 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:35:02.0422 0x0320 \Device\Harddisk0\DR0 - ok
23:35:02.0437 0x0320 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
23:35:02.0625 0x0320 \Device\Harddisk1\DR1 - ok
23:35:02.0625 0x0320 ================ Scan VBR ==================================
23:35:02.0625 0x0320 [ E67D603EB2B46E2F03C7902B61890720 ] \Device\Harddisk0\DR0\Partition1
23:35:02.0625 0x0320 \Device\Harddisk0\DR0\Partition1 - ok
23:35:02.0640 0x0320 [ 98504DD50374C268B66F20BFD92CA4CD ] \Device\Harddisk1\DR1\Partition1
23:35:02.0640 0x0320 \Device\Harddisk1\DR1\Partition1 - ok
23:35:02.0640 0x0320 [ 1A5E41CE1541D1BF15CD755B3A2908C8 ] \Device\Harddisk1\DR1\Partition2
23:35:02.0640 0x0320 \Device\Harddisk1\DR1\Partition2 - ok
23:35:02.0656 0x0320 [ 6B2E3A32351ABF0EE085B01D6ED8FD84 ] \Device\Harddisk1\DR1\Partition3
23:35:02.0656 0x0320 \Device\Harddisk1\DR1\Partition3 - ok
23:35:02.0672 0x0320 [ 2BB6BE0774AD687106E310CF87210D34 ] \Device\Harddisk1\DR1\Partition4
23:35:02.0672 0x0320 \Device\Harddisk1\DR1\Partition4 - ok
23:35:02.0672 0x0320 [ CD23520268B5089AF1A29587BC8519EE ] \Device\Harddisk1\DR1\Partition5
23:35:02.0672 0x0320 \Device\Harddisk1\DR1\Partition5 - ok
23:35:02.0703 0x0320 [ 1808E20BEA0AEBF0CCDB2849C9A13D65 ] \Device\Harddisk1\DR1\Partition6
23:35:02.0703 0x0320 \Device\Harddisk1\DR1\Partition6 - ok
23:35:02.0719 0x0320 [ E986E7B60155CB5E505B33DD0142946B ] \Device\Harddisk1\DR1\Partition7
23:35:02.0719 0x0320 \Device\Harddisk1\DR1\Partition7 - ok
23:35:02.0734 0x0320 [ 1A8FF7EDC82EB7390EA6A69700E2CD53 ] \Device\Harddisk1\DR1\Partition8
23:35:02.0734 0x0320 \Device\Harddisk1\DR1\Partition8 - ok
23:35:02.0734 0x0320 ================ Scan generic autorun ======================
23:35:03.0094 0x0320 [ 2936EA1AB4B2F7DF9BAD7F78671C2093, 3DE4BE1866A02DA291DAFEE100E378B152D1387C7444B4CE2528F558729628B5 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
23:35:03.0391 0x0320 RtHDVCpl - ok
23:35:03.0437 0x0320 [ E9752E0CD9FB37612474B23973443FC9, B497B77BCC70A721D74DDE5551C0314D43FDAFE547D071C26750F0314128FCB8 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
23:35:03.0453 0x0320 RtHDVBg_Dolby - ok
23:35:03.0609 0x0320 [ 0A2F3CD73F7BD44377F99094C3817D91, 67D3917954204EFD216DDC72079256F546A59E1C523C2047639859B5418E2B55 ] C:\WINDOWS\RTFTrack.exe
23:35:03.0750 0x0320 RtsFT - ok
23:35:03.0766 0x0320 SynLenovoGestureMgr - ok
23:35:03.0891 0x0320 [ 34674D5EF79577BF23A1D3DA2AD68F46, 1E0744EA7143480ED951F3AE91E3868D2AE35127681292789C65BB3BF7BC5ECA ] C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe
23:35:03.0969 0x0320 OnekeyStudio - ok
23:35:04.0422 0x0320 [ DF99547E3CD8C828202546ED9C4D7D25, 83013EEE760004E812CD63662843D1F3972AFBF83B4739935FC746F470FA7188 ] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
23:35:04.0813 0x0320 Energy Management - ok
23:35:04.0828 0x0320 [ D41309D7717CC5D62C2E0C5EB6B127B3, 50F46F762320C9B2560AA356B31EB564651F92BDA2DBCE34E3E349A65E347FAC ] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe
23:35:04.0844 0x0320 EnergyUtility - ok
23:35:04.0875 0x0320 [ E7861EAA7881E086B2DB88ADF4279D4B, D040BCEC5B7519357D4E28653FC0F9F4FEAA88D291726A0763EA5E84C8C5D840 ] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
23:35:04.0875 0x0320 IAStorIcon - ok
23:35:04.0906 0x0320 [ A1741C3B79F9DF8895E05EF43579E74B, 446094FDBA93518ABE1CDEC50E24AB60BC7CA78022A289AF5C21461778FD8001 ] C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
23:35:04.0906 0x0320 YouCam Mirage - ok
23:35:04.0922 0x0320 [ 79EDDBCBFFC23585BC1495AFC03CC4D7, 325A6C067A52BAD7070C1C758EA69645FD8083AC6D0ABA8340BDBE1A712E005F ] C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
23:35:04.0938 0x0320 YouCam Tray - ok
23:35:05.0016 0x0320 [ 16D807D8B07A868298A8044E576BE419, 148399752A497E7FEA07C59C89834E266652AC1C0793B5C9C429FDBB37AB7617 ] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe
23:35:05.0031 0x0320 UpdateP2GShortCut - ok
23:35:05.0063 0x0320 [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
23:35:05.0063 0x0320 RemoteControl10 - ok
23:35:05.0078 0x0320 [ 408A52C9DD19FADB4EC43A0FB30862A8, F96D3F6A12070B20AC1509B2F09D95829AF4D91C13B345AAA3D0FEDE65DD9798 ] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
23:35:05.0078 0x0320 BDRegion - ok
23:35:05.0156 0x0320 [ 43E946AAD268FEAFB1E286677E70CB5D, 7798926B3CF11D1CF7DFF9B3D67AD3DC67010A62F3132CAEA273EB299A61B176 ] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
23:35:05.0172 0x0320 Intel AppUp(SM) center - ok
23:35:05.0219 0x0320 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
23:35:05.0219 0x0320 VirtualCloneDrive - ok
23:35:05.0328 0x0320 [ 66598E7BC1960E5E57A646B69671182F, A6B5008742A3E5C506C870CBA27711AF6F25B840E7B869FB33E9C080A4917C76 ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
23:35:05.0328 0x0320 avgnt - ok
23:35:05.0391 0x0320 [ E127B5D81CE968CD3858AF6BDCADEC7C, AF426B8259E2801679A8E3FAE42B617D0DA1D4E834DF0F7B1FD93AB5E64CBE34 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
23:35:05.0406 0x0320 Avira SystrayStartTrigger - ok
23:35:05.0485 0x0320 OneDriveSetup - ok
23:35:05.0485 0x0320 OneDriveSetup - ok
23:35:05.0485 0x0320 OneDriveSetup - ok
23:35:05.0516 0x0320 WAB Migrate - ok
23:35:05.0516 0x0320 OneDriveSetup - ok
23:35:05.0719 0x0320 [ 76BEBE0FDE1DDDB9B70BEF85B40DDE70, 977228BD8634A8DDFC476C21859E56935325EA8C1CD1CB27445B13FF00E2F7D1 ] C:\Users\Doering\AppData\Roaming\Spotify\Spotify.exe
23:35:05.0860 0x0320 Spotify - ok
23:35:05.0953 0x0320 [ F10ADB851EF1BD5144FE6D1691CD7576, C35431A6D0A95722002A601BB076B8294603C17A8F4544856C2E2F75C5D42F3D ] C:\Users\Doering\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
23:35:05.0985 0x0320 Spotify Web Helper - ok
23:35:06.0094 0x0320 [ 1B7406B1EEF9924D589A7007C3733877, A11A823B6213A3AB6B4516662AE48D35E971E0C93D6A1C9D9CECF27F9D0B0523 ] C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe
23:35:06.0125 0x0320 Rainlendar2 - ok
23:35:06.0125 0x0320 WAB Migrate - ok
23:35:06.0281 0x0320 [ 005B2B63719E6B3E8E2E1446A9278F8E, 0A34046B0205A2FEEE5E2867765D171D7BA420A1527E49472A35B484219BD377 ] C:\Users\Frank\AppData\Roaming\Spotify\SpotifyWebHelper.exe
23:35:06.0313 0x0320 Spotify Web Helper - ok
23:35:06.0391 0x0320 [ 98B31CBC09D671DADEB7C92AEF1CBE29, F3A5B6E04F4FD4180242EE7E1632B4C179A6FE277B414F937CCAA6286605B671 ] C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe
23:35:06.0391 0x0320 HW_OPENEYE_OUC_Mobile Partner - ok
23:35:06.0469 0x0320 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Frank\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:35:06.0485 0x0320 OneDrive - ok
23:35:06.0688 0x0320 [ 1714D2B9D03CD71541AFD1FA0ED23759, B8CA2496B250A5257BEF290445FC998560317D9851A0D75CE9BBA4243D002CD5 ] C:\Users\Frank\AppData\Roaming\Spotify\Spotify.exe
23:35:06.0860 0x0320 Spotify - ok
23:35:06.0985 0x0320 [ 9020995AC7455DA2088CEBA80FBFEC96, 1106F236D1531910236172F8CDD2BF1EE14171C79D437A760E828D9A5BA0A03F ] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
23:35:07.0000 0x0320 GarminExpressTrayApp - ok
23:35:07.0125 0x0320 [ F9387D080BF8566354CDB0445AB8F87B, 4EE5D4A15E2D3DF578FA0370449C0894166B1B2998B63D9F02A994845350B86A ] C:\Users\Doering_2\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:35:07.0157 0x0320 OneDrive - ok
23:35:07.0250 0x0320 [ 40ECBE5FB9AF61FE1FF700397C6EC51F, 5790598DF7B082D79BCC72959EF8E7B77BAE645A3D3F9C9F588C312E6A744A16 ] C:\COOLSP~1\PERSON~1\PID.EXE
23:35:07.0266 0x0320 Personal ID - ok
23:35:07.0407 0x0320 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Gaeste\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:35:07.0422 0x0320 OneDrive - ok
23:35:07.0422 0x0320 OneDriveSetup - ok
23:35:07.0422 0x0320 WAB Migrate - ok
23:35:07.0438 0x0320 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.20.55 ), 0x40000 ( disabled : updated )
23:35:07.0454 0x0320 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.589 ), 0x62100 ( disabled : updated )
23:35:07.0454 0x0320 Win FW state via NFP2: enabled ( trusted )
23:35:07.0454 0x0320 ============================================================
23:35:07.0454 0x0320 Scan finished
23:35:07.0454 0x0320 ============================================================
23:35:07.0454 0x0fe0 Detected object count: 0
23:35:07.0454 0x0fe0 Actual detected object count: 0
23:35:48.0645 0x19e8 ============================================================
23:35:48.0645 0x19e8 Scan started
23:35:48.0645 0x19e8 Mode: Manual; SigCheck; TDLFS;
23:35:48.0645 0x19e8 ============================================================
23:35:48.0645 0x19e8 KSN ping started
23:35:48.0645 0x19e8 KSN ping finished: false
23:35:49.0082 0x19e8 ================ Scan system memory ========================
23:35:49.0082 0x19e8 System memory - ok
23:35:49.0082 0x19e8 ================ Scan services =============================
23:35:49.0207 0x19e8 1394ohci - ok
23:35:49.0207 0x19e8 3ware - ok
23:35:49.0223 0x19e8 ACPI - ok
23:35:49.0238 0x19e8 acpiex - ok
23:35:49.0238 0x19e8 acpipagr - ok
23:35:49.0254 0x19e8 AcpiPmi - ok
23:35:49.0254 0x19e8 acpitime - ok
23:35:49.0285 0x19e8 [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
23:35:49.0301 0x19e8 ACPIVPC - ok
23:35:49.0379 0x19e8 [ DC00FD73505DAEDD99CAF4533B0C05BD, 2863D1F0587B79254FBE093C191C73892768CF2AC59BEF97745EE66CEE3473AF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
23:35:49.0395 0x19e8 AdobeARMservice - ok
23:35:49.0410 0x19e8 ADP80XX - ok
23:35:49.0410 0x19e8 AFD - ok
23:35:49.0426 0x19e8 agp440 - ok
23:35:49.0426 0x19e8 ahcache - ok
23:35:49.0457 0x19e8 AJRouter - ok
23:35:49.0457 0x19e8 ALG - ok
23:35:49.0457 0x19e8 AmdK8 - ok
23:35:49.0473 0x19e8 AmdPPM - ok
23:35:49.0473 0x19e8 amdsata - ok
23:35:49.0473 0x19e8 amdsbs - ok
23:35:49.0488 0x19e8 amdxata - ok
23:35:49.0567 0x19e8 [ 70EE2EA42E9F20B794C4804454F1A37A, 49B615BF138E2C5AFF04EFDF7928D49117DF41DCD48922683E4D3D3FD0DF9A04 ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
23:35:49.0598 0x19e8 AntiVirMailService - ok
23:35:49.0660 0x19e8 [ 9E6642340CC7C685E07981F0B43B661A, A6CC970817B616CB4BBF37089DC687567EABC2DC326CBACBF1E370AC98E5D65A ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
23:35:49.0660 0x19e8 AntiVirSchedulerService - ok
23:35:49.0692 0x19e8 [ 9E6642340CC7C685E07981F0B43B661A, A6CC970817B616CB4BBF37089DC687567EABC2DC326CBACBF1E370AC98E5D65A ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe
23:35:49.0692 0x19e8 AntiVirService - ok
23:35:49.0738 0x19e8 [ 96812A05A4C39CC55CF0CD286C3D6B8F, 18F38ACB3E87EFFD9B3A1126B0C4FF6CE3A6F327E01A6FC8AB2DCFFE9BF58953 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
23:35:49.0770 0x19e8 AntiVirWebService - ok
23:35:49.0770 0x19e8 AppID - ok
23:35:49.0785 0x19e8 AppIDSvc - ok
23:35:49.0785 0x19e8 Appinfo - ok
23:35:49.0817 0x19e8 AppReadiness - ok
23:35:49.0832 0x19e8 AppXSvc - ok
23:35:49.0832 0x19e8 arcsas - ok
23:35:49.0848 0x19e8 AsyncMac - ok
23:35:49.0848 0x19e8 atapi - ok
23:35:49.0863 0x19e8 AudioEndpointBuilder - ok
23:35:49.0879 0x19e8 Audiosrv - ok
23:35:49.0910 0x19e8 [ AA0F13E719C3C527287AD87E9205F4D9, 818AB6B2B9AF0ABA28954A142527CE71C25CC24DDC64581EF7117CA88C6CF302 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
23:35:49.0926 0x19e8 avgntflt - ok
23:35:49.0942 0x19e8 [ 9039B209BA877AF088288DB83C18D3D8, 11EC0E195A735A7599C74DD25A00F86BD44AEBAE6C20D9A995DCEB252887679E ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
23:35:49.0942 0x19e8 avipbb - ok
23:35:50.0004 0x19e8 [ A177265C1777ABE56B22D921F91DDC38, D4E9C5BFC65063EDA015723058805B03C51F5B7456B404A4548CEC8DF6A3F7B7 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
23:35:50.0035 0x19e8 Avira.ServiceHost - ok
23:35:50.0067 0x19e8 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
23:35:50.0067 0x19e8 avkmgr - ok
23:35:50.0082 0x19e8 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
23:35:50.0082 0x19e8 avnetflt - ok
23:35:50.0114 0x19e8 AxInstSV - ok
23:35:50.0114 0x19e8 b06bdrv - ok
23:35:50.0129 0x19e8 BasicDisplay - ok
23:35:50.0145 0x19e8 BasicRender - ok
23:35:50.0145 0x19e8 bcmfn - ok
23:35:50.0145 0x19e8 bcmfn2 - ok
23:35:50.0160 0x19e8 BDESVC - ok
23:35:50.0160 0x19e8 Beep - ok
23:35:50.0176 0x19e8 BFE - ok
23:35:50.0192 0x19e8 BITS - ok
23:35:50.0192 0x19e8 bowser - ok
23:35:50.0207 0x19e8 BrokerInfrastructure - ok
23:35:50.0239 0x19e8 Browser - ok
23:35:50.0254 0x19e8 BthAvrcpTg - ok
23:35:50.0285 0x19e8 BthEnum - ok
23:35:50.0285 0x19e8 BthHFEnum - ok
23:35:50.0301 0x19e8 bthhfhid - ok
23:35:50.0301 0x19e8 BthHFSrv - ok
23:35:50.0332 0x19e8 BthLEEnum - ok
23:35:50.0348 0x19e8 BTHMODEM - ok
23:35:50.0364 0x19e8 BthPan - ok
23:35:50.0379 0x19e8 BTHPORT - ok
23:35:50.0395 0x19e8 bthserv - ok
23:35:50.0395 0x19e8 BTHUSB - ok
23:35:50.0426 0x19e8 buttonconverter - ok
23:35:50.0426 0x19e8 CapImg - ok
23:35:50.0442 0x19e8 cdfs - ok
23:35:50.0442 0x19e8 CDPSvc - ok
23:35:50.0457 0x19e8 cdrom - ok
23:35:50.0457 0x19e8 CertPropSvc - ok
23:35:50.0473 0x19e8 circlass - ok
23:35:50.0489 0x19e8 CLFS - ok
23:35:50.0504 0x19e8 ClipSVC - ok
23:35:50.0582 0x19e8 [ E26C19EB9CF338CB1FB7C2912ADFA81C, 819D1F2C6F4AAA7320FECE26D51F33ABF8815D04E58ABEA3E12CD5E9D85CBD4C ] CLKMSVC10_3A60B698 C:\Program Files (x86)\Lenovo\PowerDVD10\NavFilter\kmsvc.exe
23:35:50.0614 0x19e8 CLKMSVC10_3A60B698 - ok
23:35:50.0629 0x19e8 CmBatt - ok
23:35:50.0660 0x19e8 CNG - ok
23:35:50.0660 0x19e8 cnghwassist - ok
23:35:50.0723 0x19e8 CompositeBus - ok
23:35:50.0723 0x19e8 COMSysApp - ok
23:35:50.0739 0x19e8 condrv - ok
23:35:50.0754 0x19e8 CoreMessagingRegistrar - ok
23:35:50.0770 0x19e8 CryptSvc - ok
23:35:50.0770 0x19e8 dam - ok
23:35:50.0785 0x19e8 DcomLaunch - ok
23:35:50.0801 0x19e8 DcpSvc - ok
23:35:50.0832 0x19e8 defragsvc - ok
23:35:50.0832 0x19e8 DeviceAssociationService - ok
23:35:50.0848 0x19e8 DeviceInstall - ok
23:35:50.0864 0x19e8 DevQueryBroker - ok
23:35:50.0879 0x19e8 Dfsc - ok
23:35:50.0879 0x19e8 Dhcp - ok
23:35:50.0910 0x19e8 diagnosticshub.standardcollector.service - ok
23:35:50.0942 0x19e8 DiagTrack - ok
23:35:50.0957 0x19e8 disk - ok
23:35:50.0957 0x19e8 DmEnrollmentSvc - ok
23:35:50.0957 0x19e8 dmvsc - ok
23:35:50.0973 0x19e8 dmwappushservice - ok
23:35:50.0973 0x19e8 Dnscache - ok
23:35:50.0989 0x19e8 dot3svc - ok
23:35:51.0020 0x19e8 [ C0AA415718DDD13A136E353844628A65, 7E2F2A139E897EAE56038B920BDA9381094BC0AE9E626F6634E6B444B8B0C91F ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
23:35:51.0067 0x19e8 dot4 - ok
23:35:51.0098 0x19e8 [ CC88A1D8A39752859101ECCE1F1BC888, F21C1D478180BC5E932BB2C2E4618E3ED463CA87ACEDEB139682D218435F82F1 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
23:35:51.0114 0x19e8 Dot4Print - ok
23:35:51.0129 0x19e8 [ 292ADB7C57B5457F18F2FC06934B0B40, 12FFDF5F48A79B1B4ADBB88BA2CB6C59DD6719554E8EA6BEEFE99B3E3C66F1AC ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
23:35:51.0145 0x19e8 dot4usb - ok
23:35:51.0160 0x19e8 DPS - ok
23:35:51.0176 0x19e8 drmkaud - ok
23:35:51.0176 0x19e8 DsmSvc - ok
23:35:51.0192 0x19e8 DsSvc - ok
23:35:51.0192 0x19e8 DXGKrnl - ok
23:35:51.0207 0x19e8 Eaphost - ok
23:35:51.0207 0x19e8 ebdrv - ok
23:35:51.0223 0x19e8 EFS - ok
23:35:51.0223 0x19e8 EhStorClass - ok
23:35:51.0239 0x19e8 EhStorTcgDrv - ok
23:35:51.0270 0x19e8 [ BDD265EEB37DF5953A547FE412E2472F, 17EB4FD54D62207937F8CA7454837DBF1EEC867AEDAF201FC2E839A3ED357F4F ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
23:35:51.0270 0x19e8 ElbyCDIO - ok
23:35:51.0285 0x19e8 embeddedmode - ok
23:35:51.0285 0x19e8 EntAppSvc - ok
23:35:51.0301 0x19e8 ErrDev - ok
23:35:51.0301 0x19e8 EventSystem - ok
23:35:51.0348 0x19e8 [ 334C907536E815E56CD13108A6D5FB9D, 0CEA0A330607B44A4CF0F0D5C92E91C7E2157404410F651CC4F8BA14A74523AE ] ewusbmbb C:\WINDOWS\System32\drivers\ewusbwwan.sys
23:35:51.0379 0x19e8 ewusbmbb - ok
23:35:51.0411 0x19e8 [ 86F7951BBCEE4A86E79A97306BD14318, 84B52A0392DA53ED71A2C4D483DD93DDF552BF8AC764C7BD47BE0EB58C7C8219 ] ew_hwusbdev C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys
23:35:51.0426 0x19e8 ew_hwusbdev - ok
23:35:51.0457 0x19e8 [ D2EAA04AF43154B62FA85B08BAD0A7CA, B18F09CAD04AD61A1B8DCD3BBC70A82FB50008C147389D3245E39856BA940A87 ] excfs C:\WINDOWS\system32\DRIVERS\excfs.sys
23:35:51.0457 0x19e8 excfs - ok
23:35:51.0473 0x19e8 [ E6082A6C109238A725D83184724C4A36, 66F0D4798C357FFCC5A35E45BE8E5F0A97E7BCF98CFAA1BB2269F6D6B910A0A3 ] excsd C:\WINDOWS\system32\DRIVERS\excsd.sys
23:35:51.0473 0x19e8 excsd - ok
23:35:51.0489 0x19e8 exfat - ok
23:35:51.0551 0x19e8 [ 68030FF4B7669E15916910885E2E6160, 324EC07A0135354A5D41ED841919D61C218ECA718DE8A8357B0D2AD0B621777B ] ExpressCache C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
23:35:51.0551 0x19e8 ExpressCache - ok
23:35:51.0567 0x19e8 fastfat - ok
23:35:51.0582 0x19e8 Fax - ok
23:35:51.0582 0x19e8 fdc - ok
23:35:51.0614 0x19e8 fdPHost - ok
23:35:51.0614 0x19e8 FDResPub - ok
23:35:51.0629 0x19e8 fhsvc - ok
23:35:51.0645 0x19e8 FileCrypt - ok
23:35:51.0660 0x19e8 FileInfo - ok
23:35:51.0660 0x19e8 Filetrace - ok
23:35:51.0660 0x19e8 flpydisk - ok
23:35:51.0676 0x19e8 FltMgr - ok
23:35:51.0676 0x19e8 FontCache - ok
23:35:51.0786 0x19e8 FontCache3.0.0.0 - ok
23:35:51.0786 0x19e8 FsDepends - ok
23:35:51.0786 0x19e8 Fs_Rec - ok
23:35:51.0801 0x19e8 fvevol - ok
23:35:51.0801 0x19e8 gagp30kx - ok
23:35:51.0911 0x19e8 [ C1D839D6279966F4DF4066472AC116DB, 1A46AC04B75230AF0E64626682AD080802528DB96AA2F4FD8ADF5B0D3AD44417 ] Garmin Device Interaction Service C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
23:35:51.0926 0x19e8 Garmin Device Interaction Service - ok
23:35:51.0957 0x19e8 gencounter - ok
23:35:51.0973 0x19e8 genericusbfn - ok
23:35:51.0973 0x19e8 GPIOClx0101 - ok
23:35:51.0989 0x19e8 gpsvc - ok
23:35:52.0004 0x19e8 GpuEnergyDrv - ok
23:35:52.0082 0x19e8 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:35:52.0098 0x19e8 gupdate - ok
23:35:52.0098 0x19e8 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:35:52.0114 0x19e8 gupdatem - ok
23:35:52.0114 0x19e8 HDAudBus - ok
23:35:52.0114 0x19e8 HidBatt - ok
23:35:52.0114 0x19e8 HidBth - ok
23:35:52.0114 0x19e8 hidi2c - ok
23:35:52.0129 0x19e8 hidinterrupt - ok
23:35:52.0129 0x19e8 HidIr - ok
23:35:52.0161 0x19e8 hidserv - ok
23:35:52.0208 0x19e8 HidUsb - ok
23:35:52.0239 0x19e8 HomeGroupListener - ok
23:35:52.0254 0x19e8 HomeGroupProvider - ok
23:35:52.0270 0x19e8 HpSAMD - ok
23:35:52.0317 0x19e8 HTTP - ok
23:35:52.0379 0x19e8 [ 1642C62F1FD5E1FF44608283994A7BB8, 4646AA0EF74A2AEE6C17D12206FCFE1E84D6FA712AD95A171F16D11BC9D3F11A ] huawei_enumerator C:\WINDOWS\System32\drivers\ew_jubusenum.sys
23:35:52.0411 0x19e8 huawei_enumerator - ok
23:35:52.0458 0x19e8 [ 04D1DE1E8ACE40CA396502C90524E945, C579D0C9D08617E91EAC4EE0D74BBE2911E1D76BF10D7120CCEEB0C23A9EF8E6 ] hwdatacard C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
23:35:52.0489 0x19e8 hwdatacard - ok
23:35:52.0551 0x19e8 HWDeviceService64.exe - ok
23:35:52.0551 0x19e8 hwpolicy - ok
23:35:52.0583 0x19e8 hyperkbd - ok
23:35:52.0583 0x19e8 HyperVideo - ok
23:35:52.0598 0x19e8 i8042prt - ok
23:35:52.0598 0x19e8 iai2c - ok
23:35:52.0598 0x19e8 iaLPSS2i_I2C - ok
23:35:52.0614 0x19e8 iaLPSSi_GPIO - ok
23:35:52.0614 0x19e8 iaLPSSi_I2C - ok
23:35:52.0645 0x19e8 [ 6C91E425ACE29594BD574DE38AC9B76D, 697784E4C7AF08B1F35662D8AD871E6890CECE22B6E64985B7C1A66C10DA390D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
23:35:52.0661 0x19e8 iaStorA - ok
23:35:52.0676 0x19e8 iaStorAV - ok
23:35:52.0723 0x19e8 [ 0AB254994A460550258446950BB58311, BD10811912680DD3B814B7D1303785C996D892C79108110A2257E9BD0C28245C ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
23:35:52.0723 0x19e8 IAStorDataMgrSvc - ok
23:35:52.0723 0x19e8 iaStorV - ok
23:35:52.0739 0x19e8 ibbus - ok
23:35:52.0770 0x19e8 [ 62F0CB0A54EAF37E15EC385300957BB8, 55FCF7068D84D5AEEAF3149A5349BF13F1D18E34956217916ED7C1950885E63C ] ibtfltcoex C:\WINDOWS\system32\DRIVERS\ibtfltcoex.sys
23:35:52.0786 0x19e8 ibtfltcoex - ok
23:35:52.0817 0x19e8 icssvc - ok
23:35:52.0817 0x19e8 IEEtwCollectorService - ok
23:35:52.0833 0x19e8 IKEEXT - ok
23:35:52.0973 0x19e8 [ 5C0BBE779BA3D6F84EB5AE3CB8793E11, EA729B622F30E847E2700787E6747A33769B405DD08D36175AACF42BE7A8600F ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
23:35:53.0051 0x19e8 IntcAzAudAddService - ok
23:35:53.0129 0x19e8 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
23:35:53.0145 0x19e8 Intel(R) Capability Licensing Service Interface - ok
23:35:53.0161 0x19e8 intelide - ok
23:35:53.0161 0x19e8 intelpep - ok
23:35:53.0161 0x19e8 intelppm - ok
23:35:53.0161 0x19e8 IoQos - ok
23:35:53.0161 0x19e8 IpFilterDriver - ok
23:35:53.0176 0x19e8 iphlpsvc - ok
23:35:53.0192 0x19e8 IPMIDRV - ok
23:35:53.0192 0x19e8 IPNAT - ok
23:35:53.0208 0x19e8 IRENUM - ok
23:35:53.0208 0x19e8 isapnp - ok
23:35:53.0208 0x19e8 iScsiPrt - ok
23:35:53.0286 0x19e8 [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:35:53.0301 0x19e8 jhi_service - ok
23:35:53.0317 0x19e8 [ 38515AF94AC56161F24AEE3F3681EC69, 20115363EA040641C04C75B6890A7CCDE9A65F57EB437BE28DF7AD5200EC4608 ] JMCR C:\WINDOWS\System32\drivers\jmcr.sys
23:35:53.0333 0x19e8 JMCR - ok
23:35:53.0333 0x19e8 kbdclass - ok
23:35:53.0333 0x19e8 kbdhid - ok
23:35:53.0333 0x19e8 kdnic - ok
23:35:53.0348 0x19e8 KeyIso - ok
23:35:53.0348 0x19e8 KSecDD - ok
23:35:53.0348 0x19e8 KSecPkg - ok
23:35:53.0364 0x19e8 ksthunk - ok
23:35:53.0379 0x19e8 KtmRm - ok
23:35:53.0379 0x19e8 L1C - ok
23:35:53.0395 0x19e8 LanmanServer - ok
23:35:53.0395 0x19e8 LanmanWorkstation - ok
23:35:53.0395 0x19e8 lfsvc - ok
23:35:53.0426 0x19e8 [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr C:\WINDOWS\system32\DRIVERS\LhdX64.sys
23:35:53.0426 0x19e8 LHDmgr - ok
23:35:53.0442 0x19e8 LicenseManager - ok
23:35:53.0442 0x19e8 lltdio - ok
23:35:53.0442 0x19e8 lltdsvc - ok
23:35:53.0458 0x19e8 lmhosts - ok
23:35:53.0473 0x19e8 [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:35:53.0489 0x19e8 LMS - ok
23:35:53.0489 0x19e8 LSI_SAS - ok
23:35:53.0504 0x19e8 LSI_SAS2i - ok
23:35:53.0504 0x19e8 LSI_SAS3i - ok
23:35:53.0520 0x19e8 LSI_SSS - ok
23:35:53.0520 0x19e8 LSM - ok
23:35:53.0520 0x19e8 luafv - ok
23:35:53.0536 0x19e8 MapsBroker - ok
23:35:53.0536 0x19e8 megasas - ok
23:35:53.0536 0x19e8 megasr - ok
23:35:53.0583 0x19e8 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
23:35:53.0583 0x19e8 MEIx64 - ok
23:35:53.0583 0x19e8 MessagingService - ok
23:35:53.0583 0x19e8 mlx4_bus - ok
23:35:53.0583 0x19e8 MMCSS - ok
23:35:53.0598 0x19e8 Modem - ok
23:35:53.0598 0x19e8 monitor - ok
23:35:53.0598 0x19e8 mouclass - ok
23:35:53.0598 0x19e8 mouhid - ok
23:35:53.0614 0x19e8 mountmgr - ok
23:35:53.0645 0x19e8 [ 69E23C730974BAC8C11DF2B7C4C9D37B, 8DC4448EC9C9647381952D7822B39C89E0997B4B964A785AE274144FADEE3C02 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:35:53.0661 0x19e8 MozillaMaintenance - ok
23:35:53.0676 0x19e8 mpsdrv - ok
23:35:53.0692 0x19e8 MpsSvc - ok
23:35:53.0692 0x19e8 MRxDAV - ok
23:35:53.0708 0x19e8 mrxsmb - ok
23:35:53.0723 0x19e8 mrxsmb10 - ok
23:35:53.0723 0x19e8 mrxsmb20 - ok
23:35:53.0739 0x19e8 MsBridge - ok
23:35:53.0754 0x19e8 MSDTC - ok
23:35:53.0770 0x19e8 Msfs - ok
23:35:53.0786 0x19e8 msgpiowin32 - ok
23:35:53.0786 0x19e8 mshidkmdf - ok
23:35:53.0786 0x19e8 mshidumdf - ok
23:35:53.0801 0x19e8 msisadrv - ok
23:35:53.0817 0x19e8 MSiSCSI - ok
23:35:53.0817 0x19e8 msiserver - ok
23:35:53.0817 0x19e8 MSKSSRV - ok
23:35:53.0817 0x19e8 MsLldp - ok
23:35:53.0833 0x19e8 MSPCLOCK - ok
23:35:53.0833 0x19e8 MSPQM - ok
23:35:53.0833 0x19e8 MsRPC - ok
23:35:53.0833 0x19e8 mssmbios - ok
23:35:53.0833 0x19e8 MSTEE - ok
23:35:53.0864 0x19e8 MTConfig - ok
23:35:53.0864 0x19e8 Mup - ok
23:35:53.0864 0x19e8 mvumis - ok
23:35:53.0880 0x19e8 NativeWifiP - ok
23:35:53.0895 0x19e8 NcaSvc - ok
23:35:53.0895 0x19e8 NcbService - ok
23:35:53.0895 0x19e8 NcdAutoSetup - ok
23:35:53.0895 0x19e8 ndfltr - ok
23:35:53.0911 0x19e8 NDIS - ok
23:35:53.0911 0x19e8 NdisCap - ok
23:35:53.0926 0x19e8 NdisImPlatform - ok
23:35:53.0926 0x19e8 NdisTapi - ok
23:35:53.0926 0x19e8 Ndisuio - ok
23:35:53.0942 0x19e8 NdisVirtualBus - ok
23:35:53.0942 0x19e8 NdisWan - ok
23:35:53.0942 0x19e8 ndiswanlegacy - ok
23:35:53.0942 0x19e8 ndproxy - ok
23:35:53.0958 0x19e8 Ndu - ok
23:35:53.0958 0x19e8 NetBIOS - ok
23:35:53.0973 0x19e8 NetBT - ok
23:35:53.0973 0x19e8 Netlogon - ok
23:35:54.0004 0x19e8 Netman - ok
23:35:54.0004 0x19e8 netprofm - ok
23:35:54.0020 0x19e8 NetSetupSvc - ok
23:35:54.0067 0x19e8 NetTcpPortSharing - ok
23:35:54.0067 0x19e8 netvsc - ok
23:35:54.0067 0x19e8 NETwNe64 - ok
23:35:54.0083 0x19e8 NgcCtnrSvc - ok
23:35:54.0098 0x19e8 NgcSvc - ok
23:35:54.0130 0x19e8 NlaSvc - ok
23:35:54.0130 0x19e8 Npfs - ok
23:35:54.0145 0x19e8 npsvctrig - ok
23:35:54.0161 0x19e8 nsi - ok
23:35:54.0161 0x19e8 nsiproxy - ok
23:35:54.0176 0x19e8 NTFS - ok
23:35:54.0192 0x19e8 Null - ok
23:35:54.0223 0x19e8 [ 624C1453F9109D98F7E2612DAD76BBB1, 4578623BF7EA1AF42038070AA3A1A9AC4A9582132ABBFAD9C3A99F46308DE8C3 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
23:35:54.0223 0x19e8 NVHDA - ok
23:35:54.0520 0x19e8 [ DF0BB2C179476D312B7BC0056CEC50A6, 64CC3201FA903E0EC9C99BE167C439C14A4C9AC2A88898B64789EEB381DB97B6 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
23:35:54.0692 0x19e8 nvlddmkm - ok
23:35:54.0723 0x19e8 nvraid - ok
23:35:54.0723 0x19e8 nvstor - ok
23:35:54.0770 0x19e8 [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
23:35:54.0817 0x19e8 nvsvc - ok
23:35:54.0880 0x19e8 [ C63E582366EAD77978BFFD959A66DBB8, BBAC11300AFED29291A08EEC8A740DA67C8C003AF89D06F9E0671CCF0E7908A0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
23:35:54.0911 0x19e8 nvUpdatusService - ok
23:35:54.0911 0x19e8 nv_agp - ok
23:35:54.0942 0x19e8 OneSyncSvc - ok
23:35:54.0958 0x19e8 p2pimsvc - ok
23:35:54.0958 0x19e8 p2psvc - ok
23:35:54.0989 0x19e8 Parport - ok
23:35:55.0020 0x19e8 partmgr - ok
23:35:55.0020 0x19e8 PcaSvc - ok
23:35:55.0036 0x19e8 pci - ok
23:35:55.0051 0x19e8 pciide - ok
23:35:55.0051 0x19e8 pcmcia - ok
23:35:55.0051 0x19e8 pcw - ok
23:35:55.0051 0x19e8 pdc - ok
23:35:55.0067 0x19e8 PEAUTH - ok
23:35:55.0083 0x19e8 percsas2i - ok
23:35:55.0083 0x19e8 percsas3i - ok
23:35:55.0161 0x19e8 PerfHost - ok
23:35:55.0177 0x19e8 PhoneSvc - ok
23:35:55.0192 0x19e8 PimIndexMaintenanceSvc - ok
23:35:55.0223 0x19e8 pla - ok
23:35:55.0239 0x19e8 PlugPlay - ok
23:35:55.0270 0x19e8 [ 64CA1485214340CACC315FFDFDED73EF, 3FFF06E313622D3633B4235C1E1B8857DBA8DFA19A6A1E5C3D6D88AE6C6DDCC5 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
23:35:55.0302 0x19e8 Pml Driver HPZ12 - ok
23:35:55.0317 0x19e8 PNRPAutoReg - ok
23:35:55.0333 0x19e8 PNRPsvc - ok
23:35:55.0364 0x19e8 [ E4799B87675C59AA1F620DE5C6F113BB, 094EE16D4CEC68DB316002994482344A6BFCFDE399131F7FA11BB46C2DCBF218 ] Point64 C:\WINDOWS\System32\drivers\point64.sys
23:35:55.0380 0x19e8 Point64 - ok
23:35:55.0395 0x19e8 PolicyAgent - ok
23:35:55.0411 0x19e8 Power - ok
23:35:55.0411 0x19e8 PptpMiniport - ok
23:35:55.0567 0x19e8 [ 8E284670A19FAB11857D054A738D140E, E654D540C7897367E784F9E910FAC147A15C0E457A5E4D394170B05D0E09E7B4 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
23:35:55.0661 0x19e8 PrintNotify - ok
23:35:55.0677 0x19e8 Processor - ok
23:35:55.0677 0x19e8 ProfSvc - ok
23:35:55.0692 0x19e8 Psched - ok
23:35:55.0708 0x19e8 QWAVE - ok
23:35:55.0708 0x19e8 QWAVEdrv - ok
23:35:55.0708 0x19e8 RasAcd - ok
23:35:55.0723 0x19e8 RasAgileVpn - ok
23:35:55.0739 0x19e8 RasAuto - ok
23:35:55.0755 0x19e8 Rasl2tp - ok
23:35:55.0755 0x19e8 RasMan - ok
23:35:55.0755 0x19e8 RasPppoe - ok
23:35:55.0755 0x19e8 RasSstp - ok
23:35:55.0786 0x19e8 rdbss - ok
23:35:55.0786 0x19e8 rdpbus - ok
23:35:55.0802 0x19e8 RDPDR - ok
23:35:55.0817 0x19e8 RdpVideoMiniport - ok
23:35:55.0817 0x19e8 rdyboost - ok
23:35:55.0833 0x19e8 ReFSv1 - ok
23:35:55.0833 0x19e8 RemoteAccess - ok
23:35:55.0833 0x19e8 RemoteRegistry - ok
23:35:55.0848 0x19e8 RetailDemo - ok
23:35:55.0848 0x19e8 RFCOMM - ok
23:35:55.0864 0x19e8 RpcEptMapper - ok
23:35:55.0880 0x19e8 RpcLocator - ok
23:35:55.0895 0x19e8 RpcSs - ok
23:35:55.0895 0x19e8 rspndr - ok
23:35:56.0130 0x19e8 [ 4AE2ACE71749E8536E89A92A9994B22F, AF47CE525FA9CFDC4105AB685145BCDDE8935A49F5E40893181F0B5F02AB0B00 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
23:35:56.0255 0x19e8 rtsuvc - ok
23:35:56.0286 0x19e8 s3cap - ok
23:35:56.0286 0x19e8 SamSs - ok
23:35:56.0286 0x19e8 sbp2port - ok
23:35:56.0302 0x19e8 SCardSvr - ok
23:35:56.0302 0x19e8 ScDeviceEnum - ok
23:35:56.0302 0x19e8 scfilter - ok
23:35:56.0317 0x19e8 Schedule - ok
23:35:56.0333 0x19e8 SCPolicySvc - ok
23:35:56.0333 0x19e8 sdbus - ok
23:35:56.0349 0x19e8 SDRSVC - ok
23:35:56.0349 0x19e8 sdstor - ok
23:35:56.0380 0x19e8 seclogon - ok
23:35:56.0380 0x19e8 SENS - ok
23:35:56.0411 0x19e8 SensorDataService - ok
23:35:56.0427 0x19e8 SensorService - ok
23:35:56.0427 0x19e8 SensrSvc - ok
23:35:56.0443 0x19e8 SerCx - ok
23:35:56.0443 0x19e8 SerCx2 - ok
23:35:56.0474 0x19e8 Serenum - ok
23:35:56.0489 0x19e8 Serial - ok
23:35:56.0489 0x19e8 sermouse - ok
23:35:56.0505 0x19e8 SessionEnv - ok
23:35:56.0505 0x19e8 sfloppy - ok
23:35:56.0521 0x19e8 SharedAccess - ok
23:35:56.0521 0x19e8 ShellHWDetection - ok
23:35:56.0536 0x19e8 SiSRaid2 - ok
23:35:56.0536 0x19e8 SiSRaid4 - ok
23:35:56.0552 0x19e8 [ 267FC982BC6BDAAA5726B92C9E7F86FC, DD98713A983821B298C40684841BAB951C5A32B7B454E5E029C9356057CCC8C1 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
23:35:56.0568 0x19e8 SmbDrvI - ok
23:35:56.0583 0x19e8 smphost - ok
23:35:56.0614 0x19e8 SmsRouter - ok
23:35:56.0630 0x19e8 SNMPTRAP - ok
23:35:56.0646 0x19e8 spaceport - ok
23:35:56.0661 0x19e8 SpbCx - ok
23:35:56.0661 0x19e8 Spooler - ok
23:35:56.0677 0x19e8 sppsvc - ok
23:35:56.0677 0x19e8 srv - ok
23:35:56.0693 0x19e8 srv2 - ok
23:35:56.0693 0x19e8 srvnet - ok
23:35:56.0708 0x19e8 SSDPSRV - ok
23:35:56.0739 0x19e8 SstpSvc - ok
23:35:56.0755 0x19e8 StateRepository - ok
23:35:56.0802 0x19e8 [ 7FCE08C739136C9C64107A8814EF854C, 820E494A401D69E3DA7A8624B2093DCF98198E6D8CCCE345BDF76952EE4ADB07 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
23:35:56.0833 0x19e8 Stereo Service - ok
23:35:56.0833 0x19e8 stexstor - ok
23:35:56.0833 0x19e8 stisvc - ok
23:35:56.0864 0x19e8 storahci - ok
23:35:56.0864 0x19e8 storflt - ok
23:35:56.0864 0x19e8 stornvme - ok
23:35:56.0864 0x19e8 storqosflt - ok
23:35:56.0864 0x19e8 StorSvc - ok
23:35:56.0864 0x19e8 storufs - ok
23:35:56.0880 0x19e8 storvsc - ok
23:35:56.0880 0x19e8 svsvc - ok
23:35:56.0880 0x19e8 swenum - ok
23:35:56.0911 0x19e8 swprv - ok
23:35:56.0943 0x19e8 Synth3dVsc - ok
23:35:56.0974 0x19e8 [ 831627135A28A42B75F032E6336296F6, 66FE5BB68C1C583752DC7CB473832AF6B3AB56DCCA56160A350F34B11D70020B ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
23:35:56.0989 0x19e8 SynTP - ok
23:35:57.0114 0x19e8 [ A324227CFB7A1668A2D062A3DC7CF12D, E075CE35AB6093E8C534055F61A9B512BB3AC9C1A2D00A2441C38B3DB7F3E585 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
23:35:57.0130 0x19e8 SynTPEnhService - ok
23:35:57.0146 0x19e8 SysMain - ok
23:35:57.0161 0x19e8 SystemEventsBroker - ok
23:35:57.0177 0x19e8 TabletInputService - ok
23:35:57.0177 0x19e8 TapiSrv - ok
23:35:57.0208 0x19e8 Tcpip - ok
23:35:57.0208 0x19e8 Tcpip6 - ok
23:35:57.0208 0x19e8 tcpipreg - ok
23:35:57.0239 0x19e8 tdx - ok
23:35:57.0427 0x19e8 [ 2AA61246A5B813C1B12BCCFAA6F23DD8, 74EE3DB839A0F4BC781294803281DB2248D013B8808FF05F2EE9597C14C6FEED ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
23:35:57.0521 0x19e8 TeamViewer - ok
23:35:57.0552 0x19e8 terminpt - ok
23:35:57.0552 0x19e8 TermService - ok
23:35:57.0583 0x19e8 Themes - ok
23:35:57.0599 0x19e8 TieringEngineService - ok
23:35:57.0614 0x19e8 tiledatamodelsvc - ok
23:35:57.0646 0x19e8 TimeBroker - ok
23:35:57.0661 0x19e8 TPM - ok
23:35:57.0661 0x19e8 TrkWks - ok
23:35:57.0708 0x19e8 TrustedInstaller - ok
23:35:57.0724 0x19e8 tsusbflt - ok
23:35:57.0724 0x19e8 TsUsbGD - ok
23:35:57.0739 0x19e8 tunnel - ok
23:35:57.0771 0x19e8 tzautoupdate - ok
23:35:57.0786 0x19e8 uagp35 - ok
23:35:57.0802 0x19e8 UASPStor - ok
23:35:57.0818 0x19e8 UcmCx0101 - ok
23:35:57.0818 0x19e8 UcmUcsi - ok
23:35:57.0833 0x19e8 Ucx01000 - ok
23:35:57.0833 0x19e8 UdeCx - ok
23:35:57.0833 0x19e8 udfs - ok
23:35:57.0849 0x19e8 UEFI - ok
23:35:57.0864 0x19e8 Ufx01000 - ok
23:35:57.0880 0x19e8 UfxChipidea - ok
23:35:57.0896 0x19e8 ufxsynopsys - ok
23:35:57.0911 0x19e8 UI0Detect - ok
23:35:57.0911 0x19e8 uliagpkx - ok
23:35:57.0927 0x19e8 umbus - ok
23:35:57.0927 0x19e8 UmPass - ok
23:35:57.0943 0x19e8 UmRdpService - ok
23:35:57.0943 0x19e8 UnistoreSvc - ok
23:35:58.0036 0x19e8 [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:35:58.0068 0x19e8 UNS - ok
23:35:58.0068 0x19e8 upnphost - ok
23:35:58.0099 0x19e8 UrsChipidea - ok
23:35:58.0099 0x19e8 UrsCx01000 - ok
23:35:58.0099 0x19e8 UrsSynopsys - ok
23:35:58.0114 0x19e8 usbccgp - ok
23:35:58.0114 0x19e8 usbcir - ok
23:35:58.0114 0x19e8 usbehci - ok
23:35:58.0130 0x19e8 usbhub - ok
23:35:58.0130 0x19e8 USBHUB3 - ok
23:35:58.0130 0x19e8 usbohci - ok
23:35:58.0130 0x19e8 usbprint - ok
23:35:58.0146 0x19e8 usbser - ok
23:35:58.0161 0x19e8 USBSTOR - ok
23:35:58.0161 0x19e8 usbuhci - ok
23:35:58.0177 0x19e8 USBXHCI - ok
23:35:58.0193 0x19e8 UserDataSvc - ok
23:35:58.0208 0x19e8 UserManager - ok
23:35:58.0224 0x19e8 UsoSvc - ok
23:35:58.0224 0x19e8 VaultSvc - ok
23:35:58.0255 0x19e8 [ F257A2737280F0076EAE3AB489C06474, A02E37292D86E675D55C13097E9F107C73DDFD8AAC69310F7D9910A811A541D8 ] VClone C:\WINDOWS\System32\drivers\VClone.sys
23:35:58.0286 0x19e8 VClone - ok
23:35:58.0286 0x19e8 vdrvroot - ok
23:35:58.0286 0x19e8 vds - ok
23:35:58.0302 0x19e8 VerifierExt - ok
23:35:58.0302 0x19e8 vhdmp - ok
23:35:58.0302 0x19e8 vhf - ok
23:35:58.0302 0x19e8 vmbus - ok
23:35:58.0318 0x19e8 VMBusHID - ok
23:35:58.0318 0x19e8 vmicguestinterface - ok
23:35:58.0318 0x19e8 vmicheartbeat - ok
23:35:58.0333 0x19e8 vmickvpexchange - ok
23:35:58.0333 0x19e8 vmicrdv - ok
23:35:58.0333 0x19e8 vmicshutdown - ok
23:35:58.0333 0x19e8 vmictimesync - ok
23:35:58.0333 0x19e8 vmicvmsession - ok
23:35:58.0349 0x19e8 vmicvss - ok
23:35:58.0349 0x19e8 volmgr - ok
23:35:58.0349 0x19e8 volmgrx - ok
23:35:58.0349 0x19e8 volsnap - ok
23:35:58.0364 0x19e8 vpci - ok
23:35:58.0364 0x19e8 vsmraid - ok
23:35:58.0364 0x19e8 VSS - ok
23:35:58.0364 0x19e8 VSTXRAID - ok
23:35:58.0380 0x19e8 vwifibus - ok
23:35:58.0380 0x19e8 vwififlt - ok
23:35:58.0380 0x19e8 vwifimp - ok
23:35:58.0380 0x19e8 W32Time - ok
23:35:58.0396 0x19e8 WacomPen - ok
23:35:58.0396 0x19e8 WalletService - ok
23:35:58.0396 0x19e8 wanarp - ok
23:35:58.0411 0x19e8 wanarpv6 - ok
23:35:58.0411 0x19e8 wbengine - ok
23:35:58.0427 0x19e8 WbioSrvc - ok
23:35:58.0443 0x19e8 Wcmsvc - ok
23:35:58.0458 0x19e8 wcncsvc - ok
23:35:58.0474 0x19e8 WcsPlugInService - ok
23:35:58.0474 0x19e8 WdBoot - ok
23:35:58.0489 0x19e8 Wdf01000 - ok
23:35:58.0489 0x19e8 WdFilter - ok
23:35:58.0505 0x19e8 WdiServiceHost - ok
23:35:58.0505 0x19e8 WdiSystemHost - ok
23:35:58.0536 0x19e8 wdiwifi - ok
23:35:58.0536 0x19e8 WdNisDrv - ok
23:35:58.0568 0x19e8 WdNisSvc - ok
23:35:58.0568 0x19e8 WebClient - ok
23:35:58.0568 0x19e8 Wecsvc - ok
23:35:58.0568 0x19e8 WEPHOSTSVC - ok
23:35:58.0599 0x19e8 wercplsupport - ok
23:35:58.0599 0x19e8 WerSvc - ok
23:35:58.0630 0x19e8 WFPLWFS - ok
23:35:58.0646 0x19e8 WiaRpc - ok
23:35:58.0661 0x19e8 WIMMount - ok
23:35:58.0661 0x19e8 WinDefend - ok
23:35:58.0677 0x19e8 WindowsTrustedRT - ok
23:35:58.0708 0x19e8 WindowsTrustedRTProxy - ok
23:35:58.0724 0x19e8 WinHttpAutoProxySvc - ok
23:35:58.0724 0x19e8 WinMad - ok
23:35:58.0771 0x19e8 Winmgmt - ok
23:35:58.0802 0x19e8 WinRM - ok
23:35:58.0802 0x19e8 WINUSB - ok
23:35:58.0802 0x19e8 WinVerbs - ok
23:35:58.0818 0x19e8 WlanSvc - ok
23:35:58.0818 0x19e8 wlidsvc - ok
23:35:58.0833 0x19e8 WmiAcpi - ok
23:35:58.0833 0x19e8 wmiApSrv - ok
23:35:58.0865 0x19e8 WMPNetworkSvc - ok
23:35:58.0896 0x19e8 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
23:35:58.0896 0x19e8 Wof - ok
23:35:58.0911 0x19e8 workfolderssvc - ok
23:35:58.0911 0x19e8 wpcfltr - ok
23:35:58.0943 0x19e8 WPDBusEnum - ok
23:35:58.0958 0x19e8 WpdUpFltr - ok
23:35:58.0958 0x19e8 WpnService - ok
23:35:58.0958 0x19e8 ws2ifsl - ok
23:35:58.0974 0x19e8 wscsvc - ok
23:35:58.0990 0x19e8 WSearch - ok
23:35:59.0005 0x19e8 WSService - ok
23:35:59.0036 0x19e8 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
23:35:59.0036 0x19e8 wsvd - ok
23:35:59.0052 0x19e8 wuauserv - ok
23:35:59.0083 0x19e8 WudfPf - ok
23:35:59.0099 0x19e8 WUDFRd - ok
23:35:59.0115 0x19e8 wudfsvc - ok
23:35:59.0130 0x19e8 WUDFWpdFs - ok
23:35:59.0130 0x19e8 WUDFWpdMtp - ok
23:35:59.0146 0x19e8 WwanSvc - ok
23:35:59.0162 0x19e8 XblAuthManager - ok
23:35:59.0177 0x19e8 XblGameSave - ok
23:35:59.0193 0x19e8 xboxgip - ok
23:35:59.0224 0x19e8 XboxNetApiSvc - ok
23:35:59.0224 0x19e8 xinputhid - ok
23:35:59.0224 0x19e8 ================ Scan global ===============================
23:35:59.0271 0x19e8 [ Global ] - ok
23:35:59.0287 0x19e8 ================ Scan MBR ==================================
23:35:59.0287 0x19e8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:35:59.0537 0x19e8 \Device\Harddisk0\DR0 - ok
23:35:59.0552 0x19e8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
23:35:59.0787 0x19e8 \Device\Harddisk1\DR1 - ok
23:35:59.0787 0x19e8 ================ Scan VBR ==================================
23:35:59.0802 0x19e8 [ E67D603EB2B46E2F03C7902B61890720 ] \Device\Harddisk0\DR0\Partition1
23:35:59.0802 0x19e8 \Device\Harddisk0\DR0\Partition1 - ok
23:35:59.0818 0x19e8 [ 98504DD50374C268B66F20BFD92CA4CD ] \Device\Harddisk1\DR1\Partition1
23:35:59.0818 0x19e8 \Device\Harddisk1\DR1\Partition1 - ok
23:35:59.0849 0x19e8 [ 1A5E41CE1541D1BF15CD755B3A2908C8 ] \Device\Harddisk1\DR1\Partition2
23:35:59.0849 0x19e8 \Device\Harddisk1\DR1\Partition2 - ok
23:35:59.0849 0x19e8 [ 6B2E3A32351ABF0EE085B01D6ED8FD84 ] \Device\Harddisk1\DR1\Partition3
23:35:59.0849 0x19e8 \Device\Harddisk1\DR1\Partition3 - ok
23:35:59.0865 0x19e8 [ 2BB6BE0774AD687106E310CF87210D34 ] \Device\Harddisk1\DR1\Partition4
23:35:59.0865 0x19e8 \Device\Harddisk1\DR1\Partition4 - ok
23:35:59.0865 0x19e8 [ CD23520268B5089AF1A29587BC8519EE ] \Device\Harddisk1\DR1\Partition5
23:35:59.0865 0x19e8 \Device\Harddisk1\DR1\Partition5 - ok
23:35:59.0896 0x19e8 [ 1808E20BEA0AEBF0CCDB2849C9A13D65 ] \Device\Harddisk1\DR1\Partition6
23:35:59.0896 0x19e8 \Device\Harddisk1\DR1\Partition6 - ok
23:35:59.0912 0x19e8 [ E986E7B60155CB5E505B33DD0142946B ] \Device\Harddisk1\DR1\Partition7
23:35:59.0912 0x19e8 \Device\Harddisk1\DR1\Partition7 - ok
23:35:59.0927 0x19e8 [ 1A8FF7EDC82EB7390EA6A69700E2CD53 ] \Device\Harddisk1\DR1\Partition8
23:35:59.0927 0x19e8 \Device\Harddisk1\DR1\Partition8 - ok
23:35:59.0927 0x19e8 ================ Scan generic autorun ======================
23:36:00.0301 0x19e8 [ 2936EA1AB4B2F7DF9BAD7F78671C2093, 3DE4BE1866A02DA291DAFEE100E378B152D1387C7444B4CE2528F558729628B5 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
23:36:00.0504 0x19e8 RtHDVCpl - ok
23:36:00.0566 0x19e8 [ E9752E0CD9FB37612474B23973443FC9, B497B77BCC70A721D74DDE5551C0314D43FDAFE547D071C26750F0314128FCB8 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
23:36:00.0597 0x19e8 RtHDVBg_Dolby - ok
23:36:00.0769 0x19e8 [ 0A2F3CD73F7BD44377F99094C3817D91, 67D3917954204EFD216DDC72079256F546A59E1C523C2047639859B5418E2B55 ] C:\WINDOWS\RTFTrack.exe
23:36:00.0863 0x19e8 RtsFT - ok
23:36:00.0879 0x19e8 SynLenovoGestureMgr - ok
23:36:01.0004 0x19e8 [ 34674D5EF79577BF23A1D3DA2AD68F46, 1E0744EA7143480ED951F3AE91E3868D2AE35127681292789C65BB3BF7BC5ECA ] C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe
23:36:01.0066 0x19e8 OnekeyStudio - ok
23:36:01.0488 0x19e8 [ DF99547E3CD8C828202546ED9C4D7D25, 83013EEE760004E812CD63662843D1F3972AFBF83B4739935FC746F470FA7188 ] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
23:36:01.0754 0x19e8 Energy Management - ok
23:36:01.0769 0x19e8 [ D41309D7717CC5D62C2E0C5EB6B127B3, 50F46F762320C9B2560AA356B31EB564651F92BDA2DBCE34E3E349A65E347FAC ] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe
23:36:01.0785 0x19e8 EnergyUtility - ok
23:36:01.0832 0x19e8 [ E7861EAA7881E086B2DB88ADF4279D4B, D040BCEC5B7519357D4E28653FC0F9F4FEAA88D291726A0763EA5E84C8C5D840 ] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
23:36:01.0832 0x19e8 IAStorIcon - ok
23:36:01.0879 0x19e8 [ A1741C3B79F9DF8895E05EF43579E74B, 446094FDBA93518ABE1CDEC50E24AB60BC7CA78022A289AF5C21461778FD8001 ] C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
23:36:01.0879 0x19e8 YouCam Mirage - ok
23:36:01.0910 0x19e8 [ 79EDDBCBFFC23585BC1495AFC03CC4D7, 325A6C067A52BAD7070C1C758EA69645FD8083AC6D0ABA8340BDBE1A712E005F ] C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
23:36:01.0910 0x19e8 YouCam Tray - ok
23:36:02.0004 0x19e8 [ 16D807D8B07A868298A8044E576BE419, 148399752A497E7FEA07C59C89834E266652AC1C0793B5C9C429FDBB37AB7617 ] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe
23:36:02.0035 0x19e8 UpdateP2GShortCut - detected UnsignedFile.Multi.Generic ( 1 )
23:36:02.0098 0x19e8 UpdateP2GShortCut ( UnsignedFile.Multi.Generic ) - warning
23:36:02.0144 0x19e8 [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
23:36:02.0160 0x19e8 RemoteControl10 - ok
23:36:02.0191 0x19e8 [ 408A52C9DD19FADB4EC43A0FB30862A8, F96D3F6A12070B20AC1509B2F09D95829AF4D91C13B345AAA3D0FEDE65DD9798 ] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
23:36:02.0207 0x19e8 BDRegion - ok
23:36:02.0285 0x19e8 [ 43E946AAD268FEAFB1E286677E70CB5D, 7798926B3CF11D1CF7DFF9B3D67AD3DC67010A62F3132CAEA273EB299A61B176 ] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
23:36:02.0301 0x19e8 Intel AppUp(SM) center - ok
23:36:02.0348 0x19e8 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
23:36:02.0363 0x19e8 VirtualCloneDrive - ok
23:36:02.0488 0x19e8 [ 66598E7BC1960E5E57A646B69671182F, A6B5008742A3E5C506C870CBA27711AF6F25B840E7B869FB33E9C080A4917C76 ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
23:36:02.0504 0x19e8 avgnt - ok
23:36:02.0566 0x19e8 [ E127B5D81CE968CD3858AF6BDCADEC7C, AF426B8259E2801679A8E3FAE42B617D0DA1D4E834DF0F7B1FD93AB5E64CBE34 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
23:36:02.0582 0x19e8 Avira SystrayStartTrigger - ok
23:36:02.0660 0x19e8 OneDriveSetup - ok
23:36:02.0676 0x19e8 OneDriveSetup - ok
23:36:02.0676 0x19e8 OneDriveSetup - ok
23:36:02.0707 0x19e8 WAB Migrate - ok
23:36:02.0707 0x19e8 OneDriveSetup - ok
23:36:02.0910 0x19e8 [ 76BEBE0FDE1DDDB9B70BEF85B40DDE70, 977228BD8634A8DDFC476C21859E56935325EA8C1CD1CB27445B13FF00E2F7D1 ] C:\Users\Doering\AppData\Roaming\Spotify\Spotify.exe
23:36:02.0988 0x19e8 Spotify - ok
23:36:03.0082 0x19e8 [ F10ADB851EF1BD5144FE6D1691CD7576, C35431A6D0A95722002A601BB076B8294603C17A8F4544856C2E2F75C5D42F3D ] C:\Users\Doering\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
23:36:03.0098 0x19e8 Spotify Web Helper - ok
23:36:03.0207 0x19e8 [ 1B7406B1EEF9924D589A7007C3733877, A11A823B6213A3AB6B4516662AE48D35E971E0C93D6A1C9D9CECF27F9D0B0523 ] C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe
23:36:03.0254 0x19e8 Rainlendar2 - ok
23:36:03.0254 0x19e8 WAB Migrate - ok
23:36:03.0410 0x19e8 [ 005B2B63719E6B3E8E2E1446A9278F8E, 0A34046B0205A2FEEE5E2867765D171D7BA420A1527E49472A35B484219BD377 ] C:\Users\Frank\AppData\Roaming\Spotify\SpotifyWebHelper.exe
23:36:03.0441 0x19e8 Spotify Web Helper - ok
23:36:03.0504 0x19e8 [ 98B31CBC09D671DADEB7C92AEF1CBE29, F3A5B6E04F4FD4180242EE7E1632B4C179A6FE277B414F937CCAA6286605B671 ] C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe
23:36:03.0520 0x19e8 HW_OPENEYE_OUC_Mobile Partner - detected UnsignedFile.Multi.Generic ( 1 )
23:36:03.0520 0x19e8 HW_OPENEYE_OUC_Mobile Partner ( UnsignedFile.Multi.Generic ) - warning
23:36:03.0613 0x19e8 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Frank\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:36:03.0629 0x19e8 OneDrive - ok
23:36:03.0832 0x19e8 [ 1714D2B9D03CD71541AFD1FA0ED23759, B8CA2496B250A5257BEF290445FC998560317D9851A0D75CE9BBA4243D002CD5 ] C:\Users\Frank\AppData\Roaming\Spotify\Spotify.exe
23:36:03.0957 0x19e8 Spotify - ok
23:36:04.0098 0x19e8 [ 9020995AC7455DA2088CEBA80FBFEC96, 1106F236D1531910236172F8CDD2BF1EE14171C79D437A760E828D9A5BA0A03F ] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
23:36:04.0113 0x19e8 GarminExpressTrayApp - ok
23:36:04.0254 0x19e8 [ F9387D080BF8566354CDB0445AB8F87B, 4EE5D4A15E2D3DF578FA0370449C0894166B1B2998B63D9F02A994845350B86A ] C:\Users\Doering_2\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:36:04.0270 0x19e8 OneDrive - ok
23:36:04.0395 0x19e8 [ 40ECBE5FB9AF61FE1FF700397C6EC51F, 5790598DF7B082D79BCC72959EF8E7B77BAE645A3D3F9C9F588C312E6A744A16 ] C:\COOLSP~1\PERSON~1\PID.EXE
23:36:04.0410 0x19e8 Personal ID - ok
23:36:04.0551 0x19e8 [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\Gaeste\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:36:04.0582 0x19e8 OneDrive - ok
23:36:04.0582 0x19e8 OneDriveSetup - ok
23:36:04.0582 0x19e8 WAB Migrate - ok
23:36:04.0582 0x19e8 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.20.55 ), 0x40000 ( disabled : updated )
23:36:04.0582 0x19e8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.589 ), 0x62100 ( disabled : updated )
23:36:04.0598 0x19e8 Win FW state via NFP2: enabled ( trusted )
23:36:04.0598 0x19e8 ============================================================
23:36:04.0598 0x19e8 Scan finished
23:36:04.0598 0x19e8 ============================================================
23:36:04.0598 0x0cb8 Detected object count: 2
23:36:04.0598 0x0cb8 Actual detected object count: 2
23:36:27.0365 0x0cb8 C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe - copied to quarantine
23:36:27.0365 0x0cb8 UpdateP2GShortCut ( UnsignedFile.Multi.Generic ) - User select action: Quarantine
23:36:27.0381 0x0cb8 C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe - copied to quarantine
23:36:27.0381 0x0cb8 HW_OPENEYE_OUC_Mobile Partner ( UnsignedFile.Multi.Generic ) - User select action: Quarantine
23:40:00.0837 0x11a0 Deinitialize success |