Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2016.12.14.10
rootkit: v2016.11.20.01
Windows 10 x64 NTFS
Internet Explorer 11.447.14393.0
schli :: DESKTOP-0O8B9GV [administrator]
14.12.2016 16:43:36
mbar-log-2016-12-14 (16-43-36).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 333558
Time elapsed: 5 minute(s), 46 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) Code:
16:49:31.0475 0x0b70 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
16:49:37.0040 0x0b70 ============================================================
16:49:37.0040 0x0b70 Current date / time: 2016/12/14 16:49:37.0040
16:49:37.0040 0x0b70 SystemInfo:
16:49:37.0041 0x0b70
16:49:37.0041 0x0b70 OS Version: 10.0.14393 ServicePack: 0.0
16:49:37.0041 0x0b70 Product type: Workstation
16:49:37.0041 0x0b70 ComputerName: DESKTOP-0O8B9GV
16:49:37.0041 0x0b70 UserName: schli
16:49:37.0041 0x0b70 Windows directory: C:\WINDOWS
16:49:37.0041 0x0b70 System windows directory: C:\WINDOWS
16:49:37.0041 0x0b70 Running under WOW64
16:49:37.0041 0x0b70 Processor architecture: Intel x64
16:49:37.0041 0x0b70 Number of processors: 12
16:49:37.0041 0x0b70 Page size: 0x1000
16:49:37.0041 0x0b70 Boot type: Normal boot
16:49:37.0041 0x0b70 CodeIntegrityOptions = 0x00000001
16:49:37.0041 0x0b70 ============================================================
16:49:37.0068 0x0b70 KLMD registered as C:\WINDOWS\system32\drivers\37004184.sys
16:49:37.0068 0x0b70 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.479, osProperties = 0x19
16:49:37.0541 0x0b70 System UUID: {5EB274F1-5F85-FBF2-FB3A-DAD7F15D2383}
16:49:37.0869 0x0b70 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:49:37.0869 0x0b70 Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:49:37.0979 0x0b70 ============================================================
16:49:37.0979 0x0b70 \Device\Harddisk0\DR0:
16:49:37.0981 0x0b70 MBR partitions:
16:49:37.0981 0x0b70 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:49:37.0981 0x0b70 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x9F1F000
16:49:37.0981 0x0b70 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xA032800, BlocksNum 0x3F61800
16:49:37.0981 0x0b70 \Device\Harddisk1\DR1:
16:49:37.0981 0x0b70 MBR partitions:
16:49:37.0981 0x0b70 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12C00000
16:49:37.0981 0x0b70 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x12C00800, BlocksNum 0x44944800
16:49:37.0981 0x0b70 ============================================================
16:49:37.0982 0x0b70 C: <-> \Device\Harddisk0\DR0\Partition2
16:49:37.0982 0x0b70 D: <-> \Device\Harddisk0\DR0\Partition3
16:49:37.0986 0x0b70 E: <-> \Device\Harddisk1\DR1\Partition1
16:49:37.0991 0x0b70 F: <-> \Device\Harddisk1\DR1\Partition2
16:49:37.0991 0x0b70 ============================================================
16:49:37.0991 0x0b70 Initialize success
16:49:37.0991 0x0b70 ============================================================
16:50:12.0298 0x1e6c ============================================================
16:50:12.0298 0x1e6c Scan started
16:50:12.0298 0x1e6c Mode: Manual; SigCheck; TDLFS;
16:50:12.0298 0x1e6c ============================================================
16:50:12.0298 0x1e6c KSN ping started
16:50:12.0419 0x1e6c KSN ping finished: true
16:50:13.0075 0x1e6c ================ Scan system memory ========================
16:50:13.0075 0x1e6c System memory - ok
16:50:13.0075 0x1e6c ================ Scan services =============================
16:50:13.0113 0x1e6c 1394ohci - ok
16:50:13.0115 0x1e6c 3ware - ok
16:50:13.0117 0x1e6c ACPI - ok
16:50:13.0119 0x1e6c AcpiDev - ok
16:50:13.0121 0x1e6c acpiex - ok
16:50:13.0123 0x1e6c acpipagr - ok
16:50:13.0126 0x1e6c AcpiPmi - ok
16:50:13.0128 0x1e6c acpitime - ok
16:50:13.0151 0x1e6c [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:50:13.0202 0x1e6c AdobeFlashPlayerUpdateSvc - ok
16:50:13.0210 0x1e6c ADP80XX - ok
16:50:13.0213 0x1e6c AFD - ok
16:50:13.0215 0x1e6c ahcache - ok
16:50:13.0218 0x1e6c AJRouter - ok
16:50:13.0220 0x1e6c ALG - ok
16:50:13.0222 0x1e6c AmdK8 - ok
16:50:13.0224 0x1e6c AmdPPM - ok
16:50:13.0226 0x1e6c amdsata - ok
16:50:13.0228 0x1e6c amdsbs - ok
16:50:13.0230 0x1e6c amdxata - ok
16:50:13.0233 0x1e6c AppID - ok
16:50:13.0235 0x1e6c AppIDSvc - ok
16:50:13.0237 0x1e6c Appinfo - ok
16:50:13.0239 0x1e6c applockerfltr - ok
16:50:13.0241 0x1e6c AppMgmt - ok
16:50:13.0243 0x1e6c AppReadiness - ok
16:50:13.0245 0x1e6c AppVClient - ok
16:50:13.0247 0x1e6c AppvStrm - ok
16:50:13.0249 0x1e6c AppvVemgr - ok
16:50:13.0251 0x1e6c AppvVfs - ok
16:50:13.0253 0x1e6c AppXSvc - ok
16:50:13.0255 0x1e6c arcsas - ok
16:50:13.0271 0x1e6c [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
16:50:13.0297 0x1e6c asComSvc - ok
16:50:13.0301 0x1e6c [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\WINDOWS\syswow64\drivers\AsIO.sys
16:50:13.0309 0x1e6c AsIO - ok
16:50:13.0313 0x1e6c [ A750BB0FA32D1CC1E0FC740F09BBA3FD, B068F97AD7B47FD224946B98E0F067217A7D8BB8107160EB671F323CFFB3EF06 ] asmthub3 C:\WINDOWS\System32\drivers\asmthub3.sys
16:50:13.0324 0x1e6c asmthub3 - ok
16:50:13.0332 0x1e6c [ 3054586B131D04D2E8796806CA581361, C650A4D93A79FB6F389D727E55CB0A8784600AFA8AE46E47998B4ED244B8F09A ] asmtxhci C:\WINDOWS\System32\drivers\asmtxhci.sys
16:50:13.0346 0x1e6c asmtxhci - ok
16:50:13.0367 0x1e6c [ 37F7DD839A711B5706B1264F4D8D4BDC, C949A7BB236C6C03E197EF7F9A6DF53E34EC35D925034351B5FD5D7DB62A770E ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
16:50:13.0410 0x1e6c AsSysCtrlService - detected UnsignedFile.Multi.Generic ( 1 )
16:50:13.0470 0x1e6c Detect skipped due to KSN trusted
16:50:13.0471 0x1e6c AsSysCtrlService - ok
16:50:13.0476 0x1e6c AsyncMac - ok
16:50:13.0483 0x1e6c atapi - ok
16:50:13.0486 0x1e6c [ 4ECC791539F23982411864037D1AC8FC, 063CBA00E453B5FF3CDFDFB5FA2E6A190A0DC3D399EC36F646262BE76F98A60C ] AthDfu C:\WINDOWS\System32\Drivers\AthDfu.sys
16:50:13.0494 0x1e6c AthDfu - ok
16:50:13.0496 0x1e6c AudioEndpointBuilder - ok
16:50:13.0498 0x1e6c Audiosrv - ok
16:50:13.0501 0x1e6c AxInstSV - ok
16:50:13.0503 0x1e6c b06bdrv - ok
16:50:13.0505 0x1e6c BasicDisplay - ok
16:50:13.0507 0x1e6c BasicRender - ok
16:50:13.0510 0x1e6c bcmfn - ok
16:50:13.0512 0x1e6c bcmfn2 - ok
16:50:13.0515 0x1e6c BDESVC - ok
16:50:13.0517 0x1e6c Beep - ok
16:50:13.0540 0x1e6c [ 77551F11061A94D76070B81EC3925C45, 29732AA704A9135572C836E6C8A08AB5A332F602E267FB5D2916C0A09189120A ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
16:50:13.0569 0x1e6c BEService - ok
16:50:13.0572 0x1e6c BFE - ok
16:50:13.0574 0x1e6c BITS - ok
16:50:13.0576 0x1e6c bowser - ok
16:50:13.0578 0x1e6c BrokerInfrastructure - ok
16:50:13.0580 0x1e6c Browser - ok
16:50:13.0591 0x1e6c [ C8BF11D79B29BB23A461B65B58BA8593, 35AFAD5ED40304976287E6C982085DF7A91FF48F0320DAC32370FA039AA03C69 ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
16:50:13.0613 0x1e6c BtFilter - ok
16:50:13.0615 0x1e6c BthAvrcpTg - ok
16:50:13.0619 0x1e6c [ 77630A51FAF6A07922FEE835F4DED8F6, E096A9DC12885FD19575346A9693A66D0DDFF96C3155AD2040F2BF4249D1D609 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
16:50:13.0639 0x1e6c BthEnum - ok
16:50:13.0641 0x1e6c BthHFEnum - ok
16:50:13.0643 0x1e6c bthhfhid - ok
16:50:13.0645 0x1e6c BthHFSrv - ok
16:50:13.0647 0x1e6c BTHMODEM - ok
16:50:13.0651 0x1e6c [ 224BA1CB1F3C702F0D001D2AFC9793B1, F139F6F78C716E1167E16530AE31E4A26C2A69467BCB08A9A52A101B31DF7771 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys
16:50:13.0669 0x1e6c BthPan - ok
16:50:13.0672 0x1e6c BTHPORT - ok
16:50:13.0674 0x1e6c bthserv - ok
16:50:13.0677 0x1e6c [ DC5955E589C55E2313D69B64E1A183F3, 06D703246D0813DE53D62885C8B7381135783673FF4BDDD5CC38FEB54901BB76 ] BTHUSB C:\WINDOWS\System32\drivers\BTHUSB.sys
16:50:13.0691 0x1e6c BTHUSB - ok
16:50:13.0693 0x1e6c buttonconverter - ok
16:50:13.0697 0x1e6c [ 60EB6A4CE3E21887D302350631C16F26, 4270EFA22285C1A9336CF1220761E416950D2DA9C6A40D1D8452686CD5040DAB ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
16:50:13.0714 0x1e6c CapImg - ok
16:50:13.0717 0x1e6c cdfs - ok
16:50:13.0719 0x1e6c CDPSvc - ok
16:50:13.0721 0x1e6c CDPUserSvc - ok
16:50:13.0725 0x1e6c cdrom - ok
16:50:13.0727 0x1e6c CertPropSvc - ok
16:50:13.0729 0x1e6c cht4iscsi - ok
16:50:13.0731 0x1e6c cht4vbd - ok
16:50:13.0733 0x1e6c circlass - ok
16:50:13.0735 0x1e6c CLFS - ok
16:50:13.0737 0x1e6c ClipSVC - ok
16:50:13.0740 0x1e6c clreg - ok
16:50:13.0745 0x1e6c CmBatt - ok
16:50:13.0747 0x1e6c CNG - ok
16:50:13.0749 0x1e6c cnghwassist - ok
16:50:13.0761 0x1e6c CompositeBus - ok
16:50:13.0763 0x1e6c COMSysApp - ok
16:50:13.0765 0x1e6c condrv - ok
16:50:13.0767 0x1e6c CoreMessagingRegistrar - ok
16:50:13.0771 0x1e6c CryptSvc - ok
16:50:13.0773 0x1e6c CSC - ok
16:50:13.0776 0x1e6c CscService - ok
16:50:13.0778 0x1e6c dam - ok
16:50:13.0781 0x1e6c DcomLaunch - ok
16:50:13.0783 0x1e6c DcpSvc - ok
16:50:13.0785 0x1e6c defragsvc - ok
16:50:13.0787 0x1e6c DeviceAssociationService - ok
16:50:13.0789 0x1e6c DeviceInstall - ok
16:50:13.0791 0x1e6c DevQueryBroker - ok
16:50:13.0793 0x1e6c Dfsc - ok
16:50:13.0797 0x1e6c [ 9593475FBC857A05D93BFF4FA7323C2B, D2A958AF5EFDC6136A6ABB7F8D5FE1F84C967E79BEA96C5BE3661A0145DEB907 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
16:50:13.0808 0x1e6c dg_ssudbus - ok
16:50:13.0810 0x1e6c Dhcp - ok
16:50:13.0813 0x1e6c diagnosticshub.standardcollector.service - ok
16:50:13.0815 0x1e6c DiagTrack - ok
16:50:13.0817 0x1e6c disk - ok
16:50:13.0820 0x1e6c DmEnrollmentSvc - ok
16:50:13.0822 0x1e6c dmvsc - ok
16:50:13.0824 0x1e6c dmwappushservice - ok
16:50:13.0826 0x1e6c Dnscache - ok
16:50:13.0829 0x1e6c dot3svc - ok
16:50:13.0831 0x1e6c DPS - ok
16:50:13.0833 0x1e6c drmkaud - ok
16:50:13.0835 0x1e6c DsmSvc - ok
16:50:13.0837 0x1e6c DsSvc - ok
16:50:13.0840 0x1e6c DXGKrnl - ok
16:50:13.0848 0x1e6c [ 484EB1809E6E9645ABCB04D0E7F0FA13, 4951ACEBF683131777FD8148A0B2A79D79C991395196EB1BF0666BC2CD3D8A9D ] e1cexpress C:\WINDOWS\system32\DRIVERS\e1c65x64.sys
16:50:13.0863 0x1e6c e1cexpress - ok
16:50:13.0866 0x1e6c e1iexpress - ok
16:50:13.0868 0x1e6c EapHost - ok
16:50:13.0869 0x1e6c EasyAntiCheat - ok
16:50:13.0872 0x1e6c ebdrv - ok
16:50:13.0874 0x1e6c EFS - ok
16:50:13.0876 0x1e6c EhStorClass - ok
16:50:13.0878 0x1e6c EhStorTcgDrv - ok
16:50:13.0880 0x1e6c embeddedmode - ok
16:50:13.0882 0x1e6c EntAppSvc - ok
16:50:13.0884 0x1e6c ErrDev - ok
16:50:13.0889 0x1e6c [ 047244823B2EA707E1F6076CA20DEF90, FEC862FA755A2D94306C774E9AE1E79334E5BB31992B78B0DAE8DA41C14DC839 ] ESProtectionDriver C:\WINDOWS\system32\drivers\mbae64.sys
16:50:13.0898 0x1e6c ESProtectionDriver - ok
16:50:13.0901 0x1e6c EventSystem - ok
16:50:13.0904 0x1e6c [ A0539478593A00AA64E600CF7E19F195, BD835D70F3EE9BFEFFABE747AD65BC97C73AD8042F653BF93535277FB0CBD4CE ] EvolveVirtualAdapter C:\WINDOWS\System32\drivers\evolve.sys
16:50:13.0912 0x1e6c EvolveVirtualAdapter - ok
16:50:13.0936 0x1e6c [ 57816AB61ECAAA604E7FB476BDF48365, EEFAE0CBDDF0230FF78A7B13BBC5EDA8D94ED4B7F54D62674121E6DDF19D129F ] EvoSvc D:\Evolve\EvoSvc.exe
16:50:13.0966 0x1e6c EvoSvc - ok
16:50:13.0970 0x1e6c exfat - ok
16:50:13.0972 0x1e6c fastfat - ok
16:50:13.0974 0x1e6c Fax - ok
16:50:13.0976 0x1e6c fdc - ok
16:50:13.0978 0x1e6c fdPHost - ok
16:50:13.0980 0x1e6c FDResPub - ok
16:50:13.0982 0x1e6c fhsvc - ok
16:50:13.0984 0x1e6c FileCrypt - ok
16:50:13.0986 0x1e6c FileInfo - ok
16:50:13.0988 0x1e6c Filetrace - ok
16:50:13.0990 0x1e6c flpydisk - ok
16:50:13.0992 0x1e6c FltMgr - ok
16:50:13.0995 0x1e6c FontCache - ok
16:50:13.0997 0x1e6c FontCache3.0.0.0 - ok
16:50:14.0000 0x1e6c FrameServer - ok
16:50:14.0001 0x1e6c FsDepends - ok
16:50:14.0004 0x1e6c Fs_Rec - ok
16:50:14.0006 0x1e6c fvevol - ok
16:50:14.0897 0x1e6c [ F7DADCE6A1779CD09ABDBD0FC64A9E3F, ADA3EFB2A8CF862AAA5346204B32A776B80E16A50813F29E5875817A270FE063 ] GalaxyClientService F:\GalaxyClient\GalaxyClientService.exe
16:50:14.0910 0x1e6c GalaxyClientService - ok
16:50:15.0007 0x1e6c [ CB8157B535DA674CA6CBEBE7E3BD5268, 1028FDA5207E9CF412BB0B1F0B984FEFEE511EBF8BD353F392F7052B0021F531 ] GalaxyCommunication C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
16:50:15.0109 0x1e6c GalaxyCommunication - ok
16:50:15.0117 0x1e6c gencounter - ok
16:50:15.0119 0x1e6c genericusbfn - ok
16:50:15.0121 0x1e6c GPIOClx0101 - ok
16:50:15.0123 0x1e6c gpsvc - ok
16:50:15.0125 0x1e6c GpuEnergyDrv - ok
16:50:15.0131 0x1e6c [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:50:15.0140 0x1e6c gupdate - ok
16:50:15.0144 0x1e6c [ A8FD9222E4D72596BB37DA8BE95C0BA4, 52FC3AA9F704300041E486E57FE863218E4CDF4C8EEE05CA6B99A296EFEE5737 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:50:15.0154 0x1e6c gupdatem - ok
16:50:15.0157 0x1e6c HDAudBus - ok
16:50:15.0159 0x1e6c HidBatt - ok
16:50:15.0161 0x1e6c HidBth - ok
16:50:15.0163 0x1e6c hidi2c - ok
16:50:15.0165 0x1e6c hidinterrupt - ok
16:50:15.0167 0x1e6c HidIr - ok
16:50:15.0170 0x1e6c hidserv - ok
16:50:15.0172 0x1e6c HidUsb - ok
16:50:15.0174 0x1e6c HomeGroupListener - ok
16:50:15.0176 0x1e6c HomeGroupProvider - ok
16:50:15.0178 0x1e6c HpSAMD - ok
16:50:15.0180 0x1e6c HTTP - ok
16:50:15.0182 0x1e6c HvHost - ok
16:50:15.0184 0x1e6c hvservice - ok
16:50:15.0186 0x1e6c hwpolicy - ok
16:50:15.0189 0x1e6c hyperkbd - ok
16:50:15.0191 0x1e6c i8042prt - ok
16:50:15.0193 0x1e6c iagpio - ok
16:50:15.0195 0x1e6c iai2c - ok
16:50:15.0197 0x1e6c iaLPSS2i_GPIO2 - ok
16:50:15.0199 0x1e6c iaLPSS2i_I2C - ok
16:50:15.0201 0x1e6c iaLPSSi_GPIO - ok
16:50:15.0203 0x1e6c iaLPSSi_I2C - ok
16:50:15.0206 0x1e6c iaStorAV - ok
16:50:15.0208 0x1e6c iaStorV - ok
16:50:15.0210 0x1e6c ibbus - ok
16:50:15.0212 0x1e6c icssvc - ok
16:50:15.0214 0x1e6c IKEEXT - ok
16:50:15.0216 0x1e6c IndirectKmd - ok
16:50:15.0281 0x1e6c [ E0AB51937979C57300AB38E2F202E1D6, 79DA3576B3EFA4F578EC6EFE15A2057CAA0E801BBCDAF278E9A902F5C81484E7 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
16:50:15.0352 0x1e6c IntcAzAudAddService - ok
16:50:15.0362 0x1e6c [ B35FBA69CA2A77D7B51B4185CDAB5D5E, 9E380AD526A4B07AD6FD0426F369545DB25597460C5E8098087803D93195358C ] Intel(R) PROSet Monitoring Service C:\Windows\system32\IProsetMonitor.exe
16:50:15.0377 0x1e6c Intel(R) PROSet Monitoring Service - ok
16:50:15.0380 0x1e6c intelide - ok
16:50:15.0382 0x1e6c intelpep - ok
16:50:15.0384 0x1e6c intelppm - ok
16:50:15.0386 0x1e6c iorate - ok
16:50:15.0388 0x1e6c IpFilterDriver - ok
16:50:15.0390 0x1e6c iphlpsvc - ok
16:50:15.0392 0x1e6c IPMIDRV - ok
16:50:15.0394 0x1e6c IPNAT - ok
16:50:15.0396 0x1e6c irda - ok
16:50:15.0399 0x1e6c IRENUM - ok
16:50:15.0401 0x1e6c irmon - ok
16:50:15.0403 0x1e6c isapnp - ok
16:50:15.0405 0x1e6c iScsiPrt - ok
16:50:15.0407 0x1e6c kbdclass - ok
16:50:15.0409 0x1e6c kbdhid - ok
16:50:15.0411 0x1e6c kdnic - ok
16:50:15.0413 0x1e6c KeyIso - ok
16:50:15.0415 0x1e6c KSecDD - ok
16:50:15.0417 0x1e6c KSecPkg - ok
16:50:15.0419 0x1e6c ksthunk - ok
16:50:15.0421 0x1e6c KtmRm - ok
16:50:15.0423 0x1e6c LanmanServer - ok
16:50:15.0425 0x1e6c LanmanWorkstation - ok
16:50:15.0428 0x1e6c lfsvc - ok
16:50:15.0431 0x1e6c [ 17325C9B9ADB2BB99049936D0C9812C8, 70ADDC85FD5757BC9C4B97F382B25A19851FF8275021FFC04A81E208A604F83E ] LGBusEnum C:\WINDOWS\system32\drivers\LGBusEnum.sys
16:50:15.0442 0x1e6c LGBusEnum - ok
16:50:15.0446 0x1e6c [ 2D7F1C02B94D6F0F3E10107E5EA8E141, 93B266F38C3C3EAAB475D81597ABBD7CC07943035068BB6FD670DBBE15DE0131 ] LGCoreTemp C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys
16:50:15.0454 0x1e6c LGCoreTemp - ok
16:50:15.0457 0x1e6c [ C7AF05942E041D4B1F345ACF79993BB3, E8FAAE356C99A11F6CF17640FD9C67F87AFBFEFB70C458CB85178F2AD94DF848 ] LGJoyXlCore C:\WINDOWS\system32\drivers\LGJoyXlCore.sys
16:50:15.0468 0x1e6c LGJoyXlCore - ok
16:50:15.0471 0x1e6c [ F705A641C18DF31B48B5DBDA94B425E4, 1F47EE43CAFE5458E56467E127EE99B5FDBFF8B810CF92B232094B475DD42B21 ] LGPBTDD C:\WINDOWS\System32\Drivers\LGPBTDD.sys
16:50:15.0478 0x1e6c LGPBTDD - ok
16:50:15.0481 0x1e6c [ 1DDB8DE3D6EEF31EDCF4977B2D2FAACC, 24291B522A596E2D9A1CDAC192DB1C7422D5DD0E87E5C8A5F5E2CAA90296BF23 ] LGVirHid C:\WINDOWS\system32\drivers\LGVirHid.sys
16:50:15.0491 0x1e6c LGVirHid - ok
16:50:15.0493 0x1e6c LicenseManager - ok
16:50:15.0495 0x1e6c lltdio - ok
16:50:15.0497 0x1e6c lltdsvc - ok
16:50:15.0500 0x1e6c lmhosts - ok
16:50:15.0504 0x1e6c [ 6A854F3F93AAE34005A3C2EB21B2256C, 71FF43EEFAB7FD9E79C75E5E78F813FEF6F4E906CC52A8A7EFEF3E64C3D96A1F ] LogiRegistryService C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
16:50:15.0514 0x1e6c LogiRegistryService - ok
16:50:15.0518 0x1e6c LSI_SAS - ok
16:50:15.0520 0x1e6c LSI_SAS2i - ok
16:50:15.0522 0x1e6c LSI_SAS3i - ok
16:50:15.0524 0x1e6c LSI_SSS - ok
16:50:15.0526 0x1e6c LSM - ok
16:50:15.0528 0x1e6c luafv - ok
16:50:15.0530 0x1e6c MapsBroker - ok
16:50:15.0535 0x1e6c [ 3BEC6134F1E45AEF5E971F69F0D38510, 245D7CEEB6561166EE0472551D39A9D3CFDDA52A6BF2E924AB243CCA7FBC9009 ] MBAMChameleon C:\WINDOWS\system32\drivers\MBAMChameleon.sys
16:50:15.0545 0x1e6c MBAMChameleon - ok
16:50:15.0549 0x1e6c [ F3960CA85778E5D7611EE0F501972340, 0DE5C8509A9A66C8185B9FAA7EAF69C0FA9C28CD9DE84AA23E128E4FF8E06BF4 ] MBAMFarflt C:\WINDOWS\system32\drivers\farflt.sys
16:50:15.0558 0x1e6c MBAMFarflt - ok
16:50:15.0561 0x1e6c [ 88BD122C3A35DE63D75D382DF75554CE, ABDF59543CAD186A6ED4E66257205D9CF5047732A5DA74A96A28B468B41BC396 ] MBAMProtection C:\WINDOWS\system32\drivers\mbam.sys
16:50:15.0570 0x1e6c MBAMProtection - ok
16:50:15.0633 0x1e6c [ 28E521A6ABA9DE062A3719452816F495, B312A37DA052229DFB19353170CD5828582F8AC6426E857CA7C8ACA0DD91C160 ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
16:50:15.0701 0x1e6c MBAMService - ok
16:50:15.0711 0x1e6c [ ABB371D9AEF728B0489B0E6872B4A1C0, E9539A4F85FE30F5BAED742778CA74C879995728668ABE6877C37633716D8770 ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
16:50:15.0722 0x1e6c MBAMSwissArmy - ok
16:50:15.0726 0x1e6c [ 205C2D377E1CA85A4465491DB8064DA9, 0C69C6C958D8E26A6C6CCF2254E8B531BE718AD7FCFEB970F6F09426CA6C8C26 ] MBAMWebProtection C:\WINDOWS\system32\drivers\mwac.sys
16:50:15.0736 0x1e6c MBAMWebProtection - ok
16:50:15.0738 0x1e6c megasas - ok
16:50:15.0741 0x1e6c [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181A18A4BA060CA81 ] megasas2i C:\WINDOWS\system32\drivers\MegaSas2i.sys
16:50:15.0753 0x1e6c megasas2i - ok
16:50:15.0756 0x1e6c megasr - ok
16:50:15.0760 0x1e6c [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
16:50:15.0773 0x1e6c MEIx64 - ok
16:50:15.0775 0x1e6c MessagingService - ok
16:50:15.0778 0x1e6c mlx4_bus - ok
16:50:15.0781 0x1e6c MMCSS - ok
16:50:15.0783 0x1e6c Modem - ok
16:50:15.0785 0x1e6c monitor - ok
16:50:15.0787 0x1e6c mouclass - ok
16:50:15.0789 0x1e6c mouhid - ok
16:50:15.0791 0x1e6c mountmgr - ok
16:50:15.0793 0x1e6c mpsdrv - ok
16:50:15.0795 0x1e6c MpsSvc - ok
16:50:15.0797 0x1e6c MRxDAV - ok
16:50:15.0799 0x1e6c mrxsmb - ok
16:50:15.0801 0x1e6c mrxsmb10 - ok
16:50:15.0803 0x1e6c mrxsmb20 - ok
16:50:15.0805 0x1e6c MsBridge - ok
16:50:15.0807 0x1e6c MSDTC - ok
16:50:15.0811 0x1e6c Msfs - ok
16:50:15.0813 0x1e6c msgpiowin32 - ok
16:50:15.0815 0x1e6c mshidkmdf - ok
16:50:15.0817 0x1e6c mshidumdf - ok
16:50:15.0819 0x1e6c msisadrv - ok
16:50:15.0821 0x1e6c MSiSCSI - ok
16:50:15.0823 0x1e6c msiserver - ok
16:50:15.0825 0x1e6c MSKSSRV - ok
16:50:15.0827 0x1e6c MsLldp - ok
16:50:15.0829 0x1e6c MSPCLOCK - ok
16:50:15.0832 0x1e6c MSPQM - ok
16:50:15.0834 0x1e6c MsRPC - ok
16:50:15.0837 0x1e6c MsSecFlt - ok
16:50:15.0839 0x1e6c mssmbios - ok
16:50:15.0841 0x1e6c MSTEE - ok
16:50:15.0843 0x1e6c MTConfig - ok
16:50:15.0845 0x1e6c Mup - ok
16:50:15.0847 0x1e6c mvumis - ok
16:50:15.0850 0x1e6c NativeWifiP - ok
16:50:15.0853 0x1e6c NcaSvc - ok
16:50:15.0855 0x1e6c NcbService - ok
16:50:15.0857 0x1e6c NcdAutoSetup - ok
16:50:15.0859 0x1e6c ndfltr - ok
16:50:15.0861 0x1e6c NDIS - ok
16:50:15.0863 0x1e6c NdisCap - ok
16:50:15.0865 0x1e6c NdisImPlatform - ok
16:50:15.0867 0x1e6c NdisTapi - ok
16:50:15.0869 0x1e6c Ndisuio - ok
16:50:15.0871 0x1e6c NdisVirtualBus - ok
16:50:15.0873 0x1e6c NdisWan - ok
16:50:15.0875 0x1e6c ndiswanlegacy - ok
16:50:15.0877 0x1e6c ndproxy - ok
16:50:15.0879 0x1e6c Ndu - ok
16:50:15.0882 0x1e6c NetAdapterCx - ok
16:50:15.0884 0x1e6c NetBIOS - ok
16:50:15.0887 0x1e6c NetBT - ok
16:50:15.0889 0x1e6c Netlogon - ok
16:50:15.0891 0x1e6c Netman - ok
16:50:15.0893 0x1e6c netprofm - ok
16:50:15.0895 0x1e6c NetSetupSvc - ok
16:50:15.0900 0x1e6c NetTcpPortSharing - ok
16:50:15.0903 0x1e6c NgcCtnrSvc - ok
16:50:15.0905 0x1e6c NgcSvc - ok
16:50:15.0907 0x1e6c NlaSvc - ok
16:50:15.0909 0x1e6c Npfs - ok
16:50:15.0911 0x1e6c npsvctrig - ok
16:50:15.0913 0x1e6c nsi - ok
16:50:15.0917 0x1e6c nsiproxy - ok
16:50:15.0920 0x1e6c NTFS - ok
16:50:15.0922 0x1e6c Null - ok
16:50:15.0930 0x1e6c [ 5CE986C82313E6F9D0973E2A74A0BA20, 9367D5A8257EA15B0DBCD6C8FDBFDF0B5B132A7C436E4F03AD84B958112DFA28 ] NvContainerLocalSystem C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
16:50:15.0945 0x1e6c NvContainerLocalSystem - ok
16:50:15.0953 0x1e6c [ 5CE986C82313E6F9D0973E2A74A0BA20, 9367D5A8257EA15B0DBCD6C8FDBFDF0B5B132A7C436E4F03AD84B958112DFA28 ] NvContainerNetworkService C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
16:50:15.0967 0x1e6c NvContainerNetworkService - ok
16:50:15.0974 0x1e6c [ 64DA1993B1973F049C1347DA1B05185E, 2A04E263DB13751D033E2F9B9518820CF4942EEAFA5A32488570EEB699EE2A96 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
16:50:15.0985 0x1e6c NVHDA - ok
16:50:16.0004 0x1e6c [ 0B7CFF94C247E661A9D5F7FDAB2F726B, 16D651A50347131CC6B96EB17096EFB22F9767572964E6C12CA1BF928E6C1397 ] NVIDIA Wireless Controller Service C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
16:50:16.0028 0x1e6c NVIDIA Wireless Controller Service - ok
16:50:16.0241 0x1e6c [ 25C83321B51908E5F35F1ED17F443591, FDF9BFCAEDD16960113292BA5527CCFC88FC27B017F098A30AFE1EAD361DFB0D ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c775b600ccf2cdac\nvlddmkm.sys
16:50:16.0449 0x1e6c nvlddmkm - ok
16:50:16.0462 0x1e6c nvraid - ok
16:50:16.0464 0x1e6c nvstor - ok
16:50:16.0466 0x1e6c [ 5FA3A8CE5BAA23E2C9D18EA154017BC4, 6C2B0546FB9D8A4C7A747AB776BB98C8A90D2745FA0D293FA63DABBF67C7ED58 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
16:50:16.0474 0x1e6c NvStreamKms - ok
16:50:16.0477 0x1e6c [ 1D54A108BFAD4ED568E393518769F516, D0BE8343784DDD2B7CADFC85779CC72C78D49601E9C746D13D8134CE38DD920F ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
16:50:16.0485 0x1e6c nvvad_WaveExtensible - ok
16:50:16.0496 0x1e6c [ E54AA592A65F317390EEE386A8821692, 7997F8C07802F6C49F06620B35C4C382ADD5419EA8BE02CD7AF0F2EF42A93E53 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
16:50:16.0510 0x1e6c odserv - ok
16:50:16.0512 0x1e6c OneSyncSvc - ok
16:50:16.0518 0x1e6c [ 7189B4ADCB8679DEF261C901FA3393FA, C6CA94513F61CF16820F5C6C69016A886830E749399FEF2066F6A214F95EAF82 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:50:16.0531 0x1e6c ose - ok
16:50:16.0533 0x1e6c p2pimsvc - ok
16:50:16.0535 0x1e6c p2psvc - ok
16:50:16.0537 0x1e6c PAExec - ok
16:50:16.0540 0x1e6c Parport - ok
16:50:16.0542 0x1e6c partmgr - ok
16:50:16.0544 0x1e6c PcaSvc - ok
16:50:16.0546 0x1e6c pci - ok
16:50:16.0549 0x1e6c pciide - ok
16:50:16.0551 0x1e6c pcmcia - ok
16:50:16.0553 0x1e6c pcw - ok
16:50:16.0555 0x1e6c pdc - ok
16:50:16.0557 0x1e6c PEAUTH - ok
16:50:16.0559 0x1e6c PeerDistSvc - ok
16:50:16.0561 0x1e6c percsas2i - ok
16:50:16.0564 0x1e6c percsas3i - ok
16:50:16.0585 0x1e6c PerfHost - ok
16:50:16.0590 0x1e6c PhoneSvc - ok
16:50:16.0592 0x1e6c PimIndexMaintenanceSvc - ok
16:50:16.0595 0x1e6c pla - ok
16:50:16.0597 0x1e6c PlugPlay - ok
16:50:16.0599 0x1e6c PNRPAutoReg - ok
16:50:16.0601 0x1e6c PNRPsvc - ok
16:50:16.0604 0x1e6c PolicyAgent - ok
16:50:16.0607 0x1e6c Power - ok
16:50:16.0609 0x1e6c PptpMiniport - ok
16:50:16.0663 0x1e6c [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:50:16.0750 0x1e6c PrintNotify - ok
16:50:16.0754 0x1e6c Processor - ok
16:50:16.0757 0x1e6c ProfSvc - ok
16:50:16.0759 0x1e6c Psched - ok
16:50:16.0761 0x1e6c QWAVE - ok
16:50:16.0763 0x1e6c QWAVEdrv - ok
16:50:16.0765 0x1e6c RasAcd - ok
16:50:16.0768 0x1e6c RasAgileVpn - ok
16:50:16.0770 0x1e6c RasAuto - ok
16:50:16.0772 0x1e6c Rasl2tp - ok
16:50:16.0774 0x1e6c RasMan - ok
16:50:16.0776 0x1e6c RasPppoe - ok
16:50:16.0778 0x1e6c RasSstp - ok
16:50:16.0780 0x1e6c rdbss - ok
16:50:16.0784 0x1e6c rdpbus - ok
16:50:16.0786 0x1e6c RDPDR - ok
16:50:16.0790 0x1e6c RdpVideoMiniport - ok
16:50:16.0792 0x1e6c rdyboost - ok
16:50:16.0794 0x1e6c ReFSv1 - ok
16:50:16.0798 0x1e6c RemoteAccess - ok
16:50:16.0801 0x1e6c RemoteRegistry - ok
16:50:16.0803 0x1e6c RetailDemo - ok
16:50:16.0805 0x1e6c RFCOMM - ok
16:50:16.0807 0x1e6c RmSvc - ok
16:50:16.0810 0x1e6c RpcEptMapper - ok
16:50:16.0812 0x1e6c RpcLocator - ok
16:50:16.0814 0x1e6c RpcSs - ok
16:50:16.0816 0x1e6c rspndr - ok
16:50:16.0819 0x1e6c s3cap - ok
16:50:16.0821 0x1e6c SamSs - ok
16:50:16.0823 0x1e6c sbp2port - ok
16:50:16.0825 0x1e6c SCardSvr - ok
16:50:16.0828 0x1e6c ScDeviceEnum - ok
16:50:16.0830 0x1e6c scfilter - ok
16:50:16.0832 0x1e6c Schedule - ok
16:50:16.0834 0x1e6c scmbus - ok
16:50:16.0837 0x1e6c scmdisk0101 - ok
16:50:16.0839 0x1e6c SCPolicySvc - ok
16:50:16.0845 0x1e6c [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF293EE5903D7AD0A ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
16:50:16.0860 0x1e6c sdbus - ok
16:50:16.0862 0x1e6c SDRSVC - ok
16:50:16.0865 0x1e6c sdstor - ok
16:50:16.0867 0x1e6c seclogon - ok
16:50:16.0869 0x1e6c SENS - ok
16:50:16.0871 0x1e6c Sense - ok
16:50:16.0874 0x1e6c SensorDataService - ok
16:50:16.0876 0x1e6c SensorService - ok
16:50:16.0878 0x1e6c SensrSvc - ok
16:50:16.0880 0x1e6c SerCx - ok
16:50:16.0882 0x1e6c SerCx2 - ok
16:50:16.0885 0x1e6c Serenum - ok
16:50:16.0887 0x1e6c Serial - ok
16:50:16.0889 0x1e6c sermouse - ok
16:50:16.0895 0x1e6c SessionEnv - ok
16:50:16.0897 0x1e6c sfloppy - ok
16:50:16.0901 0x1e6c SharedAccess - ok
16:50:16.0903 0x1e6c ShellHWDetection - ok
16:50:16.0906 0x1e6c shpamsvc - ok
16:50:16.0908 0x1e6c SiSRaid2 - ok
16:50:16.0910 0x1e6c SiSRaid4 - ok
16:50:16.0913 0x1e6c smphost - ok
16:50:16.0916 0x1e6c SmsRouter - ok
16:50:16.0920 0x1e6c SNMPTRAP - ok
16:50:16.0930 0x1e6c [ C994DF90427103CCB80F893FFD2B1CE8, 7E4B08095C77E68D337A3425EEA38F8FEC4D103CA7661E34FD96BF518DFB4BCB ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
16:50:16.0951 0x1e6c spaceport - ok
16:50:16.0953 0x1e6c SpbCx - ok
16:50:16.0956 0x1e6c Spooler - ok
16:50:16.0958 0x1e6c sppsvc - ok
16:50:16.0960 0x1e6c srv - ok
16:50:16.0962 0x1e6c srv2 - ok
16:50:16.0965 0x1e6c srvnet - ok
16:50:16.0967 0x1e6c SSDPSRV - ok
16:50:16.0969 0x1e6c SstpSvc - ok
16:50:16.0974 0x1e6c [ 592FF34A2FD6C6351B8A3AA76B2C0A9E, 152B7472DE531AC45492F562DD470B2CE33F1EEF13BC78F26046AE5ABF54E32F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
16:50:16.0984 0x1e6c ssudmdm - ok
16:50:16.0987 0x1e6c StateRepository - ok
16:50:17.0010 0x1e6c [ 3B710E79D9BE2F149B66FBBF3F57A35E, 0A18823FCAB94B350F6177E9459E3E1DBA4FC52177056A3319E545AB7FED057E ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
16:50:17.0037 0x1e6c Steam Client Service - ok
16:50:17.0041 0x1e6c stexstor - ok
16:50:17.0043 0x1e6c stisvc - ok
16:50:17.0045 0x1e6c storahci - ok
16:50:17.0048 0x1e6c storflt - ok
16:50:17.0051 0x1e6c [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
16:50:17.0062 0x1e6c stornvme - ok
16:50:17.0065 0x1e6c storqosflt - ok
16:50:17.0067 0x1e6c StorSvc - ok
16:50:17.0069 0x1e6c storufs - ok
16:50:17.0071 0x1e6c storvsc - ok
16:50:17.0073 0x1e6c svsvc - ok
16:50:17.0075 0x1e6c swenum - ok
16:50:17.0078 0x1e6c swprv - ok
16:50:17.0080 0x1e6c Synth3dVsc - ok
16:50:17.0082 0x1e6c SysMain - ok
16:50:17.0085 0x1e6c SystemEventsBroker - ok
16:50:17.0087 0x1e6c TabletInputService - ok
16:50:17.0089 0x1e6c TapiSrv - ok
16:50:17.0091 0x1e6c Tcpip - ok
16:50:17.0094 0x1e6c Tcpip6 - ok
16:50:17.0097 0x1e6c tcpipreg - ok
16:50:17.0101 0x1e6c tdx - ok
16:50:17.0209 0x1e6c [ F2F02E436BA56A96A06E4427C5787B6E, 1562FF264011A15AC69808CB74F387917C4E8ED3B91546B12933BE10B6E20B3A ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
16:50:17.0322 0x1e6c TeamViewer - ok
16:50:17.0331 0x1e6c terminpt - ok
16:50:17.0333 0x1e6c TermService - ok
16:50:17.0335 0x1e6c Themes - ok
16:50:17.0338 0x1e6c TieringEngineService - ok
16:50:17.0340 0x1e6c tiledatamodelsvc - ok
16:50:17.0342 0x1e6c TimeBrokerSvc - ok
16:50:17.0348 0x1e6c [ 46171262D0E806779DEEDFCAB2F830CC, 7F4A4658B8BA217D99E5B5C0E01600C20DC96ECBCA32A5BA7FBE17D2A7B8BFD8 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
16:50:17.0361 0x1e6c TPM - ok
16:50:17.0364 0x1e6c TrkWks - ok
16:50:17.0366 0x1e6c TrustedInstaller - ok
16:50:17.0369 0x1e6c tsusbflt - ok
16:50:17.0372 0x1e6c TsUsbGD - ok
16:50:17.0374 0x1e6c tsusbhub - ok
16:50:17.0376 0x1e6c tunnel - ok
16:50:17.0379 0x1e6c tzautoupdate - ok
16:50:17.0381 0x1e6c UASPStor - ok
16:50:17.0383 0x1e6c UcmCx0101 - ok
16:50:17.0386 0x1e6c UcmTcpciCx0101 - ok
16:50:17.0388 0x1e6c UcmUcsi - ok
16:50:17.0391 0x1e6c Ucx01000 - ok
16:50:17.0393 0x1e6c UdeCx - ok
16:50:17.0395 0x1e6c udfs - ok
16:50:17.0398 0x1e6c UEFI - ok
16:50:17.0400 0x1e6c UevAgentDriver - ok
16:50:17.0403 0x1e6c UevAgentService - ok
16:50:17.0405 0x1e6c Ufx01000 - ok
16:50:17.0407 0x1e6c UfxChipidea - ok
16:50:17.0410 0x1e6c ufxsynopsys - ok
16:50:17.0414 0x1e6c UI0Detect - ok
16:50:17.0417 0x1e6c umbus - ok
16:50:17.0419 0x1e6c UmPass - ok
16:50:17.0422 0x1e6c UmRdpService - ok
16:50:17.0424 0x1e6c UnistoreSvc - ok
16:50:17.0428 0x1e6c upnphost - ok
16:50:17.0430 0x1e6c UrsChipidea - ok
16:50:17.0433 0x1e6c UrsCx01000 - ok
16:50:17.0435 0x1e6c UrsSynopsys - ok
16:50:17.0438 0x1e6c usbaudio - ok
16:50:17.0440 0x1e6c usbccgp - ok
16:50:17.0442 0x1e6c usbcir - ok
16:50:17.0445 0x1e6c usbehci - ok
16:50:17.0447 0x1e6c usbhub - ok
16:50:17.0449 0x1e6c USBHUB3 - ok
16:50:17.0452 0x1e6c usbohci - ok
16:50:17.0454 0x1e6c usbprint - ok
16:50:17.0457 0x1e6c [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:50:17.0470 0x1e6c usbscan - ok
16:50:17.0473 0x1e6c usbser - ok
16:50:17.0475 0x1e6c USBSTOR - ok
16:50:17.0477 0x1e6c usbuhci - ok
16:50:17.0480 0x1e6c USBXHCI - ok
16:50:17.0482 0x1e6c UserDataSvc - ok
16:50:17.0486 0x1e6c UserManager - ok
16:50:17.0489 0x1e6c UsoSvc - ok
16:50:17.0491 0x1e6c VaultSvc - ok
16:50:17.0493 0x1e6c vdrvroot - ok
16:50:17.0495 0x1e6c vds - ok
16:50:17.0498 0x1e6c VerifierExt - ok
16:50:17.0500 0x1e6c vhdmp - ok
16:50:17.0503 0x1e6c vhf - ok
16:50:17.0505 0x1e6c vmbus - ok
16:50:17.0507 0x1e6c VMBusHID - ok
16:50:17.0510 0x1e6c vmgid - ok
16:50:17.0512 0x1e6c vmicguestinterface - ok
16:50:17.0515 0x1e6c vmicheartbeat - ok
16:50:17.0517 0x1e6c vmickvpexchange - ok
16:50:17.0520 0x1e6c vmicrdv - ok
16:50:17.0522 0x1e6c vmicshutdown - ok
16:50:17.0524 0x1e6c vmictimesync - ok
16:50:17.0526 0x1e6c vmicvmsession - ok
16:50:17.0529 0x1e6c vmicvss - ok
16:50:17.0531 0x1e6c volmgr - ok
16:50:17.0534 0x1e6c volmgrx - ok
16:50:17.0536 0x1e6c volsnap - ok
16:50:17.0538 0x1e6c volume - ok
16:50:17.0542 0x1e6c [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4CC1037B9CB3A27 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
16:50:17.0554 0x1e6c vpci - ok
16:50:17.0557 0x1e6c vsmraid - ok
16:50:17.0559 0x1e6c VSS - ok
16:50:17.0561 0x1e6c VSTXRAID - ok
16:50:17.0564 0x1e6c vwifibus - ok
16:50:17.0566 0x1e6c vwififlt - ok
16:50:17.0569 0x1e6c W32Time - ok
16:50:17.0571 0x1e6c WacomPen - ok
16:50:17.0574 0x1e6c WalletService - ok
16:50:17.0576 0x1e6c wanarp - ok
16:50:17.0579 0x1e6c wanarpv6 - ok
16:50:17.0582 0x1e6c wbengine - ok
16:50:17.0584 0x1e6c WbioSrvc - ok
16:50:17.0587 0x1e6c wcifs - ok
16:50:17.0589 0x1e6c Wcmsvc - ok
16:50:17.0591 0x1e6c wcncsvc - ok
16:50:17.0594 0x1e6c wcnfs - ok
16:50:17.0596 0x1e6c WdBoot - ok
16:50:17.0599 0x1e6c Wdf01000 - ok
16:50:17.0601 0x1e6c WdFilter - ok
16:50:17.0604 0x1e6c WdiServiceHost - ok
16:50:17.0606 0x1e6c WdiSystemHost - ok
16:50:17.0609 0x1e6c wdiwifi - ok
16:50:17.0611 0x1e6c WdNisDrv - ok
16:50:17.0613 0x1e6c WdNisSvc - ok
16:50:17.0616 0x1e6c WebClient - ok
16:50:17.0619 0x1e6c Wecsvc - ok
16:50:17.0621 0x1e6c WEPHOSTSVC - ok
16:50:17.0624 0x1e6c wercplsupport - ok
16:50:17.0626 0x1e6c WerSvc - ok
16:50:17.0628 0x1e6c WFPLWFS - ok
16:50:17.0631 0x1e6c WiaRpc - ok
16:50:17.0633 0x1e6c WIMMount - ok
16:50:17.0635 0x1e6c WinDefend - ok
16:50:17.0641 0x1e6c WindowsTrustedRT - ok
16:50:17.0643 0x1e6c WindowsTrustedRTProxy - ok
16:50:17.0646 0x1e6c WinHttpAutoProxySvc - ok
16:50:17.0649 0x1e6c WinMad - ok
16:50:17.0654 0x1e6c Winmgmt - ok
16:50:17.0657 0x1e6c WinRM - ok
16:50:17.0662 0x1e6c WINUSB - ok
16:50:17.0665 0x1e6c WinVerbs - ok
16:50:17.0667 0x1e6c wisvc - ok
16:50:17.0670 0x1e6c WlanSvc - ok
16:50:17.0672 0x1e6c wlidsvc - ok
16:50:17.0675 0x1e6c WmiAcpi - ok
16:50:17.0679 0x1e6c wmiApSrv - ok
16:50:17.0681 0x1e6c WMPNetworkSvc - ok
16:50:17.0684 0x1e6c Wof - ok
16:50:17.0687 0x1e6c workfolderssvc - ok
16:50:17.0690 0x1e6c WPDBusEnum - ok
16:50:17.0692 0x1e6c WpdUpFltr - ok
16:50:17.0695 0x1e6c WpnService - ok
16:50:17.0697 0x1e6c WpnUserService - ok
16:50:17.0702 0x1e6c ws2ifsl - ok
16:50:17.0704 0x1e6c wscsvc - ok
16:50:17.0706 0x1e6c WSearch - ok
16:50:17.0710 0x1e6c wuauserv - ok
16:50:17.0713 0x1e6c WudfPf - ok
16:50:17.0715 0x1e6c WUDFRd - ok
16:50:17.0718 0x1e6c wudfsvc - ok
16:50:17.0720 0x1e6c WUDFWpdFs - ok
16:50:17.0723 0x1e6c WUDFWpdMtp - ok
16:50:17.0725 0x1e6c WwanSvc - ok
16:50:17.0728 0x1e6c XblAuthManager - ok
16:50:17.0731 0x1e6c XblGameSave - ok
16:50:17.0737 0x1e6c [ 9627BBAA50878F6833A6A7843EE3B1D9, 637566BB56501C4D11E3B6E6AC1C602D880C9D357CCE3DF1DF74EE672744F2B7 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
16:50:17.0758 0x1e6c xboxgip - ok
16:50:17.0760 0x1e6c XboxNetApiSvc - ok
16:50:17.0764 0x1e6c [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A92B48B1E5AFE8A ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
16:50:17.0777 0x1e6c xinputhid - ok
16:50:17.0778 0x1e6c ================ Scan global ===============================
16:50:17.0789 0x1e6c [ Global ] - ok
16:50:17.0789 0x1e6c ================ Scan MBR ==================================
16:50:17.0790 0x1e6c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:50:17.0854 0x1e6c \Device\Harddisk0\DR0 - ok
16:50:17.0856 0x1e6c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
16:50:18.0009 0x1e6c \Device\Harddisk1\DR1 - ok
16:50:18.0010 0x1e6c ================ Scan VBR ==================================
16:50:18.0012 0x1e6c [ 129E194A6AF97470BA2C19B3811CE2A8 ] \Device\Harddisk0\DR0\Partition1
16:50:18.0013 0x1e6c \Device\Harddisk0\DR0\Partition1 - ok
16:50:18.0014 0x1e6c [ 234A21A8251B2785A07184BCA5D40C41 ] \Device\Harddisk0\DR0\Partition2
16:50:18.0015 0x1e6c \Device\Harddisk0\DR0\Partition2 - ok
16:50:18.0016 0x1e6c [ 96F542320705F47EC7536E5F4D3A5936 ] \Device\Harddisk0\DR0\Partition3
16:50:18.0017 0x1e6c \Device\Harddisk0\DR0\Partition3 - ok
16:50:18.0018 0x1e6c [ 09AEBE0DD99A36F2BA71A23CC9A04F78 ] \Device\Harddisk1\DR1\Partition1
16:50:18.0019 0x1e6c \Device\Harddisk1\DR1\Partition1 - ok
16:50:18.0020 0x1e6c [ 7D594B4499FBD4B79D265F5F00C4B50A ] \Device\Harddisk1\DR1\Partition2
16:50:18.0021 0x1e6c \Device\Harddisk1\DR1\Partition2 - ok
16:50:18.0021 0x1e6c ================ Scan generic autorun ======================
16:50:18.0139 0x1e6c [ BDE585E705D4C3A843CF9A2B27ECBF1E, 9B4EC405B5A3AAC92CA838FA1DE72BBAF9802879B34D835E577B53AF87C5B111 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
16:50:18.0262 0x1e6c RTHDVCPL - ok
16:50:18.0479 0x1e6c [ 222A34C1E04D3A8DAF9BA6A0414958FB, 5B32621DD9CAAC79CA798E7E6CA0D9EDD3B36CA87734FB37034B3B451EC9DECC ] C:\Program Files\Logitech Gaming Software\LCore.exe
16:50:18.0691 0x1e6c Launch LCore - ok
16:50:18.0702 0x1e6c ShadowPlay - ok
16:50:18.0742 0x1e6c [ 0D907B3A3F181AECC90DF5F7E3FFD5D4, 38689C39183F7E77EAADE529DBCA712613CB544B7DBBDADD8AC25FD465820692 ] C:\PROGRAM FILES/MALWAREBYTES/ANTI-MALWARE\mbamtray.exe
16:50:18.0787 0x1e6c Malwarebytes TrayApp - ok
16:50:18.0789 0x1e6c WindowsDefender - ok
16:50:18.0809 0x1e6c [ 57C635C41750117D206C90DA9C599777, D5291ED79FC08217758FB526FC8CCC9D374B65B49446104D271C36B0C1298446 ] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
16:50:18.0840 0x1e6c BrMfcWnd - detected UnsignedFile.Multi.Generic ( 1 )
16:50:18.0900 0x1e6c Detect skipped due to KSN trusted
16:50:18.0901 0x1e6c BrMfcWnd - ok
16:50:18.0904 0x1e6c [ 4DE3EF07E0854547309C6B40235A9D44, F73D8E6D98583865D1C8DB728058D83C72A3908E21E04EF313FCB829C040A1EC ] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe
16:50:18.0910 0x1e6c ControlCenter3 - detected UnsignedFile.Multi.Generic ( 1 )
16:50:18.0964 0x1e6c Detect skipped due to KSN trusted
16:50:18.0964 0x1e6c ControlCenter3 - ok
16:50:18.0969 0x1e6c [ CD0362AEE36CFE1EF5DF973230742E67, 9F1D8AD4E09D16C39CD6A35CB298456468C1808226FFA8AD65BF9562A6ECC07D ] D:\PDF24\pdf24.exe
16:50:18.0981 0x1e6c PDFPrint - ok
16:50:18.0999 0x1e6c OneDriveSetup - ok
16:50:19.0000 0x1e6c OneDriveSetup - ok
16:50:19.0011 0x1e6c [ 8F2EA5EE0695CCE2285D92C44108375C, 2C96A8E7E41E87C27B6A3325526F99A03333357EF2682C17A4892BE4A58D157E ] C:\Users\schli\AppData\Local\Microsoft\OneDrive\OneDrive.exe
16:50:19.0028 0x1e6c OneDrive - ok
16:50:19.0204 0x1e6c [ ECAB32E9A6A2CA0B324026D22D1C75F8, F3E505009D3C7901C1B4A3FD62EEC8F8EEC66299E6945114BD353D8EEF347E5D ] F:\Steam\steam.exe
16:50:19.0249 0x1e6c Steam - ok
16:50:19.0361 0x1e6c [ 54176B0D148F9B07DCDF44B4FFE74A94, 142AE78C0831818D3793438858A392D31A2C3F0C28A4D785D92D61097C046E86 ] F:\GalaxyClient\GalaxyClient.exe
16:50:19.0422 0x1e6c GalaxyClient - ok
16:50:19.0434 0x1e6c [ 50746B890AA05768AC8E08F97CCC7EBF, 85AE64984A57FD4C92A65B818F7ABA68C66A1F4D47AC81B626D1BEF31F4BB549 ] C:\Program Files (x86)\IncrediMail\bin\IncMail.exe
16:50:19.0447 0x1e6c IncrediMail - ok
16:50:19.0448 0x1e6c GoogleDriveSync - ok
16:50:19.0449 0x1e6c Waiting for KSN requests completion. In queue: 66
16:50:20.0464 0x1e6c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x61100 ( enabled : updated )
16:50:20.0464 0x1e6c AV detected via SS2: Malwarebytes, C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe ( 3.0.0.134 ), 0x60000 ( disabled : updated )
16:50:20.0467 0x1e6c Win FW state via NFP2: enabled ( trusted )
16:50:20.0622 0x1e6c ============================================================
16:50:20.0622 0x1e6c Scan finished
16:50:20.0622 0x1e6c ============================================================
16:50:20.0627 0x127c Detected object count: 0
16:50:20.0627 0x127c Actual detected object count: 0 |